<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:podcast="https://podcastindex.org/namespace/1.0">
<channel>
  <title>Decrypted: The UK Cyber Briefing</title>
  <podcast:guid>7e01b47e-3aaf-50c8-8c1d-ced75a23a9e2</podcast:guid>
  <itunes:subtitle>A four minute UK cyber security briefing, twice a day.</itunes:subtitle>
  <link>https://www.d4vinder.com/decrypted/</link>
  <description>The UK cyber security story that matters today, in about four minutes. A short daily briefing on the breaches, vulnerabilities and policy that affect UK organisations, what actually went wrong, and the design decision that would have prevented it.</description>
  <language>en-gb</language>
  <copyright>Copyright 2026 Davinder Singh</copyright>
  <lastBuildDate>Tue, 15 Sep 2026 17:19:13 +0000</lastBuildDate>
  <itunes:author>Davinder Singh</itunes:author>
  <itunes:summary>The UK cyber security story that matters today, in about four minutes. A short daily briefing on the breaches, vulnerabilities and policy that affect UK organisations, what actually went wrong, and the design decision that would have prevented it.</itunes:summary>
  <itunes:type>episodic</itunes:type>
  <itunes:explicit>false</itunes:explicit>
  <itunes:image href="https://www.d4vinder.com/decrypted/podcast-cover.jpg"/>
  <itunes:category text="Technology"/>
  <itunes:owner>
    <itunes:name>Davinder Singh</itunes:name>
    <itunes:email>support@d4vinder.com</itunes:email>
  </itunes:owner>
  <item>
    <title>The Check Point VPN flaws that haven&#039;t been exploited yet</title>
    <link>https://www.d4vinder.com/decrypted/the-check-point-vpn-flaws-that-haven-t-been-exploited-yet.html</link>
    <guid isPermaLink="false">d4-decrypted-the-check-point-vpn-flaws-that-haven-t-been-exploited-yet</guid>
    <pubDate>Mon, 14 Sep 2026 17:06:24 +0000</pubDate>
    <description>Check Point patched two 9.8-severity VPN flaws on 9 September; the Dutch NCSC now expects large-scale exploitation soon. Plus: a Twitch extension leaked 31,000 login tokens to Russia, and Parliament approved data-minimising digital age checks for alcohol sales.</description>
    <itunes:summary>Check Point patched two 9.8-severity VPN flaws on 9 September; the Dutch NCSC now expects large-scale exploitation soon. Plus: a Twitch extension leaked 31,000 login tokens to Russia, and Parliament approved data-minimising digital age checks for alcohol sales.</itunes:summary>
    <content:encoded><![CDATA[<p>Check Point patched two 9.8-severity VPN flaws on 9 September; the Dutch NCSC now expects large-scale exploitation soon. Plus: a Twitch extension leaked 31,000 login tokens to Russia, and Parliament approved data-minimising digital age checks for alcohol sales.</p><p><strong>Sources</strong></p><ul><li><a href="https://www.bleepingcomputer.com/news/security/dutch-ncsc-critical-check-point-vpn-flaws-exploitation-is-imminent/">Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent</a></li><li><a href="https://securityaffairs.com/199015/security/dutch-ncsc-warns-critical-check-point-vpn-flaws-put-networks-at-risk.html">Dutch NCSC warns critical Check Point VPN flaws put networks at risk</a></li><li><a href="https://digital.nhs.uk/cyber-alerts/2026/cc-4792">Exploitation of Authentication Bypass Vulnerability in Check Point VPN</a></li><li><a href="https://thehackernews.com/2026/09/malicious-twitch-browser-extension.html">Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users</a></li><li><a href="https://enablingdigitalidentity.blog.gov.uk/2026/08/17/how-digital-verification-services-can-be-used-to-support-alcohol-purchases/">How digital verification services can be used to support alcohol purchases</a></li><li><a href="https://www.legislation.gov.uk/ukdsi/2026/9780348284980">The Licensing Act 2003 (Mandatory Licensing Conditions) (Amendment) Order 2026</a></li></ul><p><a href="https://www.d4vinder.com/decrypted/the-check-point-vpn-flaws-that-haven-t-been-exploited-yet.html">Read the written version</a></p>]]></content:encoded>
    <itunes:author>Davinder Singh</itunes:author>
    <itunes:duration>0:03:43</itunes:duration>
    <itunes:explicit>false</itunes:explicit>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:episode>6</itunes:episode>
    <itunes:season>2026</itunes:season>
    <podcast:transcript url="https://www.d4vinder.com/decrypted/transcripts/the-check-point-vpn-flaws-that-haven-t-been-exploited-yet.vtt" type="text/vtt" language="en-gb" rel="captions"/>
    <itunes:image href="https://www.d4vinder.com/decrypted/episode-art/the-check-point-vpn-flaws-that-haven-t-been-exploited-yet.jpg"/>
    <enclosure url="https://www.d4vinder.com/decrypted/audio/the-check-point-vpn-flaws-that-haven-t-been-exploited-yet.mp3?v=e4e5d9bbf8" length="2681462" type="audio/mpeg"/>
  </item>
  <item>
    <title>Microsoft&#039;s Windows Defender patch didn&#039;t survive the week</title>
    <link>https://www.d4vinder.com/decrypted/microsoft-s-windows-defender-patch-didn-t-survive-the-week.html</link>
    <guid isPermaLink="false">d4-decrypted-microsoft-s-windows-defender-patch-didn-t-survive-the-week</guid>
    <pubDate>Mon, 14 Sep 2026 05:18:01 +0000</pubDate>
    <description>Microsoft patched a Windows Defender privilege escalation flaw this month; within days the researcher who found it published a working bypass called ShieldCrash. Plus: the UK&#039;s plan to build age verification into every smartphone, and a Cyber Bill change that finally puts managed IT providers in scope.</description>
    <itunes:summary>Microsoft patched a Windows Defender privilege escalation flaw this month; within days the researcher who found it published a working bypass called ShieldCrash. Plus: the UK&#039;s plan to build age verification into every smartphone, and a Cyber Bill change that finally puts managed IT providers in scope.</itunes:summary>
    <content:encoded><![CDATA[<p>Microsoft patched a Windows Defender privilege escalation flaw this month; within days the researcher who found it published a working bypass called ShieldCrash. Plus: the UK&#039;s plan to build age verification into every smartphone, and a Cyber Bill change that finally puts managed IT providers in scope.</p><p><strong>Sources</strong></p><ul><li><a href="https://www.bleepingcomputer.com/news/security/new-microsoft-defender-shieldcrash-zero-day-grants-system-access/">New Microsoft Defender &#039;ShieldCrash&#039; zero-day grants SYSTEM access</a></li><li><a href="https://www.theregister.com/security/2026/09/09/serial-microsoft-0-day-hunter-drops-yet-another-defender-exploit/5295335">Serial Microsoft 0-day hunter drops yet another Defender exploit</a></li><li><a href="https://www.ispreview.co.uk/index.php/2026/09/government-look-to-impose-mandatory-age-verification-on-uk-smartphones.html">Government look to impose mandatory age verification on UK Smartphones</a></li><li><a href="https://idtechwire.com/uk-commits-to-device-level-child-protections-with-adult-age-checks/">UK Commits to Device-Level Child Protections With Adult Age Checks</a></li><li><a href="https://compliancehub.wiki/uk-cyber-security-resilience-bill-lords-committee-september-2026-msp-data-centre-scope/">The UK&#039;s Cyber Security and Resilience Bill Reaches Lords Committee on 1 September 2026</a></li><li><a href="https://www.hendryadrian.com/ransom-strad-solutions-sep-2026/">Ransom! Strad Solutions (SEP-2026)</a></li></ul><p><a href="https://www.d4vinder.com/decrypted/microsoft-s-windows-defender-patch-didn-t-survive-the-week.html">Read the written version</a></p>]]></content:encoded>
