This Week in Cybersecurity: From Cisco Exploits to LockBit’s New Ransomware Evolution
In today’s episode, we dive into the latest cybersecurity stories shaping the digital landscape. From Cisco firewall exploits and QNAP zero-days to the rise of the Herodotus banking malware and Landfall spyware, we uncover how attackers are evolving. Plus, insights on China’s new IIS hacking campaigns, Microsoft Teams’ security concerns, and the advanced LockBit 5.0 ransomware making waves across global networks. Stay informed with this week’s top cyber threats.
--------
12:05
--------
12:05
Hyper-V Exploits, AI-Powered Malware, and Rising Cybercrime Alliances
In this episode, Edd Hall discusses how hackers are exploiting Windows Hyper-V to hide malware, Google’s warning about self-modifying AI threats, and Cisco’s alert on active firewall exploits. He also covers CISA’s new industrial control system advisories, a ransomware attack on Central Jersey Medical Center, and the growing problem of weak passwords. Plus, Edd explores how generative AI is fueling applicant fraud in healthcare and how three major cybercrime groups—Scattered Spider, LAPSUS$, and ShinyHunters—have joined forces under the new alliance Scattered LAPSUS Hunters.
--------
4:21
--------
4:21
AI Threats, and New Cybersecurity Breakthroughs Define This Week’s Tech Headlines
Stay updated on the latest in cybersecurity, AI-driven threats, and IT innovations. In this episode, we cover Google’s discovery of the self-modifying PROMPTFLUX malware, a major UK government IT upgrade, critical WordPress plugin vulnerabilities, SonicWall’s state-sponsored breach, AI-assisted cyberattacks, and Komodor’s new self-healing Kubernetes platform. Short, precise, and essential tech news for professionals and enthusiasts alike.
--------
5:05
--------
5:05
SesameOp Backdoor, TruffleNet Attacks, and Fake Microsoft Teams Ads
In this episode, Edd Hall discusses how cybercriminals are blending AI abuse, cloud exploitation, and social engineering to launch increasingly sophisticated attacks. From Microsoft uncovering the SesameOp backdoor that used OpenAI’s API for covert communication, to the TruffleNet campaign stealing AWS credentials, this week reveals how trusted technologies are being weaponized. Edd also breaks down new CISA advisories on industrial control systems, the U.S. CFPB’s declining cybersecurity posture, a React Native supply-chain flaw, a massive Swedish data breach affecting 1.5 million people, and a ransomware group spreading fake Microsoft Teams ads. Tune in to learn how these events highlight the growing need for vigilance, patching, and smarter cloud identity protection in today’s cyber landscape.
--------
5:01
--------
5:01
Today’s Cybersecurity Briefing: Malicious VSX Extension, and Insider Ransomware Scandal
In today’s HEAL Security Dispatch Daily Digest, we cover Microsoft’s latest WSUS patch that unexpectedly disables hotpatching, a malicious VSX extension targeting developers, and a shocking insider ransomware case. Plus, new details on MuddyWater’s Phoenix backdoor campaign, Odyssey Cybersecurity’s expansion in Saudi Arabia, WordPress’s WP-CLI tutorial, and cybercriminals exploiting remote-management tools to hijack logistics operations. Stay informed with the latest developments shaping the cybersecurity landscape.
About HEAL Security - Cybersecurity Intelligence & News for Healthcare
The Daily HEAL Security Dispatch Podcast is a leading source for up-to-the-minute news and deep insights in the realm of healthcare cybersecurity and threat intelligence.
At the heart of HEAL Security's vision is the commitment to equipping organizations and individuals with rapid, contextually rich cybersecurity updates, establishing itself as a pivotal force in unifying practice and data against the ingenious tactics of criminal and malicious entities. HEAL Security is fervently devoted to constructing a robust resource and community that champions the defense of the healthcare sector against the growing cyber threats from organized crime groups and antagonistic nation-states. Our core focus encompasses the protection of vital IT infrastructures, the security of sensitive patient and clinical information, the safeguarding of critical healthcare systems, and the assurance of continuous, undisturbed patient care services.
Listen to HEAL Security - Cybersecurity Intelligence & News for Healthcare, TED Radio Hour and many other podcasts from around the world with the radio.net app