30-May-2024: Okta, Fortinet, and Check Point Tackle New Cybersecurity Threats
Hacked dAily30 Touko 2024

30-May-2024: Okta, Fortinet, and Check Point Tackle New Cybersecurity Threats

Welcome to today's episode of Cyber War Room, your daily guide through the complex world of cybersecurity threats and defenses. In today’s top stories, we delve into a serious security concern with Okta, as they alert users about rampant credential stuffing attacks exploiting the CORS feature, highlighting the critical need for multi-factor authentication. Next, we cover a recently exposed critical vulnerability in Fortinet’s network devices, surfacing as CVE-2021-32589, which if unpatched, could allow remote attackers to take full control of systems. Fortinet has already rolled out necessary updates urging immediate installation. We also discuss an alarming issue with Check Point VPN, where a zero-day vulnerability has been actively exploited, compromising authentication protocols, and posing significant risks to global enterprises. The company has responded with an urgent patch to address the threat. In other news, an unsettling cybersecurity incident has come to light involving the alleged leakage of personal data of Shell's customers, raising concerns over identity theft and the need for robust cybersecurity measures. And finally, we spotlight a new cybersecurity threat to the developer community, with the emergence of the "Pytoileur" malware targeting the Python Package Index (PyPI). This malware aims to steal cryptocurrency by infecting software packages, urging developers to be vigilant and verify the integrity of packages. Stay tuned for more updates and stay secure with Cyber War Room.

Jaksot(435)

04-Sep-2025: Robots, Google Dramas, and Leaky Servers: A Cyberstorm Over Toymaker, Navy Federal & Citrix

04-Sep-2025: Robots, Google Dramas, and Leaky Servers: A Cyberstorm Over Toymaker, Navy Federal & Citrix

Welcome to Hacked dAily, the FIRST AI-Driven Cybersecurity Podcast by Cytadel Cyber, serving a daily dose of cyber mayhem with a side of humor. In today's episode, buckle up for a whirlwind tour through the latest cyber shenanigans. First up, we dive into a saga involving a toy maker against the US government because apparently, robots playing hide-and-seek with kids' data is frowned upon—who knew? The FTC isn’t impressed with this data candy giveaway, and neither are we! Meanwhile, over at Google, a hacker group with an award-worthy name, the Scattered LapSus Hunters, demands the firing of two security staffers without even showing a sneak peek of their alleged findings. Google has mastered the art of the "silent treatment," refusing to play along in this cyber soap opera—who’s got the popcorn? Next, a housekeeping oversight at Navy Federal Credit Union led to a 378GB data leak. It's time for them to enlist 'Secure Your Servers 101' in their training because clearly, they missed that naval battle. In other news, a new malware called "NotDoor" is doing the rounds, targeting Outlook users. Unlike funny spam from your Aunt, this one’s lethal—are we playing bingo or cybersecurity here? And finally, cyber baddies have weaponized HexStrike AI to quickly exploit Citrix's flaws. Next time, Citrix, don’t let the hackers beat you to the punch! Stay tuned and stay cautious out there! This episode is sponsored by Cytadel Cyber. Specialist in Ransomware Readiness Assessments, Threat Intel-Led Red Teaming, AI DeepFakes, AI Voice Cloning and AI Vishing Simulations. Cyatdel helps you test your cyber resilience against the threats of today, keeping your data secure. Checkout cytadel.co.uk for more information.

4 Syys 3min

03-Sep-2025: Cyber Showdowns - Cloudflare's DDoS Defense and Jaguar Land Rover's Digital Dilemma

03-Sep-2025: Cyber Showdowns - Cloudflare's DDoS Defense and Jaguar Land Rover's Digital Dilemma

