Crestvale Newsroom

Fake IT staff hit law firms in-person

6 min · 6. juni 2026
episode Fake IT staff hit law firms in-person cover

Description

Physical access is becoming the new attack vector for professional service firms. Today's episode looks at the rise of ransomware groups showing up in person at law offices, bypassing traditional cybersecurity defenses entirely. For firm leaders, this shifts the problem from technical controls to operational discipline. Identity verification, front desk protocols, and staff awareness now sit at the center of risk management. At the same time, CMMC enforcement is tightening through contract pressure, and firms that cannot produce evidence of compliance are already being filtered out of revenue opportunities. Meanwhile, platforms like Filevine are racing to become the operational brain of the firm through AI-driven workflows. We also cover changes from the IRS, signals from AI infrastructure markets, and rising pressure on security and software spend. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

Comments

0

Be the first to comment

Sign up now and become a member of the Crestvale Newsroom community!

Get Started

1 month for 9 kr.

Then 99 kr. / month · Cancel anytime.

  • Podcasts kun på Podimo
  • 20 lydbogstimer pr. måned
  • Gratis podcasts

All episodes

146 episodes

episode GitGuardian scans dev laptops for plaintext secrets artwork

GitGuardian scans dev laptops for plaintext secrets

The security boundary is shifting from systems to identities, and endpoints are now at the center of that change. Developer machines are increasingly becoming the easiest path into production environments as credentials leak through logs, caches, and AI tooling. This matters because traditional security models still separate endpoint protection from identity control. That gap is now where most real-world breaches are happening. At the same time, active exploitation of Fortinet vulnerabilities shows how quickly attackers move once patches are released, while new policy from France is forcing organizations to accelerate plans for quantum-safe cryptography. AI agents are adding another layer of risk as untracked identities with real access begin to spread across environments. Also covered: Databricks reframing AI governance, CrowdStrike removing standing privileges for agents, Zscaler mapping AI access relationships, regulatory fines for weak controls, and continued SaaS-driven breach paths. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

Yesterday6 min
episode NewCore raises $66M for AI agent IDs artwork

NewCore raises $66M for AI agent IDs

AI agents are rapidly becoming first-class actors inside enterprise environments, and identity systems are struggling to keep up. This episode looks at NewCore's $66 million bet on rebuilding identity for a world where agents outnumber employees, and why that shift is already underway. For security and IT leaders, this is not just a tooling change. It is a shift in what identity means. Unmanaged AI agents introduce invisible access, persistent permissions, and new attack paths. At the same time, moves like 1Password acquiring Apono show that the market is pivoting toward real-time access governance, not just credential storage. We also cover a critical Splunk vulnerability that demands immediate patching, and a major phishing network takedown that highlights how industrialized fraud now operates. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

16. juni 20266 min
episode Microsoft pulls 73 GitHub repos after malware artwork

Microsoft pulls 73 GitHub repos after malware

A supply chain attack targeting developer tools forced Microsoft to remove dozens of GitHub repositories, highlighting a shift in where real risk now sits. This episode breaks down how attackers are moving closer to credentials through trusted workflows, and why AI development environments are becoming a high value target. For security and IT leaders, the implication is direct. Developer machines, repositories, and third party access paths now function as part of your identity perimeter. At the same time, passkeys are exposing operational gaps around recovery, and new research shows overreliance on AI can quietly degrade decision making across teams. We also cover a third party access lawsuit with cross client impact, shifts in AI economics, and growing geopolitical pressure on AI partnerships. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

15. juni 20266 min
episode US export controls shut off Anthropic models artwork

US export controls shut off Anthropic models

AI access is no longer just a product feature. It is becoming controlled infrastructure. In this episode, we break down how U.S. export controls forced Anthropic to shut down major models globally, and what that signals for any team relying on third-party AI. The shift has real consequences. Security workflows can stop overnight. Vendor risk now includes geopolitical decisions. And at the same time, critical vulnerabilities like the Splunk remote code execution flaw show how quickly your core systems can become liabilities if exposed. We also cover Wallarm's push into full visibility for AWS environments, and a new regulatory move as state attorneys general subpoena OpenAI over model behavior and data handling. Plus, key updates on cyber training, AI governance, and the changing shape of security teams. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

14. juni 20266 min
episode CISA orders Ivanti Sentry patch by Sunday artwork

CISA orders Ivanti Sentry patch by Sunday

CISA just enforced a seventy two hour patch deadline for actively exploited infrastructure, and that single move signals a broader shift in how fast security teams are expected to operate. This episode breaks down what that means in practice, from Ivanti Sentry exposure to the growing expectation that internet-facing systems must be treated as compromised almost immediately. It also looks at how attackers are accelerating their own timelines, with zero-day exploitation in PeopleSoft leading directly to extortion, and npm-based worms stealing cloud and AI credentials before detection tools can respond. We also cover Google's legal push against AI-driven smishing networks and what it signals about the future of platform-led defense. Learn more at https://crestvale.io Support the show [https://www.buzzsprout.com/2602483/support]

13. juni 20266 min