The Defensive Line Podcast
The Defensive Line Weekly podcast is the audio version of our weekly Defensive Line Substack intelligence summary — the same curated briefing for blue teamers and security leaders, in a format you can listen to on the move. This week: A self-spreading supply chain worm hits npm, PyPI and GitHub; AI turns up as both an attacker’s tool and an attack surface; and a five-month email espionage campaign against a stock-exchange executive. Supply chain worm (Miasma / Shai-Hulud) * Microsoft [https://www.microsoft.com/en-us/security/blog/2026/06/02/preinstall-persistence-inside-red-hat-npm-miasma-credential-stealing-campaign/] * Socket [https://socket.dev/blog/shai-hulud-descends-to-hades-miasma-pypi-wave] * The Hacker News [https://thehackernews.com/2026/06/miasma-worm-hits-73-microsoft-github.html] * Dark Reading — IronWorm [https://www.darkreading.com/cyberattacks-data-breaches/rust-written-ironworm-npm-supply-chain] (further reading) AI on both sides — Meta AI support bot & EDR evasion * KrebsOnSecurity [https://krebsonsecurity.com/2026/06/hackers-used-metas-ai-support-bot-to-seize-instagram-accounts/] * Check Point [https://blog.checkpoint.com/ai-security/the-meta-ai-account-recovery-incident-wasnt-just-a-chatbot-problem/] * Sophos [https://www.sophos.com/en-us/blog/pointing-a-cursor-at-evading-detection] * Dark Reading [https://www.darkreading.com/endpoint-security/attackers-automate-edr-evasion-testing] Five-month email espionage * Symantec Threat Hunter Team [https://www.security.com/threat-intelligence/stock-exchange-espionage] * Dark Reading [https://www.darkreading.com/cyberattacks-data-breaches/global-stock-exchange-hit-monthslong-email-campaign] Honourable mentions * Google Gemini voice assistant — Dark Reading [https://www.darkreading.com/application-security/malicious-notifications-could-trick-google-gemini-users] * Claude Code GitHub Action — Microsoft [https://www.microsoft.com/en-us/security/blog/2026/06/05/securing-ci-cd-in-agentic-world-claude-code-github-action-case/] * FFmpeg — 21 vulnerabilities — The Hacker News [https://thehackernews.com/2026/06/ai-agent-uncovers-21-zero-days-in.html] * Palo Alto Networks PAN-OS — Unit 42 [https://unit42.paloaltonetworks.com/active-exploitation-of-pan-os-cve-2026-0257/] * Palo Alto Networks advisory [https://security.paloaltonetworks.com/CVE-2026-0257] * SolarWinds Serv-U — The Hacker News [https://thehackernews.com/2026/06/cisa-adds-actively-exploited-solarwinds.html] This is a public episode. If you would like to discuss this with other subscribers or get access to bonus episodes, visit thedefensiveline.substack.com [https://thedefensiveline.substack.com?utm_medium=podcast&utm_campaign=CTA_1]
22 episoder
Kommentarer
0Vær den første til at kommentere
Tilmeld dig nu og bliv en del af The Defensive Line Podcast-fællesskabet!