3821 episodes
- Today we are joined by Ensar Seker, VP of Research and CISO at SOCRadar, discussing their work on "Exposing AnonyMousKIT: AI-Powered PhaaS Supply Chain." An investigation into AnonyMousKIT reveals an AI-powered Phishing-as-a-Service platform designed to steal Apple credentials and disable Activation Lock on stolen devices.
The platform uses email, SMS, WhatsApp, and AI-driven voice calls to impersonate Apple Support, with researchers uncovering a broader ecosystem spanning 506 domains, 168 storefront brands, and 30 backend installations. Despite its sophisticated social-engineering capabilities, basic coding flaws exposed extensive operational logs and revealed the shared infrastructure, developer activity, and reseller network behind the criminal operation.
The research and executive brief can be found here:
Exposing AnonyMousKIT: AI-Powered PhaaS Supply Chain
Learn more about your ad choices. Visit megaphone.fm/adchoices - Kiteworks urges customers pull the plug on vulnerable servers. CISA lays out its election security plan. Known vulnerabilities linger unpatched. Big AI labs consider a new standards body. Questions surround claims of an OpenAI Medicare hack. File notifications become a privacy leak. SectopRAT hides in audio software. A new Android banking trojan takes control. An attacker puts open-source AI agents to work hacking hundreds of organizations. A Rydox cybercrime marketplace operator pleads guilty. Our guest is Todd Thorsen, CISO of CrashPlan, with ways to prepare for and react to critical infrastructure campaigns. Americans give AI the side-eye.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Todd Thorsen, CISO of CrashPlan, discusses ways to prepare for and react to critical infrastructure campaigns, and how AI is contributing to a bigger and more disruptive attack surface.
Selected Reading
Imminent Zero-Day Attack: KiteWorks Urges Customers to Shut Down Servers (Heise)
CISA Election Security Plan Flags Patching Barriers, Voter Database Attacks (SecurityWeek)
Only 26% of Detected CISA Known Exploited Vulnerabilities Were Fully Remediated (Hackread)
Google, OpenAI, Anthropic Plan Frontier AI Standards Body (GovInfo Security)
Doubts grow over claims OpenAI agent hacked Australian Medicare portal (The Record)
Windows, Linux, Android File Notification Systems Leak User Activity (SecurityWeek)
SectopRAT Abuses Legitimate Audio Software Files to Steal PC Data (Hackread)
RemControl Banking Trojan Gives Attackers Remote Control of Android Devices (Infosecurity Magazine)
Crook used three open source agents to break into a Fortune 500 hospitality company, a major US airline and 25+ other orgs (The Register)
Kosovar Owner of Rydox Marketplace Pleads Guilty in US Court (SecurityWeek)
Americans Fear AI Will Make the World Worse, Love It Anyway (404 Media)
Share your feedback.
What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show.
Want to hear your company in the show?
N2K CyberWire helps you reach the industry’s most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices - Researchers find a new way to weaken RSA. ShinyHunters allegedly exposes sensitive FBI details. CISA and the FBI warn of third-party ICS risks. An OpenAI agent hacks an Australian government portal. SolarWinds patches critical flaws. A placeholder domain delivers ClickFix. Digital forensics executives face charges over alleged Russian ties. ENISA maps Europe’s cyber threats. The U.S. and China have very different ideas about AI safety. Our guest is Kurt Dusek, Technical Product Advisor at Appdome, sharing thoughts on segregation of duties and AI agents. Women in tech have their say.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Today we are joined by Kurt Dusek, Technical Product Advisor at Appdome, sharing thoughts on "Segregation of duties was built for humans. What happens when the workers are AI agents?"
Selected Reading
There's a new way to break RSA that's faster than anything we've seen before (Ars Technica)
Stolen FBI data reveals employees’ roles in intelligence and surveillance (Nextgov/FCW)
CISA, FBI warn critical infrastructure operators of third-party ICS risks, urge least privilege and remote access controls (Industrial Cyber)
OpenAI Agent Hacks Australian Medicare Portal (Infosecurity Magazine)
SolarWinds Patches Critical RCE Flaws in Observability Self-Hosted (SecurityWeek)
Placeholder domain used in dev docs now serves ClickFix attacks (Bleeping Computer)
Phone Hacking Software Firm Hid Russian Ownership, Say Feds (GovInfo Security)
Exploring the evolution of the cyber threat landscape: How dependencies weaken our digital resilience (ENISA)
Opinion | The U.S. and China Are Far Apart on A.I. Safety (The New York Times)
We Surveyed 634 Women Who Work in Tech. They Let Loose (WIRED)
Share your feedback.
What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show.
