The Host Unknown Podcast - Episode 204 - The Umms and Ahhs Episode

Episode Date: October 7, 2024

This week in InfoSec  (10:01)With content liberated from the “today in infosec” twitter account and further afield27th September 2001: Jan de Wit was sentenced to 150 hours of community service i...n the Netherlands for creating and spreading the Anna Kournikova virus. It was one of the first of the major viruses created from a virus toolkit - the dawn of cybercrime toolkits.https://twitter.com/todayininfosec/status/18397091452822776143rd October 2017: A week after he retired as the result of Equifax's data breach, former CEO Richard F. Smith told members of Congress that one person in the IT department was at fault.https://twitter.com/todayininfosec/status/1841893372035838342 Rant of the Week (14:52)It's true, social media moderators do go after conservativesBecause they're most likely to share crappy misinformation onlineSince Elon Musk bought Twitter nearly two years ago – a $44 billion acquisition he tried to pull out of – the mogul has driven a narrative that moderation of the microblogging website disproportionately targeted conservatives, libertarians, and Trump supporters.A scientific paper published in the journal Nature this week confirms that was the case, with justification. The groups more likely to be subjected to moderation were also more likely to share misinformation from low-quality news sites. Billy Big Balls of the Week (21:49)Use this link to read the story: https://www.404media.co/email/e7ecda94-675a-4538-901f-b2ccb35fe916/?ref=daily-stories-newsletter - the other link below for the show notes (the one above is tied to my account)Someone Put Facial Recognition Tech onto Meta's Smart Glasses to Instantly Dox StrangersA pair of students at Harvard have built what big tech companies refused to release publicly due to the overwhelming risks and danger involved: smart glasses with facial recognition technology that automatically looks up someone’s face and identifies them. The students have gone a step further too. Their customized glasses also pull other information about their subject from around the web, including their home address, phone number, and family members. Industry News (32:05)PwC Urges Boards to Give CISOs a Seat at the TableCyber-Attacks Hit Over a Third of English SchoolsISACA: European Security Teams Are Understaffed and UnderfundedT-Mobile to Pay $15.75m Penalty for Multiple Data BreachesBritish Hacker Charged in the US For $3.75m Insider Trading SchemeMeta Teams Up with Banks to Target FraudstersFIN7 Gang Hides Malware in AI “Deepnude” SitesNorthern Ireland Police Data Leak Sees Service Fined by ICOMicrosoft and US Government Disrupt Russian Star Blizzard Operations Tweet of the Week (38:52)https://twitter.com/iamdevloper/status/1842097858196979989 Come on! Like and bloody well subscribe!

Transcript
Discussion (0)
Starting point is 00:00:00 You're telling people jokes for days and weeks after. There's not a single one from Matt Rife that I can remember that I think is worth retelling to anyone. There's the throuple. Oh, that wasn't even him. That was just some racist drunk woman in the bar. Yeah, kept calling me Raj
Starting point is 00:00:21 and asking if I could fix a printer. No, you offered to fix a printer in fairness. I didn't know such thing. I don't even know how to fix a printer. Hello, hello, hello. Good morning, good afternoon, good evening from wherever you are joining us and welcome, welcome one and all to episode... 208. 204 well at least you at least you stuck to your guns this week although you know this should have been 209 but last week you pulled a sickie I did pull a sickie
Starting point is 00:01:19 you literally called in sick I did I did call. I was no I still sent the show notes out because I didn't know if you were joking or not Don't you find this interesting Andy that like a few hours later. He said like oh that Vince McMahon documentary was really good I just watched all episodes a Few hours later like like six hours later. Yeah Spent most of time in just enough time to watch six episodes of Mr McMahon interesting yeah but I'm still waiting for that episode that you said you two were gonna do I mean I hate to think of myself as the linchpin of this whole podcast but apparently so. Let me assure you you do not have to carry that burden Tom. What evidence would say otherwise?
