Cybersecurity Headlines Cybersecurity Headlines

SynkLoader throws in the kitchen sink, NIST flags multi-cloud sprawl, ReliaQuest blocks a ShinyHunters swing

Aug 25, 2026 · 6m

Summary

Hosted by Sarah Lane, this episode covers SynLoader’s advanced capabilities, including a fake lock screen for credential theft. NIST highlights the compliance challenges of multi-cloud sprawl, while RellyQuest and Apollo Global Management report social engineering incidents. The show also details a major indictment for illegal AI server exports to China and the evolution of Toxic Panda into a serious enterprise threat. Finally, it examines new ClickFix campaigns using fake Codex downloads and word list loaders to bypass macOS and Windows security controls.

Topics discussed

Introduction and show overview Synloader malware analysis and capabilities NIST flags multi-cloud security challenges Rellyquest blocks Shiny Hunter social engineering Rellyquest breach details and response Apollo breach via social engineering Sponsor segment: ThreatDown MDR services Taiwan charges AI server smugglers Toxic Panda malware expands to enterprise Toxic Panda technical capabilities and risks Fake Codex lure via Google Sites ClickFix attack vector and AMOS framework Word List Loader and Syncloader campaigns Closing remarks and feedback invitation Show availability and sign-off
Listen ad-free on Castria