Skip to content
PodcastsNewsCybersecurity Headlines

Cybersecurity Headlines

CISO Series
Cybersecurity Headlines
Latest episode

1831 episodes

  • Cybersecurity Headlines

    153M licenses for sale, Anthropic reverses course, Astra enters the red zone

    03/09/2026 | 7 mins.
    Dark web shop stocks 153 million driver's licenses
    Nexus, a new dark web service, claims it's selling scans of more than 153 million US and Canadian driver's licenses, plus over 10 million ID cards, three million travel and international IDs, and at least 579,000 medical cards. The images appear tied to Louisiana-based IDScan.net, which provides identity verification to retailers, rental-car companies, and others. KrebsOnSecurity matched some records to licenses scanned during Hertz rentals. IDScan says it's investigating and hasn't determined the breach's nature or scope. The FBI's New Orleans office has opened an inquiry. (KrebsOnSecurity)
    Anthropic puts 30-day data retention in reverse
    After customer pushback, Anthropic is revising a policy that stored 30 days of traffic from its Fable and Mythos models. Under new Enterprise Frontier Safeguards, customers can keep data in their own cloud and block Anthropic employees from reviewing it while automated abuse monitoring continues. Anthropic calls that privacy equivalent to zero data retention. Developed with more than 100 customers, including Salesforce, the system is due later this year. (CNBC)
    Astra enters OpenAI's cyber red zone
    OpenAI says Astra is its first model to reach a "Critical" cybersecurity threshold, meaning it can find unknown flaws and build exploits across well-defended systems without step-by-step human help. It's due soon, but the advanced cyber capabilities will start with a small test group before expanding through Daybreak Blue. OpenAI says Astra refused 91.5% of cyber jailbreak requests, versus 59% for GPT-5.6 Sol, and monitoring can pause suspicious activity. The Information reports Astra's latent reasoning may hide parts of its process, raising doubts about chain-of-thought monitoring. (WIRED, The Information)
    Get the full show notes here: https://cisoseries.com/153m-licenses-for-sale-anthropic-reverses-course-astra-red-zone/
    Huge thanks to our episode sponsor, KnowBe4
    Your employees have always been the target, but the threats they face are evolving. AI empowers cybercriminals to clone a coworker's voice, fake a video call with your CEO, or personalize a phishing email using details scraped from your own website.
    KnowBe4's AI-native Security Awareness Training (SAT) fights back with 12 autonomous defense agents that allow you to deliver personalized, relevant, and engaging training that adapts as fast as the threats your people face every day. More than 70,000 organizations trust KnowBe4 worldwide. Find out why at KnowBe4.com.
  • Cybersecurity Headlines

    Fable 5.1 released, USPS "untested" IT, Exchange hijack vulnerability

    02/09/2026 | 8 mins.
    Anthropic announces safety changes and new models
    USPS installs "untested" IT systems for mail-in ballots
    Thousands of Exchange servers vulnerable to hijacks
    Get the full show notes here: https://cisoseries.com/cybersecurity-news-fable-5-1-released-usps-untested-it-exchange-hijack-vulnerability/ 
    Huge thanks to our episode sponsor, KnowBe4

    Your employees have always been the target, but the threats they face are evolving. AI empowers cybercriminals to clone a coworker's voice, fake a video call with your CEO, or personalize a phishing email using details scraped from your own website.
    KnowBe4's AI-native Security Awareness Training (SAT) fights back with 12 autonomous defense agents that allow you to deliver personalized, relevant, and engaging training that adapts as fast as the threats your people face every day. More than 70,000 organizations trust KnowBe4 worldwide. Find out why at KnowBe4.com.
  • Cybersecurity Headlines

