Podcast appearances and mentions of dale drew

  • 5PODCASTS
  • 32EPISODES
  • 22mAVG DURATION
  • ?INFREQUENT EPISODES
  • Nov 3, 2019LATEST

POPULARITY

20192020202120222023202420252026


Best podcasts about dale drew

Latest podcast episodes about dale drew

Colorado = Security Podcast
140 - 11/4 - Dale Drew from the SecureWorld Stage

Colorado = Security Podcast

Play Episode Listen Later Nov 3, 2019 65:12


Dale Drew, CSO at Zayo, was our feature interview from the SecureWorld keynote stage this week. News from: Molson Coors, Ping Identity, Coalfire and a little bit more! Brewed from the waters of Lake Michigan? Alex is away, so Robb will play. And Molson Coors will leave town. Colorado will introduce digital state IDs. And Coalfire is seriously not happy with a sheriff in Iowa. Support us on Patreon! Fun swag available - all proceeds will directly support the Colorado = Security infrastructure. Come join us on the new Colorado = Security Slack channel to meet old and new friends. Sign up for our mailing list on the main site to receive weekly updates - https://www.colorado-security.com/. If you have any questions or comments, or any organizations or events we should highlight, contact Alex and Robb at info@colorado-security.com This week’s news: Join the Colorado = Security Slack channel What the Molson Coors News Really Means for Colorado Colorado now accepting digital versions of state IDs Coalfire - Coalfire CEO Tom McAndrew statement on Iowa Cybersecurity trespass case Job Openings: Ping Identity - GSI Alliances Manager Western Union - Security Architecture and Data Protection Leader Upcoming Events: This Week and Next: CTA - Cyber Resiliency: Is Your Organization Prepared? - 11/6 2019 APEX Awards - 11/6 Splunk 1st Thursdays @ Top Golf - 11/7 CSA Fall Summit - 11/7 SecureSet - Extended Capture the Flag – Beginner and Professional! - 11/9 SecureSet - Hacking 101: Creating a Virtual Lab - 11/12 ISSA Denver - November Chapter Meetings - 11/12-13 ISSA Denver - Workshop: 12 Ways to Hack MFA - 11/13 ISSA-COS - November Mini Seminar - 11/16 Other Notable Upcoming Events RIMS 2020 - 5/3-6 View our events page for a full list of upcoming events * Thanks to CJ Adams for our intro and exit! If you need any voiceover work, you can contact him here at carrrladams@gmail.com. Check out his other voice work here. * Intro and exit song: "The Language of Blame" by The Agrarians is licensed under CC BY 2.0

