Podcasts about mental health hackers

  • 20PODCASTS
  • 26EPISODES
  • 59mAVG DURATION
  • ?INFREQUENT EPISODES
  • Feb 28, 2025LATEST

POPULARITY

20172018201920202021202220232024


Best podcasts about mental health hackers

Latest podcast episodes about mental health hackers

The Cybersecurity Defenders Podcast
#197 - Avoiding burnout and a managing stress with Amanda Berlin, CEO of Mental Health Hackers

The Cybersecurity Defenders Podcast

Play Episode Listen Later Feb 28, 2025 28:45


In this episode of The Cybersecurity Defenders Podcast, we discuss stress management and avoiding burnout with Amanda Berlin, CEO of Mental Health Hackers.Amanda is the Senior Product Manager of Cybersecurity at Blumira, where she collaborates with a talented team to make security more accessible. With a career in IT spanning nearly her entire adult life, her expertise includes infrastructure security, network troubleshooting, purple teaming, and security awareness training.Beyond her role at Blumira, Amanda leads Mental Health Hackers, an organization dedicated to addressing the unique mental health challenges faced by cybersecurity professionals and heavy technology users. Through education and advocacy, she helps shine a light on the critical intersection of mental health and the tech industry.All of the links:Coffee bot: DonutsBook: The Fearless OrganizationAmerican Psychological AssociationMental Health hackers next at: Bsides Charm in Baltimore, Blue Team Con in Chicago... check social media for more

The Mindful Business Security Show
Starting a cybersecurity program in a Small Business

The Mindful Business Security Show

Play Episode Listen Later Dec 21, 2023 58:05


The Mindful Business Security Show is a call-in radio style podcast for small business leaders. Join our hosts as they take questions from business leaders like you! In this episode, Accidental CISO is joined by guest host Amanda Berlin. Amanda leads Detection Engineering at Blumira, where she and her team analyze the tactics, techniques, and procedures used by cyber criminals and create detection rules to spot the nefarious activity and protect their customers' systems. When she isn't ruining the day for the bad guys, she runs a non-profit called Mental Health Hackers that is dedicated to mental health among cyber professionals, produces training content for Antisyphon Training, and co-hosts the Brakeing Down Security podcast.   You can find Amanda on LinkedIn.   In this episode, Amanda mentioned several free tools and resources. Microsoft Sysmon Incident Response dot Org Microsoft IR Playbooks CISA Incident Response Playbooks   Are you struggling with how to deal with Cybersecurity, Information Security, or Risk Management in your organization? Be a caller on a future episode of the show. Visit our podcast page and sign up now!   Show Merch: https://shop.mindfulsmbshow.com/ Website: https://www.focivity.com/podcast Twitter: @mindfulsmbshow Hosted by: @AccidentalCISO Produced by: @Focivity Music by Michael Korbin from Pixabay

Brakeing Down Security Podcast
Megan Roddie - co-author of "Practical Threat Detecion Engineering"

