Stay across the latest cyber security news , data breaches , ransomware attacks , insider threats , and digital investigations from Australia and around the world. This podcast breaks down major cyber incidents , government and corporate security failures, threat actors, and the investigations behind the headlines. Each episode delivers clear analysis of real-world cyber attacks , data leaks , government cyber incidents , critical infrastructure threats , and emerging security risks. Whether you work in cyber security, technology, government, or risk, you’ll get practical context on what happened, why it matters, and what organisations can learn. If you follow cyber security , incident response , threat intelligence , digital forensics , privacy breaches , and public sector cyber risk , this podcast gives you timely coverage, sharp commentary, and deeper insight into the stor
Pitch Analysis
Required Pod Score for this show. PitchCentric checks your profile against host openness, topical fit, and audience signals before you generate a pitch.
Contact path
Verified email
Booking probability
29%
Guest openness
Selective
Verified email on file
80/100
Required Score
Sign up to generate a grounded pitch for Cyber Investigations.
Cyber Investigations is a technology podcast hosted by Unknown Host, with 14 episodes on record and a Required Pod Score of 80. PitchCentric scores this show on Booking Probability, Listen Score, and live audience signals refreshed every 24 hours.
About the host
Unknown Host hosts Cyber Investigations, a technology show with 14 episodes published.
Our AI reads these to draft pitches. Use them as grounding for a pitch that cites a real guest and a specific topic.
Episode #14
How intelligence agencies defend against agentic AI
Aug 16, 202614 min
This week, we go deep into four cyber security stories that reveal how attackers are exploiting speed, complexity and hidden system behaviour. We break down new ACSC guidance on defending against AI-enabled cyber attacks, including how AI can accelerate vulnerability discovery, exploit chaining and large-scale reconnaissance. Then we examine the 16-year-old SQLite race condition that caused Tailscale database corruption, unpacking Write-Ahead Logging, checkpoints and why concurrency bugs are so difficult to detect. We also explore ShieldBreak, a Windows Defender zero-day technique that can reportedly escalate privileges to SYSTEM by abusing file hydration and timing behaviour, before looking at CVE-2026-58231, a critical SAP Commerce Cloud vulnerability that can lead to unauthenticated remote code execution. Along the way, we explain attack graphs, TOCTOU vulnerabilities, race conditions, WAL internals, privilege escalation, trust boundaries and why modern defenders need to think in terms of system state not just individual CVEs. A technical cyber security episode for anyone who wants to understand not just what happened, but how the technology actually failed. Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
Microsoft Under Attack: Zero-Days & Supply Chain Chaos
Aug 12, 202620 min
This week, we break down four cyber stories that all come back to one thing: trust. Microsoft has patched 421 vulnerabilities, including a Windows kernel zero-day already exploited by North Korea’s Lazarus Group. Researchers have also found a new way to attack legacy Netlogon authentication, passkey security has come under scrutiny, and malicious LiteLLM releases have exposed just how dangerous software supply-chain compromises can become. We go beyond the headlines to explain the technical concepts behind each attack, including use-after-free vulnerabilities, kernel privilege escalation, AES-CFB8 weaknesses, meet-in-the-middle attacks, WebAuthn and synced passkeys, CI/CD compromise, mutable Git tags, Python .pth persistence, and credential theft from cloud environments. If you want to understand not just what happened, but how these attacks actually work and what defenders can learn from them, this episode is for you. Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
AI Worms, Runaway Claude and Top Gun in Space What happens when an AI assistant treats a malicious document as trusted instructions? What happens when a cybersecurity testing environment accidentally gives an autonomous model access to the real internet? In this episode, we investigate four emerging security risks reshaping software, artificial intelligence and even military operations in space. First, we examine Australia’s updated minimum requirements for a Software Bill of Materials , or SBOM. Learn how component hashes, digital signatures, SPDX, CycloneDX, transitive dependencies and Package URLs can help organisations identify vulnerable software across complex supply chains. We then break down a proof-of-concept Microsoft Copilot for Word worm that uses hidden prompt injection to manipulate documents and copy itself into new files. This attack demonstrates why large language models struggle to separate trusted instructions from untrusted content. Next, we explore how Anthropic’s Claude reached real organisations during cybersecurity evaluations. The