loader from loading.io

Exposing a Government Data Breach: Whistleblower Tells All - Cybersecurity Today Special Report

Cybersecurity Today

Release Date: 05/10/2025

Cybersecurity Month in Review: Uncovering Digital and Physical Threats show art Cybersecurity Month in Review: Uncovering Digital and Physical Threats

Cybersecurity Today

  In this episode of the 'Cybersecurity Today: The Month in Review' show, host Jim welcomes regular guests Laura Payne and David Shipley, along with newcomer Anton Levaja. The trio dives deep into various cybersecurity stories, analyzing trends, threats, and recent incidents. Topics include the intriguing Mystery Leaker exposing cyber criminals, the rise and sophistication of LockBit ransomware, the devastating ransomware attack on Coinbase and their bold counter-response, and the physical dangers faced by cryptocurrency entrepreneurs. The episode also highlights the innovation in law...

info_outline
Cyber Extortion, Ukraine's Cyber Offensive, and Chrome Trust Shake-up show art Cyber Extortion, Ukraine's Cyber Offensive, and Chrome Trust Shake-up

Cybersecurity Today

  Cybersecurity Today, hosted by Jim Love, delves into the latest in cyber threats. Cyber criminals have breached 20 organizations via convincing fake IT support calls, targeting Salesforce data for extortion. Ukraine's intelligence claims a significant cyber operation against Russia's aircraft manufacturer, stealing sensitive data and highlighting Ukraine's growing cyber capabilities. Google Chrome will stop trusting certificates from two major authorities due to compliance failures, affecting millions of web visitors. Lastly, a $400 million hack on Coinbase was executed using phone...

info_outline
Emergency Patches, Ransomware Exposes, and Rising QR Code Scams show art Emergency Patches, Ransomware Exposes, and Rising QR Code Scams

Cybersecurity Today

In this episode of Cybersecurity Today, host Jim Love discusses the latest urgent security updates and cyber threats. Google has released an emergency Chrome patch to fix a high-severity zero-day vulnerability, while Microsoft issued an emergency patch to resolve Windows 11 boot failures caused by their May 2025 update. A mysterious whistleblower known as 'Gang Exposed' is doxing major ransomware leaders, providing invaluable intelligence for global cybersecurity efforts. Additionally, 'Quishing,' or QR code phishing, is emerging as a new threat, with cybercriminals taping malicious QR codes...

info_outline
Cybersecurity Incidents: Eddie Steeler Malware, ConnectWise Breach, and Nova Scotia Power Data Theft show art Cybersecurity Incidents: Eddie Steeler Malware, ConnectWise Breach, and Nova Scotia Power Data Theft

Cybersecurity Today

  In this episode of Cybersecurity Today, host David Shipley discusses several key cyber incidents affecting organizations and individuals. A new rust-based information stealer, known as Eddie Steeler, is being distributed via deceptive CAPTCHA verification pages. ConnectWise, a management software firm, has been breached in an attack suspected to be linked to a nation-state actor, affecting a limited number of its ScreenConnect customers. Additionally, threat actors are now abusing Google App Script to bypass phishing defenses, exploiting the trusted Google brand to trick users. Lastly,...

info_outline
Pig Butchering: Operation Shamrock Fights Back show art Pig Butchering: Operation Shamrock Fights Back

Cybersecurity Today

  In this episode, the host delves into the alarming rise of 'pig butchering' scams, a form of fraud that preys on vulnerable and trusting individuals, often leaving them financially and emotionally devastated. These scams are orchestrated by organized crime syndicates that use brutal methods, including violence and human trafficking, to sustain their operations. Erin West, a former prosecutor, discusses her transition to founding Operation Shamrock, a nonprofit focused on combatting these scams through education, law enforcement support, and victim assistance. West explains the severity...

info_outline
Cybersecurity Today: Hijacker Scams, Ransomware Attacks, and Summer Travel Threats show art Cybersecurity Today: Hijacker Scams, Ransomware Attacks, and Summer Travel Threats

