Podcasts about Network security

Computer network access control

  • 467PODCASTS
  • 3,499EPISODES
  • 51mAVG DURATION
  • 1WEEKLY EPISODE
  • May 23, 2026LATEST

POPULARITY

20192020202120222023202420252026

Categories



Best podcasts about Network security

Show all podcasts related to network security

Latest podcast episodes about Network security

@BEERISAC: CPS/ICS Security Podcast Playlist
Protecting Critical Infrastructure: NERC CIP-015-01 and Internal Network Security Monitoring (INSM)

@BEERISAC: CPS/ICS Security Podcast Playlist

Play Episode Listen Later May 23, 2026 24:41


Podcast: Emerson Automation Experts (LS 24 · TOP 10% what is this?)Episode: Protecting Critical Infrastructure: NERC CIP-015-01 and Internal Network Security Monitoring (INSM)Pub date: 2026-05-20Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationWe unpack what the NERC CIP-015-01 standard requires, the compliance timelines utilities must plan for, and the practical challenges of deploying monitoring inside operational technology environments.The podcast and artwork embedded on this page are from Emerson Team, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Emerson Automation Experts
Protecting Critical Infrastructure: NERC CIP-015-01 and Internal Network Security Monitoring (INSM)

Emerson Automation Experts

Play Episode Listen Later May 20, 2026 24:41


We unpack what the NERC CIP-015-01 standard requires, the compliance timelines utilities must plan for, and the practical challenges of deploying monitoring inside operational technology environments.

Unofficial SAP on Azure podcast
#289 - TOW Augmented Network Security via Azure Firewall and Application Gateway for SAP/Non-SAP workloads (Davis, Davis, Nautiyal, Nautiyal) | SAP on Azure Video Podcast

Unofficial SAP on Azure podcast

Play Episode Listen Later May 15, 2026 76:12


In episode 289 of our SAP on Azure video podcast we talk about Augmented Network Security via Azure Firewall and Application Gateway for SAP/Non-SAP workloadsGoran Condric talks with Evren Buyruk, Sai Kishor, Rajesh Nautiyal, and Derick Davis about how to strengthen network security for SAP and non‑SAP workloads on Azure. They explore how Azure Firewall and Application Gateway work together in a layered, Zero Trust architecture to protect applications, control traffic, and help customers meet security and compliance requirements.Find all the links mentioned here: https://www.saponazurepodcast.de/episode289Reach out to us for any feedback / questions:* Goran Condric: https://www.linkedin.com/in/gorancondric/* Holger Bruchelt: https://www.linkedin.com/in/holger-bruchelt/ #Microsoft #SAP #Azure #SAPonAzure #Security #AzureFirewall #AppGateway #ZeroTrust

Security Breach
Countering New-Age, State-Sponsored Industrial Hackers

Security Breach

Play Episode Listen Later May 14, 2026 35:25


Send us Fan MailCybersecurity is unlike any other Industry or environment I've ever covered. But more than the technology, the intriguing players and the somewhat spooky elements surrounding it, is how the things we discuss on this podcast impact nearly every element of our day-to-day lives. It's not just how artificial intelligence is impacting email phishing schemes, but how clicking on that link could let a state-sponsored hacker steel login credentials for obtaining access to an industrial control system that is not only used by a power tool manufacturer, but by a defense contractor or water treatment facility.The interconnected nature of the industrial sector makes an appreciation for cybersecurity vital to the ongoing safety and success of manufacturing – which, again, impacts nearly every facet of every person's daily life.That's why I enjoy talking to people like Aaron Shraberg, Senior Team Lead at Flashpoint – a leading provider of threat landscape intelligence. The stuff Aaron talks about is frightening, which is another challenge of covering cybersecurity – balancing education with data sharing without fear mongering. But I'd encourage you to really wach/listen as Aaron talks about the evolution of threats from China, Russia and Iran, and how cyber threats are converging with physical battlefields to fuel threats thousands of miles from where the missiles are flying. The bottom line is – we're all connected and we're all impacted, so we need to be prepared - regardless of how far removed you think you are. There's also good news in terms of solutions, which can start with sharing some of this scary information. As a go-to podcast for our listeners, we want to help you align your brand with our expertise. By sponsoring our podcast, your brand will build trust, and your message will stand out to an audience searching for tools to assist their cybersecurity efforts. Click Here to Become a Sponsor.To catch up on past episodes, you can go to Manufacturing.net, IEN.com or MBTmag.com. You can also check Security Breach out wherever you get your podcasts, including Apple, Amazon and Overcast. If you have a cybersecurity story or topic that you'd like to have us explore on Security Breach, you can reach me at jeff@ien.com.

The Gate 15 Podcast Channel
The Gate 15 Interview EP 70: Allan Liska Returns! Ransomware, Comic Books and Empathy

The Gate 15 Podcast Channel

Play Episode Listen Later May 13, 2026 43:26


In this episode of The Gate 15 Interview, Andy Jabbour speaks with Allan Liska. Allan Liska, threat intelligence analyst at Recorded Future, has more than 15 years of experience in information security and has worked as both a security practitioner and an ethical hacker. Through his work at Symantec, iSIGHT Partners, FireEye, and Recorded Future, Allan has helped countless organizations improve their security posture using more effective intelligence. He is the author of “The Practice of Network Security, Building an Intelligence-Led Security Program”, “Securing NTP: A Quickstart Guide” and the co-author of “DNS Security: Defending the Domain Name System and Ransomware: Defending Against Digital Extortion.”, and "Ransomware: Understand. Prevent. Recover." Allan on LinkedInAllan on BlueskyAllan on Substack (Ransomware)Green Archer Comics Allan Liska's cybersecurity books on Amazon! The Gate 15 Interview EP 55. Allan Liska, Ransomware Sommelier. Threats, mental health, comic books and Diet Dr. Pepper. (18 Feb 2025)“I think we're in a rough time right now… we need to be more empathetic and more compassionate” – Allan LiskaIn the podcast, Allan and Andy discuss: Ransomware, Recorded Future, cybersecurity, and comics!Anti-Ransomware Day, 3rd party ransomware risk, and the expanding ransomware ecosystemIABs, scams, BEC, and other threatsThoughts on AI and LLMsThe value of networking!Green Archer Comics! and where you can meet Allan: Comic Logic (17 May), Big Lick Comic Con NOVA (30-31 May) Sleuthcon (05 Jun)We play Three Questions! and talk, Green Arrow, The White Desert, and some rapid-fire comic word associationAnd more!

Security Breach
Taking Down of a North Korean Remote Access Scam

Security Breach

Play Episode Listen Later Apr 30, 2026 36:41


Send us Fan MailWe've all seen or heard the reports about how hackers are using AI to elevate their attacks in obtaining funds and intellectual property from unsuspecting victims, or accessing some of their critical systems. Often, these nightmare incidents leave the names and companies out of the story to avoid any reputational fallout.However, this episode's guest takes us beyond studies and second-hand accounts of AI's potential in the hands of hackers. I'm not going to say too much, but I do hope that after watching or listening to Ryan LaSalle's up close and personal encounter with a North Korean scammer, you'll appreciate the need to take all that threat intelligence regarding AI and foreign blackhat operations very seriously.Watch/listen as Ryan LaSalle, CEO of the human risk management company Nisos, describes how his company identified and disrupted this AI-fueled scam, the wide-reaching impacts such intrusions are having on key industries - especially manufacturing, and how to insulate your company from falling victim to such scams.You can also read a full report on the investigation here.As a go-to podcast for our listeners, we want to help you align your brand with our expertise. By sponsoring our podcast, your brand will build trust, and your message will stand out to an audience searching for tools to assist their cybersecurity efforts. Click Here to Become a Sponsor.To catch up on past episodes, you can go to Manufacturing.net, IEN.com or MBTmag.com. You can also check Security Breach out wherever you get your podcasts, including Apple, Amazon and Overcast. If you have a cybersecurity story or topic that you'd like to have us explore on Security Breach, you can reach me at jeff@ien.com.

No Password Required
No Password Required Breakout Room with Fagan Afandiyev

No Password Required

Play Episode Listen Later Apr 21, 2026 20:28


Fagan Afandiyev — Elite Cybersecurity Competitor and Legendary Whitehatter No Password Required: Breakout Room: Episode 1 — Fagan Afandiyev Fagan Afandiyev is a cybersecurity student at the University of South Florida and a member of the CyberHerd competition team, known for his strategic mindset and passion for solving complex challenges. From competing in international robotics competitions to discovering cybersecurity through hands-on platforms, Fagan has built his skills through curiosity, persistence, and a love for problem solving. Fagan shares how competitions, community, and continuous learning shaped his journey into cybersecurity. He walks through his growth within USF's cyber community, and how that led to a penetration testing internship at Microsoft. He also offers insight into the mindset needed to succeed in cybersecurity, encouraging others to embrace challenges, learn through failure, and find enjoyment in the process. Follow Fagan on Linked in here: https://www.linkedin.com/in/fagan-afandi/ Presented by ThreatLocker Chapters:  00:00 Introduction to Cybersecurity Passion 3:02   Journey to Cyber Herd and University Life 06:12 Internship at Microsoft and Career Aspirations 08:59 Hackathon Experience and Community Engagement 12:39 Behind the Scenes of Cyber Competitions 14:30  Overcoming Challenges in Cyber Competitions 18:00 Gratitude and Mentorship in Cybersecurity  

Cloud Security Podcast by Google
EP272 More Than Just Packets: Is NDR a "First-Class" Cloud Security Control?

