black hat
Black Hat Fireside Chat: API sprawl turns SMBs into prime targets — simple flaws invite breaches
Cyber attackers don’t always need sophisticated exploits. Too often, they succeed by exploiting the basics. Related: 51 common SMB cyberattacks That’s the warning from Chris Wallis, founder and CEO of London-based Intruder, ...
The Tea App Hack: How a “Safe” Space Leaked 13,000 ID Photos & 1.1M Messages
Tom Eston | | Age Verification, AI Coding, App Development, app vulnerability, app-security, black hat, Cyber Security, cyber threat, Cybersecurity, Data breach, Data Privacy, Dating Apps, Digital Privacy, Episodes, exposed database, Firebase, Government ID, ID Photo Leak, Information Security, Infosec, las vegas, Lawsuits, odcast, Podcasts, Privacy, Privacy Nightmare, Private Messages, Safe Space, security, security best practices, security flaw, Tea App Hack, technology, Third Party Risk, User Images, Weekly Edition
In this episode we’re discussing the alarming breach of the Tea app, a platform intended for women to share dating experiences. The hack resulted in the exposure of over 13,000 government ID ...
Black Hat Fireside Chat: Automation takes center stage as TLS lifespans grow ever shorter
The countdown is on for security teams still managing digital certificates with spreadsheets and manual workarounds. Related: Preparing for the quantum future Starting in 2026, TLS certificate lifespans will begin dropping sharply ...
MY TAKE: Black Hat 2025 vendors define early contours for a hard pivot to AI security architecture
Black Hat USA 2025 concluded amid a noticeable shift in tone. Compared to prior years, the discussions were more grounded, and the stakes more clearly defined. Related: GenAI security gaps few see ...
Securing the AI Era: Sonatype Safeguards Open Source Software Supply Chains
John D. Boyle | | AI, AI software security, black hat, BlackHatUSA2025, DevSecOps, Log4j, MLOps security, open source, risk management Secure software development, SCA, sdlc, Securing open source, Software Composition Analysis, software supply chain security, Sonatype, SSSC
Open source drives modern software—but with innovation comes risk. Learn how Sonatype secures the software supply chain to enable safer, faster delivery ...
Security Boulevard
Black Hat Fireside Chat: Inside the ‘Mind of a Hacker’ — A10’s plan for unified threat detection
In today’s threat landscape, attackers are no longer just exploiting technical flaws — they’re exploiting business logic. Think gaps in workflows, permissions, and overlooked assumptions in how applications behave. This subtle shift ...
Leaked, Patched, and Still Hacked: The SharePoint Zero-Day Crisis
Tom Eston | | black hat, Cloud Security, Cyber Security, cyber threat, Cybersecurity, Data breach, Data Privacy, defcon, Digital Privacy, Episodes, Espionage, government, Information Security, Infosec, MAPP, Microsoft, patch, Penetration Testing, Permissions, Podcast, Podcasts, Privacy, Ransomware, security, Security Conference, sharepoint, technology, US Agencies, Vegas, vulnerability, Weekly Edition, zero-day
This week we explore the recent Microsoft SharePoint vulnerability that has led to widespread exploitation by ransomware gangs and Chinese State-sponsored hackers. We also cover the confirmed compromise of multiple US agencies, ...
Doorbells, Dystopia, and Digital Rights: The Ring Surveillance Debate
Tom Eston | | Amazon Ring, black hat, blackberry, Civil Liberties, Customer Service, Cyber Security, cyber threat, Cybersecurity, Data breach, Data Privacy, Digital Privacy, Digital Rights, Doorbell Cameras, EFF, Episodes, Hacking, Information Security, Infosec, law enforcement, Old Tech, Podcast, Podcasts, Police Access, Privacy, Ring, security, smart home, surveillance, technology, UI Glitch, Viral Panic, Weekly Edition
In this episode, we examine Amazon’s Ring doorbell camera amid rising privacy concerns and policy changes. The Electronic Frontier Foundation’s recent report criticizes Ring’s AI-first approach and the rollback of prior privacy ...
The Google Workspace Security Gap: Why Traditional Tools Fall Short
Tom Eston | | API security, black hat, CISO, Cloud Security, Cyber Security, cyber threat, Cybersecurity, Data Privacy, data protection, DEF CON, Digital Privacy, DLP Services, email security, Endpoint security, Episodes, Google Workspace, incident management, Information Security, Infosec, it infrastructure, IT Security, Material Security, MFA, OAuth Apps, Podcast, Podcasts, posture management, Privacy, Rajan Kapoor, SaaS Security, security, security best practices, Security Gaps, Security Teams, Security Tools, technology, The Google Workspace Security Gap, threat detection, vendor consolidation, Weekly Edition
In this episode, we discuss the often overlooked security issues within Google Workspace. Rajan Kapoor, Field CISO at Material Security, joins us to talk about how Material Security is redefining the protection ...
6 Most Mind-Bending Hacks From Past Black Hat Conferences
Alex MacLachlan | | Autonomous SOC, black hat, Black Hat 2025, Black Hat USA, Cybersecurity, events, Hacking, Morpheus AI
Six legendary Black Hat hacks, from ATM jackpotting to Tesla takeovers, and how they forced entire industries to rethink security protocols. The post 6 Most Mind-Bending Hacks From Past Black Hat Conferences ...

