All Posts

Hacking Compliance – Super Cyber Friday [7-15-22]

Please join us on Friday, July 15th, 2022 for Super Cyber Friday. Our topic of discussion will be “Hacking Compliance: An hour of critical thinking…

How Is Our Data Being Weaponized Against Us?

How are nefarious actors using our own data (and metadata) against us? And given that, in what way have we lost our way protecting data…

Cybersecurity News – NATO’s rapid response cyber force, deep fake job interviews, shipping cyber attacks

NATO to create rapid response cyber force The declaration calling for the force’s creation cites the success of Ukraine’s cyber defense based around a rapid…

Five Explanations of Security Reporting in 90 Seconds

Do you know what security reporting is? Do you really understand it? How about five explanations of security reporting in 90 seconds? That’s exactly what…

Cybersecurity News – Stolen PII job applications, Russia data fines, Premier League crypto

Stolen PII and deepfakes used to apply for tech jobs The Federal Bureau of Investigation (FBI) issued a warning that cybercriminals are using Americans’ stolen…

It Sure Is Fun to Complain About Security Vendors

Next time you’re annoyed by a security vendor’s pitch, instead of firing back at them at what an idiot they are, or complaining about it…

Cybersecurity News – Ransomware bug bounty, KillNet hits Lithuania, ICS security bill clears House

Ransomware gang launches bug bounty Bug bounty programs have become increasingly common with tech companies in recent years, offering monetary rewards for security researchers who…

Cybersecurity News – New phishing method bypasses MFA, Texas LNG explosion, New Italian spyware

New phishing method bypasses MFA using Microsoft WebView2 apps A new phishing technique uses Microsoft Edge WebView2 applications to steal victim’s authentication cookies, allowing threat…

Cybersecurity News – Week in Review – June 20-24, 2022

This week’s Cyber Security Headlines – Week in Review, June 6-10, is hosted by Rich Stroffolino with our guest, Marnie Wilking, CISO, Wayfair   Cyber Security…

Cybersecurity News – Cloud email threats soar 101%, NHS warns of COVID SMS scam, Fancy Bear uses nuke threat

Cloud email threats soar 101% in a year Trend Micro announced this number as their observation of growth in email-borne cyber-threats that they blocked last…

Join us on July 8th, 2022 for “Hacking Security Reporting”

Please join us on Friday July 8th, 2022 for Super Cyber Friday. Our topic of discussion will be Hacking Security Reporting: “An hour of critical…

Can Security Be a Profit Center?

Is it possible to position your security team as a profit center instead of the traditional cost center reporting to the CIO? Check out this…

Cybersecurity News – Daycare app security, Mega encryption flaws, Microsoft retires Azure Face tools

Daycare apps found insecure The Electronic Frontier Foundation looked into the security used by daycare apps, which are often required when enrolling children. It found…

Best moments from “Hacking Economics of Email Fraud” – Super Cyber Friday (Monday Edition)

Here is a compilation from our special in-person of Super Cyber Friday where our topic was “Hacking Economics of Email Fraud: An hour of critical…

Capture the CISO Finals – Season 1

A fantastic first season of Capture the CISO finishes with a fantastic finale. The show went live last Friday, June 17th, 2022, and you can…

Cybersecurity News – Cloudflare outage, new cybersecurity laws, 7-Zip Windows security

Cloudflare outage impacts crypto exchanges  On Tuesday, Cloudflare suffered a wide-spread outage affecting services of a large number of its customers including Shopify, League of…

What Does It Cost to Prove Security Is Working?

I have no idea what I need to spend to demonstrate our security program is working. What’s it going to take? Or maybe I need…

Cybersecurity News – Windows downloads blocked in Russia, Krebs on receipts, Chrome extension fingerprinting

Windows downloads blocked in Russia Russia’s TASS news agency reported that users in Russia can no longer download Windows 10 or 11 image files and…

How Can CISOs Communicate with the Board?

As a CISO, you’ve only got 10 to 15 minutes to make a real impact on the Board as to the company’s state of cybersecurity,…

CISOs Don’t Want to Click on Your “Request a Demo” Button

The “Request a Demo” button. They’re proliferating on security vendor sites like weeds. If the vendor knows how to conduct a demo, one would think…

Cybersecurity News – DoJ shuts RSOCKS Botnet, new eCh0raix target QNAP NAS, Russia’s Ukraine cyberwar

US DoJ announces shut down of Russian RSOCKS Botnet An international police operation that involved law enforcement partners from Germany, the Netherlands, and the U.K.…

Cybersecurity News – Week in Review – June 13-17, 2022

This week’s Cyber Security Headlines – Week in Review, June 6-10, is hosted by Rich Stroffolino with our guest, Ariel Weintraub, CISO, MassMutual Cyber Security…

Cybersecurity News – Vulnerable US warning, AutoSave assists ransomware, OMIGOD is back!

House Armed Services chair calls national security software, systems ‘too vulnerable’ In a story we have heard from many similar sources, the chairman of the…

Getting Ahead of the Ongoing Malware Fight

For years we’ve been referring to malware protection as a cat and mouse game. The crooks come up with a new malware attack, and then…