Search this show’s transcripts

Cybersecurity Headlines

en us
Daily stories from the world of information security. To delve into any daily story, head to CISOseries.com.

Episodes

Page 31 · 50 per page
Published 2021-10-21

October 21, 2021

6 min
View

Russian firms see DDoS spike

Sinclair hack linked to Russian organization

Microsoft expires old Windows updates

Thanks to our episode sponsor, Tessian and the Human Layer Security Summit

Want to get the latest security insights from Cisco, Forrester, Intercontinental Exchange and Knowbe4? At Tessian's Human Layer Security Summit you'll get fresh insights and actionable advice to help you build an effective, future proof security strategy. Hear from top CISOs and InfoSec Leaders who will speak on the HOTTEST topics in cyber today. Join thousands of your peers by registering now at tessian.com/summit

Extract Knowledge
Published 2021-10-20

October 20, 2021

8 min
View

Ransomware reports signal lack of preparedness and willingness to pay

Acer hacked twice in a week by the same threat actor

FCC takes aim at spam texts

Thanks to our episode sponsor, Tessian and the Human Layer Security Summit

Worried if your security stack is enough for today's attack landscape? A recent Forrester Consulting study says, Human Layer Security could be the missing link. At Tessian's Human Layer Security Summit, hear why a commissioned study conducted by Forrester Consulting on behalf of Tessian has identified Human Layer Security as the missing link in enterprise security stacks. The study shows that Security and Risk Management leaders invest more in process and technology than people to improve the security of their human-layer. Hear key findings from the research from Tessian's guest speaker, Forrester senior analyst Jess Burn. Join in on the conversation at tessian.com/summit

For the stories behind the headlines, head to CISOseries.com

Extract Knowledge
Published 2021-10-19

October 19, 2021

6 min
View

Sinclair TV disrupted by ransomware

Water system proves easy target for ransomware

REvil shuts down… again

Thanks to our episode sponsor, Tessian and the Human Layer Security Summit

Want to know what we learned from analyzing 2 million malicious emails? At Tessian's Human Layer Summit you'll hear about new threat intelligence into the state of spear phishing. Guest speakers from TrustedSec and KnowBe4 will discuss what kind of attacks are getting through typical enterprise defences, what that means for user protection and what security leaders need to do about it. Join in on the conversation to learn about what we discovered by registering now at tessian.com/summit

Extract Knowledge
Published 2021-10-18

October 18, 2021

8 min
View

Missouri Governor vows to prosecute St. Louis Post-Dispatch for reporting security vulnerability

NFTs now come with wallet-emptying malware

Experts hack a fully patched iOS 15 running on iPhone 13 at China's Tianfu Cup hacking contest

Thanks to our episode sponsor, Tessian and the Human Layer Security Summit

Calling all security trailblazers! Want to get the latest security insights from Cisco, Forrester, Intercontinental Exchange and Knowbe4? At Tessian's Human Layer Security Summit you'll get fresh insights and actionable advice to help you build an effective, future proof security strategy. Hear from top CISOs and InfoSec Leaders who will speak on the HOTTEST topics in cyber today. Join thousands of your peers by registering now at tessian.com/summit

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-10-15

October 15, 2021

7 min
View

New "Yanluowang" ransomware variant discovered

Financial regulator addresses hybrid working security risks

DocuSign phishing campaign targets low-ranking employees

Thanks to our episode sponsor, Bitsight

These are challenging times for security professionals. From managing third party supply chain risk, to quantifying financial exposure, to reducing the likelihood of ransomware, BitSight helps security and risk professionals create more effective cybersecurity programs with cybersecurity ratings and analytics. Learn why Moody's, the Department of Defense, and other leading institutions partner with BitSight at www.bitsight.com

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-10-14

October 14, 2021

6 min
View

Windows 11 Patch Tuesday causes AMD performance issues

Student used zero-day for school prank

US leaves China and Russia off the anti-ransomware invite list

Thanks to our episode sponsor, Bitsight

Did you know that organizations with poor patching practices are 8 times more likely to experience a ransomware incident? From managing third party supply chain risk, to quantifying financial exposure, to reducing the likelihood of ransomware, BitSight helps security and risk professionals create more effective cybersecurity programs with cybersecurity ratings and analytics. Learn why Moody's, the Department of Defense, and other leading institutions partner with BitSight at www.bitsight.com