Cloud Security Podcast by Google

Play Episode Listen Later Apr 13, 2026 34:11


Guest: Raja Mukerji, Co-Founder & Chief Scientist, Extrahop Rafal Los, VP of Client Relations and Strategic Initiatives, Extrahop Topics: Is Network Detection and Response (NDR) coming back after being shoved to the side by EDR a bit? Is this for real? What's the value proposition of NDR in 2026, because some people still don't understand it? How does NDR apply to the world of WFH, cloud/SaaS, encryption, high bandwidth, etc? Is the value of NDR the same, or different, when it comes to public (or private) cloud? How does NDR fill visibility gaps that identity and agent-based solutions cannot? What does NDR offer that built-in cloud security tooling (as of right now) does not? Would you call NDR a key cloud security control? Does NDR help with shadow AI? NDR elephant in the room is sometimes cost. How does cost change the value prop when compared to on-premise or physical infrastructure? Resources: Video version EP267 AI SOC or AI in a SOC? Cutting Through Hype, Pricing Models, and SIEM Detection Efficacy with Raffy Marty EP113 Love it or Hate it, Network Security is Coming to the Cloud EP154 Mike Schiffman: from Blueboxing to LLMs via Network Security at Google EP115 How to Approach Cloud in a Cloudy Way, not As Somebody Else's Computer? EP263 SOC Refurbishing: Why New Tools Won't Fix Broken Processes (Even With AI) "The GC+CISO Connection Book" book

DevOps and Docker Talk
Docker AI, what's new with MCP, Agents, Sandboxes, and more

DevOps and Docker Talk

Play Episode Listen Later Apr 7, 2026 78:38


Michael Irwin of Docker joins me to run through Gordon AI improvements, Docker Hardened Images and what's now free, Docker Sandboxes for running agents in proper isolation, Model Runner updates including MLX support on Mac, MCP Toolkit dynamic discovery, and the newly renamed Docker Agent with its GitHub Action for automating PR reviews and docs checks.Check out the video podcast version here: https://youtu.be/dTF3b36Bq6w

ITSPmagazine | Technology. Cybersecurity. Society
Security Is the Network: Integrating AI Firewall and Threat Intelligence Into the Fabric of Enterprise Defense | A Brand Highlight at RSAC Conference 2026 with Mounir Hahad, Head of HPE Threat Labs of Hewlett Packard Enterprise

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Mar 31, 2026 11:20


Hewlett Packard Enterprise has been rethinking what it means to secure an enterprise network -- and the answer they keep arriving at is that security cannot be an afterthought. At RSAC Conference 2026, Mounir Hahad, Head of HPE Threat Labs, sat down with Sean Martin to walk through what that philosophy looks like in practice and what two major announcements at the show mean for security teams. One of those announcements is the HPE AI firewall -- a solution built specifically for organizations trying to govern how employees use generative AI tools without shutting down innovation. Mounir Hahad frames the challenge directly: gen AI has doubled the attack surface, and organizations that fail to act risk both data leakage and a loss of confidence in the technology itself. The AI firewall starts with visibility -- showing which AI services employees are using, what data is moving where, and whether private information is leaking to external services -- and then gives administrators the tools to set and enforce policy. The second announcement is the formal launch of HPE Threat Labs, which brings together threat research capabilities from both Hewlett Packard Enterprise and the former Juniper Networks. The combined team covers both threat analysis and vulnerability analysis -- capabilities that were previously siloed. HPE Threat Labs has published its inaugural In the Wild threat report, drawing on telemetry, honeypots, and open-source intelligence to give CISOs and decision makers a clear view of how cybercrime has industrialized, why attacks are increasingly targeted, and why high-confidence alerts matter more than ever. This is a Brand Highlight. A Brand Highlight is a ~5 minute introductory conversation designed to put a spotlight on the guest and their company. Learn more: https://www.studioc60.com/creation#highlight GUEST Mounir Hahad, Head of HPE Threat Labs, Hewlett Packard Enterprise LinkedIn: https://www.linkedin.com/in/mounirhahad/ RESOURCES HPE Threat Labs: https://www.hpe.com HPE Threat Labs 2026 In the Wild Threat Report: https://www.hpe.com Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight KEYWORDS Mounir Hahad, Hewlett Packard Enterprise, HPE, HPE Threat Labs, Sean Martin, brand story, brand marketing, marketing podcast, brand highlight, AI firewall, generative AI security, network security, threat intelligence, SASE, cybercrime, RSAC Conference 2026, threat research, enterprise security, AI governance, cybersecurity Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

AV SuperFriends
AV SuperFriends: Off the Rails - AV Network Security (There's no such thing as an island)

AV SuperFriends

Play Episode Listen Later Mar 26, 2026 84:08


Recorded March 20, 2026 In this episode, the panel tackles one of the most overdue conversations in higher ed: AV network security. The regular panel is joined by the founding members of AV Trust, Doug Schaefer, Colin Birney, and Frank Padikkala.  The news segment focuses on cybersecurity education pipelines, exploring how earlier hands-on exposure and employer partnerships could help build a more prepared workforce for technical fields.  The main segment discusses the newly launched AV Trust initiative and the broader challenge of securing AV systems that increasingly live on shared enterprise networks. The conversation covers everything from outdated firmware practices, rebadged hardware, and weak manufacturer documentation, to IoT risk, cloud-connected devices, and the need for AV professionals to better understand the language of IT and cybersecurity. Rather than treating security as a niche or optional concern, the panel argues that AV must mature into a more transparent, standards-driven, and collaborative part of the larger technology ecosystem.   By the end, the episode lands on a clear takeaway: AV is no longer separate from the network, and security can no longer be someone else's problem. With AV Trust aiming to bridge gaps through education, standards work, and community participation, this episode is a candid, funny, and timely look at where the industry needs to go next.    News article: https://www.edsurge.com/news/2026-03-18-what-happens-when-employers-co-design-the-cybersecurity-classroom   Connect with our guests: Colin Birney: https://www.linkedin.com/in/colin-birney/ Doug Schaefer: https://www.linkedin.com/in/doug-schaefer/ Frank Padikkala: https://www.linkedin.com/in/frankpadikkala/   AV Trust:  https://www.avtrust.org https://www.linkedin.com/company/av-trust Educause HECVAT: https://www.educause.edu/higher-education-community-vendor-assessment-toolkit ISC2 Certified in Cybersecurity (CC): https://www.isc2.org/Certifications/CC   Alternate show titles: You know what pays really well? Ransomware! Ain't no mountain high enough You can't stop me, but I'd love for you to participate A security-first mindset Security updates are tied to feature updates What's a risk profile? I have no idea what it does I'm clueless as far as security is concerned Security by obscurity The most miserable, hateful devices you can put on your network We do this really well with everyone other than IT Manufacturer X Model Y We have no idea what's on your switch The AV industry is way out over our skis I'm going to say something controversial A marketing company that will mail you a box I can probably tell if it's alive No amount of remote monitoring tells me that It can get to something, but it's not my network Security doesn't have to be a taboo topic that we all avoid   We stream live every Friday at about 315p Eastern/1215p Pacific and you can listen to everything we record over at AVSuperFriends.com    ▀▄▀▄▀ CONTACT LINKS ▀▄▀▄▀ ► Website: https://www.avsuperfriends.com ► Twitter: https://twitter.com/avsuperfriends ► LinkedIn: https://www.linkedin.com/company/avsuperfriends ► YouTube: https://www.youtube.com/@avsuperfriends ► Bluesky: https://bsky.app/profile/avsuperfriends.bsky.social ► Email: mailbag@avsuperfriends.com ► RSS: https://avsuperfriends.libsyn.com/rss   Donate to AVSF: https://www.avsuperfriends.com/support

IT Visionaries
Why 5G Isn't About Faster Phones (And What It's Really For)

IT Visionaries

Play Episode Listen Later Mar 19, 2026 69:33


Think 5G is about faster phones? That's what telecom companies want consumers to believe. The truth is far more interesting. In this episode, Elena Fersman (VP and Head of AI Innovation at Ericsson) reveals what 5G networks are really built for: industries, not consumers. Through network slicing, edge computing, and cognitive systems, 5G creates the infrastructure that makes AI applications possible at scale—from remote surgery where milliseconds matter, to AR/VR without wearing a backpack of GPUs, to factory floors with autonomous heavy machinery. Elena also shares surprising stories: how establishing a simple communication link led to 20% fuel savings for a shipping company, why autonomous networks are safer than human operators (the elevator operator analogy is perfect), and why Ericsson's trustworthy AI research has been running for 15 years. If you're an IT leader trying to understand where networks and AI intersect, or you're struggling with AI deployment and don't know where to start, this conversation cuts through the hype with practical frameworks and real-world examples from someone who's been in the trenches for two decades.   Chapters: 00:00 - The Risk of Not Deploying AI 03:05 - The AI RAN Alliance: AI and Networks as Symbiotic Partners 10:03 - Why 5G Is Built for Industries, Not Consumers 13:54 - How AI Optimizes Networks (Energy, Predictions, Handoffs) 21:06 - Cognitive Networks and Self-Organization 29:02 - Real-World Impact: 20% Fuel Savings for Shipping 30:52 - What Makes AI Projects Scale vs Fail 41:11 - The Critical First Step: Data Management Over Algorithms 57:25 - Confessions of an AI Brain: The Positive Future 1:01:02 - Why Autonomous Systems Are Safer Than Humans -- This episode of IT Visionaries is brought to you by Meter - the company building better networks. Businesses today are frustrated with outdated providers, rigid pricing, and fragmented tools. Meter changes that with a single integrated solution that covers everything wired, wireless, and even cellular networking. They design the hardware, write the firmware, build the software, and manage it all so your team doesn't have to.That means you get fast, secure, and scalable connectivity without the complexity of juggling multiple providers. Thanks to meter for sponsoring. Go to meter.com/itv to book a demo.---IT Visionaries is made by the team at Mission.org. Learn more about our media studio and network of podcasts at mission.org. Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Cisco TechBeat
S7 E3: Talking security innovations in the age of AI, the intersection of creativity and tech, and more with Tom Gillis

Cisco TechBeat

Play Episode Listen Later Mar 19, 2026 19:10


AB sits down with Tom Gillis, Cisco's SVP and GM, Infrastructure & Security Group, to explore the crucial role security plays in the ever-changing AI landscape. 