Colorado = Security Podcast
100 - 1/14 - Alex, Robb, and Andre celebrate #100

Colorado = Security Podcast

Play Episode Listen Later Jan 13, 2019 92:32


In this episode: Robb, Alex and Andre Gaeta talk 100 episodes of Colorado = Security. News from: Radish Systems, Apple, Hosting.com, Red Canary, Ping Identity, DarkOwl, Webroot and a lot more! What’s the traditional gift for a 100th anniversary? Millennials can’t even afford bowling in Denver, yeesh. But there’s been a lot of investment in Colorado lately. The state got a new CIO to go with that new governor. The Woz got in trouble in Boulder and made it benefited us all. Hosting and Hostway are merging. Red Canary and Ping Identity have blogs we like this week. DarkOwl talks dark web. Dale Drew makes some predictions. And Webroot wants to make sure your students know what tech to take to school. Support us on Patreon! Fun swag available - all proceeds will directly support the Colorado = Security infrastructure. Come join us on the new Colorado = Security Slack channel to meet old and new friends. Sign up for our mailing list on the main site to receive weekly updates - https://www.colorado-security.com/. If you have any questions or comments, or any organizations or events we should highlight, contact Alex and Robb at info@colorado-security.com This week’s news: Join the Colorado = Security Slack channel Cost of bowling knocks Denver down list of cities with active lifestyles $1.6 billion in 2018 investments breaks Colorado record for venture capital Radish announces leadership transition, CEO Szczurek leaves to become state’s information guru Computer dispute at CU Boulder sent Apple co-founder Steve Wozniak back to California, changing high-tech history Hostway and HOSTING Merge, Creating One of the Largest Global Managed Red Canary blog - Detecting All the Things with Limited Data Ping blog - The Hard Parts of JWT Security Nobody Talks About All Signs Point to a Law Enforcement Takedown of KickAss Forum — DarkOwl Dale Drew’s Security Predictions Webroot blog - The Must-Have Tech Accessory for Students Job Openings: Ping Identity - Manager of Security Operations and Engineering Ping Identity - GRC Analyst Charles Schwab - Managing Director - Cyber Resiliency Western Union - Dir, Application Security & Risk Cable Labs - VP Security Technologies Red Canary - Director, Intelligence Elastic - Senior Security Analytics and Detection Lead Adams 12 5 Star Schools - Cybersecurity Engineer PDC Energy - Security GRC Specialist GuidePoint Security - Systems Administrator Upcoming Events: This Week and Next: CSA January Chapter Meeting - 1/15 CitySec - January Meetup - 1/16 NCC - Meet & Greet - 1/16 SecureSet - Capture the Flag - 1/16 ISC2 Denver - January 2019 Meeting - 1/17 CTA - Insights Series | Keeping up with Innovation: The 2019 Top Emerging Technologies to Watch - 1/17 ISACA Denver - January Meeting - 1/17 ISC2 Pikes Peak - January Chapter Meeting - 1/23 SecureSet Info Night at Swimlane! - 1/24 Splunk Meetup - Boss of the SOC (BOTS) Competition - 1/24 OFFICE HOURS WITH DAVIS GRAHAM & STUBBS AND FOUNDRY GROUP - 1/25 Other Notable Upcoming Events SnowFROC - 3/14 Rocky Mountain Information Security Conference (RMISC) - 6/4-6 View our events page for a full list of upcoming events * Thanks to CJ Adams for our intro and exit! If you need any voiceover work, you can contact him here at carrrladams@gmail.com. Check out his other voice work here. * Intro and exit song: "The Language of Blame" by The Agrarians is licensed under CC BY 2.0

Recorded Future - Inside Threat Intelligence for Cyber Security
081 Thwarting Organized Crime and Protecting Major Telecoms

Recorded Future - Inside Threat Intelligence for Cyber Security

Play Episode Listen Later Nov 5, 2018 25:47


Our guest today is Dale Drew. He’s chief security officer at Zayo Group, a global provider of communications, colocation, and cloud infrastructure. Previously, he’s held leadership positions at some of the largest and most influential telecommunications companies in the world, including CenturyLink, Level 3 Communications, and MCI Communications. He shares the story of his unlikely start in the security industry, sparked by a stolen family checkbook, which led to a position with the Arizona Attorney General’s office, working to fight organized crime and racketeering. We’ll get his views on threat intelligence, and we’ll learn why he’s leading an effort to champion open source tools in the industry.

Inside Security Intelligence
081 Thwarting Organized Crime and Protecting Major Telecoms

Inside Security Intelligence

Play Episode Listen Later Nov 5, 2018 25:46


Our guest today is Dale Drew. He's chief security officer at Zayo Group, a global provider of communications, colocation, and cloud infrastructure. Previously, he's held leadership positions at some of the largest and most influential telecommunications companies in the world, including CenturyLink, Level 3 Communications, and MCI Communications. He shares the story of his unlikely start in the security industry, sparked by a stolen family checkbook, which led to a position with the Arizona Attorney General's office, working to fight organized crime and racketeering. We'll get his views on threat intelligence, and we'll learn why he's leading an effort to champion open source tools in the industry.

