Microsoft Bug Bounty, CISA hiring surge, US goes offensive in cyber ops, OWASP Top 10
Blue Security16 Joulu 2025

Microsoft Bug Bounty, CISA hiring surge, US goes offensive in cyber ops, OWASP Top 10

Summary

In this episode of the Blue Security Podcast, hosts Andy and Adam discuss significant updates in cybersecurity, including Microsoft's overhaul of its bug bounty program, CISA's hiring strategy amidst workforce challenges, the US's shift towards a more aggressive cyber strategy, and insights from the updated OWASP Top 10 vulnerabilities. The conversation emphasizes the importance of security research, the evolving landscape of cybersecurity threats, and the need for organizations to prioritize basic security practices.

----------------------------------------------------

YouTube Video Link: https://youtu.be/dgAjUunyiKE

----------------------------------------------------

Documentation:

https://www.theregister.com/2025/12/12/microsoft_more_bug_payouts/

https://www.cybersecuritydive.com/news/cisa-hiring-workforce-strategy/805733/

https://www.darkreading.com/cyber-risk/us-makes-cyber-strategy-changes

https://owasp.org/Top10/2025/0x00_2025-Introduction/

----------------------------------------------------

Contact Us:

Website: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://bluesecuritypod.com

Bluesky: https://bsky.app/profile/bluesecuritypod.com

LinkedIn: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://www.linkedin.com/company/bluesecpod

YouTube: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://www.youtube.com/c/BlueSecurityPodcast

-----------------------------------------------------------

Andy Jaw

Bluesky: https://bsky.app/profile/ajawzero.com

LinkedIn: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://www.linkedin.com/in/andyjaw/

Email: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠andy@bluesecuritypod.com⁠

----------------------------------------------------

Adam Brewer

Twitter: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://twitter.com/ajbrewer

LinkedIn: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://www.linkedin.com/in/adamjbrewer/

Email: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠adam@bluesecuritypod.com

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(326)

Critical infrastructure hacks and rogue AI agents

Critical infrastructure hacks and rogue AI agents

SummaryIn this episode of the Blue Security Podcast, hosts Andy Jaw and Adam Brewer discuss the recent cyberattacks on water systems in Minnesota, attributed to Iran-linked hackers. They explore the v...

11 Elo 54min

Hotel Wi-Fi Hijacks and Border Phone Searches

Hotel Wi-Fi Hijacks and Border Phone Searches

SummaryIn this episode of the Blue Security Podcast, host Andy Jaw and guest Carly Salmon discuss critical issues in data security, focusing on a recent hotel Wi-Fi hack that exploits DNS settings to ...

4 Elo 47min

MDASH in Prod, Intune Sync, OpenAI-Hugging Face Incident

MDASH in Prod, Intune Sync, OpenAI-Hugging Face Incident

SummaryIn this episode of the Blue Security Podcast, hosts Andy Jaw and Adam Brewer discuss significant developments in cybersecurity, including Microsoft's new AI vulnerability scanner, the long-awai...

28 Heinä 50min

Identity Update: Passkeys by Default, Phone Transfers, Physical Key Security

Identity Update: Passkeys by Default, Phone Transfers, Physical Key Security

SummaryIn this episode of the Blue Security Podcast, hosts Andy Jaw and Adam Brewer discuss the upcoming transition to passkeys as the default method for multi-factor authentication (MFA) in Microsoft...

21 Heinä 34min

North Korean IT Worker Scam

North Korean IT Worker Scam

SummaryIn this episode of the Blue Security Podcast, host Andy Jaw delves into the alarming rise of North Korean IT worker scams, exploring their historical context, operational tactics, and the finan...

14 Heinä 48min

Claude Fable, SharePoint RCE, and CISA's KEV list

Claude Fable, SharePoint RCE, and CISA's KEV list

SummaryIn this episode of the Blue Security Podcast, hosts Andy Jaw and Adam Brewer discuss Andy's career transition from Microsoft to Zscaler, the return of the AI model Fable and its user experience...

7 Heinä 22min

Helping or Hurting? - An Honest Conversation About AI

Helping or Hurting? - An Honest Conversation About AI

SummaryIn this episode of the Blue Security Podcast, hosts Andy Jaw and Adam Brewer engage in a deep discussion about the implications of AI on society and the security industry. They explore whether ...

30 Kesä 1h 3min

Your MDM Admin Can Wipe Everything. Are You Protecting Them Like It?

Your MDM Admin Can Wipe Everything. Are You Protecting Them Like It?

SummaryIn this episode of the Blue Security Podcast, hosts Andy Jaw and Adam Brewer delve into the critical topic of Mobile Device Management (MDM) and the associated administrative rights. They discu...

23 Kesä 32min