Brakeing Down Security Podcast

Play Episode Listen Later Aug 25, 2023 106:53


Disclaimer: The views, information, or opinions expressed on this program are solely the views of the individuals involved and by no means represent absolute facts. Opinions expressed by the host and guests can change at any time, and do not represent views of past, present, or future employers. Buy here: https://subscription.packtpub.com/book/security/9781801076715 Amazon Link: https://packt.link/megan Youtube VOD: https://www.youtube.com/watch?v=p1_jQa9OQ2w   Show Topic Summary: Megan Roddie is currently working as a Senior Security Engineer at IBM. Along with her work at IBM, she works with the SANS Institute as a co-author of FOR509, presents regularly at security conferences, and serves as CFO of Mental Health Hackers. Megan has two Master's degrees, one in Digital Forensics and the other in Information Security Engineering, along with many industry certifications in a wide range of specialties. When Megan is not fighting cybercrime, she is an active competitor in Muay Thai/Kickboxing. She is a co-author of “Practical Threat Detection Engineering” from Packt publishing, on sale now in print and e-book. Buy here: https://subscription.packtpub.com/book/security/9781801076715   https://packt.link/megan ← Amazon redirect link that publisher uses if you want something easier on the notes   Questions and topics: Of the 3 models, which do you find you use more and why? (PoP, ATT&CK, kill chain) What kind of orgs have ‘detection engineering' teams? What roles are involved here, and can other teams (like IR) be involved or share a reverse role there? Lab setup requires an agent… any agent for ingestion or something specific?  How does Fleet or data ingestion work for Iot/Embedded device testing? Anything you suggest? How important is it to normalize your log output for ingestion? (app, web, server all tell the story) Additional information / pertinent LInks (Would you like to know more?): Unified Kill Chain: https://www.unifiedkillchain.com/ ATT&CK: https://attack.mitre.org/  D3FEND matrix BrakeSec show from 2021: https://brakeingsecurity.com/2021-023-d3fend-framework-dll-injection-types-more-solarwinds-infections  Pyramid of Pain: https://detect-respond.blogspot.com/2013/03/the-pyramid-of-pain.html https://www.securitymagazine.com/articles/98486-435-million-the-average-cost-of-a-data-breach  https://medium.com/@gary.j.katz (per Megan, ‘it's basically Chapter 11 of the book') Show points of Contact: Amanda Berlin: @infosystir @hackershealth  Brian Boettcher: @boettcherpwned Bryan Brake: @bryanbrake on Mastodon.social, Twitter, bluesky Brakesec Website: https://www.brakeingsecurity.com Twitter: @brakesec  Youtube channel: https://youtube.com/c/BDSPodcast Twitch Channel: https://twitch.tv/brakesec

The Cybersecurity Defenders Podcast
#35 - A conversation about mental health in cybersecurity with Amanda Berlin, CEO of Mental Health Hackers

The Cybersecurity Defenders Podcast

Play Episode Listen Later May 24, 2023 21:57


On this episode of the Cybersecurity Defenders Podcast, we have a conversation about mental health in cybersecurity with Amanda Berlin, CEO of Mental Health Hackers.Mental Health Hackers' stated mission is to educate tech professionals about the unique mental health risks faced by those in our field – and often by the people who we share our lives with – and provide guidance on reducing their effects and better manage the triggering causes.They also aim at providing support services to those who may be susceptible to related mental health issues such as anxiety, depression, social isolation, eating disorders, etc.If you are struggling please know that there are a lot of people in your community that care, as well as resources that you can access. Mental Health First AidWorkplace Mental HealthA list of resources from Mental Health HackersMental Health: Know the Warning Signs Mental Health: How to find help Mental Health: Maintaining a Healthy LifestyleThe Cybersecurity Defenders Podcast: a show about cybersecurity and the people that defend the internet.

Dark Mode Podcast
#24 - Debunking the Cyber Security Industry with CISO, Senior Director, Hacker Henchman and Podcast Host - Chris Roberts

Dark Mode Podcast

Play Episode Listen Later Oct 2, 2022 73:48


Chris Roberts is a CISO, Hacker, InfoSec, Safety, CyberStuff Researcher, Advisor, Podcast Host and technical advocate in Cyber Security. On this episode, Chris & Ben take us through a few key themes relating to the cyber security basics, calling it how it is, the most important factor being ‘hoomans', as well as Mental Health Hackers, the ‘WTF did I just read' podcast, and even offers up advice on the Optus data breach. Show Notes: 00:00 - Who is Chris Roberts? 05:00 - Dani Woolf and Chris Roberts Podcast - WTF did I just read? 09:00 - How could SDR'S/ BDR'S write effective emails to vendors? 15:00 - Technology & Cyber Security Conferences 19:00 - Learning the Fundamentals of Cybersecurity 25:00 - How to apply technology effectively 31:00 - Moon shine & Pup Cups 35:00 - Chris hacked NASA and what else? 53:00 - Taking over the world with GitHub and YouTube 55:00 - Burn out in the Industry & Mental Health Hackers https://www.mentalhealthhackers.org/ 1:00:00 - CISO Advice for Optus & Uber breach Biography CISO, Hacker, InfoSec, Safety, CyberStuff Researcher, Advisor, Hacking is not a crime henchman, and various other names on the technical side of the world. Currently CISO and Senior Director at Boom Supersonic.... having previously served as a vCISO or advisor for a number of entities and organizations around the globe. His most recent projects are focused within the threat intelligence, identity, cryptography, Artificial Intelligence, and services space. I've been fortunate to be elbow deep in technology for more years than I care to remember, and these days am involved in both tactical and strategic discussions with clients across the spectrum of industries talking maturity, risk, and how to effect change. Oh, and I just got called a Scottish Security Warlock....I'm kinda digging it. Happy to connect, to talk and discuss what we can ALL do to effect change in this world, to collaborate and to communicate in a way that benefits all….I'd prefer folks didn't use this forum to sell me certs, software or anything that has a hooded matrix theme (I DO come with a warning label...) --- Send in a voice message: https://anchor.fm/dark-mode-podcast/message

The Gate 15 Podcast Channel
The Gate 15 Interview EP 25. Amanda Berlin and Megan Roddie talk cybersecurity, mental health hackers, DEFCON, musicals, fruits, and more!

