All Posts

Cybersecurity News – Cloudflare’s record DDoS, Shoprite hit with ransomware, threat actors target travelers

Cloudflare repels another record DDoS Cloudflare mitigated a Distributed Denial-of-Service attack with a record peak traffic of 26 million requests per second. This attack proved…

Best moments from “Hacking the Attack Surface” – Super Cyber Friday

Here’s our highlights video from Super Cyber Friday “Hacking the Attack Surface: An hour of critical thinking about losing top-down control of data and users.”…

Cybersecurity News – Pegasus takeover, ethical hacker ruling, Kaiser Permanente hack

US defense contractor discusses takeover of NSO hacking technology L3Harris, a US defense contractor, is negotiating with NSO Group to potentially acquire its controversial Pegasus…

Capture the CISO: Open Conversations Between CISOs and Vendors

What’s so awesome about CISO Series’ newest show Capture the CISO? Here’s a conversation between Capture the CISO host, Johna Till Johnson (@JohnaTillJohnso), and Dan…

I Have So Little. Just Let Me Control Access to the Mail Server.

Will employees eventually violate security policies? It’s just that the nature of doing their job over and over again a policy is bound to get…

Cybersecurity News – Travis CI leaks credentials, Exchange deploys Black Cat, tracking phones with Bluetooth

Leaky continuous integration logs  Security researchers at Aqua Security report that third-party open source developer credentials are being leaked by the hosted continuous integration service…

Cybersecurity News: Amazon’s chat app, gaming decryptors, China influencers

Amazon’s chat app has a child sex abuse problem Amazon’s chat app, it’s encrypted messaging app, Wickr Me, has become a go-to destination for people…

Cybersecurity News – Week in Review – June 6-10, 2022

This week’s Cyber Security Headlines – Week in Review, June 6-10, is hosted by Rich Stroffolino with our guest, Upendra Mardikar, CSO, Snap Finance Cyber…

Cybersecurity News – MFA a long haul for Feds, Emotet hits Google Chrome, Follina use grows

MFA could be long haul for some federal agencies says CISA official Numerous agencies have not yet met a November deadline on multifactor authentication laid…

Defense in Depth: Building a Security Awareness Training Program

We all know and have experienced bad security awareness training. People can learn, and should learn about being cyber aware. How do you build a…

Cybersecurity News – CISA calls for more ransomware reporting, snooping on SOHO routers, SSNDOB taken down

Lack of reporting hurting the ransomware fight In an interview, CISA’s executive assistant director for cybersecurity, Eric Goldstein, said that the severe lack of ransomware…

Cybersecurity News – Passwords are finally dead, Online gun sites hacked, Shields data breach

Passwords are finally dead – no, its for real this time At its Worldwide Developer Conference on Monday, Apple announced its plan to launch passwordless…

Security as a Profit Center? You’re Kidding, Right?

What if we could convince management that security is not a cost center, but a means to actually make and save money for the business?…

Cybersecurity News – AlphaBay back on top, Karakurt phones home, and China eases up on Didi

The once and future AlphaBay In July 2017, global law enforcement coordinated on Operation Bayonet to take down the dark web marketplace AlphaBay, seizing servers…

Cybersecurity News – Reverse tunnel phishing, Atlassian bug, tech antitrust bill

Evasive phishing mixes reverse tunnels and URL shortening services Security researchers are seeing an uptick in the use of reverse tunnel services along with URL…

Cybersecurity News – Week in Review – May 30-June 3, 2022

This week’s Cyber Security Headlines – Week in Review, May 30-June 3, is hosted by Rich Stroffolino with our guest, Steve Zalewski, Co-host, Defense in…

Cybersecurity News – Conti can attack firmware, UNISOC Android phone vuln, Express VPN leaves India

Leaked Conti chats confirm gang’s ability to conduct firmware-based attacks The analysis of Conti group’s chats, which were leaked earlier this year, revealed that the…

Defense in Depth: Onboarding Cyber Professionals with No Experience

You want to bring on entry level personnel, But green employees, who are not well versed in security, IT, or your data, introduce risk once…

Cybersecurity News – FluBot shut down, Hive hits Costa Rica, CISA advisory on voting machines

Europol shuts down FluBot The European law enforcement agency announced that it coordinated with eleven different countries to take down the operation behind the pernicious…

Best moments from “Hacking Malware” – Super Cyber Friday

Here is our highlights video from Super Cyber Friday “Hacking Malware: An hour of critical thinking about understanding, preventing, and dissecting malicious software.” Watch the…

Capture the CISO S1E3: Feroot, Perception Point, and Sunday Security

Welcome to episode three of Capture the CISO, hosted by Johna Till Johnson (@JohnaTillJohnso), CEO, Nemertes. Our judges are Dan Walsh, CISO, Village MD and…

Cybersecurity News – Follina update, Tension inside Google, IBM pays $1.6 billion

Follina vulnerability under active exploitation Following up on a story we brought to you yesterday on Cyber Security Headlines, Chinese-linked threat actors, known as TA413,…

Six Explanations of the Attack Surface in Two Minutes – Super Cyber Friday

Here I am with Zakir Durumeric, founder and chief scientist, Censys as he weaves one explanation of attack surface deftly into the next one. It’s…

Finding That Perfect Time to Quit Your Job

We don’t celebrate quitting. Maybe we should. When should you do it when you don’t have another offer? This week’s episode is hosted by me, David…