Colorado = Security Podcast
87 - 10/8 - Dale Drew, CSO at Zayo

Colorado = Security Podcast

Play Episode Listen Later Oct 7, 2018 73:59


In this episode: Dale Drew, CSO at Zayo is our feature interview this week. News from: Richey May, LogRhythm, Ping Identity, Red Canary, Alchemy Security, Rule 4 and a lot more! Selfies Kill More People Than Sharks A selfie couldn’t hurt anyone. Could it? Denver is the 5th fastest-growing big city in the US. But Colorado execs are losing their swagger. Richey May isn’t… they bought some other companies. Blockchain is blockchaining a blockchain. Blockchain. LogRhythm got a patent. LogRhythm, Ping Identity, and Red Canary write blogs (and stuff). Alchemy Security is offering a new service. Rule4 is upon us. Support us on Patreon! Fun swag available - all proceeds will directly support the Colorado = Security infrastructure. Come join us on the new Colorado = Security Slack channel to meet old and new friends. Sign up for our mailing list on the main site to receive weekly updates - https://www.colorado-security.com/. If you have any questions or comments, or any organizations or events we should highlight, contact Alex and Robb at info@colorado-security.com Local security news: Join the Colorado = Security Slack channel 250-plus worldwide have died taking selfies, study finds Denver named 5th fastest-growing big city in US; Loveland, Greeley among fastest-growing overall Colorado executives losing confidence in economy, survey says RICHEY MAY ACQUIRES TWO I.T. CONSULTING FIRMS: ARROW PARTNERSHIP AND CORPORATE BLUE Global Blockchain Summit Returns As The Cornerstone Of Denver Blockchain Week APEX Award finalists announced for Nov. 7 CTA event LogRhythm Gets Patent For Data Processing Technology Facebook Data Breach Highlights API Vulnerabilities Ping's CISO Advisory Council Provides Guidance for Security and Business Leaders Insecure FTP Transfers in SCADA Environments Attacking a Mac: Threat Detection #392 Alchemy Security Expands Cloud Security Portfolio with Alchemy Defense Cloud ProtectWise Raises $5m Rule4 launched Job Openings: Ping Identity - Cloud Security Architect Aegon - Director of Cyber Security Kaiser Permanente - Senior Manager Cyber Risk Defense Cognizant - Sr. Manager , CS - Cyber Security Architecture Apple - Security Tools Developer/Engineer Zayo Group - Cyber Security Analyst III Digital Globe - Security Architect Carbon Black - Threat Researcher DarkOwl - Threat Intelligence Analyst Alchemy Security - Junior Analyst - Night shift Red Canary - Account Executive Upcoming Events: This Week and Next: Secureset - Hacking 101: Asset Management with Matthew McDonell - 10/8 NCC - Cyber Symposium - 10/8-9 ISSA Denver - October Chapter Meetings - 10/9-10 CYBER RISK MANAGEMENT - 10/10 ISSA COS - Professional Networking Event - 10/11 Invitation to Participate: Industry-University Center for Intelligent IoT - 10/11-12 Lockpicking Event at Kivu Consulting - 10/12 CTA - CTA 101 - 10/17 DenSec - October Meetup - 10/17 Secureset - Cybersecurity Career Convos: Elaine Marino, Equi.li and Lady Coders - 10/18 Other Notable Upcoming Events SecureWorld Denver - 10/31-11/1 CTA - Apex Awards - 11/7 CSA - CO Fall Summit - 11/8 View our events page for a full list of upcoming events * Thanks to CJ Adams for our intro and exit! If you need any voiceover work, you can contact him here at carrrladams@gmail.com. Check out his other voice work here. * Intro and exit song: "The Language of Blame" by The Agrarians is licensed under CC BY 2.0

The CyberWire
Vault7 leak: Brutal Kangaroo toolkit. Data breach and ransomware updates. Notes on code audit requirements.

The CyberWire

Play Episode Listen Later Jun 23, 2017 20:01


In today's podcast we hear about how Brutal Kangaroo has hopped out of Vault 7—don't let it poke your device with a thumb drive. Big data leaks wind up being traded on the black market. The dangers of careless configuration of an S3 bucket. Ransomware remains pricey. It can also serve as misdirection. Dale Drew from Level 3 Communications shares lessons from WannaCry. Darron Gibbard from Qaulys offer his take on the EU's GDPR. Software companies receive and respond to code audit requirements as a condition of doing business in Russia.