    <itunes:author>Davinder Singh</itunes:author>
    <itunes:duration>0:03:33</itunes:duration>
    <itunes:explicit>false</itunes:explicit>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:episode>5</itunes:episode>
    <itunes:season>2026</itunes:season>
    <podcast:transcript url="https://www.d4vinder.com/decrypted/transcripts/microsoft-s-windows-defender-patch-didn-t-survive-the-week.vtt" type="text/vtt" language="en-gb" rel="captions"/>
    <itunes:image href="https://www.d4vinder.com/decrypted/episode-art/microsoft-s-windows-defender-patch-didn-t-survive-the-week.jpg"/>
    <enclosure url="https://www.d4vinder.com/decrypted/audio/microsoft-s-windows-defender-patch-didn-t-survive-the-week.mp3?v=18e79e6c6f" length="1707616" type="audio/mpeg"/>
  </item>
  <item>
    <title>The bill comes due for the SSO flaw that hit 138 companies</title>
    <link>https://www.d4vinder.com/decrypted/the-bill-comes-due-for-the-sso-flaw-that-hit-138-companies.html</link>
    <guid isPermaLink="false">d4-decrypted-the-bill-comes-due-for-the-sso-flaw-that-hit-138-companies</guid>
    <pubDate>Sun, 13 Sep 2026 17:07:50 +0000</pubDate>
    <description>Trezor confirms 347,000 customers were sent phishing emails after the Brevo SSO flaw covered last week, showing what cross-tenant identity bugs actually cost downstream. Plus: a fresh batch of exploited remote-access flaws, and a Welsh public body&#039;s spreadsheet mishap.</description>
    <itunes:summary>Trezor confirms 347,000 customers were sent phishing emails after the Brevo SSO flaw covered last week, showing what cross-tenant identity bugs actually cost downstream. Plus: a fresh batch of exploited remote-access flaws, and a Welsh public body&#039;s spreadsheet mishap.</itunes:summary>
    <content:encoded><![CDATA[<p>Trezor confirms 347,000 customers were sent phishing emails after the Brevo SSO flaw covered last week, showing what cross-tenant identity bugs actually cost downstream. Plus: a fresh batch of exploited remote-access flaws, and a Welsh public body&#039;s spreadsheet mishap.</p><p><strong>Sources</strong></p><ul><li><a href="https://status.brevo.com/incidents/01M266V1CZKJQNGZRNEGFD5CQE">Brevo incident status: attacker gained access to client accounts</a></li><li><a href="https://www.securityweek.com/trezor-says-347000-users-received-phishing-emails-after-brevo-hack/">Trezor Says 347,000 Users Received Phishing Emails After Brevo Hack</a></li><li><a href="https://www.bleepingcomputer.com/news/security/trezor-347-000-users-targeted-in-phishing-attacks-after-brevo-breach/">Trezor: 347,000 users targeted in phishing attacks after Brevo breach</a></li><li><a href="https://www.cisa.gov/news-events/alerts/2026/09/09/cisa-adds-four-known-exploited-vulnerabilities-catalog">CISA Adds Four Known Exploited Vulnerabilities to Catalog</a></li><li><a href="https://www.connectwise.com/company/trust/security-bulletins/2026-09-08-screenconnect-bulletin">ConnectWise ScreenConnect Security Bulletin, CVE-2026-84869</a></li><li><a href="https://cybersecuritynews.com/natural-resources-wales-expose/">Natural Resources Wales Exposes Sensitive Employee Data in Spreadsheet Breach</a></li></ul><p><a href="https://www.d4vinder.com/decrypted/the-bill-comes-due-for-the-sso-flaw-that-hit-138-companies.html">Read the written version</a></p>]]></content:encoded>
    <itunes:author>Davinder Singh</itunes:author>
    <itunes:duration>0:03:11</itunes:duration>
    <itunes:explicit>false</itunes:explicit>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:episode>4</itunes:episode>
