<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
     xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
     xmlns:podcast="https://podcastindex.org/namespace/1.0">
  <channel>
    <title>The Rainmaker Report</title>
    <link>https://r3b00t.org</link>
    <description>Daily cybersecurity threat intelligence briefing. Each episode covers the day's top three stories selected from 290+ ranked sources, scored by the Rainmaker virality + severity model and validated against multiple cited references.</description>
    <language>en-us</language>
    <itunes:author>Andy / The Rainmaker Report</itunes:author>
    <itunes:summary>Daily cybersecurity threat intelligence briefing. Each episode covers the day's top three stories selected from 290+ ranked sources, scored by the Rainmaker virality + severity model and validated against multiple cited references.</itunes:summary>
    <itunes:owner>
      <itunes:name>Andy / The Rainmaker Report</itunes:name>
      <itunes:email>podcast@r3b00t.org</itunes:email>
    </itunes:owner>
    <itunes:image href="https://r3b00t.org/podcast/cover.jpg" />
    <itunes:category text="News">
      <itunes:category text="Tech News" />
    </itunes:category>
    <itunes:explicit>no</itunes:explicit>
    <itunes:type>episodic</itunes:type>
        <item>
        <title>Microsoft 200 Flaws Patch, Handala Hack, CISA Rethinks Risk - June 10, 2026</title>
        <itunes:title>Microsoft 200 Flaws Patch, Handala Hack, CISA Rethinks Risk - June 10, 2026</itunes:title>
        <description>**Microsoft June 2026 Patch Tuesday Fixes Over 200 Flaws Including Three Zero-Days**
Microsoft released its June 2026 Patch Tuesday update, addressing more than 200 vulnerabilities across its product line. Among the fixes are three zero-day vulnerabilities actively exploited in the wild. The update covers critical remote code execution flaws in Windows, Office, and Exchange Server, along with numerous privilege escalation and spoofing issues. Administrators are urged to apply patches immediately...</description>
        <itunes:summary>**Microsoft June 2026 Patch Tuesday Fixes Over 200 Flaws Including Three Zero-Days**
Microsoft released its June 2026 Patch Tuesday update, addressing more than 200 vulnerabilities across its product line. Among the fixes are three zero-day vulnerabilities actively exploited in the wild. The update covers critical remote code execution flaws in Windows, Office, and Exchange Server, along with numerous privilege escalation and spoofing issues. Administrators are urged to apply patches immediately...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-10_overnight.mp4" length="132393417" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-10_overnight.mp4</guid>
        <pubDate>Thu, 11 Jun 2026 00:05:44 +0000</pubDate>
        <itunes:duration>435</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>NSO Group, Apple Password Fix, Malware via Ghidra Clones - June 09, 2026</title>
        <itunes:title>NSO Group, Apple Password Fix, Malware via Ghidra Clones - June 09, 2026</itunes:title>
        <description>Story 1: NSO Group Spyware Resurfaces on WhatsApp
Meta has filed a contempt complaint against NSO Group, alleging that the spyware vendor violated a court order by deploying new zero-click spyware attacks on WhatsApp in June 2026. The attacks targeted journalists and civil society members, using a previously unseen payload that bypassed recent WhatsApp security patches. Meta states the exploitation relied on a chain of undisclosed vulnerabilities, and it has since blocked the associated infrastr...</description>
        <itunes:summary>Story 1: NSO Group Spyware Resurfaces on WhatsApp
Meta has filed a contempt complaint against NSO Group, alleging that the spyware vendor violated a court order by deploying new zero-click spyware attacks on WhatsApp in June 2026. The attacks targeted journalists and civil society members, using a previously unseen payload that bypassed recent WhatsApp security patches. Meta states the exploitation relied on a chain of undisclosed vulnerabilities, and it has since blocked the associated infrastr...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-09_manual_124604.mp4" length="201807245" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-09_manual_124604.mp4</guid>
        <pubDate>Tue, 09 Jun 2026 19:02:59 +0000</pubDate>
        <itunes:duration>483</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Europol Busts Streaming Rings, TA4922 Deploys SilentRunLoader, ShinyHunters Hits Charter - June 05, 2026</title>
        <itunes:title>Europol Busts Streaming Rings, TA4922 Deploys SilentRunLoader, ShinyHunters Hits Charter - June 05, 2026</itunes:title>
        <description>**Story 1: European Authorities Dismantle Illegal Streaming Networks**
European law enforcement agencies, led by Europol, executed Operation Kratos II, arresting 29 individuals and dismantling nine organized crime groups involved in large-scale illegal streaming operations. The crackdown targeted networks that distributed pirated content, causing significant revenue losses to legitimate media providers. Authorities seized servers, domain names, and financial assets linked to the illicit streamin...</description>
        <itunes:summary>**Story 1: European Authorities Dismantle Illegal Streaming Networks**
European law enforcement agencies, led by Europol, executed Operation Kratos II, arresting 29 individuals and dismantling nine organized crime groups involved in large-scale illegal streaming operations. The crackdown targeted networks that distributed pirated content, causing significant revenue losses to legitimate media providers. Authorities seized servers, domain names, and financial assets linked to the illicit streamin...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-05_overnight.mp4" length="215377138" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-05_overnight.mp4</guid>
        <pubDate>Fri, 05 Jun 2026 18:38:12 +0000</pubDate>
        <itunes:duration>480</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Ransomware Works 9-to-5, Red Hat NPM Backdoor, Russian Spy Phone Hack - June 03, 2026</title>
        <itunes:title>Ransomware Works 9-to-5, Red Hat NPM Backdoor, Russian Spy Phone Hack - June 03, 2026</itunes:title>
        <description>Story 1: BlackCat ransomware operators maintain regular business hours, according to an analysis of 24 months of leak site posts. The data shows a clear pattern of activity during standard workdays and hours, suggesting organized criminal operations rather than opportunistic attacks.
• https://securityaffairs.com/192969/cyber-crime/ransomware-operators-keep-business-hours-the-data-proves-it.html
• https://www.reddit.com/r/hacking/comments/1ttwgfq/analyzed_24_months_of_ransomware_leaksite_posts/
...</description>
        <itunes:summary>Story 1: BlackCat ransomware operators maintain regular business hours, according to an analysis of 24 months of leak site posts. The data shows a clear pattern of activity during standard workdays and hours, suggesting organized criminal operations rather than opportunistic attacks.
• https://securityaffairs.com/192969/cyber-crime/ransomware-operators-keep-business-hours-the-data-proves-it.html
• https://www.reddit.com/r/hacking/comments/1ttwgfq/analyzed_24_months_of_ransomware_leaksite_posts/
...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-03_overnight.mp4" length="156257144" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-03_overnight.mp4</guid>
        <pubDate>Wed, 03 Jun 2026 21:20:07 +0000</pubDate>
        <itunes:duration>441</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Meta AI Bot Hijacks Instagram, GTA/Counter-Strike Cheat Breach, Dashlane Brute-Force - June 02, 2026</title>
        <itunes:title>Meta AI Bot Hijacks Instagram, GTA/Counter-Strike Cheat Breach, Dashlane Brute-Force - June 02, 2026</itunes:title>
        <description>This week's cybersecurity roundup covers three major incidents: a novel social engineering attack using Meta's AI support bot to steal Instagram accounts, a massive data breach at the Atlas Menu cheat service for Grand Theft Auto V and Counter-Strike 2, and a brute-force attack that forced Dashlane to suspend customer accounts.

**Story 1: Hackers Used Meta's AI Support Bot to Seize Instagram Accounts**
Threat actors exploited Meta's AI-powered support chatbot by impersonating account owners and...</description>
        <itunes:summary>This week's cybersecurity roundup covers three major incidents: a novel social engineering attack using Meta's AI support bot to steal Instagram accounts, a massive data breach at the Atlas Menu cheat service for Grand Theft Auto V and Counter-Strike 2, and a brute-force attack that forced Dashlane to suspend customer accounts.

**Story 1: Hackers Used Meta's AI Support Bot to Seize Instagram Accounts**
Threat actors exploited Meta's AI-powered support chatbot by impersonating account owners and...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-02_overnight.mp4" length="952284003" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-06-02_overnight.mp4</guid>
        <pubDate>Tue, 02 Jun 2026 23:26:32 +0000</pubDate>
        <itunes:duration>3809</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Carnival Breach Hits 6M, Pentagon Phone Tracking Crisis, NATO Taps Microsoft &amp; ESET - May 29, 2026</title>
        <itunes:title>Carnival Breach Hits 6M, Pentagon Phone Tracking Crisis, NATO Taps Microsoft &amp; ESET - May 29, 2026</itunes:title>
        <description>## Story 1: Carnival Corporation Confirms Breach Impacting Nearly 6 Million Customers

Carnival Cruise Line has confirmed a data breach affecting close to 6 million customers, with the ShinyHunters extortion group claiming responsibility. Stolen records reportedly include names, contact details, dates of birth, and loyalty program information tied to Carnival, Princess, and Holland America bookings. The incident is part of the broader Salesforce-related data theft campaign that ShinyHunters has ...</description>
        <itunes:summary>## Story 1: Carnival Corporation Confirms Breach Impacting Nearly 6 Million Customers

Carnival Cruise Line has confirmed a data breach affecting close to 6 million customers, with the ShinyHunters extortion group claiming responsibility. Stolen records reportedly include names, contact details, dates of birth, and loyalty program information tied to Carnival, Princess, and Holland America bookings. The incident is part of the broader Salesforce-related data theft campaign that ShinyHunters has ...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-29_FHNGQ84sPII.mp4" length="137112185" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-29_FHNGQ84sPII.mp4</guid>
        <pubDate>Fri, 29 May 2026 19:34:13 +0000</pubDate>
        <itunes:duration>548</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Apple Blocks 2M Apps, Kimwolf Botnet Admin Arrested, CVE-2026-5194 AI Flaw - May 25, 2026</title>
        <itunes:title>Apple Blocks 2M Apps, Kimwolf Botnet Admin Arrested, CVE-2026-5194 AI Flaw - May 25, 2026</itunes:title>
        <description>In this episode, we cover three major cybersecurity stories shaping the week: Apple's massive App Store enforcement actions and a critical Cisco patch, the takedown of the Kimwolf DDoS botnet operator, and Anthropic's Glasswing AI uncovering thousands of vulnerabilities including CVE-2026-5194.

=== Story 1: Apple Rejects 2M Apps, Cisco Patches Critical Secure Workload Flaw, Ocean Launches Email Security ===
Apple disclosed it rejected over 2 million App Store submissions in 2025 as part of expa...</description>
        <itunes:summary>In this episode, we cover three major cybersecurity stories shaping the week: Apple's massive App Store enforcement actions and a critical Cisco patch, the takedown of the Kimwolf DDoS botnet operator, and Anthropic's Glasswing AI uncovering thousands of vulnerabilities including CVE-2026-5194.

=== Story 1: Apple Rejects 2M Apps, Cisco Patches Critical Secure Workload Flaw, Ocean Launches Email Security ===
Apple disclosed it rejected over 2 million App Store submissions in 2025 as part of expa...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-26_t2e-D88uS4M.mp4" length="208680750" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-26_t2e-D88uS4M.mp4</guid>
        <pubDate>Tue, 26 May 2026 01:46:33 +0000</pubDate>
        <itunes:duration>834</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Shinyhunters Canvas Breach, Android Malware &amp; CVE-2025-66479 - May 21, 2026</title>
        <itunes:title>Shinyhunters Canvas Breach, Android Malware &amp; CVE-2025-66479 - May 21, 2026</itunes:title>
        <description>Story 1: Shinyhunters Canvas Data Breach

The threat actor group Shinyhunters claimed to have stolen student data from Canvas, a widely-used learning management system, but security researchers and congressional investigators express skepticism about whether the stolen information was actually deleted as promised. The breach has drawn attention from Congress and triggered inquiries into Instructure's security practices and incident response protocols. Experts warn that verification of data delet...</description>
        <itunes:summary>Story 1: Shinyhunters Canvas Data Breach

The threat actor group Shinyhunters claimed to have stolen student data from Canvas, a widely-used learning management system, but security researchers and congressional investigators express skepticism about whether the stolen information was actually deleted as promised. The breach has drawn attention from Congress and triggered inquiries into Instructure's security practices and incident response protocols. Experts warn that verification of data delet...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-21_plhPdq2AzZo.mp4" length="107944305" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-21_plhPdq2AzZo.mp4</guid>
        <pubDate>Thu, 21 May 2026 20:32:14 +0000</pubDate>
        <itunes:duration>431</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>GitHub TeamPCP Breach, CISA Credential Leak, Mac Malware - May 20, 2026</title>
        <itunes:title>GitHub TeamPCP Breach, CISA Credential Leak, Mac Malware - May 20, 2026</itunes:title>
        <description>GitHub TeamPCP Breach Investigation

GitHub is investigating a claimed breach by threat actor TeamPCP affecting approximately 4,000 internal repositories. The attacker claims to have accessed sensitive GitHub infrastructure, raising concerns about the security of the platform's internal development assets. This incident highlights risks to major software development platforms and their internal code repositories.

