1. EachPod
EachPod
Daily Security Review - Podcast

Daily Security Review

Daily Security Review, the premier source for news and information on security threats, Ransomware and vulnerabilities

News Technology Tech News
Update frequency
every day
Average duration
34 minutes
Episodes
327
Years Active
2025
Share to:
The “s1ngularity” Attack: How Hackers Hijacked Nx and Leaked Thousands of Repositories

The “s1ngularity” Attack: How Hackers Hijacked Nx and Leaked Thousands of Repositories

In late August 2025, the open-source software ecosystem was rocked by a sophisticated two-phase supply chain attack, now known as “s1ngularity.” The incident began when attackers exploited a flaw in …

00:38:48  |   Tue 09 Sep 2025
Canadian Investment Giant Wealthsimple Hit by Vendor Compromise

Canadian Investment Giant Wealthsimple Hit by Vendor Compromise

Wealthsimple, one of Canada’s largest online investment platforms, has confirmed a data breach that exposed the sensitive information of fewer than 1% of its three million clients. The incident, dete…

00:34:24  |   Mon 08 Sep 2025
FireCompass Raises $20M to Scale AI-Powered Offensive Security

FireCompass Raises $20M to Scale AI-Powered Offensive Security

In a year when cybercrime is projected to cost the world over $10.5 trillion, FireCompass has emerged as one of the most closely watched AI-driven cybersecurity innovators. The startup, founded in 20…

00:38:48  |   Mon 08 Sep 2025
CVE-2025-42957: Active Exploits Target SAP S/4HANA Systems

CVE-2025-42957: Active Exploits Target SAP S/4HANA Systems

A newly uncovered critical vulnerability, tracked as CVE-2025-42957, is sending shockwaves through the enterprise technology world. Affecting all SAP S/4HANA deployments, both on-premise and in priva…

00:32:04  |   Mon 08 Sep 2025
Fake Job Interviews, Real Hacks: How North Korean Spies Steal Billions in Crypto

Fake Job Interviews, Real Hacks: How North Korean Spies Steal Billions in Crypto

North Korean cybercriminals have escalated their social engineering operations, deploying a wave of sophisticated campaigns designed to infiltrate cryptocurrency and decentralized finance (DeFi) orga…

00:30:21  |   Mon 08 Sep 2025
Cato Networks Acquires Aim Security to Bolster AI Defense in SASE

Cato Networks Acquires Aim Security to Bolster AI Defense in SASE

Cato Networks, a leader in Secure Access Service Edge (SASE), has made its first acquisition, purchasing Aim Security, an AI security startup founded in 2022. The acquisition, valued at an estimated

00:51:24  |   Fri 05 Sep 2025
Tidal Cyber Secures $10M to Advance Threat-Informed Defense

Tidal Cyber Secures $10M to Advance Threat-Informed Defense

Cybersecurity startup Tidal Cyber, founded in 2022 by three former MITRE experts, has raised $10 million in Series A funding, bringing its total capital to $15 million. The funding will accelerate th…

00:48:00  |   Thu 04 Sep 2025
Disney Fined $10M for COPPA Violations Over Mislabeling Kids’ Content on YouTube

Disney Fined $10M for COPPA Violations Over Mislabeling Kids’ Content on YouTube

Disney has reached a $10 million settlement with the U.S. Federal Trade Commission (FTC) after being found in violation of the Children’s Online Privacy Protection Act (COPPA). At the heart of the ca…

00:36:38  |   Thu 04 Sep 2025
Google Patches 111 Android Flaws in September 2025, Including Two Zero-Days Under Attack

Google Patches 111 Android Flaws in September 2025, Including Two Zero-Days Under Attack

Google has released its September 2025 Android security patches, addressing a staggering 111 unique vulnerabilities, including two actively exploited zero-day flaws that are already being used in tar…

00:30:17  |   Thu 04 Sep 2025
Google Warns of Sitecore Zero-Day: ViewState Deserialization Under Fire

Google Warns of Sitecore Zero-Day: ViewState Deserialization Under Fire

A critical zero-day vulnerability, CVE-2025-53690, is being actively exploited in the wild, targeting Sitecore Experience Manager (XM) and Experience Platform (XP) systems deployed with outdated ASP.…