The Tech Blog Writer Podcast
256: Why Healthcare Security Is Vulnerable and Botnets & Ransomware Remain Our Biggest Threat

The Tech Blog Writer Podcast

Play Episode Listen Later May 11, 2017 26:15


Dale Drew, the CSO of Level 3 covers the following security topics in a conversation with Neil Hughes. The evolution of the botnet Botnets are becoming more sophisticated – which means they are becoming harder to detect, track and take down. Dale has some interesting stats around costs to rent botnets and the percentage of internet traffic that is bad/botnet traffc. The state of healthcare security Despite breaches increasing in volume and sophistication, only about 1/3 of healthcare organizations are highly concerned over a breach impacting critical care in the next year according to a study conducted by HIMSS Analytics we recently announced. A few other key takeaways: Nearly 80 percent of survey participants identified employee security awareness as the source of their greatest concern regarding threat exposure. Respondents identified which systems have the greatest need for network uptime – including those needed to deliver critical care. The majority of organizations employ multiple risk mitigation practices – and Dale can walk through what those as well as what organizations are looking to do in the next two years. The big threat for 2017 = Ransomware Startling recent findings include victims are paying and nearly half of consumers haven’t heard of ransomware.  About Dale Drew As Chief Security Officer, Dale is responsible for Level 3's Global Global Security Program; Corporate and Product Security Policies, Logical Security, Physical Security, Voice/VoIP Fraud, Managed Security, Corporate Risk, Governance, Federal Programs and Corporate Investigations programs. Dale manages Level 3's centralized Global Security organization that encompasses both responsibility for Level 3's internal assets, and all product and service portfolios. About Level 3 Level 3 Communications is a premier global communications provider headquartered in Broomfield, Colorado, that provides communications services to enterprise, government and carrier customers. Anchored by extensive fiber networks on three continents and connected by undersea facilities, our global services platform features deep metro assets reaching more than 500 markets in more than 60 countries.

The CyberWire
Shamoon update. Sabre discloses possible breach to SEC. Mobile device and VPN threats and vulnerabilities. Information operations and cyberespionage.

The CyberWire

Play Episode Listen Later May 3, 2017 14:49


In today's podcast we hear that Shamoon's Trojan servant seems to have got a new comms channel. Sabre discloses possible breach: hospitality and travel sectors affected. Some more things to worry about: ultrasonic beaconing, SIM card fraud, VPN privilege escalation, and another bad app in the PlayStore. (But you can fix all these.) Governments look to social media restrictions to control hate speech and fake news. (Social media providers look to human curation and the blockchain for help.) Level 3's Dale Drew describes the evolution they're seeing in botnets. Tripwire's Craig Young shares his research on hacking smart TVs. Cyberespionage and influence updates, from Washington to Seoul.

The CyberWire
Operation Cloudhopper. Chrysaor spyware. Microsoft to upgrade Office security. Notes from SeaAirSpace. High school hacking.

The CyberWire

Play Episode Listen Later Apr 5, 2017 15:01


In today's podcast, we hear about how Operation Cloudhopper gets to its espionage targets via their cloud and managed service providers. Details are out on the Android version of the Pegasus spyware. Microsoft will upgrade Office security. Notes on the annual SeaAirSpace expo, including an excursus on cyber Marines. Cisco’s Chief Privacy Officer Michelle Dennedy joins us from the Women in Cybersecurity Conference. Dale Drew from Level 3 describes the security ecosystem disruption. And what is going on in Bedford County, Pennsylvania, a place where the laws of physics may not apply?

The CyberWire
Newly disclosed threats and vulnerabilities, mostly criminal. Catphishing peer review. The US may indict North Korea for the Bangladesh Bank heist.  

The CyberWire

Play Episode Listen Later Mar 23, 2017 15:07


In today's podcast we offer a rundown of recently announced threats and vulnerabilities in stores and documents: Play Store, App Store, and MS Office. Some crooks move to the cloud. GoDaddy buys Sucuri. The US is rumored to be preparing a North Korean indictment for the Bangladesh Bank heist. Social media look for bad bots. Level 3's Dale Drew describes botnet evolution. LookingGlass' Eric Olson explains FaceBook Marketplace security. And some dodgy scientific journals seem to use catphish for peer review.

The CyberWire
WikiLeaks and Vault 7

The CyberWire

Play Episode Listen Later Mar 8, 2017 15:00


In today's podcast we talk over the latest news, rumors, gossip, and common sense surrounding WikiLeaks and its Vault 7 dump of hacking tools and other spy stuff. And wait a minute—do angels really weep? After all, they're supposed to be pure intelligence. But you came here for the hacking, not the angelology, and there's a lot of stuff dancing around in Vault 7. Research Scientist Jim Walter from Cylance weighs in with his take. Some people even see dancing Bears, but we think they're seeing things. Dale Drew from Level 3 Communications tracks changes they’re seeing in DDoS attacks.