Sources:
• https://thehackernews.com/2026/05/github-investigating-teampcp-claimed....</description>
        <itunes:summary>GitHub TeamPCP Breach Investigation

GitHub is investigating a claimed breach by threat actor TeamPCP affecting approximately 4,000 internal repositories. The attacker claims to have accessed sensitive GitHub infrastructure, raising concerns about the security of the platform's internal development assets. This incident highlights risks to major software development platforms and their internal code repositories.

Sources:
• https://thehackernews.com/2026/05/github-investigating-teampcp-claimed....</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-20_VYRv4vmpJ4g.mp4" length="137984835" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-20_VYRv4vmpJ4g.mp4</guid>
        <pubDate>Wed, 20 May 2026 21:54:53 +0000</pubDate>
        <itunes:duration>551</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Double Canvas, AppDirect, Foxconn Breaches: ShinyHunters &amp; Qilin Strike - May 17, 2026</title>
        <itunes:title>Double Canvas, AppDirect, Foxconn Breaches: ShinyHunters &amp; Qilin Strike - May 17, 2026</itunes:title>
        <description>STORY 1: Double Canvas Breach Acknowledged by ShinyHunters

Instructure's Canvas learning management platform suffered a confirmed data breach after threat actor ShinyHunters gained unauthorized access. The group has set a new pay-or-leak deadline, pressuring the company to negotiate ransom terms. Double Canvas users and institutions face potential exposure of sensitive educational data.

Sources:
• https://www.theregister.com/security/2026/05/12/double-canvas-intrusion-confirmed-as-shinyhunters...</description>
        <itunes:summary>STORY 1: Double Canvas Breach Acknowledged by ShinyHunters

Instructure's Canvas learning management platform suffered a confirmed data breach after threat actor ShinyHunters gained unauthorized access. The group has set a new pay-or-leak deadline, pressuring the company to negotiate ransom terms. Double Canvas users and institutions face potential exposure of sensitive educational data.

Sources:
• https://www.theregister.com/security/2026/05/12/double-canvas-intrusion-confirmed-as-shinyhunters...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-18_PdBQRcosJNA.mp4" length="34236507" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-18_PdBQRcosJNA.mp4</guid>
        <pubDate>Mon, 18 May 2026 00:10:04 +0000</pubDate>
        <itunes:duration>136</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Scattered Spider Skid Kiddie Arrested, Attack-Chaining Cisco, Gremin is Back! - May 16, 2026</title>
        <itunes:title>Scattered Spider Skid Kiddie Arrested, Attack-Chaining Cisco, Gremin is Back! - May 16, 2026</itunes:title>
        <description>🚨 British hacker just pleaded guilty to $10M+ crypto heist 🚨

Tylerb, a 24-year-old member of Scattered Spider, admitted to wire fraud and identity theft in US federal court. Here's the wild part: he didn't use fancy hacking tools. Instead, he sent fake IT texts (smishing), stole employee passwords, and his crew hit over a dozen major tech companies.

Scattered Spider's whole playbook is social engineering. SIM swaps, vishing calls, phishing texts. Low tech barrier, high success rate. Tylerb was...</description>
        <itunes:summary>🚨 British hacker just pleaded guilty to $10M+ crypto heist 🚨

Tylerb, a 24-year-old member of Scattered Spider, admitted to wire fraud and identity theft in US federal court. Here's the wild part: he didn't use fancy hacking tools. Instead, he sent fake IT texts (smishing), stole employee passwords, and his crew hit over a dozen major tech companies.

Scattered Spider's whole playbook is social engineering. SIM swaps, vishing calls, phishing texts. Low tech barrier, high success rate. Tylerb was...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-16_C9iieaBWbiQ.mp4" length="39354781" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-16_C9iieaBWbiQ.mp4</guid>
        <pubDate>Sat, 16 May 2026 22:48:44 +0000</pubDate>
        <itunes:duration>157</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Pixel Zero-Click, Stryker Wiper, OpenAI hit by TanStack Supply Chain Attack - May 15, 2026 </title>
        <itunes:title>Pixel Zero-Click, Stryker Wiper, OpenAI hit by TanStack Supply Chain Attack - May 15, 2026 </itunes:title>
        <description>🚨 OpenAI Got Hit in the TanStack Supply Chain Attack 🚨  

Two OpenAI employee devices were compromised when attackers poisoned hundreds of npm and PyPI packages. Here's what went down.  

TanStack is everywhere in JavaScript and Python projects. Attackers injected malicious code into the supply chain, and anyone who pulled those packages during the compromise window got exposed. OpenAI immediately rotated their code-signing certificates, which is a huge deal. Those certs prove your software is l...</description>
        <itunes:summary>🚨 OpenAI Got Hit in the TanStack Supply Chain Attack 🚨  

Two OpenAI employee devices were compromised when attackers poisoned hundreds of npm and PyPI packages. Here's what went down.  

TanStack is everywhere in JavaScript and Python projects. Attackers injected malicious code into the supply chain, and anyone who pulled those packages during the compromise window got exposed. OpenAI immediately rotated their code-signing certificates, which is a huge deal. Those certs prove your software is l...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-15_2Y_ess3tNB0.mp4" length="31924144" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-15_2Y_ess3tNB0.mp4</guid>
        <pubDate>Fri, 15 May 2026 22:24:12 +0000</pubDate>
        <itunes:duration>127</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>LinkedIn BrowserGate, Anthropic's Mythos, and Microsoft's Token Theft Warning - 5/5/26</title>
        <itunes:title>LinkedIn BrowserGate, Anthropic's Mythos, and Microsoft's Token Theft Warning - 5/5/26</itunes:title>
        <description>👀 LinkedIn Was Quietly Inspecting Your Browser Like a Nosy Cop 👀

&quot;BrowserGate,&quot; a report alleging LinkedIn quietly scanned users’ browsers for thousands of installed extensions and attached a hardware-style fingerprint to session activity without meaningful disclosure. LinkedIn says the probing is a security measure aimed at scraping tools, but the reporting and independent testing show the behavior is real, extensive, and a lot more invasive than most people would expect from the site where th...</description>
        <itunes:summary>👀 LinkedIn Was Quietly Inspecting Your Browser Like a Nosy Cop 👀

&quot;BrowserGate,&quot; a report alleging LinkedIn quietly scanned users’ browsers for thousands of installed extensions and attached a hardware-style fingerprint to session activity without meaningful disclosure. LinkedIn says the probing is a security measure aimed at scraping tools, but the reporting and independent testing show the behavior is real, extensive, and a lot more invasive than most people would expect from the site where th...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-05_SgiW7uvB95E.mp4" length="33510519" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-05_SgiW7uvB95E.mp4</guid>
        <pubDate>Tue, 05 May 2026 19:06:45 +0000</pubDate>
        <itunes:duration>134</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>UK Biobank Breach Put 500,000 Health Records Up for Sale in China - 5/4/26</title>
        <itunes:title>UK Biobank Breach Put 500,000 Health Records Up for Sale in China - 5/4/26</itunes:title>
        <description>My first story tracks a brutal trust failure inside one of the world’s most famous health research projects: data tied to all 500,000 UK Biobank volunteers was advertised for sale on Alibaba by sellers linked to research access abuse. The UK government said names and contact details were not included, but the whole selling point of de-identified health data is that it is not supposed to wind up on a Chinese marketplace like discount headphones. UK Biobank paused access, cut off the implicated in...</description>
        <itunes:summary>My first story tracks a brutal trust failure inside one of the world’s most famous health research projects: data tied to all 500,000 UK Biobank volunteers was advertised for sale on Alibaba by sellers linked to research access abuse. The UK government said names and contact details were not included, but the whole selling point of de-identified health data is that it is not supposed to wind up on a Chinese marketplace like discount headphones. UK Biobank paused access, cut off the implicated in...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-05_-v6WnVLMC10.mp4" length="18454643" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-05_-v6WnVLMC10.mp4</guid>
        <pubDate>Tue, 05 May 2026 03:26:06 +0000</pubDate>
        <itunes:duration>73</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Github Super-Vuln, Chinese Espionage, Malvertising a Go-Go! - May 1, 2026</title>
        <itunes:title>Github Super-Vuln, Chinese Espionage, Malvertising a Go-Go! - May 1, 2026</itunes:title>
        <description>💥 GitHub Had an RCE Problem the Size of the Internet 💥
CVE-2026-3854, a critical GitHub flaw that let an authenticated user turn a normal `git push` into remote code execution on backend infrastructure. Wiz said the issue could expose millions of public and private repositories on affected GitHub.com storage nodes, while GitHub Enterprise Server instances faced full server compromise if left unpatched. So yes, one semicolon and a bad design assumption almost turned the world’s code locker into a...</description>
        <itunes:summary>💥 GitHub Had an RCE Problem the Size of the Internet 💥
CVE-2026-3854, a critical GitHub flaw that let an authenticated user turn a normal `git push` into remote code execution on backend infrastructure. Wiz said the issue could expose millions of public and private repositories on affected GitHub.com storage nodes, while GitHub Enterprise Server instances faced full server compromise if left unpatched. So yes, one semicolon and a bad design assumption almost turned the world’s code locker into a...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-01_OlGong4omOw.mp4" length="21663555" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-05-01_OlGong4omOw.mp4</guid>
        <pubDate>Fri, 01 May 2026 19:08:39 +0000</pubDate>
        <itunes:duration>86</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Europe’s Biggest Gym Breach, Iran Targets US Water, &amp; Omnistealer Goes On-Chain - 4/15/26</title>
        <itunes:title>Europe’s Biggest Gym Breach, Iran Targets US Water, &amp; Omnistealer Goes On-Chain - 4/15/26</itunes:title>
        <description>Yeah...I know the audio sounds terrible. 
I'll figure it out and it'll be better tomorrow. 
-AT

Basic-Fit, Europe’s largest gym chain, disclosed a breach affecting roughly 1 million members across six countries after attackers accessed a system used to record club visits. Stolen data includes names, contact details, dates of birth, and bank account information, which makes this a whole lot worse than a marketing email leak. Apparently the hardest part of going to the gym in 2026 is not getting ...</description>
        <itunes:summary>Yeah...I know the audio sounds terrible. 
I'll figure it out and it'll be better tomorrow. 
-AT

Basic-Fit, Europe’s largest gym chain, disclosed a breach affecting roughly 1 million members across six countries after attackers accessed a system used to record club visits. Stolen data includes names, contact details, dates of birth, and bank account information, which makes this a whole lot worse than a marketing email leak. Apparently the hardest part of going to the gym in 2026 is not getting ...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-15_KEohDXna17E.mp4" length="20357744" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-15_KEohDXna17E.mp4</guid>
        <pubDate>Wed, 15 Apr 2026 16:09:40 +0000</pubDate>
        <itunes:duration>81</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>AI prompts exposed, China's supercomputer looted, and a Meta insider stole 30K photos - 4/10/2026</title>
        <itunes:title>AI prompts exposed, China's supercomputer looted, and a Meta insider stole 30K photos - 4/10/2026</itunes:title>
        <description>💋 70,000 NSFW AI Prompts Just Got Tied Back to Real People 💋

A breach involving MyLovely.AI exposed data on more than 100,000 users, including explicit prompts, generated content links, account metadata, and roughly 70,000 prompts directly tied to unique user IDs. That matters because the leak does not just reveal email addresses — it deanonymizes deeply personal sexual content and creates obvious openings for sextortion, doxxing, and harassment. The lesson is brutal and simple: people keep tre...</description>
        <itunes:summary>💋 70,000 NSFW AI Prompts Just Got Tied Back to Real People 💋

A breach involving MyLovely.AI exposed data on more than 100,000 users, including explicit prompts, generated content links, account metadata, and roughly 70,000 prompts directly tied to unique user IDs. That matters because the leak does not just reveal email addresses — it deanonymizes deeply personal sexual content and creates obvious openings for sextortion, doxxing, and harassment. The lesson is brutal and simple: people keep tre...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-10_3DbSgHU6kpI.mp4" length="24106479" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-10_3DbSgHU6kpI.mp4</guid>
        <pubDate>Fri, 10 Apr 2026 17:22:25 +0000</pubDate>
        <itunes:duration>96</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Emoji's, LATAM Mobile Fraud, and Microsoft Bricks Lazy Devs. - 4/9/26</title>
        <itunes:title>Emoji's, LATAM Mobile Fraud, and Microsoft Bricks Lazy Devs. - 4/9/26</itunes:title>
        <description>🤖 Cybercriminals Are Using Emojis to Hide in Plain Sight 🤖

Threat actors are increasingly using emojis as a functional layer of communication across Telegram, Discord, dark web forums, and cybercrime marketplaces to flag tools, stolen data, payouts, urgency, and targets while dodging simplistic keyword-based monitoring. Researchers say the symbols are not decorative fluff — they help criminals compress meaning, build reputation, speed up coordination, and add a second layer of obfuscation that ...</description>
        <itunes:summary>🤖 Cybercriminals Are Using Emojis to Hide in Plain Sight 🤖

