Daily cybersecurity news for practitioners. Vulnerabilities, defenses, threats, network security insight, research and more to make you sound smarter as you get to the office in the morning. New each weekday.
…
continue reading
Software Patch Podcasts
A podcast that recaps some of the top posts on Hacker News every day. This is a third-party project, independent from HN and YC. Text and audio generated using AI, by Wondercraft.ai. Create your own news rundown podcast at app.wondercraft.ai
…
continue reading
Explore the life of a security leader with NetSPI Field Chief Information Security Officer (CISO) Nabil Hannan. Hear how CISOs with diverse expertise tackle the challenges and opportunities that come with life on the frontlines of cybersecurity.
…
continue reading
The Embedded Frontier, hosted by embedded systems expert Jacob Beningo, is a cutting-edge podcast dedicated to exploring the rapidly evolving world of embedded software and embedded system trends. Each episode delves into the latest technological advancements, industry standards, and innovative strategies that are shaping the future of embedded systems. Jacob Beningo, with his deep industry knowledge and experience, guides listeners through complex topics, making them accessible for both sea ...
…
continue reading
…
continue reading
Endpoint Management Today is a podcast brought to you by Rhonda and James from the BigFix team. Listen in to understand how IT operations and security teams fully automate discovery, management and remediation of endpoints – whether on-premise, virtual, or cloud – regardless of operating system, location or connectivity. Hear from technical experts, customers, thought leaders and more as we bring you new episodes each month. FIND more. FIX more. DO more.
…
continue reading
Interviews with end users and industry experts in, IT, AV and security about commercial technologies that can help institutions from enterprise to education to healthcare and beyond.
…
continue reading
Hacker Public Radio is an podcast that releases shows every weekday Monday through Friday. Our shows are produced by the community (you) and can be on any topic that are of interest to hackers and hobbyists.
…
continue reading
Welcome to the Flexera Security Vulnerability Insight Podcast, your go-to source for all things related to cybersecurity, software vulnerabilities, and threat intelligence. In this engaging podcast series, we will dive deep into the ever-evolving world of digital security, providing you with valuable insights, expert interviews, and the latest industry trends. Hosted by Jeroen Braak and leading experts in the field, each episode explores critical topics such as: Vulnerability Management: Sta ...
…
continue reading
Welcome to the HR Huddle, the ultimate resource for all things HR. This podcast is comprised of two unique mini-shows where we will be: Spilling The Tea On HR Tech with Chief Research Officer and HR tech market influencer, Stacey Harris and Cliff Stevenson, Sapient Insights Group, Director of Research, AND breaking down the messy stories that everyone in human resources has in HR - HR We Have a Problem, with Teri Zipper - global HR consulting expert and Sapient Insights Group CEO featuring w ...
…
continue reading
SAM is the leading provider of cloud-native security and intelligence services for unmanaged networks and IoTs, covering upwards of 500 million connected devices globally. With its powerful and intuitive AI technology, SAM addresses the challenges of our hyperconnected world, in which an explosion of IoT devices exposes potential attack surfaces for companies and consumers alike. SAM's device-agnostic software provides deep network visibility to not only protect against sophisticated cyber- ...
…
continue reading
Master the CompTIA Server+ exam with the Server+ Audio Course—your complete audio companion for learning server hardware, administration, security, storage, and troubleshooting. Each episode breaks down the official exam objectives into clear, practical lessons designed for listening and learning on the go. You’ll gain a deep understanding of physical and virtual server environments, network integration, performance monitoring, and disaster recovery planning—all explained in simple, direct l ...
…
continue reading
The Natural Reward podcast will focus on questions of innovation, progress and advancement in the evolution of life. We will discuss the evolution of scientific theories, how to think critically about science, and questions of progress and advancement in technology and human culture. The Natural Reward podcast will cover the philosophy and history of science, evolutionary theory, and economic theory. Music by Christian Bjoerklund.
