Threatopia

Today’s Threatopia briefing spans supply chain compromise in npm and Android firmware, MFA-bypassing phishing kits, DNS-delivered PowerShell malware, AI assistants abused as covert command channels, and an actively exploited Dell zero-day tied to a suspected Chinese espionage group.

We’re also looking at 600,000 leaked retail customer records, critical VoIP and Windows privilege escalation flaws, record-high ICS vulnerabilities, and a global cybercrime crackdown that led to 651 arrests.

The common thread? Identity abuse, trusted platform compromise, and attackers hiding inside legitimate infrastructure.

Let’s break it down.
★ Support this podcast on Patreon ★

Creators and Guests

Host
Mike Kramer
Technology leader, cybersecurity advisor, and entrepreneur, based in the western suburbs of Chicago. My passion is helping people and businesses grow by making technology simpler, safer, and more effective, while also sharing ideas around personal growth. Outside of work, I’m a husband, musician, and lifelong learner who enjoys cars, animals, and low-carb living. I believe life should be built with intention, and yes… pizza, tacos, and Reese’s still test that philosophy.

What is Threatopia?

Cybersecurity News, Topics, Tech, and More. Join Mike Kramer on his Cybersecurity podcast, sharing knowledge and experience from his extensive 20+ year career in cybersecurity to help others stay up to date on breaches plus learn, improve, and advance their careers in cybersecurity and make the world a safer place. Topics include: Attacks, SIEM, Splunk, Cybersecurity Certifications like CISSP, concepts, tips, hardware, software, and news. DM him @kramernow on IG and other platforms to submit topics.