Threat actors are increasingly using emojis as a functional layer of communication across Telegram, Discord, dark web forums, and cybercrime marketplaces to flag tools, stolen data, payouts, urgency, and targets while dodging simplistic keyword-based monitoring. Researchers say the symbols are not decorative fluff — they help criminals compress meaning, build reputation, speed up coordination, and add a second layer of obfuscation that ...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-10_wRu7FF48Rrg.mp4" length="27123945" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-10_wRu7FF48Rrg.mp4</guid>
        <pubDate>Fri, 10 Apr 2026 02:15:18 +0000</pubDate>
        <itunes:duration>108</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🛡️ Microsoft Patches 77 Bugs Including Critical Office RCE Flaws 🛡️</title>
        <itunes:title>🛡️ Microsoft Patches 77 Bugs Including Critical Office RCE Flaws 🛡️</itunes:title>
        <description>Microsoft released security updates fixing 77 vulnerabilities across Windows and related software in its March 2026 Patch Tuesday, including critical remote code execution flaws in Microsoft Office that can be triggered simply by viewing a malicious email in the Preview Pane. Two publicly disclosed zero-days were patched: CVE-2026-21262, a privilege escalation bug in SQL Server that allows network-based elevation to sysadmin, and CVE-2026-26127, a .NET denial-of-service vulnerability. Over half ...</description>
        <itunes:summary>Microsoft released security updates fixing 77 vulnerabilities across Windows and related software in its March 2026 Patch Tuesday, including critical remote code execution flaws in Microsoft Office that can be triggered simply by viewing a malicious email in the Preview Pane. Two publicly disclosed zero-days were patched: CVE-2026-21262, a privilege escalation bug in SQL Server that allows network-based elevation to sysadmin, and CVE-2026-26127, a .NET denial-of-service vulnerability. Over half ...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-08_PLNm1hXuDk0.mp4" length="18269809" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-08_PLNm1hXuDk0.mp4</guid>
        <pubDate>Wed, 08 Apr 2026 18:03:54 +0000</pubDate>
        <itunes:duration>73</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Russia Hacks Routers, Patch Tuesday, TeamPCP attacks Iran with Wiper Malware - 4/8/2026</title>
        <itunes:title>Russia Hacks Routers, Patch Tuesday, TeamPCP attacks Iran with Wiper Malware - 4/8/2026</itunes:title>
        <description>🐻 Russia Stole Microsoft Tokens from 18,000 Hacked Routers 🐻

Russian military intelligence unit APT28 (Forest Blizzard) compromised over 18,000 Internet routers to conduct a massive DNS hijacking campaign that stole Microsoft Office authentication tokens from 200+ organizations and 5,000 consumer devices. The state-sponsored hackers exploited vulnerabilities in older TP-Link and MikroTik routers to redirect DNS traffic through attacker-controlled servers, intercepting OAuth tokens after users c...</description>
        <itunes:summary>🐻 Russia Stole Microsoft Tokens from 18,000 Hacked Routers 🐻

Russian military intelligence unit APT28 (Forest Blizzard) compromised over 18,000 Internet routers to conduct a massive DNS hijacking campaign that stole Microsoft Office authentication tokens from 200+ organizations and 5,000 consumer devices. The state-sponsored hackers exploited vulnerabilities in older TP-Link and MikroTik routers to redirect DNS traffic through attacker-controlled servers, intercepting OAuth tokens after users c...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-08_bGQGPwBNwx0.mp4" length="50716916" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-08_bGQGPwBNwx0.mp4</guid>
        <pubDate>Wed, 08 Apr 2026 18:00:09 +0000</pubDate>
        <itunes:duration>202</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>GitHub Supply Chain Attack: AI-Powered PRT-Scan Targets Developers - 4/7/26</title>
        <itunes:title>GitHub Supply Chain Attack: AI-Powered PRT-Scan Targets Developers - 4/7/26</itunes:title>
        <description>🚨 AI-Powered GitHub Attack Steals Secrets from Open Source Projects 🚨

A sophisticated AI-assisted supply chain attack called &quot;PRT-scan&quot; has targeted hundreds of GitHub repositories using fake pull requests to exfiltrate developer credentials and secrets. The campaign, which began on March 11, 2026, leverages automated AI to rapidly identify and exploit GitHub Actions misconfigurations across open source projects. Threat actors created multiple disposable accounts to submit over 256 malicious pu...</description>
        <itunes:summary>🚨 AI-Powered GitHub Attack Steals Secrets from Open Source Projects 🚨

A sophisticated AI-assisted supply chain attack called &quot;PRT-scan&quot; has targeted hundreds of GitHub repositories using fake pull requests to exfiltrate developer credentials and secrets. The campaign, which began on March 11, 2026, leverages automated AI to rapidly identify and exploit GitHub Actions misconfigurations across open source projects. Threat actors created multiple disposable accounts to submit over 256 malicious pu...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-07_hzpstXTM4Ok.mp4" length="29218602" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-07_hzpstXTM4Ok.mp4</guid>
        <pubDate>Tue, 07 Apr 2026 16:57:18 +0000</pubDate>
        <itunes:duration>116</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>UNKN Unmasked, Ransomware killing 300+ EDR, &amp; Beware of 3rd Party QR code Scanners - April 6, 2026</title>
        <itunes:title>UNKN Unmasked, Ransomware killing 300+ EDR, &amp; Beware of 3rd Party QR code Scanners - April 6, 2026</itunes:title>
        <description>Germany Finally IDs the Ghost Behind REvil &amp; GandCrab Ransomware

Germany just unmasked one of cybercrime's biggest ghosts—Daniil Shchukin, the 31-year-old Russian who ran both GandCrab and REvil ransomware operations. From $2 billion in extortion to the Kaseya attack that hit 1,500+ businesses, this is the story of how they finally caught the hacker known as &quot;UNKN.&quot;

Sources:
- https://krebsonsecurity.com/2026/04/germany-doxes-unkn-head-of-ru-ransomware-gangs-revil-gandcrab/
- https://www.bka.d...</description>
        <itunes:summary>Germany Finally IDs the Ghost Behind REvil &amp; GandCrab Ransomware

Germany just unmasked one of cybercrime's biggest ghosts—Daniil Shchukin, the 31-year-old Russian who ran both GandCrab and REvil ransomware operations. From $2 billion in extortion to the Kaseya attack that hit 1,500+ businesses, this is the story of how they finally caught the hacker known as &quot;UNKN.&quot;

Sources:
- https://krebsonsecurity.com/2026/04/germany-doxes-unkn-head-of-ru-ransomware-gangs-revil-gandcrab/
- https://www.bka.d...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-07_Vz14NFYG3n4.mp4" length="30353493" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-07_Vz14NFYG3n4.mp4</guid>
        <pubDate>Tue, 07 Apr 2026 03:09:12 +0000</pubDate>
        <itunes:duration>121</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>AI Agents Gone Rogue: Google Exposed, Venom Persists &amp; Anthropic Leaks 500K Lines | April 1, 2026</title>
        <itunes:title>AI Agents Gone Rogue: Google Exposed, Venom Persists &amp; Anthropic Leaks 500K Lines | April 1, 2026</itunes:title>
        <description>🔐 Google's AI Agent Permissions Are a Ticking Time Bomb 💣
Palo Alto Networks Unit 42 researchers discovered that Google's Vertex AI gives AI agents dangerously excessive default permissions that allow attackers to break out of the AI environment, steal customer data from Google Cloud Projects, and even access Google's internal infrastructure. The vulnerability stems from the overprivileged Per-Project, Per-Product Service Agent (P4SA) that's automatically assigned to every AI agent deployed on t...</description>
        <itunes:summary>🔐 Google's AI Agent Permissions Are a Ticking Time Bomb 💣
Palo Alto Networks Unit 42 researchers discovered that Google's Vertex AI gives AI agents dangerously excessive default permissions that allow attackers to break out of the AI environment, steal customer data from Google Cloud Projects, and even access Google's internal infrastructure. The vulnerability stems from the overprivileged Per-Project, Per-Product Service Agent (P4SA) that's automatically assigned to every AI agent deployed on t...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-01_4w_BB3jeiNs.mp4" length="24961099" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-04-01_4w_BB3jeiNs.mp4</guid>
        <pubDate>Wed, 01 Apr 2026 18:10:43 +0000</pubDate>
        <itunes:duration>99</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Triple Cyber Threat: Professional Networks, npm Supply Chain &amp; AWS Under Attack - 3/31/2026</title>
        <itunes:title>Triple Cyber Threat: Professional Networks, npm Supply Chain &amp; AWS Under Attack - 3/31/2026</itunes:title>
        <description>💼🕵️ Professional Networks Under Attack: PXA Stealer Campaign 🕵️💼

A Vietnam-linked hacking group is targeting LinkedIn users with PXA Stealer malware, designed to harvest saved passwords, browser cookies, and two-factor authentication codes from professionals on the platform. Once credentials are stolen, hackers can impersonate victims to phish coworkers, spread malware through DMs, and run fake job offer scams. Protect yourself now by enabling authenticator-based 2FA, avoiding unsolicited links...</description>
        <itunes:summary>💼🕵️ Professional Networks Under Attack: PXA Stealer Campaign 🕵️💼

A Vietnam-linked hacking group is targeting LinkedIn users with PXA Stealer malware, designed to harvest saved passwords, browser cookies, and two-factor authentication codes from professionals on the platform. Once credentials are stolen, hackers can impersonate victims to phish coworkers, spread malware through DMs, and run fake job offer scams. Protect yourself now by enabling authenticator-based 2FA, avoiding unsolicited links...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-31_e2_W9KNoexY.mp4" length="26198161" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-31_e2_W9KNoexY.mp4</guid>
        <pubDate>Tue, 31 Mar 2026 21:05:30 +0000</pubDate>
        <itunes:duration>104</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Crunchyroll 6.8M Breach, North Korea Owns VS Code &amp; Russia Hacks Signal | Mar 24</title>
        <itunes:title>Crunchyroll 6.8M Breach, North Korea Owns VS Code &amp; Russia Hacks Signal | Mar 24</itunes:title>
        <description>🍣 Crunchyroll Confirmed 6.8M Users Were Breached. It Wasn't Even Their Fault. 😭

ShinyHunters, the group behind breaches at AT&amp;T, Ticketmaster, and Santander, stole data on 6.8 million Crunchyroll users via a supply chain attack through Telus Digital. A Telus employee ran malware on their work laptop, giving the attacker access to Crunchyroll's environment. Stolen data includes names, emails, passwords, support records, and potentially payment details. ShinyHunters has a track record of selling ...</description>
        <itunes:summary>🍣 Crunchyroll Confirmed 6.8M Users Were Breached. It Wasn't Even Their Fault. 😭

ShinyHunters, the group behind breaches at AT&amp;T, Ticketmaster, and Santander, stole data on 6.8 million Crunchyroll users via a supply chain attack through Telus Digital. A Telus employee ran malware on their work laptop, giving the attacker access to Crunchyroll's environment. Stolen data includes names, emails, passwords, support records, and potentially payment details. ShinyHunters has a track record of selling ...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-24_NPA3fVA495Y.mp4" length="34513872" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-24_NPA3fVA495Y.mp4</guid>
        <pubDate>Tue, 24 Mar 2026 18:13:44 +0000</pubDate>
        <itunes:duration>138</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Crunchyroll Hacked, H&amp;R Block Backdoor &amp; FBI Can't Stop Iran | Mar 23</title>
        <itunes:title>Crunchyroll Hacked, H&amp;R Block Backdoor &amp; FBI Can't Stop Iran | Mar 23</itunes:title>
        <description>🍥 Crunchyroll Got Hacked — Your Email, Password &amp; Credit Card May Be Gone

A threat actor breached Crunchyroll on March 12, 2026 through a compromised employee at TELUS, their outsourcing partner — who had malware on his machine that gave the attacker access to Crunchyroll's environment. Roughly 100GB of customer analytics data was exfiltrated before the breach was stopped, potentially including emails, passwords, and credit card information. Crunchyroll took 24 hours to detect the breach. As of...</description>
        <itunes:summary>🍥 Crunchyroll Got Hacked — Your Email, Password &amp; Credit Card May Be Gone

A threat actor breached Crunchyroll on March 12, 2026 through a compromised employee at TELUS, their outsourcing partner — who had malware on his machine that gave the attacker access to Crunchyroll's environment. Roughly 100GB of customer analytics data was exfiltrated before the breach was stopped, potentially including emails, passwords, and credit card information. Crunchyroll took 24 hours to detect the breach. As of...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-23_-42TDnyn9as.mp4" length="19998251" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-23_-42TDnyn9as.mp4</guid>
        <pubDate>Mon, 23 Mar 2026 17:43:41 +0000</pubDate>
        <itunes:duration>79</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>AI Fraud, iPhone Exploits &amp; Microsoft's Self-Inflicted Outage | Cybersecurity News</title>
        <itunes:title>AI Fraud, iPhone Exploits &amp; Microsoft's Self-Inflicted Outage | Cybersecurity News</itunes:title>
        <description>🎵 This Musician Made $10 Million Streaming His Own Songs — With Fake AI Listeners. He's Going to Prison.

Michael Smith, a North Carolina musician, pleaded guilty to wire fraud conspiracy after using AI-generated music and AI bots to fake billions of streams on Spotify, Apple Music, and Amazon Music — pocketing over $10 million in royalty payments that should have gone to real artists. He created thousands of fake streaming accounts, generated AI songs to fill them, and had bots stream them arou...</description>
        <itunes:summary>🎵 This Musician Made $10 Million Streaming His Own Songs — With Fake AI Listeners. He's Going to Prison.

