Black Hills Information Security
チャンネル登録者数 7.16万人
585回視聴 ・ 22いいね ・ 2026/05/12
Join us LIVE on Mondays, 4:30pm EST.
A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.
/ @blackhillsinformationsecurity ( / @blackhillsinformationsecurity )
Chat with us on Discord! -
discord.gg/bhis ( discord.gg/bhis )
🔴live-chat
This episode of Talking About News focuses on the reported Canvas/Instructure breach, including discussion around ShinyHunters, transparency concerns, higher education security challenges, and possible attack paths involving phishing and tenant compromise. The team also explores broader cybersecurity trends such as social engineering, ransomware pressure tactics, and the growing role of AI and platform security in modern enterprise environments.
Chapters
00:00 - PreShow Banter™ — Californian Problems
02:25 - The Canvas / Instructure Breach – 2026-05-11
10:23 - Story # 1: Canvas Breach Disrupts Schools & Colleges Nationwide
13:45 - Story # 1b: Security Incident Update & FAQs
43:14 - Story # 2: Wazuh cluster sync path traversal in decompress_files() enables arbitrary file write and code execution from authenticated cluster peer
47:34 - Story # 3: Google Chrome silently installs a 4 GB AI model on your device without consent.
52:19 - Story # 4: Trellix source code breach claimed by RansomHouse hackers
58:12 - Story # 5: Rose Acre Farms Targeted in Alleged Lynx Ransomware Attack - Cybersecurity
Links
Story # 1: Canvas Breach Disrupts Schools & Colleges Nationwide ( krebsonsecurity.com/2026/05/canvas-breach-disrupts… )
Story # 1b: Security Incident Update & FAQs ( www.instructure.com/incident_update )
Story # 2: Wazuh cluster sync path traversal in decompress_files() enables arbitrary file write and code execution from authenticated cluster peer ( github.com/wazuh/wazuh/security/advisories/GHSA-m8… )
Story # 3: Google Chrome silently installs a 4 GB AI model on your device without consent. ( www.thatprivacyguy.com/blog/chrome-silent-nano-ins… )
Story # 4: Trellix source code breach claimed by RansomHouse hackers ( www.bleepingcomputer.com/news/security/trellix-sou… )
Story # 5: Rose Acre Farms Targeted in Alleged Lynx Ransomware Attack - Cybersecurity ( dailysecurityreview.com/cyber-security/rose-acre-f… )
Wade's Workshop: Threat Actor Profiling: Know Your Enemy ( www.antisyphontraining.com/product/workshop-threat… )
Alethe Denis' Webcast: How to Build a Bulletproof Pretext ( events.zoom.us/ev/Ak0QfH-0slzbUnzlPw33H16OpgN5Yz8A… )
Alethe Denis' Workshop: How to Build Pressure-Proof Pretexts ( www.antisyphontraining.com/product/workshop-how-to… )
🔗 Register for FREE Infosec Webcasts, Anti-casts & Summits poweredbybhis.com/ ( poweredbybhis.com/ )
Brought to you by:Black Hills Information Security www.blackhillsinfosec.com/ ( www.blackhillsinfosec.com/ )
Antisyphon Trainingwww.antisyphontraining.com/ ( www.antisyphontraining.com/ )
Active Countermeasureswww.activecountermeasures.com/ ( www.activecountermeasures.com/ )
Wild West Hackin Festwildwesthackinfest.com/ ( wildwesthackinfest.com/ )
Talkin' Bout [Infosec] News
Episode 19, Season 6
May 12, 2026
★ Episode details: share.transistor.fm/s/a6d8bc43
★ Additional episodes: bhisnews.transistor.fm/
コメント
使用したサーバー: direct
コメントを取得中...