Security Breach
Finding the Soul of a Pirate

Security Breach

Play Episode Listen Later Mar 19, 2026 37:35


Send us Fan MailWe all know that cybersecurity, and industrial cybersecurity in particular, is facing a huge talent deficit. Finding an individual who not only understands the technical elements of cybersecurity, but also appreciates the dynamics of keeping a manufacturing operation up and running is extremely difficult, as they need to balance security with uptime, defense with productivity, and investment with implementation timelines. Our guest for today's episode can empathize. Watch/listen as Yaniv Kapluto, the Chief Revenue Officer at Nukudo, offers insight on the unique ways his company trains cybersecurity talent, including:Why he looks for individuals who work with the precision of a Navy SEAL and the soul of a pirate.The challenges of placing someone who sees how to break things amongst organizations charged with creating new products every day.The value in viewing tests or challenges as games or puzzles.The importance of developing and contributing to a culture focused on cybersecurity.Making training fun in order to keep people engaged.The unique impacts of artificial intelligence on cybersecurity.As a go-to podcast for our listeners, we want to help you align your brand with our expertise. By sponsoring our podcast, your brand will build trust, and your message will stand out to an audience searching for tools to assist their cybersecurity efforts. Click Here to Become a Sponsor.To catch up on past episodes, you can go to Manufacturing.net, IEN.com or MBTmag.com. You can also check Security Breach out wherever you get your podcasts, including Apple, Amazon and Overcast. If you have a cybersecurity story or topic that you'd like to have us explore on Security Breach, you can reach me at jeff@ien.com.

DailyCyber The Truth About Cyber Security with Brandon Krieger
Quantum Threats, Zero Trust & the Future of Network Security | DailyCyber 286 with Andrew Gault

DailyCyber The Truth About Cyber Security with Brandon Krieger

Play Episode Listen Later Mar 7, 2026 65:08


Quantum Threats, Zero Trust & the Future of Network Security | DailyCyber 286 with Andrew Gault ~ Watch Now ~  In this episode of DailyCyber, Brandon Krieger is joined by Andrew Gault, CEO of ZeroTier, to examine whether quantum computing represents a real cybersecurity threat today or remains theoretical. The conversation explores what quantum computing could break within current encryption standards, why infrastructure providers should be planning now, and how modern zero trust architecture must evolve in response. Topics include: • The realism of quantum cybersecurity risk • Vulnerabilities in today's cryptographic stack • Infrastructure planning for post-quantum security • CISO strategy for 2026 • Zero trust implications   Guest: Andrew Gault — CEO, ZeroTier https://www.linkedin.com/in/andrewgault/ https://www.zerotier.com/   Host: Brandon Krieger — CEO & vCISO Advisor https://www.linkedin.com/in/brandonkrieger https://www.DailyCyber.ca   Watch: https://www.youtube.com/BrandonKrieger Listen: https://www.DailyCyber.ca

Security Breach
Analyzing, Responding to the Inevitable Uptick in Iranian Cyberattacks

Security Breach

Play Episode Listen Later Mar 5, 2026 36:38


Send a textAlthough discussing the military activities currently taking place in Iran runs the risk or bringing up polarizing political views, the cybersecurity realities simply can't be ignored. And they absolutely have to be discussed. One of these realities is that Iran has a legacy of supporting organizations involved with cyberattacks on networks, infrastructure and companies in Israel and the United States. Companies that utilize industrial control systems. Companies like yours. In light of current events, there is absolutely no question that these groups will escalate their efforts. Although the bombs are falling thousands of miles beyond U.S. borders, know that U.S. manufacturing is a primary target. Historically, many of the groups carrying out these types of cyberattacks were hacktivists or outliers, operating independent of any government or country. They followed their own agenda in realizing personal or political goals. However, as highlighted by the war in Ukraine, these groups have begun to pick sides. They're embracing financial support from nation states and successfully executing attacks meant to shut down, steal data, extort money and/or disrupt critical production or infrastructure operations – regardless of size, sector or location. Thankfully, there are also guys like our guest for today's episode. JP Castellanos is the Director of Threat Intelligence at Binary Defense. Watch/listen as he discusses:The evolving hacktivist community and what recent events could mean for industrial cybersecurity.How manufacturers can prepare and respond to an inevitable uptick in attacks.How IT/OT silos perpetuate these attacks and make manufacturing a more lucrative and appealing target.The motives and operational strategies of state-sponsored Iranian hacker groups.The soft spots in your defenses that these groups take advantage of in targeting the industrial sector.The simple solutions that can have far-reaching and extremely positive impacts on your defenses.As a go-to podcast for our listeners, we want to help you align your brand with our expertise. By sponsoring our podcast, your brand will build trust, and your message will stand out to an audience searching for tools to assist their cybersecurity efforts. Click Here to Become a Sponsor.To catch up on past episodes, you can go to Manufacturing.net, IEN.com or MBTmag.com. You can also check Security Breach out wherever you get your podcasts, including Apple, Amazon and Overcast. If you have a cybersecurity story or topic that you'd like to have us explore on Security Breach, you can reach me at jeff@ien.com.

Darn IT Podcast
Silent Breach: How Hackers Hide in Your Business Network

Darn IT Podcast

Play Episode Listen Later Mar 4, 2026 20:54


If your business was hacked today, would you know? Most companies discover cyber breaches 7 months after attackers infiltrate their networks. That's 207 days of undetected network intrusion, data theft, and security compromise.In this cybersecurity information episode, Darnley's reveals why silent data breaches happen, personal experience, how hackers remain undetected in business networks, and what signs indicate your company may already be compromised.Learn about:Average breach detection time and why dwell time matters for business securityHow cybercriminals use stealth tactics to evade network security toolsReal-world data breach examples: Target, Equifax, and Marriott hotel breach casesWarning signs of network compromise most IT security teams missThreat detection strategies to identify cyber attacks before massive data lossIncident response planning and cybersecurity monitoring best practicesDiscover how to detect network intrusions faster, reduce breach dwell time, and protect your business from silent cyber attacks. Whether you're a small business owner, IT professional, or security manager, this episode provides actionable cybersecurity advice.The silent breach is only silent if you're not listening. Learn how to protect your business network today.Click here to send future episode recommendationSupport the showSubscribe now to Darnley's Cyber Cafe and stay informed on the latest developments in the ever-evolving digital landscape.

Command Control Power: Apple Tech Support & Business Talk
657: Routers, Returns, and Roustabouts

Command Control Power: Apple Tech Support & Business Talk

Play Episode Listen Later Feb 17, 2026 54:53


In this episode of Command Control Power, Jerry and Joe discuss recent weather experiences and delve into network topics, including the Unify travel router, the Unify 5G Max Dream Router, and data SIM options. They also share practical tips for streamlining tech tools like Text Expander shortcuts and explore innovative solutions like SPEED for bonding multiple internet connections. Additionally, they touch on topics like simplifying Amazon returns and considerations for international travel, providing humorous anecdotes and prudent advice along the way.   00:00 Introduction and Weather Chat 01:14 Network Talk: Ubiquiti Announcements 01:36 Unify Travel Router: Features and Criticisms 04:54 Dream Router 5G Max: A Versatile Solution 06:28 5G Max and LTE Backup: Deployment Insights 13:26 Affordable Data SIMs for Low-Income Users 18:41 International Travel: EIM Solutions 23:05 Speed.com: Bonding Multiple Connections 28:05 Understanding Data Plans and Router Compatibility 28:56 Currency Exchange for International Travel 33:29 Network Security and Data Protection 37:57 Text Expander Tips and Tricks 43:43 Venmo and ACH Payment Insights 48:11 Amazon Returns and Stock Picks 52:13 Conclusion and Listener Appreciation

Security Breach
Security Breach: Strengthening Your Weakest Links

Security Breach

Play Episode Listen Later Feb 5, 2026 32:58


Send us a textWhen we talk about the challenges presented to those trying to secure the operational landscape of manufacturing, it's tough to avoid what I'd call the usual suspects - endpoints, connection points, credentials, vulnerabilities, silos and, of course, the impact of artificial intelligence.And just as there are benefits to discussing these individual aspects, it's equally important to look at things from a bigger picture in tying them all together. This not only helps us strengthen the chain, but appreciate the significance of reinforcing each of those links.Perhaps no one has helped tie all of these different players together better than our guest for this episode. Vinod D'Souza leads the manufacturing and industry vertical for Google Cloud's Office of the CISO. Watch/listen as we discuss:Emerging vulnerabilities and response plans.Segmentation challenges in the era of constant technological expansion.New-age approaches to patching.The connected fibers of artificial intelligence and the human factors of cybersecurity.Addressing IT and OT silos.As a go-to podcast for our listeners, we want to help you align your brand with our expertise. By sponsoring our podcast, your brand will build trust, and your message will stand out to an audience searching for tools to assist their cybersecurity efforts. Click Here to Become a Sponsor.To catch up on past episodes, you can go to Manufacturing.net, IEN.com or MBTmag.com. You can also check Security Breach out wherever you get your podcasts, including Apple, Amazon and Overcast. If you have a cybersecurity story or topic that you'd like to have us explore on Security Breach, you can reach me at jeff@ien.com.

