WEBVTT
1
00:00:01.000 --> 00:00:04.599
This program is designed to provide general information with regards
2
00:00:04.639 --> 00:00:07.599
to the subject matters covered. This information is given with
3
00:00:07.639 --> 00:00:12.000
the understanding that neither the hosts, guests, sponsors, or station
4
00:00:12.240 --> 00:00:19.079
are engaged in rendering any specific and personal medical, financial, legal, counseling,
5
00:00:19.320 --> 00:00:21.600
professional service, or any advice.
6
00:00:21.960 --> 00:00:24.000
You should seek the services.
7
00:00:23.480 --> 00:00:28.920
Of competent professionals before applying or trying any suggested ideas.
8
00:00:30.199 --> 00:00:33.600
The information contained in this podcast is intended for informational
9
00:00:33.640 --> 00:00:37.159
purposes only and is not a substitute for individual professional
10
00:00:37.240 --> 00:00:41.000
legal advice. The podcast information was carefully compiled from vetted
11
00:00:41.039 --> 00:00:45.200
sources and references. However, Rose Resources outreach to safeguard the
12
00:00:45.240 --> 00:00:48.159
elderly cannot guarantee that you will not fall victim to
13
00:00:48.240 --> 00:00:53.679
a scam. Let's talk about scams. It's the must listen
14
00:00:53.759 --> 00:00:57.000
show for anyone who wants to protect themselves and their
15
00:00:57.039 --> 00:01:01.719
loved ones from scams. Every Tuesday am Pacific time on
16
00:01:01.840 --> 00:01:05.920
K four HD Radio, Joyce Petrowski, founder of Rose, and
17
00:01:06.079 --> 00:01:10.840
her guests will provide valuable insights and practical tips on
18
00:01:10.959 --> 00:01:14.599
how to recognize and protect yourself from scams.
19
00:01:14.879 --> 00:01:16.359
And now here.
20
00:01:16.280 --> 00:01:22.519
Is your host, Joyce Petrowski. Hi, I'm David staying active mentally,
21
00:01:22.760 --> 00:01:23.400
thing chess.
22
00:01:23.599 --> 00:01:26.280
Those are all very important things. I'm seventy two, but
23
00:01:26.400 --> 00:01:28.359
I'm going to keep on learning. I'm going to keep
24
00:01:28.400 --> 00:01:30.920
on moving. I'm gonna keep on living my life.
25
00:01:31.079 --> 00:01:33.719
Healthcare for David's next move. Learn more at AR twelve
26
00:01:33.719 --> 00:01:34.959
health dot com.
27
00:01:35.040 --> 00:01:38.359
Hi everybody, welcome back. I'm Joyce Petrowski, founder and board
28
00:01:38.400 --> 00:01:43.200
president of Rose Resources Outreach to safeguard the elderly. Don't
29
00:01:43.200 --> 00:01:47.840
forget to get on our website at w or Roseadvocacy
30
00:01:47.920 --> 00:01:51.000
dot org. You can find our social media channels at
31
00:01:51.040 --> 00:01:53.680
the top of the homepage, scroll down to the bottom,
32
00:01:53.799 --> 00:01:56.680
and you can sign up for our email and or
33
00:01:56.840 --> 00:01:58.000
mailed newsletter.
34
00:01:58.079 --> 00:01:58.760
We do both.
35
00:02:00.000 --> 00:02:04.319
Two great things with the email newsletter is that you're
36
00:02:04.359 --> 00:02:10.080
going to get scam information and tips and information about Rose.
37
00:02:10.520 --> 00:02:15.039
But every Tuesday morning, you're going to get a Tuesday
38
00:02:15.080 --> 00:02:18.439
tip at nine point fifteen Arizona time, and you might
39
00:02:18.599 --> 00:02:20.159
look at it for a few weeks and say, you
40
00:02:20.240 --> 00:02:22.680
know what, I already know these tips. Well, that's great.
