The Cybersecurity Digest – Details, episodes & analysis
Podcast details
Technical and general information from the podcast's RSS feed.

The Cybersecurity Digest
The Cybersecurity Digest LLC
Frequency: 1 episode/4d. Total Eps: 14

Recent rankings
Latest chart positions across Apple Podcasts and Spotify rankings.
Apple Podcasts
🇨🇦 Canada - techNews
28/12/2024#87🇨🇦 Canada - techNews
27/12/2024#71🇨🇦 Canada - techNews
26/12/2024#65🇨🇦 Canada - techNews
25/12/2024#60🇨🇦 Canada - techNews
24/12/2024#52🇨🇦 Canada - techNews
23/12/2024#41
Spotify
No recent rankings available
Shared links between episodes and podcasts
Links found in episode descriptions and other podcasts that share them.
See all- https://support.apple.com/en-us/HT201222
156 shares
RSS feed quality and score
Technical evaluation of the podcast's RSS feed quality and structure.
See allScore global : 58%
Publication history
Monthly episode publishing history over the past years.
Tickler, Voldemort, and Roblox Supply Chain Attack
Episode 14
lundi 2 septembre 2024 • Duration 32:06
Thank you so much for your support and tuning in. Our full show notes can be found here: https://thecybersecuritydigest.tech/p/cybersecurity-digest-podcast-week-review-2630-aug-2024 Please do not forget to share this show out with someone you know as well as leave this show a rating in your platform of choice! Thank you so much for your continued support!
Locked out of GSuite, ALBeast, Qilin Stealing Chrome Creds, and Velvet Ants!
Episode 13
lundi 26 août 2024 • Duration 30:03
Show notes for this week's show can be found here: https://thecybersecuritydigest.tech/p/the-cybersecurity-digest-podcast-week-in-review-19-23-august-2024 As stated in the show, comments are turned on for the website. I would love to hear from you regarding your feedback! Please also feel free to leave feedback on Spotify or YouTube and I will review those comments ASAP! If you are interested in subscribing to our newsletter you can do so here: https://thecybersecuritydigest.tech/subscribe
If you would like to see all the platforms our show is available on you can review our podcast here: https://www.thecybersecuritydigest.com/
MuddyWater’s Cyber Onslaught, AT&T Pays, Trello Leak, and Sys01 Malvertising Campaign
Episode 4
mercredi 17 juillet 2024 • Duration 15:16
Cybersecurity Digest for 17 July 2024: Today we discuss: MuddyWater’s Latest Cyber Onslaught and a sneaky backdoor!
AT&T Pays Hackers – Was it Worth it?
An Update on RiteAid’s Data Breach
SEXi Ransomware group rebrands…. Meet APT INC!
mSpy Breach
SYS01 Stealer Malware: Malvertising across Social Media
15 Million Trello Email Addresses Leaked
Google’s 23 Billion to acquire Wiz
Octo Tempest, AKA Scattered Spider adds new ransomware payloads
CISA adds one new vulnerability to its Known Exploited Catalog
Articles Referenced in the Show in the order they appear:
CheckPoint Research Bugsleep Backdoor:
New BugSleep Backdoor Deployed in Recent MuddyWater Campaigns - Check Point Research
AT&T Paid Threat Actor:
AT&T Paid a Hacker $370,000 to Delete Stolen Phone Records | WIRED
RiteAid Update: Rite Aid says June data breach impacts 2.2 million people (bleepingcomputer.com) SEXi Rebranding:
SEXi ransomware rebrands to APT INC, continues VMware ESXi attacks (bleepingcomputer.com)
Mspy Data Breach:
Mspy data breach exposes millions of customers' information (candid.technology)
Malvertising in Facebook, LinkedIn, and YoutTube: Facebook Malvertising Epidemic – Unraveling a Persistent Threat: SYS01 (trustwave.com)
Malvertising_Research.pdf (trustwave.com)
Trello Leak:
Email addresses of 15 million Trello users leaked on hacking forum (bleepingcomputer.com)
Wiz Acquisition:
Exclusive | Google Near $23 Billion Deal for Cybersecurity Startup Wiz - WSJ
Microsoft Tweet Thread: Microsoft Threat Intelligence on X
CISA KEV Addition: NVD - CVE-2024-36401 (nist.gov)
AT&T Data Leak, Millions of Email Servers Vulnerable, and Disney's Slack Leaked?
Episode 3
lundi 15 juillet 2024 • Duration 12:20
Today’s Episode Topics for 15 July 2024
- AT&T Data Leaks
- 70%+ of public facing servers could be Vulnerable
- Apple warns iPhone customers of spyware in certain countries
- Netgear patches a Stored XSS Vulnerability
- A look at CrystalRay
- RiteAid hit with a data breach
- Disney’s Internal Slack possibly leaked
- Is your organization able to keep up with hackers?
