Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Microsoft' Digital Defense Report - The 443 Podcast - Episode 390

This week on the podcast, we cover a few takeaways from Microsoft's recent Digital Defense Report. Before that, we discuss the recent Citrix Netscaler zero-days that were potentially under active exploit for weeks before disclosure before reviewing an interesting a bug bounty report on a Microsoft internal tool that was exposed externally.

Oops, OpenAI Hacked Australia's Health System

30,000+ devices compromised. 7,000+ crypto wallets targeted. Roughly $10M stolen. And that’s only one story. This week on The 443: Security Simplified, Marc Laliberte and Corey Nachreiner unpack a new wave of security incidents where identity, access, and AI collide. They cover: WaterPlum activity spanning 100+ countries More than 7,000 cryptocurrency wallets impacted, worth roughly $10M ShinyHunters’ claimed theft of 3 TB of FBI-related data An AI agent reportedly accessing Australian government health data beyond its intended permissions.

Oops, OpenAI Hacked Australia's Health System - The 443 Podcast - Episode 389

This week on the podcast, we cover yet another rogue AI security incident that Australia's Prime Minister disclosed in front of the United Nations last week. Before that, we discuss an FBI alert on WaterPlum, a North Korean threat actor targeting IT professionals. Then, we cover the FBI themselves becoming a victim of cyberattack, this time by ShinyHunters.

Provider to Advisor: The MSP Shift Toward Risk Leadership | WatchGuard Webinar

Most MSP client reviews cover what got installed. The endpoint agent was deployed, the firewall rules were tuned, and the tickets were closed inside the SLA. Meanwhile, boards, insurers, and auditors are asking for something more: a clear account of the business's current security and compliance risks. The partner who can provide that answer earns client trust and increases credibility.

One Image to Root Them All - The 443 Podcast - Episode 388

This week on the podcast, we break down how a heap overflow in an image-decoding library nobody thinks about became a pull request inside OpenAI's internal monorepo. Three researchers chained it with an OpenAI single sign-on flaw to hijack employee ChatGPT and Codex accounts in under 72 hours; and had an AI write the exploit for them. Before that, we cover the actively exploited maximum-severity authentication bypass in Cisco's Identity Services Engine. Then we close with RatHat, a new Android malware that enables Wireless Debugging, reads its own pairing code from the screen, and asks a commercial AI assistant where to tap.

Unlock MSP Growth: How AI Drives Operational Efficiency and New Revenue | WatchGuard Webinar

Artificial intelligence is no longer a future consideration for MSPs because it is already reshaping how leading providers run their businesses, protect their clients, and create new revenue streams. Separating real business value from hype requires a clear-eyed, practitioner-driven perspective.

Skynet Comes Online - The 443 Podcast - Episode 386

This week, dive into OpenAI's and METR's analysis of the rogue OpenAI agents that hacked Hugging Face back in July. We go over the full attack timeline discussing the multiple message boards the agents created and the ultimate goal of their attack against Hugging Face and trust us, its as crazy as it gets. Before that, we discuss a recent dark web service that popped up selling 153 million stolen drivers licenses before discussing a research post into a malware implant discovered in inexpensive Chinese routers.

5 AI Prompts Every MSP Should Know | WatchGuard Webinar

AI should do more than generate answers. It should help MSPs make better decisions. Many MSPs are experimenting with AI, but isolated tools and generic prompts often create more noise than value. Without the right questions, workflows, and operational foundation, AI can become another disconnected technology to manage rather than a meaningful driver of security and growth. This webinar explores five practical AI prompts every MSP should know, and how to apply them across security, service delivery, operations, and business strategy.