Crazy Wisdom
Episode #522: The Hardware Heretic: Why Everything You Think About FPGAs Is Backwards

Crazy Wisdom

Play Episode Listen Later Jan 12, 2026 53:08


In this episode of the Crazy Wisdom podcast, host Stewart Alsop sits down with Peter Schmidt Nielsen, who is building FPGA-accelerated servers at Saturn Data. The conversation explores why servers need FPGAs, how these field-programmable gate arrays work as "IO expanders" for massive memory bandwidth, and why they're particularly well-suited for vector database and search applications. Peter breaks down the technical realities of FPGAs - including why they "really suck" in many ways compared to GPUs and CPUs - while explaining how his company is leveraging them to provide terabyte-per-second bandwidth to 1.3 petabytes of flash storage. The discussion ranges from distributed systems challenges and the CAP theorem to the hardware-software relationship in modern computing, offering insights into both the philosophical aspects of search technology and the nuts-and-bolts engineering of memory controllers and routing fabrics.For more information about Peter's work, you can reach him on Twitter at @PTRSCHMDTNLSN or find his website at saturndata.com.Timestamps00:00 Introduction to FPGAs and Their Role in Servers02:47 Understanding FPGA Limitations and Use Cases05:55 Exploring Different Types of Servers08:47 The Importance of Memory and Bandwidth11:52 Philosophical Insights on Search and Access Patterns14:50 The Relationship Between Hardware and Search Queries17:45 Challenges of Distributed Systems20:47 The CAP Theorem and Its Implications23:52 The Evolution of Technology and Knowledge Management26:59 FPGAs as IO Expanders29:35 The Trade-offs of FPGAs vs. ASICs and GPUs32:55 The Future of AI Applications with FPGAs35:51 Exciting Developments in Hardware and BusinessKey Insights1. FPGAs are fundamentally "crappy ASICs" with serious limitations - Despite being programmable hardware, FPGAs perform far worse than general-purpose alternatives in most cases. A $100,000 high-end FPGA might only match the memory bandwidth of a $600 gaming GPU. They're only valuable for specific niches like ultra-low latency applications or scenarios requiring massive parallel I/O operations, making them unsuitable for most computational workloads where CPUs and GPUs excel.2. The real value of FPGAs lies in I/O expansion, not computation - Rather than using FPGAs for their processing power, Saturn Data leverages them primarily as cost-effective ways to access massive amounts of DRAM controllers and NVMe interfaces. Their server design puts 200 FPGAs in a 2U enclosure with 1.3 petabytes of flash storage and terabyte-per-second read bandwidth, essentially using FPGAs as sophisticated I/O expanders.3. Access patterns determine hardware performance more than raw specs - The way applications access data fundamentally determines whether specialized hardware will provide benefits. Applications that do sparse reads across massive datasets (like vector databases) benefit from Saturn Data's architecture, while those requiring dense computation or frequent inter-node communication are better served by traditional hardware. Understanding these patterns is crucial for matching workloads to appropriate hardware.4. Distributed systems complexity stems from failure tolerance requirements - The difficulty of distributed systems isn't inherent but depends on what failures you need to tolerate. Simple approaches that restart on any failure are easy but unreliable, while Byzantine fault tolerance (like Bitcoin) is extremely complex. Most practical systems, including banks, find middle ground by accepting occasional unavailability rather than trying to achieve perfect consistency, availability, and partition tolerance simultaneously.5. Hardware specialization follows predictable cycles of generalization and re-specialization - Computing hardware consistently follows "Makimoto's Wave" - specialized hardware becomes more general over time, then gets leapfrogged by new specialized solutions. CPUs became general-purpose, GPUs evolved from fixed graphics pipelines to programmable compute, and now companies like Etched are creating transformer-specific ASICs. This cycle repeats as each generation adds programmability until someone strips it away for performance gains.6. Memory bottlenecks are reshaping the hardware landscape - The AI boom has created severe memory shortages, doubling costs for DRAM components overnight. This affects not just GPU availability but creates opportunities for alternative architectures. When everyone faces higher memory costs, the relative premium for specialized solutions like FPGA-based systems becomes more attractive, potentially shifting the competitive landscape for memory-intensive applications.7. Search applications represent ideal FPGA use cases due to their sparse access patterns - Vector databases and search workloads are particularly well-suited to FPGA acceleration because they involve searching through massive datasets with sparse access patterns rather than dense computation. These applications can effectively utilize the high bandwidth to flash storage and parallel I/O capabilities that FPGAs provide, making them natural early adopters for this type of specialized hardware architecture.

Interviews: Tech and Business
Cybersecurity and Quantum Computing: A Readiness Guide (with Palo Alto Networks) | CXOTalk #904

Interviews: Tech and Business

Play Episode Listen Later Jan 6, 2026 22:14


Nation-states are already harvesting your encrypted data, betting they'll crack it when quantum computers mature. It's happening now. In CXOTalk episode 904, Anand Oswal, Executive Vice President of Network Security at Palo Alto Networks, explains what business leaders need to understand about quantum security and how to address it. The impact of quantum computing on cybersecurity will be huge.Key timelines discussed:-- Cryptographically relevant quantum computers expected by end of this decade-- RSA and ECC algorithms deprecated by 2030, disallowed by 2035-- Enterprise cryptographic migrations typically take 5-10 years

Disruption / Interruption
Disrupting the Cyber War: Why Patented IoT Security is the Key to a Safer Society with Min Kyriannis

Disruption / Interruption

Play Episode Listen Later Dec 18, 2025 35:32


In this episode of Disruption/Interruption, host KJ sits down with Min Kyriannis, a trailblazer in the global security industry and CEO of Amyna Systems. Min shares her journey from immigrant roots to industry leadership, discusses the evolving landscape of network security, and explains how Amyna Systems is revolutionizing device-level protection. The conversation covers the challenges of legacy technology, the importance of proactive security, and Min’s commitment to both technological and humanitarian causes. Four Key Takeaways: The Human Element is the Weakest Link [11:03]Min emphasizes that despite technological advances, human error and lack of education remain the biggest vulnerabilities in network security. Legacy Systems Create Modern Risks [16:00]Integrating old technologies with new networks opens up significant security gaps, as outdated protocols are not designed for today’s threats. Proactive Security Over Reactive Patching [15:01]The industry often relies on patching vulnerabilities as they arise, but Min advocates for addressing root causes to prevent issues before they occur. Amyna Systems’ Revolutionary Approach [25:12]Amyna Systems has developed patented technology that detects and remediates anomalies within seconds, providing a new layer of defense for modern networks. Quote of the Show (24:29):“You have to be constantly learning. You have to be constantly trying to discover something, and it’s always fascinating to see what’s there.” – Min Kyriannis Join our Anti-PR newsletter where we’re keeping a watchful and clever eye on PR trends, PR fails, and interesting news in tech so you don't have to. You're welcome. Want PR that actually matters? Get 30 minutes of expert advice in a fast-paced, zero-nonsense session from Karla Jo Helms, a veteran Crisis PR and Anti-PR Strategist who knows how to tell your story in the best possible light and get the exposure you need to disrupt your industry. Click here to book your call: https://info.jotopr.com/free-anti-pr-eval Ways to connect with Min Kyriannis: LinkedIn: https://www.linkedin.com/in/mkyri Company Website: https://amyna.io/ How to get more Disruption/Interruption: Amazon Music - https://music.amazon.com/podcasts/eccda84d-4d5b-4c52-ba54-7fd8af3cbe87/disruption-interruption Apple Podcast - https://podcasts.apple.com/us/podcast/disruption-interruption/id1581985755 Spotify - https://open.spotify.com/show/6yGSwcSp8J354awJkCmJlDSee omnystudio.com/listener for privacy information.

Cyber Crime Junkies
AI Hackers Are Now COMPLETELY UNSTOPPABLE

Cyber Crime Junkies

Play Episode Listen Later Dec 12, 2025 17:02 Transcription Available


Question? Text our Studio direct.Today we're talking about AI-powered cybercrime—a phrase that sounds like a marketing stunt but is, unfortunately, very real. Cybercriminals basically got a software update, and now they're running their operations with more automation, more scale, and — let's just say it — better customer service than half the vendors in your tech stack.Season 8 is officially here — and it's the most unhinged, hilarious, and dangerously educational season we've ever done with full cyber chaos:

No Password Required
No Password Required Podcast Episode 66 — Danny Jenkins

No Password Required

Play Episode Listen Later Dec 3, 2025 36:58


Danny Jenkins — Founder of ThreatLocker and the Zero-Trust RevolutionDanny Jenkins is the CEO of ThreatLocker, the leading cybersecurity company that he built alongside his wife. Hosts Jack Clabby of Carlton Fields, P.A., and Kayley Melton of the Cognitive Security Institute follow Danny's journey from a scrappy IT consultant to leading one of the fastest-growing cybersecurity companies in the world.Danny shares the moment everything changed: watching a small business nearly collapse after a catastrophic ransomware attack. That experience reshaped his mission and ultimately sparked the creation of ThreatLocker. He also reflects on the gritty early days—cold-calling from his living room, coding through the night, and taking on debt before finally landing their first $5,000 customer.Danny explains the origins of Zero Trust World, his passion for educating IT teams, and why adopting a hacker mindset is essential for modern defenders.In the Lifestyle Polygraph, Danny relates his early “revenge tech” against school bullies, the place he escapes to when celebrating big wins, and the movie franchise he insists is absolutely a Christmas classic.Follow Danny on LinkedIn: https://www.linkedin.com/in/dannyjenkins/ 00:00 Introduction to Cybersecurity and ThreatLocker02:26 The Birth of ThreatLocker: A Personal Journey05:42 The Evolution of Zero Trust Security08:35 Real-World Impact of Cyber Attacks11:25 The Importance of a Hacker Mindset14:46 The Role of SOC Teams in Cybersecurity17:34 Building a Culture of Security20:23 Hiring for Passion and Skill in Cybersecurity23:44 Understanding Zero Trust: Trust No One26:32 Lifestyle Polygraph: Personal Insights and Fun29:41 Conclusion and Future of ThreatLocker

Defense in Depth
In the Age of Identity, is Network Security Dead?