Michael Smith, a North Carolina musician, pleaded guilty to wire fraud conspiracy after using AI-generated music and AI bots to fake billions of streams on Spotify, Apple Music, and Amazon Music — pocketing over $10 million in royalty payments that should have gone to real artists. He created thousands of fake streaming accounts, generated AI songs to fill them, and had bots stream them arou...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-22_taw8ujQ0aaQ.mp4" length="18872458" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-22_taw8ujQ0aaQ.mp4</guid>
        <pubDate>Sun, 22 Mar 2026 20:09:32 +0000</pubDate>
        <itunes:duration>75</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Russian Hackers Hold Kids Hospital Hostage + AI Phishing Scam EXPOSED | BreachForums DOWN - 3/18/26</title>
        <itunes:title>Russian Hackers Hold Kids Hospital Hostage + AI Phishing Scam EXPOSED | BreachForums DOWN - 3/18/26</itunes:title>
        <description>🏥 Ransomware Gang Knocked Out Mississippi's Only Children's Hospital — For 9 Days

The Medusa ransomware gang, believed to operate out of Russia, has claimed responsibility for a devastating February cyberattack on the University of Mississippi Medical Center — the state's only children's hospital, Level I trauma center, and organ transplant facility. The hospital went completely dark for nine days, forcing staff to manage cancer infusions, surgeries, and critical care with paper and pen. Medusa...</description>
        <itunes:summary>🏥 Ransomware Gang Knocked Out Mississippi's Only Children's Hospital — For 9 Days

The Medusa ransomware gang, believed to operate out of Russia, has claimed responsibility for a devastating February cyberattack on the University of Mississippi Medical Center — the state's only children's hospital, Level I trauma center, and organ transplant facility. The hospital went completely dark for nine days, forcing staff to manage cancer infusions, surgeries, and critical care with paper and pen. Medusa...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-19_RoaY_qHoWK4.mp4" length="26760365" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-19_RoaY_qHoWK4.mp4</guid>
        <pubDate>Thu, 19 Mar 2026 00:57:15 +0000</pubDate>
        <itunes:duration>107</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Hackers Pase as PayPal, $4.4M Crypto Heist via Photo &amp; PowerSchool's Triple Extortion Nightmare</title>
        <itunes:title>Hackers Pase as PayPal, $4.4M Crypto Heist via Photo &amp; PowerSchool's Triple Extortion Nightmare</itunes:title>
        <description>🎣 Hackers Are Posing as PayPal &amp; Amazon Support — And Stealing Your MFA Codes in Real Time

Researchers discovered attackers are hijacking LiveChat — the same support tool used by thousands of legitimate companies — to impersonate PayPal and Amazon agents in real time. Victims are lured via phishing emails, connected to a fake live chat, coaxed into sharing credit card numbers and MFA codes, and then redirected to fake login pages where their credentials are captured. The MFA bypass is the criti...</description>
        <itunes:summary>🎣 Hackers Are Posing as PayPal &amp; Amazon Support — And Stealing Your MFA Codes in Real Time

Researchers discovered attackers are hijacking LiveChat — the same support tool used by thousands of legitimate companies — to impersonate PayPal and Amazon agents in real time. Victims are lured via phishing emails, connected to a fake live chat, coaxed into sharing credit card numbers and MFA codes, and then redirected to fake login pages where their credentials are captured. The MFA bypass is the criti...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-17_2-1r-oKQ7zs.mp4" length="23767992" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-17_2-1r-oKQ7zs.mp4</guid>
        <pubDate>Tue, 17 Mar 2026 16:46:10 +0000</pubDate>
        <itunes:duration>95</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Bing AI Malware + Banking Trojan + EU Bank Ruling | Mar 9, 2026</title>
        <itunes:title>Bing AI Malware + Banking Trojan + EU Bank Ruling | Mar 9, 2026</itunes:title>
        <description>🤖 Bing AI Promotes Fake GitHub Repos with Malware 🤖

Microsoft Bing's AI search feature promoted fake OpenClaw GitHub repositories that deployed infostealers and proxy malware, marking the first major case of AI search engines serving malicious content.

• BleepingComputer: https://www.bleepingcomputer.com/news/security/bing-ai-promoted-fake-openclaw-github-repo-pushing-info-stealing-malware/
• The Register: https://www.theregister.com/2026/03/04/fake_openclaw_installers_malware/
• Security Boul...</description>
        <itunes:summary>🤖 Bing AI Promotes Fake GitHub Repos with Malware 🤖

Microsoft Bing's AI search feature promoted fake OpenClaw GitHub repositories that deployed infostealers and proxy malware, marking the first major case of AI search engines serving malicious content.

• BleepingComputer: https://www.bleepingcomputer.com/news/security/bing-ai-promoted-fake-openclaw-github-repo-pushing-info-stealing-malware/
• The Register: https://www.theregister.com/2026/03/04/fake_openclaw_installers_malware/
• Security Boul...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-09_ABFtgsc83kE.mp4" length="26686887" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-09_ABFtgsc83kE.mp4</guid>
        <pubDate>Mon, 09 Mar 2026 19:28:20 +0000</pubDate>
        <itunes:duration>106</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Meta will Alert Parents if Teens Search Self-Harm. My interview with Fox 6 News Atlanta.</title>
        <itunes:title>Meta will Alert Parents if Teens Search Self-Harm. My interview with Fox 6 News Atlanta.</itunes:title>
        <description>https://www.fox5atlanta.com/video/fmc-j4vfei7ygyzc56l6

I was interviewed by Fox 5 Atlanta about Instagram's new safety update that notifies parents when their teen repeatedly searches for suicide or self-harm-related terms. While it sounds like a step forward from Meta, is it really enough? We break down what this feature actually does, what it doesn't, and whether this marks a genuine shift in how Meta approaches teen mental health...or just another PR move.</description>
        <itunes:summary>https://www.fox5atlanta.com/video/fmc-j4vfei7ygyzc56l6

I was interviewed by Fox 5 Atlanta about Instagram's new safety update that notifies parents when their teen repeatedly searches for suicide or self-harm-related terms. While it sounds like a step forward from Meta, is it really enough? We break down what this feature actually does, what it doesn't, and whether this marks a genuine shift in how Meta approaches teen mental health...or just another PR move.</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-06_HlBWwUl2i5g.mp4" length="63560405" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-06_HlBWwUl2i5g.mp4</guid>
        <pubDate>Fri, 06 Mar 2026 17:33:15 +0000</pubDate>
        <itunes:duration>254</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🚨 AI Weaponized Against Mexico, Cancer Center Breach, ClawJacked AI Hijack - Mar 3</title>
        <itunes:title>🚨 AI Weaponized Against Mexico, Cancer Center Breach, ClawJacked AI Hijack - Mar 3</itunes:title>
        <description>🤖 Hackers Weaponize Claude AI - Mexico Government Hacked 🤖

Threat actors weaponized Anthropic's Claude Code AI assistant to breach the Mexican government's systems and steal over 150GB of sensitive data, including civil registry files, tax records, and voter data. Roughly 195 million identities were exposed. This represents the first confirmed use of a commercial AI coding tool in a government-level cyberattack.

• https://www.securityweek.com/hackers-weaponize-claude-code-in-mexican-government...</description>
        <itunes:summary>🤖 Hackers Weaponize Claude AI - Mexico Government Hacked 🤖

Threat actors weaponized Anthropic's Claude Code AI assistant to breach the Mexican government's systems and steal over 150GB of sensitive data, including civil registry files, tax records, and voter data. Roughly 195 million identities were exposed. This represents the first confirmed use of a commercial AI coding tool in a government-level cyberattack.

• https://www.securityweek.com/hackers-weaponize-claude-code-in-mexican-government...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-03_wsu2s7pbCag.mp4" length="24027088" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-03_wsu2s7pbCag.mp4</guid>
        <pubDate>Tue, 03 Mar 2026 20:56:36 +0000</pubDate>
        <itunes:duration>96</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🚨 Europol Arrests 30 Com Hackers, Samsung Smart TV Spying Settlement, Iran Cyber War - Mar 2</title>
        <itunes:title>🚨 Europol Arrests 30 Com Hackers, Samsung Smart TV Spying Settlement, Iran Cyber War - Mar 2</itunes:title>
        <description>👮 Europol Crackdown on The Com Hackers - 30 Arrests 👮

Europol's Project Compass led to 30 arrests of The Com cybercrime collective members across 28 countries. The group targets children for extortion and CSAM production, linked to major ransomware attacks and organized into subgroups including 764.

• https://www.bleepingcomputer.com/news/security/police-crackdown-on-the-com-cybercrime-gang-leads-to-30-arrests/
• https://www.europol.europa.eu/media-press/newsroom/news/
• https://www.securitywe...</description>
        <itunes:summary>👮 Europol Crackdown on The Com Hackers - 30 Arrests 👮

Europol's Project Compass led to 30 arrests of The Com cybercrime collective members across 28 countries. The group targets children for extortion and CSAM production, linked to major ransomware attacks and organized into subgroups including 764.

• https://www.bleepingcomputer.com/news/security/police-crackdown-on-the-com-cybercrime-gang-leads-to-30-arrests/
• https://www.europol.europa.eu/media-press/newsroom/news/
• https://www.securitywe...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-02_jgF0mwH6qKQ.mp4" length="23321749" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-03-02_jgF0mwH6qKQ.mp4</guid>
        <pubDate>Mon, 02 Mar 2026 22:38:30 +0000</pubDate>
        <itunes:duration>93</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🚨 Defense Contractor Sold Zero-Days to Russia, Job Interview Backdoors, 27-Second Hacks - Feb 26</title>
        <itunes:title>🚨 Defense Contractor Sold Zero-Days to Russia, Job Interview Backdoors, 27-Second Hacks - Feb 26</itunes:title>
        <description>Ex-L3Harris Executive Sentenced for Selling Zero-Days to Russian Broker

Peter Williams, former general manager of L3Harris's Trenchant cybersecurity unit, was sentenced to 87 months in prison for stealing and selling 8 zero-day exploits to Russian broker Operation Zero for $1.3M in cryptocurrency. The theft caused $35M in losses and could enable access to millions of devices worldwide.

• https://www.bleepingcomputer.com/news/security/ex-l3harris-exec-jailed-for-selling-zero-days-to-russian-exp...</description>
        <itunes:summary>Ex-L3Harris Executive Sentenced for Selling Zero-Days to Russian Broker

Peter Williams, former general manager of L3Harris's Trenchant cybersecurity unit, was sentenced to 87 months in prison for stealing and selling 8 zero-day exploits to Russian broker Operation Zero for $1.3M in cryptocurrency. The theft caused $35M in losses and could enable access to millions of devices worldwide.

• https://www.bleepingcomputer.com/news/security/ex-l3harris-exec-jailed-for-selling-zero-days-to-russian-exp...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-26_hpn8krD9Zbg.mp4" length="27747538" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-26_hpn8krD9Zbg.mp4</guid>
        <pubDate>Thu, 26 Feb 2026 20:49:45 +0000</pubDate>
        <itunes:duration>110</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Wynn Casino Breach, UAE AI Terror Attack, SLH Hackers Recruit Women for Scams - Feb 25</title>
        <itunes:title>Wynn Casino Breach, UAE AI Terror Attack, SLH Hackers Recruit Women for Scams - Feb 25</itunes:title>
        <description>🎰 Wynn Resorts Las Vegas Hit by Cybersecurity Breach 🎰

What happens in Vegas... apparently gets stolen by ShinyHunters. Wynn Resorts, one of Las Vegas's biggest casino operators, just confirmed they got hacked. And when I say hacked, I mean eight hundred thousand employee records—complete with Social Security numbers—stolen by ransomware criminals who are now demanding a million and a half dollars to keep quiet. The breach was actually revealed in a lawsuit, which is a fun way to learn your com...</description>
        <itunes:summary>🎰 Wynn Resorts Las Vegas Hit by Cybersecurity Breach 🎰

What happens in Vegas... apparently gets stolen by ShinyHunters. Wynn Resorts, one of Las Vegas's biggest casino operators, just confirmed they got hacked. And when I say hacked, I mean eight hundred thousand employee records—complete with Social Security numbers—stolen by ransomware criminals who are now demanding a million and a half dollars to keep quiet. The breach was actually revealed in a lawsuit, which is a fun way to learn your com...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-25_rgiSRJqca1k.mp4" length="19769736" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-25_rgiSRJqca1k.mp4</guid>
        <pubDate>Wed, 25 Feb 2026 22:14:40 +0000</pubDate>
        <itunes:duration>79</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>BREAKING: 25M+ US Breach + Chrome Zero-Day + AI Malware (Feb 24,2026)</title>
        <itunes:title>BREAKING: 25M+ US Breach + Chrome Zero-Day + AI Malware (Feb 24,2026)</itunes:title>
        <description>🚨 Conduent Breach Now Largest in US History - 25+ Million Affected
Conduent Business Services confirmed one of the largest data breaches in U.S. history affecting 25+ million individuals. Safepay ransomware group stole 8TB of data including SSNs, medical histories, and health insurance details between October 2024 and January 2025.

Sources:
• https://cybersecuritynews.com/conduent-data-breach/
• https://techcrunch.com/2026/02/24/conduent-data-breach-grows-affecting-at-least-25m-people/
• https:...</description>
        <itunes:summary>🚨 Conduent Breach Now Largest in US History - 25+ Million Affected
Conduent Business Services confirmed one of the largest data breaches in U.S. history affecting 25+ million individuals. Safepay ransomware group stole 8TB of data including SSNs, medical histories, and health insurance details between October 2024 and January 2025.

