Episodes

Episode #1

        This episode discusses the rise of phishing attacks on Meta Business accounts, the threat of Black Basta ransomware, persistent Ebury malware, passwordless authentication, cybersecurity in healthcare, quantum-resistant algorithms, and AI's role in banks tackling deepfake challenges. It also highlights the importance of strong email security and passwordless authentication in protecting data.

Episode #2

        Join our host Cody as we explore key developments, including the importance of reporting security issues, CISA's warning on NextGen Healthcare vulnerabilities, Microsoft's Azure MFA enforcement, IBM and Palo Alto Networks' new partnership, Metaverse security challenges, and evolving cyber defense in healthcare.

Episode #3

        Join Cody as he delves into the resurgence of Breachforums, the rise of a new ransomware strain exploiting Windows BitLocker, and Apple's swift patch for an iOS 17.5 bug. Discover how the Department of Defense is tightening cybersecurity requirements, the revolutionary role of AI in security operations, and Google's investment in Malaysia's tech infrastructure. Stay informed on crucial developments like the UK Security Committee's election security warnings, AI's impact on finance, and Australia's Digital ID Bill 2024. 

Episode #4

        In our latest episode Cody delves into critical topics such as the Snowflake and Ticketmaster breaches, the rise of fake PyPI packages targeting developers, and a cyberattack that disrupted London NHS hospitals. We also cover the implications of data theft at Advance Auto Parts, the need for enhanced cybersecurity in the Asia-Pacific region, and the importance of robust security measures for critical infrastructure.

Episode #5

        Join us as we explore recent cyberattacks, emerging vulnerabilities, and the ever-evolving landscape of digital security. In our latest episode, we cover major stories such as the Cylance data breach, the exploitation of Windows flaws by ransomware gangs, and critical vulnerabilities in PHP and Azure. Plus, we dive into the future of cloud computing in Industry 4.0 and discuss the balance between AI advancements and data security.

Episode #6

        In today's episode we talk about about recent incidents such as the Keytronic data breach, vulnerabilities in operational technology, and the rise of cyber threats in critical infrastructure. Learn about the evolving responsibilities in cybersecurity, the impact of digital payments in Sub-Saharan Africa, and best practices for managing non-human identities. Tune in for insights that help you stay secure in the digital world.

Episode #7

        Jollibee data breach affecting 32 million customers, the Move It Transfer vulnerability, and the resurgence of Medusa Android malware. We also delve into the exploitation of Microsoft console files, US government warnings on open-source program security, and the CSAT breach in chemical facilities. Additionally, we discuss the challenges of Web3 in healthcare, a major NHS cyberattack, a critical Google Pixel firmware vulnerability, and an AI-powered Russian influence network targeting US elections.

Episode #8

        In this episode, Cody dives into the integration of NordVPN with ASUS routers, enhancing user security and privacy. We also highlight a critical vulnerability in D-Link routers that exposes user passwords to hackers and discuss the impact of a recent data breach on US finance firms like Yieldstreet. Additionally, we cover topics such as business fraud detection, attacks on airline and hotel loyalty accounts, and the strategic partnership between Gulf Energy and Google to boost Thailand's digital infrastructure.

Episode #9

        Join our host, Cody, as we dive into fascinating news articles covering cutting-edge topics like SK Hynix's AI-focused SSD, Microsoft's controversial hack email warnings, and the rise of quantum computing. Stay informed on critical cybersecurity trends, from combating fake eBook malware to enhancing enterprise storage resilience and transitioning to Web3 for better privacy and security. Tune in to navigate the ever-evolving digital security landscape with clarity and insight.

Episode #10

         In the latest episode of CalmCoding, our host dives into pressing cybersecurity issues, including the alarming rise of deepfakes, the Rite Aid data breach, and the shutdown of Kaspersky's US operations. The podcast also covers Microsoft's warning about the cybercrime group Octo Tempest, a GitHub token leak affecting Python security, and the role of cybersecurity in telco transformation. Additionally, Cody explores the integration of AI in smart hospitals, the UK's tech regulation plans, and the transformative impact of generative physical AI in various industries.

Episode #11

        In our latest podcast episode, we delve into a range of intriguing stories: the alarming spread of malware via GitHub, a sophisticated attack on a Ukrainian heating utility, a North Korean hacker’s failed job scam, and a complex prisoner swap involving financial crimes. We also discuss practical steps for addressing the CrowdStrike outage, the global impact of a major cybersecurity glitch, Cathie Wood's strategic investment moves, Delta Air Lines' legal battle over IT disruptions, and the geopolitical implications of Russia's response to Western sanctions.

