
engelsk
Nyheder & politik
Begrænset tilbud
Derefter 99 kr. / månedOpsig når som helst.
Læs mere Hacking Humans
Deception, influence, and social engineering in the world of cyber crime.
Scammers gonna scam.
This week, hosts [https://www.linkedin.com/in/dave-bittner-27231a4/] Dave Bittner [https://www.linkedin.com/in/dave-bittner-27231a4/], Joe Carrigan [https://www.linkedin.com/in/joecarrigan/], and Maria Varmazis [https://www.linkedin.com/in/varmazis/] (also host of the T-Minus [https://space.n2k.com/podcasts/t-minus?__hstc=223811332.a636bba53840b4700c929fe67723a129.1721054632698.1747145009569.1747159962459.413&__hssc=223811332.2.1747159962459&__hsfp=3690629108] Space Daily show) are sharing the latest in social engineering scams, phishing schemes, and criminal exploits that are making headlines. Joe share's another chicken update for us, this time from Werner Herzog. Dave’s got a story from a listener named Tim, an IRS Criminal Investigation agent, who explains that real CI agents may contact people unannounced and can verify themselves in person, but if anyone asks for gift cards or crypto, it’s definitely a scam. Maria has the story on how attackers are abusing real SendGrid accounts to send politically charged phishing emails that look legitimate and trick users into handing over their credentials. Joe has two stories this week, the first on Cambodia’s renewed crackdown on massive Southeast Asian scam networks following the arrest and extradition of alleged kingpin Chen Zhi, signaling deeper international cooperation against fraud operations that have stolen billions worldwide, and the second on a Nashville Uber driver who lost $300 after falling for a convincing phone scam that impersonated Uber Support and falsely accused him of drunk driving. Our catch of the day comes from Reddit scams where one scammer gets put through the ringer, twice. Resources and links to stories: * Cambodia to keep up crackdown on scam centres after arrest of alleged mastermind [https://www.reuters.com/world/china/cambodia-keep-up-crackdown-scam-centres-after-arrest-alleged-mastermind-2026-01-14/] * Uber driver describes drunk driving scam that cost him $300 [https://www.wsmv.com/2026/01/15/uber-driver-describes-drunk-driving-scam-that-cost-him-300/] * SendGrid isn’t emailing you about ICE or BLM. It’s a phishing attack. [https://fredbenenson.com/blog/2026/01/09/sendgrid-isnt-emailing-you-about-ice-or-blm-its-a-phishing-attack/] * Dave Part 1 [https://www.reddit.com/r/scambait/comments/1qbxjmd/dave_part_1/] [https://therecord.media/fin6-recruitment-scam-malware-campaign]Have a Catch of the Day you'd like to share? Email it to us at [https://therecord.media/fin6-recruitment-scam-malware-campaign]hackinghumans@n2k.com [hackinghumans@n2k.com].
Intrusion Detection System (noun) [Word Notes]
Please enjoy this encore of Word Notes. A system that monitors for malicious or unwanted activity, and either raises alerts when such activity is detected or blocks the traffic from passing to the target. CyberWire Glossary link: https://thecyberwire.com/glossary/intrusion-detection-system [https://thecyberwire.com/glossary/intrusion-detection-system] Audio reference link: “Network Intrusion Detection and Prevention - CompTIA Security+ SY0-501 - 2.1 [https://youtu.be/hEgWPWIuq_s],” Professor Messer, uploaded 16 November, 2017
When a scammer meets the Force.
This week, while Maria Varmazis [https://www.linkedin.com/in/varmazis/] (also host of the T-Minus [https://space.n2k.com/podcasts/t-minus?__hstc=223811332.a636bba53840b4700c929fe67723a129.1721054632698.1747145009569.1747159962459.413&__hssc=223811332.2.1747159962459&__hsfp=3690629108] Space Daily show) is out, our hosts [https://www.linkedin.com/in/dave-bittner-27231a4/] Dave Bittner [https://www.linkedin.com/in/dave-bittner-27231a4/] and Joe Carrigan [https://www.linkedin.com/in/joecarrigan/] are sharing the latest in social engineering scams, phishing schemes, and criminal exploits that are making headlines. Joe starts us off with a chicken update. Joe’s story is on CrowdStrike’s 2025 Global Threat Report, which reveals faster-than-ever breakout times, a surge in vishing and initial access attacks, widespread abuse of valid accounts, and a growing shift toward malware-free intrusions as adversaries become more numerous and sophisticated. Dave’s got the story on how “pig-butchering” romance scams are industrialized, detailing Reuters’ reporting on cyberfraud gangs using step-by-step psychological playbooks to groom victims, manufacture emotional attachment, and rapidly funnel them into fake investments that leave lasting financial and emotional damage. Rishika Desai [https://www.linkedin.com/in/rishika-d-61a765159/], Threat Researcher and Writer from Bfore.ai [https://www.linkedin.com/company/bforeai/], joins Dave and Joe to discuss renting social media ad accounts for scamming purposes. Our catch of the day comes from Reddit, where one user channels their inner Jedi and uses the Force to send a pesky scammer retreating to the dark side. Resources and links to stories: * [https://www.jec.senate.gov/public/_cache/files/c1717fa4-9ab4-444e-b6f6-0e9000bfccea/12.2025-holiday-travel-scams-alert.pdf]A scammer’sblueprint [https://www.reuters.com/graphics/SOUTHEASTASIA-SCAMS/MANUALS/klpyjlqelvg/?utm_source=Sailthru&utm_medium=Newsletter&utm_campaign=Daily-Briefing&utm_term=010826&lctg=64493bdb2c0862838c0ad236] * CROWDSTRIKE 2025 GLOBAL THREAT REPORT [https://go.crowdstrike.com/2025-global-threat-report.html] [https://therecord.media/fin6-recruitment-scam-malware-campaign]Have a Catch of the Day you'd like to share? Email it to us at [https://therecord.media/fin6-recruitment-scam-malware-campaign]hackinghumans@n2k.com [hackinghumans@n2k.com].