00:56:06  |   Thu 04 Sep 2025
Brokewell Malware Targets Android Users via Fake TradingView Ads on Meta

Brokewell Malware Targets Android Users via Fake TradingView Ads on Meta

A new and highly sophisticated Android malware campaign, dubbed Brokewell, has emerged as one of the most dangerous mobile threats of 2024–2025. First spotted in April 2024 disguised as fake browser …

00:29:20  |   Wed 03 Sep 2025
Von der Leyen and Shapps Flights Hit by Suspected Russian Electronic Warfare

Von der Leyen and Shapps Flights Hit by Suspected Russian Electronic Warfare

Aviation safety and geopolitics collided when multiple flights carrying high-ranking European and UK officials were hit by suspected Russian GPS jamming. European Commission President Ursula von der …

00:34:15  |   Tue 02 Sep 2025
Salesforce and Google Workspace Compromised in Largest SaaS Breach

Salesforce and Google Workspace Compromised in Largest SaaS Breach

In August 2025, the largest SaaS breach of the year shook the enterprise world when a newly identified threat actor, UNC6395, orchestrated a supply-chain attack through compromised Salesloft Drift an…

00:43:38  |   Tue 02 Sep 2025
Chained Zero-Days: WhatsApp and Apple Exploits Used in Sophisticated Spyware Attacks

Chained Zero-Days: WhatsApp and Apple Exploits Used in Sophisticated Spyware Attacks

A pair of newly discovered zero-day vulnerabilities—CVE-2025-43300 in Apple’s ImageIO framework and CVE-2025-55177 in WhatsApp—have been confirmed as part of a sophisticated spyware campaign targetin…

00:26:10  |   Tue 02 Sep 2025
Miljödata Cyberattack: 80% of Swedish Municipalities Hit in Extortion Strike

Miljödata Cyberattack: 80% of Swedish Municipalities Hit in Extortion Strike

Sweden is reeling from one of the largest public sector cyber incidents in its history. A ransomware attack on Miljödata, an IT services provider supporting nearly 80% of Sweden’s municipalities and …

00:52:07  |   Fri 29 Aug 2025
PromptLock Ransomware: How AI is Lowering the Bar for Cybercrime

PromptLock Ransomware: How AI is Lowering the Bar for Cybercrime

The cybersecurity world has entered a new era: AI-powered ransomware. Researchers recently uncovered PromptLock, a proof-of-concept malware that uses OpenAI’s gpt-oss:20b model and Lua scripting to a…

00:44:37  |   Fri 29 Aug 2025
Hybrid AD at Risk: Storm-0501 Exploits Entra ID for Cloud-Native Ransomware

Hybrid AD at Risk: Storm-0501 Exploits Entra ID for Cloud-Native Ransomware

The 2025 Purple Knight Report paints a stark picture of enterprise identity security: the average security assessment score for hybrid Active Directory (AD) and Entra ID environments has plummeted to…

00:40:34  |   Thu 28 Aug 2025
AI-Powered Polymorphic Phishing: The New Era of Social Engineering

AI-Powered Polymorphic Phishing: The New Era of Social Engineering

Cybercrime is entering a new phase—one marked by AI-powered phishing attacks, the weaponization of legitimate remote access tools, and the rise of professionalized underground markets.

Recent reports …

01:10:14  |   Thu 28 Aug 2025
Salesforce Breach: How OAuth Token Theft Exposed Hundreds of Organizations

Salesforce Breach: How OAuth Token Theft Exposed Hundreds of Organizations

The recent Salesforce data breach underscores a growing reality in cybersecurity: even when core SaaS platforms are secure, their third-party integrations often aren’t. Between August 8–18, 2025, att…

00:40:17  |   Thu 28 Aug 2025
Silk Typhoon’s Fake Adobe Update: How China-Backed Hackers Target Diplomats

Silk Typhoon’s Fake Adobe Update: How China-Backed Hackers Target Diplomats

A new and highly sophisticated cyber espionage campaign attributed to Silk Typhoon—also known as Mustang Panda, TEMP.Hex, or UNC6384—has been uncovered, targeting diplomats and government entities ac…

00:40:33  |   Thu 28 Aug 2025
Disclaimer: The podcast and artwork embedded on this page are the property of Daily Security Review. This content is not affiliated with or endorsed by eachpod.com.