Starting point is 00:02:14 Wow. Oh dear, so how have we been gents? Jav, how's your weeping? It's been good and actually we didn't record last week so I couldn't mention it in last week's episode so I'll mention it today. I went out and I met a fan, the fan, Will from Kent's council or something. Kent County Council. Yes, so thank you for coming up and saying that I was your favorite. He said Tom's all right. Thank you for sparing his feelings. You know, you understand how fragile
Starting point is 00:02:52 he is, so we appreciate everything you do. What did he say about me, Jeff? He said Tom's all right and he goes, I can't remember the other guy's name. Actually, actually, no joke, no joke again. Yesterday I was at an event and the stand next to me was by Eskenzi PR, their daughters, they have that Zensuri app, which is like a mindfulness wellness app. And I was talking to them and Neil was there as well, and their dad, and he was like, oh, I was just telling him I love the Host Alone stuff, and he goes, when are you doing another video? I said, I don't know, and they were like,
Starting point is 00:03:33 yeah, you do it with Tom, and like, who's the other one? And I said, you know, that is not a joke, nobody knows who he is, and then they were like, oh, I feel so bad I don't tell him that I said I'm absolutely gonna tell him that. Not only telling him that. That's when he texts me straight away right? Yeah I'm not only telling him I'm telling both our listeners as well. Yeah. Oh dear. And talking of people we don't remember, How was your week, mate? It was good. I went to go and get myself some authentic Lebanese food.
Starting point is 00:04:12 Yes, apparently so. And Jav and I are still not quite convinced or sure that you actually did fly to the Lebanon for a day? So the plan was, so my boss was out this week, she had board meetings so I was like, you know what, tier point one, cheap prices, funny enough, not one way but if you book them as a return, cheap prices, tier point one get out to Lebanon and spend the day there work out there remotely and then come back. So I booked it up on Monday or late Monday night and then you know just go out Wednesday morning leave my house three o'clock book the taxi and then late on Tuesday I
Starting point is 00:04:55 got a message my return flight had been cancelled because apparently a lot of people are trying to leave the country at the moment so it's a bit busy. But at last no I did get an alternative flight and as you can see I returned yesterday but yeah no one out got me some authentic food. Just where do you go with this? I mean I was literally sending you guys photos while I was there I don't know what you could see how hot and sunny it was you could hear the cold. That could have been Malaga! Yeah it could have been one of your previous travels we don't know. Yeah exactly exactly we we needed a copy of of Lebanon
Starting point is 00:05:35 today or whatever you know. Well I'm trying to show you my passport stamp which you're claiming you're saying where does it say Lebanon I'm saying I don't know I cannot read Arabic, but these stamps are clearly Arabic. Yes, but unfortunately, you can't conveniently photograph it enough to send to Jav to translate. I can absolutely send this, no problem. It just doesn't make sense to.
Starting point is 00:05:56 Yeah, exactly, exactly. You're saying it's faded, and it's like, well, it's the stamp that they put in the passport, what can I do about that? And anyway, why would you go to a country where your travel insurance would be invalidated well that was that was unknown that was did you not check the government website you know the travel advice they over blow everything which company do you work for by the way? What is your job?
Starting point is 00:06:31 You see it's not so much of a stretch for you know someone in my company to travel to those sort of places. Yes, on business with insurance that's valid and an escape plan that doesn't involve a cancelled flight. That's all good man. How was immigration on the way there? Absolute nightmare. You get scanned so badly. The queues to get out. I was completely misundered. It took me about an hour to get out of the airport. I was first off the plane because I was at the front. Hand baggage only. I should hope so for 24 hours. Well, it was supposed to be 12.
