The Defensive Line Podcast
The Defensive Line Weekly podcast is the audio version of the weekly Defensive Line Substack intelligence summary — the same curated briefing for blue teamers and security leaders, in a format you can listen to on the move. This week: PeopleSoft zero-day hits universities; AUR packages hijacked; AI agents turn ordinary inputs into code paths. ShinyHunters / Oracle PeopleSoft Oracle Security Alert [https://www.oracle.com/security-alerts/alert-cve-2026-35273.html] Google Cloud / Mandiant [https://cloud.google.com/blog/topics/threat-intelligence/shinyhunters-targets-education-sector-oracle-exploit/] Rapid7 [https://www.rapid7.com/blog/post/etr-active-exploitation-of-oracle-peoplesoft-zero-day-cve-20273/] Dark Reading [https://www.darkreading.com/vulnerabilities-threats/shinyhunters-oracle-zero-day-higher-ed] The Record [https://therecord.media/university-of-nottingham-cyber-incident-shiny-hunters] Software supply chain — Arch AUR and npm The Hacker News — Arch AUR [https://thehackernews.com/2026/06/over-400-arch-linux-aur-packages.html] The Hacker News — GitHub / npm [https://thehackernews.com/2026/06/github-to-disable-npm-install-scripts.html] AI agents as attack surface Check Point Research — LangGraph [https://research.checkpoint.com/2026/from-sqli-to-rce-exploiting-langgraphs-checkpointer/] Field Effect — Langflow [https://fieldeffect.com/blog/langflow-flaw-active-exploitation-no-patch] The Hacker News — Agentjacking [https://thehackernews.com/2026/06/agentjacking-attack-tricks-ai-coding.html] The Hacker News — OpenClaw [https://thehackernews.com/2026/06/new-attacks-trick-openclaw-ai-agent.html] Honourable mentions The Hacker News — The Gentlemen ransomware [https://thehackernews.com/2026/06/the-gentlemen-ransomware-claims-478.html] PRODAFT — Inside the Phantom Mantis Operation [https://catalyst.prodaft.com/public/report/inside-the-phantom-mantis-operation/overview] The Hacker News — Velvet Ant [https://thehackernews.com/2026/06/china-linked-hackers-backdoored-linux.html] Sekoia — APT28 [https://blog.sekoia.io/apt28-an-evolution-of-tradecraft/] Splunk Advisory [https://advisory.splunk.com/advisories/SVD-2026-0603] Ivanti Security Advisory [https://hub.ivanti.com/s/article/Security-Advisory-Ivanti-Sentry-CVE-2026-10520-CVE-2026-10523?language=en_US] The Record — Great Marlow School [https://therecord.media/british-school-sends-students-home-cyberattack] The Register — Plymouth City Council [https://www.theregister.com/security/2026/06/12/plymouth-council-exposes-hundreds-in-latest-local-government-email-gaffe/5254707] The Register — Novo Nordisk [https://www.theregister.com/security/2026/06/12/novo-nordisk-says-hackers-stole-clinical-trial-data/5254812] The Hacker News — Google smishing lawsuit [https://thehackernews.com/2026/06/google-sues-chinese-smishing-network.html] This is a public episode. If you would like to discuss this with other subscribers or get access to bonus episodes, visit thedefensiveline.substack.com [https://thedefensiveline.substack.com?utm_medium=podcast&utm_campaign=CTA_1]
23 episodes
Comments
0Be the first to comment
Sign up now and become a member of the The Defensive Line Podcast community!