Massive Python Supply Chain Hack, $2.1B Scam Losses, North Korea Targets Crypto Execs

Massive Python Supply Chain Hack, $2.1B Scam Losses, North Korea Targets Crypto Execs

Author: Jim Love April 29, 2026 Duration: 12:13

A major open source Python tool was hijacked in a supply chain attack, exposing developer credentials, cloud secrets, and crypto wallets. Meanwhile, the FTC says Americans lost more than $2.1 billion to scams that began on social media, with Facebook leading reported losses.

Cybersecurity Today thanks Meter for supporting this podcast. Meter delivers a complete networking stack — wired, wireless, and cellular — in one integrated solution built for performance and scale. Learn more at Meter.com/cst.

Also in today's Cyber Security Today:

Brazilian hackers return with fake Minecraft cheat downloads carrying credential-stealing malware
A new ransomware strain destroys victim files so badly even paying the ransom may not help
North Korean threat actors target crypto executives using fake Zoom and Teams meetings powered by AI deception tactics

If you work in IT, cybersecurity, finance, or simply want to stay safe online, this episode breaks down what matters and what to watch next.

Stories covered in this episode are based on reporting summarized in the show transcript.

 

#cybersecurity #ransomware #scams #python #hacking #northkorea #cryptocurrency #malware #technews


Every morning, Jim Love sifts through the noise of the digital world to bring you a clear, concise briefing on what actually matters. Cybersecurity Today isn't about fearmongering; it's about practical awareness. You'll hear straightforward analysis of the most recent attacks targeting companies, from sophisticated ransomware campaigns to stealthy data theft. Jim breaks down the implications of major breach disclosures, explaining not just what was stolen, but how it happened and who is affected. The focus remains on actionable intelligence-concrete steps and strategic thinking that can help protect your organization's data and infrastructure. This daily podcast serves as an essential filter for IT professionals, business leaders, and anyone responsible for digital assets, transforming complex threats into understandable insights. Tune in for a grounded perspective on navigating an online landscape where the risks are constantly evolving, and the need for clear, timely information has never been greater.
Author: Language: English Episodes: 100

Cybersecurity Today
Podcast Episodes
Connected Cars Are Rolling Spy Networks — And They Can Be Hacked [not-audio_url] [/not-audio_url]

Duration: 44:51
Connected cars are no longer just vehicles — they are rolling networks of sensors, cameras, microphones, and constant data transmission. In this Cybersecurity Today Weekend Edition, David Shipley is joined by former CSIS…
WhatsApp Encryption Under Fire After Probe Shut Down [not-audio_url] [/not-audio_url]

Duration: 10:06
A U.S. federal investigation into WhatsApp encryption was shut down before reaching a conclusion — after an internal claim suggested Meta systems may access message content in ways that conflict with public descriptions.…
Cyber Weapon in Toronto, Grid Attack, Stuxnet Lie Exposed [not-audio_url] [/not-audio_url]

Duration: 15:46
A rogue cyber weapon drove through Toronto blasting scam texts to thousands of phones. A major U.S. critical infrastructure provider confirms a cyberattack. And researchers reveal that Stuxnet may not have been the first…
Inside The Vercel Supply Chain Exploit [not-audio_url] [/not-audio_url]

Duration: 17:39
Inside the Vercel Breach: Highlighting OAuth Token Risk In a special edition of Cybersecurity Today, host Jim Love and guest Jamie Blasco (CTO, Nudge Security) discuss Vercel, a major developer hosting platform, and a br…
Vercel Breach Started With AI Tool [not-audio_url] [/not-audio_url]

Duration: 10:42
Vercel Supply-Chain Breach via AI Tool, Meta Sued Over Scam Ads, and Ransomware Surges with "The Gentleman" David Shipley covers new details on the Vercel breach, which began when an employee used the third-party AI tool…
Security Researcher Goes To War Against Microsoft [not-audio_url] [/not-audio_url]

Duration: 20:47
Microsoft Under Fire, NIST Scales Back NVD, FortiSandbox Critical Bugs, Vercel Breach Claims, Scattered Spider Member Pleads Guilty Host David Shipley covers five major stories: researcher "Chaotic Eclipse" publicly rele…
Cybersecurity Today Month in Review of March/April 2026 [not-audio_url] [/not-audio_url]

Duration: 1:02:21
Cybersecurity Today Month-in-Review: RSAC AI Hype, Agentic Risks, Mythos Claims, and Real-World Resilience Jim Love hosts a delayed March month-in-review with panelists David Shipley and Laura Payne, starting with RSAC t…