Starting point is 00:07:05 I should hope so for 24 hours. Well, it's supposed to be 12, but... Yeah, it took a long time to get out. Then you go through customs to get answers, all these questions like why... What the fuck are you doing here? Yeah, exactly. And then all your bags get scanned before you can leave the airport. Scanned for what? Exactly! If I've just carried a bomb all the way on the plane to get it through the airport. Maybe it's the mini alcohol bottles from the plane. They want the little mini vodkas and the little mini whiskey. Yeah, wow. But was this, did this end up being, because you said the return flight got cancelled
Starting point is 00:07:46 yes so did you get a refund I am entitled to compensation yeah and the EU because the reason it was cancelled was operational not because of air traffic control restrictions or anything so this means that turned out to be cheaper than going out for a night on Edgeware Road. Pretty much. It absolutely was. And it was safer. Like I didn't get robbed. You know, you're more likely to get robbed on Edgeware Road.
Starting point is 00:08:13 Yes, you are. But talking of robbers, I don't know if you can see it, but Tom's got a virtual background on it and he's sort of up and it's almost like he's... You know like when they play pranks in the studio to weathermen and they replace the picture behind them and you don't know what he's doing? That's kind of what's happened with Tom, like his background's completely blank
Starting point is 00:08:33 but he's clearly doing stuff that we can't see. Yeah, yeah. He caught up with John Travolta. My headphones have just announced that they're low on power so I'm like, I need to find some headphones very quickly before they run out. Dear, Mr Apple ecosystem furling him again. I know right, I know, I thought they were charged but there you go, but there you go. But yes it's been a bit of fun week, well fun couple of weeks, well what have I been doing the last couple of weeks? Well I photographed a gig, that was good
Starting point is 00:09:04 fun, got the photos out there, I photographed a gig. That was good fun. Got the photos out there. I'll have to share them. Oh no, I did share them with you, didn't I? So that was good. I'm trying to think. Well, I'm going up to London tonight to have dinner with my daughter and then see my mum. She's got a big heavy thing that I need to move, so I've got to do some lifting and shifting
Starting point is 00:09:23 for her. But that's about it, really, which is a little disappointing, I guess. But talking of disappointing, shall we see what we've got coming up for you this week? This week in InfoSec reminds us of the dawn of virus toolkits. Rant of the week is a report from the School of the Bleeding Obvious. Bleed Big Balls is the future we've been waiting for. Industry news is the latest and greatest security news stories from around the world and Tweet of the Week is two sides of the same coin. So let's move on to our favourite part of the show, it's the part of the show that
Starting point is 00:09:59 we like to call... This week in InfoSec It is that part of the show where we take a trip down InfoSec memory lane with content liberated from the TodayInInfoSec Twitter account and our first story takes us back a mere two... no, now you throw me off, takes us back a mere 23 years to the 27th of September 2001 when Jan de Wit was sentenced to 150 hours of community service in the Netherlands for creating and spreading the Anaconda Cova virus and it was one of the first major viruses created from a virus toolkit and this was the dawn of cybercrime toolkits. Although you know I think that what was that thing AOL? Remember AOL back in the night? Yeah yeah yeah. Well to me that was like a toolkit like you could play havoc with AOL users
Starting point is 00:11:04 accounts and impersonate you know mods and that sort of thing toolkit like you could play have it with AOL users accounts and impersonate You know mods and that sort of thing however, you know for the sake of history and This was the first You know sort of cyber crime toolkit that wreaked havoc across the internet. So this one the guy Wrote it and there's like a post that he made It says like, you know as I've been reading on the internet all the time
Starting point is 00:11:25 I've made this virus with the visual basic worm generator and The person who wrote this this VB generator wasn't involved in making this room and he said I've been using this program because I don't know any programming languages and He basically created this VB script stuck a picture of of Anna Kornikova on it because back then she was absolutely, you know, a celebrity desirable hook for anyone to be caught out opening these things. But yeah, it was the dawn of the cybercrime toolkits, which was a fantastic time. And for those cyber security professionals Anna Kornikova was actually also a tennis player not just the name of the virus. Yeah she retired far too early I think.
