Risky Business is a weekly information security podcast featuring news and in-depth interviews with industry luminaries. Launched in February 2007, Risky Business is a must-listen digest for information security pros. With a running time of approximately 50-60 minutes, Risky Business is pacy; a security podcast without the waffle.

Risky Business #820 -- Asian fraud kingpin will face Chinese justice (pew pew!)

January 13, 2026 0:59:15 10.2 MB ( 46.7 MB less) Downloads: 0

Risky Business returns for 2026! Patrick Gray and Adam Boileau talk through the week’s cybersecurity news, including:

  • Santa brings hackers MongoDB memory leaks for Christmas
  • Vercel pays out a million bucks to improve its React2Shell WAF defences
  • 39C3 delivers; the pink Power Ranger deletes nazis, while a catgirl ruins GnuPG
  • Cambodian scam compound kingpin gets extradited to China, and we don’t think it’ll go well for him
  • Krebs picks apart the Kimwolf botnet and residential proxy networks
  • So many healthcare data leaks that we have a roundup section

This week’s episode is sponsored by Airlock Digital. The founders of the application allow-listing vendor, David Cottingham and Daniel Schell, discuss Microsoft’s ClickOnce .NET app packaging, and how attackers have been abusing it to load code. Airlock hates it when you load code!

This episode is also available on Youtube.

Show notes