Stay across the latest cyber security news , data breaches , ransomware attacks , insider threats , and digital investigations from Australia and around the world. This podcast breaks down major cyber incidents , government and corporate security failures, threat actors, and the investigations behind the headlines. Each episode delivers clear analysis of real-world cyber attacks , data leaks , government cyber incidents , critical infrastructure threats , and emerging security risks. Whether you work in cyber security, technology, government, or risk, you’ll get practical context on what happened, why it matters, and what organisations can learn. If you follow cyber security , incident response , threat intelligence , digital forensics , privacy breaches , and public sector cyber risk , this podcast gives you timely coverage, sharp commentary, and deeper insight into the stor
Pitch Analysis
Required Pod Score for this show. PitchCentric checks your profile against host openness, topical fit, and audience signals before you generate a pitch.
Contact path
Verified email
Booking probability
30%
Guest openness
Selective
Verified email on file
80/100
Required Score
Sign up to generate a grounded pitch for Cyber Investigations.
Our AI reads these to draft pitches. Use them as grounding for a pitch that cites a real guest and a specific topic.
Episode #17
How AI agents hacked into Australia
Sep 30, 202621 min
This episode dives into a series of major cybersecurity stories showing how attackers are abusing trusted platforms, edge infrastructure and autonomous AI systems in increasingly creative ways. We break down the recent OpenAI agent incident involving Australia’s Medicare statistics portal, including how an autonomous agent reportedly moved beyond normal data retrieval, accessed non-public files and wrote data to an internal server. We also look at what this says about AI agents treating security controls as technical obstacles rather than hard boundaries. Next, we unpack critical Citrix NetScaler ADC and Gateway vulnerabilities, including unauthenticated remote code execution, DTLS memory corruption, HTTP request smuggling and URL normalisation flaws affecting internet-facing enterprise infrastructure. Finally, we explain how platforms like Steam and Shopify can be abused as part of command-and-control infrastructure. Instead of connecting directly to obviously malicious domains, malware can use trusted services as dead-drop resolvers, configuration stores or redirectors to discover its next C2 server. A technical but accessible look at modern attack infrastructure, AI-driven security risks and why trusted internet services are increasingly becoming part of the attacker’s toolkit. Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
This week in cybersecurity, trusted systems are becoming the attack surface. We break down attackers chaining PaperCut vulnerabilities to achieve remote code execution, a newly released CrowdStrike Falcon privilege-escalation exploit, and a sophisticated BGP hijacking attack that redirected legitimate Internet traffic and poisoned a real software update channel. We also examine a massive campaign involving more than 5,400 compromised websites, where attackers are using blockchain smart contracts, ClickFix attacks and WebRTC to deliver malicious code and build resilient command-and-control infrastructure. Along the way, we explain the technical concepts behind Java dynamic class loading, privilege escalation, BGP routing, longest-prefix matching, RPKI, TLS certificates, code signing, blockchain-based malware delivery and WebRTC command-and-control. A technical but accessible breakdown of some of the most interesting cyber attacks and vulnerabilities making headlines this week. Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
This week, we break down four major cybersecurity stories shaping the threat landscape in Australia and around the world. We examine how the NDIA defended against the TeamPCP software supply-chain attack, including the risks hidden inside CI/CD pipelines, GitHub Actions and exposed build credentials. We look at the US Government’s push to use private cybersecurity companies in offensive operations against overseas cybercriminals, and what that means for attribution, hack-back and cyber warfare. We also dive into newly disclosed Microsoft Copilot security flaws, including prompt injection, OAuth abuse, AI agents and data exfiltration from connected services. Finally, we explore how Australia and Thailand are strengthening cooperation against cybercrime, scam centres, cryptocurrency laundering and transnational fraud. A technical but accessible breakdown of cybersecurity news, AI security, supply-chain attacks, cloud security, cybercrime, Microsoft Copilot and offensive cyber operations. Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