Extract Knowledge
Published 2021-10-13

October 13, 2021

8 min
View

Olympus suffers second cyberattack in 2021

Microsoft's Patch Tuesday squashes four zero-day vulns

White House directs federal agencies to step up EDR

Thanks to our episode sponsor, Bitsight

In spite of all the recent attacks, did you know that only 17% of organizations continuously monitor their third party vendors? From managing third party supply chain risk, to quantifying financial exposure, to reducing the likelihood of ransomware, BitSight helps security and risk professionals create more effective cybersecurity programs with cybersecurity ratings and analytics. Learn why Moody's, the Department of Defense, and other leading institutions partner with BitSight at www.bitsight.com

For the stories behind the headlines, head to CISOseries.com

Extract Knowledge
Published 2021-10-12

October 12, 2021

6 min
View

Microsoft report details the changing cybercrime landscape

LibreOffice issues fix for signed document spoofing

You got nuclear secrets in my peanut butter!

Thanks to our episode sponsor, Bitsight

Did you know that 1-in-10 organizations are now creating cybersecurity-specific committees at the board level? From managing third party supply chain risk, to quantifying financial exposure, to reducing the likelihood of ransomware, BitSight helps security and risk professionals create more effective cybersecurity programs with cybersecurity ratings and analytics. Learn why Moody's, the Department of Defense, and other leading institutions partner with BitSight at www.bitsight.com

Extract Knowledge
Published 2021-10-11

October 11, 2021

7 min
View

Google issues warning for 2 billion Chrome users

Bank of America insider charged with money laundering for BEC scams

Medtronic recalls insulin pump controllers over cyberattack risks

Thanks to our episode sponsor, Bitsight

These are challenging times for security professionals. From managing third party supply chain risk, to quantifying financial exposure, to reducing the likelihood of ransomware, BitSight helps security and risk professionals create more effective cybersecurity programs with cybersecurity ratings and analytics. Learn why Moody's, the Department of Defense, and other leading institutions partner with BitSight at www.bitsight.com

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-10-08

Week in Review – Oct 4-8, 2021

22 min
View

Link to Blog Post

This week's Cyber Security Headlines – Week in Review, Oct 4-8, is hosted by Rich Stroffolino with our guest, Adrian Ludwig, Chief Trust Officer, Atlassian

Thanks to our episode sponsor, Votiro

Your users need to accept and open files to do their jobs. Keep them safe and productive with Votiro. With Votiro, your users can download and use any file instantly, from PDF to Autodesk CAD, with malicious code already removed—and full file usability intact. The signatureless, agentless file sanitization process happens in milliseconds without user friction. Visit Votiro.com and learn why millions of users trust Votiro to disarm billions of files each year.

All links and the video of this episode can be found on CISO Series.com

Extract Knowledge
Published 2021-10-08

October 8, 2021

8 min
View

Twitch blames server error for massive data leak

Intel's €80bn European chip plant investment plan not bound for UK because Brexit

FIN12 hits healthcare with quick and focused ransomware attacks

Thanks to our episode sponsor, Votiro

Your users need to accept and open files to do their jobs. Keep them safe and productive with Votiro. With Votiro, your users can download and use any file instantly, from PDF to Autodesk CAD, with malicious code already removed—and full file usability intact. The signatureless, agentless file sanitization process happens in milliseconds without user friction. Visit Votiro.com and learn why millions of users trust Votiro to disarm billions of files each year.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-10-07

October 7, 2021

6 min
View

Introducing the Ransom Disclosure Act

Facebook details why it suffered a massive outage

Twitch's source code leaked

Thanks to our episode sponsor, Votiro

Your users need to accept and open files to do their jobs. Keep them safe and productive with Votiro. With Votiro, your users can download and use any file instantly, from PDF to Autodesk CAD, with malicious code already removed—and full file usability intact. The signatureless, agentless file sanitization process happens in milliseconds without user friction. Visit Votiro.com and learn why millions of users trust Votiro to disarm billions of files each year.