incidents involved misconfigured internet access, exposed credentials and a dependency-confusion package downloaded by real systems. We explain sandbox isolation, egress filtering, package-manager behaviour and why AI agents must be contained by infrastructure rather than prompts. Finally, we head into orbit to examine the US Space Force’s Victus Haze mission, satellite pursuit, orbital manoeuvring and the cybersecurity risks facing software-controlled spacecraft. This is a technical cybersecurity news breakdown covering: Software supply-chain security and SBOMs Microsoft Copilot prompt injection Self-propagating AI worms Anthropic Claude cybersecurity testing Dependency-confusion attacks AI sandbox and network isolation Satellite security and orbital warfare Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
Hackers are exploiting critical vulnerabilities in WordPress, ServiceNow and SonicWall turning trusted websites, cloud platforms and VPN appliances into pathways for administrator access, remote code execution and malware deployment. In this cybersecurity news episode, we break down a WordPress exploit chain involving route confusion and SQL injection, a ServiceNow pre-authentication sandbox escape, and SonicWall SMA1000 zero-days used to gain root access and install custom Java malware. Learn how attackers abuse server-side request forgery, command injection, sandbox escapes, WebSocket tunnelling, Java instrumentation agents, webshells and memory-resident malware. We also explain why broken trust boundaries, exposed internal services and weak validation between system components create such dangerous attack paths. This technical cyber threat analysis is designed for cybersecurity professionals, students, ethical hackers and anyone studying penetration testing, vulnerability research, incident response, malware analysis, network security or cloud security. Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
Microsoft has unleashed a record-breaking Patch Tuesday covering 622 vulnerabilities, a ransomware attack has disrupted production at a Coca-Cola dairy subsidiary, and a new botnet called NadMesh is targeting exposed AI platforms and automation tools. In this episode, we break down the technical concepts behind each story, including vulnerability prioritisation, identity federation attacks, IT and operational technology dependencies, container escape techniques, insecure Model Context Protocol deployments, credential theft, persistence mechanisms and the growing harvest-now, decrypt-later threat. We also examine new Australian Signals Directorate guidance on post-quantum cryptography and explain what organisations should be asking their vendors before the 2030 migration deadline. This is a deep technical look at the hidden dependencies connecting patch management, ransomware resilience, AI infrastructure security and the coming cryptographic transition. Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
Every question we get asked before someone starts their trial.
If you have a concern about deliverability, AI quality, data privacy, or whether this will actually work for your specific situation, it's probably answered below.
What is the difference between Founder Solo and Founder Pro?
Founder Solo gives you 50 AI pitches per month using the credit model (Standard pitches cost 1 credit, Enriched pitches cost 2). Founder Pro raises that to 200 credits per month and adds full Booking Probability access, unlimited Magic Match, Apollo enrichment credits, and data export capabilities. Both plans use the same credit system, so you can stretch your monthly budget further by using Standard-mode drafting.
How do agency tiers work?
Agency tiers have no base fee. You pay per managed client and per talent profile. Agency Standard is $199 per client per month; Agency Pro is $399 per client per month. Both add $39 per talent profile per month. Your own team's user seats are always free.
What is a talent profile?
A talent profile represents one person (founder, executive, or spokesperson) you are booking onto podcasts. It includes their bio, topics, headshots, and outreach history. Team plans include 5 profiles; agency plans are pay-as-you-go.
Can I switch plans later?
Yes, at any time. Upgrades take effect immediately; downgrades apply at the end of the current billing period. Contact support if you need help migrating between plan families.
Do you offer a free trial?
Every paid plan includes a 15-day free trial. Your card is saved at signup but you will not be charged until day 16. Cancel any time from your dashboard.
What happens if I cancel?
You keep access until the end of your current billing period. No charges after that. Your data is retained for 30 days in case you reactivate.
Is the 20% annual discount automatic?
Yes. Select Annual on the pricing toggle and the discounted price is applied automatically at checkout. The annual price shown is the full year cost.
What if I have more than 50 profiles or 20 clients?
That is our Enterprise tier. Contact our sales team and we will build a custom plan with volume pricing, a dedicated account manager, and SLA guarantees.