Home
Categories
EXPLORE
True Crime
Comedy
Society & Culture
Sports
Business
History
Health & Fitness
About Us
Contact Us
Copyright
© 2024 PodJoint
Loading...
0:00 / 0:00
Podjoint Logo
US
Sign in

or

Don't have an account?
Sign up
Forgot password
https://is1-ssl.mzstatic.com/image/thumb/Podcasts221/v4/0e/ef/42/0eef42a9-19c0-671a-d1d5-7af2e46c44ee/mza_1639633562510982988.png/600x600bb.jpg
The 443 - Security Simplified
Secplicity
351 episodes
2 days ago
Get inside the minds of leading white-hat hackers and security researchers. Each week, we’ll educate and entertain you by breaking down and simplifying the latest cyber security headlines and trends. Using our special blend of expertise, wit, and cynicism, we’ll turn complex security concepts into easily understood and actionable insights.
Show more...
Tech News
News
RSS
All content for The 443 - Security Simplified is the property of Secplicity and is served directly from their servers with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
Get inside the minds of leading white-hat hackers and security researchers. Each week, we’ll educate and entertain you by breaking down and simplifying the latest cyber security headlines and trends. Using our special blend of expertise, wit, and cynicism, we’ll turn complex security concepts into easily understood and actionable insights.
Show more...
Tech News
News
Episodes (20/351)
The 443 - Security Simplified
Anthropic's AI Threat Intelligence Report
This week on the podcast, we review Anthropic's AI Threat Intelligence Report which walks through specific examples of how threat actors are abusing Ahropic's Claude AI model. Before that, we cover an update from Google on how they plan to secure the Android ecosystem before discussing a recent research post on new phishing campaigns that specifically target LLM-based protetions.
Show more...
1 day ago
41 minutes

The 443 - Security Simplified
The 2025 Cost of a Breach Report
This week on the podcast, we discuss key findings from IBM and the Ponemon Institute's 2025 Cost of a Breach Report, including a deep analysis of AI impacts in cybersecurity. Before that, we cover Norway's claim that Russian-aligned hackers opened a floodgate in one of their dams. We also discuss a vulnerability in Microsoft 365 Copilot that allowed the AI to delete its own audit logs.
Show more...
1 week ago
51 minutes 4 seconds

The 443 - Security Simplified
Is Zero Trust a Total Bust?
This week on the podcast, we discuss key findings from a DefCon presentation from researchers at AmberWolf titled ZeroTrust, Total Bust and what it means for Zero Trust Network Access. After that, we review a new vulnerability in the FortiWeb WAF before ending with a quick update from Google Project Zero on a new vulnerability disclosure policy.
Show more...
2 weeks ago
35 minutes 59 seconds

The 443 - Security Simplified
What We Know About the Sonicwall SSLVPN Attacks
This week on the podcast, we discuss some recent research into a new zero day vulnerability in the popular WinRAR utility under active exploit. After that, we give a round up on everything we know about the SonicWall SSLVPN attacks from the last few weeks before ending with a review of a new ChatGPT vulnerability.
Show more...
2 weeks ago
36 minutes 34 seconds

The 443 - Security Simplified
Clorox vs Cognizant
This week, we discuss the SharePoint ToolShell vulnerabilities that recently received an out-of-cycle patch from Microsoft. After that, we cover some research into a Chrome and Edge extension malware campaign that impacted 2.3 million victims. Finally, we end by discussing a lawsuit from Clorox against their offshore helpdesk provider Cognizant stemming from a security incident 2 years ago.
Show more...
4 weeks ago
34 minutes 14 seconds

The 443 - Security Simplified
Outing Chinese Semiconductor Cyber Spies
This week on the podcast, Corey Nachreiner and guest host, Ryan Estes, from WatchGuard’s malware analysis team, cover the cybersecurity news for last week. We chat about AI-based site cloaking tools on the underground, how Domain Tools found potentially unwanted executables hiding in DNS TXT records, and a Chinese state-sponsored set of targeted phishing campaigns going after the Taiwanese semiconductor industry and its supply chain. Join us to learn more and discuss how we can protect ourselves from similar threats. 
Show more...
1 month ago
1 hour 1 minute 18 seconds

The 443 - Security Simplified
Exploring Endpoint Threats with WatchGuard’s Q1 2025 Internet Security Report.
This week on the podcast, Corey Nachreiner and guest host, Ryan Estes, from WatchGuard’s malware analysis team, explore WatchGuard’s recently released Q1 Internet Security Report (ISR). As always with the ISR, we highlight the top malware, network attacks, and malicious domains that our products see, but with our guest host, the author of the Endpoint section, we dive much deeper into all the threats arriving a our customers’ endpoint. Listen in for the latest threat landscape trends and some practical tips to stay safe from the most recent threats.
Show more...
1 month ago
1 hour 4 minutes 57 seconds

The 443 - Security Simplified
Rewind: Microsoft Kernel Shift, GPT-4o Threats, and Scattered Spider Update
First, we look back at Microsoft’s major shift to remove endpoint protection from the Windows kernel. When we first covered it, it was a proposed change—now it's happening, and the implications are big. Next, we revisit a segment on GPT-4o and how generative AI is fueling the next wave of social engineering attacks. It's smarter, faster, and more convincing than ever. And finally, a refresher on the arrest of a Scattered Spider leader. While that made headlines, the group's activity hasn’t slowed down, they're still very much on the radar, as we discussed just last week.
Show more...
1 month ago
44 minutes 29 seconds