Episode #12

        In todays episode we cover the dangerous BingoMod Android malware, a massive data leak exposing workers from companies like Dell and Capital One, new data privacy regulations in Australia, a Windows downgrade attack compromising key security features, a $60M ransomware demand by BlackSuit, a dark web data breach affecting billions, a voter data leak impacting 4.6 million Americans, and Sixgen’s acquisition of the hacking startup Boldend.

Episode #13

        In our newest update, we explore the alarming surge in ransomware attacks, the exposure of GitHub authentication tokens in top open-source projects, and a significant data breach at CSC ServiceWorks affecting over 35,000 individuals. We also delve into critical Windows vulnerabilities, the IRS's struggle with legacy IT systems, and the rise of Surfshark as a leading VPN and antivirus provider. Plus, we discuss the challenges of detecting multi-stage cyber attacks and the transformative impact of Web3 on global security. Stay informed and secure in the ever-evolving digital landscape with CalmCoding!

Episode #14

        In this episode of CalmCoding, we dive into the latest cybersecurity developments, including Google's new cloud security features, AT&T's wireless data breach, and a dangerous ransomware campaign targeting cloud storage. We also discuss defending democracy against cyber threats, a cyberattack on Microchip Technology, and critical security patches from SolarWinds and Microsoft. Plus, we explore the growing need for proactive data security strategies in the wake of increasing data breaches. Stay informed and prepared to navigate the evolving digital landscape.

Episode #15

        In today's episode we bring you the latest insights and updates from the ever-evolving world of cybersecurity. From high-profile lawsuits and data breaches to hidden malware threats and emerging vulnerabilities, our podcast covers it all. Join our host Cody as we break down complex cybersecurity challenges, explore evolving threats, and share practical advice to keep you informed and secure in the digital landscape. Tune in for engaging discussions, expert analysis, and actionable tips to help you navigate the complexities of cybersecurity with confidence.

Episode #16

        Join host Cody as we dive into the latest in cybersecurity news. From Qilin ransomware breaches targeting Chrome credentials to malware attacks on educational institutions, and new zero-day threats affecting Android devices—this episode covers it all. Learn about evolving cyber tactics, critical vulnerabilities, and essential defense strategies to keep your digital life secure. Stay informed and secure with CalmCoding!

Episode #17

        Join host Cody as we explore pressing topics such as infiltration tactics used by North Korean spies, AI-powered defenses for addressing security skills shortages, sophisticated ransomware attacks, emerging cyber threats like keyloggers and zero-day vulnerabilities, and much more. Stay informed and secure in the ever-evolving digital landscape with CalmCoding.

Episode #18

        Join our host Cody on the CalmCoding Podcast as he breaks down the latest cybersecurity headlines, keeping you informed and protected against emerging threats. In this episode, we cover Google Cloud's new security partnership with Mandiant, a major data leak in the fuel industry, and a class-action lawsuit against genetics testing company 23andMe following a significant data breach. We also dive into critical vulnerabilities in Google Cloud Platform and VMware, stolen VPN passwords, and the impact of AI on Palo Alto Networks’ stock.

Episode #19

        In this episode, we explore critical updates, including the MoneyGram system shutdown following a potential cyber attack, Microsoft's acknowledgment of security gaps, and the rise of AI in bypassing CAPTCHA systems. We also discuss Disney’s shift from Slack to Microsoft Teams after a data breach, the growing threat of ransomware targeting Linux systems, and a new Android malware infecting millions of devices. Stay informed and secure as we break down these pressing cybersecurity issues!

Episode #20

        In this episode, host Cody explores key topics such as the SYS01 Infostealer malware targeting Facebook businesses, cryptojacking campaigns exploiting Docker APIs, and hijacked Python packages spreading malware. We also discuss vulnerabilities in critical infrastructure, the largest DDoS attack on record, and fake Microsoft notifications being used in cyberattacks. Tune in to stay updated on the evolving cybersecurity landscape and learn how to protect yourself in today’s digital world. Stay secure and keep coding calmly!

Episode #21

        In this episode, host Cody dives into key stories including the MoneyGram data breach, rising ransomware groups, an ADT cyberattack, and new malware threats. Plus, we explore the security risks of Microsoft’s Recall platform, the vulnerabilities in GenAI technologies, and more. Tune in for insightful analysis on the evolving cybersecurity landscape, and learn how to stay protected.

