
Hacking Humans
Podcast de N2K Networks
Empieza 7 días de prueba
$99 / mes después de la prueba.Cancela cuando quieras.

Más de 1 millón de oyentes
Podimo te va a encantar, y no estás solo/a
Valorado con 4,7 en la App Store
Acerca de Hacking Humans
Deception, influence, and social engineering in the world of cyber crime.
Todos los episodios
725 episodiosTrusted Platform Module (TPM) (noun) [Word Notes]
Please enjoy this encore of Word Notes. A browser configuration control that prevents accessing resources within a private network. CyberWire Glossary link: https://thecyberwire.com/glossary/trusted-platform-module [https://thecyberwire.com/glossary/trusted-platform-module] Audio reference link: “TPM (Trusted Platform Module) - Computerphile [https://youtu.be/RW2zHvVO09g],” Computerphile, 23 July 2021
Tap, pay…and prey.
This week, our hosts Dave Bittner [https://www.linkedin.com/in/dave-bittner-27231a4/], Joe Carrigan [https://www.linkedin.com/in/joecarrigan/], and Maria Varmazis [https://www.linkedin.com/in/varmazis/] (also host of the T-Minus [https://space.n2k.com/podcasts/t-minus?__hstc=223811332.a636bba53840b4700c929fe67723a129.1721054632698.1747145009569.1747159962459.413&__hssc=223811332.2.1747159962459&__hsfp=3690629108] Space Daily show) are sharing the latest in social engineering scams, phishing schemes, and criminal exploits that are making headlines. We start with some big chicken news from Joe! Dave’s story is on Meta’s internal documents revealing it projected up to 10% of its 2024 revenue, worth billions, would come from fraudulent or banned ads across its platforms. Maria has the story on how Howler Cell at Cyderes uncovered a systemic “Bring Your Own Updates” risk in Windows updaters, where attackers can hijack trusted, signed update clients like Advanced Installer to deliver malicious code that evades detection and could lead to large-scale supply-chain attacks. Joe has the story on a new scam called “ghost tapping,” where fraudsters use near-field communication devices to secretly charge tap-to-pay cards and mobile wallets in crowded places. Victims often don’t notice until small, unauthorized withdrawals add up, prompting the BBB to warn consumers to use RFID-blocking wallets, verify charges before tapping, and monitor accounts for suspicious activity. Our catch of the day is on an application to the Council of the Ecliptic. Resources and links to stories: * [https://www.linkedin.com/feed/update/urn:li:activity:7389277517540478976/]Meta is earning a fortune on a deluge of fraudulent ads, documents show [https://www.reuters.com/investigations/meta-is-earning-fortune-deluge-fraudulent-ads-documents-show-2025-11-06/] * Ghost-tapping scam targets tap-to-pay users [https://www.foxnews.com/tech/ghost-tapping-scam-targets-tap-to-pay-users] [https://therecord.media/fin6-recruitment-scam-malware-campaign]Have a Catch of the Day you'd like to share? Email it to us at [https://therecord.media/fin6-recruitment-scam-malware-campaign]hackinghumans@n2k.com [hackinghumans@n2k.com].
Private Network Access (PNA) (noun) [Word Notes]
Please enjoy this encore of Word Notes. A browser configuration control that prevents accessing resources within a private network. CyberWire Glossary link [https://thecyberwire.com/glossary/private-network-access]. Audio reference link: “Chrome Limits Access to Private Networks [https://www.youtube.com/watch?v=GACsiZWyMbs],” by Daniel Lowrie, ITProTV, YouTube, 19 January 2022.
Seniors in scam crosshairs.
This week, our hosts Dave Bittner [https://www.linkedin.com/in/dave-bittner-27231a4/], Joe Carrigan [https://www.linkedin.com/in/joecarrigan/], and Maria Varmazis [https://www.linkedin.com/in/varmazis/] (also host of the T-Minus [https://space.n2k.com/podcasts/t-minus?__hstc=223811332.a636bba53840b4700c929fe67723a129.1721054632698.1747145009569.1747159962459.413&__hssc=223811332.2.1747159962459&__hsfp=3690629108] Space Daily show) are sharing the latest in social engineering scams, phishing schemes, and criminal exploits that are making headlines. We start with some follow-up, listener Jay shared how Robinhood tackled a $25.4 billion phone scam problem with a simple fix—a bright yellow in-call banner that warns users, “We’re not calling you. If the caller says they’re from Robinhood, they’re not—hang up.” Meanwhile, Myanmar’s military blew up a major online scam center at KK Park, forcing over 1,500 people to flee into Thailand. Listener JJ reminds us it’s “CAC cards,” not just “CAC,” and Shannon reports from Scooter’s Coffee, where customers are now bringing chickens for pup cups—proving some pets really do rule the roost. Maria’s story is on Bitdefender and NETGEAR’s 2025 IoT Security Report, which found smart homes now face triple the attacks of last year—about 29 a day. Dave’s story is on a cloud architect who exposed his AWS keys online, letting attackers hijack his account for crypto-mining and phishing. His takeaway: secure keys, limit privileges, and assume it can happen to you. Joe’s got the story of scammers posing as banks or the FTC, using fake security alerts to trick older adults into draining their savings. The FTC says losses are skyrocketing—so don’t move money or trust surprise calls or pop-ups. Our catch of the day comes from the Scams SubReddit, where a scammer got way more than what they signed up for in a text chain. Resources and links to stories: * Robinhood LinkedIn post. [https://www.linkedin.com/feed/update/urn:li:activity:7389277517540478976/] * Stragglers from Myanmar scam center raided by army cross into Thailand as buildings are blown up [https://apnews.com/article/myanmar-scam-centers-cybercrime-thailand-border-daa90f481ea4207e7d7a891dda1161c8] * My AWS Account Got Hacked - Here Is What Happened [https://zviwex.com/posts/aws-account-hacked] * False alarm, real scam: how scammers are stealing older adults’ life savings [https://www.ftc.gov/news-events/data-visualizations/data-spotlight/2025/08/false-alarm-real-scam-how-scammers-are-stealing-older-adults-life-savings] * Trying to scam the scammer [https://www.reddit.com/r/scambait/comments/1o2aisx/trying_to_scam_the_scammer/] [https://therecord.media/fin6-recruitment-scam-malware-campaign]Have a Catch of the Day you'd like to share? Email it to us at [https://therecord.media/fin6-recruitment-scam-malware-campaign]hackinghumans@n2k.com [hackinghumans@n2k.com].
Web 3.0 (noun) [Word Notes]
Please enjoy this encore of Word Notes. The potential next evolution of the worldwide web that decentralizes interaction between users and content away from the big silicon valley social media platforms like Twitter, Facebook, and YouTube, and towards peer-to-peer interaction using blockchain as the underlying technology. CyberWire Glossary link: https://thecyberwire.com/glossary/web-30 [https://thecyberwire.com/glossary/web-30] Audio reference link: “What Elon Musk Just Said about Metaverse, Web3 and Neuralink [https://www.youtube.com/watch?v=ESjUgb_ZakA],” By Clayton Morris, Crypto News Daily, YouTube. 2 December 2021.

Más de 1 millón de oyentes
Podimo te va a encantar, y no estás solo/a
Valorado con 4,7 en la App Store
Empieza 7 días de prueba
$99 / mes después de la prueba.Cancela cuando quieras.
Podcasts exclusivos
Sin anuncios
Podcast gratuitos
Audiolibros
20 horas / mes























