Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec
Jerry Bell and Andrew Kalat

Latest episode
253 episodes
- Please consider supporting the DefSec podcast here.
1. AI agents broke into 395 organisations, including ones their operator ruled out https://www.helpnetsecurity.com/2026/09/11/ai-agents-papercut-ng-mf-attack-campaign/
2. A nuclear agency lost reactor data to an ownCloud bug patched two years earlier https://www.darkreading.com/cyberattacks-data-breaches/old-unpatched-flaws-attackers-philippines-nuclear-agency
3. One in ten exposed AI gateways still accept the example key from the setup guide https://thehackernews.com/2026/09/nearly-1-in-10-exposed-litellm-gateways.html
4. Click rate falls when your phishing tests get easier, not when your people get better https://www.helpnetsecurity.com/2026/09/11/pistachio-employee-phishing-risk-report/
5. Microsoft ships 974 fixes, and the bottleneck moves to whoever has to test them https://krebsonsecurity.com/2026/09/microsoft-plugs-nearly-1000-security-holes/ - Please consider supporting the DefSec podcast here.
1. CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing https://thehackernews.com/2026/08/cisa-red-team-compromised-two-critical.html
2. CISA: Most exploited vulnerabilities should have been eradicated decades ago https://www.theregister.com/security/2026/08/28/cisa-most-exploited-vulnerabilities-should-have-been-eradicated-decades-ago/5293194
3. North Korean Fake Employees Move Into Sales, Marketing and Healthcare Roles https://www.helpnetsecurity.com/2026/08/28/north-korean-remote-workers-jobs-sales-and-marketing/
4. Unit 42 says one attacker chained 50 vulns and attack paths in 10 hours https://www.cybersecuritydive.com/news/frontier-ai-tipping-scales-cyber-adversaries/829088/
5. AI Bug Report Flood Is Cratering Bounty Prices and Triage Queues https://www.darkreading.com/vulnerabilities-threats/vulnpocalypse-repricing-bug-bounty-economy - Please consider supporting the DefSec podcast here.
Stories:
Weak IAM affects up to 98% of cloud environments
https://www.helpnetsecurity.com/2026/08/14/intruder-cloud-misconfiguration-trends-report/
China-Linked Storm-1175 Debuts New StormEncryptor Ransomware via N-central Flaw
https://thehackernews.com/2026/08/china-linked-hackers-deploy-new.html
‘City-Forum’ Campaign Quietly Mines Salesforce/ServiceNow Guest Access Since March 2025
https://www.darkreading.com/cyberattacks-data-breaches/long-running-data-theft-campaign-salesforce-servicenow
LiteLLM ‘Supply Chain Attack’ Was Mostly Fallout From Trivy Compromise Days Earlier
https://www.securityweek.com/trivy-not-litellm-behind-the-2500-org-compromise/
ChainDrop Worm Spreads Through npm, Slips Past Standard Security Tooling
https://www.theregister.com/security/2026/08/15/chaindrop-worm-crawls-into-npm-supply-chain-evades-standard-defenses/5287958 - Please consider supporting the DefSec podcast here.
Stories:
https://www.cybersecuritydive.com/news/anthropic-claude-ai-hacking-test/826708
https://thecybersecguru.com/news/openai-ai-agent-containment-escapes-hugging-face-investigation/
https://www.bleepingcomputer.com/news/security/after-the-break-in-what-attackers-do-once-theyre-already-inside/
https://www.darkreading.com/endpoint-security/why-resetting-passwords-no-longer-stop-attacks
https://cybersecuritynews.com/adform-advertising-platform-compromised/ - https://www.helpnetsecurity.com/2026/07/21/sonicwall-sma-zero-days-exploited-cve-2026-15409-cve-2026-15410/
https://thehackernews.com/2026/07/qilin-ransomware-attackers-exploit-pan.html
https://thehackernews.com/2026/07/worlds-largest-ai-model-repository.html
https://openai.com/index/hugging-face-model-evaluation-security-incident/
https://www.darkreading.com/identity-access-management-security/identity-attacks-overtake-exploits-top-ransomware-cause
https://www.helpnetsecurity.com/2026/07/21/estee-lauder-data-breach-oracle-ebs/
More Business News podcasts
Trending Business News podcasts
About Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec
Defensive Security is a weekly information security podcast which reviews recent high profile cyber security breaches, data breaches, malware infections and intrusions to identify lessons that we can learn and apply to the organizations we protect.
Podcast websiteListen to Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec, World Business Report and many other podcasts from around the world with the radio.net app

Get the free radio.net app
- Stations and podcasts to bookmark
- Stream via Wi-Fi or Bluetooth
- Supports Carplay & Android Auto
- Many other app features
Get the free radio.net app
- Stations and podcasts to bookmark
- Stream via Wi-Fi or Bluetooth
- Supports Carplay & Android Auto
- Many other app features


Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec
Scan code,
download the app,
start listening.
download the app,
start listening.