…
continue reading
1
SANS Stormcast Friday, December 12th, 2025: Local AI Models; Mystery Chrome 0-Day; SOAPwn Attack
6:56
6:56
Play later
Play later
Lists
Like
Liked
6:56Using AI Gemma 3 Locally with a Single CPU Installing AI models on modes hardware is possible and can be useful to experiment with these models on premise https://isc.sans.edu/diary/Using%20AI%20Gemma%203%20Locally%20with%20a%20Single%20CPU%20/32556 Mystery Google Chrome 0-Day Vulnerability Google released an update for Google Chrome fixing a vulne…
…
continue reading
1
#021 - From Pray and Patch to Proactive: Modernizing Embedded Security
37:47
37:47
Play later
Play later
Lists
Like
Liked
37:47Visit our sponsor's website to learn more about their embedded security solutions at https://www.RunSafeSecurity.com/jacob This episode explores the critical shift from reactive "patch and pray" security approaches to proactive embedded security strategies. Host Jacob discusses common vulnerabilities in embedded systems, real-world security threats…
…
continue reading
1
Spilling the Tea on HR Tech - Why connector infrastructure and the AI training gap are blocking AI agent adoption and what Workday's acquisition strategy reveals about fixing both problems.
1:17:13
1:17:13
Play later
Play later
Lists
Like
Liked
1:17:13In this episode of Spilling the Tea on HR Tech, Stacey Harris and Cliff Stevenson discuss Workday's acquisition of Pipedream and what Model Context Protocol (MCP) servers mean for HR technology integration and AI agent security. The conversation covers everything from EU pay equity reporting requirements to why only 12% of employees feel they recei…
…
continue reading
This is a recap of the top 10 posts on Hacker News on December 10, 2025. This podcast was generated by wondercraft.ai (00:30): Size of Life Original post: https://news.ycombinator.com/item?id=46219346&utm_source=wondercraft_ai (01:52): Rust in the kernel is no longer experimental Original post: https://news.ycombinator.com/item?id=46213585&utm_sour…
…
continue reading
1
SANS Stormcast Thursday, December 11th, 2025: Possible CVE-2024-9042 variant; react2shell exploits; notepad++ update hijacking; macOS priv escalation
6:58
6:58
Play later
Play later
Lists
Like
Liked
6:58Possible exploit variant for CVE-2024-9042 (Kubernetes OS Command Injection) We observed HTTP requests with our honeypot that may be indicative of a new version of an exploit against an older vulnerability. Help us figure out what is going on. https://isc.sans.edu/diary/Possible%20exploit%20variant%20for%20CVE-2024-9042%20%28Kubernetes%20OS%20Comma…
…
continue reading
1
December 9th, 2025 | Show HN: Gemini Pro 3 hallucinates the HN front page 10 years from now
14:33
14:33
Play later
Play later
Lists
Like
Liked
14:33This is a recap of the top 10 posts on Hacker News on December 09, 2025. This podcast was generated by wondercraft.ai (00:30): Show HN: Gemini Pro 3 hallucinates the HN front page 10 years from now Original post: https://news.ycombinator.com/item?id=46205632&utm_source=wondercraft_ai (01:52): Ask HN: Should "I asked $AI, and it said" replies be for…
…
continue reading
1
SANS Stormcast Wednesday, December 10th, 2025: Microsoft, Adobe, Ivanti, Fortinet, and Ruby patches.
