POPULARITY
In this episode of The Gate 15 Interview, Andy Jabbour speaks with Brandon Dixon. Brandon has worn many hats, from security engineer to entrepreneur. Today, he serves at a Partner AI Strategist for Microsoft, Strategic Advisory and Partner with NinjaJobs, and is a tremendous athlete. Brandon has dedicated his career to information security, focusing on analysis, solution development, and process refinement. As the Security AI Strategist for Microsoft Research, he is advancing fully autonomous security outcomes. Previously, Brandon led the product release of Copilot for Security. He also served as VP of Strategy and Product at RiskIQ, a San Francisco startup acquired by Microsoft, where he helped integrate the business and launched Defender Threat Intelligence and Defender External Attack Surface Management. Brandon has developed several public solutions, including PassiveTotal (acquired by RiskIQ), NinjaJobs (acquired by Starfish Partners), PDF X-RAY, and Blockade.io. His research and development in various security topics have earned him accolades from major security vendors and industry peers. Learn more about Brandon on LinkedIn. In the discussion Brandon and Andy discuss: Brandon's Background. Three “Big Things” in AI Brandon's paying attention to in 2025. Entrepreneurship: “Make sure the idea is something you personally care about.” The value of falling short. Resilience. Roasting Coffee (see link below!) Balance. Fitness: from BMX to ultras. We play Three Questions! Whippets, Big Sky, and long runs. More! Selected links: Beans to Bots: Hacking My Coffee Machine with AI Security Chaos Engineering: Sustaining Resilience in Software and Systems
In this episode of The Gate 15 Interview, Andy Jabbour welcomes Eric Foster, Chief Operating Officer at Stairwell. Prior startups include Cyderes.com (co-founder under Gary Fish, sold to Apax Partners / merged with Robert Herjavec's Herjavec Group), RiskIQ.com (sold to Microsoft), MMAjunkie.com (founder, sold to USA Today) and eScout.com (incubation team, sold to PerfectCommerce). Active advisory roles include: Onspring.com, Stairwell.com. Past advisory roles: PhoneFactor (sold to Microsoft). Eric is a recognized domain expert in Information Security, Regulatory Compliance, and CusEricer Success. In the discussion we address: Eric's origin story His experience as a founder and entrepreneur, and the importance of mentorship Building high-performance teams and developing corporate culture Eric's work from founding CYDERES to his current work with Stairwell The complex intersection of geopolitical threats and increased conflict in a world that is rapidly accelerating in positive directions in technology We play Three Questions and talk careers in an alternate universe, flying through space with Elon, Eric's musical obsessions, and more – including Radiohead and Sleep Token! A few references mentioned in or relevant to our discussion include: CYDERES Stairwell Learn more about the Stairwell Culture Google Blog: A new approach to China, January 12, 2010 (in late 2009, Google was the victim of a major cybersecurity attack, code named Operation Aurora)
Metaverso El metaverso sigue siendo una de las tendencias tecnológicas más destacadas del momento. Esta semana, Meta anunció que lanzará una nueva versión de su plataforma de realidad virtual Horizon Worlds, que incluirá nuevas características como la posibilidad de crear y compartir mundos virtuales. Inteligencia artificial La inteligencia artificial también sigue avanzando a pasos agigantados. Esta semana, Google anunció que ha desarrollado un nuevo modelo de lenguaje factual llamado Clipper, que supera a otros modelos de lenguaje en una serie de tareas, incluyendo la generación de texto creativo y la respuesta a preguntas. Ciberseguridad La ciberseguridad es otra tendencia tecnológica clave. Esta semana, el gobierno de España anunció que invertirá 1.000 millones de euros en ciberseguridad en los próximos años. Otras tendencias Además