    <itunes:season>2026</itunes:season>
    <podcast:transcript url="https://www.d4vinder.com/decrypted/transcripts/the-bill-comes-due-for-the-sso-flaw-that-hit-138-companies.vtt" type="text/vtt" language="en-gb" rel="captions"/>
    <itunes:image href="https://www.d4vinder.com/decrypted/episode-art/the-bill-comes-due-for-the-sso-flaw-that-hit-138-companies.jpg"/>
    <enclosure url="https://www.d4vinder.com/decrypted/audio/the-bill-comes-due-for-the-sso-flaw-that-hit-138-companies.mp3?v=36b592537b" length="1525595" type="audio/mpeg"/>
  </item>
  <item>
    <title>A Russian spy operation had Claude rewrite its own malware after getting caught</title>
    <link>https://www.d4vinder.com/decrypted/a-russian-spy-operation-had-claude-rewrite-its-own-malware-after-getting-caught.html</link>
    <guid isPermaLink="false">d4-decrypted-a-russian-spy-operation-had-claude-rewrite-its-own-malware-after-getting-caught</guid>
    <pubDate>Sun, 13 Sep 2026 05:17:38 +0000</pubDate>
    <description>Anthropic says a Midnight Blizzard-linked group let Claude autonomously rebuild detected malware and hit 20+ targets; NCSC&#039;s agentic AI guidance explains the gap. Plus: Citrix NetScaler&#039;s exploited auth bypass, and the UK&#039;s new device-level age verification plan.</description>
    <itunes:summary>Anthropic says a Midnight Blizzard-linked group let Claude autonomously rebuild detected malware and hit 20+ targets; NCSC&#039;s agentic AI guidance explains the gap. Plus: Citrix NetScaler&#039;s exploited auth bypass, and the UK&#039;s new device-level age verification plan.</itunes:summary>
    <content:encoded><![CDATA[<p>Anthropic says a Midnight Blizzard-linked group let Claude autonomously rebuild detected malware and hit 20+ targets; NCSC&#039;s agentic AI guidance explains the gap. Plus: Citrix NetScaler&#039;s exploited auth bypass, and the UK&#039;s new device-level age verification plan.</p><p><strong>Sources</strong></p><ul><li><a href="https://www.anthropic.com/threat-intelligence-report-september-2026">Anthropic: Countering misuse of AI, September 2026</a></li><li><a href="https://thehackernews.com/2026/09/russian-state-sponsored-hackers-use.html">The Hacker News: Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection</a></li><li><a href="https://www.ncsc.gov.uk/blogs/thinking-carefully-before-adopting-agentic-ai">NCSC: Thinking carefully before adopting agentic AI</a></li><li><a href="https://www.cisa.gov/news-events/alerts/2026/09/09/cisa-adds-four-known-exploited-vulnerabilities-catalog">CISA Adds Four Known Exploited Vulnerabilities to Catalog</a></li><li><a href="https://www.bleepingcomputer.com/news/security/hackers-target-critical-citrix-netscaler-auth-bypass-in-attacks/">BleepingComputer: Critical Citrix NetScaler auth bypass now leveraged in attacks</a></li><li><a href="https://www.biometricupdate.com/202609/device-level-child-safety-controls-to-be-legislated-in-uk-as-deadline-expires">Biometric Update: Device-level child safety controls to be legislated in UK as deadline expires</a></li></ul><p><a href="https://www.d4vinder.com/decrypted/a-russian-spy-operation-had-claude-rewrite-its-own-malware-after-getting-caught.html">Read the written version</a></p>]]></content:encoded>
    <itunes:author>Davinder Singh</itunes:author>
    <itunes:duration>0:03:31</itunes:duration>
    <itunes:explicit>false</itunes:explicit>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:episode>3</itunes:episode>
    <itunes:season>2026</itunes:season>
    <podcast:transcript url="https://www.d4vinder.com/decrypted/transcripts/a-russian-spy-operation-had-claude-rewrite-its-own-malware-after-getting-caught.vtt" type="text/vtt" language="en-gb" rel="captions"/>