8:04
8:04
Play later
Play later
Lists
Like
Liked
8:04Microsoft Patch Tuesday Microsoft released its regular monthly patch on Tuesday, addressing 57 flaws. https://isc.sans.edu/diary/Microsoft%20Patch%20Tuesday%20December%202025/32550 Adobe Patches Adobe patched five products. The remote code execution in ColdFusion, as well as the code execution issue in Acrobat, will very likely see exploits soon. h…
…
continue reading
1
December 8th, 2025 | The fuck off contact page
14:28
14:28
Play later
Play later
Lists
Like
Liked
14:28This is a recap of the top 10 posts on Hacker News on December 08, 2025. This podcast was generated by wondercraft.ai (00:30): The fuck off contact page Original post: https://news.ycombinator.com/item?id=46189994&utm_source=wondercraft_ai (01:52): GitHub Actions has a package manager, and it might be the worst Original post: https://news.ycombinat…
…
continue reading
1
SANS Stormcast Tuesday, December 9th, 2025: nanoKVM Vulnerabilities; Ghostframe Phishing; WatchGuard Advisory
6:26
6:26
Play later
Play later
Lists
Like
Liked
6:26nanoKVM Vulnerabilities The nanoKVM device updates firmware insecurely; however, the microphone that the authors of the advisory referred to as undocumented may actually be documented in the underlying hardware description. https://www.tomshardware.com/tech-industry/cyber-security/researcher-finds-undocumented-microphone-and-major-security-flaws-in…
…
continue reading
This is a recap of the top 10 posts on Hacker News on December 07, 2025. This podcast was generated by wondercraft.ai (00:30): Using LLMs at Oxide Original post: https://news.ycombinator.com/item?id=46178347&utm_source=wondercraft_ai (01:53): The state of Schleswig-Holstein is consistently relying on open source Original post: https://news.ycombina…
…
continue reading
1
SANS Stormcast Monday, December 8th, 2025: AutoIT3 FileInstall; React2Shell Update; Tika Vuln
5:34
5:34
Play later
Play later
Lists
Like
Liked
5:34AutoIT3 Compiled Scripts Dropping Shellcodes Malicious AutoIT3 scripts are usign the FileInstall function to include additional scripts at compile time that are dropped as temporary files during execution. https://isc.sans.edu/diary/AutoIT3%20Compiled%20Scripts%20Dropping%20Shellcodes/32542 React2Shell Update The race is on to patch vulnerable syst…
…
continue reading
1
December 6th, 2025 | GrapheneOS is the only Android OS providing full security patches
14:19
14:19
Play later
Play later
Lists
Like
Liked
14:19This is a recap of the top 10 posts on Hacker News on December 06, 2025. This podcast was generated by wondercraft.ai (00:30): GrapheneOS is the only Android OS providing full security patches Original post: https://news.ycombinator.com/item?id=46173407&utm_source=wondercraft_ai (01:51): Schizophrenia sufferer mistakes smart fridge ad for psychotic…
…
continue reading
1
December 5th, 2025 | Netflix to Acquire Warner Bros
15:05
15:05
Play later
Play later
Lists
Like
Liked
15:05This is a recap of the top 10 posts on Hacker News on December 05, 2025. This podcast was generated by wondercraft.ai (00:30): Netflix to Acquire Warner Bros Original post: https://news.ycombinator.com/item?id=46160315&utm_source=wondercraft_ai (01:56): Cloudflare was down Original post: https://news.ycombinator.com/item?id=46158191&utm_source=wond…
…
continue reading
1
December 4th, 2025 | It’s time to free JavaScript (2024)
14:58
14:58
Play later
Play later
Lists
Like
Liked
14:58This is a recap of the top 10 posts on Hacker News on December 04, 2025. This podcast was generated by wondercraft.ai (00:30): It’s time to free JavaScript (2024) Original post: https://news.ycombinator.com/item?id=46145365&utm_source=wondercraft_ai (01:55): Why are 38 percent of Stanford students saying they're disabled? Original post: https://new…
…
continue reading
1
SANS Stormcast Friday, December 5th, 2025: Compromised Govt System; React Vuln Update; Array Networks VPN Attacks
4:35
4:35
Play later
Play later
Lists
Like
Liked
4:35Nation-State Attack or Compromised Government? [Guest Diary] An IP address associated with the Indonesian Government attacked one of our interns' honeypots. https://isc.sans.edu/diary/Nation-State%20Attack%20or%20Compromised%20Government%3F%20%5BGuest%20Diary%5D/32536 React Update Working exploits for the React vulnerability patched yesterday are n…
…
continue reading
1
HR, We Have a Problem - Why implementation partners matter more than the software itself and how to choose the right one for your HR tech project.
