Zum Hauptinhalt springen
••••••••
Sichere ProgrammierungVeyd: one place to research, learn, and build across domains(03.10.2026 um 22:52 Uhr)
••••••••••
Sichere ProgrammierungVeyd: one place to research, learn, and build across domains(03.10.2026 um 22:52 Uhr)
••
Intelligence View
⚡ tsecurity.de Intelligence

Black Hills Information Security: BHIS - Talkin' Bout [infosec] News 2026-09-28

Video von Black Hills Information Security auf YouTube: Join us LIVE on Mondays, 4:30pm EST. A weekly Podcast with BHIS and Friends. We discuss notable…

HD Video
BHIS - Talkin' Bout [infosec] News 2026-09-28
Video abspielen
Beitrag
0
Seite
0
↗ Quelle (Black Hills Information Security)
Social ReaktionenReagiere als Erste:r — dein Feedback zählt!

YouTube Video

Join us LIVE on Mondays, 4:30pm EST.

A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.

https://bhisnews.transistor.fm



Chat with us on Discord! -

https://discord.gg/bhis

🔴live-chat



🔗 Register for FREE webcasts, summits, and workshops -

https://poweredbybhis.com





This week, the BHIS crew starts with an Nvidia-branded trailer stolen for its presumed GPUs—only to turn out to be full of sand. They then examine reports of OpenAI agents accessing Australian and U.S. government sites, the unanswered questions about what happened, and Nvidia’s proposed agent safety framework. The conversation moves to the EvilTokens phishing service takedown, recent vulnerability patches, and prompt injection attacks against AI agents handling Salesforce contact forms. The episode closes with a reported F-35 component shipment rerouted to China and concerns about cyber incidents affecting ships and maritime systems.





00:00:00 - Stream Start

00:00:15 - PreShow Banter™ — Doing Bulldozer Stuff

00:08:50 - 2026-09-28

00:12:05 - Nvidia-branded trailer stolen—and found full of sand

00:14:55 - OpenAI agents access Australian and U.S. government sites

00:30:44 - Nvidia’s OpenShell agent safety framework

00:36:55 - EvilTokens phishing service disrupted

00:46:05 - Citrix, WordPress, F5, and Roundcube vulnerability roundup

00:47:16 - Prompt injection through Salesforce web-to-lead forms

00:52:34 - F-35 components reportedly rerouted to China

00:55:09 - LNG tanker incident and maritime OT security

00:59:41 - Wild West Hackin’ Fest Deadwood and upcoming classes

01:00:49 - Offense for Defense and penetration testing classes

01:01:36 - Android pentesting and satellite security classes

01:03:15 - DEATHCon: detection engineering and threat hunting





Brought to you by:

Black Hills Information Security

https://www.blackhillsinfosec.com



Antisyphon Training

https://www.antisyphontraining.com/



Active Countermeasures

https://www.activecountermeasures.com



Wild West Hackin Fest

https://wildwesthackinfest.com





#livestream #infosec #news #BHIS #podcast #Cybersecurity #infosecnews
🔍 CTI & Forensik

Cyber Threat Intelligence & Forensik

ATT&CK-Navigator · IoC-Radar · Exploit-Belege
MITRE ATT&CK Matrix Navigator
Enterprise-Matrix · nur belegte Techniken
14 Taktiken
1 belegte Technik
T1566TA0001 · Initial Access
Phishing
Mitigation: M1054 User Training & Email Gateway Filtering
Quelle: Kontext-Klassifikation des Artikeltextes
Reconnaissance
Resource Development
Initial Access
Execution
Persistence
Privilege Escalation
Defense Evasion
Credential Access
Discovery
Lateral Movement
Collection
Command and Control
Exfiltration
Impact
CTI Threat Relationship Graph
Akteure · Techniken · Beziehungen
5 Knoten · 4 Relationen
CVE / Incident Threat Actor Software MITRE ATT&CK CWE Weakness IoC
Zum Aktualisieren ziehen
Nächster Beitrag