01 Cold Open: Twenty-Year-Old Code, An Invisible Breach, and a Self-Replicating Worm0:00
0:00
Chapters
01Cold Open: Twenty-Year-Old Code, An Invisible Breach, and a Self-Replicating Worm
02Sponsor — Blue Cortex AI
03CVE-2026-2005: Twenty Years of Technical Debt, Now Weaponized
04CVE-2026-2005: The Cloud Exposure and the Financial Stakes
05Storm-2949: Breaching Azure Without Touching an Endpoint
06Storm-2949: Hardening SSPR and Building Detection You Don't Have Yet
07Mini Shai-Hulud @antv Escalation: One Account, Hundreds of Packages, a Self-Replicating Worm
08Mini Shai-Hulud: The Financial Picture and What to Do Right Now
09Triage: Foxconn/Nitrogen, THORChain, Vodafone/Lapsus$, and the M5 AI Exploit
10Synthesis: What Today's Threats Have in Common and What You Do Tomorrow Morning
Speakers
HalilAlexLenaJamesPierreTomasRafael
▶01Cold Open: Twenty-Year-Old Code, An Invisible Breach, and a Self-Replicating Worm00:00
Transcript not available for this scene
▶02Sponsor — Blue Cortex AI02:12
Transcript not available for this scene
▶03CVE-2026-2005: Twenty Years of Technical Debt, Now Weaponized03:19
Transcript not available for this scene
▶04CVE-2026-2005: The Cloud Exposure and the Financial Stakes07:47
Transcript not available for this scene
▶05Storm-2949: Breaching Azure Without Touching an Endpoint10:33
Transcript not available for this scene
▶06Storm-2949: Hardening SSPR and Building Detection You Don't Have Yet13:56
Transcript not available for this scene
▶07Mini Shai-Hulud @antv Escalation: One Account, Hundreds of Packages, a Self-Replicating Worm17:10
Transcript not available for this scene
▶08Mini Shai-Hulud: The Financial Picture and What to Do Right Now21:45
Transcript not available for this scene
▶09Triage: Foxconn/Nitrogen, THORChain, Vodafone/Lapsus$, and the M5 AI Exploit24:58
Transcript not available for this scene
▶10Synthesis: What Today's Threats Have in Common and What You Do Tomorrow Morning28:29
Transcript not available for this scene
Episodes
May 2026
Wed20May
Exploitation Overtakes Credentials: The DBIR Inflection Point
Tue19May
pgcrypto's Twenty-Year Debt, Storm-2949's Invisible Breach, and the @antv Worm
NOW PLAYING
Mon18May
47 Zero-Days, No Patches: Pwn2Own Berlin's Reckoning
Sun17May
TOTP Secrets, Silent Patches, and a 2005 Malware That Rewrites History
Sat16May
YellowKey: The USB That Unlocks Everything
Fri15May
Fragnesia: The Root You Didn't See Coming
Thu14May
OT Bridgehead: When PAN-OS Meets the Power Grid
Wed13May
Dynamics 365 Is Already Burning
Tue12May
No Patch, No Problem — For the Attacker
Sun10May
40 Minutes to Zero Day
Sat9May
Fire Drill: PAN-OS Zero-Day, AI Keys for the Taking, and a Trojan That Blinds Your EDR
Fri8May
Zero-Day Buried in Plain Sight: PAN-OS, ShinyHunters, and the Mislabeled Threat
Thu7May
AI Weaponization Convergence: The Day Three Threats Landed at Once
Wed6May
Grid on the Edge: Itron's OT Pivot, the Phantom Device Attack, and Coupang's $1.5B Insider Meltdown
Tue5May
Medtronic's Blurry Lines, GnuTLS's Silent Blast, and the AiTM Session Heist
Mon4May
Lease Files, Franchise Spyware, and the AI Hype Machine
Sun3May
Trust Collapse: Canvas Countdown, Worm in Three Ecosystems, and the AI Perimeter That Wasn't
Fri1May
Five Hundred Seventy-Seven Million Reasons to Audit Your Defaults
Apr 2026
Tue28Apr
Grid in the Crosshairs: Cisco SD-WAN, Gemini CLI, and Two Deadlines Expiring Today
Sun26Apr
Correction Day: The LAPSUS$ Claim Falls Apart, Signal Phishing Is Real
Sat25Apr
Pay or Leak: The 48-Hour Clock, Two CVEs You Must Patch, and DeFi's Governance Confession
Fri24Apr
Shai-Hulud: The Worm That Ate the Pipeline
Thu23Apr
Autonomous Worm, Unseizable C2, and 19 Million Stolen Identities
Wed22Apr
Mythos Breached, Supply Chain Burning, Patch Everything Now
Tue21Apr
Cisco's 48-Hour Clock, Vercel's Roblox Problem, and France's Identity Meltdown
Mon20Apr
Trust Is the Vulnerability
Sun19Apr
Two Hundred Million in Bad Debt and the AI That Finds Zero-Days
Sat18Apr
RedSun Rising: Defender Becomes the Attacker
Fri17Apr
Nation-State Supply Chains, Iran's PLC Gambit, and the AI Exploit Machine