Sources:
• https://cybersecuritynews.com/conduent-data-breach/
• https://techcrunch.com/2026/02/24/conduent-data-breach-grows-affecting-at-least-25m-people/
• https:...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-24_p4Ky1l4X_c4.mp4" length="24640804" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-24_p4Ky1l4X_c4.mp4</guid>
        <pubDate>Tue, 24 Feb 2026 23:00:15 +0000</pubDate>
        <itunes:duration>98</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Texas Sues TP-Link for China Hacking + 1B Records Exposed + First AI Android Malware | Feb 20, 2026</title>
        <itunes:title>Texas Sues TP-Link for China Hacking + 1B Records Exposed + First AI Android Malware | Feb 20, 2026</itunes:title>
        <description>🚨 Texas Sues TP-Link Over Chinese Hacking Risks 🚨

Texas sued TP-Link Systems alleging the company deceptively marketed routers as secure while firmware vulnerabilities enabled Chinese state-backed hackers to compromise American users' devices and networks.

Sources: 
• https://www.bleepingcomputer.com/news/security/texas-sues-tp-link-over-chinese-hacking-risks-user-deception/
• https://www.texasattorneygeneral.gov/news/releases/texas-files-lawsuit-tp-link-systems-deceptive-security-claims
• htt...</description>
        <itunes:summary>🚨 Texas Sues TP-Link Over Chinese Hacking Risks 🚨

Texas sued TP-Link Systems alleging the company deceptively marketed routers as secure while firmware vulnerabilities enabled Chinese state-backed hackers to compromise American users' devices and networks.

Sources: 
• https://www.bleepingcomputer.com/news/security/texas-sues-tp-link-over-chinese-hacking-risks-user-deception/
• https://www.texasattorneygeneral.gov/news/releases/texas-files-lawsuit-tp-link-systems-deceptive-security-claims
• htt...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-20_h2SBw-XyIeo.mp4" length="27591177" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-20_h2SBw-XyIeo.mp4</guid>
        <pubDate>Fri, 20 Feb 2026 20:06:13 +0000</pubDate>
        <itunes:duration>110</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>BREAKING: Chrome Zero-Day + AI Malware + Android Backdoor — Feb 18, 2026</title>
        <itunes:title>BREAKING: Chrome Zero-Day + AI Malware + Android Backdoor — Feb 18, 2026</itunes:title>
        <description>🔴 Google Patches First Chrome Zero-Day of 2026 — Actively Exploited 🔴

Google released emergency updates on February 16, 2026 to patch CVE-2026-2441, a high-severity use-after-free vulnerability in Chrome with a CVSS score of 8.8. The flaw is being actively exploited in the wild, allowing remote attackers to potentially execute code by getting victims to visit a crafted webpage. This is Chrome's first actively exploited zero-day of 2026, and users on all platforms should update immediately.

Sou...</description>
        <itunes:summary>🔴 Google Patches First Chrome Zero-Day of 2026 — Actively Exploited 🔴

Google released emergency updates on February 16, 2026 to patch CVE-2026-2441, a high-severity use-after-free vulnerability in Chrome with a CVSS score of 8.8. The flaw is being actively exploited in the wild, allowing remote attackers to potentially execute code by getting victims to visit a crafted webpage. This is Chrome's first actively exploited zero-day of 2026, and users on all platforms should update immediately.

Sou...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-18_iXaBDxkj2Ys.mp4" length="24445189" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-18_iXaBDxkj2Ys.mp4</guid>
        <pubDate>Wed, 18 Feb 2026 19:22:05 +0000</pubDate>
        <itunes:duration>97</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>AI Agent Hack, BeyondTrust Zero-Day &amp; Password Manager Flaws — Cyber News Feb 17, 2026</title>
        <itunes:title>AI Agent Hack, BeyondTrust Zero-Day &amp; Password Manager Flaws — Cyber News Feb 17, 2026</itunes:title>
        <description>🦀Infostealer Steals OpenClaw AI Agent Secrets🦀

Information-stealing malware has been observed for the first time specifically targeting OpenClaw, a popular agentic AI assistant framework, stealing API keys, authentication tokens, and cloud credentials stored in its configuration files. This attack vector is particularly dangerous because compromised AI agent credentials can give attackers access to entire automated pipelines and connected cloud services. Security experts warn that as AI agent a...</description>
        <itunes:summary>🦀Infostealer Steals OpenClaw AI Agent Secrets🦀

Information-stealing malware has been observed for the first time specifically targeting OpenClaw, a popular agentic AI assistant framework, stealing API keys, authentication tokens, and cloud credentials stored in its configuration files. This attack vector is particularly dangerous because compromised AI agent credentials can give attackers access to entire automated pipelines and connected cloud services. Security experts warn that as AI agent a...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-17_jeTD2b-yBjE.mp4" length="20103592" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-17_jeTD2b-yBjE.mp4</guid>
        <pubDate>Tue, 17 Feb 2026 18:08:49 +0000</pubDate>
        <itunes:duration>80</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Hackers Using Snail Mail, AI &amp; Data Breaches to Steal Your Money - Feb 16, 2026</title>
        <itunes:title>Hackers Using Snail Mail, AI &amp; Data Breaches to Steal Your Money - Feb 16, 2026</itunes:title>
        <description>📬 Hackers Are Literally Mailing You Fake Letters 📬

Threat actors are sending physical letters through postal mail pretending to be from Trezor and Ledger, manufacturers of cryptocurrency hardware wallets. The letters use official-looking branding and urgent language to trick recipients into revealing their wallet recovery phrases on fake websites. The scam represents a sophisticated blend of physical and digital social engineering.

Sources: 
• https://www.bleepingcomputer.com/news/security/sna...</description>
        <itunes:summary>📬 Hackers Are Literally Mailing You Fake Letters 📬

Threat actors are sending physical letters through postal mail pretending to be from Trezor and Ledger, manufacturers of cryptocurrency hardware wallets. The letters use official-looking branding and urgent language to trick recipients into revealing their wallet recovery phrases on fake websites. The scam represents a sophisticated blend of physical and digital social engineering.

Sources: 
• https://www.bleepingcomputer.com/news/security/sna...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-16_m2eyFsAmNWY.mp4" length="33427593" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-16_m2eyFsAmNWY.mp4</guid>
        <pubDate>Mon, 16 Feb 2026 18:05:41 +0000</pubDate>
        <itunes:duration>133</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🚨 300K Hit by Fake AI Extensions, Russia Blocks WhatsApp, Hackers Weaponize Gemini AI - Feb 13, 2026</title>
        <itunes:title>🚨 300K Hit by Fake AI Extensions, Russia Blocks WhatsApp, Hackers Weaponize Gemini AI - Feb 13, 2026</itunes:title>
        <description>🤖 Hackers Weaponize Google's Gemini AI in Multi-Stage Attacks 🤖

Google Threat Intelligence Group published a report warning about AI model extraction and distillation attacks where threat actors abuse legitimate API access to systematically probe AI models. Attackers are using Gemini AI across all stages of cyber attacks, from reconnaissance to payload delivery.

Sources: 
• https://www.bleepingcomputer.com/news/security/google-says-hackers-are-abusing-gemini-ai-for-all-attacks-stages/
• https:...</description>
        <itunes:summary>🤖 Hackers Weaponize Google's Gemini AI in Multi-Stage Attacks 🤖

Google Threat Intelligence Group published a report warning about AI model extraction and distillation attacks where threat actors abuse legitimate API access to systematically probe AI models. Attackers are using Gemini AI across all stages of cyber attacks, from reconnaissance to payload delivery.

Sources: 
• https://www.bleepingcomputer.com/news/security/google-says-hackers-are-abusing-gemini-ai-for-all-attacks-stages/
• https:...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-13_7xmTNnR_eLs.mp4" length="20929716" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-13_7xmTNnR_eLs.mp4</guid>
        <pubDate>Fri, 13 Feb 2026 20:45:16 +0000</pubDate>
        <itunes:duration>83</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🚨 BREAKING: Apple Zero-Day, 4K Microsoft Accounts Stolen &amp; More! 🚨 - Feb 12, 2026</title>
        <itunes:title>🚨 BREAKING: Apple Zero-Day, 4K Microsoft Accounts Stolen &amp; More! 🚨 - Feb 12, 2026</itunes:title>
        <description>📝 Windows 11 NOTEPAD RCE ZERO-DAY Executes Files Silently 📝

Microsoft patched a remote code execution vulnerability in Windows 11 Notepad that allowed attackers to execute local or remote programs through specially crafted Markdown links without triggering Windows security warnings. Users could be tricked into clicking malicious links in seemingly harmless text files.

Sources: 
• https://www.bleepingcomputer.com/news/microsoft/windows-11-notepad-flaw-let-files-execute-silently-via-markdown-lin...</description>
        <itunes:summary>📝 Windows 11 NOTEPAD RCE ZERO-DAY Executes Files Silently 📝

Microsoft patched a remote code execution vulnerability in Windows 11 Notepad that allowed attackers to execute local or remote programs through specially crafted Markdown links without triggering Windows security warnings. Users could be tricked into clicking malicious links in seemingly harmless text files.

Sources: 
• https://www.bleepingcomputer.com/news/microsoft/windows-11-notepad-flaw-let-files-execute-silently-via-markdown-lin...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-12_qrAnKrJQ_FI.mp4" length="43877174" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-12_qrAnKrJQ_FI.mp4</guid>
        <pubDate>Thu, 12 Feb 2026 20:21:29 +0000</pubDate>
        <itunes:duration>175</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Patch Tuesday Chaos, Pig-Butchering Scammer Flees Justice, ZeroDayRat for Android/iOS - Feb 11, 2026</title>
        <itunes:title>Patch Tuesday Chaos, Pig-Butchering Scammer Flees Justice, ZeroDayRat for Android/iOS - Feb 11, 2026</itunes:title>
        <description>🚨 Microsoft Patches 6 Actively Exploited Zero-Days 🚨

Microsoft's February 2026 Patch Tuesday fixes dozens of Windows and Office bugs, including six zero-day vulnerabilities actively exploited in the wild. Security teams are urged to patch quickly, especially for flaws tied to SmartScreen bypass and privilege escalation.

Sources:
• https://www.bleepingcomputer.com/news/microsoft/microsoft-february-2026-patch-tuesday-fixes-6-zero-days-58-flaws/
• https://thehackernews.com/2026/02/microsoft-patch...</description>
        <itunes:summary>🚨 Microsoft Patches 6 Actively Exploited Zero-Days 🚨

Microsoft's February 2026 Patch Tuesday fixes dozens of Windows and Office bugs, including six zero-day vulnerabilities actively exploited in the wild. Security teams are urged to patch quickly, especially for flaws tied to SmartScreen bypass and privilege escalation.

Sources:
• https://www.bleepingcomputer.com/news/microsoft/microsoft-february-2026-patch-tuesday-fixes-6-zero-days-58-flaws/
• https://thehackernews.com/2026/02/microsoft-patch...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-11_Xa5_B-fRSpo.mp4" length="23470482" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-11_Xa5_B-fRSpo.mp4</guid>
        <pubDate>Wed, 11 Feb 2026 21:58:26 +0000</pubDate>
        <itunes:duration>93</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>AI Phishing Storm, Signal Attacks &amp; Massive Gov Breach - Feb 10, 2026</title>
        <itunes:title>AI Phishing Storm, Signal Attacks &amp; Massive Gov Breach - Feb 10, 2026</itunes:title>
        <description>🏢 Conduent Breach Balloons to Millions 🏢

The data breach at government technology giant Conduent has expanded dramatically, now affecting millions more Americans. The Safeway ransomware group claims responsibility for stealing over 8 terabytes of data containing personal and health information. Conduent handles data for more than 100 million people across America, making this one of the largest breaches of 2026.

Sources: 
• https://techcrunch.com/2026/02/05/data-breach-at-govtech-giant-conduen...</description>
        <itunes:summary>🏢 Conduent Breach Balloons to Millions 🏢

The data breach at government technology giant Conduent has expanded dramatically, now affecting millions more Americans. The Safeway ransomware group claims responsibility for stealing over 8 terabytes of data containing personal and health information. Conduent handles data for more than 100 million people across America, making this one of the largest breaches of 2026.

Sources: 
• https://techcrunch.com/2026/02/05/data-breach-at-govtech-giant-conduen...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-10_BdHZ2dhbaP0.mp4" length="26448094" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-10_BdHZ2dhbaP0.mp4</guid>
        <pubDate>Tue, 10 Feb 2026 20:20:53 +0000</pubDate>
        <itunes:duration>105</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🚨 BeyondTrust RCE Exposes 11K Servers  +EU  Hacked + Home Security Breach | Cyber News Feb 9</title>
        <itunes:title>🚨 BeyondTrust RCE Exposes 11K Servers  +EU  Hacked + Home Security Breach | Cyber News Feb 9</itunes:title>
        <description>⚠️ BeyondTrust Critical RCE Flaw Patched ⚠️
BeyondTrust patched a critical pre-authentication remote code execution vulnerability (CVE-2026-1731) in Remote Support and PRA products. Attackers could run OS commands via crafted requests without authentication. Approximately 11,000 exposed instances were found online. Security patches have been released for all affected versions.