47:50
47:50
Play later
Play later
Lists
Like
Liked
47:50In this episode of HR, We Have a Problem, Teri Zipper and guest Bonnie Tinder, Founder and CEO at Raven Intelligence, explore how too many HR tech projects fail not because of the software itself, but because of poor implementation planning and partner selection. Bonnie shares how to evaluate system integrators, spot red flags during the selection …
…
continue reading
1
December 3rd, 2025 | Zig quits GitHub, says Microsoft's AI obsession has ruined the service
14:08
14:08
Play later
Play later
Lists
Like
Liked
14:08This is a recap of the top 10 posts on Hacker News on December 03, 2025. This podcast was generated by wondercraft.ai (00:30): Zig quits GitHub, says Microsoft's AI obsession has ruined the service Original post: https://news.ycombinator.com/item?id=46131406&utm_source=wondercraft_ai (01:50): Ghostty is now non-profit Original post: https://news.yc…
…
continue reading
1
SANS Stormcast Thursday, December 4th, 2025: CDN Headers; React Vulnerabiity; PickleScan Patch
6:44
6:44
Play later
Play later
Lists
Like
Liked
6:44Attempts to Bypass CDNs Our honeypots recently started receiving scans that included CDN specific headers. https://isc.sans.edu/diary/Attempts%20to%20Bypass%20CDNs/32532 React Vulnerability CVE-2025-55182 React patched a critical vulnerability in React server components. Exploitation is likely imminent. https://react.dev/blog/2025/12/03/critical-se…
…
continue reading
1
December 2nd, 2025 | Anthropic acquires Bun
14:30
14:30
Play later
Play later
Lists
Like
Liked
14:30This is a recap of the top 10 posts on Hacker News on December 02, 2025. This podcast was generated by wondercraft.ai (00:30): Anthropic acquires Bun Original post: https://news.ycombinator.com/item?id=46124267&utm_source=wondercraft_ai (01:52): Mistral 3 family of models released Original post: https://news.ycombinator.com/item?id=46121889&utm_sou…
…
continue reading
1
SANS Stormcast Wednesday, December 3rd, 2025: SmartTube Compromise; NPM Malware Prompt Injection Attempt; Angular XSS Vulnerability
6:06
6:06
Play later
Play later
Lists
Like
Liked
6:06SmartTube Android App Compromise The key a developer used to sign the Android YouTube player SmartTube was compromised and used to publish a malicious version. https://github.com/yuliskov/SmartTube/issues/5131#issue-3670629826 https://github.com/yuliskov/SmartTube/releases/tag/notification Two Years, 17K Downloads: The NPM Malware That Tried to Gas…
…
continue reading
1
December 1st, 2025 | Search tool that only returns content created before ChatGPT's public release
14:11
14:11
Play later
Play later
Lists
Like
Liked
14:11This is a recap of the top 10 posts on Hacker News on December 01, 2025. This podcast was generated by wondercraft.ai (00:30): Search tool that only returns content created before ChatGPT's public release Original post: https://news.ycombinator.com/item?id=46103376&utm_source=wondercraft_ai (01:50): DeepSeek-v3.2: Pushing the frontier of open large…
…
continue reading
1
SANS Stormcast Tuesday, December 2nd, 2025: Analyzing ToolShell from Packdets; Android Update; Long Game Malicious Browser Ext.