MFA prompt bombing (noun) [Word Notes]
Please enjoy this encore of Word Notes. Hackers bypass, multifactor authentication schemes by sending a blizzard of spamming login attempts until the accounts owner accepts the MFA prompt out of desperation to make the spamming stop. CyberWire Glossary link: https://thecyberwire.com/glossary/mfa-prompt-bombing [https://thecyberwire.com/glossary/mfa-prompt-bombing] Audio reference link: movieclips. “Sneakers (2/9) Movie Clip - Defeating the Keypad (1992) HD. [https://www.youtube.com/watch?v=oG5vsPJ5Tos]” YouTube, YouTube, 29 May 2011, https://www.youtube.com/watch?v=oG5vsPJ5Tos.
It's just too good to be true.
This week, our hosts [https://www.linkedin.com/in/dave-bittner-27231a4/] Dave Bittner [https://www.linkedin.com/in/dave-bittner-27231a4/], Joe Carrigan [https://www.linkedin.com/in/joecarrigan/], and Maria Varmazis [https://www.linkedin.com/in/varmazis/] (also host of the T-Minus [https://space.n2k.com/podcasts/t-minus?__hstc=223811332.a636bba53840b4700c929fe67723a129.1721054632698.1747145009569.1747159962459.413&__hssc=223811332.2.1747159962459&__hsfp=3690629108] Space Daily show) are sharing the latest in social engineering scams, phishing schemes, and criminal exploits that are making headlines. We start with some follow up on a big honor for Dave, recognized by SANS as a Difference Maker in Media—plus a quick chicken update, a newly named rooster, and construction officially getting underway on the new run. Maria has the story on a congressional warning about a surge in winter holiday travel scams, as fake booking sites and airline impersonators drive millions in losses during peak travel season. Dave has two stories this week, one on a friend who received a suspicious email appearing to come from the chair of a nonprofit, and the other on a BBC investigation uncovering how fraudulent crowdfunding campaigns exploited children with cancer and their families, siphoning off millions meant for life-saving treatment. Joe’s story covers a warning from the IRS on how to spot and avoid tax scams, highlighting red flags like too-good-to-be-true refunds, urgent threats, fake websites, and impersonators pressuring victims for money or personal information. For our Catch of the Day, it turns out Aquaman isn’t just ruling the seas — he’s apparently sliding into fans’ texts, proving once again that when a celebrity starts sounding a little too approachable, it’s probably not Hollywood calling. Resources and links to stories: * ALERT: Winter Holidays Travel Scams [https://www.jec.senate.gov/public/_cache/files/c1717fa4-9ab4-444e-b6f6-0e9000bfccea/12.2025-holiday-travel-scams-alert.pdf] * Children with cancer scammed out of millions fundraised for their treatment, BBC finds [https://www.bbc.com/news/articles/ckgz318y8elo] * Recognize tax scams and fraud [https://www.irs.gov/help/tax-scams/recognize-tax-scams-and-fraud] * How to know it's the IRS [https://www.irs.gov/help/how-to-know-its-the-irs] [https://therecord.media/fin6-recruitment-scam-malware-campaign]Have a Catch of the Day you'd like to share? Email it to us at [https://therecord.media/fin6-recruitment-scam-malware-campaign]hackinghumans@n2k.com [hackinghumans@n2k.com].
Vælg dit abonnement
Begrænset tilbud
Premium
20 timers lydbøger
Podcasts kun på Podimo
Gratis podcasts
Opsig når som helst
2 måneder kun 19 kr.
Derefter 99 kr. / måned
Premium Plus
100 timers lydbøger
Podcasts kun på Podimo
Gratis podcasts
Opsig når som helst
Prøv gratis i 7 dage
Derefter 129 kr. / måned
2 måneder kun 19 kr. Derefter 99 kr. / måned. Opsig når som helst.