Starting point is 00:12:15 Yes, yes. Is she still with Enrique Iglesias? No, not that I don't think so but I think it came out she actually made more money from modeling than she did playing tennis No Really? Well, what can I say? Alas our second story takes us back a mere seven years to the 3rd of October Come on play the game Seven years to the 3rd of October 2017. A week after he retired as the result of Equifax's data breach, former CEO Richard F. Smith told members of Congress that one person in the technology department who failed to heed the security warnings and did not ensure the implementation of a software fix
Starting point is 00:13:09 that would have prevented the breach. Yeah, yeah. Blame the intern, that's where it came from. Yeah, well this was a permanent stuff and I think it was SolarWinds that blamed the intern for their weak password. Their CEO blamed an intern. But the I think that this was turning but community really sort of turned on
Starting point is 00:13:30 Yeah, you know the CEOs and sort of you know, if your whole process if the security of your entire organization Depends on one person applying a patch Yeah, you know, you've got bigger problems. So a multi-billion corp such as Equifax should not have, it's just not plausible. So Andy, Andy, because one person didn't do their job and the podcast didn't go out last week, does that mean we've got big problems as well? We've got huge problems over here man. So yeah so which one of you was going to edit? The corner cova virus thing I was kind of hoping Graham would be back this week.
Starting point is 00:14:20 We might actually get some real information on it. Exactly. Thank you Andy. efficient. Like and subscribe to the Host Unknown podcast for more ESG adjacent tips. Right, let's move on swiftly to... Listen up! Rent of the week. It's time to motherf***ing rage. So this is a story of, well, the real difference between causation and correlation and the difference between the two and how people actually get a little bit confused about them. So apparently, Leon Musk is complaining again since he bought Twitter really. But he has been saying that before he bought it that basically the moderation of microblogging websites such as Twitter disproportionately targeted conservatives, libertarians and Trump supporters. Which, okay, you may or may not agree with and this is one of the
Starting point is 00:15:53 drivers for Leon or Elrond or whatever his name is to buy Twitter. Although let's be very clear on here, it was a $44 billion acquisition, $44 is what it's worth now, but a $44 billion acquisition that he tried to pull out of, but then was forced to take on. And I think it's now valued at what, $9 billion, something like that, nine or 10 billion? So he's lost a massive
Starting point is 00:16:25 amount of money on it anyway so and as we know he likes to complain a lot and he's got some really weird views on free speech and all that sort of stuff so you know has he got a point though if you're constantly fact-checking like you know why are you always complaining about conservative media? well this is the thing causation or correlation is it is he correlating the fact that all of the right-wing groups and conservatives and libertarians and Trump supporters are being fact-checked, therefore they are being targeted? Or actually, is it causation? So a scientific paper has been published in the journal Nature this week, a scientific journal,
Starting point is 00:17:06 that confirms that this was the case. That actually moderators were focusing more on conservatives, libertarians and Trump supporters, but not for the reason you might think. They have been subjected to more moderation because they are more likely to share misinformation from low quality news sites so this is definitely a causation not a coloration correlation thing which I think is quite fascinating so the bottom line is if you don't want to be targeted, share decent information that is actually validated, researched and confirmed rather than sharing a bunch
Starting point is 00:17:55 of bull crap, which you know, for instance, I mean, what have we come across recently that that may... In Springfield they're eating the dogs. Yeah exactly right so it's kind of like... And the cats and the pets. And the pets they're eating them do you know that and doubling down on it when it's basically not true. So my rant here is about bloody Nolan Musk or whatever his name is. Basically, just kicking off about,
Starting point is 00:18:28 eh, stop targeting us because we're all, you know, you're just, you're not fact checking everybody else, you're just... No, the bottom line is I don't have to fact check everybody else because they're telling, well, what is ostensibly the facts or the truth or whatever you like to call it, rather than a bunch of rubbish. It's a bit like being on the WhatsApp group with you two. I tell you what, the crap I have to put up with on there sometimes. And then when I get a little bit pissy with you two, it's like,
Starting point is 00:18:59 oh no, look at bloody, you know, feminist Tom here, I think was the most recent one. So anyway That's what my rant of the week, which was if you want to stop being fact-checked Then how about telling some facts rather than fiction? Wow, you you know, you are so wrong this week I am scientifically correct it even says so scientifically correct those scientists are probably some of those round-earthers these so-called experts exactly exactly these people who think that you know fossil fuels are a thing yeah yeah I mean like if you're
Starting point is 00:19:45 on the plane does the pilot have to dip down every few miles or do they fly perfectly straight I'm just asking you the questions yeah yeah but really you say that people should go to well-research researched factual sources and don't share stuff from low quality sites that are not researched not factual not high quality well thank you you just pissed off our 80% of our listeners right here because if they wanted well researched factual good information they wouldn't be listening to to us now our sources are good what we do with the sources however what we do with that information There is a fine line there
Starting point is 00:20:33 There is and finally I've talked about fossil fuels. I saw something the other day complete tangent Did you know that plastic dinosaurs today are made of real dinosaurs? Interesting they are right Because they come from oil. That's like ice cubes are just swimming in the dead bodies of ice cubes. Just going off of another tangent, I didn't see the actual VP debate but the memes that have come out of it with the fans. The rules were you weren't gonna fact check me! Exactly, yeah.
