Tom Uren

Author of the Seriously Risky Business cyber security newsletter (news.risky.biz/tag/seriously-r)
Podcasts with @thegrugq and @riskybusiness

Tom Uren boosted:
2025-03-22

@tomatospy @thegrugq 'why do cyber attacks have to be mean?'
It's as if The Grugq had his own Ueshiba epiphany. According to the stories, that's how he gave up fighting and created Aikido.

Interesting premise and great discussion btw

2025-03-13

@mdh @GossiTheDog @euroinfosec

Yes. That’s right, Google cloud.google.com/blog/topics/t and OpenAI cdn.openai.com/threat-intellig have said that it is being used.

These reports are both based on examining how AI models are being used.

My guess is the disconnect arises because from an incident response perspective use of AI tools is not obvious.

2025-02-24

@peterdowley I’d heard of it but haven’t listened to it, thanks for the recommendation.

2025-02-02

@geraldew Haha, definitely a tomatospy and it is uncannily like my profile picture too.

Tom Uren boosted:
2024-12-15

[Chinese] APTs Behaving Badly

"We'd describe 'acceptable behaviour' as being targeted at national security rather than economic interests, carrying out proportionate operations and avoiding unnecessary harm to third parties. Many cyber actors, including the US and allies, generally adhere to these behaviours, but others, including Chinese actors, do not." 

[...]

"Mass deployment of malware is unacceptable because it causes unnecessary collateral damage — not the done thing for a responsible state program. To make matters worse, once Sophos had cottoned on to the intrusions, Guan and his colleagues allegedly altered their malware to make it more damaging, in a kind of scorched earth policy. If victims attempted to remove the malware, it would deploy encryption from the Ragnarok ransomware variant. We have no idea why attackers would do this or what benefit they would get from torching their victims’ infrastructure.."

Via @tomatospy - news.risky.biz/fcc-to-demand-t

#cybersecurity #china #apt #malware

2024-11-04

@riskybusiness @ajsta @riskybiz @metlstorm Yes, what Pat said. I'll just add that when I write about this topic it is really a message to the tech community trying to explain how the world works and that they should think about and have plans for how to manage the issue.

2024-07-18

This week's Seriously Risky Business is out:

- China v World in cyber security reports
- US Fedgov situation normal: gaping security holes
- DoJ outs Russian social media manipulation

Listen here:
podcasts.apple.com/au/podcast/

Or read here:
news.risky.biz/china-vs-world-

Tom Uren boosted:
2024-07-05

This week's Seriously Risky Business:

- When it is good business to hack your customers
- When state actors drop turds on the way out
- Drawing a line with indictments

Listen here:
podcasts.apple.com/au/podcast/

Or read here:
news.risky.biz/when-regulation

2024-07-04

This week's Seriously Risky Business:

- When it is good business to hack your customers
- When state actors drop turds on the way out
- Drawing a line with indictments

Listen here:
podcasts.apple.com/au/podcast/

Or read here:
news.risky.biz/when-regulation

2024-05-30

The latest Seriously Risky Business is out.

I write about:
- how cyber command is like a half-ripe melon
- how scattered spider is like Hollywood
- and why TikTok's influence report is too little, too late

Listen here:
podcasts.apple.com/au/podcast/

Or read here:
news.risky.biz/tiktok-manipula

2024-05-23

This week's Seriously Risky Business.

- The UK govt to think about introducing a licensing requirement before ransomware payments
- As threats get more aggressive and coercive, agencies need to step up their game

Listen here:
podcasts.apple.com/au/podcast/

Or read here:
news.risky.biz/uk-government-t

2024-05-16

This week's Seriously Risky Business is out:

- Amnesty International flags possible spyware abuse in Indonesia
- Hospitals fight back against punishing cybersecurity regulations

listen here:
podcasts.apple.com/au/podcast/

or read here:
news.risky.biz/amnesty-flags-p

2024-05-09

This week's Seriously Risky Business:

- How Microsoft has made security the new black
- Ransomware kingping outed and friendless
- Digging deeper into the Change Healthcare disaster

listen here:
podcasts.apple.com/au/podcast/

Or read here:
news.risky.biz/microsoft-makes

2024-05-02

This week's Seriously Risky Business:

- The FTC is the tip of the spear
- Security is top priority for Microsoft, immediately behind after AI, cloud, and Teams...
- First drones, then cars

Listen here:
podcasts.apple.com/au/podcast/

Or read here:
news.risky.biz/ftc-is-the-tip-

Tom Uren boosted:

Socket CEO @feross recently joined @tomatospy on the Risky Business podcast where they discussed changes that made the OSS ecosystem more vulnerable, including the rise of small packages, the zero-cost dependency mentality, and shifts in maintainership. socket.dev/blog/risky-biz-podc

2024-04-25

This week's Seriously Risky Business:
- UK leads in cybercrime money laundering!?
- Sandworm an inspiration for hostile actors
- When police hack the hackers

Listen here:
podcasts.apple.com/au/podcast/

Read here:
news.risky.biz/sandworm-an-ins

Tom Uren boosted:
Neil Craigtdp_org
2024-04-18

@tomatospy isn't pulling any punches (and is absolutely correct, IMO) on today's Risky Biz newsletter.

news.risky.biz/corporate-freel

Corporate Freeloading Makes Open Source Vulnerable
2024-04-18

This week's Seriously Risky Business is out:

- Why the compromise of open source projects is inevitable
- Sisense loses a bucket-load of keys
- Microsoft dependency a strategic risk

Listen here:
podcasts.apple.com/au/podcast/

Read here:
news.risky.biz/corporate-freel

The 'vulnerability' that makes open source software susceptible to these sorts of social engineering attacks is baked into its 'business model' of internet strangers collaborating to achieve a common goal.

Malicious actors don't dupe their way into positions of responsibility within projects — they earn these positions of trust by behaving like good open source citizens, contributing code and doing real work.
2024-04-11

This week's Seriously Risky Business:
- When honeypots violate norms
- The Big Tech bogeyman in privacy reform
- When vendors wash their hands of security

Listen here:
podcasts.apple.com/au/podcast/

Or read here:
news.risky.biz/norms-what-norm

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst