All Posts

Join us 11-03-23 for “Hacking SOC 2” – Super Cyber Friday

Please join us on Friday November 3, 2023 for Super Cyber Friday. Our topic of discussion will be “Hacking SOC 2: An hour of critical…

Cybersecurity News: Zero-day attacks affect 10,000 Cisco devices, US government warns of Confluence vuln exploitation, D-Link confirms data breach

Zero-day attacks affect over 10,000 Cisco devices Researchers have discovered attackers are exploiting a recently disclosed critical zero-day bug (CVE-2023-20198) affecting at least 10,000 Cisco…

Security Awareness Lifecycle: Turn On, Tune In, Drop Out

When it comes to security awareness, the advice generally doesn’t change. There are a set of best practices that have proven to be effective. So…

Cybersecurity News: Security camera warnings, Signal denies zero-day, Equifax fined in UK

Israeli government warns to secure home security cameras The government issued a warning, advising citizens to secure the devices to prevent access by third-parties. The…

Cybersecurity News: CDW possibly attacked, AvosLocker joint advisory, EPA rescinds water regs

LockBit claims attack on CDW The tech giant CDW is investigating claims from LockBit regarding leaks of data along with an $80 million ransom. CDW…

Cybersecurity News Week in Review: Internet-wide zero-day DDoS, 23andMe data breach, curl flaw overhyped?

This week’s Cyber Security Headlines – Week in Review, is hosted by Rich Stroffolino with guest Martin Choluj, VP Security ClickHouse  Cyber Security Headlines –…

Cybersecurity News: Microsoft thwarts Akira, Sullivan appeals conviction, ToddyCat targets telcos

Microsoft thwarts large-scale ransomware attack The Redmond giant announced that its Defender for Endpoint solution helped mitigate a “large-scale remote encryption attempt” by the ransomware…

The Value of RSA, Black Hat, and Mega Cyber Tradeshows

Are trade shows like RSA getting so big that there’s not enough economic value for a CISO to attend? Or do these events have enough…

Cybersecurity News: Hijacked 404 pages, Chinese attackers target Confluence, Adobe’s “icon of transparency”

404 pages hijacked Researchers at Akamai spotted this new campaign by the threat actors behind the Magecart payment skimmer. This hides JavaScript code in a…

Join Us 10-27-23 for “Hacking Third-Party Risk in the Cloud” – Super Cyber Friday

Please join us on Friday, October 27, 2023 for Super Cyber Friday. Our topic of discussion will be “Hacking Third-Party Risk in the Cloud: An…

Cybersecurity News: Zero-day fuels largest-ever DDoS attack, 23andMe resets user passwords after data leak, Exchange gets ‘better’ patch for critical bug

Internet-wide zero-day bug fuels largest-ever DDoS attack An Internet-wide zero-day vulnerability is to blame for a record-breaking distributed denial-of-service (DDoS) attack dubbed “HTTP/2 Rapid Reset”…

Threats In SaaS Are Closer Than They Appear

Organizations know that securing SaaS is vital. But security around SaaS apps is falling short and efforts to improve that security are complicated now that…

Cybersecurity News: Middle East hacktivists, Curl security flaw, HelloKitty improves ransomware

Hacktivist attacks abound in the Middle East According to The Register, at least 15 known ransomware groups “have announced their active participation in disruptive attacks…

What Do We Know About The Benefits and Concerns of AI?

AI can be a tremendous tool for doing things that humans aren’t great at, but implementing it without an in-depth review is a recipe for…

Cybersecurity News: MGM ransomware costs, Blackbaud breach settlement, 23andMe breach claims

MGM Resorts quotes ransomware tab at $110 million The company behind the iconic resorts that were hit by ransomware in September has stated that this…

Cybersecurity News Week in Review: Progress FTPbug, CloudFlare DDoS mistake, Lazarus Meta recruiters

This week’s Cyber Security Headlines – Week in Review, is hosted by Rich Stroffolino with guest Bob Schuetter, CISO, Ashland  Cyber Security Headlines – Week…

Cybersecurity News: Apple zero-day patch, Cisco 911 patch, ICS exposure warning

Apple rolls out patch for active iOS Zero-Day Tracked as CVE-2023-42824, this is a kernel vulnerability that can be abused for privilege escalations. Apple says…

PREVIEW: CISO Series Podcast LIVE in Mountain View 10-17-23

Guess what? CISO Series Podcast is coming BACK to Silicon Valley to be the entertainment at the ISSA Silicon Valley chapter meeting in Mountain View,…

Is Remote Work Helping or Hurting Cybersecurity?

Work from home flourished during the pandemic. Many workers love it and don’t want to go back. Some organizations are pushing for a return to…

Cybersecurity News: Red Cross hacktivist rules, Looney Tunables hit Linux, CISA violates First Amendment

Red Cross issues hacktivist rules The International Committee of the Red Cross published a set of rules regarding hacktivist activities in time of armed conflict…

PREVIEW: CISO Series Podcast LIVE in Las Vegas 10-16-23

Here’s a preview video of the live audience recording of the CISO Series Podcast at the DigiCert Trust Summit in Las Vegas on October 16,…

Cybersecurity News: GPU driver exploits, EU strengthens spyware protections, NSA’s AI Security Center

Arm and Qualcomm warn about exploited GPU drivers Earlier this week, the chip designer Arm issued an advisory about actively exploited attacks against drivers in…

We Can Name 50 CISOs. Let’s Give Them an Award!

If you search online, you’ll find no dearth of lists claiming to rank the top security leaders. The question is, how do these actually get…

Cybersecurity News: Progress FTP bug exploit, Norway urges ban on Meta data collection, KillNet claims DDoS against Royal Family website

Critical Progress FTP bug now being exploited in attacks Following up on a story we brought to you Friday on Cyber Security Headlines related to…