Risky Business is a weekly information security podcast featuring news and in-depth interviews with industry luminaries. Launched in February 2007, Risky Business is a must-listen digest for information security pros. With a running time of approximately 50-60 minutes, Risky Business is pacy; a security podcast without the waffle.

Risky Business #698 -- Why LastPass was probably DPRK*

March 08, 2023 1:00:55 58.49 MB Downloads: 0

On this week’s show Patrick Gray and Adam Boileau discuss the week’s security news, including:

  • Why the White House’s cybersecurity strategy is actually quite good
  • The LastPass breach was probably DPRK
  • UEFI bootkits are going downmarket, and this is bad
  • GitHub will scan repos for secrets
  • A look at some interesting DJI drone research
  • Much, much more

This week’s show is brought to you by Airlock Digital. Two of Airlock’s founders – Daniel Schell and David Cottingham – are this week’s sponsor guests.

Links to everything that we discussed are below and you can follow Patrick or Adam on Mastodon if that’s your thing.

* NOTE: We now think LastPass was likely not DPRK. It’s complicated and we’ll explain why we think we got this wrong in next week’s show

Show notes