Extract Knowledge
Published 2021-10-06

October 6, 2021

7 min
View

Telegram adds 70 million users on the day of Facebook and WhatsApp outage

Android October patch fixes three critical bugs

Apache fixes actively exploited zero-day vulnerability

Thanks to our episode sponsor, Votiro

Your users need to accept and open files to do their jobs. Keep them safe and productive with Votiro. With Votiro, your users can download and use any file instantly, from PDF to Autodesk CAD, with malicious code already removed—and full file usability intact. The signatureless, agentless file sanitization process happens in milliseconds without user friction. Visit Votiro.com and learn why millions of users trust Votiro to disarm billions of files each year.

For the stories behind the headlines, head to CISOseries.com

Extract Knowledge
Published 2021-10-05

October 5, 2021

7 min
View

Major telco exchange company hacked

Facebook whistleblower comes out of the shadows

Amazon creates amazing phishing tool just in time for Christmas

Thanks to our episode sponsor, Votiro

Your users need to accept and open files to do their jobs. Keep them safe and productive with Votiro. With Votiro, your users can download and use any file instantly, from PDF to Autodesk CAD, with malicious code already removed—and full file usability intact. The signatureless, agentless file sanitization process happens in milliseconds without user friction. Visit Votiro.com and learn why millions of users trust Votiro to disarm billions of files each year.

Extract Knowledge
Published 2021-10-04

October 4, 2021

7 min
View

Transnational fraud ring stole millions from Army members, veterans

Canadian vaccine passport app exposes data

Business leaders admit willingness to pay five-figure ransoms

Thanks to our episode sponsor, Votiro

Your users need to accept and open files to do their jobs. Keep them safe and productive with Votiro. With Votiro, your users can download and use any file instantly, from PDF to Autodesk CAD, with malicious code already removed—and full file usability intact. The signatureless, agentless file sanitization process happens in milliseconds without user friction. Visit Votiro.com and learn why millions of users trust Votiro to disarm billions of files each year.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-10-01

Week in Review - Sep 27-Oct 1, 2021

23 min
View

Link to Blog Post

This week's Cyber Security Headlines – Week in Review, Sep 27-Oct-1, is hosted by Rich Stroffolino with our guest, Steve Zalewski, co-host, Defense in Depth

Thanks to our episode sponsor, VMware

ACCELERATE YOUR OWN ZERO TRUST JOURNEY. The strongest defense against modern threats comes from a Zero Trust posture. The trick is getting there — quickly and easily — from where you already are. At VMworld 2021 we'll show you how we help you operationalize Zero Trust whatever your starting point. Learn how to get the strongest security for your workloads and workspaces across your Multi-Cloud and Edge with solutions that protect inside and cross-cloud — from the API level and up — all the way to the workspace. Strength flows from the convergence of security and the network, distributed everywhere your data and endpoints are. The Networking, Security and Edge Tracks have a variety of value-packed breakout sessions. Join thousands of your peers by registering now at vmware.com/vmworld.

All links and the video of this episode can be found on CISO Series.com

Extract Knowledge
Published 2021-10-01

October 1, 2021

8 min
View

New leak of Epik data exposes company's entire server

New Azure AD bug lets hackers brute-force passwords without getting caught

Contactless payment card hack affects Apple Pay, Visa

Thanks to our episode sponsor, VMware

DO YOU KNOW ANYONE ON THE DEVELOPMENT TEAM WHO'D SAY, 'SECURITY SHOULD BE EVERYONE'S RESPONSIBILITY? Probably not. That's why Forrester and VMware have done some new research that dives into how the Development team perceives Security and what Security teams can do to make the right thing easy. We are hosting a VMworld 2021 session on this report titled "Security is Important, Said No Developer Ever." Join in on our conversation to learn about what we discovered by registering to VMworld at vmware.com/vmworld.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-09-30

September 30, 2021

7 min
View

Ransomware gangs cause headaches for hacker forums too

Don't look a Grifthorse in the mouth

Ransomware's impact on patient care

Thanks to our episode sponsor, VMware

INCIDENT RESPONSE FIRMS ENGAGE POST-BREACH – IT'S A FASCINATING VANTAGE POINT WITH LESSONS TO LEARN. Join me and thousands of our peers at VMworld 2021 to hear Dr. Amelia Estwick, Director of Threat Research here at VMware, share her perspective on the ground truth for organizations that have experienced breaches. Not to be missed! Register today at vmware.com/vmworld

Extract Knowledge
Published 2021-09-29

September 29, 2021

8 min
View

Microsoft 365 MFA outage locks users out of their accounts

Exploit released for VMware vulnerability after CISA warning

Crypto developer pleads guilty to North Korean plot

Thanks to our episode sponsor, VMware

PREPARE FOR THE POST-PANDEMIC THREAT LANDSCAPE. At VMworld 2021, you'll gain fresh insight and actionable knowledge to help keep your focus on building resilient, cyber-vigilant teams that can proactively detect, prevent, mitigate, and remediate these attacks. The Security Track has 150+ breakout sessions with hands-on labs, demos, and interactive experiences. Join thousands of your peers by registering now at vmware.com/vmworld

For the stories behind the headlines, head to CISOseries.com

Extract Knowledge
Published 2021-09-28

September 28, 2021

6 min
View

Russia muscling Big Tech

Data on billions of Clubhouse and Facebook users up for sale

Malware targets gamer accounts

Thanks to our episode sponsor, VMware

BEFORE YOU BUILD AND EVOLVE WHAT COMES NEXT – YOU HAVE TO IMAGINE IT. Join me and thousands of our peers at VMworld 2021, the virtual conference where we share how innovation across the VMware portfolio helps make your vision a reality. Register now and join us at vmware.com/vmworld

Extract Knowledge
Published 2021-09-27

September 27, 2021

7 min
View

Researcher drops three iOS zero-days that Apple refused to fix

Microsoft releases rollback fix for updates

New Cooperative ransomware negotiations get hijacked

Thanks to our episode sponsor, VMware

DO YOU KNOW ANYONE ON THE DEVELOPMENT TEAM WHO'D SAY, 'SECURITY SHOULD BE EVERYONE'S RESPONSIBILITY? Probably not. That's why Forrester and VMware have done some new research that dives into how the Development team perceives Security and what Security teams can do to make the right thing easy. We are hosting a VMworld 2021 session on this report titled "Security is Important, Said No Developer Ever." Join in on our conversation to learn about what we discovered by registering to VMworld at vmware.com/vmworld.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-09-24

Week in Review - Sep 20-24, 2021

22 min
View

Link to Blog Post

This week's Cyber Security Headlines – Week in Review, Sep 20-24, 2021, is hosted by Rich Stroffolino with our guest, Brett Conlon, CISO, Edelman Financial Engines

Thanks to our episode sponsor, Kanu Solutions

Over the next few weeks Kanu Solutions is offering a series of educational sessions on a variety of topics in security, such as endpoints, networks, privileged access management, Internet of things, and governance, risk management and compliance, or GRC. Attend these sessions to get some savvy education from the security experts at Kanu Solutions. You could also get a twenty dollar UberEats Gift Card just for attending. You can participate in Kanu Solutions' Lunch-n-Learn by registering at kanusolutions.com/events.

All links and the video of this episode can be found on CISO Series.com

Extract Knowledge
Published 2021-09-24

September 24, 2021

8 min
View

Second farming cooperative shut down by ransomware this week

Canadian VoIP provider battles massive DDoS attack

REvil double-crosses ransomware affiliates using sneaky backdoor tactics

Thanks to our episode sponsor, Kanu Solutions

Over the next few weeks Kanu Solutions is offering a series of educational sessions on a variety of topics in security, such as endpoints, networks, privileged access management, Internet of things, and governance, risk management and compliance, or GRC. Attend these sessions to get some savvy education from the security experts at Kanu Solutions. You could also get a twenty dollar UberEats Gift Card just for attending. You can participate in Kanu Solutions' Lunch-n-Learn by registering at kanusolutions.com/events.

For the stories behind the headlines, head to CISOseries.com

Extract Knowledge
Published 2021-09-23

September 23, 2021

6 min
View

Let's Encrypt root certificate may cause problems for older devices

Now we have to worry about PhaaS

Time to patch all the VMware things

Thanks to our episode sponsor, Kanu Solutions

Over the next few weeks Kanu Solutions is offering a series of educational sessions on a variety of topics in security, such as endpoints, networks, privileged access management, Internet of things, and governance, risk management and compliance, or GRC. Attend these sessions to get some savvy education from the security experts at Kanu Solutions. You could also get a twenty dollar UberEats Gift Card just for attending. You can participate in Kanu Solutions' Lunch-n-Learn by registering at kanusolutions.com/events.