How intelligence agencies defend against agentic AI
Aug 16, 202614 min
This week, we go deep into four cyber security stories that reveal how attackers are exploiting speed, complexity and hidden system behaviour. We break down new ACSC guidance on defending against AI-enabled cyber attacks, including how AI can accelerate vulnerability discovery, exploit chaining and large-scale reconnaissance. Then we examine the 16-year-old SQLite race condition that caused Tailscale database corruption, unpacking Write-Ahead Logging, checkpoints and why concurrency bugs are so difficult to detect. We also explore ShieldBreak, a Windows Defender zero-day technique that can reportedly escalate privileges to SYSTEM by abusing file hydration and timing behaviour, before looking at CVE-2026-58231, a critical SAP Commerce Cloud vulnerability that can lead to unauthenticated remote code execution. Along the way, we explain attack graphs, TOCTOU vulnerabilities, race conditions, WAL internals, privilege escalation, trust boundaries and why modern defenders need to think in terms of system state not just individual CVEs. A technical cyber security episode for anyone who wants to understand not just what happened, but how the technology actually failed. Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
Microsoft Under Attack: Zero-Days & Supply Chain Chaos
Aug 12, 202620 min
This week, we break down four cyber stories that all come back to one thing: trust. Microsoft has patched 421 vulnerabilities, including a Windows kernel zero-day already exploited by North Korea’s Lazarus Group. Researchers have also found a new way to attack legacy Netlogon authentication, passkey security has come under scrutiny, and malicious LiteLLM releases have exposed just how dangerous software supply-chain compromises can become. We go beyond the headlines to explain the technical concepts behind each attack, including use-after-free vulnerabilities, kernel privilege escalation, AES-CFB8 weaknesses, meet-in-the-middle attacks, WebAuthn and synced passkeys, CI/CD compromise, mutable Git tags, Python .pth persistence, and credential theft from cloud environments. If you want to understand not just what happened, but how these attacks actually work and what defenders can learn from them, this episode is for you. Thanks for listening. Follow the podcast for more cyber security news, malware analysis, threat intelligence, AI security, and real-world attacker tradecraft. For contact or story tips, email: cyberinvestigationsau@gmail.com Disclaimer: This podcast is for education and awareness only. Technical details are shared to help defenders improve detection, response, and security controls.
Every question we get asked before someone starts their trial.
If you have a concern about deliverability, AI quality, data privacy, or whether this will actually work for your specific situation, it's probably answered below.
What is the difference between Founder Solo and Founder Pro?
Founder Solo gives you 50 AI pitches per month using the credit model (Standard pitches cost 1 credit, Enriched pitches cost 2). Founder Pro raises that to 200 credits per month and adds full Booking Probability access, unlimited Magic Match, Apollo enrichment credits, and data export capabilities. Both plans use the same credit system, so you can stretch your monthly budget further by using Standard-mode drafting.
How do agency tiers work?
Agency tiers have no base fee. You pay per managed client and per talent profile. Agency Standard is $199 per client per month; Agency Pro is $399 per client per month. Both add $39 per talent profile per month. Your own team's user seats are always free.
What is a talent profile?
A talent profile represents one person (founder, executive, or spokesperson) you are booking onto podcasts. It includes their bio, topics, headshots, and outreach history. Team plans include 5 profiles; agency plans are pay-as-you-go.
Can I switch plans later?
Yes, at any time. Upgrades take effect immediately; downgrades apply at the end of the current billing period. Contact support if you need help migrating between plan families.
Do you offer a free trial?
Every paid plan includes a 15-day free trial. Your card is saved at signup but you will not be charged until day 16. Cancel any time from your dashboard.
What happens if I cancel?
You keep access until the end of your current billing period. No charges after that. Your data is retained for 30 days in case you reactivate.
Is the 20% annual discount automatic?
Yes. Select Annual on the pricing toggle and the discounted price is applied automatically at checkout. The annual price shown is the full year cost.
What if I have more than 50 profiles or 20 clients?
That is our Enterprise tier. Contact our sales team and we will build a custom plan with volume pricing, a dedicated account manager, and SLA guarantees.