All Posts

Cybersecurity News: Lazarus hit CoinX, Thailand’s CardX breach, trucking software attack

Lazarus Group suspected in CoinEx robbery The theft of $31 million in digital assets from the CoinEx exchange that occurred on September 12 and that…

Cybersecurity News Week in Review: Las Vegas heists, mental health, Save the Children hit

This week’s Cyber Security Headlines – Week in Review, is hosted by Rich Stroffolino with guest Davi Ottenheimer, VP, Trust and Ethics, Inrupt Cyber Security…

Cybersecurity News:  Caesars, MGM attacks, Weather Network down, LockBit dual deployment

Caesars and MGM both caught up in Scattered Spider’s web Bloomberg is reporting that a few weeks back, another Las Vegas giant, Caesars Entertainment, paid…

Creating a Communication Framework

Communicating security issues to non-technical executives can create a surprising amount of work. David Roth, CRO, Trend Micro, talked with David Spark about how Trend…

How to Prime Your Data Lake

A security data lake, a data repository of everything you need to analyze and get analyzed sounds wonderful. But priming that lake, and stocking it…

Cybersecurity News: US asks to not pay ransoms, CISA’s open source roadmap, Save the Children ransomware attack

NSC asks governments not to pay ransoms The Record’s sources say the U.S. National Security Council will ask for commitments to countries attending the International…

Join Us 09-29-23 for “Hacking Bosses” – Super Cyber Friday

Please join us on Friday, September 29, 2023 for Super Cyber Friday. Our topic of discussion will be “Hacking Bosses: An hour of critical thinking…

Cybersecurity News: MGM Resorts disrupted by “cybersecurity incident”, Hackers access Airbus vendor info, Cryptoqueen’s sidekick sentenced

MGM Resorts slot machines and ATMs disrupted by “cybersecurity incident” MGM Resort’s main site is down, forcing visitors to make hotel reservations over the phone…

Is This Just Bad Or “Call The Feds” Bad?

In everyday life, it’s often clear when to call in the authorities. Someone egging your house might not rise to the occasion, but a break-in…

Cybersecurity News: Rising infrastructure attacks, Sponsor backdoor, Sri Lanka loses data in attack

UK government sees record critical IT infrastructure attacks The Record’s Alexander Martin reports that according to data obtained in a Freedom of Information Act request,…

Cybersecurity News:  Fake Telegram apps, Akamai defeats mega-DDoS, Rhysida hospital attacks

Evil Telegram fake apps send spyware Kaspersky has discovered some malicious apps disguised as “faster versions of Telegram” that are in fact spyware. These specific…

Cybersecurity News Week in Review: Microsoft MSA answers, Keystroke monitoring software, G-Man Mudge

This week’s Cyber Security Headlines – Week in Review, is hosted by Rich Stroffolino  with guest Dan Walsh, CISO, VillageMD Cyber Security Headlines – Week…

Cybersecurity News: China’s MSA key hack, cyberwar crimes, North Korea targeting Russia

How Chinese hackers stole a Microsoft signing key Microsoft released details how the Chinese-linked Storm-0558 threat group obtained a MSA key. The attackers used this…

Getting Ahead Of Your Threat Intelligence Program

A threat intelligence program sounds like a worthy effort in any security program. But, can you pull it off? There are so many phases to…

Cybersecurity News: CISA reporting rules, LastPass key crack, connected cars fail on privacy

CISA close to finalizing incident reporting rules The director of the Cybersecurity and Infrastructure Security Agency, Jen Easterly, said that the organization is finishing up…

Become a Contestant On Capture The CISO, Season 2

We are VERY excited to bring back our show Capture the CISO on CISO Series for a second season. But, to do so, we need…

CISO Series Podcast LIVE in Silicon Valley – 10-2023

On October 17th, 2023 we’re coming back yet again to do another live show at the ISSA-SV/SF monthly chapter meeting. Myself, David Spark, host of…

Cybersecurity News: CISA hires ‘Mudge’, Call for Congress to address AI-generated CSAM, Stake.com loses $41 million in crypto

CISA hires ‘Mudge’ to work on security-by-design principles On Monday, the US government’s cybersecurity agency (CISA) confirmed it has added Peiter ‘Mudge’ Zatko to its…

Giving Slack Slack Will Lead Your Teams to Discord

Even before the pandemic, we’ve been increasingly living in online collaboration apps. So why are organizations still making basic security mistakes with them? Is this…

Cybersecurity News: PDF MalDoc warning, MinIO storage compromises, Okta helpdesk attacks

New PDF MalDoc allows evasion of antivirus Researchers from Japanese cybersecurity research firm JPCERT/CC have identified a new technique for evading antivirus technology that is…

Cybersecurity News: X collects employment histories, Sandworm Chisel analysis, Callaway breach

X to collect member employment data The application formerly known as Twitter is now offering a new service to its X Premium members – the…

Cybersecurity News:  Gamaredon hits Ukraine, Paramount suffers breach, OpenFire gets swarmed

Gamaredon hackers hit Ukraine military The Russian hacking group Gamaredon has started to increase its attacks on Ukraine’s military and government. Its primary area of…

How Security Leaders Deal with Intense Stress

When you have an incident and you’re engulfed by the stress that lasts more than a day, how do you manage and deal with it?…

Cybersecurity News: China hacked Japan’s NISC, trafficking fuels cyber scams, China approves generative AI

Chinese threat actors breached Japan’s cybersecurity agency Earlier this month, Japan’s National Center of Incident Readiness and Strategy, or NISC, disclosed a data breach exposed…