Extract Knowledge
Published 2021-09-22

September 22, 2021

7 min
View

Capoae malware brute-forces WordPress sites for cryptomining

Malicious email surge predicted for Q4

Farming group warns of supply chain chaos after ransomware attack

Thanks to our episode sponsor, Kanu Solutions

Over the next few weeks Kanu Solutions is offering a series of educational sessions on a variety of topics in security, such as endpoints, networks, privileged access management, Internet of things, and governance, risk management and compliance, or GRC. Attend these sessions to get some savvy education from the security experts at Kanu Solutions. You could also get a twenty dollar UberEats Gift Card just for attending. You can participate in Kanu Solutions' Lunch-n-Learn by registering at kanusolutions.com/events.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-09-21

September 21, 2021

6 min
View

Google expands app permissions reset

Epik confirms it got hacked

Telegram suspends Russian election bots

Thanks to our episode sponsor, Kanu Solutions

Over the next few weeks Kanu Solutions is offering a series of educational sessions on a variety of topics in security, such as endpoints, networks, privileged access management, Internet of things, and governance, risk management and compliance, or GRC. Attend these sessions to get some savvy education from the security experts at Kanu Solutions. You could also get a twenty dollar UberEats Gift Card just for attending. You can participate in Kanu Solutions' Lunch-n-Learn by registering at kanusolutions.com/events.

Extract Knowledge
Published 2021-09-20

September 20, 2021

8 min
View

Email scammers posed as DOT officials in phishing messages focused on $1 trillion bill

A new banking Trojan abuses YouTube for remote configuration

Admin of DDoS service behind 200,000 attacks faces serious prison time

Thanks to our episode sponsor, Kanu Solutions

Over the next few weeks Kanu Solutions is offering a series of educational sessions on a variety of topics in security, such as endpoints, networks, privileged access management, Internet of things, and governance, risk management and compliance, or GRC. Attend these sessions to get some savvy education from the security experts at Kanu Solutions. You could also get a twenty dollar UberEats Gift Card just for attending. You can participate in Kanu Solutions' Lunch-n-Learn by registering at kanusolutions.com/events.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-09-17

Week in Review - Sep 13-17, 2021

22 min
View

Link to Blog Post

This week's Cyber Security Headlines – Week in Review, Sep 13-17, 2021, is hosted by Rich Stroffolino with our guest, Geoff Belknap, CISO, LinkedIn

Thanks to our episode sponsor, Sonrai

Sonrai is changing Public Cloud Security by focusing on protecting data from over-privileged human and non-human identities. Sonrai provides a single pane of glass built on an analytic platform that protects organizations by leveraging CSPM, CIEM, and cloud DLP at the confidence level required by your environment. Learn more about Sonrai Cloud Security at www.sonrai.com

All links and the video of this episode can be found on CISO Series.com

Extract Knowledge
Published 2021-09-17

September 17, 2021

8 min
View

New Windows security updates break network printing

Bitdefender releases decryptor as REvil shows signs of return

Biden announces joint deal with U.K. and Australia to counter China

Thanks to our episode sponsor, Sonrai

Are you a security expert who's afraid to admit you don't know what the heck is going on in your cloud? Relax. Public cloud security is overwhelming. Figuring out where to start, and what to do to track and improve your security posture, is the first step. Sonrai tracks everything in your cloud - sensitive data, identities, and platform configuration - and tells you what issues are most important, plus it measures improvement over time. Talk to Sonrai Security to learn more.