5:49
5:49
Play later
Play later
Lists
Like
Liked
5:49Hunting for SharePoint In-Memory ToolShell Payloads A walk-through showing how to analyze ToolShell payloads, starting with acquiring packets all the way to decoding embedded PowerShell commands. https://isc.sans.edu/diary/%5BGuest%20Diary%5D%20Hunting%20for%20SharePoint%20In-Memory%20ToolShell%20Payloads/32524 Android Security Bulletin December 20…
…
continue reading
1
November 30th, 2025 | Advent of Code 2025
14:54
14:54
Play later
Play later
Lists
Like
Liked
14:54This is a recap of the top 10 posts on Hacker News on November 30, 2025. This podcast was generated by wondercraft.ai (00:30): Advent of Code 2025 Original post: https://news.ycombinator.com/item?id=46096337&utm_source=wondercraft_ai (01:54): Show HN: Boing Original post: https://news.ycombinator.com/item?id=46093473&utm_source=wondercraft_ai (03:1…
…
continue reading
1
SANS Stormcast Monday, December 1st, 2025: More ClickFix; Teams Guest Access; Geoserver XXE Vulnerablity
5:42
5:42
Play later
Play later
Lists
Like
Liked
5:42Fake adult websites pop realistic Windows Update screen to deliver stealers via ClickFix The latest variant of ClickFix tricks users into copy/pasting commands by displaying a fake blue screen of death. https://www.acronis.com/en/tru/posts/fake-adult-websites-pop-realistic-windows-update-screen-to-deliver-stealers-via-clickfix/ B2B Guest Access Cre…
…
continue reading
1
November 29th, 2025 | Leak confirms OpenAI is preparing ads on ChatGPT for public roll out
14:47
14:47
Play later
Play later
Lists
Like
Liked
14:47This is a recap of the top 10 posts on Hacker News on November 29, 2025. This podcast was generated by wondercraft.ai (00:30): Leak confirms OpenAI is preparing ads on ChatGPT for public roll out Original post: https://news.ycombinator.com/item?id=46086771&utm_source=wondercraft_ai (01:54): All it takes is for one to work out Original post: https:/…
…
continue reading
1
November 28th, 2025 | Pocketbase – open-source realtime back end in 1 file
14:37
14:37
Play later
Play later
Lists
Like
Liked
14:37This is a recap of the top 10 posts on Hacker News on November 28, 2025. This podcast was generated by wondercraft.ai (00:30): Pocketbase – open-source realtime back end in 1 file Original post: https://news.ycombinator.com/item?id=46075320&utm_source=wondercraft_ai (01:53): EU Council Approves New "Chat Control" Mandate Pushing Mass Surveillance O…
…
continue reading
1
November 27th, 2025 | Migrating the main Zig repository from GitHub to Codeberg
14:25
14:25
Play later
Play later
Lists
Like
Liked
14:25This is a recap of the top 10 posts on Hacker News on November 27, 2025. This podcast was generated by wondercraft.ai (00:30): Migrating the main Zig repository from GitHub to Codeberg Original post: https://news.ycombinator.com/item?id=46064571&utm_source=wondercraft_ai (01:52): Penpot: The Open-Source Figma Original post: https://news.ycombinator…
…
continue reading
1
Spilling the Tea on HR Tech - What 28 years of HR Tech research reveals about the shift from siloed systems to workforce technology.
33:51
33:51
Play later
Play later
Lists
Like
Liked
33:51In this episode of Spilling the Tea on HR Tech, Susan Richards, Teri Zipper, and Cliff Stevenson, discuss how HR technology is shifting from functional systems to workforce tech that connects HR, IT, and finance. The conversation covers what's driving AI adoption beyond the hype, why learning platform vendors were notably absent from the show floor…
…
continue reading
1
November 26th, 2025 | Voyager 1 is about to reach one light-day from Earth
14:46
14:46
Play later
Play later
Lists
Like
Liked
14:46This is a recap of the top 10 posts on Hacker News on November 26, 2025. This podcast was generated by wondercraft.ai (00:30): Voyager 1 is about to reach one light-day from Earth Original post: https://news.ycombinator.com/item?id=46057488&utm_source=wondercraft_ai (01:54): OpenAI needs to raise at least $207B by 2030 Original post: https://news.y…
…
continue reading
1
#020 - Embedded DevOps with GitLabs Darwin Sanoy