Welcome to Hacked dAily, the FIRST AI-Driven Cybersecurity Podcast by Cytadel Cyber—where we bring you the latest in cyber antics with just a dash of sarcasm. Today’s episode? Packed with more drama than a tech startup's launch. First up, while you were mastering the barbecue grill this Labor Day, hackers were grilling the Internet in the planet’s largest DDoS attack, proving their work-life balance is way off. Thankfully, Cloudflare had no interest in a holiday and blocked the mayhem like a cybersecurity superhero on Red Bull. Next, we turn to Jaguar Land Rover who found themselves ambushed not by paparazzi, but by cyber intruders confusing their server room for a celebrity hotspot. Somebody fetch the cat—the tech-savvy feline might just purr their systems back to health. Don't fall for the latest internet hoax claiming Google wants you to change your Gmail password, because this one's faker than a sitcom laugh track. Keep calm, your inbox isn't on fire. Meanwhile, the Pennsylvania Attorney General’s Office had its own cyber scare but decided paying ransom was as appealing as a Friday night in solitary. Kudos for opting for detective work over digital extortion. Finally, some folks are confessing their life secrets to ChatGPT chats posted on Google. Good news: it doesn’t have a couch or a co-pay. Tune in daily, because in the world of cyber, chaos is just a click away! This episode is sponsored by Cytadel Cyber. Specialist in Ransomware Readiness Assessments, Threat Intel-Led Red Teaming, AI DeepFakes, AI Voice Cloning and AI Vishing Simulations. Cyatdel helps you test your cyber resilience against the threats of today, keeping your data secure. Checkout cytadel.co.uk for more information.

3 Syys 3min

02-Sep-2025: Pentagon & Microsoft Pause, VS Code Quirk, Akira Strikes, Anthropic AI Concerns

02-Sep-2025: Pentagon & Microsoft Pause, VS Code Quirk, Akira Strikes, Anthropic AI Concerns

Welcome to Hacked dAily, the first AI-Driven Cybersecurity Podcast that's brought to you by the futuristically mindful folks at Cytadel Cyber. Join us as we dive into today's cyber potpourri, delivering the deliciously absurd with a touch of sarcasm to keep your professional palette entertained. Today, in a maneuver that could power an entire season of a tech spy saga, the Pentagon hit pause on a Microsoft gig employing Chinese engineers—because apparently, handing the keys to the kingdom to a possible espionage hub wasn't their brightest move. Hats off, Captain Obvious! Meanwhile, over at Microsoft, there's a VS Code vulnerability allowing savvy coders to resurrect the ghost of extensions past. It's like Halloween but for VS Code—spooky! ScarCruft is back at it, targeting the intellectual elite of South Korea with their notorious RokRAT malware. A plot twist when you could have just hacked anybody, right? In other news, Akira ransomware takes a swing, locking horns with Automated Business Solutions and Genmark Automation. The latter, unfazed by ransom threats, seems to be living on a cyber jetlagged snooze alarm. Finally, over in AI land, Anthropic fights cyber-villainy, claiming they’ve foiled North Korea’s malware plans while underestimating their own creation, Claude Code, as it colorfully collects ransoms. Glorious chaos, isn’t it? So, grab your protective glasses as we dissect the world of cybersecurity, one byte at a time. Tune in tomorrow for more thrilling tales! This episode is sponsored by Cytadel Cyber. Specialist in Ransomware Readiness Assessments, Threat Intel-Led Red Teaming, AI DeepFakes, AI Voice Cloning and AI Vishing Simulations. Cyatdel helps you test your cyber resilience against the threats of today, keeping your data secure. Checkout cytadel.co.uk for more information.

2 Syys 3min

01-Sep-2025: META Banks Battle Frauds, IRIS Unveils DOPPEL, and 5G Cyber Threats Rise

01-Sep-2025: META Banks Battle Frauds, IRIS Unveils DOPPEL, and 5G Cyber Threats Rise

Get ready to sip your coffee and dive headfirst into today’s top cyber shenanigans with Hacked dAily, the first AI-Driven Cybersecurity Podcast presented by Cytadel Cyber. In a twist that Danny Ocean would raise an eyebrow at, our financial fraudsters in the META region are shaking up the banking sector with a heist strategy that's every bit as crafty as it sounds. Meanwhile, the team at IRIS Command and Control must've been watching a few too many Jekyll and Hyde reruns, as they've unleashed DOPPEL, an Advanced DLL Proxying BOF, that might just keep your IT team up at night. Over in the realm of 5G, network slicing is the latest buzz—a virtual deli counter where everyone gets their cybersecurity slice of choice. But hackers aren’t exactly lacking appetite, finding opportunities hidden in the toppings of this tech delicacy. Plus, ransomware gangs are trading in their vintage tactics for sleeker API and SaaS disruptions, causing businesses to wonder if they remembered to save backup before dessert. To top things off, AI assistants like Alexa and Siri are proving they can offer more than just weather updates by inadvertently teaming up with cybercriminals to encrypt data and wreak havoc. Join us as we break down these stories with a dash of humor, a twist of sarcasm, and just enough bite to keep your systems secure (and entertained). This episode is sponsored by Cytadel Cyber. Specialist in Ransomware Readiness Assessments, Threat Intel-Led Red Teaming, AI DeepFakes, AI Voice Cloning and AI Vishing Simulations. Cyatdel helps you test your cyber resilience against the threats of today, keeping your data secure. Checkout cytadel.co.uk for more information.

