Zero Day Logs Titelbild

Zero Day Logs

Zero Day Logs

Von: ZDL
Jetzt kostenlos hören, ohne Abo

Welcome to Zero Day Logs, the podcast that dissects the most consequential cybersecurity breaches of our time. We go beyond the headlines to reconstruct exactly how the world's most heavily defended networks are actually dismantled—focusing not just on the technical exploits, but the structural flaws, human errors, and critical executive decisions that determine who survives and who pays.


From billion-dollar hospitality empires brought to a standstill by a single, well-researched phone call to an IT help desk , to global identity gatekeepers compromised by contractor laptops and standard diagnostic files, each episode maps the attack path step-by-step. We break down the underlying enterprise architecture—explaining concepts like multi-factor authentication, federated identity, and zero-trust frameworks—so you understand the mechanics of the collapse.


Whether you are a security professional defending a network, or simply someone trying to understand how the digital infrastructure we all depend on actually fails, Zero Day Logs provides the unvarnished autopsy. We explore the uncomfortable reality of modern digital defense: that the weakest link is rarely a piece of software, but the human processes and vendor relationships where trust is extended and verification is skipped.


Find full technical breakdowns, attack timelines, and defensive configurations for every episode at zerodaylogs.com.

© 2026 Zero Day Logs
Management & Leadership True Crime Ökonomie
  • SolarWinds: The Backdoor Was Compiled In
    Sep 25 2026

    Between March and June of 2020, a signed update to SolarWinds Orion carried a hidden backdoor. The attacker had not tampered with the software after it shipped. It had reached the build environment where Orion is compiled and planted an implant, later named SUNSPOT, that waited for a build to run and swapped in a modified source file, so the backdoor was compiled into the product and then sealed with the vendor's own signature. Roughly eighteen thousand organizations downloaded that update. For almost all of them the backdoor stayed dormant. A hand-picked few were broken into, among them nine U.S. federal agencies. From Zero Day Logs.

    Mehr anzeigen Weniger anzeigen
    14 Min.
  • LastPass: One Password, 33 Million Vaults
    Sep 18 2026

    In August 2022, an attacker compromised a software engineer's laptop and stole internal documentation from LastPass, the password manager. That documentation pointed to a senior DevOps engineer whose home computer, running an outdated copy of Plex Media Server, let the attacker plant a keylogger and capture the engineer's master password. Because LastPass allowed personal and corporate vaults to share one password, that single capture opened the keys to the encrypted vault backups of more than thirty-three million customers. LastPass has since agreed to settle US claims for about twenty-four and a half million dollars, a settlement pending final approval and not an admission of liability, and the UK's Information Commissioner's Office fined the company over 1.2 million pounds.

    Mehr anzeigen Weniger anzeigen
    18 Min.
  • KA-SAT: A Wiper an Hour Before the Invasion
    Sep 11 2026

    Just after three in the morning on February 24, 2022, tens of thousands of satellite modems across Europe stopped working. About an hour later, Russia's ground invasion of Ukraine began. The network was KA-SAT, operated by the American company Viasat. According to Viasat's incident report, the way in was a misconfigured VPN appliance; from there the attackers used the network's own management channel to push a wiper called AcidRain that erased each modem's firmware. The damage crossed borders, reaching 5,800 German wind turbines that lost their monitoring link. The UK, the US, and the EU later attributed the attack to Russia. From Zero Day Logs.

    Mehr anzeigen Weniger anzeigen
    16 Min.
adbl_web_anon_alc_button_suppression_t1
Noch keine Rezensionen vorhanden