    Claude sessions hijacked, AI jolts global finance, agents get too many keys

    01/09/2026 | 6 mins.
    Claude sessions get hijacked
    Anthropic is warning that common infostealer malware is stealing active Claude browser sessions, letting attackers get into accounts and burn through paid usage without needing a password or two-factor code. The company is signing affected users out, removing stored payment methods and refunding unauthorized charges. But revoking the session doesn't remove the malware, so victims still need to clean the device, change credentials and revoke other active sessions. (BleepingComputer)
    AI could jolt global finance
    Bank of England governor Andrew Bailey is warning G20 officials that frontier AI could destabilize the global financial system by making cyberattacks faster, cheaper and easier to scale across borders. Bailey says many countries still lack protocols for how advanced models are developed and released. He also warned that a successful attack on a small number of heavily used technology providers could undermine confidence across the entire system. (The Guardian)
    AI agents get too many keys
    New research from Cequence Security and Enterprise Management Associates found a sizable confidence gap around AI agent permissions. 94% of surveyed organizations believe their agents don't have more access than necessary, but only 33% actually enforce least privilege. 65% have seen an agent act outside its intended role, and 29% say that caused measurable business impact. (Security Magazine)
    Get the full show notes here:
    https://cisoseries.com/claude-sessions-hijacked-ai-jolts-global-finance-agents-get-too-many-keys/
    Huge thanks to our episode sponsor, KnowBe4

    Your employees have always been the target, but the threats they face are evolving. AI empowers cybercriminals to clone a coworker's voice, fake a video call with your CEO, or personalize a phishing email using details scraped from your own website.
    KnowBe4's AI-native Security Awareness Training (SAT) fights back with 12 autonomous defense agents that allow you to deliver personalized, relevant, and engaging training that adapts as fast as the threats your people face every day. More than 70,000 organizations trust KnowBe4 worldwide. Find out why at KnowBe4.com.
  • Cybersecurity Headlines

    ServiceNow vulnerabilities warning, PaperCut zero-day, McKesson healthcare breach

    31/08/2026 | 7 mins.
    ServiceNow warns of three maximum severity security vulnerabilities
    PaperCut zero-day exploited in attacks
    Healthcare giant McKesson discloses breach
    Get the full show notes here: https://cisoseries.com/cybersecurity-news-servicenow-vulnerabilities-warning-papercut-zero-day-mckesson-healthcare-breach/
    Huge thanks to our episode sponsor, KnowBe4

    Your employees have always been the target, but the threats they face are evolving. AI empowers cybercriminals to clone a coworker's voice, fake a video call with your CEO, or personalize a phishing email using details scraped from your own website.
    KnowBe4's AI-native Security Awareness Training (SAT) fights back with 12 autonomous defense agents that allow you to deliver personalized, relevant, and engaging training that adapts as fast as the threats your people face every day. More than 70,000 organizations trust KnowBe4 worldwide. Find out why at KnowBe4.com.
  • Cybersecurity Headlines

    The Department of Know: Power plant attack, NSA hacker reunion, Hugging Face hack report

    28/08/2026 | 33 mins.
    Read the full stories at CISOSeries.com. 
    This week's Department of Know is hosted by Rich Stroffolino, with guests Jason Elrod, CISO, MultiCare Health System, and Chris Ray, field CTO, GigaOm.
    Missed the live show? Check it out on YouTube.
    The Department of Know is live every Friday at 4:00 p.m. ET. Join us each week by registering for the open discussion at CISOSeries.com.
    A huge thanks to our sponsor, ThreatDown

    Managing an enterprise-sized attack surface without a dedicated SOC? As attackers leverage AI-driven automation to target mid-size business, your legacy defenses are no longer
    enough. You need the expertise to detect and respond to modern threats, without the overhead of building an
    in-house security team. ThreatDown provides proactive, Managed Detection and Response, 24/7, so your
    business can scale safely. Enterprise-grade defense. Built for businesses like yours.
More News podcasts
About Cybersecurity Headlines
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.
Podcast website

Listen to Cybersecurity Headlines, The News Agents and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features
Cybersecurity Headlines: Podcasts in Family