The Gate 15 Podcast Channel

Play Episode Listen Later Jul 25, 2022 61:10


In this episode of The Gate 15 Interview, Andy Jabbour speaks with Amanda Berlin and Megan Roddie, cybersecurity leaders & mental health hackers, and they've got their hands in a lot more too!  Amanda is the Lead Incident Detection Engineer at Blumira and has worked in I.T. for almost her entire adult life. Before working at Blumira, Amanda's responsibilities have included infrastructure security, network hardware and software repair, email management, network/server troubleshooting and installation, purple teaming with a focus on phishing employees and organizational infrastructure as well as teaching employees about security and preventing exploits. She currently serves as the Chief Executive Officer for Mental Health Hackers and is the co-host of the Brakeing Down Security Podcast (BrakeSec Podcast, @brakesec)!  Megan is a Senior Security Engineer at IBM, Co-Author of SANS FOR509 and has worked in cybersecurity since graduating from Sam Houston State University (and while she was still a student!). Previous roles have been with the Texas Department of Public Safety, Recon InfoSec, and with IBM's X-Force. She currently serves as the Chief Financial Officer for Mental Health Hackers. Megan is also a Muay Thai fighter and coach.  Follow Mental Health Hackers on Twitter! @HackersHealth Follow Amanda on Twitter at @InfoSystir and on LinkedIn and follow Blumira on Twitter! Follow Megan on Twitter at @megan_roddie and on LinkedIn.  In the discussion we address:  Amanda & Megan's backgrounds and origin stories  Awesome tips for breaking into security!  DEFCON and how to score a free breakfast at DEFCON!!  Mental Health Hackers  The Brakeing Down Security podcast  Muay Thai, Musicals, Apples & Bannanas!  Fruits, music and so much more!  A few references mentioned in or relevant to our discussion include:  Mental Health Hackers website  Mental Health Hackers on Twitter! @HackersHealth  Amanda on Twitter at @InfoSystir and on LinkedIn.  Megan on Twitter at @megan_roddie and on LinkedIn.  Tom Williams on Twitter: @ginger_hax  Amanda's InfoSec Staples tweet - https://twitter.com/infosystir/status/972906318875983873?s=21&t=CCp0CmDgDcZXQVWtnpEXEA Blackhat USA 2022 - https://www.blackhat.com/us-22/defcon.html?_mc=sem_bhus_sem_bhus_x_tspr_Google_defcon30_bhusagcompetitvedefcon30_2022&gclid=Cj0KCQjwn4qWBhCvARIsAFNAMihsrClH8Aygi2UnTsbSus3teDdktlK2NiamBzyAORwM5nHcaE4pynwaArHkEALw_wcB  DEFCON 30 - https://defcon.org 10th Annual Brazilian Jiu-Jitsu Smackdown. A Brazilian Jiu-Jitsu event for information security professionals hosted by Jeremiah Grossman during Black Hat and Defcon - https://www.eventbrite.com/e/10th-annual-brazilian-jiu-jitsu-smackdown-tickets-348058561527 Amanda's Book! Defensive Security Handbook: Best Practices for Securing Infrastructure (1st Edition) - https://www.amazon.com/Defensive-Security-Handbook-Practices-Infrastructure/dp/1491960388 Megan's SANS Course! FOR509 Course Update - Introducing Google Workspace, the Multi-Cloud Intrusion Challenge - https://www.sans.org/blog/for509-course-update---introducing-google-workspace-the-multi-cloud-intrusion-challenge-and-more/