Starting point is 00:21:10 Oh my god. Oh man, love it. And on that fact check... fact check in note... note. Rant of the week. If good security content were bottled like ketchup, this podcast would be the watery juice which comes out when you don't shake properly. In a niche of our own, you're listening to the award winning host unknown podcast. Well, Jav, you said I got that so wrong. Let's see how wrong you are in this week's. I'm never wrong. You just like, you know, you just like alternative facts. So Meta, there's been quite a lot of hype around Meta's new smart glasses which actually look quite decent they look like for a change they look
Starting point is 00:22:14 like kind of normal glasses. I have to say they do look like normal glasses partly because they're made by Ray-Bans right? Yeah yeah but unlike the Google glass it doesn't apparently have like this big little screen in the corner that sticks out. And it looks nothing like the Apple Vision Pro either, which honestly, if you weren't paying that much attention, you could pass as it being normal glasses sometimes, but okay.
Starting point is 00:22:40 But there has been a couple of students, Harvard students, who have kind of like looked through it and they've made them into InstaDocs glasses. I don't know if that's the term they're using. That's what I'm calling it. Docs with an X not a CKS. Yeah yeah it's nothing to do with containers or anything like that. No Kubernetes involved but what it does is because there's a camera in there you look up you look at somebody and it will scan their face, compare it to databases, social media,
Starting point is 00:23:26 all that kind of stuff, pull up all sort of information about them. And if you remember, there was something similar to this a few years ago in Russia where someone developed an app that they could take a picture with their phone and it would pull up all of their social media profile, their OnlyFans, all that kind of stuff. And that was creepy as hell as well because in the example they were using, they were just on the underground or
Starting point is 00:23:54 whatever taking pictures of like pretty girls and they were like, where do they live? Who are they? And everything. So this is something where it gets even more difficult to even know that this is happening when someone's wearing glasses that are very well designed that you know to on first glance they just look like normal glasses. So I think it's a ballsy move. I think there's you know what had they positioned this as a business tool and said ever been to a conference and seen someone and forgotten what their name is, now you can just look at them and pull up all their data. Do you suffer from face blindness like Andy? I mean he would be... See, I could do with that.
Starting point is 00:24:34 I could do with that. Yeah. The man who forgets his own neighbor, he has like a five minute conversation saying, oh that was a nice person and then remembering he's his neighbor of 18 years. Yes, that's right. To be fair, he's a a generic guy right. His name's John for crying out loud. Oh my god. He's an NPC yeah. Exactly. Does he keep offering side quests for you? Yeah. It's funny enough yeah. I'm not even going to go into it. Hey, hey, neighbor, how about trimming these hedges for me? Yeah, you'll get 50 gold coins for this mission. You'll get nothing but a story for your podcast. Yeah.
