Podcasts about csirts

  • 11PODCASTS
  • 19EPISODES
  • 1h 7mAVG DURATION
  • ?INFREQUENT EPISODES
  • Jun 21, 2024LATEST

POPULARITY

20172018201920202021202220232024


Best podcasts about csirts

Latest podcast episodes about csirts

Software Engineering Institute (SEI) Podcast Series
Developing a Global Network of Computer Security Incident Response Teams (CSIRTs)

Software Engineering Institute (SEI) Podcast Series

Play Episode Listen Later Jun 21, 2024 30:51


Cybersecurity risks aren't just a national concern. In this podcast from the Carnegie Mellon University Software Engineering Institute (SEI), the CERT division's Tracy Bills, senior cybersecurity operations researcher and team lead, and James Lord, security operations technical manager, discuss the SEI's work developing Computer Security Incident Response Teams (CSIRTs) across the globe.

Paul's Security Weekly
XZ - Backdoors and The Fragile Supply Chain - PSW #823

Paul's Security Weekly

Play Episode Listen Later Apr 4, 2024 172:20


As most of you have probably heard there was a scary supply chain attack against the open source compression software called "xz". The security weekly hosts will break down all the details and provide valuable insights. https://blog.qualys.com/vulnerabilities-threat-research/2024/03/29/xz-utils-sshd-backdoor https://gynvael.coldwind.pl/?id=782 https://isc.sans.edu/diary/The+xzutils+backdoor+in+security+advisories+by+national+CSIRTs/30800 https://lcamtuf.substack.com/p/technologist-vs-spy-the-xz-backdoor https://github.com/amlweems/xzbot https://unit42.paloaltonetworks.com/threat-brief-xz-utils-cve-2024-3094/ https://unicornriot.ninja/2024/xz-utils-software-backdoor-uncovered-in-years-long-hacking-plot/ https://gist.github.com/smx-smx/a6112d54777845d389bd7126d6e9f504 https://arstechnica.com/security/2024/04/what-we-know-about-the-xz-utils-backdoor-that-almost-infected-the-world/ https://xeiaso.net/notes/2024/xz-vuln/ https://infosec.exchange/@AndresFreundTec@mastodon.social https://github.com/notselwyn/cve-2024-1086?tab=readme-ov-file https://doublepulsar.com/inside-the-failed-attempt-to-backdoor-ssh-globally-that-got-caught-by-chance-bbfe628fafdd pfSense switches to Linux (April Fools?), Flipper panic in Oz, Tales from the Krypt, Funding to secure the Internet, Abusing SSH on Windows, Blinding EDR, more hotel hacking, Quantum Bleed, and more! Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-823

Paul's Security Weekly TV
XZ - Backdoors and The Fragile Supply Chain - PSW #823

Paul's Security Weekly TV

Play Episode Listen Later Apr 4, 2024 64:22


As most of you have probably heard there was a scary supply chain attack against the open source compression software called "xz". The security weekly hosts will break down all the details and provide valuable insights. https://blog.qualys.com/vulnerabilities-threat-research/2024/03/29/xz-utils-sshd-backdoor https://gynvael.coldwind.pl/?id=782 https://isc.sans.edu/diary/The+xzutils+backdoor+in+security+advisories+by+national+CSIRTs/30800 https://lcamtuf.substack.com/p/technologist-vs-spy-the-xz-backdoor https://github.com/amlweems/xzbot https://unit42.paloaltonetworks.com/threat-brief-xz-utils-cve-2024-3094/ https://unicornriot.ninja/2024/xz-utils-software-backdoor-uncovered-in-years-long-hacking-plot/ https://gist.github.com/smx-smx/a6112d54777845d389bd7126d6e9f504 https://arstechnica.com/security/2024/04/what-we-know-about-the-xz-utils-backdoor-that-almost-infected-the-world/ https://xeiaso.net/notes/2024/xz-vuln/ https://infosec.exchange/@AndresFreundTec@mastodon.social https://github.com/notselwyn/cve-2024-1086?tab=readme-ov-file https://doublepulsar.com/inside-the-failed-attempt-to-backdoor-ssh-globally-that-got-caught-by-chance-bbfe628fafdd Show Notes: https://securityweekly.com/psw-823

Paul's Security Weekly (Podcast-Only)
XZ - Backdoors and The Fragile Supply Chain - PSW #823

Paul's Security Weekly (Podcast-Only)

