Signal Check

Episode 52: May 23, 2026

4 min · 23. Mai 2026
Episode Episode 52: May 23, 2026 Cover

Beschreibung

This episode digs into the week's quiet but persistent threats—Linux rootkits, router zero-days, and AI adversarial probing—before covering major incidents including Grafana Labs' GitHub breach and a zero-day exploit in Trend Micro's own security software. Adrian North wraps up with a sobering reminder that even CISA contractors aren't immune to mistakes, as exposed AWS GovCloud credentials sat publicly on GitHub. Stories covered: - ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New Stories (The Hacker News) - https://thehackernews.com/2026/05/threatsday-bulletin-linux-rootkits.html - Grafana Labs Security Breach - Hackers Access GitHub and Download Codebase - CyberSecurityNews (CyberSecurityNews) - https://news.google.com/rss/articles/CBMia0FVX3lxTE00aWtyeFl6WE1sS1N0X0JRYkJXQmxvQ1NpYVlSeWZGempNc2RXdlM2TU5pdkh5SDlOVXVLMGRPMXZzU2VIOUFwUFlSNkR2YVpxcEpZdEcxa3Y4TGgzdlk4cnpra1FCbHh4OWhJ0gFwQVVfeXFMT1owNlYwdDNmV0c5bWVlNlJHbDB6TnlNS28xWUZ1RWpsVHpyQTFxWmZzcG9lV3h3RTBTczM1TWJnaW13Qk10RHpfMi1JME9abzh3QnBRdWlWeVk2cHpVLXJxNHlieWhUZTFUR0swWF9rVw?oc=5 - Trend Micro warns of Apex One zero-day exploited in the wild (BleepingComputer) - https://www.bleepingcomputer.com/news/security/trend-micro-warns-of-apex-one-zero-day-exploited-in-attacks/ - CISA Admin Leaked AWS GovCloud Keys on Github (Krebs on Security) - https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/ - The Best Editor-Approved Memorial Day Deals on Garmin, Coros, and Shokz: Get Hundreds Off Popular Gear for Runners (Runner's World) - https://www.runnersworld.com/gear/a71292623/memorial-day-running-gear-deals-2026/ - Trump Mobile confirms it exposed customers’ personal data, including phone numbers and home addresses (TechCrunch) - https://techcrunch.com/2026/05/22/trump-mobile-confirms-it-exposed-customers-personal-data-including-phone-numbers-and-home-addresses/

Kommentare

0

Sei die erste Person, die kommentiert

Melde dich jetzt an und werde Teil der Signal Check-Community!

Loslegen

2 Monate für 1 €

Dann 4,99 € / Monat · Jederzeit kündbar.

  • Podcasts nur bei Podimo
  • 20 Stunden Hörbücher / Monat
  • Alle kostenlosen Podcasts

Alle Folgen

72 Folgen

Episode Episode 75: June 15, 2026 Cover

Episode 75: June 15, 2026

This episode covers six cybersecurity and tech stories from Monday morning, including a zero-day exploit in Oracle PeopleSoft by ShinyHunters, a massive AUR package compromise affecting Arch Linux users, and a CISA emergency directive on Ivanti Sentry. Adrian also digs into a fascinating DIY project where someone indexed 669 gigabytes of GoPro footage using local machine learning models. Stories covered: - ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities (The Hacker News) - https://thehackernews.com/2026/06/shinyhunters-exploits-oracle-peoplesoft.html - Over 400 Arch Linux packages compromised to push rootkit, infostealer (BleepingComputer) - https://www.bleepingcomputer.com/news/security/over-400-arch-linux-packages-compromised-to-push-rootkit-infostealer/ - CISA orders feds to patch actively exploited Ivanti flaw by Sunday (BleepingComputer) - https://www.bleepingcomputer.com/news/security/cisa-gives-feds-3-days-to-patch-ivanti-flaw-exploited-in-attacks/ - I indexed 669 GB of my GoPro videos using my M1 Max computer and local ML models (Hacker News) - https://news.ycombinator.com/item?id=48528029 - Are You Running More or Less Than Your Peers? New Data Shows the Average Distance by Age Group (Runner's World) - https://www.runnersworld.com/training/a71570890/average-run-distance-by-age/ - She Started Running at 65—and Just 3 Years Later Finished Her First Boston Marathon (Runner's World) - https://www.runnersworld.com/runners-stories/a71550469/sandra-cotterell-boston-marathon/