The CyberWire
Ukraine accused Russia of renewed hacking by BlackEnergy actors. ASLR bypass proof-of-concept reported.  Notes from RSA, and an update on Android gunnery malware.

The CyberWire

Play Episode Listen Later Feb 16, 2017 14:33


In today's podcast, in addition to notes from RSA, we hear some fresh accusations of Russian government hacking from Ukraine. Threat actors adapt. ASLR bypass exploit demonstrated. Yahoo!'s acquisition by Verizon appears likely to be deeply discounted. From RSA, notes on coming industry consolidation. Dale Drew from Level 3 Communications offers a strategy for choosing security vendors. James Lyne from Sophos provides his take of the RSA conference from the show floor. An update on the Popr-D3 Android malware. How they name the bears.

The CyberWire
Brokerages in Taiwan face DDoS extortion. Polish banks hit in watering hole attack. Cyber vigilantes. Information operations. ShadowBrokers update?

The CyberWire

Play Episode Listen Later Feb 7, 2017 14:58


In today's podcast, we hear about brokerages in Taiwan being extorted with threats of DDoS. Polish banks compromised in watering hole campaign. Criminals turn from JavaScript to less obviously suspicious kinds of files. Cyber vigilantes poke at unsecured printers and dark web hosting. China ratchets up its efforts to control its Internet. The US shares classified intelligence on Russian influence operations with European allies, and works on its own information operations capability. Dale Drew from Level 3 Communications takes note of the increase in ransomware. Rami Essaid from Distil Networks describes efforts to combat ticket scalping bots. And a former NSA contractor will probably face espionage charges related to the ShadowBrokers.

The CyberWire
LeakedSource is down. DoubleFlag's called out for bogus stolen goods. Fancy Bear is in UK, German networks. Shamoon alert in Saudi Arabia. Scamming tech support scammers.

The CyberWire

Play Episode Listen Later Jan 27, 2017 19:54


In today's podcast, we hear that LeakedSource is down, maybe for good. DoubleFlag seems to be selling bogus data on the black market. (And where, we ask, is the Ripper review? If you can't trust a criminal, who can you trust these days? Sad.) Fancy Bear is back—actually, she never really left—now snuffling at British and German networks. Saudi Arabia remains on Shamoon alert. The Dridex banking Trojan has reappeared, in an improved version. Dale Drew from Level 3 Communications shares findings on the Asia Pacific region. Vince Crisler from Dark Cubed puts Grizzly Steppe in perspective. And tech support scammers get scammed—don't try this at home.

The CyberWire
Election influence and election security. Threats to power grids. Ransomware and phishing updates. Loyalty program risks.

The CyberWire

Play Episode Listen Later Jan 17, 2017 14:27


In today's podcast we hear warnings that electrical utilities should regard hacks of Ukraine's power grid as a wake-up call (the squirrel threat notwithstanding). Various nations work to shore up their defenses against Russian government hacking and influence operations. Russia protests its innocence, but there are some reliable reports of Fancy Bear sightings in Norway. Cyber criminals are back, except for those behind Locky ransomware, who seem to still be on holiday break. New approaches to ransomware and phishing. Dale Drew from Level 3 Communications tell us about the BGP Flowspec. And a loyalty program at the Golden Arches may be proving problematic. 

The CyberWire
Daily: Nation-state hacking (and nation-state victims of hacking). Loyalty program breaches, and a new Android Trojan strain.

The CyberWire

Play Episode Listen Later Dec 14, 2016 14:53


In today's podcast, we learn that Ukraine says its Defense Ministry was hacked, probably by Russia. US investigations of apparent Russian influence operations during elections continue. Venezuela talks up cyber threats as contributing to its financial crises. Dr. Web reports a new Loki Trojan variant in the wild. BugSec and Cynet disclose Facebook Messenger flaw (now patched). Level 3's Dale Drew provides insights on nation state hackers. Omri Iluz from PerimeterX warns us about gift card fraud. Colonel's Club breached. And hacktivists go after Russian consular data.