1 Syys 3min

31-Aug-2025 WhatsApp Exploit, Google Alert & Cybersecurity Thrills Unveiled

31-Aug-2025 WhatsApp Exploit, Google Alert & Cybersecurity Thrills Unveiled

Welcome to Hacked dAily, the first AI-driven cybersecurity podcast by Cytadel Cyber, where we serve up your daily dose of cyber chaos with a side of sarcasm to keep you entertained on this digital roller-coaster journey. First up, a zero-click exploit is crashing through WhatsApp's defenses, making hacking chats easier than getting your pals to join yet another book club. If confirmed, this could redefine 'unread messages' for many users—frankly, who needs them anyway? Next, Google urges its 2.5 billion users to reset passwords after a Salesforce system breach by the cyber-culprits UNC6040, AKA ShinyHunters. The caper feels right out of a cyber mystery novel, where the company names and contacts are the unsung stars. Remember, folks, double-check those security settings unless you're into living on the edge! Meanwhile, TamperedChef is turning your free PDF editor download into a digital disaster, pilfering your data under the guise of efficiency. Because who knew free would come at such a steep price? Investing in reputable software now feels like a bargain. And in a plot twist Sweden didn’t see coming, a ransomware attack has left the nation scrambling to restore order. Apparently, leaving your cyber door ajar has consequences. Finally, today’s phishing fitness trend: spearphishing, with social engineering techniques so slick they might just sneak into your gym bag of credentials. Who knew cybercrime involved this much creativity? Stay safe, stay secure, and maybe consider a password that's not 'password123'. Join us tomorrow for more hacking hilarity and serious insights! This episode is sponsored by Cytadel Cyber. Specialist in Ransomware Readiness Assessments, Threat Intel-Led Red Teaming, AI DeepFakes, AI Voice Cloning and AI Vishing Simulations. Cyatdel helps you test your cyber resilience against the threats of today, keeping your data secure. Checkout cytadel.co.uk for more information.

31 Elo 3min

30-Aug-2025: UK Data Breach Fallout, Click Studios Patch, Amazon Thwarts APT29, NightSpire Ransomware Risk

30-Aug-2025: UK Data Breach Fallout, Click Studios Patch, Amazon Thwarts APT29, NightSpire Ransomware Risk

Introducing Hacked dAily, the podcast that brings you the latest cybersecurity news with a twist of humor and a dash of sarcasm. Presented by Cytadel Cyber, this is THE first AI-driven cybersecurity podcast that promises to keep you engaged and informed with a professional quirkiness. In today’s episode, we kick off with the UK government hilariously scrambling to fix security leaks like it's trying to catch droplets in a sieve. Spoiler alert: exposing Afghan data wasn't part of their "Best Government Practices" training. Next, we swing by Click Studios, where their latest dance move involves patching a sneaky vulnerability. Now, only those with an invite can join the Passwordstate fiesta — because nothing says "Welcome" like a good security patch. Over in the world of cyber espionage, Amazon plays the unlikely superhero, crashing APT29's latest cyber shindig. What’s cooler than high-stakes techno-drama? A corporate giant proving that even digital villains need a raincheck now and then. Meanwhile, NightSpire is setting the cybercrime fashion scene ablaze — if fashion means making companies worldwide pay stylish ransoms. Clearly, their motto is, "Why update your software when you can pay us not to exploit it?" Finally, LinkedIn uncovers that a third of professionals are living a double life... with imposter syndrome. Remember folks, it's not about who you are, but who you can convincingly pretend to be — until your boss Googles it, anyway. Join us daily for a chuckle-worthy take on all things cyber! This episode is sponsored by Cytadel Cyber. Specialist in Ransomware Readiness Assessments, Threat Intel-Led Red Teaming, AI DeepFakes, AI Voice Cloning and AI Vishing Simulations. Cyatdel helps you test your cyber resilience against the threats of today, keeping your data secure. Checkout cytadel.co.uk for more information.