15. Juni 20265 min
Episode Episode 74: June 14, 2026 Cover

Episode 74: June 14, 2026

This episode covers a major supply chain attack on Arch Linux's AUR, a zero-day exploit in Oracle PeopleSoft used by the ShinyHunters crew to breach universities, and a few unexpected signals about endurance and starting late. Adrian breaks down the technical fallout from both incidents and reminds us that not every signal is a threat—some are just proof that it's never too late to begin. Grab your coffee and get the morning download before the day gets loud. Stories covered: - Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit (The Hacker News) - https://thehackernews.com/2026/06/over-400-arch-linux-aur-packages.html - ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities (The Hacker News) - https://thehackernews.com/2026/06/shinyhunters-exploits-oracle-peoplesoft.html - Over 400 Arch Linux packages compromised to push rootkit, infostealer (BleepingComputer) - https://www.bleepingcomputer.com/news/security/over-400-arch-linux-packages-compromised-to-push-rootkit-infostealer/ - She Started Running at 65—and Just 3 Years Later Finished Her First Boston Marathon (Runner's World) - https://www.runnersworld.com/runners-stories/a71550469/sandra-cotterell-boston-marathon/ - Intriguing Storylines and Predictions for the 2026 Western States 100 (iRunFar) - https://www.irunfar.com/intriguing-storylines-and-predictions-for-the-2026-western-states-100 - Chinese hackers hijack auth flow, spy on isolated network for a decade (BleepingComputer) - https://www.bleepingcomputer.com/news/security/chinese-hackers-hijack-auth-flow-spy-on-isolated-network-for-a-decade/

Gestern4 min
Episode Episode 73: June 13, 2026 Cover

Episode 73: June 13, 2026

This episode digs into a brutal week for security, starting with over 400 hijacked Arch Linux packages that installed credential stealers and rootkits. We also cover ShinyHunters exploiting a zero-day in Oracle PeopleSoft to hit universities, and an AI-powered cyber defense platform launching with serious funding and even bigger questions. Stories covered: - Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit (The Hacker News) - https://thehackernews.com/2026/06/over-400-arch-linux-aur-packages.html - ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities (The Hacker News) - https://thehackernews.com/2026/06/shinyhunters-exploits-oracle-peoplesoft.html - He Hacked Teslas For Elon Musk. Now He’s Launching A $100 Million AI Cyber Agent. - Forbes (Forbes) - https://news.google.com/rss/articles/CBMiuwFBVV95cUxPeEhOdFU0M2trc1E2Zko0d0pzX2lyQ2RNdExTcno4WWI5cGRHUThGeWQtR3locXZPREwtNkhkVG0yZ2lUQjNVVTJQM0VjVHd3U2k1WHp3S0dwMEc5YlNfN1ZBTll3cTJ2dm14ZWVHZjJ4eTJiWnRVazBJN3FvbU1MM2I1VHh5VlhLNnVROHJaNXR5eDA5UUE2dUVJU25HcU1ITFpZQnV0eUxTS0FxUmpRaVI4TkFrbWdDTEFB?oc=5 - Oracle mitigates PeopleSoft zero-day exploited in data theft attacks (BleepingComputer) - https://www.bleepingcomputer.com/news/security/oracle-mitigates-peoplesoft-zero-day-exploited-in-data-theft-attacks/ - Intriguing Storylines and Predictions for the 2026 Western States 100 (iRunFar) - https://www.irunfar.com/intriguing-storylines-and-predictions-for-the-2026-western-states-100 - Man sues law enforcement alleging AI facial recognition technology led to wrongful arrest - ABC News - Breaking News, Latest News and Videos (ABC News - Breaking News, Latest News and Videos) - https://news.google.com/rss/articles/CBMipgFBVV95cUxNYkxZcmlfd3dZdHRKb0JGdUExZWVmRDlPYkNlczc0LWtfMnU1ektLaWt1a2JtTXRhOGVpYkJUOUJmdG9VXzJVdUxsMnR0UWNRYXdmUUtnQnR6QmhuQUNRc2NpcFQ1ZEZackU2UzJ6SU8wUndvZ1VWUjN0NS0yWVhTRGt5QjZCZmk2QjR0NHQzTmx4Z0Q5MVBEZjdPZDVkbDg2WkRyNDdB0gGrAUFVX3lxTE1ZaGdfR1NQVWZQQVRkXzZDc2tWcl9JVUV4clhPUzlvNUgxdWNyVDFuSkptWjVSWXp1aU5ZOGcxblpWX1JzMGtJalgzUFJhcS1VX2lWNy1fR0tOeGFJY3NnNDhEUGlRazZuT2ZYejdOWGpPOXJBcExnd1paMnhvZkppdjZWU2xCeU9VMk1DeWZiMVNONzdMdHlyOFNpRC01Sm1Zb0RzY2dEY0ROSQ?oc=5