Sources:
• https://thehackernews.com/2026/02/beyondtrust-patches-pre-auth-rce.html
• https://x.com/TheHackersNews/statu...</description>
        <itunes:summary>⚠️ BeyondTrust Critical RCE Flaw Patched ⚠️
BeyondTrust patched a critical pre-authentication remote code execution vulnerability (CVE-2026-1731) in Remote Support and PRA products. Attackers could run OS commands via crafted requests without authentication. Approximately 11,000 exposed instances were found online. Security patches have been released for all affected versions.

Sources:
• https://thehackernews.com/2026/02/beyondtrust-patches-pre-auth-rce.html
• https://x.com/TheHackersNews/statu...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-09_0HMRz_NnEAc.mp4" length="29653913" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-09_0HMRz_NnEAc.mp4</guid>
        <pubDate>Mon, 09 Feb 2026 18:46:06 +0000</pubDate>
        <itunes:duration>118</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>BREAKING: 40 Million People Hacked Today - Air France, ManoMano, BridgePay Breaches</title>
        <itunes:title>BREAKING: 40 Million People Hacked Today - Air France, ManoMano, BridgePay Breaches</itunes:title>
        <description>✈️ Air France Data Breach Exposes 2M+ Records ✈️

Threat actors claim access to Air France admin panel exposing over 2 million customer purchase records including PII, Flying Blue loyalty data, and booking details. If you've ever flown Air France, your data might be at risk.

Sources: 
• https://darkwebinformer.com/threat-actor-claims-air-france-vulnerability-exposes-2-million-customer-records-via-admin-panel/
• https://www.bleepingcomputer.com/news/security/air-france-and-klm-disclose-data-brea...</description>
        <itunes:summary>✈️ Air France Data Breach Exposes 2M+ Records ✈️

Threat actors claim access to Air France admin panel exposing over 2 million customer purchase records including PII, Flying Blue loyalty data, and booking details. If you've ever flown Air France, your data might be at risk.

Sources: 
• https://darkwebinformer.com/threat-actor-claims-air-france-vulnerability-exposes-2-million-customer-records-via-admin-panel/
• https://www.bleepingcomputer.com/news/security/air-france-and-klm-disclose-data-brea...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-07_OquSQEyMqfM.mp4" length="43149004" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-07_OquSQEyMqfM.mp4</guid>
        <pubDate>Sat, 07 Feb 2026 22:07:24 +0000</pubDate>
        <itunes:duration>172</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>OpenClaw : When AI Gets Hands | The Autonomous Agent Revolution and What It Means for Security</title>
        <itunes:title>OpenClaw : When AI Gets Hands | The Autonomous Agent Revolution and What It Means for Security</itunes:title>
        <description>#openclaw (formerly Clawdbot/Moltbot) exploded to 160,000 GitHub stars in 6 weeks and represents a fundamental shift in AI: autonomous agents that execute terminal commands, manage emails, and operate 24/7 without human oversight. This isn't a chatbot. It's AI with hands.

In this 30-minute talk, I break down the security nightmare keeping CISOs awake: active vulnerabilities (CVE-2026-25253), 1.5 million exposed API keys, malicious marketplace entries, and why traditional IAM can't handle autono...</description>
        <itunes:summary>#openclaw (formerly Clawdbot/Moltbot) exploded to 160,000 GitHub stars in 6 weeks and represents a fundamental shift in AI: autonomous agents that execute terminal commands, manage emails, and operate 24/7 without human oversight. This isn't a chatbot. It's AI with hands.

In this 30-minute talk, I break down the security nightmare keeping CISOs awake: active vulnerabilities (CVE-2026-25253), 1.5 million exposed API keys, malicious marketplace entries, and why traditional IAM can't handle autono...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-06_cXY33kolToo.mp4" length="223960949" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-06_cXY33kolToo.mp4</guid>
        <pubDate>Fri, 06 Feb 2026 04:50:04 +0000</pubDate>
        <itunes:duration>895</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Notepad++ Hacked + X Raided + AI Malware | Cyber News Feb 3, 2026</title>
        <itunes:title>Notepad++ Hacked + X Raided + AI Malware | Cyber News Feb 3, 2026</itunes:title>
        <description>⚠️ Chinese Hackers Hijack Notepad++ Updates for Months ⚠️

Chinese state-sponsored hackers compromised Notepad++ update infrastructure from June through December 2025, delivering malware to select targets via hijacked hosting provider. The attack used Microsoft Warbird obfuscation APIs and went undetected for half a year.

Sources: 
• https://www.bleepingcomputer.com/news/security/notepad-plus-plus-update-feature-hijacked-by-chinese-state-hackers-for-months/
• https://thehackernews.com/2026/01/c...</description>
        <itunes:summary>⚠️ Chinese Hackers Hijack Notepad++ Updates for Months ⚠️

Chinese state-sponsored hackers compromised Notepad++ update infrastructure from June through December 2025, delivering malware to select targets via hijacked hosting provider. The attack used Microsoft Warbird obfuscation APIs and went undetected for half a year.

Sources: 
• https://www.bleepingcomputer.com/news/security/notepad-plus-plus-update-feature-hijacked-by-chinese-state-hackers-for-months/
• https://thehackernews.com/2026/01/c...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-03_JArHI512uQs.mp4" length="25107958" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-02-03_JArHI512uQs.mp4</guid>
        <pubDate>Tue, 03 Feb 2026 17:49:42 +0000</pubDate>
        <itunes:duration>100</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>CISA Director Leaks Docs to ChatGPT | Bumble Hack Exposes 30GB | China Hacked Wiretaps for 4 Years</title>
        <itunes:title>CISA Director Leaks Docs to ChatGPT | Bumble Hack Exposes 30GB | China Hacked Wiretaps for 4 Years</itunes:title>
        <description>🚨 CISA Director Uploaded Classified Docs to ChatGPT (After Failing Polygraph) 🚨

The acting Director of CISA, America's top cybersecurity agency, uploaded classified government documents to public ChatGPT four times. He specifically requested access even though it's blocked on DHS networks. Oh, and he failed a polygraph test before getting the job. Classic &quot;do as I say, not as I do.&quot;

Sources: - https://twitter.com/IntCyberDigest/status/2016575284946837691
- https://twitter.com/TheHackersNews/st...</description>
        <itunes:summary>🚨 CISA Director Uploaded Classified Docs to ChatGPT (After Failing Polygraph) 🚨

The acting Director of CISA, America's top cybersecurity agency, uploaded classified government documents to public ChatGPT four times. He specifically requested access even though it's blocked on DHS networks. Oh, and he failed a polygraph test before getting the job. Classic &quot;do as I say, not as I do.&quot;

Sources: - https://twitter.com/IntCyberDigest/status/2016575284946837691
- https://twitter.com/TheHackersNews/st...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-30_cg-LE4_xUs0.mp4" length="36079393" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-30_cg-LE4_xUs0.mp4</guid>
        <pubDate>Fri, 30 Jan 2026 23:14:13 +0000</pubDate>
        <itunes:duration>144</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>WinRAR Exploit Still Active, OpenSSL Critical RCE, SolarWinds Irony | Cybersecurity News</title>
        <itunes:title>WinRAR Exploit Still Active, OpenSSL Critical RCE, SolarWinds Irony | Cybersecurity News</itunes:title>
        <description>📦 That WinRAR &quot;Free Trial&quot; You Never Paid For? Hackers Are Exploiting It Right Now 🚨          
                                                                                                                                          A WinRAR vulnerability patched last July (CVE-2025-8088) is still being actively exploited by Russian APTs, Chinese threat actors, and cybercrime gangs six months later. The path traversal flaw lets attackers slip malicious files into your system when you extract see...</description>
        <itunes:summary>📦 That WinRAR &quot;Free Trial&quot; You Never Paid For? Hackers Are Exploiting It Right Now 🚨          
                                                                                                                                          A WinRAR vulnerability patched last July (CVE-2025-8088) is still being actively exploited by Russian APTs, Chinese threat actors, and cybercrime gangs six months later. The path traversal flaw lets attackers slip malicious files into your system when you extract see...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-29_wwIhaJ9-19M.mp4" length="20387919" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-29_wwIhaJ9-19M.mp4</guid>
        <pubDate>Thu, 29 Jan 2026 17:53:16 +0000</pubDate>
        <itunes:duration>81</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Dating Apps, DHS Agents, and Chinese APT Breaches Expose Million</title>
        <itunes:title>Dating Apps, DHS Agents, and Chinese APT Breaches Expose Million</itunes:title>
        <description>💔 10M Dating App Users Exposed in Match Group Breach 💔

ShinyHunters cybercrime group claims to have stolen over 10 million records from Match Group (NASDAQ: MTCH), owner of Tinder, Hinge, Match.com, and OkCupid. The alleged breach, posted January 28, 2026, includes user behavioral data from Appsflyer analytics (swipes, matches, sessions, geo-locations), hundreds of internal corporate documents, and highly sensitive personal information including romantic preferences. The 1.76GB compressed dump ...</description>
        <itunes:summary>💔 10M Dating App Users Exposed in Match Group Breach 💔

ShinyHunters cybercrime group claims to have stolen over 10 million records from Match Group (NASDAQ: MTCH), owner of Tinder, Hinge, Match.com, and OkCupid. The alleged breach, posted January 28, 2026, includes user behavioral data from Appsflyer analytics (swipes, matches, sessions, geo-locations), hundreds of internal corporate documents, and highly sensitive personal information including romantic preferences. The 1.76GB compressed dump ...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-28_Ur_pDQx50oU.mp4" length="23971227" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-28_Ur_pDQx50oU.mp4</guid>
        <pubDate>Wed, 28 Jan 2026 19:02:21 +0000</pubDate>
        <itunes:duration>95</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🔐 Clawdbot/Moltbot Servers Exposed Online, Russia Attacks Poland's Grid, 149M Passwords Leaked 🚨</title>
        <itunes:title>🔐 Clawdbot/Moltbot Servers Exposed Online, Russia Attacks Poland's Grid, 149M Passwords Leaked 🚨</itunes:title>
        <description>🤖 Hundreds of Clawdbot Servers Exposed with API Keys &amp; Private Chats 🔓

Security researchers have discovered hundreds of publicly exposed Clawdbot control servers containing API keys, private messages, and OAuth credentials. The viral AI assistant, which went mainstream over the weekend, has critical authentication vulnerabilities allowing unauthorized access to users' complete chat histories, financial accounts, and system commands. Misconfigured servers could enable credential theft and remote...</description>
        <itunes:summary>🤖 Hundreds of Clawdbot Servers Exposed with API Keys &amp; Private Chats 🔓

Security researchers have discovered hundreds of publicly exposed Clawdbot control servers containing API keys, private messages, and OAuth credentials. The viral AI assistant, which went mainstream over the weekend, has critical authentication vulnerabilities allowing unauthorized access to users' complete chat histories, financial accounts, and system commands. Misconfigured servers could enable credential theft and remote...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-27_Mu2xvA-Puwo.mp4" length="34202627" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-27_Mu2xvA-Puwo.mp4</guid>
        <pubDate>Tue, 27 Jan 2026 19:43:06 +0000</pubDate>
        <itunes:duration>136</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🔥 Fortinet Firewall Under Attack, UK Bans VPNs for Kids, Nike Data Breach! 🚨</title>
        <itunes:title>🔥 Fortinet Firewall Under Attack, UK Bans VPNs for Kids, Nike Data Breach! 🚨</itunes:title>
        <description>🇬🇧 UK Lords Vote to Ban VPNs for Kids 🇬🇧

The UK House of Lords voted 207 to 159 to ban VPNs for anyone under 18, claiming it will prevent children from bypassing age verification on social media and adult content. The amendment would require VPN providers to implement age verification, likely through government IDs or facial scans. Privacy advocates are calling it surveillance infrastructure disguised as child protection, and the measure now heads to the House of Commons.

- https://hansard.par...</description>
        <itunes:summary>🇬🇧 UK Lords Vote to Ban VPNs for Kids 🇬🇧

The UK House of Lords voted 207 to 159 to ban VPNs for anyone under 18, claiming it will prevent children from bypassing age verification on social media and adult content. The amendment would require VPN providers to implement age verification, likely through government IDs or facial scans. Privacy advocates are calling it surveillance infrastructure disguised as child protection, and the measure now heads to the House of Commons.

