SynkLoader throws in the kitchen sink, NIST flags multi-cloud sprawl, ReliaQuest blocks a ShinyHunters swing
Aug 25, 2026 · 6m
Summary
Hosted by Sarah Lane, this episode covers SynLoader’s advanced capabilities, including a fake lock screen for credential theft. NIST highlights the compliance challenges of multi-cloud sprawl, while RellyQuest and Apollo Global Management report social engineering incidents. The show also details a major indictment for illegal AI server exports to China and the evolution of Toxic Panda into a serious enterprise threat. Finally, it examines new ClickFix campaigns using fake Codex downloads and word list loaders to bypass macOS and Windows security controls.
Topics discussed
Introduction and show overview
Synloader malware analysis and capabilities
NIST flags multi-cloud security challenges
Rellyquest blocks Shiny Hunter social engineering
Rellyquest breach details and response
Apollo breach via social engineering
Sponsor segment: ThreatDown MDR services
Taiwan charges AI server smugglers
Toxic Panda malware expands to enterprise
Toxic Panda technical capabilities and risks
Fake Codex lure via Google Sites
ClickFix attack vector and AMOS framework
Word List Loader and Syncloader campaigns
Closing remarks and feedback invitation
Show availability and sign-off
Listen ad-free on Castria