Episode #22

        In this episode we explore the evolving threat landscape of cybersecurity, focusing on new tools hackers are using and how these tools affect you. Hackers are leveraging penetration testing tools like EDRSilencer to disable security systems and go undetected. They are also using RTF files to launch phishing attacks because this older file type often bypasses security filters. Hackers are increasingly targeting critical infrastructure like healthcare and government systems to steal valuable data and disrupt services. New tools like Scam Copilot and DVa are being developed to combat AI-powered fraud and malware that targets Android devices, respectively.

Episode #23

        In this video, we discuss the alarming rise in cyberattacks across industries. We cover the SEC fining cybersecurity companies for downplaying the effects of the SolarWinds hack. Also, millions of Hot Topic shoppers have their data stolen! Then, we look at the Ghostpulse malware hiding in plain sight, and the US government’s recruitment of tech leaders to bolster national security. Finally, we explore the critical vulnerabilities in popular software like FortiManager, Bitdefender, and Trend Micro, and the potential for abuse in end-to-end encrypted cloud storage.

Episode #24

        In this episode Cody and Katie explore a range of threats, from the very real danger of ransomware attacks, like the one that recently targeted thousands of CyberPanel users, to the more conceptual but equally concerning rise of AI-powered threats, including the phenomenon known as model collapse. The podcast examines real-world incidents of nation-state hacking, particularly focusing on activity by Chinese hackers who have targeted infrastructure in both the US and Canada. It also explores vulnerabilities discovered in commonly used software, such as a recent flaw in the Opera browser, and looks at how hackers are increasingly using platforms like Eventbrite to spread sophisticated phishing campaigns.

Episode #25

        In this episode, Cody and Katie explore a range of threats, from the very real danger of ransomware attacks, like the one that recently hit the City of Columbus, Ohio, to the rise of increasingly sophisticated attacks using techniques like typosquatting. The podcast examines real-world incidents of nation-state hacking, particularly focusing on activity by Chinese hackers who have targeted telecommunication companies in Singapore as a testing ground for attacks on companies in the US. It also explores vulnerabilities discovered in commonly used software, such as Microsoft SharePoint.

Episode #26

        In this episode, Cody and Katie explore a range of threats, from the financial and operational losses caused by ransomware attacks to the vulnerability of ERP systems, which house a company's most sensitive data. The podcast examines real-world incidents, such as the e-skimming attack on SelectBlinds, which exposed the data of over 200,000 customers. It also discusses the rise of increasingly sophisticated attacks using techniques like typosquatting, with a focus on the malicious Python package "fabrice" that steals AWS login credentials. Finally, the episode touches on nation-state hacking, highlighting Iranian hackers who impersonate job recruiters to install malware on devices in the aerospace industry.

Episode #27

        In this episode, we examine several recent data breaches impacting major companies and organizations. We explore how a Chinese state-sponsored hacking group, Salt Typhoon, targeted T-Mobile's wiretap systems and accessed call records and communications of high-ranking officials. We also discuss how Finastra, a financial software giant, suffered a data breach due to stolen credentials, with a threat actor offering 400 GB of data for sale. We examine how ransomware attackers, Helldown, are exploiting Zyxel firewalls to breach networks and encrypt systems, primarily targeting SMBs in the U.S. and Europe.  We highlight concerns about the security of critical communications infrastructure and the need for enhanced cybersecurity measures in the face of sophisticated state-sponsored and criminal attacks.

Episode #28

        Cody and Katie explore a week dominated by data breaches and emerging cyber threats, with insurance giants Geico and Travelers facing millions in fines for cybersecurity failures that exposed personal information of over 120,000 people. The incidents highlight the need for stronger cybersecurity measures, including multifactor authentication and better defenses against credential stuffing attacks. The duo also examine a concerning trend of less sophisticated hackers using readily available tools to launch attacks. One example is the new "Matrix" botnet, built using open-source tools and known malware to target IoT devices. This case demonstrates how individuals with basic technical knowledge can exploit vulnerabilities and launch large-scale attacks, underscoring the need for vigilance and proactive security measures, even for seemingly simple devices.