Cybersecurity Today

  In this episode of Cybersecurity Today, host Jim Love covers critical updates in the world of cyber threats. The FBI warns of hijackers posing as IT support to infiltrate law firms, a Wisconsin city reveals a ransomware attack affecting 67,000 residents, and a Texas city refuses to pay a ransom, risking the public release of sensitive data. The episode also highlights the 3-2-1-1-0 backup strategy as a defense against ransomware and reports on sophisticated scams targeting summer travelers. Additionally, Jim previews tomorrow’s discussion on scammers targeting vulnerable groups. 00:00...

info_outline
Phishing Scams, DNS Hijacking, and Cybersecurity Leadership Shakeup show art Phishing Scams, DNS Hijacking, and Cybersecurity Leadership Shakeup

Cybersecurity Today

  In this episode of Cybersecurity Today, host Jim Love explores the intricacies behind phishing emails that cleverly spoof Microsoft addresses, making many fall for scams despite appearing legitimate. Love emphasizes the need for a stringent 'zero trust' approach to counter these advanced tactics. Additionally, the episode delves into the activities of the hacking group Hazy Hawk, which exploits misconfigured DNS records to hijack trusted domains and propagate malware. Organizations are warned about the importance of regular DNS audits to prevent such attacks. The episode also covers the...

info_outline
Unraveling Cyber Threats: Ransomware, Kidnapping, and Record-Breaking DDoS Attacks show art Unraveling Cyber Threats: Ransomware, Kidnapping, and Record-Breaking DDoS Attacks

Cybersecurity Today

In this episode of Cybersecurity Today, host David Shipley dives into several alarming cyber incidents. The show starts with Nova Scotia Power's confirmation of a ransomware attack that forced the shutdown of customer-facing systems and led to data being published on the dark web. The company decided not to pay the ransom, adhering to law enforcement guidance and sanctions laws. A shocking case in New York follows, involving a crypto investor charged with kidnapping and torturing a man to obtain his Bitcoin wallet password. The next segment highlights a record-setting DDoS botnet, Aisuru,...

info_outline
From English Literature to Cybersecurity: A Journey Through Blockchain and Security show art From English Literature to Cybersecurity: A Journey Through Blockchain and Security

Cybersecurity Today

LINKS: - Software page with OSS software Linux distro: Milksad vulnerability: In this episode of Cybersecurity Today on the Weekend, host Jim Love engages in a captivating discussion with Anton Livaja  from Distrust. Anton shares his unique career transition from obtaining a BA in English literature at York University to delving into cybersecurity and tech. Anton recounts how he initially entered the tech field through a startup and quickly embraced programming and automation. The conversation covers Anton's interest in Bitcoin and blockchain technology, including the importance of...

info_outline
Cybersecurity Threats and Breaches: Critical Updates and Insights show art Cybersecurity Threats and Breaches: Critical Updates and Insights

Cybersecurity Today

  In this episode of Cybersecurity today, host Jim Love reports on various critical cyber threats and data breaches. A newly discovered flaw in Windows Server 2025 allows attackers to seize full domain control, referred to by researchers as the 'bad successor' exploit. Government messaging app Telem Message, a customized version of Signal, was hacked, exposing sensitive communications of over 60 officials, leading to its shutdown. Microsoft disrupted the global Luma Stealer malware operation, which had infected nearly 400,000 computers. Coinbase suffered a major data breach affecting over...

info_outline
 
More Episodes

In this gripping episode of Cybersecurity Today, host Jim Love interviews Daniel Berulis, a self-described whistleblower who recently made a significant disclosure to the U.S. Congress. Berulis reveals the shocking details of tenant admin abuse within a governmental cloud environment, which allowed unauthorized data copying and wiping of audit trails. They discuss Daniel's background, the alarming red flags he observed, his attempt to escalate the issue internally, and finally, his decision to report it to higher authorities. The conversation dives deep into the complexities and moral dilemmas faced by a whistleblower, offering viewers an insider look at the challenges in maintaining transparency and security in high-stakes IT environments.

00:00 Introduction to Cybersecurity Today
00:39 Meet Daniel Berulis: Whistleblower Extraordinaire
01:05 Understanding Tenant Admin Abuse
02:12 Daniel's Career and Community Involvement
05:28 The Mysterious Meeting and Initial Red Flags
08:48 Uncovering the Data Breach
11:56 Internal Reactions and Escalation
19:08 Reporting the Incident and Facing Consequences
23:45 The Whistleblower's Journey
32:31 Conclusion and Final Thoughts