7 Minute Security
7MS #518: Interview with Amanda Berlin of Blumira

7 Minute Security

Play Episode Listen Later Apr 27, 2022 57:42


Today we're pumped to share a featured interview with Amanda Berlin, Lead Incident Detection Engineer at Blumira. You might already be familiar with Amanda's awesome Defensive Security Handbook or fine work with Mental Health Hackers. We polled our Slack friends and structured this interview as an AAA (Ask Amanda Anything). That resulted in a really fun chat that covered many things technical and not technical! Questions we posed to Amanda include: Can you tell us more about your infosec superhero origin story and creation of your book? Will there ever be a new version of the Defensive Security Handbook? What blue team certs/YouTube vids/classes/conferences give the best bang for your buck? Was it a mistake to invent computers? From a logging standpoint, what devices provide blind spots (Linux systems, ioT devices, etc.)? You can wave a magic wand and solve any three security challenges instantly - what do you choose? Infosec Twitter drama. Love it? Leave it? Something inbetween? Tips to prevent business email compromise? How do we keep beloved family/friends (who keep falling prey to social engineering campaigns) safer on their computers and on the Web? Our company had a partial ransomware deployment a few years ago. Is changing Active Directory passwords changed and formatting affected systems enough? (Spoiler alert: no. See Microsoft's advice on the topic)

Paul's Security Weekly TV
Amanda Berlin - PSW #736

Paul's Security Weekly TV

Play Episode Listen Later Apr 15, 2022 60:19


Amanda Berlin joins us to discuss what she's been up to since her last appearance on the show. It's only been a couple of years, but a lot has changed in that time. Tune in to hear about what changes the pandemic brought to the vision and operations of Mental Health Hackers, and how they pivoted to a virtual environment during this time. The crew talks about their experience going from traveling to 15-20+ conferences a year, down to hardly any conferences during Covid, and what their future plans are now that in-person events are coming back around. Amanda fills us in on her current role at Blumira, other business ventures, and where you can find her speaking/running a village in the near future!    Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw736

covid-19 amanda berlin blumira mental health hackers
Paul's Security Weekly (Video-Only)
Amanda Berlin - PSW #736

Paul's Security Weekly (Video-Only)

Play Episode Listen Later Apr 14, 2022 60:19


Amanda Berlin joins us to discuss what she's been up to since her last appearance on the show. It's only been a couple of years, but a lot has changed in that time. Tune in to hear about what changes the pandemic brought to the vision and operations of Mental Health Hackers, and how they pivoted to a virtual environment during this time. The crew talks about their experience going from traveling to 15-20+ conferences a year, down to hardly any conferences during Covid, and what their future plans are now that in-person events are coming back around. Amanda fills us in on her current role at Blumira, other business ventures, and where you can find her speaking/running a village in the near future!   Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://securityweekly.com/psw736

covid-19 amanda berlin blumira mental health hackers
FIRST Impressions Podcast
Episode 7: Amanda Berlin - CEO, Mental Health Hackers

FIRST Impressions Podcast

Play Episode Listen Later Sep 3, 2021


Amanda Berlin is the CEO of Mental Health Hackers - a not for profit organization dedicated to educate information security professionals about the unique mental health risks faced by those in the field. Recorded August 2021. Disclaimer: The views expressed by the hosts and guests are their own and their participation on the podcast does not imply an endorsement of them or any entity they represent.

ceo amanda berlin mental health hackers
Insider Threat: The #misec Podcast
Episode 21 - Mental Health with Amanda Berlin

Insider Threat: The #misec Podcast

Play Episode Listen Later Jul 1, 2021 53:39


Today, we are going to be talking with Amanda Berlin , Lead Incident Detection Engineer and CEO of Mental Health Hackers, about mental health in the security community. Books mentioned in this episode: The Boy Who was Raised a Dog - Bruce D. Perry, Maia Szalavitz

Cloud Management Monthly
IT Burnout and Mental Health - with guest Eric Lee

Cloud Management Monthly

Play Episode Listen Later Jan 18, 2021 44:16


In this episode of Cloud Management Monthly, Dan and Matt talk to Eric Lee about his journey dealing with IT burnout and Mental Health. Eric shares his personal story and how to live a better work life balance and to cope with workplace burnout. Dan and Matt also talk to Eric about the work he is doing with Mental Health Hackers and how we can all get involved. Eric's Twitter - https://twitter.com/ericblee6Mental Health Hackers - https://www.mentalhealthhackers.org

mental health burnout eric lee mental health hackers
Cyber Security Interviews
#109 – Amanda Berlin: Happier People Stay Longer

