Cisco Warns Webex Customers Of Critical SSO Problem

Cisco Warns Webex Customers Of Critical SSO Problem

WebEx SSO Vulnerability, booking.com Reservation Hijacking Risks, Windows Recall Scrutiny, and AI Vishing-as-a-Service

Host Jim Love reports that Cisco disclosed a critical WebEx vulnerability (CVE-2026-2184) affecting SSO integration with Control Hub; although server-side fixes are applied and no exploitation is seen, SSO customers must update SAML certificate configuration to avoid disruption when the old certificate expires, amid recent Cisco firewall zero-day exploitation (CVE-2026-2131) tied to interlock ransomware. A booking.com breach exposed some customers' reservation data (names, contact and address details, reservation details, and messages) but not payment cards, increasing phishing "reservation hijacking" risk using real itinerary details. Researchers also highlight new concerns with Microsoft's Windows 11 Recall, where data may be intercepted after login via another process, though Microsoft says protections are intended. Finally, an underground $4,000 platform, ATHR, automates phishing/vishing with AI voice agents to steal verification codes and accounts across major services.

Cybersecurity Today would like to thank Meter for their support in bringing you this podcast. Meter delivers a complete networking stack, wired, wireless and cellular in one integrated solution that's built for performance and scale. You can find them at Meter.com/cst

00:00 Top Security Headlines
00:32 Sponsor Message
00:50 WebEx Critical Flaw
02:36 Booking.com Breach Scams
05:20 Windows Recall Weaknesses
08:36 AI Voice Phishing Service
11:24 Wrap Up and Thanks

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(100)

Two new NetScaler zero-days exploited, ShinyHunters steals FBI medical files, OpenAI Australia hack disputed

Two new NetScaler zero-days exploited, ShinyHunters steals FBI medical files, OpenAI Australia hack disputed

Citrix NetScaler Zero-Days Exploited, Kiteworks Shutdown Warning, ShinyHunters WAF Bypass, FBI Medical Files Leak, OpenAI Medicare "Hack" Reframed Citrix confirms two actively exploited NetScaler zero...

28 Syys 16min

Is Privacy Dead?

Is Privacy Dead?

Is Privacy Dead—or on Life Support? Ross Saunders on Breaches, GDPR, AI, and Saving Privacy In this episode of Cybersecurity Today on the Weekend, host David Shipley speaks with Toronto-based privacy ...

26 Syys 48min

Open AI Agents Attack Australian Healthcare

Open AI Agents Attack Australian Healthcare

AI Agents Hacking Governments, ShinyHunters Targets FBI, and Muse Zero-Day on Mac | Cybersecurity Today David Shipley covers multiple cybersecurity stories: Australia's Prime Minister confirms an Open...

25 Syys 10min

Amazon Slams the door on Meta's Muse AI Agent

Amazon Slams the door on Meta's Muse AI Agent

Amazon Blocks Meta's AI Shopping Agent, FBI Boards Hacked Oil Tankers & Microsoft Patches Break Backups David Shipley covers Amazon blocking Meta's new AI agent Muse from shopping on Amazon, citing fa...

23 Syys 10min

Not you too Gemini? More AI hacking.

Not you too Gemini? More AI hacking.

Gemini Breaches Real Companies, OpenAI SSO Hijacked, Browser AI Agents Exposed | Cybersecurity Today David Shipley covers multiple cybersecurity headlines: Google's Gemini unintentionally accessed the...

21 Syys 13min

Anthropic insider claims 10% extinction risk, Five Eyes push basics, Microsoft patches backfire

Anthropic insider claims 10% extinction risk, Five Eyes push basics, Microsoft patches backfire

AI Doomerism vs. Cybersecurity Reality: Five Eyes 'Back to Basics,' Incident PR, and Microsoft's Patch/Unpatch Cycle On the month-end weekend episode of Cyber Security Today, Jim Love, David Shipley, ...

19 Syys 46min

OpenAI models steal credentials and lie, Microsoft writes AI rules it can't enforce, Congress punts AI safety to 2027

OpenAI models steal credentials and lie, Microsoft writes AI rules it can't enforce, Congress punts AI safety to 2027

OpenAI Models Self-Jailbreak & Leak Data, Microsoft's "Humanist AI" Promise, Windows Patch Tuesday Fallout, and AI Laws Delayed Host David Shipley covers reports that OpenAI disclosed six recent incid...

18 Syys 10min

Revolut hands customer data to criminals, Microsoft patches break Remote Desktop, Conti developer gets four years

Revolut hands customer data to criminals, Microsoft patches break Remote Desktop, Conti developer gets four years

Revolut Fooled by Fake Govt Data Requests, Microsoft RDP Patch Fallout, and Conti Dev Sentenced David Shipley covers multiple cybersecurity headlines: Revolut disclosed extensive customer data after f...

16 Syys 12min

Suosittua kategoriassa Politiikka ja uutiset

uutiscast
vallattomat
aikalisa
politiikan-puskaradio
rss-viihde-media
ootsa-kuullut-tasta-2
rss-vaalirankkurit-podcast
rss-ootsa-kuullut-tasta
otetaan-yhdet
tervo-halme
et-sa-noin-voi-sanoo-esittaa
rss-voi-venaja
rss-podme-livebox
rss-ulkopoditiikkaa
rss-asiastudio
the-ulkopolitist
rss-raha-talous-ja-politiikka
rss-kaikki-uusiksi
rss-50100-podcast
rss-girls-finish-f1rst