DiscoverSecurity Intelligence Podcast
Security Intelligence Podcast
Claim Ownership

Security Intelligence Podcast

Author: IBM

Subscribed: 11Played: 197
Share

Description

Security Intelligence is a weekly news podcast for cybersecurity pros who need to stay ahead of fast-moving threats. Each week, we cover the latest threats, trend, and stories shaping the digital landscape, alongside expert insights that help make sense of it all. Whether you’re a builder, defender, business leader or simply curious about how to stay secure in a connected world, you’ll find timely updates and timeless principles in an accessible, engaging format.



New episodes weekly on Wednesdays at 6am EST.
68 Episodes
Reverse
Visit Security Intelligence podcast page to get more AI content → https://www.ibm.com/think/podcasts/security-intelligenceThat ChatGPT ad might not be from OpenAI. On episode 54 of Security Intelligence, Michelle Alvarez, Giacomo Casoni and Norman Dorsch join our new host Patrick Austin for imposter week: three stories about attackers posing as something you trust. First, attackers bought sponsored search ads that led to a fake “Plus 5.6” Custom GPT, which steered at least 40 victims toward a ClickFix page and a remote access trojan. The panel digs into why ClickFix keeps working, and whether AI companies should police their GPT marketplaces the way app stores do. Then: Rapid7 found Linux backdoors, including a new BPFDoor variant and a RAT called AVERAT, hiding on the appliances that screen companies’ email. From there, attackers can see an organization's mail traffic, and their own traffic blends right in. How do you catch an imposter that looks exactly like your security tools? Finally, suspected state-linked hackers exploit two critical flaws in Citrix NetScaler, hitting dozens of organizations across government, healthcare and critical infrastructure. Some Dutch hospitals took patient portals offline. And patching won’t evict attackers who got in first, which makes a tested playbook essential. All that and more In Security Intelligence. 00:00 – Intro 1:35 – Fake GPTs as malware lures 7:37 – Backdoors disguised as email 13:51 – Inside the NetScaler attacks "The opinions expressed in this podcast are solely those of the participants and do not necessarily reflect the views of IBM or any other organization or entity. AI tools may be used to transcribe this episode and support selected stages of the production process. All AI-assisted content is reviewed by the production team before publication."
Visit Security Intelligence podcast page to get more cybersecurity content → https://www.ibm.com/think/podcasts/security-intelligence Ask a chatbot for a customer service number, and you might get a scammer's. That's the trick behind "Dark Sourcery," a campaign that games AI answer engines into citing phishing links and fake support lines. It's SEO poisoning updated for an AEO world, and it works because so few of us verify what AI tells us before charging ahead. On episode 53 of Security Intelligence, Kimmie Farrington, Curtis Pitts and Dave McGinnis join hosts Matt Kosinski and Patrick Austin to break down three AI-enabled cyberattacks and what they mean for defenders. First, the poisoned chatbots: How does Dark Sourcery work, and how do we rethink trust in the AI era? Then, a threat actor spends months tearing through Ubiquiti, WordPress and Zyxel gear, stealing thousands of government documents. GreyNoise suspects it had an LLM helping write its tools. Finally, an AI agent swarm breaches hundreds of PaperCut servers. It goes from an empty workspace to a real victim in about four hours, and then ignores its own rules of engagement. All that and more on Security Intelligence. 00:00 - Intro 1:23 - Dark Sourcery 13:00 - LLM-assisted hacking spree 21:46 - Agent swarm attack "The opinions expressed in this podcast are solely those of the participants and do not necessarily reflect the views of IBM or any other organization or entity. AI tools may be used to transcribe this episode and support selected stages of the production process. All AI-assisted content is reviewed by the production team before publication."
Visit Security Intelligence podcast page to get more cybersecurity content → https://www.ibm.com/think/podcasts/security-intelligence People like to say “cybersecurity is a team sport.” But how often do we actually live up to that ideal? In this bonus episode of Security Intelligence, host Matt Kosinski talks to Joe Xatruch about the Cyber Cluster, a public-private-academic alliance that’s turning Costa Rica into a global hub for cybersecurity talent and services. Joe shares what inspired the cluster, the obstacles they had to tackle to get it off the ground and the benefits it’s brought to people and organizations across the country. Plus—why the model is spreading, and why that’s great news. This is what a collaborative approach to cybersecurity really looks like. And it turns out it’s even better than the hype. All that and more on Security Intelligence. "The opinions expressed in this podcast are solely those of the participants and do not necessarily reflect the views of IBM or any other organization or entity. AI tools may be used to transcribe this episode and support selected stages of the production process. All AI-assisted content is reviewed by the production team before publication."
Visit Security Intelligence podcast page to get more security content → https://www.ibm.com/think/podcasts/security-intelligence Last week, some of the biggest names in AI coalesced around the need to pace development and strengthen security measures. Problem is, many of the biggest names in cybersecurity feel like they haven’t been invited to that conversation. On episode 52 of Security Intelligence, Jeff Crume, Nikki Robinson and Omari Jones join hosts Matt Kosinski and Patrick Austin to talk about the rising tensions between frontier labs and cybersecurity pros. The former seem to be approaching AI safety as primarily an issue of alignment, while the latter thinks a few good old-fashioned security controls could go a long, long way. Then: Just as the frontier labs are locking their models down, their open-weight counterparts are letting people pull off sophisticated hacks—like hijacking TikTok users’ cameras—with relative ease. Should open models play a bigger role in our security conversations? Finally, CISA and the FBI are sick and tired of all the spin, and their latest advisory calls on breach victims to be much more transparent about incidents. We explore what good crisis communications look like and how we get more organizations on board. All that and more on Security Intelligence 00:00 - Intro 1:30 - The AI cybersecurity shutout 13:53 - Open models hack TikTok 25:45 - CISA’s crisis comms advisory "The opinions expressed in this podcast are solely those of the participants and do not necessarily reflect the views of IBM or any other organization or entity. AI tools may be used to transcribe this episode and support selected stages of the production process. All AI-assisted content is reviewed by the production team before publication."
Visit Security Intelligence podcast page to get more cybersecurity content → https://www.ibm.com/think/podcasts/security-intelligence Depending on who you ask, the AI-driven vulnpocalypse is either the end of cybersecurity as we know it or a lot of hot air. This week on Security Intelligence, host Patrick Austin sits down with Giacomo Casoni, Brad Lair and Norman Dorsch to dig into a new report suggesting the AI vulnerability surge might be more manageable than feared—as long as organizations shift their focus from patching to validation. Then: Researchers caught AI agents secretly turning public wikis into makeshift message boards, apparently coordinating with each other to get around their own restrictions. How can we trust them with critical cybersecurity workflows? Plus, the ShinyHunters gang proves that old-school vishing can still beat multifactor authentication, no AI required. Finally, Shweta Jain, Head of Promontory at IBM Consulting, joins the show to talk about her new piece with Stephen Coraggio on why quantum computing and AI-powered threats are forcing banks to rethink cyber resilience. Read the article: https://www.ibm.com/think/insights/next-cyber-crisis-is-already-taking-shape All that and more, on Security Intelligence. 00:00 - Intro 1:36 - Rethinking the vulnpocalypse 6:20 - AI agents’ secret message boards 13:28 - ShinyHunters go vishing 19:31 - What is cyber resilience, really? "The opinions expressed in this podcast are solely those of the participants and do not necessarily reflect the views of IBM or any other organization or entity. AI tools may be used to transcribe this episode and support selected stages of the production process. All AI-assisted content is reviewed by the production team before publication."
loading
Comments