Articles Referenced in the Show in the order they appear: AT&T Data Leak:
Exim Vulnerability:
Apple Warns of Spyware:
Apple warns iPhone users in 98 countries of spyware attacks | TechCrunch
Netgear Vulnerability:
Sysdig Report on CRYSTALRAY:
CRYSTALRAY: Inside the Operations of a Rising Threat Actor Exploiting OSS Tools | Sysdig
RiteAid Data Breach:
Rite Aid confirms data breach after June ransomware attack (bleepingcomputer.com)
Disney Internal Slack possibly leaked: NullBulge's Post
Cloudfare Applicattion Security Report 2024:
Application Security report: 2024 update (cloudflare.com)
If you like our show, please share it with others who you think would enjoy it. Also feel free to check out www.thecybersecuritydigest.com to find all of the locations you can listen to us. Please leave us a rating if you have found this show helpful, as it helps us out tremendously. Thank you!
Cybersecurity Digest for week of 12 July 2024
Episode 2
vendredi 12 juillet 2024 • Duration 12:27
This week we talk about
- Microsoft patches 140+ vulnerabilities including 2 zero days, in Patch Tuesday;
- Adobe patches critical issues in several of its products,
- 10 Billion Passwords leaked,
- 39,000 Ticket master tickets leaked,
- Chinese APT 40 hiijack routers
- Hackers are Targeting Wordpress plugins,
- A new attack bypasses RADIUS authentication
- CISA adds 3 new CVEs to its KEV
- and more in this episode
Articles Mentioned In Order they appear in the Show: July 2024 Security Updates - Release Notes - Security Update Guide - Microsoft
Windows MSHTML zero-day used in malware attacks for over a year (bleepingcomputer.com)
Whispers of Atlantida: Safeguarding Your Digital Treasure | Rapid7 Blog
Adobe Product Security Incident Response Team (PSIRT) RockYou2024: 10 billion passwords leaked in the largest compilation of all time | Cybernews
Hackers leak 39,000 print-at-home Ticketmaster tickets for 154 events (bleepingcomputer.com)
Advance Auto Parts data breach impacts 2.3 million people (bleepingcomputer.com) APT40 Advisory | Cyber.gov.au
VU#456537 - RADIUS protocol susceptible to forgery attacks. (cert.org)
BLAST RADIUS Palo Alto Networks Patches Critical Flaw in Expedition Migration Tool (thehackernews.com) GitLab Critical Patch Release: 17.1.2, 17.0.4, 16.11.6 | GitLab
Notable CISA KEV Additions:
NVD - CVE-2024-23692 (nist.gov) NVD - CVE-2024-38080 (nist.gov) NVD - CVE-2024-38112 (nist.gov)
The Cybersecurity Digest Trailer
samedi 6 juillet 2024 • Duration 01:10
With the cyber threat landscape ever evolving it can be challenging to stay up to date on the latest cybersecurity developments. There are so many fantastic security news sites and blogs out there. However, due to the sheer number of resources, I found it difficult to read them all and I wished there was a consistent way for me to listen to the latest security news…… that’s where the Cybersecurity Digest comes in. The goal of this show is to bring you a summary of the latest news, trends, and information relevant in the cybersecurity community. The hope is that the information you get from the show will help you stay well-informed and ahead of the adversaries out there. If this sounds like something you are interested in listening to, please give us a follow or subscribe and stay tuned for our upcoming first episode! Until Next time… Stay Informed to Stay Secure!