Starting point is 00:25:18 I love the fact you're doing the motions and everything, like people can actually see what you're doing. You're putting a lot of effort into that impression. Come on. I'm a method actor. I'm a method actor. But you know what, Jeff? I know you reference a thing that happened.
Starting point is 00:25:35 I think it was 2016 or 2017 when those Russian guys did it. And it went through Von Kante or whatever that Russian social network is. So the difference, I think think with PimEyes, because they don't go through Facebook, I think. There's something about them where PimEyes won't go through social media, and they won't look for children's profiles as well.
Starting point is 00:25:58 I mean, that's how they're sort of staying above. Oh, wow. That's how noble. But, so I was gonna say, 2016 isn't the first time we saw this. If you actually recall, we saw this and some of the older listeners will remember, I think it was like 1984 when a guy, he was a T1000 I think it was, looking for someone called Sarah Connor in the US going around Getting people's faces. He just used publicly available information as well exactly It was it was a telephone directory directory back then
Starting point is 00:26:38 We just digitized it yeah It was a t-800 it yeah anyway it was a T800, not the 1000 that was that was the the drippy one the liquidy one yeah yeah mess everywhere we went so the thing that gets me about this is here are guys doing something yeah it's always bros tech bros doing Doing something with technology that even Facebook think is a little bit dodgy. Well, I think- When you're doing something that Facebook won't touch
Starting point is 00:27:15 with a 12 foot barge pole because even they think it's a bit creepy. No, nothing is too creepy for Facebook. They're just annoyed someone other than them is doing it. They would be doing this in the background regardless. They just don't want anyone else doing it. It's true, it does say here that big tech companies have refused to release publicly. Yes, yes.
Starting point is 00:27:42 So, you know, it's quite a bit like, like you know, it's it's OSINT on steroids You just walk up to someone or you know walk past someone you put up about their name Their their address phone number and then you can start spiraling out and family members and what-have-you so It's interesting. Well the thing that gets me is if this is all publicly available information all this it does is just remove the three weeks of work in between. Yeah but now it's gonna be like police can see known associates so imagine you step outside the tube yeah and police are gonna be like actually this person's been in a photo with this known criminal we're gonna use
Starting point is 00:28:29 this as a reason to stop them reasonable grounds for suspicions so that's that's something I someone was telling me about a conference recently that they have that technology for cars where they do convoy mapping. Convoy mapping. So if someone leaves Leicester and they're driving down to Dover and they're a suspect of smuggling drugs or people or something and then the cameras start noticing a pattern that another car or several other cars are also going through the same sort of like... Are always in the same place at the same time.
Starting point is 00:29:06 Always same place, or they're taking the same route, whether they're like half hour apart or whatever, it doesn't matter, but you know, they will pull over the second car or third car as well on grounds of being in a convoy. Wow. I did it, you know, there was those bombings in Soho years ago. And I know one of them. Yeah, that's it. And there was like three in a row, wasn't there? Yes. Soho, Gryphlin as well.
Starting point is 00:29:34 Yeah, they finally caught the person. But they did that. It was one of the earliest cases of mobile phone triangulation. And I know somebody who used to work for Tough, which is the telephonic something, it's like a group that helped out on this. Used to know the guy who ran it. And he was saying, with that mobile phone triangulation,
Starting point is 00:29:56 they actually found four people who were in all three locations when the bombs went off, and one of them was the bomber. Jesus. But can you imagine if you were one of the other three? Good Jesus. That was very unlucky. Seriously bad luck, yeah.
