
The Awareness Angle: Cyber Security Awareness and Human Risk
May 5, 2026 · 1 hr 7 min · 18 segments
This week on The Awareness Angle, we hit 1.2 million views on a single video across TikTok and Instagram, which is pretty wild for an independent podcast. Thank you to everyone who watched and shared…
No entities detected.
So home security giant ADT has confirmed yet another breach.
Um, ShinyHunters listed the company on their dark web leak site with a pay or leak ultimatum.
Is that not every company's worst nightmare? Like, ShinyHunters, oh, we've been mentioned.
Where have we been mentioned? ShinyHunters leak site.
Oh, no. ADT says it detected unauthorized access on April the 20th, shut it down, and launched an investigation with third-party experts and law enforcement.
The stolen data includes names, phone numbers, addresses, dates of birth, and partial Social Security numbers exposed in a smaller number of cases.
So they say that no payment information was accessed and customers' security systems weren't affected.
So if you have an ADT security system, you're okay.
Don't worry.
Your data's not, but your system's fine.
So, um, and this is, this is the interesting part for us.
ShinyHunters say they got in through a vishing call, voice phishing, that tricked an employee into giving up their Okta single sign-on credentials, which then gave the attackers access to ADT's Salesforce and millions of customer records.
So there was no malware, no technical exploit, just bling bling, "Hi," ba, ba, ba, ba, ba, ba, ba.
Just a convincing phone call and one single set of credentials that opened the door wide open.
So ShinyHunters have been...
We know, we talk about this all the time.
This is their playbook.
This is their modus operandi.
They do this all the time.
They did MGM casinos this way, and it's rumored that Essen Co-op and most of the breaches that happened over the last 12, 24 months were done this way, so.
Scary is that what's worse is it's ADT's third disclosed breach in under 12 months.
Two, two incidents.
Well, actually, over a year.
There are two incidents, August and October, uh, I think 24.
So home security giant ADT has confirmed yet another breach.
Um, ShinyHunters listed the company on their dark web leak site with a pay or leak ultimatum.
Is that not every company's worst nightmare? Like, ShinyHunters, oh, we've been mentioned.
Where have we been mentioned? ShinyHunters leak site.
Oh, no. ADT says it detected unauthorized access on April the 20th, shut it down, and launched an investigation with third-party experts and law enforcement.
The stolen data includes names, phone numbers, addresses, dates of birth, and partial Social Security numbers exposed in a smaller number of cases.
So they say that no payment information was accessed and customers' security systems weren't affected.
So if you have an ADT security system, you're okay.
Don't worry.
Your data's not, but your system's fine.
So, um, and this is, this is the interesting part for us.
ShinyHunters say they got in through a vishing call, voice phishing, that tricked an employee into giving up their Okta single sign-on credentials, which then gave the attackers access to ADT's Salesforce and millions of customer records.
So there was no malware, no technical exploit, just bling bling, "Hi," ba, ba, ba, ba, ba, ba, ba.
Just a convincing phone call and one single set of credentials that opened the door wide open.
So ShinyHunters have been...
We know, we talk about this all the time.
This is their playbook.
This is their modus operandi.
They do this all the time.
They did MGM casinos this way, and it's rumored that Essen Co-op and most of the breaches that happened over the last 12, 24 months were done this way, so.
Scary is that what's worse is it's ADT's third disclosed breach in under 12 months.
Two, two incidents.
Well, actually, over a year.
There are two incidents, August and October, uh, I think 24.
The rest of this transcript — segmented and speaker-labeled, so you land on the exact moment something was said
Search every transcript — by keyword, by phrase, or by meaning, across every show Radar indexes
Trends — what is surging across podcasts, measured against its own baseline
Alerts — when a name you follow appears in a newly indexed episode
No account is needed to search Radar.