    <itunes:image href="https://www.d4vinder.com/decrypted/episode-art/a-russian-spy-operation-had-claude-rewrite-its-own-malware-after-getting-caught.jpg"/>
    <enclosure url="https://www.d4vinder.com/decrypted/audio/a-russian-spy-operation-had-claude-rewrite-its-own-malware-after-getting-caught.mp3?v=5c7488f0f7" length="2529429" type="audio/mpeg"/>
  </item>
  <item>
    <title>A GitLab flaw was exploited a day after the patch landed</title>
    <link>https://www.d4vinder.com/decrypted/a-gitlab-flaw-was-exploited-a-day-after-the-patch-landed.html</link>
    <guid isPermaLink="false">d4-decrypted-a-gitlab-flaw-was-exploited-a-day-after-the-patch-landed</guid>
    <pubDate>Sat, 12 Sep 2026 17:19:54 +0000</pubDate>
    <description>GitLab&#039;s maximum severity path traversal flaw was under active internet-wide scanning within a day of the patch landing, exposing secrets and CI/CD pipelines on self-hosted servers. Also this week: peers reject an AI &#039;kill switch&#039; amendment to the UK&#039;s Cyber Security and Resilience Bill, and EU defence officials push back on Brussels&#039; cloud sovereignty rules.</description>
    <itunes:summary>GitLab&#039;s maximum severity path traversal flaw was under active internet-wide scanning within a day of the patch landing, exposing secrets and CI/CD pipelines on self-hosted servers. Also this week: peers reject an AI &#039;kill switch&#039; amendment to the UK&#039;s Cyber Security and Resilience Bill, and EU defence officials push back on Brussels&#039; cloud sovereignty rules.</itunes:summary>
    <content:encoded><![CDATA[<p>GitLab&#039;s maximum severity path traversal flaw was under active internet-wide scanning within a day of the patch landing, exposing secrets and CI/CD pipelines on self-hosted servers. Also this week: peers reject an AI &#039;kill switch&#039; amendment to the UK&#039;s Cyber Security and Resilience Bill, and EU defence officials push back on Brussels&#039; cloud sovereignty rules.</p><p><strong>Sources</strong></p><ul><li><a href="https://www.bleepingcomputer.com/news/security/gitlab-urges-users-to-patch-max-severity-path-traversal-flaw/">GitLab urges users to patch max severity path traversal flaw</a></li><li><a href="https://www.securityweek.com/gitlab-vulnerability-exploited-one-day-after-disclosure/">GitLab Vulnerability Exploited One Day After Disclosure</a></li><li><a href="https://www.cisa.gov/news-events/alerts/2026/09/11/cisa-adds-one-known-exploited-vulnerability-catalog">CISA Adds One Known Exploited Vulnerability to Catalog</a></li><li><a href="https://www.theregister.com/security/2026/09/02/uk-cyber-bill-targets-ai-users-not-the-vendors-building-it/5293738">UK cyber bill targets AI users, not the vendors building it</a></li><li><a href="https://www.techerati.com/news-hub/uk-lawmakers-push-for-ai-kill-switch-powers/">UK Lawmakers Push AI Kill Switch Powers Through Cyber Bill</a></li><li><a href="https://www.cloudcomputing-news.net/news/eu-cloud-sovereignty-defence-us-cloud-providers/">EU cloud sovereignty rules face defence pushback over US providers</a></li></ul><p><a href="https://www.d4vinder.com/decrypted/a-gitlab-flaw-was-exploited-a-day-after-the-patch-landed.html">Read the written version</a></p>]]></content:encoded>
    <itunes:author>Davinder Singh</itunes:author>
    <itunes:duration>0:03:24</itunes:duration>
    <itunes:explicit>false</itunes:explicit>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:episode>2</itunes:episode>
    <itunes:season>2026</itunes:season>
