All Posts

Cybersecurity News: NATO cyber pledges, tax prep data shared, a decrease in crypto crime

What we know about NATO cyber pledges  At a recent NATO summit in Vilnius, Lithuania, countries in the defense organization made new cybersecurity pledges and…

Join “Hacking Bad Permissions” on 7-28-23

Please join us on Friday, July 28th, 2023 for Super Cyber Friday. Our topic of discussion will be “Hacking Bad Permissions: An hour of critical…

Want Better Security? Simply Fix Problems Faster

Our fear to fix problems that might create new problems often hampers our ability to improve security at the rate it needs. We have a…

Cybersecurity News: Silk Road advisor sentenced, HCA Health data breach, Google hit with AI tool training lawsuit

Silk Road’s senior advisor sentenced to 20 years in prison On Tuesday, the US Justice Department announced that Roger Thomas Clark, a/k/a “Plural of Mongoose”…

Who’s in Charge of Stopping Stupid Ideas? (LIVE in Tel Aviv)

Um… Maybe You Shouldn’t Have Done That. Sometimes, someone high up comes up with such a bad idea that we need someone to be the…

Cybersecurity News: JumpCloud resets API keys, Genesis Market for sale, an EU-US data transfer agreement

JumpCloud resets customer API keys The access management company informed customers that it took the action in response to an “ongoing incident.” No word on…

Remove the Malware, But Keep the File

We’ve had malware detection tools for years but malware is still getting through. Why is this still happening? Well, attackers are testing their own malware…

Cybersecurity News: BigHead Windows ransomware, RedEnergy targets utilities, more MOVEIt problems

New ‘Big Head’ ransomware displays fake Windows update alert This recently emerged ransomware strain may be spreading through malvertising that promotes fake Windows updates and…

Cybersecurity News Week in Review: TSMC supplier attacked, cardiac device warning, hospital ransomware increasing

This week’s Cyber Security Headlines – Week in Review, July 3-7, is hosted by Rich Stroffolino with our guest, Hadas Cassorla, CISO, M1 The book that…

Cybersecurity News:  Shell MOVEit breach, Pepsi bottler breach, INTERPOL nabs OPERA1ER

Shell confirms MOVEit-related breach after ransomware group leaks data Energy company Shell has confirmed that employee-related information was compromised as a result of the recent…

Let’s Write Better Cybersecurity Job Descriptions

What should a cyber job description require, and what shouldn’t it? What’s reasonable and not reasonable? Check out this post for the discussion that is…

Cybersecurity News: Japanese port hit with ransomware, EU court orders Meta data changes, White House can’t contact social companies

Japan’s major port hit with ransomware The Port of Nagoya is Japan’s busiest port, accounting for about 10% of the country’s total trade volume. The…

Do We Need To Worry About This?

“The thing you were worried about before the Black Hat conference is the same thing you’ll be worried about after the Black Hat conference,” said…

“Hacking 5G Security” – Super Cyber Friday

Please join us on Friday, July 21st, 2023 for Super Cyber Friday. Our topic of discussion will be “Hacking 5G Security: An hour of critical…

Cybersecurity News: BlackCat pushes CobaltStrike, cardiac device warning, unpatched Fortigate firewalls

BlackCat ransomware pushes Cobalt Strike via WinSCP search ads Analysts at Trend Micro are warning of a previously unknown ransomware infection vector delivered as a…

Cybersecurity News: Semiconductor giant attacked, State websites hacked, Russian Telecom infiltrated

Semiconductor giant says IT supplier was attacked, LockBit makes related claims The Taiwan Semiconductor Manufacturing Company (TSMC) has stated that one of its IT hardware…

Cybersecurity News Week in Review: SolarWinds CISO blamed, Military smartwatch mystery, submarine cable risk

This week’s Cyber Security Headlines – Week in Review, June 26-30, is hosted by Rich Stroffolino with our guest, Cassio Goldschmidt, CISO, ServiceTitan Cyber Security…

SolarWinds CISOs blamed, ThirdEye Windows malware, Government extends canary

SEC notice to SolarWinds CISO and CFO shakes up cybersecurity industry US SEC staff have recommended legal action against individual SolarWinds employees, in an unusual…

How Should Security Better Engage with Application Owners?

Since so much technology today is not launched by the IT department, but by business units themselves. How do security professionals engage with business and…

Cybersecurity News: Federal networks fail CISA rules, US AI chip bans, MOVEit victims grow

Federal network devices fail CISA requirements On June 13th, the Cybersecurity and Infrastructure Security Agency issued a directive requiring all federal civilian executive branch agencies…

Where’s My Highly Sensitive Data?

Among OpenText’s cybersecurity solutions they have a product called Final Analysis Suite that allows you to light up your content store environment. Do discovery to…

Cybersecurity News: Over 6,500 arrested since EncroChat hack, Third-party hack impacts American and Southwest, Microsoft service outage woes continue

Over 6,500 arrested since EncroChat hack by authorities During a press conference Tuesday, French and Dutch authorities provided an update on a 2020 operation in…

Password Rules Make Us Feel More Secure

Troy Hunt’s new site, “Dumb Password Rules,” demonstrates yet another slice of security theater. Rules designed to make the creator believe they’re making the business…

Cybersecurity News: Monopoly darknet charges, Activision Blizzard DDoS, 5G aircraft deadline

Monopoly darknet operator charged The US Department of Justice filed charges against Milomir Desnica, accusing the Serbian man of facilitating over $18 million in illicit…