For the stories behind the headlines, head to CISOseries.com

Extract Knowledge
Published 2021-09-16

September 16, 2021

6 min
View

Travis CI security vulnerability is bad news for open source

Ransomware accounts for a quarter of cyber insurance claims

Microsoft goes passwordless

Thanks to our episode sponsor, Sonrai

Sonrai is changing Public Cloud Security by focusing on protecting data from over-privileged human and non-human identities. Sonrai provides a single pane of glass built on an analytic platform that protects organizations by leveraging CSPM, CIEM, and cloud DLP at the confidence level required by your environment. Learn more about Sonrai Cloud Security at www.sonrai.com

Extract Knowledge
Published 2021-09-15

September 15, 2021

7 min
View

Apple issues urgent updates to fix new zero-day linked to Pegasus spyware

Update Google Chrome to patch 2 new zero-day flaws under attack

New Zloader attacks disable Windows Defender to evade detection

Thanks to our episode sponsor, Sonrai

Sonrai is gaelic for data - and that's what Sonrai Security is all about. Finding, classifying, and locking down sensitive data in AWS, Azure, or Google Cloud. Sonrai can see every identity's path to every piece of data - continuously. Learn more at sonraisecurity.com.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-09-14

September 14, 2021

6 min
View

SSID Stripping is a new take on spoofing

Industrial control systems hammered by cyber attacks

Olympus has fallen...to ransomware

Thanks to our episode sponsor, Sonrai

Are you a security expert who's afraid to admit you don't know what the heck is going on in your cloud? Relax. Public cloud security is overwhelming. Figuring out where to start, and what to do to track and improve your security posture, is the first step. Sonrai tracks everything in your cloud - sensitive data, identities, and platform configuration - and tells you what issues are most important, plus it measures improvement over time. Talk to Sonrai Security to learn more.

Extract Knowledge
Published 2021-09-13

September 13, 2021

8 min
View

Windows MSHTML zero-day exploits shared on hacking forums

REvil ransomware operators targeting new victims

Yandex pummeled by Meris DDoS botnet

Thanks to our episode sponsor, Sonrai

Are you a security expert who's afraid to admit you don't know what the heck is going on in your cloud? Relax. Public cloud security is overwhelming. Figuring out where to start, and what to do to track and improve your security posture, is the first step. Sonrai tracks everything in your cloud - sensitive data, identities, and platform configuration - and tells you what issues are most important, plus it measures improvement over time. Talk to Sonrai Security to learn more.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-09-10

Week in Review - Sep 6-10, 2021

25 min
View

Link to Blog Post

This week's Cyber Security Headlines – Week in Review, Sep 6-10, 2021, is hosted by Rich Stroffolino with our guest, Matt Crouse, CISO, Taco Bell

Thanks to our episode sponsor, Semperis

One thing we've learned from attacks like SolarWinds: Cybercriminals can lurk in your Active Directory environment for weeks or months before dropping malware. How do you root them out? First, you need to uncover security gaps in Active Directory that can lead to a breach. Download Purple Knight, a free security assessment tool from Semperis that scans your environment for pre-attack and post-attack indicators of exposure and compromise. Check it out at Purple-Knight.com.

All links and the video of this episode can be found on CISO Series.com

Extract Knowledge
Published 2021-09-10

September 10, 2021

8 min
View

US considers limiting CISA director's term

'Azurescape' Kubernetes attack allows cross-container cloud compromise

Hackers leak VPN account passwords from 87,000 FortiGate devices

Thanks to our episode sponsor, Semperis

One thing we've learned from attacks like SolarWinds: Cybercriminals can lurk in your Active Directory environment for weeks or months before dropping malware. How do you root them out? First, you need to uncover security gaps in Active Directory that can lead to a breach. Download Purple Knight, a free security assessment tool from Semperis that scans your environment for pre-attack and post-attack indicators of exposure and compromise. Check it out at Purple-Knight.com.

For the stories behind the headlines, head to CISOseries.com

Extract Knowledge
Published 2021-09-09

September 9, 2021

6 min
View

Brad Smith relives early days of the SolarWinds attack

Internet Explorer zero-days are still something to worry about

German police bought NSO Pegasus spyware

Thanks to our episode sponsor, Semperis

Have you fixed PrintNightmare yet? Ransomware groups including Vice Society are already exploiting this critical flaw in the Windows Print Spooler service. But you can fight back: Download Purple Knight, a free Active Directory security assessment tool that scans your environment for PrintNightmare and more than 70 other attack indicators. To download your free tool, go to Purple-Knight.com.