The CyberWire
Daily: ISIS online sympathizers (but not ISIS itself, which is lying a bit low) claim Ohio State attacker. German security agencies warn of possible Russian disruption of elections. Mirai strikes again. San Francisco's Muni shrugs off ransomware. A look a

The CyberWire

Play Episode Listen Later Nov 29, 2016 15:01


In today's podcast, we hear about how ISIS sympathizers are celebrating the Ohio State slasher rampage in social media. Germany's BND warns of Russian plans to disrupt elections. Deutsche Telekom recovers from a Mirai-driven DDoS attack. San Francisco's light rail recovers from ransomware (and resumes collecting fares). Holiday retail cyber security trends. A look into the dark web. Continuing security troubles for former and prospective US Secretaries of State. Level 3's Dale Drew takes a look at critical infrastructure. The Carter Administration gets doxed, and xHamster is breached.

The CyberWire
Daily: Russian banks suffer IoT botnet DDoS. Fancy Bear's still phishing. Lessons from Tesco fraud. Third-party risk hits Michael Page. Casino Rama data breach. Adult website loses data for 339 million accounts. FTC litigation. Moscow anti-trust case.

The CyberWire

Play Episode Listen Later Nov 14, 2016 14:52


In today's podcast, we follow up on last week's DDoS against Russian banks. Fancy Bear's been poking at think tanks, and ESET has a rundown of Fancy's fancies over the last couple of years. DDoS can be low and slow as well as high and noisy. Banks consider cyber lessons learned from Tesco heists. International recruiter Michael Page blames a third-party for data loss. Canada's Casino Rama—that's the casino's name—sustains a breach. A family of sites none of you would visit is also breached—we tell you because you're probably asking on behalf of 339 million friends. LabMD wins a stay against the FTC. Level 3's Dale Drew considers the changing nature of the IoT. And Kaspersky takes Microsoft to court in Moscow on an anti-trust beef.

The CyberWire
Daily: Halloween special: mummies, lycanthropes, vampires, villagers with pitchforks, and virtual stakes through virtual hearts.

The CyberWire

Play Episode Listen Later Oct 31, 2016 13:40


In today's Halloween podcast, we consider post mortems on the October IoT distributed denial-of-service attacks, which suggest there are bigger problems than just factory settings. Recalls of potentially compromised devices continue, and some think about hacking back. (A hint—think twice.) HackForums pulls down its network stressor offerings. South Korea says the North is up to more cyber badness. US election hacking concerns continue. The FBI reopens its email inquiry. Level 3's Dale Drew discusses the growing scale of online attacks. And observers wonder, what do you have to do to lose a clearance?

The CyberWire
Daily: US attributes DNC hacking to Russian government, promises to protect itself. Russia dismisses attribution as "rubbish." WikiLeaks posts Clinton campaign emails.

The CyberWire

Play Episode Listen Later Oct 11, 2016 14:56


In today's podcast, we hear about Industrial control system worries in the electrical power sector. IoT botnets spook the EU, and research into Mirai reveals some interesting features of last month's DDoS attacks. The US Intelligence Community says officially that the Russians are trying to influence US elections. The Russians say it's rubbish, and the candidates swap accusations. WikiLeaks doxes the Clinton campaign. Level 3's Dale Drew discusses the security of election systems. Smrithi Konanur from HPE Data Security explains credit card security. The FBI wants another terrorist's iPhone unlocked. Verizon mulls the price at which it might now buy Yahoo! And experts suggest best practices for Cyber Security Awareness Month.

The CyberWire
Daily & Week in Review: VIPs scrub email, cyber war vs cold war, industry news and more.

The CyberWire

Play Episode Listen Later Sep 16, 2016 19:57


In today's podcast, we hear about VIPs everywhere rushing to delete their emails before Fancy Bear gets her paws into them. Opinion leaders rumble about the Cyber War having picked up where the Cold War left off. Election security concerns may prompt US Senate hearings. British companies take a look at operations in the Baltimore-Washington area. Other industry notes include VC rounds, M&A activity, a new automotive cyber security venture, and the announcement of 2016's SINET 16. Dale Drew from Level 3 Communications offers tips on protecting medical data. We speak with IBM's Shelley Westman about encouraging more women to join the industry. And the US House doesn't think too much of a Snowden pardon.

