Skip to main content
Phishing

Phishing

Search complete. 37 mentions across 11 episodes found for "Phishing".

Sep 11, 2026

Doug JonesHOST
23:29
They don't want to frighten people.
Doug JonesHOST
23:31
Health systems warn patients of MyChart phishing scam.
Doug JonesHOST
23:36
Phishing being spelled P-H-I-S-H-I-N-G. Epic's head of research.
Doug JonesHOST
23:43
I don't know what Epic is.
Doug JonesHOST
23:44
Randy probably knows.
Doug JonesHOST
23:45
He's a security expert.
Doug JonesHOST
23:48
I will tell you that.
Doug JonesHOST
23:49
Epic's head of research and development says that the uptick in phishing, P-H-I-S-H-I-N-G, phishing attempts are just scammers taking advantage of the MyChart brand website.
Maria VarmazisHOST
0:05
[upbeat music]
Dave BittnerHOST
0:15
Hello, everyone, and welcome to the Hacking Humans podcast, where each week we look behind the social engineering scams, phishing schemes, and criminal exploits that are making headlines and taking a heavy toll on organizations around the world.
Dave BittnerHOST
0:26
I'm Dave Bittner, and joining me is Joe Carrigan.
Dave BittnerHOST
0:29
Hey there, Joe.

45 MINS LATER

Dave BittnerHOST
45:32
If there's something you'd like us to consider for the show, please email us.
Dave BittnerHOST
45:36
It's hackinghumans@n2k.com. Joe, Maria, it is time for our Catch of the Day.
Joe CarriganHOST
45:51
Dave, our Catch of the Day comes from the r/phishing, P-H-I, phishing.
Joe CarriganHOST
45:57
Uh, this title of this post is Clicked on a Phishing Link from Calendly.
Matt BromleyHOST
8:21
Yeah.
Christopher LuftHOST
8:22
All right, next up, Huntress researchers documented a phishing campaign targeting cybersecurity professionals after Black Hat and DEF CON.
Christopher LuftHOST
8:30
A threat actor contacted a Huntress researcher on X while impersonating a Coindesk executive and claiming to be organizing an upcoming conference.
Christopher LuftHOST
8:39
The researcher recognized the scam but continued engaging with the attacker to study the operation.
Matt BromleyHOST
10:38
And yeah, it's interesting for sure.
Matt BromleyHOST
10:41
But in this case right here, Chris, I'm in the exact same boat with you.
Matt BromleyHOST
10:43
I read this and the first time I had a double take on this, I felt like what I was reading is that someone was was phishing using like DEF CON lures and stuff like that.
Matt BromleyHOST
10:58
And I think it was kind of like that, but it was more about like a fake security to get people to open documents and everything like that.
Craig TaylorGUEST
2:40
Now, there's 19 claims around all of that that have been granted as well.
Craig TaylorGUEST
2:45
And it's what I believe to be a disruptive force in the cyber literacy arena of human behavior and trying to get employees to understand and learn the common sense and the modicum of inside knowledge around how fishing works in order to prevent breaches from happening and to show that it works over a longer period of time, right? You've heard that old phrase, feed a human a fish, F-I-S-H, you feed them for today.
Craig TaylorGUEST
3:26
They're not hungry today.
Craig TaylorGUEST
3:27
But if you teach them how to fish...

6 MINS LATER

Craig TaylorGUEST
9:46
So that's, again, a level up on Bloom's taxonomy of learning.
Craig TaylorGUEST
9:51
And so if you want to learn something.
Craig TaylorGUEST
9:53
How are you going to bring that to the world of fishing
Manoj TandonHOST
9:55
then?
Craig TaylorGUEST
30:47
So I say, if you want people to actually understand and reference your governance policies, you need to keep them TLDR'd, short.
Craig TaylorGUEST
30:57
In other words, your password policy, it needs to be only the password policy, and it needs to be one or two pages of instruction.
Craig TaylorGUEST
31:06
You can have a table of contents, or you can have You know, the revision and approval controls in there, that's all good stuff.
Craig TaylorGUEST
31:14
But people can ignore and skip all that.
Craig TaylorGUEST
31:16
They just need to read the 30 bullet points on password hygiene that they have to follow or 15 to 20, whatever you can boil it down to.
Craig TaylorGUEST
31:24
But it needs to be short.
Craig TaylorGUEST
31:25
And then you need to reward people for engagement with that and compliance to it.
Craig TaylorGUEST
31:30
So, for example, password policy might say you must adopt the company password manager.
MattGUEST
10:05
So they're the UK's home for reporting cybercrime and fraud.
MattGUEST
10:11
If you receive a suspected scam email as well, you can always verify that by emailing report at phishing.gov.uk. And that reports it to the National Cyber Security Centre.
MattGUEST
10:29
So they're two options for you.
SianHOST
10:31
Wow, that's great advice.
TCHOST
8:45
But no matter, I'm gonna turn this into a cautionary tale about phishing.
TCHOST
8:48
And I don't mean F-I-S-H-I-N-G.
TCHOST
8:52
I mean P-H-I-S-H-I-N-G, phishing.
TCHOST
8:57
This is a crazy story because it's a constant theme of conversation with my parents about scams, and phishing, and texts, and emails, and never hit links, and never give information over the phone, and if something texts you, just ignore it.
TCHOST
9:13
You don't have to reply to things.
Bart PfankuchGUEST
6:46
Well, I was on the phone with Mike Waldner, who runs the two big state programs out of DSU, and I've got some fake phishing email, uh, a text message, um, and an email from Monument Health, my local healthcare provider.
Bart PfankuchGUEST
7:00
It had nothing to do with Monument Health.
Bart PfankuchGUEST
7:01
So I was phished, uh, P-H-I-S-H, phishing.
Bart PfankuchGUEST
7:05
They're going out and phishing for, for people to, uh, uh, hack, while I was on the phone with the expert.
Bart PfankuchGUEST
7:11
And I, and, uh, I thought that that was classic because that just showed how, uh, prevalent this is.
Matt IwanykHOST
52:21
They screwed that name up.
Matt IwanykHOST
52:23
The person, like, so you have to put the phishing email at the bottom.
speaker_3UNKNOWN
52:25
Oh, okay.
speaker_3UNKNOWN
52:25
Fish.
speaker_3UNKNOWN
52:33
Yes.
speaker_3UNKNOWN
52:34
[laughs] That's a, yes.
Matt IwanykHOST
52:34
I'm starting to send phishing email scans-
speaker_3UNKNOWN
52:36
Yeah

1 more episode mentions Phishing.

Create an account to see the whole feed, search across every transcript, and follow the entities you care about.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.