The Awareness Angle

CISA Left Its Passwords on GitHub, Mac's Worst Malware Yet & The Verizon DBIR Breakdown

May 25, 2026·51 min
Episode Description from the Publisher

CISA left admin passwords and AWS keys on a public GitHub repo called "Private-CISA" for six months. A new macOS stealer called Reaper fakes Apple security updates to steal everything on your machine. And the 2026 Verizon DBIR lands with 22,000 breaches across 145 countries.Chapters00:00 Intro01:30 Breach Watch: 7-Eleven / ShinyHunters04:20 Breach Watch: Portugal postal service leak07:12 CISA left passwords on public GitHub12:32 Iran-linked attacks on US fuel monitors17:54 Reaper macOS stealer22:43 Discord end-to-end encryption27:01 The 2026 Verizon DBIR breakdown33:26 Newsletter and socials34:30 Security SocialsSubscribe to the newsletter at riskycreative.comFollow us on TikTok | Instagram | LinkedInListen on Spotify | Apple PodcastsOur Intro and Outro Song is 16 by Falling ForeverListen on BandcampLicensed under Creative Commons Attribution 4.0

Podzilla Summary coming soon

Sign up to get notified when the full AI-powered summary is ready.

Get Free Summaries →

Free forever for up to 3 podcasts. No credit card required.

Listen to This Episode

Get summaries like this every morning.

Free AI-powered recaps of The Awareness Angle and your other favorite podcasts, delivered to your inbox.

Get Free Summaries →

Free forever for up to 3 podcasts. No credit card required.