41
00:02:22.759 --> 00:02:31.120
It's reinforcement, but it also by seeing scam information reoccurring
42
00:02:31.280 --> 00:02:34.639
every week in your inbox, opening up, just taking a
43
00:02:34.719 --> 00:02:38.719
quick few minutes to read through it that helps reinforce
44
00:02:38.800 --> 00:02:42.879
your scam prevention habits, your healthy skepticism and making it
45
00:02:42.919 --> 00:02:46.039
a habit so the next time you're contacted, you're more
46
00:02:46.080 --> 00:02:48.639
apt to think scam okay, what do I need to
47
00:02:48.759 --> 00:02:53.000
do in order to determine if this is legitimate or
48
00:02:53.039 --> 00:02:57.439
if it really is a scam? So today we have
49
00:02:57.639 --> 00:03:02.479
a we have a guest patch Coglin. He spent more
50
00:03:02.520 --> 00:03:06.240
than twenty years building teams, products, and companies that protect
51
00:03:06.280 --> 00:03:10.240
governments and fortune five hundred enterprises from the most sophisticated
52
00:03:10.680 --> 00:03:14.800
cyber threats. He co founded true Star Technology, a security
53
00:03:14.840 --> 00:03:19.639
intelligence platform acquired by Splunk and now leads Savvy Security,
54
00:03:20.199 --> 00:03:23.879
where his team built scam wise, a free tool that
55
00:03:24.039 --> 00:03:29.479
gives anyone an instant assessment of a suspicious message. When
56
00:03:29.479 --> 00:03:32.000
his seventy three year old mother was targeted by an
57
00:03:32.000 --> 00:03:36.879
AI powered voice impersonation scam, Patrick turned his expertise toward
58
00:03:36.919 --> 00:03:42.120
a question most cybersecurity professionals never ask, Why do smart
59
00:03:42.280 --> 00:03:45.319
capable people fall for scams in the first place.
60
00:03:45.879 --> 00:03:47.360
What he found wasn't a.
61
00:03:47.280 --> 00:03:52.439
Technology problem, It was a human psychology problem, fueled by
62
00:03:52.479 --> 00:03:57.599
criminal organizations operating at a scale most people can imagine
63
00:03:57.639 --> 00:04:00.000
his debut book, Dark Side of the Boom House Scale
64
00:04:00.400 --> 00:04:05.520
Hijack The AI Revolution exposes the networks behind the global
65
00:04:05.560 --> 00:04:11.520
scam epidemic, the psychological tactics they've weaponized, and what families
66
00:04:11.560 --> 00:04:14.879
and communities can do to fight back. Patrick is a
67
00:04:14.960 --> 00:04:18.480
Georgetown Saint Andrews and Stanford alum, and he lives in
68
00:04:18.519 --> 00:04:21.680
Los Angeles with his wife's son and dog. So let's
69
00:04:21.680 --> 00:04:22.519
welcome Patrick.
70
00:04:24.040 --> 00:04:27.160
Thank you, Joyce. That was a great introduction. Very happy to.
71
00:04:27.079 --> 00:04:29.399
Be here, Thank you, and thank you for joining us.
72
00:04:29.920 --> 00:04:32.680
Happy to have you, and I'm looking forward to this
73
00:04:33.360 --> 00:04:38.879
conversation because the one thing that I really liked about
74
00:04:38.920 --> 00:04:45.600
your bio was what he found was not a technology problem,
75
00:04:45.680 --> 00:04:50.120
it was a human psychology problem. I think that's where
76
00:04:50.199 --> 00:04:55.040
a lot of people, including the government, fail when it
77
00:04:55.079 --> 00:04:59.639
comes to trying to prevent scams. So you spent over
78
00:04:59.639 --> 00:05:04.480
twenty years in the cybersecurity in cybersecurity protecting governments and
79
00:05:04.519 --> 00:05:07.160
Fortune five hundred companies. So what made you shift your
80
00:05:07.360 --> 00:05:09.879
focus to protecting just everyday people.