The CyberWire
Daily & Week in Review: Election hacking, OS X patched, cyber saber-rattling, finding security talent, and more.

The CyberWire

Play Episode Listen Later Sep 2, 2016 20:02


In today's podcast, we discuss Apple's patches against the Trident zero-days, and review what the press is saying about the cyber arms market. Policy wonks and politicians speak in favor of cyber offense, and militaries speak up for nuance. Election hacks continue, this time in Hong Kong. How companies and governments adjust to a difficult cyber labor market, with insights from Level 3's Dale Drew. Gene Stevens from ProtectWise explains the contribution of interface design to security. Responsible disclosure, stock shorting, and the importance of cooperation between vendors and researchers. A quick look at the week in the security industry. More old breaches show its's a bad idea to reuse passwords. And Guccifer gets four years.

The CyberWire
Daily: Info ops drive hacks. Cryptowar resurgence in Europe, and more.

The CyberWire

Play Episode Listen Later Aug 25, 2016 14:57


In today's podcast, we look at ways in which terrorist incidents have motivated France and Germany to seek ways of compelling encrypted messaging apps to open traffic to inspection. In the UK such incidents have also prompted a harsh Parliamentary report on social media companies' efforts to combat radicalization. Shadow Brokers leaked exploits continue to appear in the wild. Investigation continues, but observers begin to see the incident as part of a general attack on US official credibility. Assange promises more leaks of Clinton material. Ransomware appears in India and Vietnam. A new Android banking Trojan uses Twitter for command-and-control. Dale Drew from Level 3 Communications shares tips on setting up a SOC, and Ralph Cita explains how they make free training available at Cybrary. And Ashley Madison gets bad reports in three of the Five Eyes.

The CyberWire
Daily: Election, infrastructure hacks in US, Russia. Advice on Black Hat.

The CyberWire

Play Episode Listen Later Aug 1, 2016 12:53


In today’s podcast we hear about Russian reports of an APT active against military, scientific, defense, and government networks. US investigations into the hacks of the DNC, DCCC, and Clinton campaign continue, with suspicion still directed at Russia. ISIS calls online for an extension of jihad to Russia. The SpyNote Android Trojan is out in the criminal underground. Researchers report vulnerabilities associated with WhatsApp and SwiftKey. And we share some security advice from Level 3's Dale Drew for those attending Black Hat.

The CyberWire
Daily: DNC hacks, encryption, IoT hacks, and Pokémon.

The CyberWire

Play Episode Listen Later Jul 27, 2016 14:59


In today’s podcast we discuss ISIS terror and online inspiration. We learn that experts are reaching consensus that Russia hacked the US Democratic National Committee, and we hear some steps that might be taken to protect email. We speak with the company that provided cyber security for the Republican National Convention. New vulnerabilities are discovered in wireless keyboards and smart lightbulbs. Ransomware persists, and the numner of DDoS attacks seems to be spiking, recently. The White House issues PPD-41, “Cyber Incident Coordination.” Level 3's Dale Drew speaks to the uptick in DDoS attacks, and Vince Crisler from Dark Cubed shares his experiences protection the RNC national convention from cyber threats.  And people are still catching Pokémon in places they shouldn’t.

The CyberWire
Daily: Slinging cyber lingo. Bad robots. Pokémon Go's long march.

The CyberWire

Play Episode Listen Later Jul 14, 2016 14:20


In today's podcast we hear about some expansive court decisions that may make you uneasy. Chinese spies get into the FDIC, and the victim may have covered it up. Start-ups attract fresh investment. New exploit kits jockey for position. Securing your Bitcoin wallet. What to make of Pokemon's security issues. Dale Drew from Level 3 Communications gives us the low-down on some cyber security lingo, and Darin Stanchfield from KeepKey explains options for securing your Bitcoin. And, in California, an alleged violation of Asimov's First Law of Robotics.

The CyberWire
Daily: Hacktivism or denial-&-deception? (Smart money's on D&D.) LizardStressor herds CCTV bots.