    <podcast:transcript url="https://www.d4vinder.com/decrypted/transcripts/a-gitlab-flaw-was-exploited-a-day-after-the-patch-landed.vtt" type="text/vtt" language="en-gb" rel="captions"/>
    <itunes:image href="https://www.d4vinder.com/decrypted/episode-art/a-gitlab-flaw-was-exploited-a-day-after-the-patch-landed.jpg"/>
    <enclosure url="https://www.d4vinder.com/decrypted/audio/a-gitlab-flaw-was-exploited-a-day-after-the-patch-landed.mp3?v=215ce73426" length="1633428" type="audio/mpeg"/>
  </item>
  <item>
    <title>The phone call that gets past your passkey</title>
    <link>https://www.d4vinder.com/decrypted/the-phone-call-that-gets-past-your-passkey.html</link>
    <guid isPermaLink="false">d4-decrypted-the-phone-call-that-gets-past-your-passkey</guid>
    <pubDate>Sat, 12 Sep 2026 05:09:41 +0000</pubDate>
    <description>Extortion gangs are phoning staff pretending to be the IT helpdesk to sidestep passkeys and MFA entirely, while a maximum-severity Cisco firewall flaw and an AI-driven mass hack of PaperCut servers round out a heavy 24 hours for patching teams.</description>
    <itunes:summary>Extortion gangs are phoning staff pretending to be the IT helpdesk to sidestep passkeys and MFA entirely, while a maximum-severity Cisco firewall flaw and an AI-driven mass hack of PaperCut servers round out a heavy 24 hours for patching teams.</itunes:summary>
    <content:encoded><![CDATA[<p>Extortion gangs are phoning staff pretending to be the IT helpdesk to sidestep passkeys and MFA entirely, while a maximum-severity Cisco firewall flaw and an AI-driven mass hack of PaperCut servers round out a heavy 24 hours for patching teams.</p><p><strong>Sources</strong></p><ul><li><a href="https://www.microsoft.com/en-us/security/blog/2026/09/09/passkey-themed-social-engineering-leads-identity-cloud-compromise/">Passkey-themed social engineering leads to identity and cloud compromise</a></li><li><a href="https://www.bleepingcomputer.com/news/security/passkey-themed-phishing-attacks-lead-to-microsoft-365-data-theft/">Passkey-themed phishing attacks lead to Microsoft 365 data theft</a></li><li><a href="https://blog.talosintelligence.com/fmc-ongoing-exploitation/">Active exploitation of Cisco Secure Firewall Management Center vulnerabilities</a></li><li><a href="https://thehackernews.com/2026/09/cisa-flags-exploited-cisco-citrix.html">CISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch Deadline</a></li><li><a href="https://www.greynoise.io/blog/ai-orchestrated-campaign-against-papercut-ng-mf">Agents Gone Wild: An AI-Orchestrated Global Campaign Against PaperCut NG/MF</a></li><li><a href="https://www.theregister.com/security/2026/09/10/hundreds-of-ai-agents-helped-papercut-attacker-hit-395-orgs-and-some-went-off-script/5295650">Hundreds of AI agents helped PaperCut attacker hit 395+ orgs, and some went off script</a></li></ul><p><a href="https://www.d4vinder.com/decrypted/the-phone-call-that-gets-past-your-passkey.html">Read the written version</a></p>]]></content:encoded>
    <itunes:author>Davinder Singh</itunes:author>
    <itunes:duration>0:02:43</itunes:duration>
    <itunes:explicit>false</itunes:explicit>
    <itunes:episodeType>full</itunes:episodeType>
    <itunes:episode>1</itunes:episode>
    <itunes:season>2026</itunes:season>
    <podcast:transcript url="https://www.d4vinder.com/decrypted/transcripts/the-phone-call-that-gets-past-your-passkey.vtt" type="text/vtt" language="en-gb" rel="captions"/>
    <itunes:image href="https://www.d4vinder.com/decrypted/episode-art/the-phone-call-that-gets-past-your-passkey.jpg"/>
    <enclosure url="https://www.d4vinder.com/decrypted/audio/the-phone-call-that-gets-past-your-passkey.mp3?v=a00f25b46d" length="1301150" type="audio/mpeg"/>
  </item>
</channel>
</rss>