Defense in Depth

Play Episode Listen Later Nov 20, 2025 34:21


All links and images can be found on CISO Series. Check out this post by Ross Haleliuk of Venture in Security for the discussion that is the basis of our conversation on this week's episode co-hosted by me, David Spark, the producer of CISO Series, and Edward Contreras, senior evp and CISO, Frost Bank. Joining us is Davi Ottenheimer, vp, trust and digital ethics, Inrupt. In this episode: Network security isn't dying—it's evolving The observability layer that can't be replaced What's old is new again The innovation gap Huge thanks to our sponsor, HackerOne Discover how AI innovators like Adobe, Anthropic, and Snap are using AI to find and fix vulnerabilities across the software development lifecycle. HackerOne, the global leader in offensive security solutions, reveals all in the CISOs' guide to securing the future of AI. Download it now to see how AI can strengthen your security posture. Learn more at https://www.hackerone.com/  

Cyber Crime Junkies
This New Rule Can DESTROY Your Sales Overnight: CMMC's Wide Reach

Cyber Crime Junkies

Play Episode Listen Later Nov 10, 2025 39:41 Transcription Available


CMMC 2.0 explained in plain English — what it means for small businesses, defense contractors, and vendors across the DoD supply chain. Learn about Level 1 vs Level 2, self-attestation risks, C3PAO shortages, compliance deadlines, and how to stay audit-ready before 2025.Don't miss out on crucial information about the CMMC 2025 deadline. The Cybersecurity Maturity Model Certification is a vital requirement for businesses dealing with the Department of Defense. If you miss the deadline, you risk losing contracts and facing severe penalties. In this video, we'll explore the consequences of missing the CMMC 2025 deadline and provide valuable insights on how to prepare and stay compliant. Stay ahead of the game and ensure your business is CMMC-ready. Find out what happens if you missed the deadline and learn how to avoid costly mistakes. Tune in now and take the first step towards CMMC compliance. CHAPTERS00:00 – The 4 Letters That Can End Your Business00:15 – CMMC 2.0: Why November 10, 2025 Changes Everything01:35 – Meet the Expert: Frontline View from a CMMC Assessor02:59 – What Is CMMC (In Plain English)?04:20 – FCI vs CUI: The Data That Decides Your Level07:05 – Are You Level 1 or Level 2? How the Flow-Down Really Work10:05 – Why the DoD Stopped “Trusting” Small Contractors11:40 – Supply-Chain Breaches: How Third Parties Take You Down13:00 – Level 1: The 17 “Basic” Controls Everyone Ignores17:00 – The Dangerous Game of Fudging Your Self-Attestation21:15 – Level 2: 110 Controls, SSPs, and the Reality of NIST 800-17123:40 – C3PAO Bottleneck: Why Waiting Means Losing Contracts26:30 – POA&M and the 180-Day “Grace” Trap32:05 – Surprise: Printers, MSPs, and “Non-Defense” Vendors in the Blast Radius35:15 – CMMC Is Not Going Away (And Other Hard Truths)37:05 – Countdown to FallSend us a textGrowth without Interruption. Get peace of mind. Stay Competitive-Get NetGain. Contact NetGain today at 844-777-6278 or reach out online at www.NETGAINIT.com Support the show

SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast
SANS Stormcast Monday, October 27th, 2025: Bilingual Phishing; Kaitai Struct WebIDE

SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast

Play Episode Listen Later Oct 27, 2025 6:20


Bilingual Phishing for Cloud Credentials Guy observed identical phishing messages in French and English attempting to phish cloud credentials https://isc.sans.edu/diary/Phishing%20Cloud%20Account%20for%20Information/32416 Kaitai Struct WebIDE The binary file analysis tool Kaitai Struct is now available in a web only version https://isc.sans.edu/diary/Kaitai%20Struct%20WebIDE/32422 WSUS Emergency Update Microsoft released an emergency patch for WSUS to fix a currently exploited critical vulnerability https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59287 Network Security Devices Endanger Orgs with 90s-era Flaws Attackers increasingly use simple-to-exploit network security device vulnerabilities to compromise organizations. https://www.csoonline.com/article/4074945/network-security-devices-endanger-orgs-with-90s-era-flaws.html

Cyber Crime Junkies
BIG LIES in Cybersecurity--Why We Need to Rebuild the Industry

Cyber Crime Junkies

Play Episode Listen Later Oct 4, 2025 52:53 Transcription Available


In the world of cybersecurity, there are big lies that have been perpetuated about compliance, fixability and communication--and it's time to burn it all down and start over.  Many experts see one main cybersecurity truth, especially about AI, SIEM, EDR and related business technology. By examining the intersection of AI, cybersecurity, and compliance, we can gain a deeper understanding of the lies that have been told about the state of cybersecurity and work towards a more secure future. Tune in to this thought-provoking Send us a textGrowth without Interruption. Get peace of mind. Stay Competitive-Get NetGain. Contact NetGain today at 844-777-6278 or reach out online at www.NETGAINIT.com Support the show

ITSPmagazine | Technology. Cybersecurity. Society
How F-Secure Transformed from Endpoint Security to Predicting Scams Before They Happen | A Brand Story Conversation with Dmitri Vellikok, Product and Business Development at F-Secure

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Sep 26, 2025 36:23


The cybersecurity industry operates on a fundamental misconception: that consumers want to understand and manage their digital security. After 17 years at F-Secure and extensive consumer research, Dmitri Vellikok has reached a different conclusion—people simply want security problems to disappear without their involvement.This insight has driven F-Secure's transformation from traditional endpoint protection to what Vellikok calls "embedded ecosystem security." The company, which holds 55% global market share in operator-delivered consumer security, has moved beyond the conventional model of asking consumers to install and manage security software.F-Secure's approach centers on embedding security capabilities directly into applications and services consumers already use. Rather than expecting people to download separate security software, the company partners with telecom operators, insurance companies, and financial institutions to integrate protection into existing customer touchpoints.This embedded strategy addresses what Vellikok identifies as cybersecurity's biggest challenge: activation and engagement. Traditional security solutions fail when consumers don't install them, don't configure them properly, or abandon them due to complexity. By placing security within existing applications, F-Secure automatically reaches more consumers while reducing friction.The company's research reveals the extent of consumer overconfidence in digital security. Seventy percent of people believe they can easily spot scams, yet 43% of that same group admits to having been scammed. This disconnect between perception and reality drives F-Secure's focus on proactive, invisible protection rather than relying on consumer vigilance.Central to this approach is what F-Secure calls the "scam kill chain"—a framework for protecting consumers at every stage of fraudulent attempts. The company analyzes scam workflows to identify intervention points, from initial contact through trust-building phases to final exploitation. This comprehensive view enables multi-layered protection that doesn't depend on consumers recognizing threats.F-Secure's partnership with telecom operators provides unique advantages in this model. Operators see network traffic, website visits, SMS messages, and communication patterns, giving them visibility into threat landscapes that individual security solutions cannot match. However, operators typically don't communicate their protective actions to customers, creating an opportunity for F-Secure to bridge this gap.The company combines operator-level data with device-level protection and user interface elements that inform consumers about threats blocked on their behalf. This creates what Vellikok describes as a "protective ring" around users' digital lives while maintaining transparency about security actions taken.Artificial intelligence and machine learning have been core to F-Secure's operations for over a decade, but recent advances enable more sophisticated predictive capabilities. The company processes massive data volumes to identify patterns and predict threats before they materialize. Vellikok estimates that within 18 to 24 months, F-Secure will be able to warn consumers three days in advance about likely scam attempts.This predictive approach represents a fundamental shift from reactive security to proactive protection. Instead of waiting for threats to appear and then blocking them, the system identifies risk patterns and steers users away from dangerous situations before threats fully develop.The AI integration also serves as a translation layer between technical security events and consumer-friendly communications. Rather than presenting technical alerts about blocked URLs or filtered emails, the system provides context about threats in language consumers can understand and act upon.F-Secure's evolution reflects broader industry recognition that consumer cybersecurity requires different approaches than enterprise security. While businesses can mandate security training and complex protocols, consumers operate in environments where convenience and simplicity drive adoption. The embedded security model acknowledges this reality while maintaining protection effectiveness.The company's global reach through operator partnerships positions it to address cybersecurity as a systemic challenge rather than an individual consumer problem. By aggregating threat data across millions of users and multiple communication channels, F-Secure creates network effects that improve protection for all users as the system learns from new attack patterns.Looking forward, Vellikok anticipates cybersecurity challenges will continue evolving in waves. Current focus on scam protection will likely shift to AI-driven threats, followed by quantum computing challenges. The embedded security model provides a framework for adapting to these changes while maintaining consumer protection without requiring users to understand or manage evolving threat landscapes. Learn more about F-Secure: https://itspm.ag/f-secure-2748Note: This story contains promotional content. Learn more. Guest: Dmitri Vellikok, Product and Business Development at F-Secure  On LinkedIn: https://www.linkedin.com/in/dmitrivellikok/ResourcesCompany Directory:https://www.itspmagazine.com/directory/f-secure Learn more about creating content with Sean Martin & Marco Ciappelli:  https://www.itspmagazine.com/purchase-programsNewsletter Archive: https://www.linkedin.com/newsletters/tune-into-the-latest-podcasts-7109347022809309184/Business Newsletter Signup: https://www.itspmagazine.com/itspmagazine-business-updates-sign-upAre you interested in telling your story?https://www.itspmagazine.com/purchase-programs Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

The Audit
Cybersecurity News: Grok AI Hijacked for Malware, Wi-Fi Heart Rate Hacks, Starlink Competition

The Audit

Play Episode Listen Later Sep 22, 2025 14:39 Transcription Available


Cybercriminals are exploiting X's Grok AI to bypass ad protections and spread malware to millions—while researchers discover your home Wi-Fi can now monitor your heart rate. This week's news breakdown covers the attack vectors you need to know about. Join co-hosts Joshua Schmidt, Eric Brown, and Nick Mellem as they dive into the latest cybersecurity developments that could impact your organization tomorrow. From social media malvertising to biometric data harvesting through everyday devices, these aren't distant threats—they're happening now. Key Topics Covered:  How cybercriminals are weaponizing Grok AI for malvertising campaigns Why 10-15% of employees access risky content at work (and what to do about it)  Wi-Fi devices that can detect heart rates from 10 feet away—privacy implications  Amazon's Project Kuiper vs. Starlink: What 1GB satellite internet means for security  Practical defenses: YubiKeys, browser isolation, and network redundancy strategies Don't wait until your organization is the next headline. IT leaders need to stay ahead of evolving threats, and this episode delivers critical insights to help protect your business. Like, share, and subscribe for more in-depth security discussions! #cybersecurity #infosec #grok #malware #starlink #wifi #privacy #ITsecurity 