Extract Knowledge
Published 2021-09-08

September 8, 2021

7 min
View

Ransomware gang threatens to leak data if victim contacts FBI, police

Personal details of French visa applicants exposed by cyber-attack

Brazil President Bolsonaro restricts powers of social media companies to remove accounts and content

Thanks to our episode sponsor, Semperis

It's no secret that Active Directory is a prime target for cybercriminals: AD is more than 20 years old, and security settings can get sloppy over time. If you haven't checked your Active Directory environment for risky settings, you might be in for a surprise. To find and fix security gaps, download Purple Knight, a free security assessment tool from Semperis that checks for 70-plus indicators of exposure and compromise. Go to Purple-Knight.com.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-09-07

September 7, 2021

6 min
View

ProtonMail shares user IP address with law enforcement

IoT attacks double in six months

Study looks at criteria for ransomware targeting

Thanks to our episode sponsor, Semperis

How would your organization score in an Active Directory security assessment? The average grade for first-time users of Purple Knight, a free security assessment tool from Semperis, is about 68%—a barely passing grade. Security and identity managers are shocked at the security gaps this tool has uncovered. But with knowledge comes power. Download Purple Knight so you can find and fix Active Directory security problems. Check it out at Purple-Knight.com.

Extract Knowledge
Published 2021-09-06

September 6, 2021

7 min
View

Cyber Command urges patching of massively exploited Confluence bug

DDoS hits New Zealand – back up again in 30 minutes

Salesforce email service used for phishing campaign

Thanks to our episode sponsor, Semperis

Do you know your Active Directory security vulnerabilities? Cybercriminals love to exploit Active Directory: It has dozens of security gaps because of misconfigurations and new sophisticated hacking tools. But hang on, help is on the way: Download Purple Knight, a free Active Directory security assessment tool from Semperis that scans your environment for 70-plus indicators of exposure and compromise. Check it out at Purple-Knight.com.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-09-03

September 3, 2021

8 min
View

WhatsApp faces $267M fine for breaching Europe's GDPR

UK VoIP telcos disrupted by cyberattacks

White House doubles down on holiday cyberattack warnings

Thanks to our episode sponsor, Semperis

One thing we've learned from attacks like SolarWinds: Cybercriminals can lurk in your Active Directory environment for weeks or months before dropping malware. How do you root them out? First, you need to uncover security gaps in Active Directory that can lead to a breach. Download Purple Knight, a free security assessment tool from Semperis that scans your environment for pre-attack and post-attack indicators of exposure and compromise. Check it out at Purple-Knight.com.

For the stories behind the headlines, head to CISOseries.com

Extract Knowledge
Published 2021-09-02

September 2, 2021

7 min
View

BrakTooth bites major SoC vendors

The cost of ransomware to schools

Posts surrounding January 6th disappear from Facebook data

Thanks to our episode sponsor, Semperis

Have you fixed PrintNightmare yet? Ransomware groups including Vice Society are already exploiting this critical flaw in the Windows Print Spooler service. But you can fight back: Download Purple Knight, a free Active Directory security assessment tool that scans your environment for PrintNightmare and more than 70 other attack indicators. To download your free tool, go to Purple-Knight.com.

Extract Knowledge
Published 2021-09-01

September 1, 2021

8 min
View

QNAP announces OpenSSL bugs fallout

Cyberattackers are now quietly selling off their victim's internet bandwidth

Indonesian government's Covid-19 app accidentally exposes over 1 million people

Thanks to our episode sponsor, Semperis

It's no secret that Active Directory is a prime target for cybercriminals: AD is more than 20 years old, and security settings can get sloppy over time. If you haven't checked your Active Directory environment for risky settings, you might be in for a surprise. To find and fix security gaps, download Purple Knight, a free security assessment tool from Semperis that checks for 70-plus indicators of exposure and compromise. Go to Purple-Knight.com.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-08-31

August 31, 2021

6 min
View

Manual Windows 11 installs might not get updates

LockBit to publish Bangkok Air customer data

Intermittent encryption hopes to make ransomware worse

Thanks to our episode sponsor, Semperis

How would your organization score in an Active Directory security assessment? The average grade for first-time users of Purple Knight, a free security assessment tool from Semperis, is about 68%—a barely passing grade. Security and identity managers are shocked at the security gaps this tool has uncovered. But with knowledge comes power. Download Purple Knight so you can find and fix Active Directory security problems. Check it out at Purple-Knight.com.