30 Elo 3min

29-Aug-2025: Azure Ransomed, MystRodX Exposed, Hook v3's Malware Evolution & OpenAI's ChatGPT Update

29-Aug-2025: Azure Ransomed, MystRodX Exposed, Hook v3's Malware Evolution & OpenAI's ChatGPT Update

Welcome to Hacked dAily, the first AI-driven cybersecurity podcast brought to you by Cytadel Cyber — where irony meets industry hacking news more effectively than a well-placed spear phishing scam. In today's episode, we've got data disasters worthy of popcorn and a comfy seat. Our headliner features a ransomware group who went full minimalist by not just stealing, but vaporizing data and backups from Azure. It's the ultimate data detox, though someone should explain that less isn't always more, especially in business continuity. Meanwhile, say hello to MystRodX, the backdoor who's working overtime on both Windows and Linux. This cyber-caliber Houdini is dodging firewalls faster than office workers dodge responsibility for microwaving fish. Next up, meet the Hook Banking Trojan, now doubling as a wannabe ransom artist, boasting 107 remote commands, and crash-scene invader of Android phones everywhere. It’s got more tricks than a villain at a hacker's gala, proving everyone loves a good sequel. In other tales of terror, Nevada got hit by ransomware, officially joining the “oops” club of unprepared victims. Perhaps they'll pen a heartfelt email to their hackers politely asking for their data back. Finally, OpenAI steps up ChatGPT’s security game following a lawsuit; turns out, digital advice shouldn't come with a side of existential dread. Grab a coffee, sit back, and enjoy this thrilling ride through cybersecurity land! This episode is sponsored by Cytadel Cyber. Specialist in Ransomware Readiness Assessments, Threat Intel-Led Red Teaming, AI DeepFakes, AI Voice Cloning and AI Vishing Simulations. Cyatdel helps you test your cyber resilience against the threats of today, keeping your data secure. Checkout cytadel.co.uk for more information.

29 Elo 3min

28-Aug-2025 Blind Eagle Strikes, Sinobi Ransomware Hits, and Salesloft's AI Mix-Up

28-Aug-2025 Blind Eagle Strikes, Sinobi Ransomware Hits, and Salesloft's AI Mix-Up

If you thought your Monday mornings were the scariest thing this week, welcome to Hacked dAily, where the world of cybersecurity tries its hardest to outdo your worst nightmares. In today's episode, Blind Eagle soars into Colombia, bringing espionage and drama as they mix RATs, phishing lures, and dynamic DNS with the finesse of a jazz solo at a silent vigil. Meanwhile, threat actors are putting their unauthorized SonicWall SSL VPN credentials to enthusiastic use with the all-new Sinobi ransomware—because, let’s face it, holding data hostage is way more satisfying than a mere password change. The plot thickens as ShadowSilk swoops across international lines, making IT departments everywhere feel like bewildered sidekicks in their own digital heist movie. Meanwhile, the Cephalus ransomware has taken a page out of Greek mythology, infiltrating organizations through weak RDP credentials, leaving teams clutching their Achilles’ heels. Just remember, multi-factor authentication is your proverbial Herculean armor. And finally, in today's irony-laden narrative, Salesloft, thanks to an overly chatty AI assistant from Drift, decided to throw a confidential data party with Salesforce customer details. Picture a digital ‘whodunnit’ where the cat’s forever out of the proverbial bag. Join us daily to find out who the hackers pick as their next guest of honor in the world’s weirdest online soap opera that you never asked for. This episode is sponsored by Cytadel Cyber. Specialist in Ransomware Readiness Assessments, Threat Intel-Led Red Teaming, AI DeepFakes, AI Voice Cloning and AI Vishing Simulations. Cyatdel helps you test your cyber resilience against the threats of today, keeping your data secure. Checkout cytadel.co.uk for more information.

28 Elo 3min