Autonomous IT
CISO IT – Great Security Begins with Great IT, E11

Autonomous IT

Play Episode Listen Later Sep 11, 2025 13:44


In this episode, Jason Kikta discusses the critical relationship between IT and security, emphasizing that great security begins with a solid IT foundation. He explores the importance of establishing a baseline for normalcy, the role of user safety in preventing security breaches, and the need to understand insider threats. Jason concludes with discussing the 'big three' of cybersecurity, which are: Network Inventory: Knowing what's on your network is crucial. This involves having a comprehensive inventory of all devices and systems connected to the network.Configuration and Patching: Keeping systems configured correctly and up-to-date with patches is essential to prevent vulnerabilities that could be exploited by malicious actors.Identity and Authentication Protection: Ensuring robust identity and authentication measures are in place to protect against unauthorized access and maintain the integrity of user accounts.This episode originally aired October 10, 2024

CISSP Cyber Training Podcast - CISSP Training Program
CCT 274: CISSP Rapid Review (Domain 4) - Part 1

CISSP Cyber Training Podcast - CISSP Training Program

Play Episode Listen Later Aug 25, 2025 28:27 Transcription Available


Send us a textCheck us out at:  https://www.cisspcybertraining.com/Get access to 360 FREE CISSP Questions:  https://www.cisspcybertraining.com/offers/dzHKVcDB/checkoutGet access to my FREE CISSP Self-Study Essentials Videos:  https://www.cisspcybertraining.com/offers/KzBKKouvNetwork security is the cornerstone of modern cybersecurity, and understanding its intricacies is essential for anyone preparing for the CISSP exam. In this comprehensive episode, Sean Gerber delivers a rapid review of Domain 4: Communications and Network Security, which constitutes 13% of the CISSP exam questions.The episode opens with a cautionary tale about a disgruntled Chinese developer who received a four-year prison sentence for deploying a logic bomb that devastated his former employer's network. This real-world example underscores the critical importance of proper employee termination procedures and privilege management—especially for technical staff with elevated access. As Sean emphasizes, "The eyes of Sauron" should be on any high-privilege employee showing signs of discontent.Diving into Domain 4, Sean expertly navigates through foundational concepts like the OSI and TCP/IP models, explaining how they standardize network communications and why security professionals must understand them to implement effective defense strategies. The discussion progresses through IP networking (both IPv4 and IPv6), secure protocols, multi-layer protections, and deep packet inspection—all crucial components of a robust security architecture.Particularly valuable is Sean's breakdown of modern network technologies like micro-segmentation, which divides networks into highly granular security zones. While acknowledging its power to limit lateral movement during breaches, he cautions that implementation requires sophisticated knowledge of software-defined networking (SDN) and careful planning: "It's better to start small than to go out and think of and get too big when you're dealing with deploying these SDN type of capabilities."Wireless security, content delivery networks, and endpoint protection receive thorough examination, with Sean emphasizing that endpoints are "your first line of detection" and advocating for comprehensive endpoint detection and response (EDR) solutions that go beyond traditional antivirus. The episode concludes with insights on voice communication security, contrasting traditional telephone networks with modern VoIP systems and their unique vulnerabilities.Whether you're preparing for the CISSP exam or looking to strengthen your organization's network security posture, this episode provides actionable insights backed by real-world experience. Ready to deepen your understanding of cybersecurity fundamentals? Subscribe to the CISSP Cyber Training Podcast and check out the free resources available at cisspybertraining.com to accelerate your certification journey.Support the showGain exclusive access to 360 FREE CISSP Practice Questions delivered directly to your inbox! Sign up at FreeCISSPQuestions.com and receive 30 expertly crafted practice questions every 15 days for the next 6 months—completely free! Don't miss this valuable opportunity to strengthen your CISSP exam preparation and boost your chances of certification success. Join now and start your journey toward CISSP mastery today!

ITSPmagazine | Technology. Cybersecurity. Society
Data Kidnapping: Because File Encryption Is So 2020 | A Brand Story with Brett Stone-Gross, Senior Director of Threat Intelligence at Zscaler | A Black Hat USA 2025 Conference On Location Brand Story

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Aug 14, 2025 21:11


At Black Hat USA 2025, Sean Martin, co-founder of ITSPmagazine, sat down with Brett Stone-Gross, Senior Director of Threat Intelligence at Zscaler, to discuss the findings from the company's latest ransomware report. Over the past five years, the research has tracked how attack patterns, targets, and business models have shifted—most notably from file encryption to data theft and extortion.Brett explains that many ransomware groups now find it more profitable—and less risky—to steal sensitive data and threaten to leak it unless paid, rather than encrypt files and disrupt operations. This change also allows attackers to stay out of the headlines and avoid immediate law enforcement pressure, while still extracting massive payouts. One case saw a Fortune 50 company pay $75 million to prevent the leak of 100 terabytes of sensitive medical data—without a single file being encrypted.The report highlights variation in attacker methods. Some groups focus on single large targets; others, like the group “LOP,” exploit vulnerabilities in widely used file transfer applications, making supply chain compromise a preferred tactic. Once inside, attackers validate their claims by providing file trees and sample data—proving the theft is real.Certain industries remain disproportionately affected. Healthcare, manufacturing, and technology are perennial top targets, with oil and gas seeing a sharp increase this year. Many victims operate with legacy systems, slow to adopt modern security measures, making them vulnerable. Geographically, the U.S. continues to be hit hardest, accounting for roughly half of all observed ransomware incidents.The conversation also addresses why organizations fail to detect such massive data theft—sometimes hundreds of gigabytes per day over weeks. Poor monitoring, limited security staffing, and alert fatigue all contribute. Brett emphasizes that reducing exposure starts with eliminating unnecessary internet-facing services and embracing zero trust architectures to prevent lateral movement.The ransomware report serves not just as a data source but as a practical guide. By mapping observed attacker behaviors to defensive strategies, organizations can better identify and close their most dangerous gaps—before becoming another statistic in next year's findings.Learn more about Zscaler: https://itspm.ag/zscaler-327152Note: This story contains promotional content. Learn more.Guest:Brett Stone-Gross, Senior Director of Threat Intelligence at Zscaler, | On LinkedIn: https://www.linkedin.com/in/brett-stone-gross/ResourcesLearn more and catch more stories from Zscaler: https://www.itspmagazine.com/directory/zscalerLearn more about ITSPmagazine Brand Story Podcasts: https://www.itspmagazine.com/purchase-programsNewsletter Archive: https://www.linkedin.com/newsletters/tune-into-the-latest-podcasts-7109347022809309184/Business Newsletter Signup: https://www.itspmagazine.com/itspmagazine-business-updates-sign-upAre you interested in telling your story?https://www.itspmagazine.com/telling-your-storyKeywords: sean martin, brett stone-gross, ransomware, data extortion, cyber attacks, zero trust security, threat intelligence, data breach, cyber defense, network security, file transfer vulnerability, data protection, black hat, black hat usa 2025, zscaler

ITSPmagazine | Technology. Cybersecurity. Society
ThreatLocker to Unveil Game-Changing Zero Trust Innovations at Black Hat 2025 | Visit Them at Booth #1933 | A ThreatLocker Pre-Event Coverage of Black Hat USA 2025 Las Vegas | Brand Story with John Lilliston