Extract Knowledge
Published 2021-08-30

August 30, 2021

7 min
View

"Worst cloud vulnerability you can imagine" discovered in Microsoft Azure

Work from home increased worldwide phishing attacks

T-Mobile hacker brute-forced his way through the network

Thanks to our episode sponsor, Semperis

Do you know your Active Directory security vulnerabilities? Cybercriminals love to exploit Active Directory: It has dozens of security gaps because of misconfigurations and new sophisticated hacking tools. But hang on, help is on the way: Download Purple Knight, a free Active Directory security assessment tool from Semperis that scans your environment for 70-plus indicators of exposure and compromise. Check it out at Purple-Knight.com.

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Published 2021-08-27

Week in Review - August 23-27, 2021

21 min
View

Link to Blog Post

This week's Cyber Security Headlines – Week in Review, August 23-27, 2021, is hosted by Steve Prentice with our guest, Edward Contreras, (@CISOEdwardC)CISO, Frost Bank

Thanks to our episode sponsor, Privacy.com

Privacy.com lets you buy things online using virtual cards instead of having to use your real ones, protecting your identity and bank information on the internet. For example, when you're shopping online and ready to check out, simply generate a Privacy Card that will enter in random variables. Should the merchant ever get hacked, the fraudsters will never have access to your real information. Privacy Cards are also great for monitoring subscriptions and signing up for free trials where a card number is required. Simply close cards whenever you want to ensure you're never charged without your consent. Sign up for free today at privacy.com/ciso. New users will instantly receive a $5 credit, to be used for any online purchase you make!

All links and the video of this episode can be found on CISO Series.com

Extract Knowledge
Published 2021-08-27

August 27, 2021

9 min
View

21-year-old claims responsibility for massive T-Mobile hack

Microsoft and Google to invest billions to bolster US cybersecurity

Ragnarok ransomware releases master decryptor after shutdown

Thanks to our episode sponsor, Privacy.com

Privacy.com lets you buy things online using virtual cards instead of having to use your real ones, protecting your identity and bank information on the internet. For example, when you're shopping online and ready to check out, simply generate a Privacy Card that will enter in random variables. Should the merchant ever get hacked, the fraudsters will never have access to your real information. Privacy Cards are also great for monitoring subscriptions and signing up for free trials where a card number is required. Simply close cards whenever you want to ensure you're never charged without your consent. Sign up for free today at privacy.com/ciso. New users will instantly receive a $5 credit, to be used for any online purchase you make!

For the stories behind the headlines, head to CISOseries.com

Extract Knowledge
Published 2021-08-26

August 26, 2021

6 min
View

Most government agencies use facial recognition

Botnet scans for vulnerabilities in Realtek chipsets

Does cyber insurance make ransomware worse?

Thanks to our episode sponsor, Privacy.com

Privacy.com lets you buy things online using virtual cards instead of having to use your real ones, protecting your identity and bank information on the internet. For example, when you're shopping online and ready to check out, simply generate a Privacy Card that will enter in random variables. Should the merchant ever get hacked, the fraudsters will never have access to your real information. Privacy Cards are also great for monitoring subscriptions and signing up for free trials where a card number is required. Simply close cards whenever you want to ensure you're never charged without your consent. Sign up for free today at privacy.com/ciso. New users will instantly receive a $5 credit, to be used for any online purchase you make!

Extract Knowledge
Published 2021-08-25

August 25, 2021

7 min
View

Modded WhatsApp delivers Triada trojan

Bahraini activists targeted with new iOS zero-click exploit

New CISA director wants to spend less time cleaning up after big hacks, more time preparing for them

Thanks to our episode sponsor, Privacy.com

Privacy.com lets you buy things online using virtual cards instead of having to use your real ones, protecting your identity and bank information on the internet. For example, when you're shopping online and ready to check out, simply generate a Privacy Card that will enter in random variables. Should the merchant ever get hacked, the fraudsters will never have access to your real information. Privacy Cards are also great for monitoring subscriptions and signing up for free trials where a card number is required. Simply close cards whenever you want to ensure you're never charged without your consent. Sign up for free today at privacy.com/ciso. New users will instantly receive a $5 credit, to be used for any online purchase you make!

For the stories behind the headlines, head to CISOseries.com.

Extract Knowledge
Show details
Episodes
1845
Transcripts
0
0% coverage
Missing transcripts
1845
With chapters
0