Cyber Security Interviews

Play Episode Listen Later Jan 11, 2021 49:13


https://www.linkedin.com/in/amandaberlin/ (Amanda Berlin) is the Lead Incident Detection Engineer for https://www.blumira.com/ (Blumira) and the CEO and owner of the nonprofit corporation https://www.mentalhealthhackers.org/ (Mental Health Hackers). She is the author of a Blue Team best practices book called "https://www.amazon.com/Defensive-Security-Handbook-Practices-Infrastructure/dp/1491960388 (Defensive Security Handbook: Best Practices for Securing Infrastructure)” with Lee Brotherston through O'Reilly Media. She is a co-host on the https://www.brakeingsecurity.com (Brakeing Down Security podcast) and writes for several blogs. Amanda is an avid volunteer and mental health advocate. She has presented at a large number of conventions, meetings, and industry events such as DerbyCon, O’Reilly Security, GrrCon, and DEFCON. In this episode, we discuss her start in help desk, speaking amount mental health, depression and anxiety, men's reluctance to report health issues, neurodiversity, how organizations can encourage self-care, using medication, the Mental Health Hackers organization, and so much more. Where you can find Amanda: https://www.linkedin.com/in/amandaberlin/ (LinkedIn) https://www.mentalhealthhackers.org/ (Mental Health Hackers) https://www.brakeingsecurity.com/ (Brakeing Down Security Podcast) Episode Disclaimer: This podcast's information is not intended or implied as a substitute for professional medical advice, diagnosis, or treatment. We make no representation and assume no responsibility for the accuracy of the information contained in or available through this presentation. THIS IS NOT MEDICAL ADVICE. Please speak to your physician before embarking on any treatment plan. NEVER DISREGARD PROFESSIONAL MEDICAL ADVICE OR DELAY SEEKING MEDICAL TREATMENT BECAUSE OF SOMETHING YOU HEARD ON THIS PODCAST.

ceo longer happier defcon blue team amanda berlin derbycon reilly media mental health hackers grrcon lee brotherston brakeing down security
Layer 8 Podcast
Episode 23: Amanda Berlin - The $15,000 Teddy Bear

Layer 8 Podcast

Play Episode Listen Later Apr 27, 2020 12:26


For this episode, we welcome Amanda Berlin of Blumira. She is also the CEO of the non-profit organization Mental Health Hackers, and can be found on twitter at InfoSystir. Today, she tells us about a romance scam where she helped a friend finally understand she was being duped, and explains how these work, plus she'll tell us a little bit about a fifteen thousand dollar teddy bear.

10 Questions
S2E02: Amanda Berlin

10 Questions

Play Episode Listen Later Jan 26, 2020 54:24


Training, Mental Health Hackers, and everything in between...including Jar Jar Binks...

All Jupiter Broadcasting Shows
Mental Health Hackers | Jupiter Extras 32

All Jupiter Broadcasting Shows

Play Episode Listen Later Nov 15, 2019 20:00


Ell and Wes sit down with Megan Roddie from Mental Health Hackers about neurodiversity in tech and the importance of peer support. Special Guest: Megan Roddie.

Jupiter Extras
Mental Health Hackers

Jupiter Extras

Play Episode Listen Later Nov 15, 2019 20:00


Ell and Wes sit down with Megan Roddie from Mental Health Hackers about neurodiversity in tech and the importance of peer support. Special Guest: Megan Roddie.

Paul's Security Weekly TV
Mental Health Hackers & Veterans - Tom Williams - PSW #624

Paul's Security Weekly TV

Play Episode Listen Later Oct 25, 2019 36:05


Tom Williams is the Director of Veterans Operations of Veterans MHH. Speaking about the challenges that veterans face and how MHH is looking to address those. Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://wiki.securityweekly.com/PSWEpisode624

director speaking veterans cso ciso tom williams security news mhh paul asadoorian mental health hackers matt alderman securitydegree securitycareers leeneely
Paul's Security Weekly (Video-Only)
Mental Health Hackers & Veterans - Tom Williams - PSW #624

Paul's Security Weekly (Video-Only)