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Jul 29, 2025 17:51


ThreatLocker to Unveil Game-Changing Zero Trust Innovations at Black Hat 2025 | Visit Them at Booth #1933 | A ThreatLocker Pre-Event Coverage of Black Hat USA 2025 Las Vegas | Brand Story with John LillistonJoin ITSP Magazine's Marco Ciappelli and Sean Martin as they preview ThreatLocker's exciting Black Hat 2025 presence with Detect Product Director John Lilliston. Discover upcoming major announcements, hands-on hacking demos, and how ThreatLocker's default deny approach is revolutionizing enterprise cybersecurity through comprehensive zero trust implementation.As Black Hat USA 2025 approaches, cybersecurity professionals are gearing up for one of the industry's most anticipated events. ITSP Magazine's Marco Ciappelli and Sean Martin recently sat down with John Lilliston, ThreatLocker's Detect Product Director, to preview what promises to be an exciting showcase of zero trust innovation at booth 1933.ThreatLocker has become synonymous with the "default deny" security approach, a philosophy that fundamentally changes how organizations protect their digital assets. Unlike traditional security models that allow by default and block known threats, ThreatLocker's approach denies everything by default and allows only approved applications, network communications, and storage operations. This comprehensive strategy operates across application, network, and storage levels, creating what Lilliston describes as a "hardened system that stops adversaries in their tracks."The company's rapid growth reflects the industry's embrace of zero trust principles, moving beyond buzzword status to practical, enterprise-ready solutions. Lilliston, who joined ThreatLocker in February after evaluating their products from the enterprise side, emphasizes how the platform's learning mode and ring fencing capabilities set it apart from competitors in the application control space.At Black Hat 2025, ThreatLocker will demonstrate their defense-in-depth strategy through their Detect product line. While their primary zero trust controls rarely fail, Detect provides crucial monitoring for applications that must run in enterprise environments but may have elevated risk profiles. The system can automatically orchestrate responses to threats, such as locking down browsers exhibiting irregular behavior that might indicate data exfiltration attempts.Visitors to booth 1933 can expect hands-on demonstrations and on-demand hacking scenarios that showcase real-world applications of ThreatLocker's technology. The company is preparing major announcements that CEO Danny Houlihan will reveal during the event, promising game-changing developments for both the organization and its client base.ThreatLocker's Black Hat agenda includes a welcome reception on Tuesday, August 5th, from 7-10 PM at the Mandalay Bay Complex, and Houlihan's presentation on "Simplifying Cybersecurity" on Thursday, August 7th, from 10:15-11:05 AM at Mandalay Bay J.The convergence of practical zero trust implementation, cutting-edge threat detection, and automated response capabilities positions ThreatLocker as a key player in the evolving cybersecurity landscape, making their Black Hat presence essential viewing for security professionals seeking comprehensive protection strategies.Keywords: Black Hat 2025, zero trust security, cybersecurity conference, ThreatLocker, default deny strategy, endpoint protection, application control, threat detection, enterprise security, network security, cybersecurity solutions, security automation, malware prevention, cyber threats, information security, security platform, Black Hat USA, cybersecurity innovation, managed detection response, security operationsLearn more about ThreatLocker: https://itspm.ag/threatlocker-r974Note: This story contains promotional content.Learn more.Guests:John LillistonCybersecurity Director | Threat Detection & Response | SOC Leadership | DFIR | EDR/XDR Strategy | GCFA, GISP | https://www.linkedin.com/in/john-lilliston-4725217b/Hosts:Sean Martin, Co-Founder at ITSPmagazine | Website: https://www.seanmartin.comMarco Ciappelli, Co-Founder at ITSPmagazine | Website: https://www.marcociappelli.com______________________ResourcesLearn more and catch more stories from ThreatLocker: https://www.itspmagazine.com/directory/threatlockerThreatLocker® Welcome Reception | Don't gamble with your security! Join us at Black Hat for a lively Welcome Reception hosted by ThreatLocker®. Meet our Cyber Hero® Team and dive into discussions on the latest advancements in ThreatLocker®Endpoint Security. It's a great opportunity to connect and learn together! ‍‍Time: 7PM - 10PM | Location: Mandalay Bay Complex RSVP below and we'll send you a confirmation email with all the details.[ Welcome Reception RSVP ]Learn more about ITSPmagazine Brand Story Podcasts: https://www.itspmagazine.com/purchase-programsNewsletter Archive: https://www.linkedin.com/newsletters/tune-into-the-latest-podcasts-7109347022809309184/Business Newsletter Signup: https://www.itspmagazine.com/itspmagazine-business-updates-sign-upAre you interested in telling your story?https://www.itspmagazine.com/telling-your-story

Dial P for Procurement
How Transportation & Logistics Companies Are Tackling Network Security W/ Ken Rutsky

Dial P for Procurement

Play Episode Listen Later Jul 10, 2025 29:33


“This is a long standing discussion within the networking and security industry: is there a perimeter? I think the reality is the perimeter still exists because it's a data and logical perimeter, but it doesn't exist anymore as a physical perimeter.” - Ken Rutsky, Chief Marketing Officer at Aryaka As the world becomes increasingly digital, ensuring network connectivity and security become parallel objectives that all companies must prioritize. Add in trying to do it as efficiently as possible, and the challenge only grows.  Ken Rutsky is the Chief Marketing Officer at Aryaka. They recently released their first Network Security Trends in Transportation and Logistics report, part of a series of research efforts looking at network security trends for different industries.  In this episode of the Art of Supply podcast, Ken joins Kelly Barner to discuss: The unique combination of physical and digital security needs that transportation and logistics companies have to satisfy  How the cost, complexity, and relative risk associated with network security are being addressed Balancing systems integration and also network perimeters to ensure connectivity on the move without taking on undue risk Links: Ken Rutsky on LinkedIn 2025 State of Network Security in Transportation & Logistics Kelly Barner on LinkedIn Art of Supply LinkedIn newsletter  Art of Supply on AOP Subscribe to This Week in Procurement

Cybercrime Magazine Podcast
Cybercrime Magazine Update: AI-Driven Network Security Solutions. The Future Of Cybersecurity.

Cybercrime Magazine Podcast

Play Episode Listen Later Jul 7, 2025 3:08


Cybercrime damages are predicted by Cybersecurity Ventures to cost the world $10.5 trillion annually by 2025. This harrowing statistic helped a blogger from GRAPIX AI narrate the future of cybersecurity powered by AI-driven solutions. In this episode, host Paul John Spaulding is joined by Steve Morgan, Founder of Cybersecurity Ventures and Editor-in-Chief at Cybercrime Magazine, to discuss. The Cybercrime Magazine Update airs weekly and covers the latest news, interviews, podcasts, reports, videos, and special productions from Cybercrime Magazine, published by Cybersecurity Ventures. For more on cybersecurity, visit us at https://cybersecurityventures.com.

Joey Pinz Discipline Conversations
#641 ITN Secure-Ricardo Villadiego:

Joey Pinz Discipline Conversations

Play Episode Listen Later Jul 2, 2025 32:53


Send us a textWould you board a flight if the pilot landed safely only 99.5% of the time? Ricardo Villadiego wouldn't—and he applies that same mindset to cybersecurity. In this high-impact episode from IT Nation Secure 2025, Joey Pinz talks with Ricardo, founder of Lumu, about precision, preparation, and protecting MSPs from EDR evasion and network breaches.✈️ Drawing parallels between aviation and cybersecurity, Ricardo shares how checklists, training, and feedback loops apply to both flying planes and defending networks. He recalls lessons from the Miracle on the Hudson and explains why being “left of boom” isn't optional—it's essential.

AWS Podcast
#727: AWS News: AWS Shield Network Security Director, Amazon GuardDuty for EKS, and more

AWS Podcast

Play Episode Listen Later Jun 30, 2025 34:48


Simon and Jillian take you through all the big security announcements from AWS re:Inforce plus a host of cool new features and price reductions!

shield aws network security security director inforce amazon guardduty
JSA Podcasts for Telecom and Data Centers
Corero Network Security's Michael Honeycutt & Mike Powell: Real-time DDoS Protection

JSA Podcasts for Telecom and Data Centers

Play Episode Listen Later May 29, 2025 5:56


Real-time DDoS protection is more crucial than ever, and Corero Network Security (LSE: CNS) (OTCQX: DDOSF) is leading the charge! Michael Honeycutt, Product Marketing Manager, and Michael Powell, Sales Engineer, joined us live on JSA TV from Metro Connect USA to discuss how Corero is protecting critical services from attacks and using AI to stay ahead of evolving threats.

The Unbeatable Mind Podcast with Mark Divine
518. The Silent Cyber War & AI's Growing Power with Dr. Eric Cole

The Unbeatable Mind Podcast with Mark Divine

Play Episode Listen Later May 27, 2025 79:45


The digital age has brought about a host of challenges to individuals and organizations that would have been inconceivable only years ago. This week on The Unbeatable Mind, Mark Divine talks to Dr. Eric Cole, a former CIA hacker and celebrated authority on cybersecurity. Eric guides listeners through the rapidly changing landscape of cyber threats, digital security and advancements in artificial intelligence.    Eric uncovers the tactics that cybercriminals—-sometimes state sponsored—-use to target businesses and individuals alike. He'll explain how these criminals are leveraging new technology to do more than just steal money, but in fact harvest voices, identities, and trust.    In addition, Dr. Cole offers practical safeguards for identifying scam attempts and delves into the importance of using apps from trusted sources, and having out-of-band communication with family.  He and Mark dissect the way AI is challenging us to reckon with a future where machines may outperform humans in decision making and strategy.    Key Takeaways:  Cybersecurity As a Global Battle: Recognize how the majority of cybersecurity attacks are coming from with no extradition, and even from government backed platforms. Without unified laws here and internationally, the threat level will only get bigger. AI Replacing Humans: Learn how AI is no longer just a helpful tool. We're at a tipping point and companies need strong data segmentation and clear risk postures in order to adapt. The Future of Money: Though Bitcoin and state-backed crypto-currencies may seem convenient, realize how as hackers become more sophisticated, they carry massive risk.   Eric Cole, PhD, is an industry-recognized security expert with over 20 years of hands-on experience in consulting, training, and public speaking. As the founder and CEO of Secure Anchor Consulting, Dr. Cole focuses on helping customers prevent security breaches, detect network intrusions, and respond to advanced threats. In addition, he is a sought-after expert witness and a 2014 inductee to the InfoSecurity Hall of Fame.   Dr. Eric Cole is the author of several books, including Advanced Persistent Threat: Understanding the Danger and How to Protect Your Organization; Hackers Beware: The Ultimate Guide to Network Security; Insider Threat: Protecting the Enterprise from Sabotage, Spying, and Theft; and Hiding in Plain Sight. With over 20 patent applications, Dr. Cole is on the cutting edge of cyber security research and development.   Eric's Links:  LinkedIn: https://www.linkedin.com/in/ericcole1/  Instagram:https://www.instagram.com/drericcole/?hl=en  Youtube: https://www.youtube.com/c/DrEricCole  X: https://x.com/drericcole?ref_src=twsrc%5Egoogle%7Ctwcamp%5Eserp%7Ctwgr%5Eauthor    Sponsors and Promotions: Marley Spoon - This new year, fast-track your way to eating well with Marley Spoon. Head to MarleySpoon.com/OFFER/DIVINE and use code DIVINE for up to 27 FREE meals!  Peak Pure Naturals -  Head to PeakNatural.com/DIVINE and use code DIVINE at checkout to give Peak Beets a try for 25% off. Plus remember you're covered by their lifetime satisfaction guarantee. Cremo - Head to Target or Target.com to find Cremo's new line of antiperspirants and deodorants in the Italian Bergamont and Palo Santo scents. Once again, that's Target or Target.com. Qualia - To feel in your prime WAY longer than you ever thought possible, try Qualia Senolytic up to 50% off right now at qualialife.com/divine15, and code DIVINE15 at checkout will score you an additional 15% off.   