Play Episode Listen Later Apr 4, 2024 172:20


As most of you have probably heard there was a scary supply chain attack against the open source compression software called "xz". The security weekly hosts will break down all the details and provide valuable insights. https://blog.qualys.com/vulnerabilities-threat-research/2024/03/29/xz-utils-sshd-backdoor https://gynvael.coldwind.pl/?id=782 https://isc.sans.edu/diary/The+xzutils+backdoor+in+security+advisories+by+national+CSIRTs/30800 https://lcamtuf.substack.com/p/technologist-vs-spy-the-xz-backdoor https://github.com/amlweems/xzbot https://unit42.paloaltonetworks.com/threat-brief-xz-utils-cve-2024-3094/ https://unicornriot.ninja/2024/xz-utils-software-backdoor-uncovered-in-years-long-hacking-plot/ https://gist.github.com/smx-smx/a6112d54777845d389bd7126d6e9f504 https://arstechnica.com/security/2024/04/what-we-know-about-the-xz-utils-backdoor-that-almost-infected-the-world/ https://xeiaso.net/notes/2024/xz-vuln/ https://infosec.exchange/@AndresFreundTec@mastodon.social https://github.com/notselwyn/cve-2024-1086?tab=readme-ov-file https://doublepulsar.com/inside-the-failed-attempt-to-backdoor-ssh-globally-that-got-caught-by-chance-bbfe628fafdd pfSense switches to Linux (April Fools?), Flipper panic in Oz, Tales from the Krypt, Funding to secure the Internet, Abusing SSH on Windows, Blinding EDR, more hotel hacking, Quantum Bleed, and more! Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw-823

Paul's Security Weekly (Video-Only)
XZ - Backdoors and The Fragile Supply Chain - PSW #823

Paul's Security Weekly (Video-Only)

Play Episode Listen Later Apr 4, 2024 64:22


As most of you have probably heard there was a scary supply chain attack against the open source compression software called "xz". The security weekly hosts will break down all the details and provide valuable insights. https://blog.qualys.com/vulnerabilities-threat-research/2024/03/29/xz-utils-sshd-backdoor https://gynvael.coldwind.pl/?id=782 https://isc.sans.edu/diary/The+xzutils+backdoor+in+security+advisories+by+national+CSIRTs/30800 https://lcamtuf.substack.com/p/technologist-vs-spy-the-xz-backdoor https://github.com/amlweems/xzbot https://unit42.paloaltonetworks.com/threat-brief-xz-utils-cve-2024-3094/ https://unicornriot.ninja/2024/xz-utils-software-backdoor-uncovered-in-years-long-hacking-plot/ https://gist.github.com/smx-smx/a6112d54777845d389bd7126d6e9f504 https://arstechnica.com/security/2024/04/what-we-know-about-the-xz-utils-backdoor-that-almost-infected-the-world/ https://xeiaso.net/notes/2024/xz-vuln/ https://infosec.exchange/@AndresFreundTec@mastodon.social https://github.com/notselwyn/cve-2024-1086?tab=readme-ov-file https://doublepulsar.com/inside-the-failed-attempt-to-backdoor-ssh-globally-that-got-caught-by-chance-bbfe628fafdd Show Notes: https://securityweekly.com/psw-823

SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast

The amazingly scary xz sshd backdoor https://isc.sans.edu/diary/The%20amazingly%20scary%20xz%20sshd%20backdoor/30802 The xz-utils backdoor in security advisories by national CSIRTs https://isc.sans.edu/diary/The+xzutils+backdoor+in+security+advisories+by+national+CSIRTs/30800 Checking CSV Files https://isc.sans.edu/diary/Checking%20CSV%20Files/30796 Infostealers Pose Threat to macOS https://www.jamf.com/blog/infostealers-pose-threat-to-macos/

SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast

The amazingly scary xz sshd backdoor https://isc.sans.edu/diary/The%20amazingly%20scary%20xz%20sshd%20backdoor/30802 The xz-utils backdoor in security advisories by national CSIRTs https://isc.sans.edu/diary/The+xzutils+backdoor+in+security+advisories+by+national+CSIRTs/30800 Checking CSV Files https://isc.sans.edu/diary/Checking%20CSV%20Files/30796 Infostealers Pose Threat to macOS https://www.jamf.com/blog/infostealers-pose-threat-to-macos/

Secure Talk - Cybersecurity
CSIRTs, ASM 2.0, and more with Dave Monnier from Team Cymru