- https://hansard.par...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-26_c0_6aznC44o.mp4" length="23536449" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-26_c0_6aznC44o.mp4</guid>
        <pubDate>Mon, 26 Jan 2026 19:12:51 +0000</pubDate>
        <itunes:duration>94</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>300TB Spotify Lawsuit, Okta Vishing Attack &amp; 28M SoundCloud Breach</title>
        <itunes:title>300TB Spotify Lawsuit, Okta Vishing Attack &amp; 28M SoundCloud Breach</itunes:title>
        <description>🎵⚖️ Spotify Pulled Off a SECRET LAWSUIT to Stop Pirates Who Stole 300TB of Music 🎵⚖️

Shadow library Anna's Archive, which scraped nearly 300 terabytes of Spotify's music catalog in December 2025, lost its primary .org domain after Spotify and major record labels filed a sealed lawsuit and secured a court order before the site even knew it was being sued. A federal judge granted a preliminary injunction on January 16, 2026, ordering domain registries and internet infrastructure providers worldwi...</description>
        <itunes:summary>🎵⚖️ Spotify Pulled Off a SECRET LAWSUIT to Stop Pirates Who Stole 300TB of Music 🎵⚖️

Shadow library Anna's Archive, which scraped nearly 300 terabytes of Spotify's music catalog in December 2025, lost its primary .org domain after Spotify and major record labels filed a sealed lawsuit and secured a court order before the site even knew it was being sued. A federal judge granted a preliminary injunction on January 16, 2026, ordering domain registries and internet infrastructure providers worldwi...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-23_eochC-TVlHc.mp4" length="22068137" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-23_eochC-TVlHc.mp4</guid>
        <pubDate>Fri, 23 Jan 2026 22:05:10 +0000</pubDate>
        <itunes:duration>88</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Nvidia Gets Caught Pirating AI Training Data |  ATM Hackers Busted | Ransomware OPSEC Fail</title>
        <itunes:title>Nvidia Gets Caught Pirating AI Training Data |  ATM Hackers Busted | Ransomware OPSEC Fail</itunes:title>
        <description>🤖 NVIDIA &amp; Meta Caught Pirating 500TB to Train AI Models 🏴‍☠️

Billion-dollar tech companies got caught red-handed downloading hundreds of terabytes of pirated books to train their AI. NVIDIA literally asked a piracy site for 500TB of stolen content, got WARNED it was illegal, and said &quot;send it anyway.&quot; Meanwhile Zuckerberg's playing dumb even though internal messages show he approved it…classic corporate villain energy.

Sources: 
- https://torrentfreak.com/nvidia-contacted-annas-archive-to-sec...</description>
        <itunes:summary>🤖 NVIDIA &amp; Meta Caught Pirating 500TB to Train AI Models 🏴‍☠️

Billion-dollar tech companies got caught red-handed downloading hundreds of terabytes of pirated books to train their AI. NVIDIA literally asked a piracy site for 500TB of stolen content, got WARNED it was illegal, and said &quot;send it anyway.&quot; Meanwhile Zuckerberg's playing dumb even though internal messages show he approved it…classic corporate villain energy.

Sources: 
- https://torrentfreak.com/nvidia-contacted-annas-archive-to-sec...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-22_n-kdDIe1TgE.mp4" length="22106716" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-22_n-kdDIe1TgE.mp4</guid>
        <pubDate>Thu, 22 Jan 2026 18:50:22 +0000</pubDate>
        <itunes:duration>88</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>YouTube: 🚨 LastPass Phishing, Tesla HACKED Live, &amp; Security Vendors Epic FAIL | Cybersecurity News</title>
        <itunes:title>YouTube: 🚨 LastPass Phishing, Tesla HACKED Live, &amp; Security Vendors Epic FAIL | Cybersecurity News</itunes:title>
        <description>🚨 LastPass Phishing Alert: Fake Backup Emails Target Your Master Password 🔐

LastPass users are being targeted by a phishing campaign that started January 19th, with fake emails claiming urgent maintenance requires vault backups within 24 hours. The emails redirect victims to malicious sites attempting to steal master passwords. The campaign was deliberately launched during the MLK holiday weekend when security teams are understaffed.

- https://www.securityweek.com/lastpass-users-targeted-with-...</description>
        <itunes:summary>🚨 LastPass Phishing Alert: Fake Backup Emails Target Your Master Password 🔐

LastPass users are being targeted by a phishing campaign that started January 19th, with fake emails claiming urgent maintenance requires vault backups within 24 hours. The emails redirect victims to malicious sites attempting to steal master passwords. The campaign was deliberately launched during the MLK holiday weekend when security teams are understaffed.

- https://www.securityweek.com/lastpass-users-targeted-with-...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-21_zbIMM6_MJlw.mp4" length="32612801" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-21_zbIMM6_MJlw.mp4</guid>
        <pubDate>Wed, 21 Jan 2026 21:31:00 +0000</pubDate>
        <itunes:duration>130</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>ESA Hacked Again, Iran State TV Hijacked, Black Basta Ransomware Boss Exposed</title>
        <itunes:title>ESA Hacked Again, Iran State TV Hijacked, Black Basta Ransomware Boss Exposed</itunes:title>
        <description>🚨 ESA Breached Twice in 2 Weeks: Space Mission Data Stolen 🚀
- https://cisoseries.com/cybersecurity-news-esa-confirms-new-data-heist-ni8mare-lets-hackers-hijack-n8n-servers-taiwan-blames-cyber-army-for-intrusion-attempts/
- https://www.theregister.com/2026/01/07/european_space_agency_breach_criminal_probe/
- https://www.space.com/space-exploration/esa-email-credentials-on-dark-web
- https://www.securityweek.com/european-space-agency-confirms-breach-after-hacker-offers-to-sell-data
- https://www....</description>
        <itunes:summary>🚨 ESA Breached Twice in 2 Weeks: Space Mission Data Stolen 🚀
- https://cisoseries.com/cybersecurity-news-esa-confirms-new-data-heist-ni8mare-lets-hackers-hijack-n8n-servers-taiwan-blames-cyber-army-for-intrusion-attempts/
- https://www.theregister.com/2026/01/07/european_space_agency_breach_criminal_probe/
- https://www.space.com/space-exploration/esa-email-credentials-on-dark-web
- https://www.securityweek.com/european-space-agency-confirms-breach-after-hacker-offers-to-sell-data
- https://www....</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-19_eUruYFww0k8.mp4" length="19252111" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-19_eUruYFww0k8.mp4</guid>
        <pubDate>Mon, 19 Jan 2026 22:44:10 +0000</pubDate>
        <itunes:duration>77</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>StealC Malware Exposed | Toyota Remotely Disables Car Heaters in Germany | Grubhub Hacked</title>
        <itunes:title>StealC Malware Exposed | Toyota Remotely Disables Car Heaters in Germany | Grubhub Hacked</itunes:title>
        <description>🚨 CyberArk Labs Hacks the Hackers with XSS on StealC Credential Stealing Malware. 🚨

• https://www.cyberark.com/resources/threat-research-blog/uno-reverse-card-stealing-cookies-from-cookie-stealers
• https://www.bleepingcomputer.com/news/security/stealc-hackers-hacked-as-researchers-hijack-malware-control-panels/
• https://www.bleepingcomputer.com/news/security/stealc-hackers-hacked-as-researchers-hijack-malware-control-panels/
• https://bazaar.abuse.ch/browse/tag/Stealc-v2/
• https://www.zscale...</description>
        <itunes:summary>🚨 CyberArk Labs Hacks the Hackers with XSS on StealC Credential Stealing Malware. 🚨

• https://www.cyberark.com/resources/threat-research-blog/uno-reverse-card-stealing-cookies-from-cookie-stealers
• https://www.bleepingcomputer.com/news/security/stealc-hackers-hacked-as-researchers-hijack-malware-control-panels/
• https://www.bleepingcomputer.com/news/security/stealc-hackers-hacked-as-researchers-hijack-malware-control-panels/
• https://bazaar.abuse.ch/browse/tag/Stealc-v2/
• https://www.zscale...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-16_VvQi5xTN_eM.mp4" length="18766383" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-16_VvQi5xTN_eM.mp4</guid>
        <pubDate>Fri, 16 Jan 2026 22:14:55 +0000</pubDate>
        <itunes:duration>75</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>China Bans US Cybersecurity Software, Verizon's Huge Outage &amp; Microsoft Takes Out $40M Fraud Network</title>
        <itunes:title>China Bans US Cybersecurity Software, Verizon's Huge Outage &amp; Microsoft Takes Out $40M Fraud Network</itunes:title>
        <description>🇨🇳🛡️ China orders firms to drop US and Israeli cybersecurity software, major vendors hit 🛡️🇨🇳
China has told domestic companies to stop using cybersecurity products from a list of US and Israeli firms, citing national security concerns. The move could force rapid tool replacements inside networks where security platforms have deep visibility into traffic and identity.

• https://www.reuters.com/world/china/beijing-tells-chinese-firms-stop-using-us-israeli-cybersecurity-software-sources-2026-01-1...</description>
        <itunes:summary>🇨🇳🛡️ China orders firms to drop US and Israeli cybersecurity software, major vendors hit 🛡️🇨🇳
China has told domestic companies to stop using cybersecurity products from a list of US and Israeli firms, citing national security concerns. The move could force rapid tool replacements inside networks where security platforms have deep visibility into traffic and identity.

• https://www.reuters.com/world/china/beijing-tells-chinese-firms-stop-using-us-israeli-cybersecurity-software-sources-2026-01-1...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-15_b4ktiEMQVfg.mp4" length="23461791" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-15_b4ktiEMQVfg.mp4</guid>
        <pubDate>Thu, 15 Jan 2026 22:19:58 +0000</pubDate>
        <itunes:duration>93</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>ConsentFix OAuth Attack Exploited by APT29 | Magecart Returns | ServiceNow BodySnatcher Vuln Patched</title>
        <itunes:title>ConsentFix OAuth Attack Exploited by APT29 | Magecart Returns | ServiceNow BodySnatcher Vuln Patched</itunes:title>
        <description>🚨 BREAKING: Russian Hackers Use Simple Copy-Paste Trick to Steal Your Entire Microsoft Account 🚨

A sophisticated phishing attack called ConsentFix exploits OAuth vulnerabilities by tricking users into copying and pasting a malicious URL that contains their Microsoft authorization code. Attackers exchange this code for access tokens, gaining full account access without passwords or MFA, and the technique is already being used by APT29 (Cozy Bear) and other threat actors.

- https://www.hendryadr...</description>
        <itunes:summary>🚨 BREAKING: Russian Hackers Use Simple Copy-Paste Trick to Steal Your Entire Microsoft Account 🚨

A sophisticated phishing attack called ConsentFix exploits OAuth vulnerabilities by tricking users into copying and pasting a malicious URL that contains their Microsoft authorization code. Attackers exchange this code for access tokens, gaining full account access without passwords or MFA, and the technique is already being used by APT29 (Cozy Bear) and other threat actors.

- https://www.hendryadr...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-14_peJgYBkDU1M.mp4" length="14744926" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-14_peJgYBkDU1M.mp4</guid>
        <pubDate>Wed, 14 Jan 2026 21:05:37 +0000</pubDate>
        <itunes:duration>58</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Apex Legends Hacked LIVE, BreachForums Exposed, Apple Partners with Google for AI</title>
        <itunes:title>Apex Legends Hacked LIVE, BreachForums Exposed, Apple Partners with Google for AI</itunes:title>
        <description>Apex Legends match hack: During a live Apex Legends Global Series tournament, someone pushed cheats onto pro players mid match. Players suddenly had aimbot and wallhacks they never installed. The attacker appeared to hijack controls in real time, which points to a serious security hole in the game or its tournament environment.

BreachForums data breach: BreachForums got breached. Data tied to about 324,000 users leaked, including details that can expose admin identities. It is a reminder that c...</description>
        <itunes:summary>Apex Legends match hack: During a live Apex Legends Global Series tournament, someone pushed cheats onto pro players mid match. Players suddenly had aimbot and wallhacks they never installed. The attacker appeared to hijack controls in real time, which points to a serious security hole in the game or its tournament environment.

BreachForums data breach: BreachForums got breached. Data tied to about 324,000 users leaked, including details that can expose admin identities. It is a reminder that c...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-13_0DQN54Z5Pa0.mp4" length="21919520" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-13_0DQN54Z5Pa0.mp4</guid>
        <pubDate>Tue, 13 Jan 2026 21:41:38 +0000</pubDate>
        <itunes:duration>87</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>T-Mobile’s Latest Breach, Bank Hack Infrastructure Seized, University of Hawaii Pays Ransom</title>
        <itunes:title>T-Mobile’s Latest Breach, Bank Hack Infrastructure Seized, University of Hawaii Pays Ransom</itunes:title>
        <description>T-Mobile Hacked 
- https://topclassactions.com/lawsuit-settlements/t-mobile-data-breach-2026
- https://www.cisa.gov/news-events/t-mobile-breach-2026
- https://www.bloomberg.com/news/articles/2026-01-11/t-mobile-breach
- https://www.bleepingcomputer.com/news/security/t-mobile-breach-2026/

Bank Infra Takedown
- https://www.securityweek.com/feds-seize-password-database-used-in-massive-bank-account-takeover-scheme/
- https://www.justice.gov/opa/pr/justice-department-announces-seizure-stolen-passwor...</description>
        <itunes:summary>T-Mobile Hacked 
- https://topclassactions.com/lawsuit-settlements/t-mobile-data-breach-2026
- https://www.cisa.gov/news-events/t-mobile-breach-2026
- https://www.bloomberg.com/news/articles/2026-01-11/t-mobile-breach
- https://www.bleepingcomputer.com/news/security/t-mobile-breach-2026/

Bank Infra Takedown
- https://www.securityweek.com/feds-seize-password-database-used-in-massive-bank-account-takeover-scheme/
- https://www.justice.gov/opa/pr/justice-department-announces-seizure-stolen-passwor...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-13_tBrksG4ILUg.mp4" length="20376634" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-13_tBrksG4ILUg.mp4</guid>
        <pubDate>Tue, 13 Jan 2026 15:45:08 +0000</pubDate>
        <itunes:duration>81</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🚨 Instagram Data Leak, Iran Blocks Starlink, &amp; Black Axe Cult Busted</title>
        <itunes:title>🚨 Instagram Data Leak, Iran Blocks Starlink, &amp; Black Axe Cult Busted</itunes:title>
        <description>First up: Instagram is dealing with a massive data leak affecting 17.5 million users. If you've been getting random password reset emails, you're not alone. I'll break down what happened, what data was exposed, and the critical steps you need to take right now to protect your account.