Play Episode Listen Later Oct 25, 2019 36:05


Tom Williams is the Director of Veterans Operations of Veterans MHH. Speaking about the challenges that veterans face and how MHH is looking to address those. Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://wiki.securityweekly.com/PSWEpisode624

director speaking veterans cso ciso tom williams security news mhh paul asadoorian mental health hackers matt alderman securitydegree securitycareers leeneely
Paul's Security Weekly TV
Mental Health & Wellness - Paul's Security Weekly #607

Paul's Security Weekly TV

Play Episode Listen Later Jun 9, 2019 57:59


We welcome back Amanda Berlin, CEO of Mental Health Hackers to talk about why its important to educate technology professionals about unique mental health risks faced by people in the field, and how we can provide them with the proper support services to help! Full Show Notes: https://wiki.securityweekly.com/Episode607 Follow us on Twitter: https://www.twitter.com/securityweekly

Paul's Security Weekly (Video-Only)
Mental Health & Wellness - Paul's Security Weekly #607

Paul's Security Weekly (Video-Only)

Play Episode Listen Later Jun 9, 2019 57:59


We welcome back Amanda Berlin, CEO of Mental Health Hackers to talk about why its important to educate technology professionals about unique mental health risks faced by people in the field, and how we can provide them with the proper support services to help! Full Show Notes: https://wiki.securityweekly.com/Episode607 Follow us on Twitter: https://www.twitter.com/securityweekly

Paul's Security Weekly (Podcast-Only)
Don't Give Amanda Your Passwords - Paul's Security Weekly #607

Paul's Security Weekly (Podcast-Only)

Play Episode Listen Later Jun 8, 2019 164:49


In this episode of Paul's Security Weekly, we will talk with Paul Ewing of Endgame about how to close the 'breakout window' between detection and response, and hear about Endgame's recently announced technology, Reflex, that was built with customized protection in mind! In our second interview, we welcome back Amanda Berlin, CEO of Mental Health Hackers to talk about why its important to educate technology professionals about unique mental health risks faced by people in the field, and how we can provide them with the proper support services to help! In the Security News, SalesForce bans customers from gun sales, what is your iPhone talking to overnight, Office retires support for old Android versions, and really how likely are weaponized cars?!   To learn more about Endgame, visit: https://securityweekly.com/endgame Full Show Notes: https://wiki.securityweekly.com/Episode607 Visit https://www.securityweekly.com/psw for all the latest episodes!   Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter! Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly

Paul's Security Weekly
Don't Give Amanda Your Passwords - Paul's Security Weekly #607

Paul's Security Weekly

Play Episode Listen Later Jun 8, 2019 164:49


In this episode of Paul's Security Weekly, we will talk with Paul Ewing of Endgame about how to close the 'breakout window' between detection and response, and hear about Endgame's recently announced technology, Reflex, that was built with customized protection in mind! In our second interview, we welcome back Amanda Berlin, CEO of Mental Health Hackers to talk about why its important to educate technology professionals about unique mental health risks faced by people in the field, and how we can provide them with the proper support services to help! In the Security News, SalesForce bans customers from gun sales, what is your iPhone talking to overnight, Office retires support for old Android versions, and really how likely are weaponized cars?!   To learn more about Endgame, visit: https://securityweekly.com/endgame Full Show Notes: https://wiki.securityweekly.com/Episode607 Visit https://www.securityweekly.com/psw for all the latest episodes!   Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter! Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly

The CyberWire
GandCrab notes. Make tests, not bans, says GSMA. Content moderation. Takedown of inauthentic accounts. Influence operations. Happy birthday, GCHQ.

The CyberWire

Play Episode Listen Later Feb 15, 2019 26:04


In today’s podcast, we hear that GandCrab has been scuttling through unpatched holes. Independent testing as an alternative to banning specific vendors as security risks. Big Tech gets some Congressional scrutiny over content moderation. Facebook takes down inauthentic accounts working to influence the Moldovan elections. The Federal Trade Commission is rumored to be queuing up a record privacy fine. Defending forward from disillusioned Bears. And happy birthday, GCHQ. Craig Williams from Cisco Talos on router vulnerabilities. Guest is Amanda Berlin, founder of Mental Health Hackers on her efforts to address mental health issues in infosec. For links to all of today's stories check our our CyberWire daily news brief: https://thecyberwire.com/issues/issues2019/February/CyberWire_2019_02_15.html  Support our show