13. Juni 20265 min
Episode Episode 72: June 12, 2026 Cover

Episode 72: June 12, 2026

This episode covers ShinyHunters exploiting an unpatched Oracle PeopleSoft vulnerability to breach universities, the leaked Miasma worm source code lowering the barrier for supply-chain attacks, and new research showing how AI agents like OpenClaw can be tricked into running malicious code through prompt injection. Adrian breaks down the week's critical signals before the weekend hits. Stories covered: - ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities (The Hacker News) - https://thehackernews.com/2026/06/shinyhunters-exploits-oracle-peoplesoft.html - The ‘Miasma’ worm source code briefly leaked on GitHub (BleepingComputer) - https://www.bleepingcomputer.com/news/security/the-miasma-worm-source-code-briefly-leaked-on-github/ - New Attacks Trick OpenClaw AI Agent Into Running Code and Leaking Secrets (The Hacker News) - https://thehackernews.com/2026/06/new-attacks-trick-openclaw-ai-agent.html - Why You Have to Run SLOW to Race FAST (The Science of Easy Running) (Marathon Handbook) - https://marathonhandbook.com/why-you-have-to-run-slow-to-race-fast-the-science-of-easy-running/ - Everest 2026: Sherpas and Guides Call For Change (ExplorersWeb) - https://explorersweb.com/everest-2026-summary-sherpas-and-guides-call-for-change/ - Why You Might Already Own SpaceX Shares, Siri’s AI Makeover, and Knicks Owner’s Surveillance Machine (Wired) - https://www.wired.com/story/uncanny-valley-podcast-why-you-might-already-own-spacex-shares-siri-ai-makeover-knicks-owner-surveillance-machine/

12. Juni 20266 min
Episode Episode 71: June 11, 2026 Cover

Episode 71: June 11, 2026

This episode digs into a fresh Microsoft Defender zero-day granting full system access, a new SSD timing attack that tracks your browsing through hardware behavior, and the rise of The Gentlemen ransomware group building a professional cybercrime empire. Adrian breaks down why these aren't just bugs—they're fundamental shifts in how attacks work. Morning coffee required. Stories covered: - Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows (The Hacker News) - https://thehackernews.com/2026/06/microsoft-defender-rogueplanet-zero-day.html - New FROST Attack Lets Websites Track What Sites and Apps You Open via SSD Timing - The Hacker News (The Hacker News) - https://news.google.com/rss/articles/CBMigAFBVV95cUxQcHJSUHJZODRwQVc2bUJwR3hGUWlwS1NYazduREVkWk1ScXNMVTd4c051Uk5TOUwtNk52RGh6QlVLZjhIR2ExZGpoWDJha0hIR193eC00WlNxaXhwZ1A5T0wxSlJKdC11d2JESldOcVpfSThBT3ZjWUpfTW15M3Z0cA?oc=5 - Who Runs the Ransomware Group ‘The Gentlemen?’ (Krebs on Security) - https://krebsonsecurity.com/2026/06/who-runs-the-ransomware-group-the-gentlemen/ - This Adidas Trainer Was Our Best Overall Running Shoe, and It’s Just $105 Right Now (Runner's World) - https://www.runnersworld.com/gear/a71547463/adidas-adizero-evo-sl-sale-june-2026/ - China Opens World’s First Wind-Powered Underwater Data Center (Wired) - https://www.wired.com/story/china-opens-worlds-first-wind-powered-underwater-data-center/ - How JPL keeps the 13-year-old Curiosity rover doing science (Hacker News) - https://spectrum.ieee.org/curiosity-rover-jpl-mars-science

11. Juni 20265 min