Next: Iran's nationwide protests have sparked an unprecedented internet blackout, with the government deploying military-grade jamming technology to disrupt Starlink satellite services. Iexplore how this sophistic...</description>
        <itunes:summary>First up: Instagram is dealing with a massive data leak affecting 17.5 million users. If you've been getting random password reset emails, you're not alone. I'll break down what happened, what data was exposed, and the critical steps you need to take right now to protect your account.

Next: Iran's nationwide protests have sparked an unprecedented internet blackout, with the government deploying military-grade jamming technology to disrupt Starlink satellite services. Iexplore how this sophistic...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-12_csM19TuigE0.mp4" length="24910490" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-12_csM19TuigE0.mp4</guid>
        <pubDate>Mon, 12 Jan 2026 06:00:29 +0000</pubDate>
        <itunes:duration>99</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>😱 Stolen Nudes, Bank Scams &amp; Hijacked Wheelchairs Exposed! 😱</title>
        <itunes:title>😱 Stolen Nudes, Bank Scams &amp; Hijacked Wheelchairs Exposed! 😱</itunes:title>
        <description>Illinois man charged with hacking Snapchat accounts to steal nude photos
- https://www.bleepingcomputer.com/news/security/illinois-man-charged-with-hacking-snapchat-accounts-to-steal-nude-photos/
- https://storage.courtlistener.com/recap/gov.uscourts.mad.293918/gov.uscourts.mad.293918.1.0.pdf
- https://www.justice.gov/usao-ma/pr/former-college-track-and-field-coach-sentenced-five-years-prison-sextortion

Banks Report Explosion in Apple Pay/Google Pay &quot;Panic&quot; Scams
- https://dailyhodl.com/2026/01...</description>
        <itunes:summary>Illinois man charged with hacking Snapchat accounts to steal nude photos
- https://www.bleepingcomputer.com/news/security/illinois-man-charged-with-hacking-snapchat-accounts-to-steal-nude-photos/
- https://storage.courtlistener.com/recap/gov.uscourts.mad.293918/gov.uscourts.mad.293918.1.0.pdf
- https://www.justice.gov/usao-ma/pr/former-college-track-and-field-coach-sentenced-five-years-prison-sextortion

Banks Report Explosion in Apple Pay/Google Pay &quot;Panic&quot; Scams
- https://dailyhodl.com/2026/01...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-10_vDrkDhLwaGo.mp4" length="21203122" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-10_vDrkDhLwaGo.mp4</guid>
        <pubDate>Sat, 10 Jan 2026 15:01:55 +0000</pubDate>
        <itunes:duration>84</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Android Dolby Hack Exposed! + Black Cat Ransomware SEO Scam + 5.8M SSNs Stolen from Car Buyers</title>
        <itunes:title>Android Dolby Hack Exposed! + Black Cat Ransomware SEO Scam + 5.8M SSNs Stolen from Car Buyers</itunes:title>
        <description>📱 Critical Android Dolby Flaw Can Hijack Your Phone 📱
- https://www.securityweek.com/critical-dolby-vulnerability-patched-in-android/
- https://source.android.com/docs/security/bulletin/2026/2026-01-01
- https://social.cyware.com/cyber-security-news-articles

🐱Black Cat Ransomware SEO Poisoning Campaign🐱
- https://thehackernews.com/2026/01/black-cat-behind-seo-poisoning-malware.html
- https://www.securityweek.com/black-cat-group-using-seo-poisoning-to-deliver-malware/

🚗5.8 Million SSNs Stolen i...</description>
        <itunes:summary>📱 Critical Android Dolby Flaw Can Hijack Your Phone 📱
- https://www.securityweek.com/critical-dolby-vulnerability-patched-in-android/
- https://source.android.com/docs/security/bulletin/2026/2026-01-01
- https://social.cyware.com/cyber-security-news-articles

🐱Black Cat Ransomware SEO Poisoning Campaign🐱
- https://thehackernews.com/2026/01/black-cat-behind-seo-poisoning-malware.html
- https://www.securityweek.com/black-cat-group-using-seo-poisoning-to-deliver-malware/

🚗5.8 Million SSNs Stolen i...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-09_pY10qoKmA_8.mp4" length="19197698" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-09_pY10qoKmA_8.mp4</guid>
        <pubDate>Fri, 09 Jan 2026 14:01:35 +0000</pubDate>
        <itunes:duration>76</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Pink Power Ranger Hacks Nazi Sites  + OpenAI Warns Injection “Unsolvable” + ShinySp1d3r RaaS Emerges</title>
        <itunes:title>Pink Power Ranger Hacks Nazi Sites  + OpenAI Warns Injection “Unsolvable” + ShinySp1d3r RaaS Emerges</itunes:title>
        <description>Martha Root dressed as Pink Power Ranger takes down white supremacist dating website live on stage.

- https://x.com/IntCyberDigest/status/2007183888377118750
- https://en.rattibha.com/thread/2007183888377118750
- https://media.ccc.de/v/39c3-the-heartbreak-machine-nazis-in-the-echo-chamber
- https://techcrunch.com/2026/01/05/hacktivist-deletes-white-supremacist-websites-live-on-stage-during-hacker-conference/
- https://gizmodo.com/hacker-dressed-as-the-pink-ranger-takes-down-white-supremacist-we...</description>
        <itunes:summary>Martha Root dressed as Pink Power Ranger takes down white supremacist dating website live on stage.

- https://x.com/IntCyberDigest/status/2007183888377118750
- https://en.rattibha.com/thread/2007183888377118750
- https://media.ccc.de/v/39c3-the-heartbreak-machine-nazis-in-the-echo-chamber
- https://techcrunch.com/2026/01/05/hacktivist-deletes-white-supremacist-websites-live-on-stage-during-hacker-conference/
- https://gizmodo.com/hacker-dressed-as-the-pink-ranger-takes-down-white-supremacist-we...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-07_XPZqzIYntJc.mp4" length="35298455" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-07_XPZqzIYntJc.mp4</guid>
        <pubDate>Wed, 07 Jan 2026 14:15:10 +0000</pubDate>
        <itunes:duration>141</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>VVS Stealer Targets Discord Gamers + AI Honeypot Traps “Scattered Lapsus” + Venezuela Cyber Blackout</title>
        <itunes:title>VVS Stealer Targets Discord Gamers + AI Honeypot Traps “Scattered Lapsus” + Venezuela Cyber Blackout</itunes:title>
        <description>1. VVS Stealer Targeting Discord
- https://unit42.paloaltonetworks.com/vvs-stealer/
- https://thehackernews.com/2026/01/new-vvs-stealer-malware-targets-discord.html
- https://www.scworld.com/news/pyarmor-obfuscated-vvs-stealer-targets-discord-browser-data
= https://www.infosecurity-magazine.com/news/vvs-stealer-advanced-obfuscation/
- https://socprime.com/active-threats/vvs-stealer-malware-targets-discord-accounts/
- https://cybersecuritynews.com/vvs-stealer-uses-pyarmor-obfuscation-to-evade-sta...</description>
        <itunes:summary>1. VVS Stealer Targeting Discord
- https://unit42.paloaltonetworks.com/vvs-stealer/
- https://thehackernews.com/2026/01/new-vvs-stealer-malware-targets-discord.html
- https://www.scworld.com/news/pyarmor-obfuscated-vvs-stealer-targets-discord-browser-data
= https://www.infosecurity-magazine.com/news/vvs-stealer-advanced-obfuscation/
- https://socprime.com/active-threats/vvs-stealer-malware-targets-discord-accounts/
- https://cybersecuritynews.com/vvs-stealer-uses-pyarmor-obfuscation-to-evade-sta...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-06_YJSsNxP_qZ4.mp4" length="18122922" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-06_YJSsNxP_qZ4.mp4</guid>
        <pubDate>Tue, 06 Jan 2026 14:01:06 +0000</pubDate>
        <itunes:duration>72</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>01/03/2026 - X’s AI Crackdown + Apple Supply Chain Attack + “Pig Butchering” Scam Playbook Exposed</title>
        <itunes:title>01/03/2026 - X’s AI Crackdown + Apple Supply Chain Attack + “Pig Butchering” Scam Playbook Exposed</itunes:title>
        <description>India/X (Grok)
 • https://m.economictimes.com/tech/technology/meity-issues-notice-to-x-over-misuse-of-grok-to-create-obscene-content/articleshow/126308251.cms?from=mdr
 • https://m.economictimes.com/news/india/meity-issues-formal-notice-to-x-over-groks-it-act-lapses/articleshow/126307971.cms
 • https://www.ndtv.com/india-news/it-ministry-issues-notice-to-x-formerly-twitter-over-obscene-indecent-and-sexually-explicit-content-on-grok-10203213
 • https://www.reuters.com/legal/litigation/grok-says-s...</description>
        <itunes:summary>India/X (Grok)
 • https://m.economictimes.com/tech/technology/meity-issues-notice-to-x-over-misuse-of-grok-to-create-obscene-content/articleshow/126308251.cms?from=mdr
 • https://m.economictimes.com/news/india/meity-issues-formal-notice-to-x-over-groks-it-act-lapses/articleshow/126307971.cms
 • https://www.ndtv.com/india-news/it-ministry-issues-notice-to-x-formerly-twitter-over-obscene-indecent-and-sexually-explicit-content-on-grok-10203213
 • https://www.reuters.com/legal/litigation/grok-says-s...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-03_TjRnI14mTq8.mp4" length="17366333" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-03_TjRnI14mTq8.mp4</guid>
        <pubDate>Sat, 03 Jan 2026 19:14:03 +0000</pubDate>
        <itunes:duration>69</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>Jan 2, 2026 - Reddit Bans ChatGPT Jailbreaks, Zoom Meetings Spied On, ESA Hacke</title>
        <itunes:title>Jan 2, 2026 - Reddit Bans ChatGPT Jailbreaks, Zoom Meetings Spied On, ESA Hacke</itunes:title>
        <description>Reddit permanently banned a 229,000-member ChatGPT jailbreak community after AI prompt injection attacks interfered with its automated systems. Meanwhile, a China-linked threat actor spied on over 2.2 million Zoom and Microsoft Teams meetings using malicious browser extensions. To top it off, the European Space Agency confirmed a breach exposing 200GB of source code and infrastructure secrets. Cybersecurity is escalating fast — here’s what actually matters.


📱 Reddit Bans ChatGPT Jailbreak Comm...</description>
        <itunes:summary>Reddit permanently banned a 229,000-member ChatGPT jailbreak community after AI prompt injection attacks interfered with its automated systems. Meanwhile, a China-linked threat actor spied on over 2.2 million Zoom and Microsoft Teams meetings using malicious browser extensions. To top it off, the European Space Agency confirmed a breach exposing 200GB of source code and infrastructure secrets. Cybersecurity is escalating fast — here’s what actually matters.


📱 Reddit Bans ChatGPT Jailbreak Comm...</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-02_kVNbI65yLrc.mp4" length="26474745" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-02_kVNbI65yLrc.mp4</guid>
        <pubDate>Fri, 02 Jan 2026 21:30:29 +0000</pubDate>
        <itunes:duration>105</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
<item>
        <title>🍯 Honey Browser Extension Under Fire: PayPal-Owned Tool Accused of Scamming 🍯</title>
        <itunes:title>🍯 Honey Browser Extension Under Fire: PayPal-Owned Tool Accused of Scamming 🍯</itunes:title>
        <description>• https://www.theverge.com/24343913/paypal-honey-megalag-coupon-scam-affiliate-fees
 • https://www.theverge.com/news/848870/honey-paypal-megalag-part-two
 • https://fortune.com/2024/12/23/honey-extension-scam-drama/
 • https://www.newsweek.com/honey-coupon-browser-extension-mrbeast-youtube-influencer-2007484
 • https://ppc.land/honey-co-founder-ryan-hudson-defends-extension-amid-fraud-detection-allegations/</description>
        <itunes:summary>• https://www.theverge.com/24343913/paypal-honey-megalag-coupon-scam-affiliate-fees
 • https://www.theverge.com/news/848870/honey-paypal-megalag-part-two
 • https://fortune.com/2024/12/23/honey-extension-scam-drama/
 • https://www.newsweek.com/honey-coupon-browser-extension-mrbeast-youtube-influencer-2007484
 • https://ppc.land/honey-co-founder-ryan-hudson-defends-extension-amid-fraud-detection-allegations/</itunes:summary>
        <enclosure url="https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-01_c818QklKMks.mp4" length="39031417" type="video/mp4" />
        <guid isPermaLink="false">https://pub-a686e1e4dc964163b819f274227e1622.r2.dev/podcast/episodes/2026-01-01_c818QklKMks.mp4</guid>
        <pubDate>Thu, 01 Jan 2026 19:39:00 +0000</pubDate>
        <itunes:duration>156</itunes:duration>
        <itunes:explicit>no</itunes:explicit>
        <itunes:episodeType>full</itunes:episodeType>
    </item>
  </channel>
</rss>