25:26
25:26
Play later
Play later
Lists
Like
Liked
25:26In this episode of the Embedded Frontier podcast, host Jacob interviews Darwin from GitLab's field CTO office about the adoption and implementation of DevOps practices in embedded systems development. They explore the unique challenges embedded developers face when modernizing their workflows, including managing complex codebases with hundreds of m…
…
continue reading
1
November 25th, 2025 | Google Antigravity exfiltrates data via indirect prompt injection attack
14:52
14:52
Play later
Play later
Lists
Like
Liked
14:52This is a recap of the top 10 posts on Hacker News on November 25, 2025. This podcast was generated by wondercraft.ai (00:30): Google Antigravity exfiltrates data via indirect prompt injection attack Original post: https://news.ycombinator.com/item?id=46048996&utm_source=wondercraft_ai (01:54): Someone at YouTube Needs Glasses: The Prophecy Has Bee…
…
continue reading
1
SANS Stormcast Wednesday, November 26th, 2025: Attacks Against Messaging; Passwords in Random Websites; Fluentbit Vuln; #thanksgiving
6:07
6:07
Play later
Play later
Lists
Like
Liked
6:07Spyware Allows Cyber Threat Actors to Target Users of Messaging Applications Spyware attacks messaging applications in part by triggering vulnerabilities in messaging applications but also by deploying tools like keystroke loggers and screenshot applications. https://www.cisa.gov/news-events/alerts/2025/11/24/spyware-allows-cyber-threat-actors-targ…
…
continue reading
1
November 24th, 2025 | Shai-Hulud Returns: Over 300 NPM Packages Infected
14:43
14:43
Play later
Play later
Lists
Like
Liked
14:43This is a recap of the top 10 posts on Hacker News on November 24, 2025. This podcast was generated by wondercraft.ai (00:30): Shai-Hulud Returns: Over 300 NPM Packages Infected Original post: https://news.ycombinator.com/item?id=46032539&utm_source=wondercraft_ai (01:53): Claude Opus 4.5 Original post: https://news.ycombinator.com/item?id=46037637…
…
continue reading
1
SANS Stormcast Tuesday, November 25th, 2025: URL Mapping and Authentication; SHA1-Hulud; Hacklore
6:11
6:11
Play later
Play later
Lists
Like
Liked
6:11Conflicts between URL mapping and URL based access control. Mapping different URLs to the same script, and relying on URL based authentication at the same time, may lead to dangerous authentication and access control gaps. https://isc.sans.edu/diary/Conflicts%20between%20URL%20mapping%20and%20URL%20based%20access%20control./32518 Sha1-Hulud, The Se…
…
continue reading
1
November 23rd, 2025 | After my dad died, we found the love letters
14:09
14:09
Play later
Play later
Lists
Like
Liked
14:09This is a recap of the top 10 posts on Hacker News on November 23, 2025. This podcast was generated by wondercraft.ai (00:30): After my dad died, we found the love letters Original post: https://news.ycombinator.com/item?id=46021825&utm_source=wondercraft_ai (01:50): Fran Sans – font inspired by San Francisco light rail displays Original post: http…
…
continue reading
1
SANS Stormcast Monday, November 24th, 2025: CSS Padding in Phishing; Oracle Identity Manager Scans Update;
4:59
4:59
Play later
Play later
Lists
Like
Liked
4:59Use of CSS stuffing as an obfuscation technique? Phishing sites stuff their HTML with benign CSS code. This is likely supposed to throw of simple detection engines https://isc.sans.edu/diary/Use%20of%20CSS%20stuffing%20as%20an%20obfuscation%20technique%3F/32510 Critical Oracle Identity Manager Flaw Possibly Exploited as Zero-Day Early exploit attem…
…
continue reading
1
November 22nd, 2025 | The privacy nightmare of browser fingerprinting
13:53
13:53
Play later
Play later
Lists
Like
Liked
13:53This is a recap of the top 10 posts on Hacker News on November 22, 2025. This podcast was generated by wondercraft.ai (00:30): The privacy nightmare of browser fingerprinting Original post: https://news.ycombinator.com/item?id=46016249&utm_source=wondercraft_ai (01:48): Agent design is still hard Original post: https://news.ycombinator.com/item?id=…
…
continue reading