81
00:05:10.639 --> 00:05:13.519
Yeah, I think, Joyce, if you sort of if we
82
00:05:13.560 --> 00:05:16.160
take a step back and look at my career in
83
00:05:16.160 --> 00:05:19.879
the last twenty years or so, I think the through
84
00:05:19.959 --> 00:05:23.199
line or the threat is. I've really focused on how
85
00:05:23.240 --> 00:05:29.240
bad guys used technology. I started my career actually looking
86
00:05:29.279 --> 00:05:32.519
at at the time this is again twenty plus years ago,
87
00:05:32.600 --> 00:05:36.120
looking at terrorist threats and groups from threats from terrorist
88
00:05:36.240 --> 00:05:40.399
organizations and how terrorists were potentially using the Internet to
89
00:05:40.959 --> 00:05:46.959
launder money, to communicate, to recruit, and then over time
90
00:05:47.040 --> 00:05:51.079
that sort of parlayed into looking at how bad actors
91
00:05:51.160 --> 00:05:56.759
were using technology as a channel and a mechanism to
92
00:05:56.839 --> 00:06:02.560
target government agencies, and then later enterprise is to steal information,
93
00:06:02.800 --> 00:06:07.360
to steal money, whatever it may be. And then about
94
00:06:07.360 --> 00:06:11.480
eighteen years or eighteen months ago, two years ago, my mom,
95
00:06:12.199 --> 00:06:15.199
as you said in the introduction, got one of these
96
00:06:15.199 --> 00:06:20.360
fake kidnapping calls where you know, she she's sitting at
97
00:06:20.360 --> 00:06:22.680
home in one day her phone rings and it shows
98
00:06:22.720 --> 00:06:26.519
up and says it's coming from my sister Courtney, and
99
00:06:26.639 --> 00:06:28.639
she answers the phone and she thinks she hears my
100
00:06:29.240 --> 00:06:34.480
sister's voice and sort of a blood curdling scream and
101
00:06:35.160 --> 00:06:37.319
a voice that says, Mom, they've got me. And then
102
00:06:37.360 --> 00:06:39.560
a man comes on the phone and says, we've got
103
00:06:39.560 --> 00:06:42.759
your daughter at the at the local walmart in Oletha, Kent,
104
00:06:43.360 --> 00:06:47.560
where I grew up and we're going to kill her
105
00:06:47.639 --> 00:06:50.160
in the parking lot if you don't pallace twelve hundred
106
00:06:50.160 --> 00:06:56.120
dollars immediately. And you know, by a lucky sequence of
107
00:06:56.160 --> 00:07:02.000
events and some fortunate sort of moments, my mom sees
108
00:07:02.079 --> 00:07:04.680
her iPad sitting on the table while she's on the phone,
109
00:07:04.680 --> 00:07:08.000
and she thinks to text my brother in law, my
110
00:07:08.079 --> 00:07:11.639
sister's husband, and say, you know, but she's still caught
111
00:07:11.680 --> 00:07:12.759
up in it, and she says, what are we going
112
00:07:12.839 --> 00:07:16.040
to do about Courtney? She believed absolutely, And you know,
113
00:07:16.120 --> 00:07:18.000
luckily my brother in law is there and answers right
114
00:07:18.000 --> 00:07:19.800
away and says, what do you mean Courtney's in the
115
00:07:19.800 --> 00:07:21.560
shower right here with us.
116
00:07:22.079 --> 00:07:22.279
Yeah.
117
00:07:22.360 --> 00:07:25.480
So that sort of provided the just enough of a
118
00:07:25.600 --> 00:07:29.439
spark of doubt that my mom was able to sort
119
00:07:29.439 --> 00:07:31.639
of step back from the situation, hang up the phone.
120
00:07:32.040 --> 00:07:36.240
Something didn't feel right. Called my sister, realized this was fake.
121
00:07:36.360 --> 00:07:40.839
And by the time she called me, you know, she
122
00:07:40.920 --> 00:07:43.600
was shook to the core. Joyce like you can imagine,
123
00:07:43.639 --> 00:07:47.399
you know, how how destabilizing that is. Couldn't believe that
124
00:07:47.399 --> 00:07:49.680
that this could happen. How could it happen? The phone
125
00:07:49.680 --> 00:07:53.800
said it was Courtney. It sounded like Courtney, And after
126
00:07:53.800 --> 00:07:56.839
we calm mom down, what was going through my mind is, well,
127
00:07:56.839 --> 00:08:00.839
what has fundamentally changed in sort of the underlying economy
128
00:08:01.399 --> 00:08:04.439
of cyber criminals of sort of the bad guys on
129
00:08:04.519 --> 00:08:10.160
the web that they could target little Beth Coglin from
130
00:08:10.279 --> 00:08:14.759
Kansas like this, somebody did some work to figure out,
131
00:08:14.800 --> 00:08:16.720
you know, who she was, who her daughter was, what
132
00:08:16.759 --> 00:08:20.879
the phone numbers were, what the voice was potentially, and
133
00:08:21.519 --> 00:08:25.399
that that twelve hundred dollars would have been the starting
134
00:08:25.560 --> 00:08:29.399
ask for a life, and that somebody would have been
135
00:08:29.480 --> 00:08:32.399
really happy. It would have been a huge score for
136
00:08:32.519 --> 00:08:35.039
that scammer if they got twelve hundred dollars for that work.