The CyberWire

Play Episode Listen Later Jun 30, 2016 12:30


In today's podcast we hear about DarkOverlord and the data he's selling online. Guccifer 2.0 returns to blogging, and says he's not working for the Russians, but CrowdStrike, ThreatConnect, and SecureWorks present evidence to suggest otherwise. Thompson-Reuters says it's contained the World-Check database leak. Oculus' Twitter account is briefly hijacked (now restored to company control). Point-of-sale breach disclosures are confirmed. Why hackers hack when they do. Some governments' efforts to control information online seem to be having greater than expected success. Level 3's Dale Drew explains the season nature of cyber attacks, and Cytegic's Dan Pastor offers his view on the recent SWIFT banking attacks.

The CyberWire
Daily & Week in Review: Car hacking. Flash Player Patched. DNC hack updates, fighting terror in cyberspace.

The CyberWire

Play Episode Listen Later Jun 17, 2016 19:54


In today's podcast we continue to follow the developing story of the Democratic National Committee hack (Russia denies responsibility, but CrowdStrike stands by its attribution). DNC chair Wasserman Schultz says no financial information was lost, and on cue Guccifer 2.0 produces some. The FBI continues its probe of possible ISIS connections to the Orlando killings. Researchers describe an approach to developing intelligence from social media. FireEye is said to be uninterested in being acquired. Tanium's not interested, either. Some serious bugs are addressed this week. Dale Drew from Level 3 compares honey pots to live data and Craig Smith from Open Garages takes us on the road to car hacking.

The CyberWire
Daily: Ransomware threats. Industry (mostly good) news. US State Department IG reports on email.

The CyberWire

Play Episode Listen Later May 26, 2016 12:00


In today's podcast we hear about security in international banking, some developments in the world of malware, and how presidential impersonation and a big loss cost a CEO his job. Analysts like some of the bigger cyber players (and they're waiting for Palo Alto's results tonight). VCs back three security companies with new funding. The State Department IG's report on email retention and security is out. DARPA wants to secure legacy IT systems, and US SOCOM wants innovative cyber tools. Dale Drew from Level 3 Communications walks us through the negotiations of ransomware, and Danny Rogers from Terbium Labs explains how to search for something when you don't know what that something is.

The CyberWire
Daily & Week in Review: Responsible disclosure & why the cool miscreants are on Twitter.

The CyberWire

Play Episode Listen Later May 6, 2016 17:28


Today we hear about what's going on with proof-of-concept exploits. Ransomware continued its run this week, but DDoS shouldn't be forgotten, either--it's good for both business interruption and misdirection. Thoughts on those 270 million email credentials. A couple of big security companies post Q1 results, and Adrian Turner, CEO of Australia's Data 61, explains the future of that nation's domestic cyber sector. Dale Drew from Level 3 Communications shares the news of a new DDoS technique. The LAPD succeeds in cracking an iPhone 5s. And where in the world is Satoshi Nakamoto? 

The CyberWire
Daily: Australia's new cyber strategy, Dorkbot's old; CryptXXX is new.

The CyberWire

Play Episode Listen Later Apr 21, 2016 10:01


In today's Daily Podcast we hear about CryptXXX—recently discovered ransomware—and about old, familiar Dorkbot. The US Congress continues to mull legislation that would mandate decryption, and the banking and tech sectors don’t care at all for what they see in those pending bills. Australia announces its cyber security strategy, and says that its national capabilities definitely include offensive ones. Jason Lewis from LookingGlass warns us about third party network access, and Dale Drew from Level 3 Communications emphasizes the importance of collaboration.

The CyberWire
Daily: Info ops for and against ISIS. Industry notes.

The CyberWire

Play Episode Listen Later Apr 14, 2016 9:57


In today's Daily Podcast we discuss ISIS info ops and the cyber war the US is waging against the terrorist group. Ransomware phishing now show signs of knowing its targets' physical addresses. Patch Tuesday also saw updates from Cisco and Google. Cyber sector IPO rumors and declarations of intent. A Department of Justice lawyer, speaking for himself, thinks the debate over offshore accounts should inform thinking on the debate over privacy and security. Plus, Dale Drew from Level 3 Communications explains the importance of having a threat research lab.