Secure Talk - Cybersecurity

Play Episode Listen Later Aug 19, 2022 36:54


Dave Monnier, Chief Evangelist at Team Cymru talks about CSIRTs, Attack Surface Management (ASM), and explains how Team Cymru helps organizations to respond more quickly and effectively to cyber threats. https://team-cymru.com/ www.securetalkpodcast.com

Crimen Digital
#150 Hablando de cómo apoyar desde el mundo privado a los CERT y CSIRT con Katherina Canales @KatheCanales · Crimen Digital · Dixo

Crimen Digital

Play Episode Listen Later Jun 15, 2022 38:08


La experiencia de Katherina en el CSIRT de Gobierno de Chile permite identificar muchas áreas de oportunidad así como la relación que debemos tener entre el sector privado y los CERTs o CSIRTs de gobierno. Tenemos mucho por qué trabajar de la mano.

Crimen Digital
#135 CERTS y CSIRTS en América Latina con Diego Subero (@cracksub) · Crimen Digital · Dixo

Crimen Digital

Play Episode Listen Later Sep 22, 2021 35:59


Tuvimos de invitado a Diego Subero de la OEA para platicar de los CERTS y CSIRTs en América Latina.

Crimen Digital
#133 ¿Realmente se incrementaron los ataques cibernéticos? con Lucas Coronel · Crimen Digital · Dixo

Crimen Digital

Play Episode Listen Later Aug 25, 2021 32:35


Lucas Coronel, un especialista en Ciberseguridad y CSIRTs nos cuenta su visión, particulamente del sector financiero de cómo se están dandos cambios y cómo identificarlos.

HackableYou Podcast
SANS Data Breach, Live Response, CSIRTs

HackableYou Podcast

Play Episode Listen Later Aug 21, 2020 32:32


Join us in Episode 11 as we look at the Phishing attack that caused the SANS Data Breach, a credential stuffing attack against the Canadian Government, and whether paid for threat intelligence is really worth it. We introduce the concept of life response and help you understand how to do it. Last but not least Secrets from the SOC exposes how a CISRT is built up and why they are important.

Seipod
Ep.3 Surveillance Technology w/Louise Marie Hurel

Seipod

Play Episode Listen Later Mar 21, 2019 47:04


Surveillance technology is widely seen in spy fictional movies but it’s much closer to reality than perceived. In this podcast segment we talk about surveillance technology, facial recognition and how it discriminates black women and the trans community. We also touch points on how we can increase our privacy online. Speaker Profile: Louise Marie Hurel is a cybersecurity and Internet governance researcher coordinating Igarapé Institute’s projects on the Cybersecurity and Digital Liberties Program. She holds an MSc in Media and Communications (Data and Society) from the London School of Economics (distinction) and a BA in International Relations from PUC-Rio (distinction), having been awarded for her dissertation “Cybersecurity and Internet Governance: Two Competing Fields“. She’s also a research fellow at the Brazilian Naval War College (NAC-EGN) regularly writing on geopolitical implications of emerging technologies. Louise has been actively involved in Internet governance spaces serving as representative for Europe in the Non Commercial Users’ Constituency (NCUC) Executive Committee and working on capacity building and engagement through the Onboarding Program at the Internet Corporation for Assigned Names and Numbers (ICANN). Louise was also one of the Brazilian representatives at the BRICS Youth Forum 2017. She’s also a former fellow of the European School on Internet Governance (2018) II Brazilian Internet Governance School (2015) as well as a founding member of the Cybersecurity and Youth ISOC Special Interest Groups. Her previous experience includes consultancy for UNESCO project on “What if we all governed the Internet”, and research on IG, privacy, data protection and security at the Center for Technology and Society at Getúlio Vargas Foundation (CTS-FGV). Aside from her publications at Igarapé, Louise’s research focuses on interdisciplinary approaches to (in)security, also exploring the role of non-state actors in cyber norms developments (having published on Taylor and Francis Cyber Policy Journal), national and regional Internet governance experiences in Latin America (Universidad San Andrés, UPenn Annenberg School for Communication), and infrastructures of power. Recent publications include two forthcoming book chapters on “Securitization and Cybersecurity Governance in Brazil” and the role of Network Operators and CSIRTs in International Cybersecurity, respectively.