137
00:08:35.080 --> 00:08:38.799
And so for me, it kind of invigorated some some
138
00:08:38.919 --> 00:08:41.960
latent analysts and intelligence skills that I had used earlier
139
00:08:41.960 --> 00:08:43.360
in my career, and I kind of went down a
140
00:08:43.440 --> 00:08:47.559
rabbit hole and I saw what you've been seeing for
141
00:08:47.559 --> 00:08:52.399
for a long time, which is cyber criminals are now
142
00:08:52.679 --> 00:08:56.120
sort of taking the same level of sophistication and scale
143
00:08:56.159 --> 00:08:59.279
that they would have pointed at enterprises and governments and
144
00:08:59.320 --> 00:09:03.320
are now point it at seniors, the elderly families. They're
145
00:09:03.360 --> 00:09:06.960
really all demographics and so That's what really drove me
146
00:09:07.000 --> 00:09:12.600
to say that the threat has shifted from governments to
147
00:09:12.759 --> 00:09:16.519
enterprises and now to living rooms in kitchen tables of
148
00:09:16.600 --> 00:09:18.960
the really Americans. And that's that's what I want to
149
00:09:19.000 --> 00:09:21.440
spend the next chapter of my life on, is helping
150
00:09:21.480 --> 00:09:25.840
to to stop this this rapidly accelerating problem.
151
00:09:26.159 --> 00:09:26.480
Yeah.
152
00:09:26.639 --> 00:09:30.240
I mean it's every year, you know, when we see
153
00:09:30.279 --> 00:09:33.120
the statistics come out, and right, the statistics are just
154
00:09:33.200 --> 00:09:36.159
on what's reported, and we know that there are so
155
00:09:36.399 --> 00:09:40.360
many more people that just don't report, especially in this
156
00:09:40.480 --> 00:09:44.200
older adult population, the sixty plus population.
157
00:09:45.519 --> 00:09:46.440
That don't report.
158
00:09:46.600 --> 00:09:50.080
So it's just the actual losses in number of victims
159
00:09:50.080 --> 00:09:54.759
are just exponential based on you know, but the the numbers.
160
00:09:54.360 --> 00:09:55.320
That are reported.
161
00:09:55.519 --> 00:09:58.320
And you know, you live in California, you guys are
162
00:09:58.360 --> 00:10:02.559
always in the top three for the statistics. You have
163
00:10:02.639 --> 00:10:05.799
a huge population just to begin with, but Arizona is
164
00:10:05.799 --> 00:10:08.320
always in the top ten and we hover right around
165
00:10:08.399 --> 00:10:10.080
somewhere between fourth and sixth.
166
00:10:11.679 --> 00:10:12.559
So we don't have.
167
00:10:12.519 --> 00:10:15.000
As big a population as California, but we have a
168
00:10:15.000 --> 00:10:22.000
big retired population. And it's just, you know, it's amazing
169
00:10:22.279 --> 00:10:26.039
how much information can be found online about people. I
170
00:10:26.080 --> 00:10:30.559
don't think we realize everything that is considered public information.
171
00:10:32.039 --> 00:10:35.159
So it's and there's go ahead.
172
00:10:35.159 --> 00:10:36.960
I'm sorry, well, I was just going to say, I mean,
173
00:10:37.559 --> 00:10:41.159
what you hit on with the underreporting is actually a
174
00:10:41.200 --> 00:10:45.840
big part of the problem. In fact, digital fraud is
175
00:10:46.840 --> 00:10:51.200
the most underreported crime in the world. If you look
176
00:10:51.240 --> 00:10:57.840
at residential burglary or any other sort of type of crime, shoplifting,
177
00:10:57.879 --> 00:11:05.000
whatever it may be, digital fraud is exponentially underreported compared
178
00:11:05.039 --> 00:11:09.360
to those and a lot of that is because of, unfortunately,
179
00:11:09.879 --> 00:11:15.600
the shame and the stigma it's involved when you talk
180
00:11:15.600 --> 00:11:19.320
about a scam victim, and we can talk more about that,
181
00:11:18.879 --> 00:11:25.120
but the impact of that is this underreporting means we're
182
00:11:25.240 --> 00:11:29.679
under resourced from a law enforcement perspective, we're under educated
183
00:11:30.159 --> 00:11:33.679
about the problem because we don't have our arms as
184
00:11:33.720 --> 00:11:37.279
a society, as a country, as a state, whatever it
185
00:11:37.320 --> 00:11:40.279
may be, around the real scale of the problem. And
186
00:11:40.320 --> 00:11:43.240
so part of what we advocate for, and I know
187
00:11:43.399 --> 00:11:45.679
you do as well, is we've got to sort of
188
00:11:45.679 --> 00:11:50.240
bring down this level of shame around talking about scams
189
00:11:50.399 --> 00:11:53.960
and fraud so that we can really understand the full
190
00:11:54.000 --> 00:11:55.879
scale of the problem and then we can start to
191
00:11:55.879 --> 00:11:57.679
really implement the right scales.