Starting point is 00:30:13 Well, seriously bad luck and having a polite knock on the door at 3 a.m. in the morning, right? Yeah. You know, that's just because you happened to be in the wrong place at the wrong time Yeah, I'll just happen to be that's like some people who just happen to be in Countries just after a war started off because they've won a three points right now
Starting point is 00:30:41 Well, it was no there's that guy saying like, you know, he always looks for when like big events happen and then goes They like, you know, he went to New York on like September 12th because flights were dirt cheap he knew it was gonna be safe like when he goes there he had the place to himself no one else was around it's like you do these type of things man you've got a you've got a jump on that on that charming note Billy big balls of the week. People who prefer other security podcasts are statistically more likely to eject USB devices safely. For those who live life dangerously, you're in good company with the award-winning Host Unknown podcast. You know Andy's the type of person he reminds me of Will Ferrell from the movie Wedding Crashers where at
Starting point is 00:31:35 the end he's at funerals because grieving widows are such an easy target. I think you're projecting here, Geoff. No. Oh my god. Oh dear. And I'm going to say, talking of I have absolutely no idea. Andy, what time is it? It is that time of the show where we head over to our new sources over the InfoSecPA Newswire who have been very busy bringing us the latest and greatest security news from
Starting point is 00:32:04 around the globe. PWC urges boards to give CISOs a seat at the table. Cyber attacks hit over a third of English schools. European security teams are understaffed and underfunded. Industry News T-Mobile to pay $15.75 million penalty for multiple data breaches. Industry News British hacker charged in the US for $ 3.75 million inside a trading scheme. Industry News
Starting point is 00:32:50 Meta teams up with banks to target fraudsters. Industry News Fin7 gang hides malware in AI deep nude sites. Industry News Northern Ireland police data leak sees service fined by ICO. INDUSTRY NEWS Microsoft and US government disrupt Russian Star Blizzard operations. INDUSTRY NEWS
Starting point is 00:33:17 And that was this week's... INDUSTRY NEWS Wow, huge if true huge star blizzard a game I have no idea that's where they got hacked Microsoft got hacked by Russian this Russian game they nicknamed it blizzard and they stole a lot of customer data so a whole load of emails and stuff. But I'm sure Star Blizzard was a game, I don't know, ten years ago? Blizzard was a games maker. Are these sort of tech companies running out of words to use to describe gangs? It just doesn't sound fun though if you call it like, you know, APT 35, it's like, you just get bored of that stuff of that stuff no I know but it's a little easier to keep track of
Starting point is 00:34:08 yeah it's all about marketing PwC finally getting a message about giving boards us giving CISOs a seat at the board table. No PwC clearly don't don't care about CISOs you send them to the spore this This is like sending the lamb to the slaughter. It's like most of these, because if you read what ISACA say, security teams are understaffed, are underfunded. I think CISOs are woefully underprepared for that scapegoatism that is the seat at the board. The board. But then again, they're underfunded and under-restaffed etc because they don't have that seat at the board because they're they're not able to actually communicate properly. It's weird, you know what, it's so weird that a company that
Starting point is 00:34:57 makes certifications for professionals, all of their research just demonstrates there's a shortage in the industry of qualified professionals. You wouldn't catch ISC2 doing this would you? No, no, no. Any more than you catch Cane in any way. But this is like asking one of these bodies about the skills gap is like asking your barber if you need a haircut. The answer is always going to be yes Funny I've never had that problem. Yeah. Yeah. Well you could do with a little tidy up around the ears Let's see meta teams up with banks to target fraudsters. I can't believe Meta are doing that. Something actually good.
Starting point is 00:35:49 No, this is like one of those buddy cop movies. It's like 48 hours with a cop is teamed up with a convict. The banks are like, I don't work with anybody. I'm looking at the Fin7 gang hiding malware in AI deep nude sites. I mean that's just an easy one right? So these sites where people upload pictures and all generate fakes and stuff like that. Actually I'm fine with that because if you're the sort of person that creates deep fake nudes for your own sordid pleasure and or for the, you know, your amusement and or just to target someone.
Starting point is 00:36:30 You deserve everything you fucking get. Absolutely. So. Can we actually say Fin 7 are doing a public service? No, possibly. Possibly. Yeah. We're just asking questions.