Want to hear your company in the show?
N2K CyberWire helps you reach the industry’s most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices - ShinyHunters claims to have breached FBI systems. CLOSEDQUORUM malware delegates command-and-control decisions to commercial LLMs. An IT error erases 11 years of hospital maternity data. F5 patches a critical BIG-IP APM zero-day. Ransomware activity remains high. Microsoft disrupts the EvilTokens cybercrime platform. Researchers turn Claude Code’s normal workflow against itself. Pundits propose an AI Assurance Compact. A Ryuk ransomware gang member gets two years prison time. Our guest is Jen Sovada, General Manager of Public Sector at Claroty, on Project Watershed 250 and the challenges facing U.S. water utilities. Meta’s Muse mettles with messages.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Today we are joined by Jen Sovada, General Manager, Public Sector at Claroty, on what Project Watershed 250 can reveal about the cybersecurity challenges facing U.S. water utilities.
Selected Reading
‘We Hacked the FBI:’ Hackers Say They Have Data on All FBI Employees (404 Media)
The Closed Quorum: Inside the first reported autonomous AI C2 implant (Cisco Talos)
IT mistake erases 11 years of viewing history for hospitals’ maternity records (Ars Technica)
F5 patches BIG-IP APM zero-day flaw exploited in RCE attacks (Bleeping Computer)
UK launches its first 'space squadron' to counter hostile threats (The National)
Ransomware Attacks Reach Record High for 2026 (Infosecurity Magazine)
Disrupting EvilTokens: The AI Chatbot Built for Cybercrime (Microsoft On the Issues)
Fable to Haiku: How a Malicious Repo Tricked Claude Code Into Running Malware (Straiker)
The President has called for AI leadership. Here’s the mission (CyberScoop)
Ryuk ransomware member sentenced to 24 months in prison (Bleeping Computer)
Meta’s New Muse AI Agent Read My Private Messages. I Never Asked It To (Inc.)
Share your feedback.
What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show.
Want to hear your company in the show?
N2K CyberWire helps you reach the industry’s most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices - CISA rides out a Cyber Storm. The EU struggles to share cyber threat information. Nightmare Eclipse drops another Defender zero-day. TASK#STOMP steals business documents. North Korean operatives fake their way through job interviews. A genetics lab pays $700,000 over a phishing breach. A zero-day in Meta’s Muse AI assistant opens the door to privilege hijacking. Marc Woolward, Senior Advisor to Humanix and former CTO for Goldman Sachs, discussing social engineering and vishing attacks. Infiltrating Team PCP.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
Today we are joined by Marc Woolward, former CTO for Goldman Sachs and Senior Advisor to Humanix, discussing social engineering/vishing attacks and how ShinyHunters continues to use this method on other industries.
Selected Reading
CISA’s Cyber Storm X tests cybersecurity preparedness across transportation, water and wastewater sectors (Industrial Cyber)
Another worry for water systems: infostealer exposure (CyberScoop)
Poor data sharing undermining EU cyber defences, auditors say (Reuters)
New TASK#STOMP Windows Backdoor Enables Continuous Document Theft (Hackread)
New Windows Defender zero-day blocks Microsoft antivirus updates (Bleeping Computer)
Japan Dismantles First North Korean Laptop Farm as US and Allies Detail Wider Scheme (SecurityWeek)
Ambry Genetics Pays $700K HIPAA Fine in Phishing Breach (GovInfo Security)
Meta Muse AI app flaw lets local malware redirect dictation traffic (The Register)
An Undercover Google Analyst Infiltrated a Notorious Supply-Chain Hacking Gang (WIRED)
Share your feedback.
What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show.
Want to hear your company in the show?
N2K CyberWire helps you reach the industry’s most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.
Learn more about your ad choices. Visit megaphone.fm/adchoices
More News podcasts
Trending News podcasts
About CyberWire Daily
The daily cybersecurity news and analysis industry leaders depend on. Published each weekday, the program also includes interviews with a wide spectrum of experts from industry, academia, and research organizations all over the world.
Podcast websiteListen to CyberWire Daily, The News Agents and many other podcasts from around the world with the radio.net app
Get the free radio.net app
- Stations and podcasts to bookmark
- Stream via Wi-Fi or Bluetooth
- Supports Carplay & Android Auto
- Many other app features
Get the free radio.net app
- Stations and podcasts to bookmark
- Stream via Wi-Fi or Bluetooth
- Supports Carplay & Android Auto
- Many other app features

CyberWire Daily
Scan code,
download the app,
start listening.
download the app,
start listening.
CyberWire Daily: Podcasts in Family























