All Posts

Security Strategies for Volatile Cloud Containers

In this video, Jimmy Mesta (@jimmesta), CTO, KSOC and I chatted as to why we need to have a discussion around Kubernetes and container security.…

Cybersecurity News: Authorities bust NetWire RAT, CISA warns of Plex bug after LastPass breach, Blackbaud to pay $3 million for misleading disclosure

FBI and international authorities catch a NetWire RAT On Tuesday, Croatian police arrested the suspected administrator of the site which sold the NetWire remote access…

Cybersecurity News Week in Review: Royal ransomware warning, water system warning, cloud exploitation rising

This week’s Cyber Security Headlines – Week in Review, March 6-10, is hosted by Rich Stroffolino  with our guest, Nick Espinosa, Host, The Deep Dive…

Cybersecurity News: Biden’s cybersecurity budget, AT&T breach alert, GitHub adds 2FA

Biden’s budget seeks increase in cybersecurity spending A budget proposal for fiscal year 2023 put forth by the Biden administration seeks “wide-ranging investments to boost…

Can You Build a Security Program on Open Source?

What would it take to build your entire security program on open source software, tools, and intelligence? Check out this post for the discussion that is…

Cybersecurity News: TSA cybersecurity regulations, Lazarus Group zero-day, a video ransom note

TSA issues cybersecurity regulations The US Transportation Security Administration announced new regulations meant to improve cyberthreat defenses for aircraft owners and operators. Aviation operators under…

Cybersecurity News: Bipartisan bill allows US TikTok ban, Twitter content moderation concerns, Emotet malware returns

Bipartisan bill allows for US ban of TikTok On Tuesday, US senators introduced bipartisan legislation, called the RESTRICT Act, that would give the Commerce Department…

We’re Experts At Telling You To Fix Your Problems

I don’t need another vendor to find my problems. Finding my problems has not been the issue. That’s the easy part. Fixing them with the…

Cybersecurity News: DoppelPaymer disrupted, EPA warns about water security, rising cloud exploitation

Police disrupt DoppelPaymer Europol announced that law enforcement in both Germany and Ukraine coordinated to take down core members of the ransomware organization. This saw…

Cybersecurity News: CISA’s Royal warning, Chick-fil-A attacked, Play leaks Oakland

U.S. Government warns of Royal ransomware attacks against critical infrastructure CISA issued an advisory on Thursday warning of an increased threat posed by Royal ransomware.…

Cybersecurity News Week in Review: National Cyber Strategy, CISA scolds software industry, NewsCorp lurked

This week’s Cyber Security Headlines – Week in Review, February 27-March 3, is hosted by Rich Stroffolino  with our guest, Nick Vigier, CISO, Talend Cyber…

Cybersecurity News: National Cybersecurity Strategy, CISA delivers Decider, Bookstore chains hacked

White House gets tough with new National Cyber Strategy The White House brought forth its National Cybersecurity Strategy yesterday, laying out a broad-scale design for…

Third Party Risk vs. Third Party Trust

Businesses grow based on trust, but they have to operate in a world of risk. Even cybersecurity operates this way, but when it comes to…

Cybersecurity News: Russia bans foreign messaging apps, GitHub scans for secrets, Bootkit beats Secure Boot

Russia bans foreign private messaging apps The country’s internet watchdog agency, Roskomnadzor, warned that new laws went into effect, prohibiting organizations in Russia from using…

CISO Series Podcast Returns to New York City April 13th, 2023

In less than four years, CISO Series Podcast is returning to NYC for our fifth show recorded in front of a live audience. Just check…

“Hacking Kubernetes” – Super Cyber Friday

Please join us on Friday, March 17th, 2023 for Super Cyber Friday. Our topic of discussion will be “Hacking Kubernetes: An hour of critical thinking…

Cybersecurity News: US Marshals hit by ransomware, DISH outages caused by cyberattack, More bad news for LastPass

US Marshals hit by ransomware The US Marshals Service (USMS) confirmed it fell victim to a ransomware attack on February 17. The USMS tracks down…

_Saying_ “We’re 100% Secure” Is Not the Problem

It’s pretty darn easy to just utter the words “we’re 100% secure.” Pulling that off seems universally impossible, but some organizations are adamant about certain…

Cybersecurity News: CISA wants security responsibility, changes in security since Russia invaded Ukraine, Canadian government bans TikTok on its devices

CISA says to stop passing the security buck At a recent event at Carnegie Mellon University, Cybersecurity and Infrastructure Security Agency director Jen Easterly called…

Cybersecurity News: NewsCorp reveals attack, TELUS investigating leak, Dish goes offline

News Corp reveals that attackers remained on its network for two years In February of last year, the media and publishing giant News Corp revealed…

Cybersecurity News Week in Review: European airport attacks, Military email spill, Dole ransomware attack      

This week’s Cyber Security Headlines – Week in Review, February 20-24, is hosted by Rich Stroffolino  with our guest, Jared Mendenhall, Head of Information Security,…

Cybersecurity News: Dole ransomware attack, stress devours CISOs, new Lazarus backdoor

Fruit giant Dole suffers ransomware attack impacting operations One of the world’s largest producers and distributors of fruit and vegetables, the Dole Food Company, has…

How Can We Improve the Cyber Sales Cycle?

The cybersecurity sales process is so terribly inefficient. And everyone, the targets and cybersecurity leaders, are losing valuable time because of that inefficiency. Where can…

Cybersecurity News: Havok framework, Carbon Black flaw, ransomware attack time

Threat actors cry Havoc, let slip a new post-exploitation framework Use of legitimate red team software by threat actors isn’t anything new. Colbalt Strike remains…