192
00:11:57.879 --> 00:12:00.080
Oh absolutely, you know, I was just looking at.
193
00:12:02.000 --> 00:12:03.960
Somebody. You know, I'm sure you.
194
00:12:03.840 --> 00:12:08.159
Guys have those nextdoor apps and stuff. I had gotten
195
00:12:08.200 --> 00:12:12.600
a notification I had commented somebody had posted their experience
196
00:12:13.240 --> 00:12:17.000
with a scam, and it was that they knew from
197
00:12:17.039 --> 00:12:19.320
the beginning it was a scam, but they kind of
198
00:12:19.399 --> 00:12:21.600
just wanted to see what their game was, so they
199
00:12:21.679 --> 00:12:26.679
engaged to a certain extent and they spelled it out
200
00:12:26.879 --> 00:12:27.559
in the post.
201
00:12:27.639 --> 00:12:28.960
And I had just.
202
00:12:28.879 --> 00:12:31.440
Commented and said, you know, thank you for sharing. It's
203
00:12:31.480 --> 00:12:34.360
always good to get this information out and just be
204
00:12:34.519 --> 00:12:39.200
careful with engaging because they can trick you so quickly
205
00:12:39.240 --> 00:12:39.840
and easily.
206
00:12:40.360 --> 00:12:41.759
But there were people on.
207
00:12:41.799 --> 00:12:45.519
There that were saying, who would I can't believe people
208
00:12:45.559 --> 00:12:49.159
are so dumb to fall for this. And I'm telling you, Patrick,
209
00:12:49.200 --> 00:12:52.440
it takes all I can do not to just rip
210
00:12:52.559 --> 00:12:57.919
into those people, because it's like you make a decision
211
00:12:58.000 --> 00:13:00.879
out of an emotional state and then you come back
212
00:13:00.919 --> 00:13:05.120
and think about it logically and rationally. I think you're
213
00:13:05.600 --> 00:13:09.840
somebody else could say the same thing about you exactly,
214
00:13:09.879 --> 00:13:12.480
And that's what people don't. They just don't think about
215
00:13:12.519 --> 00:13:17.200
it right, and they don't lead with empathy and you know,
216
00:13:17.399 --> 00:13:19.720
and they're just very judgmental people.
217
00:13:20.000 --> 00:13:22.120
And I hate to say it, but you.
218
00:13:22.080 --> 00:13:24.320
Know, you very well could be the next one on
219
00:13:24.360 --> 00:13:26.360
this next stoor app that's going to be posted. Well,
220
00:13:26.399 --> 00:13:29.559
you wouldn't post because you'd be very embarrassed after you've
221
00:13:29.600 --> 00:13:30.919
just been shaming everybody.
222
00:13:31.600 --> 00:13:35.440
Well, you know, it's funny. I when I so again.
223
00:13:35.440 --> 00:13:38.679
I sort of worked in government and then enterprise security,
224
00:13:38.720 --> 00:13:42.159
and there's this big cybersecurity conference every year. Let me
225
00:13:42.200 --> 00:13:45.679
tell the story where it's called RSA and it happens
226
00:13:45.720 --> 00:13:49.440
in San Francisco and cybersecurity people get together and I
227
00:13:49.480 --> 00:13:53.679
remember about ten twelve years ago, you know, at the
228
00:13:53.679 --> 00:13:56.279
time when companies would get hacked, this was still kind
229
00:13:56.320 --> 00:13:58.840
of a new thing. And what people in the cybersecurity
230
00:13:58.840 --> 00:14:01.000
community would do when it company got hacked with they
231
00:14:01.039 --> 00:14:03.519
would go on social media. They go on Twitter and
232
00:14:03.600 --> 00:14:07.679
kind of throw shade at the company and say, oh
233
00:14:07.679 --> 00:14:09.320
my god, I can't believe that company got hacked. What
234
00:14:09.399 --> 00:14:11.279
were they doing? They didn't have their policies figured out,
235
00:14:11.320 --> 00:14:14.559
the program must have been weak. And then at this
236
00:14:14.759 --> 00:14:17.399
RSA conference, the director of the FBI came and he
237
00:14:17.440 --> 00:14:20.039
gave the keynote speech and he said something that was
238
00:14:20.080 --> 00:14:22.440
really important. He said, there's there's two types of companies
239
00:14:22.759 --> 00:14:25.879
in the world, companies that have been hacked and companies