Episode Details
Back to Episodes
CISA Left Its Passwords on GitHub, Mac's Worst Malware Yet & The Verizon DBIR Breakdown
Description
CISA left admin passwords and AWS keys on a public GitHub repo called "Private-CISA" for six months. A new macOS stealer called Reaper fakes Apple security updates to steal everything on your machine. And the 2026 Verizon DBIR lands with 22,000 breaches across 145 countries.
Chapters
00:00 Intro
01:30 Breach Watch: 7-Eleven / ShinyHunters
04:20 Breach Watch: Portugal postal service leak
07:12 CISA left passwords on public GitHub
12:32 Iran-linked attacks on US fuel monitors
17:54 Reaper macOS stealer
22:43 Discord end-to-end encryption
27:01 The 2026 Verizon DBIR breakdown
33:26 Newsletter and socials
34:30 Security Socials
Subscribe to the newsletter at riskycreative.com
Follow us on TikTok | Instagram | LinkedIn
Listen on Spotify | Apple Podcasts
Our Intro and Outro Song is 16 by Falling Forever
Listen on Bandcamp
Licensed under Creative Commons Attribution 4.0