Paul's Security Weekly (Video-Only)
John Moran, DFLabs - Paul's Security Weekly #583

Paul's Security Weekly (Video-Only)

Play Episode Listen Later Nov 18, 2018 40:01


John is a Senior Product Manager at DFLabs, where he performs a wide variety of tasks from product management to content development and partner management. John Moran talks about IncMan SOAR and how DFLabs Automation & Response platform helps automate, orchestrate, and measure CSIRTs and SOCs. To learn more about DFLabs, go to: www.dflabs.com/securityweekly Full Show Notes: https://wiki.securityweekly.com/Episode583 Follow us on Twitter: https://www.twitter.com/securityweekly

interview automate senior product manager socs john moran security weekly techsegment dflabs csirts paul's security weekly dflabs automation response incman soar
Paul's Security Weekly TV
John Moran, DFLabs - Paul's Security Weekly #583

Paul's Security Weekly TV

Play Episode Listen Later Nov 18, 2018 40:01


John is a Senior Product Manager at DFLabs, where he performs a wide variety of tasks from product management to content development and partner management. John Moran talks about IncMan SOAR and how DFLabs Automation & Response platform helps automate, orchestrate, and measure CSIRTs and SOCs. To learn more about DFLabs, go to: www.dflabs.com/securityweekly Full Show Notes: https://wiki.securityweekly.com/Episode583 Follow us on Twitter: https://www.twitter.com/securityweekly

interview automate senior product manager socs john moran security weekly techsegment dflabs csirts paul's security weekly dflabs automation response incman soar
Paul's Security Weekly (Podcast-Only)
PCI Piñata - Paul's Security Weekly #583

Paul's Security Weekly (Podcast-Only)

Play Episode Listen Later Nov 17, 2018 164:33


This week, we welcome Jon Buhagiar, Network+ Review Course Instructor at Sybex for an interview to talk about Network Operations! In the Technical Segment, we welcome back John Moran, Senior Product Manager at DFLabs to talk about IncMan SOAR and how DFLabs Automation & Response platform helps automate, orchestrate, and measure CSIRTs and SOCs! In the Security News this week, 7 new Spectre/Meltdown attacks, Hacking ATM's for free cash is easier than Windows XP, AI can now fake fingerprints fooling ID scanners, and Japan's cybersecurity minister admits he's never used a computer!   Full Show Notes: https://wiki.securityweekly.com/Episode583 To learn more about DFLabs, go to: www.dflabs.com/securityweekly   Visit https://www.securityweekly.com/psw for all the latest episodes! Visit https://www.activecountermeasures/psw to sign up for a demo or buy our AI Hunter!   Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly

Paul's Security Weekly
PCI Piñata - Paul's Security Weekly #583

Paul's Security Weekly

Play Episode Listen Later Nov 17, 2018 164:33


This week, we welcome Jon Buhagiar, Network+ Review Course Instructor at Sybex for an interview to talk about Network Operations! In the Technical Segment, we welcome back John Moran, Senior Product Manager at DFLabs to talk about IncMan SOAR and how DFLabs Automation & Response platform helps automate, orchestrate, and measure CSIRTs and SOCs! In the Security News this week, 7 new Spectre/Meltdown attacks, Hacking ATM's for free cash is easier than Windows XP, AI can now fake fingerprints fooling ID scanners, and Japan's cybersecurity minister admits he's never used a computer!   Full Show Notes: https://wiki.securityweekly.com/Episode583 To learn more about DFLabs, go to: www.dflabs.com/securityweekly   Visit https://www.securityweekly.com/psw for all the latest episodes! Visit https://www.activecountermeasures/psw to sign up for a demo or buy our AI Hunter!   Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly

FIRST.org Podcasts
2016 Episode 2: Art Manion and Chris King, CERT/CC | Coordinated Vulnerability Disclosure for Vendors

FIRST.org Podcasts

Play Episode Listen Later May 18, 2016


Join the interview in progress! Art and Chris discuss their upcoming tutorial session at FIRST 2016, “Coordinate Vulnerability Disclosure for Vendors.” Their upcoming session is aimed to help vendors, providers, and CSIRTs grow their capability to handle vulnerability reports from external researchers. Art and Chris are both members of the Vulnerability Analysis Team at CERT/CC. Check their session on Monday, June 13 at 13:00 at the 28th Annual FIRST Conference.

FIRST.org Podcasts
2011.8: Jeffrey Carpenter, Technical Manager at CERT Coordination Center

FIRST.org Podcasts

Play Episode Listen Later Aug 23, 2011


Jeffrey Carpenter, Technical Manager at CERT/CC, integral member and supporter of FIRST talks to Chris John Riley about the evolution of CSIRTs as well as the importance of networking among the international CSIRT communities. Jeff also talks briefly about the Annual National CSIRT meeting that is held post-FIRST conference.