• EU age verification, train brakes vulnerability, Grok-4 jailbroken
    Jul 15 2025
    EU states to test age verification app

    (Reuters)

    AAR pledges to start fixing 20-year old vulnerability next year

    (Security Week)

    Grok-4 jailbroken in two days

    (Infosecurity Magazine)

    DoD awards contracts for agentic AI

    (Reuters)

    eSIM vulnerability exposes billions of IoT devices

    (Infosecurity Magazine)

    UK launches Vulnerability Research Initiative

    (Bleeping Computer)

    Interlock ransomware using FileFix for malware

    (Bleeping Computer)

    Disinformation groups spoofs European journalists

    (The Record)

    Elmo gets hacked

    (AP News)

    Huge thanks to our sponsor, ThreatLocker

    ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com/CISO.

    Show more Show less
    8 mins
  • CitrixBleed2 urgent fix, Gemini email flaw, Louis Vuitton cyberattack
    Jul 14 2025

    CISA gives one day for Citrix Bleed 2 fix

    Google Gemini flaw hijacks email summaries for phishing

    Louis Vuitton says UK customer data stolen in cyber-attack

    Huge thanks to our sponsor, ThreatLocker

    ThreatLocker® is a global leader in Zero Trust endpoint security, offering cybersecurity controls to protect businesses from zero-day attacks and ransomware. ThreatLocker operates with a default deny approach to reduce the attack surface and mitigate potential cyber vulnerabilities. To learn more and start your free trial, visit ThreatLocker.com/CISO.

    Find the stories behind the headlines at CISOseries.com.

    Show more Show less
    9 mins
  • Week in Review: ChatGPT URL vulnerability, McDonald’s password problem, Perfekt Bluetooth blunder
    Jul 11 2025

    Link to episode page

    This week’s Cyber Security Headlines – Week in Review is hosted by Rich Stroffolino with guest Jim Bowie, vp, CISO, Tampa General Hospital

    Thanks to our show sponsor, Vanta

    Do you know the status of your compliance controls right now? Like…right now?
    We know that real-time visibility is critical for security, but when it comes to our GRC programs…we rely on point-in-time checks. But more than 9,000 companies have continuous visibility into their controls with Vanta. Vanta brings automation to evidence collection across over 35 frameworks, like SOC 2 and ISO 27001. They also centralize key workflows like policies, access reviews, and reporting, and helps you get security questionnaires done 5 times faster with AI. Now that’s…a new way to GRC. Get started at Vanta.com/headlines

    All links and the video of this episode can be found on CISO Series.com

    Show more Show less
    25 mins
  • Outlook outage continues, Iranian APT activity, Russian ransomware arrest
    Jul 11 2025

    Look Out! Another Outlook Outage

    Iranian APTs increased activity against U.S. industries in late spring

    Russian basketball player arrested in France over alleged ransomware ties

    Huge thanks to our sponsor, Vanta

    Do you know the status of your compliance controls right now? Like...right now?

    We know that real-time visibility is critical for security, but when it comes to our GRC programs…we rely on point-in-time checks.

    But more than 9,000 companies have continuous visibility into their controls with Vanta. Vanta brings automation to evidence collection across over 35 frameworks, like SOC 2 and ISO 27001.

    They also centralize key workflows like policies, access reviews, and reporting, and helps you get security questionnaires done 5 times faster with AI. Now that’s…a new way to GRC.

    Get started at Vanta.com/headlines

    Find the stories behind the headlines at CISOseries.com.

    Show more Show less
    10 mins
  • AMD has CPU meltdown, Mozilla Thunderbird has vulnerabilities, Indian defense sector attacked
    Jul 10 2025

    AMD warns of new Meltdown, Spectre-like bugs affecting CPUs

    Multiple vulnerabilities in Mozilla Thunderbird could allow for arbitrary code execution

    Bitcoin Depot breach exposes data of nearly 27,000 crypto users, More than $40 million stolen from GMX crypto platform

    Huge thanks to our sponsor, Vanta

    Do you know the status of your compliance controls right now? Like...right now?

    We know that real-time visibility is critical for security, but when it comes to our GRC programs…we rely on point-in-time checks.

    But more than 9,000 companies have continuous visibility into their controls with Vanta. Vanta brings automation to evidence collection across over 35 frameworks, like SOC 2 and ISO 27001.

    They also centralize key workflows like policies, access reviews, and reporting, and helps you get security questionnaires done 5 times faster with AI. Now that’s…a new way to GRC.

    Get started at Vanta.com/headlines

    Show more Show less
    8 mins
  • Rubio Spoofed, RondoDox Botnet, Batavia Spyware
    Jul 9 2025

    Four members of President Trump's cabinet impersonated

    Is this some kind of a game?

    Batavia attacks Russian industrial companies

    Huge thanks to our sponsor, Vanta

    Do you know the status of your compliance controls right now? Like...right now?

    We know that real-time visibility is critical for security, but when it comes to our GRC programs…we rely on point-in-time checks.

    But more than 9,000 companies have continuous visibility into their controls with Vanta. Vanta brings automation to evidence collection across over 35 frameworks, like SOC 2 and ISO 27001.

    They also centralize key workflows like policies, access reviews, and reporting, and helps you get security questionnaires done 5 times faster with AI. Now that’s…a new way to GRC.

    Get started at Vanta.com/headlines

    Show more Show less
    9 mins
  • Call of Duty game pulled, U.S. military gets cybersecurity boost, Bank employee helped hackers
    Jul 8 2025

    Call of Duty game pulled from PC store after reported exploit

    U.S. military gets cybersecurity boost

    Bank employee helped hackers steal $100M

    Huge thanks to our sponsor, Vanta

    Do you know the status of your compliance controls right now? Like...right now?

    We know that real-time visibility is critical for security, but when it comes to our GRC programs…we rely on point-in-time checks.

    But more than 9,000 companies have continuous visibility into their controls with Vanta. Vanta brings automation to evidence collection across over 35 frameworks, like SOC 2 and ISO 27001.

    They also centralize key workflows like policies, access reviews, and reporting, and helps you get security questionnaires done 5 times faster with AI. Now that’s…a new way to GRC.

    Get started at Vanta.com/headlines

    Show more Show less
    9 mins
  • Ingram Micro cyberattack, Telefonica possible breach, LLM URL recommendation problem
    Jul 7 2025

    Ingram Micro suffers ransomware attack

    Hacker leaks Telefónica data allegedly from new breach

    ChatGPT prone to recommending wrong URLs, creating a new phishing opportunity

    Huge thanks to our sponsor, Vanta

    Do you know the status of your compliance controls right now? Like...right now?

    We know that real-time visibility is critical for security, but when it comes to our GRC programs…we rely on point-in-time checks.

    But more than 9,000 companies have continuous visibility into their controls with Vanta. Vanta brings automation to evidence collection across over 35 frameworks, like SOC 2 and ISO 27001.

    They also centralize key workflows like policies, access reviews, and reporting, and helps you get security questionnaires done 5 times faster with AI. Now that’s…a new way to GRC.

    Get started at Vanta.com/headlines

    Find the stories behind the headlines at CISOseries.com.

    Show more Show less
    8 mins