The Audit
Pi-hole: The Open Source DNS Firewall Revolutionizing Network Security

The Audit

Play Episode Listen Later May 12, 2025 39:50 Transcription Available


Your network is talking behind your back—but Pi-hole is listening. Join The Audit as Pi-hole co-founders Dan Schaefer and Adam Warner reveal how their open-source DNS sinkhole technology has become the secret weapon for over 200,000 privacy-conscious users worldwide. In this episode, we discuss: How Pi-hole evolved from a simple ad blocker to a critical network security tool Why DNS-level filtering stops threats before they reach any of your devices The performance benefits that make browsing noticeably faster Setting up Pi-hole on everything from Raspberry Pi to enterprise hardware How the global development team maintains this powerful security shield Protecting vulnerable IoT devices from malicious traffic The future roadmap for Pi-hole and opportunities to contribute Don't miss this deep dive into the technology that's reclaiming control of digital footprints one DNS request at a time. Connect with the Pi-hole community at discourse.pi-hole.net and discover why cybersecurity professionals consider this an essential defensive tool. Like, share, and subscribe for more cutting-edge cybersecurity insights and expert analysis! #pihole #DNSfiltering #networksecurity #adblocking #privacytools #cybersecurity #opensource #infosec 

Cybercrime Magazine Podcast
Eradicating NTLM. It's Time To Enhance Network Security. David Strom, Cybersecurity Journalist.

Cybercrime Magazine Podcast

Play Episode Listen Later Apr 19, 2025 6:57


David Strom is an award-winning public speaker and cybersecurity journalist. David's writing spans more than 35 years, first as an editorial manager, where he ran publications such as Network Computing, Tom's Hardware, PC Week, ReadWrite and Inside Security. It also includes work as a full-time freelance writer for dozens of computer publications, including CSOonline and numerous TechTarget/Informa websites. In this episode, he joins host Charlie Osborne to discuss ridding networks of NTLM, including the path to eradicating this ancient protocol, why it's time, and more. • For more on cybersecurity, visit us at https://cybersecurityventures.com

Sales vs. Marketing
Lessons - Fixing Human Error in Cybersecurity | Theresa Payton - Former White House CIO

Sales vs. Marketing

Play Episode Listen Later Mar 30, 2025 11:29


➡️ Like The Podcast? Leave A Rating: https://ratethispodcast.com/successstory  In this "Lessons" episode, Theresa Payton, former White House CIO, shares how predictable human behavior creates vulnerabilities in cybersecurity and why conventional defenses often fall short. Learn why routine security measures are exploited by sophisticated social engineering and how designing innovative, personalized protocols can disrupt attackers and strengthen digital defenses. ➡️ Show Linkshttps://successstorypodcast.com  YouTube: https://youtu.be/bH8DwhGUg0cApple: https://podcasts.apple.com/us/podcast/theresa-payton-cybersecurity-expert-author-former-white/id1484783544Spotify: https://open.spotify.com/episode/5DLZKqN89CTRVXW2Hi3Pq5➡️ Watch the Podcast on YouTubehttps://www.youtube.com/c/scottdclary 

Interviews: Tech and Business
Mastering 5G Network Security (AI, Zero Trust, and SASE) with Palo Alto Networks | CXOTalk #873

Interviews: Tech and Business

Play Episode Listen Later Mar 18, 2025 21:34


In episode 873, we dive deep into 5G security with Anand Oswald, Sr. VP and GM of Network Security at Palo Alto Networks. Explore the transformative impact of 5G on industries and how the convergence of technologies like AI and IoT drives 5G digital transformations. Learn about managing sophisticated threats, the importance of a zero-trust approach, and the difference between public and private 5G network security. Discover real-world examples of 5G technologies in action and get key advice for securing your enterprise-grade 5G infrastructure from the ground up.

Packet Pushers - Full Podcast Feed
PP052: The State of the Network Security Market In 2025

Packet Pushers - Full Podcast Feed

Play Episode Listen Later Mar 4, 2025 40:38


How big is the network security market? Is it growing? How is that growth measured? What effect is SASE having on security spending? Will security products or security operators get more effective thanks to AI? We put these and other questions to Mauricio Sanchez. He’s Sr. Director, Enterprise Security and Networking at the Dell’Oro Group, a... Read more »

Packet Pushers - Fat Pipe
PP052: The State of the Network Security Market In 2025

Packet Pushers - Fat Pipe

Play Episode Listen Later Mar 4, 2025 40:38


How big is the network security market? Is it growing? How is that growth measured? What effect is SASE having on security spending? Will security products or security operators get more effective thanks to AI? We put these and other questions to Mauricio Sanchez. He’s Sr. Director, Enterprise Security and Networking at the Dell’Oro Group, a... Read more »

ITSPmagazine | Technology. Cybersecurity. Society
The Tools Hackers Use: From Manual Hacks to Automated Exploits | A Zero Trust World Conversation with Alex Benton | On Location Coverage with Sean Martin and Marco Ciappelli

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Feb 26, 2025 8:22


Recorded during ThreatLocker Zero Trust World 2025 in Orlando, this episode of the On Location series features an engaging conversation with Alex Benton, Special Projects at ThreatLocker. Benton shares insights from his Metasploit lab, a beginner-friendly session that demonstrates the power of tools like Metasploit and Nmap in cybersecurity. The lab's objective is clear: to illustrate how easily unpatched systems can be exploited and reinforce the critical need for consistent patch management.Understanding the Metasploit LabBenton explains how participants in the lab learned to execute a hack manually before leveraging Metasploit's streamlined capabilities. The manual process involves identifying vulnerable machines, gathering IP addresses, examining open ports, and assessing software vulnerabilities. With Metasploit, these steps become as simple as selecting an exploit and running it, underscoring the tool's efficiency.A key demonstration in the lab involved Eternal Blue, the exploit associated with the WannaCry virus in 2017. Benton emphasizes how Metasploit simplifies this complex attack, highlighting the importance of maintaining patched systems to prevent similar vulnerabilities.The Real-World Implications of Unpatched SystemsThe discussion dives into the risks posed by cybercriminals who use tools like Metasploit to automate attacks. Benton points out that malicious actors often analyze patch notes to identify potential vulnerabilities and create scripts to exploit unpatched systems quickly. The conversation touches on the dark web's role in providing detailed information about exposed systems, making it even easier for attackers to target vulnerable machines.Lessons from WannaCryThe episode revisits the WannaCry incident, where a vulnerability in Windows systems led to a global cybersecurity crisis. Benton recounts how outdated systems and the absence of a strong security culture created an environment ripe for exploitation. He also shares the story of cybersecurity researchers, including Marcus Hutchins, who played pivotal roles in mitigating the virus's impact by identifying and activating its kill switch.Tune in to Learn MoreThis episode offers valuable insights into cybersecurity practices, the dangers of unpatched environments, and the tools that both ethical hackers and cybercriminals use. Listen in to gain a deeper understanding of how to secure your systems and why proactive security measures are more crucial than ever.Guest: Alex Benton, Special Projects at ThreatLocker | On LinkedIn: https://www.linkedin.com/in/alex-benton-b805065/Hosts:Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber] | On ITSPmagazine:  https://www.itspmagazine.com/sean-martinMarco Ciappelli, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining Society Podcast & Audio Signals Podcast | On ITSPmagazine: https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/marco-ciappelli____________________________This Episode's SponsorsThreatLocker: https://itspm.ag/threatlocker-r974____________________________ResourcesLearn more and catch more stories from ZTW 2025 coverage: https://www.itspmagazine.com/zero-trust-world-2025-cybersecurity-and-zero-trust-event-coverage-orlando-floridaRegister for Zero Trust World 2025: https://itspm.ag/threat5mu1____________________________Catch all of our event coverage: https://www.itspmagazine.com/technology-and-cybersecurity-conference-coverageTo see and hear more Redefining CyberSecurity content on ITSPmagazine, visit: https://www.itspmagazine.com/redefining-cybersecurity-podcastTo see and hear more Redefining Society stories on ITSPmagazine, visit:https://www.itspmagazine.com/redefining-society-podcastWant to tell your Brand Story Briefing as part of our event coverage? Learn More

ITSPmagazine | Technology. Cybersecurity. Society
Strengthening Cybersecurity Through Zero Trust | A Conversation with Adam Fuller at Zero Trust World 2025 | A Zero Trust World 2025 On Location Coverage with Sean Martin and Marco Ciappelli

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Feb 22, 2025 11:16


Zero Trust World 2025: Strengthening Cybersecurity Through Zero TrustZero Trust World 2025 has come to a close, leaving behind a series of thought-provoking discussions on what it truly means to build a culture of security. Hosted by ThreatLocker, the event brought together security professionals, IT leaders, and decision-makers to explore the complexities of Zero Trust—not just as a concept but as an operational mindset.A Deep Dive into Windows Security and Zero Trust

LINUX Unplugged
600: Everyone, Everywhere, All at Once

LINUX Unplugged

Play Episode Listen Later Feb 3, 2025 68:50 Transcription Available


We celebrate 600 episodes, announce a new show feature, and officially launch the FreeBSD challenge.Sponsored By:Tailscale: Tailscale is a programmable networking software that is private and secure by default - get it free on up to 100 devices! 1Password Extended Access Management: 1Password Extended Access Management is a device trust solution for companies with Okta, and they ensure that if a device isn't trusted and secure, it can't log into your cloud apps. Support LINUX UnpluggedLinks:

Self-Hosted
141: Eats, Shoots & Leaves

Self-Hosted

Play Episode Listen Later Jan 24, 2025 57:52


Bambu Labs teaches us how to lose friends and alienate people. Then, Alex Tran from Immich joins us for a project update, and we shared some dreams for a community RSS project. Special Guest: Alex Tran.

eats shoots 3d printing plex network security home assistant chris fisher dashcams jailbreaking jupiter broadcasting openzfs transcoding alex tran proprietary software