All Posts

CISO Series is Hiring a Writer/Producer (Cybersecurity)

UPDATE (5-24-23): This position has been filled. We’re looking for an awesome cybersavvy writer/producer to join the CISO Series team. Are you that person or…

What’s it Going to Take to Make Security Second Nature for Everyone?

Here’s a short conversation I had with Austin Wolf (@austinhwolf), staff information security analyst, Code42 about improving security culture. It’s all a preview of our…

Cybersecurity News: Easterly’s AI warning, Ex-Uber Sullivan sentenced, Play’s Massachusetts ransomware

Jen Easterly warns AI may be the ‘most powerful weapon of our time’ CISA Director Jen Easterly, speaking on Friday at a security summit at…

Cybersecurity News Week in Review: SolarWinds detected earlier, AI godfather quits, data breach lawsuits

This week’s Cyber Security Headlines – Week in Review, May 1-5, is hosted by Rich Stroffolino with our guest, Allison Miller, Cybersecurity and Technology Executive…

Cybersecurity News: Royal ransoms Dallas, new PaperCut exploit, CISA’s Mirai warning

City of Dallas hit by Royal ransomware attack impacting IT services The ninth largest city in the United States, with a population of approximately 2.6…

How Should Security Vendors Engage With CISOs?

One CISO has had enough of the security vendor marketing emails and cold sales calls. He’s blocking them all. But it’s not a call to…

Cybersecurity News: Meta FTC troubles, CISA urges Covered List, malicious HTML attachments

FTC comes down on Meta monetizing minors In a release from the US Federal Trade Commission, the agency alleges Meta “repeatedly violated” privacy rules put…

“Hacking the Software Supply Chain” – Super Cyber Friday

Please join us on Friday, May 19th, 2023 for Super Cyber Friday. Our topic of discussion will be “Hacking the Software Supply Chain: An hour…

Cybersecurity News: Authorities seize 9 crypto exchanges, T-Mobile discloses 2nd data breach of 2023, ‘Godfather of AI’ quits Google

Authorities seize 9 crypto exchanges used for money laundering A joint operation conducted by the FBI and Ukrainian police seized 9 crypto exchanges used by…

I Wouldn’t Trust Everything You Read… On My Resume

Turns out cybersecurity professionals lie on their resumes. They add degrees and certifications they don’t have. They omit degrees for fear of looking overqualified. And…

Cybersecurity News: Juice jacking, data breach lawsuits, Telegram ban lifted

The academic threat of juice jacking Last month, the US FBI and Federal Communication Commissions issued new warnings about so-called juice jacking attacks. These warned…

Veeam backup targeted, DOJ SolarWinds discovery, Americold frozen out

Hackers target Veeam backup servers exposed online There has been a rash of activity using tools that resemble FIN7 attacks less than a week after…

Cybersecurity News Week in Review:  Energy sector 3CX attack, PaperCut pain continues, all-in-one infostealer

This week’s Cyber Security Headlines – Week in Review, April 24-28, is hosted by Sean Kelly with our guest, Steve Zalewski, former CISO, Levi Strauss…

Cybersecurity News:  New BellaCiao malware, PaperCut is Clop, Europe tech crackdown

Charming Kitten APT uses a new BellaCiao malware Bitdefender has uncovered a new campaign targeting users in the U.S., Europe, the Middle East and India,…

Gartner Created Product Categories

Do we really need more categories of security products? Every new Gartner magic quadrant complicates the marketplace but at the same time helps us understand…

Cybersecurity News: Messaging malware update, China reclassifies cyberattacks, more cyberattacks don’t use malware

Messaging app update distributes malware Researchers at ESET report that in January, an update for the popular messaging app Tencent QQ began distributing the MsgBot…

“Hacking Security Culture” – Super Cyber Friday

Please join us on Friday, May 12th, 2023 for Super Cyber Friday. Our topic of discussion will be “Hacking Security Culture: An hour of critical…

Cybersecurity News: US policing AI use for civil rights violations, Bill proposes security testing centers for government tech, Edge leaking browsing data to Bing

US policing use of AI for civil rights violations On Tuesday, officials from several US government agencies warned financial firms and others that use of…

Can’t You Just Pop Out of Zeus’ Head a Fully Formed Security Professional?

Companies want to hire security professionals who know everything. Eager professionals who want all those skills are screaming please hire me and train me. But…

Cybersecurity News: Threat group taxonomy, disabling EDR, North Dakota’s AI cyber tools

A call to standardize threat group naming Last week, Microsoft’s security division announced changes to its name taxonomy for threat groups, moving from names of…

Cybersecurity News: 3CX hits utilities, CISA PaperCut warning, Hyena devours GPT4

Energy sector in US, Europe hit by same supply chain attack as 3CX Researchers from Symantec revealed Friday that trojanized software from the fintech company…

Cybersecurity News Week in Review: 3CX double supply chain attack, Remcos Tax-Day RAT, Surveillance kills morale

This week’s Cyber Security Headlines – Week in Review, April 17-21, is hosted by Rich Stroffolino with our guest, Shawn Bowen, CISO, World Fuel Services…

Cybersecurity News:  Microsoft 365 outage, Capita burglary evidence, 3CX attack update

Microsoft 365 outage blocks access to web apps and services Microsoft is investigating an outage that is blocking customers worldwide from accessing Microsoft 365 for…

[5-3-23] BSidesNOLA 2023 and CISO Series Podcast – It’s Happening!

Here’s a little preview of what’s going to happen at BSidesNOLA 2023. This is going to be a star studden cyber nerd event with Winn…