Episode #29

        This week in cybersecurity news, we explore the alarming rise of sophisticated cyberattacks targeting businesses and government entities. Hackers are exploiting vulnerabilities in software like Zyxel and CyberPanel, with one attack leading to the installation of "Bootkitty," the first-ever Linux UEFI bootkit. We also highlight a new phishing kit called "Rockstar 2FA" designed to bypass multi-factor authentication on platforms like Microsoft 365, emphasizing the evolving techniques employed by cybercriminals. Notably, Chinese state-sponsored hacking group Salt Typhoon is behind an "unprecedented" attack on US telecom companies, raising concerns about national security and data privacy.

Episode #30

        In this episode, Cody and Katie explore the alarming rise in cyberattacks targeting critical infrastructure and sensitive data. The podcast examines real-world incidents, such as the ransomware attack on Artivion, a top US heart surgery device maker, which disrupted order and shipping processes. It also discusses the vulnerability of AWS cloud instances, highlighting a major cyberattack that exposed and stole credentials from countless customers. Finally, the episode touches on the pervasive cybersecurity risks in the US energy sector stemming from reliance on vulnerable third-party vendors.

Episode #31

        In this episode, Cody and Katie focus on major cybersecurity issues while also covering more stories in today's podcast. The discussion begins with an analysis of a critical vulnerability in Apache Struts 2 that is currently being actively exploited, highlighting the urgency for users to apply the necessary patches. The conversation then shifts to the growing problem of ransomware attacks and how they are increasingly targeting backup data, underscoring the need for modern backup technologies such as immutable storage solutions and adherence to Zero Trust principles. Finally, the episode explores a new software supply chain attack where malicious Microsoft VSCode extensions are being used to target software developers, especially those in web3 and cryptocurrency projects.

Episode #32

        In this episode, Cody and Katie dive into the latest cybersecurity threats and vulnerabilities affecting various platforms and services. We explore the emergence of FlowerStorm, a new phishing-as-a-service tool targeting Microsoft 365 accounts, and the high-severity vulnerability in Adobe ColdFusion that could allow attackers to manipulate critical files. We also discuss the FTC's order for Marriott and Starwood to bolster their security following multiple data breaches, as well as a flaw in McDonald's India delivery system that could have exposed customer data. The episode also covers the growing use of social engineering tactics like fake tutorials and CAPTCHAs to trick people into installing malware, the unique Interlock ransomware targeting FreeBSD servers, and the vulnerabilities found in open-source machine learning systems. Additionally, the rise of the Mirai botnet targeting TP-Link and NR routers is examined, along with the security flaws discovered in WordPress plugins and TrueNAS devices during a hacking competition.

Episode #33

        In this episode, Cody and Katie dive into the escalating world of cyber threats, focusing on the recent breaches and the wide-ranging impact they have had. They discuss how major telecom firms like AT&T and Verizon were affected by the Salt Typhoon hack, which compromised over 100,000 routers. Additionally, Cody and Katie will explore the cyberattack on the US Treasury Department via a third-party vendor, and what the implications of that are. They will also investigate the Google Chrome extension hack that exposed 400,000 users to malware, and the deceptive tactics of North Korean hackers using fake job scams to deploy malware.

Episode #34

        In this episode, Cody and Katie delve into the complex world of cybersecurity, spotlighting recent incidents and their wide-reaching consequences. They begin by discussing the MyGiftCardSupply data breach that exposed sensitive user data, such as identification documents and selfies. Additionally, Cody and Katie will examine the security vulnerabilities in Mitel's MiCollab and Oracle WebLogic Server that were identified by CISA, and the potential consequences. They will also explore the Salt Typhoon attacks, which may have affected more telecom providers than previously known, including Charter Communications, Consolidated Communications, and Windstream. They will also investigate the Chinese hacking group MirrorFace, which is suspected of launching over 200 cyberattacks against targets in Japan.

Episode #35

        In this episode, Cody and Katie dive into the escalating world of cyber threats, focusing on recent breaches and their wide-ranging impact. They discuss how the FBI and international partners successfully deleted Chinese malware from thousands of U.S. computers. Additionally, we will explore how AI deepfakes are projected to cause $40 billion in losses by 2027. They will also investigate how ransomware hackers are exploiting AWS S3 features to encrypt storage buckets, and the critical Fortinet vulnerability that is being exploited to breach company networks. Furthermore, they will discuss how CISA has told agencies to patch BeyondTrust bugs and how Google Search ads are being hacked to steal account information. Lastly, we will touch on how Rsync security flaws may affect up to 660,000 servers and how a cyberattack on a third-party vendor led to Chinese intrusions into the US Treasury.