Starting point is 00:36:42 Yeah, exactly. We do not endorse the actions of Fin 7. No. No. But we're not saying they're doing a bad thing either. Yeah, that's right. They're not angels, but you know, in this case they're on the side of angels. Bad people can do good things too. Exactly. Who are we to say what's a public service? service. Yeah exactly. Anything else? Lots of penalties going on which is good. I think that's it really isn't it? Yeah. Oh the ICO have fined Northern Ireland police service. Good. I thought they weren't fine in public bodies anymore. I think their one was so bad though they had to find them. 750,000 which for your average company is nothing but I'm guessing for a police force is probably quite significant.
Starting point is 00:37:35 Schools are getting hit. Cyber attacks hit over a third of English schools. In it. A third of English schools, that's not good. That is not good. That's where the criminals need to go somewhere else. Come on, not, not, you know, when somebody think of the children. Not schools, not healthcare. Well, some healthcare. Not one to impact people, you know, the big corporates that are stealing money from people in the US. Yeah, Bupa's fine, but NHS is not fine. Not that we're endorsing that. That's the views of Tom Langford and Tom Langford alone do not represent the views of host unknown podcast Javad Malik or Andrew Agnes.
Starting point is 00:38:16 For example. We're just asking questions here. Talking of questions, why don't we finish this a little bit quicker. Industry News 30% nostalgic, 30% ranty, 30% ballsy and 30% terrible at maths. You're listening to the award winning Post Unknown Podcast. Right, Andy, take us home with this week's Tweet of the Week. And we always play that one twice. Tweet of the Week.
Starting point is 00:38:55 And this week's Tweet of the Week comes from IamDeveloper. And I like this one because it reminds me of someone on this podcast. And they say, it's funny that whenever I critique someone's code it's because I'm objectively trying to improve but when I when someone critiques mine it's clearly because they hate me that could be any of us really in fairness the only person I know that loves critiquing other people's stuff on here is Andy. That font is not the same as that font. What's the matter with you? Oh man, don't get me started on fonts. We're not going down that route. Jesus. And it's not I am developer, it's I am developer.
Starting point is 00:39:38 Oh wow. I didn't even spot that. Yeah. We've had this, we've had I am developer on the podcast before, we've used them before. But I clearly didn't look at it. You thought it was a serious site. Yeah, this is just facts right? I are a developer! I do need new glasses. I'm going to be 31 next month.
Starting point is 00:40:07 Wow. I'm sure when we started this podcast I was the only one who wore glasses all the time. And now, not that you can see this, dear listener, we are all here wearing glasses like old men. Oh no! Jav's just taken his off and he's now looking in the wrong direction. Following the sound. Yeah, that's right. Anyway, that was this week's... The Tweet of the Week.
Starting point is 00:40:35 Well, gentlemen, thank you very much indeed. We sailed through that one beautifully, I think. I think we got away with it. I don't think anybody's going to get cancelled, possibly. There may be a few marriages ruined, but here we go. That's just life. So, Jav, thank you so much for your wit, wisdom, charm, charisma, and general short-sightedness. Yes, you're welcome. And Andy, thank you.
Starting point is 00:41:03 Stay secure, my friend. Stay secure. you're welcome and Andy thank you stay secure my friends stay secure you've been listening to the host unknown podcast if you enjoyed what you heard comment and subscribe if you hated it please leave your best insults on our reddit channel worst episode ever r slash smashing security there was something you did comment on r slash smashing security the other day, isn't it Tom? Yeah I did. That was when Graham uploaded the wrong episode. I mean such a schoolboy. Amateur hour! Oh my god. So I said well that would never happen on the host unknown podcast. And you got downvoted for it. I got downvoted, I can't imagine who by.
Starting point is 00:41:48 Uh, Shav. I upvoted it to bring back the clarity. Why are you looking at me? So harsh, I don't even have a Reddit account. What? Seriously? You don't have a Reddit? Oh yes you do.
Starting point is 00:42:04 He's got one of those throw our away ones? Andy's got those meta glasses he's looking at me with, he's pulling up all my data as he speaks!

There aren't comments yet for this episode. Click on any sentence in the transcript to leave a comment.