Newsletter Announcement
Episode 12
dimanche 18 août 2024 • Duration 02:03
This an announcement for the upcoming Cybersercurity Digest Newsletter that is launching on Aug 19 2024. If you are interested in subscribing or viewing the newsletter you can do so here: https://thecybersecuritydigest.tech/
Vulnerable IP Cameras, BITSLOTH, and a Discord DDoS Campaign
Episode 11
mardi 6 août 2024 • Duration 30:22
Security Digest for 6 August 2024:
Podcast Requested Feedback: https://forms.gle/w2RB5DRzbbvu3ziS7 Notable News: Over 20,000 Ubiquiti Cameras and Routers are Vulnerable to Amplification Attacks and Privacy Risks - Check Point Blog
BITS and Bytes: Analyzing BITSLOTH, a newly identified backdoor — Elastic Security Labs
Panamorfi: A New Discord DDoS Campaign (aquasec.com)
4.6 Million Voter and Election Documents Exposed Online by Technology Contractor (vpnmentor.com)
StormBamboo Compromises ISP to Abuse Insecure Software Update Mechanisms | Volexity
TgRAT malware returns with a Linux variant (broadcom.com)
Linux kernel impacted by new SLUBStick cross-cache attack (bleepingcomputer.com)
Fighting Ursa Luring Targets With Car for Sale (paloaltonetworks.com)
Keytronic reports losses of over $17 million after ransomware attack (bleepingcomputer.com)
Justice Department sues TikTok for alleged violations of children’s privacy (therecord.media)
Prevalent Patches: Critical Bitdefender Patch for GravityZone Update Server: CVE-2024-6980 Could Lead to SSRF Attacks - SOCRadar® Cyber Intelligence Inc. SonicWall Discovers Second Critical Apache OFBiz Zero-Day Vulnerability | SonicWall CISA Corner: CISA Adds One Known Exploited Vulnerability to Catalog | CISA
Revoked Certs, Microsoft Outage, and Sitting Ducks
Episode 10
vendredi 2 août 2024 • Duration 28:33
Security Digest for 2 August 2024:
Podcast Requested Feedback: https://forms.gle/w2RB5DRzbbvu3ziS7 Notable News: Certificate Revocation Incident | DigiCert 1910322 - DigiCert: Random value in CNAME without underscore prefix (mozilla.org) DigiCert Status - DigiCert Revocation Incident (CNAME-Based Domain Validation) Azure status history | Microsoft Azure Unmasking the SMS Stealer: Targeting Several Countries with Deceptive Apps - Zimperium Zscaler ThreatLabz 2024 Ransomware Report I Threat Research Cost of a data breach 2024 | IBM OneDrive Pastejacking (trellix.com) Threat actor impersonates Google via fake ad for Authenticator | Malwarebytes BingoMod: The new android RAT that steals money and wipes data | Cleafy Labs Who Knew? Domain Hijacking is So Easy | Infoblox Ducks Now Sitting (DNS): Internet Infrastructure Insecurity - Eclypsium | Supply Chain Security for the Modern Enterprise
Threat Actor Abuses Cloudflare Tunnels to Deliver RATs | Proofpoint US
Ransomware Details | OneBlood Prevalent Patches: Security notices | Ubuntu Red Hat Product Errata - Red Hat Customer Portal CISA Corner:
CISA Adds One Known Exploited Vulnerability to Catalog | CISA CISA Releases Nine Industrial Control Systems Advisories | CISA CISA Names First Chief Artificial Intelligence Officer | CISA
Outlook C2 Framework, VMWare ESXi Vuln, and PKFail leads to UEFI Supply Chain Attacks.
Episode 9
mardi 30 juillet 2024 • Duration 24:03
Security Digest for 30 July 2024:
Podcast Requested Feedback: https://forms.gle/w2RB5DRzbbvu3ziS7 Notable News: WhatsApp for Windows lets Python, PHP scripts execute with no warning (bleepingcomputer.com)
PKfail: Untrusted Platform Keys Undermine Secure Boot on UEFI Ecosystem (binarly.io) SupplyChainAttacks/PKfail/ImpactedDevices.md at main · binarly-io/SupplyChainAttacks · GitHub Malicious Python Package Targets macOS Developers (checkmarx.com)
SeleniumGreed Cryptomining Campaign Exploiting Grid Services | Wiz Blog Scammer Abuses Microsoft 365 Tenants, Relaying Through Proofpoint Servers to Deliver Spam Campaigns | Proofpoint US HealthEquity says data breach impacts 4.3 million people (bleepingcomputer.com) Two-Step Phishing Campaign Exploits Microsoft Office Forms (perception-point.io) Over 1 Million websites are at risk of sensitive information leakage (salt.security) TrustedSec | Specula - Turning Outlook Into a C2 With One Registry… Ransomware operators exploit ESXi hypervisor vulnerability for mass encryption | Microsoft Security Blog Support Content Notification - Support Portal - Broadcom support portal Prevalent Patches: Security Bulletin: NVIDIA Jetson AGX Xavier Series, Jetson Xavier NX, Jetson TX1, Jetson TX2 Series (including Jetson TX2 NX), and Jetson Nano (including Jetson Nano 2GB) - July 2024 | NVIDIA (custhelp.com) Apple security releases - Apple Support
CISA Corner: NVD - CVE-2024-4879 (nist.gov) NVD - CVE-2024-5217 (nist.gov) NVD - CVE-2023-45249 (nist.gov) Siemens SICAM Products | CISA Positron Broadcast Signal Processor | CISA