Fireside with Lei
Episode 22: Amanda Berlin, Mental Health Hackers

Fireside with Lei

Play Episode Listen Later Feb 11, 2019 70:38


I get a chance to speak with Amanda Berlin, the CEO of Mental Health Hackers.  We discuss how her involvement in the hacker/infosec community has revolved around contributing, supporting others and challenging herself to do more. This has this lead Amanda to be drawn to helping others, trying to do good in the community, and … Continue reading "Episode 22: Amanda Berlin, Mental Health Hackers"

ceo amanda berlin mental health hackers
Brakeing Down Security Podcast
2018-040- Jarrod Frates discusses pentest processes

Brakeing Down Security Podcast

Play Episode Listen Later Nov 18, 2018 81:18


Jarrod Frates Inguardians @jarrodfrates “Skittering Through Networks” Ms. Berlin in Germany - How’d it go?     TinkerSec’s story:  https://threadreaderapp.com/thread/1063423110513418240.html   Takeaways Blue Team: - Least Privilege Model - Least Access Model     “limited remote access to only a small number of IT personnel” “This user didn't need Citrix, so her Citrix linked to NOTHING” “They limited access EVEN TO LOCAL ADMINS!” - Multi-Factor Authentication - Simple Anomaly Rule Fires     “Finance doesn’t use Powershell” - Defense in Depth     “moving from passwords to pass phrases…” “Improper disposal of information assets”   Red Team: - Keep Trying - Never Assume - Bring In Help - Luck Favors the Prepared - Adapt and Overcome Before the Test Talk it over with stakeholders: Reasons, goals, schedules Report is the product: Get samples Who, what, when, where, why, how Talk to testers (and clients, if you can find them) Ask questions Look for past defensive experience and understanding of your needs Bonus points if they interview you as a client Red flags: Pwning is all they talk about, they set no-crash guarantees, send info in the clear Define the scope: Test type(s), inclusions, exclusions, permissions, accounts Test in ‘test/dev’, NOT PROD Social Engineering: DO THIS. Yes, you’re vulnerable. DO IT ANYWAY.   During the Test Comms: Keep in contact with the testers Status reports (if the engagement is long enough) Have an established method for escalation Have an open communication style --brbr (WeBrBrs) Ask questions, but let the testers do their jobs Be available and ready to address critical events Keep critical stakeholders informed Watch your network: things break, someone else may be getting in, capture packets(?)   After the Test Getting Results: Report delivered securely Initial summary: How far did they get? Actual report Written for multiple levels No obvious copy/paste Read, understand, provide feedback, and get revised version Next steps: Don’t blame anyone unnecessarily Start planning with stakeholders on fixes Contact vendors, educate staff Reacting to report Sabotaging your test Future testing   Ms. Berlin’s Legit business - Mental Health Hackers   CFP for Bsides Seattle (Deadline: 26 November 2018) http://www.securitybsides.com/w/page/129078930/BsidesSeattle2019   CFP for BsidesNash https://twitter.com/bsidesnash/status/1063084215749787649 Closes Dec 31   Teaching a class in Seattle for SANS (SEC504) - need some students! Reach out to me for more information. Looking to do this at the end of February through March     heck out our Store on Teepub! https://brakesec.com/store Join us on our #Slack Channel! Send a request to @brakesec on Twitter or email bds.podcast@gmail.com #Brakesec Store!:https://www.teepublic.com/user/bdspodcast #Spotify: https://brakesec.com/spotifyBDS #RSS: https://brakesec.com/BrakesecRSS #Youtube Channel:  http://www.youtube.com/c/BDSPodcast #iTunes Store Link: https://brakesec.com/BDSiTunes #Google Play Store: https://brakesec.com/BDS-GooglePlay Our main site:  https://brakesec.com/bdswebsite #iHeartRadio App:  https://brakesec.com/iHeartBrakesec #SoundCloud: https://brakesec.com/SoundcloudBrakesec Comments, Questions, Feedback: bds.podcast@gmail.com Support Brakeing Down Security Podcast by using our #Paypal: https://brakesec.com/PaypalBDS OR our #Patreon https://brakesec.com/BDSPatreon #Twitter: @brakesec @boettcherpwned @bryanbrake @infosystir #Player.FM : https://brakesec.com/BDS-PlayerFM #Stitcher Network: https://brakesec.com/BrakeSecStitcher #TuneIn Radio App: https://brakesec.com/TuneInBrakesec