Search a title or topic

Over 20 million podcasts, powered by 

Player FM logo
Artwork

Content provided by Dr Jason Edwards and Jason Edwards. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Dr Jason Edwards and Jason Edwards or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Daily Cyber News – October 16th, 2025

13:01
 
Share
 

Manage episode 514052208 series 3691420
Content provided by Dr Jason Edwards and Jason Edwards. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Dr Jason Edwards and Jason Edwards or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

This is today’s cyber news for October 16th, 2025. F5 confirmed a nation-state breach with BIG-IP source code and vulnerability research stolen, while the U.K.’s regulator fined Capita £14 million for its 2023 data breach. We covered a massive misconfigured Elasticsearch cache exposing six billion records, evolving social engineering that impersonates password managers and the “ClickFix” copy-paste lure, and a third-party breach at MANGO. Critical risk items include SAP NetWeaver remote code execution, leaked tokens in 100+ VS Code extensions, and Secure Boot bypass risks on Framework laptops. Advanced adversary activity featured Jewelbug at a Russian IT provider and Flax Typhoon’s long-term ArcGIS abuse, alongside OT and telecom warnings on Red Lion RTUs and active exploitation of ICTBroadcast. We also discussed job-offer phishing against Google Workspace and Microsoft 365, GhostBat Android banking theft in India, a four-year sentence in the PowerSchool case, the Qilin ransomware operation, and the rise of board-level AI and cyber oversight.

Listeners will hear concise, plain-English summaries plus who’s most exposed and a practical next step for each story—useful for leaders prioritizing risk, defenders tuning controls, and builders shoring up pipelines. It’s a fast way to stay briefed on supplier breaches, patch-now vulnerabilities, cloud identity threats, OT device flaws, and shifting governance expectations. The narrated edition is available at DailyCyber.news.

  continue reading

23 episodes

Artwork
iconShare
 
Manage episode 514052208 series 3691420
Content provided by Dr Jason Edwards and Jason Edwards. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Dr Jason Edwards and Jason Edwards or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

This is today’s cyber news for October 16th, 2025. F5 confirmed a nation-state breach with BIG-IP source code and vulnerability research stolen, while the U.K.’s regulator fined Capita £14 million for its 2023 data breach. We covered a massive misconfigured Elasticsearch cache exposing six billion records, evolving social engineering that impersonates password managers and the “ClickFix” copy-paste lure, and a third-party breach at MANGO. Critical risk items include SAP NetWeaver remote code execution, leaked tokens in 100+ VS Code extensions, and Secure Boot bypass risks on Framework laptops. Advanced adversary activity featured Jewelbug at a Russian IT provider and Flax Typhoon’s long-term ArcGIS abuse, alongside OT and telecom warnings on Red Lion RTUs and active exploitation of ICTBroadcast. We also discussed job-offer phishing against Google Workspace and Microsoft 365, GhostBat Android banking theft in India, a four-year sentence in the PowerSchool case, the Qilin ransomware operation, and the rise of board-level AI and cyber oversight.

Listeners will hear concise, plain-English summaries plus who’s most exposed and a practical next step for each story—useful for leaders prioritizing risk, defenders tuning controls, and builders shoring up pipelines. It’s a fast way to stay briefed on supplier breaches, patch-now vulnerabilities, cloud identity threats, OT device flaws, and shifting governance expectations. The narrated edition is available at DailyCyber.news.

  continue reading

23 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play