The 443 - Security Simplified
Lessons From The M&S Breach
This week, we discuss a phishing technique that uses a powerful and risky Microsoft 365 configuration setting. After that, we round up everything we know about the Marks & Spencer breach from April and the lessons that all MSPs can learn from it. After that, we quickly cover a new series of vulnerabilities in a popular Bluetooth chipset that could let attackers gain full control over your headphones.
Show more...
2 months ago
42 minutes 27 seconds

The 443 - Security Simplified
Social Engineering an LLM
This week on the podcast, we cover a recent blog post from Google's Threat Intelligence Group on a financially motiviated threat actor's latest techniques for stealing data. After that, we dive into the Model Context Protocol (MPC) that organizations have been rapidly adopting to add functionality to their AI deployments and all of the security risks that it introduces.
Show more...
2 months ago
39 minutes 54 seconds

The 443 - Security Simplified
AI Applications in Cybersecurity with Adam Winston
This week on the podcast, recent guest Adam Winston hops back on to continue our discussion on Artificial Intelligence in cybersecurity. This week, we focus on how attackers are using AI, what to worry about and what not to lose sleep over, and guidance for evaluating AI for use within your own organization.
Show more...
3 months ago
58 minutes 49 seconds

The 443 - Security Simplified
Signal and TeleMessage
This week on the podcast, we cover Coinbase's recent filing with the SEC that described an insider threat event that lead to a ransomware extortion. After that, we discuss dive in to Signal and other secure messaging apps, how they protect communications, and how other apps can undermine those protections.
Show more...
3 months ago
38 minutes 45 seconds

The 443 - Security Simplified
2025 Ransomware Update with Ryan Estes
This week on the podcast, we bring on Ryan Estes from the WatchGuard Threat Lab to discuss the latest trends in ransomware operations. Ryan is an expert in ransomware analysis and currently owns the data behind WatchGuard's public Ransomware Tracker on the WatchGuard Security Center.
Show more...
3 months ago
33 minutes 25 seconds

The 443 - Security Simplified
AI and Compliance with Adam Winston
This week on the podcast, we bring in Adam Winston, former CSO of ActZero and current Field CTO for Managed Services at WatchGuard to discuss automating the SOC with AI. We cover the history of AI in SecOps, the good and bad applications of AI and Machine Learning, what the future looks like, and how compliance might impact our ability to get there.
Show more...
4 months ago
57 minutes 15 seconds

The 443 - Security Simplified
The CVE Near-Death Experience
This week on the podcast, we discuss how the CVE program was granted an 11th hour temporary reprieve after the program’s steward, MITRE, originally announced their contract had not been renewed. After that, we cover the recent cyberattack against 4chan that took it offline and resulted in leaked moderator information and source code. We end with a quick discussion on a post-exploitation technique being used in the wild against Fortinet FortiGate devices.
Show more...
4 months ago
34 minutes 14 seconds

The 443 - Security Simplified
Revoking Security Clearances as Punishment
This week on the podcast, we discuss a recent White House executive order that revoked the security clearances of former CISA chief Christopher Krebs as well as all other employees at SentinelOne and the implications that brings to our industry. Before that, we give a quick update on the Oracle Cloud breach from a few weeks back that Oracle has finally confirmed. We end with our thoughts on a few Microsoft Windows AI features that just launched in early preview and how they might impact data privacy and security.
Show more...
4 months ago
40 minutes 40 seconds

The 443 - Security Simplified
Lucid, the Phishing-as-a-Service Platform
This week on the podcast, we discuss a recent threat intelligence report on the Chinese Phishing-as-a-Service platform Lucid. Before that, we cover the alleged Oracle Cloud breach before reviewing the Singapore Shared Responsibility Framework, designed to combat financial scams.
Show more...
4 months ago
40 minutes 25 seconds

The 443 - Security Simplified
Github Actions Supply Chain Attacks
This week, we discuss a recent cascading supply chain attack involving multiple Github actions workflows that nearly succeeded in compromising a popular Coinbase application. Before that, we discuss a novel way to download malware onto an endpoint by abusing a web browser's caching feature. Additionally, we cover an FBI alert on file converter malware scams.
Show more...
5 months ago
42 minutes 12 seconds

The 443 - Security Simplified
Polymorphic Extensions
This week on the podcast, we discuss a research post by SquareX that invents a new way to impersonate any extension installed on a victim's web browser. Before that, we cover the latest supply chain attack attempts from Lazarus, as well as a malvertising campaign that managed to infect 1 million endpoints.
Show more...
5 months ago
36 minutes 31 seconds

The 443 - Security Simplified
Silk Typhoon is Targeting MSPs
This week on the podcast, we discuss a recent update from Microsoft's Threat Intelligence Center describing the latest tactics from Silk Typhoon, a Chinese nation state threat actor focusing in espionage. Before that, we cover the recent 0day vulnerabilities in VMware ESXi, Workstation and Fusion. We also analyze a report by S-RM on an Akira ransomware attack that leveraged IoT devices to hide from EDR tools.
Show more...
5 months ago
27 minutes 17 seconds

The 443 - Security Simplified
Get inside the minds of leading white-hat hackers and security researchers. Each week, we’ll educate and entertain you by breaking down and simplifying the latest cyber security headlines and trends. Using our special blend of expertise, wit, and cynicism, we’ll turn complex security concepts into easily understood and actionable insights.