de estas tendencias, también hubo otras noticias tecnológicas destacadas esta semana, como: La empresa de robótica Boston Dynamics presentó un nuevo robot llamado Spot Mini, que es más pequeño y ágil que sus predecesores. La empresa de tecnología financiera Block anunció que está desarrollando una nueva criptomoneda llamada Bitcoin Cash Standard. La empresa de software Microsoft anunció que ha adquirido la empresa de ciberseguridad RiskIQ. Conclusiones Las tendencias tecnológicas de esta semana muestran que el futuro de la tecnología es brillante. La inteligencia artificial, el metaverso y la ciberseguridad son algunas de las áreas que están experimentando un gran desarrollo, y es probable que sigan siendo protagonistas en los próximos años. Libros recomendados: https://infogonzalez.com/libros --- Send in a voice message: https://podcasters.spotify.com/pod/show/infogonzalez/message
With sophisticated cyber-attacks on the rise, get detailed and current intel on trending attacks with Microsoft Defender Threat Intelligence. Enrich investigations and contain threats before they impact your organization with exclusive access to the same raw attack signals our Microsoft Researchers have. Easily gauge the severity of a threat and seek specialist assistance with Threat Profiles that link threats and their methods to known threat actors. Lou Manousos, Threat Intelligence expert and Microsoft Security CVP, joins Jeremy Chapman to share how to use raw data on active attacks as they unfold. ► QUICK LINKS: 00:00 - Introduction 01:33 - Track and understand attacks 03:39 - Native integration of RiskIQ data with Microsoft Defender 06:14 - Raw data in the Threat Intelligence portal 07:32 - How to see evolving threats 09:16 - Connect a threat actor to an active incident 11:28 - How to use raw data in an active incident 13:32 - Host pairs 15:29 - Wrap up ► Link References: More on Threat Intelligence at https://aka.ms/mdti-tech Access the most current 2 weeks of data for free at https://ti.defender.microsoft.com ► Unfamiliar with Microsoft Mechanics? As Microsoft's official video series for IT, you can watch and share valuable content and demos of current and upcoming tech from the people who build it at Microsoft. • Subscribe to our YouTube: https://www.youtube.com/c/MicrosoftMechanicsSeries • Talk with other IT Pros, join us on the Microsoft Tech Community: https://techcommunity.microsoft.com/t5/microsoft-mechanics-blog/bg-p/MicrosoftMechanicsBlog • Watch or listen from anywhere, subscribe to our podcast: https://microsoftmechanics.libsyn.com/podcast ► Keep getting this insider knowledge, join us on social: • Follow us on Twitter: https://twitter.com/MSFTMechanics • Share knowledge on LinkedIn: https://www.linkedin.com/company/microsoft-mechanics/ • Enjoy us on Instagram: https://www.instagram.com/msftmechanics/ • Loosen up with us on TikTok: https://www.tiktok.com/@msftmechanics
En este nuevo episodio de Fusiones y Adquisiciones, el podcast de Empresax.com, abordamos los siguientes temas: 👉 Este episodio cuenta con el apoyo de Datasite, líder mundial en la gestión integral de los procesos de M&A: https://bit.ly/3f3t6g7 - ¿Quién es María Rojo? - Estado de la industria de la ciberseguridad: ataques, impacto, verticales, consolidación... - ¿Qué hacen desde Enthec? ¿Por qué se decantó por la ciberinteligencia de entre todos los segmentos del sector? ¿Cuáles han sido los principales hitos hasta la fecha? ¿Y el roadmap? - Operaciones M&A y de Private Equity destacadas: racional de transacciones como la adquisición de RiskRecon por parte de Mastercard, RiskIQ y Microsoft, BitSight y Moodys o la verticalización de Zerofox con la adquisición de IDX. - Casos de éxito en España. - De Aranda de Duero a Málaga. La gran apuesta de la ciudad andaluza por convertirse en un hub tech y de ciberseguridad. María es fundadora y CEO de Enthec Solutions, empresa de desarrollo de soluciones de ciberseguridad y cibervigilancia. Ha desarrollado toda su carrera en el área de ciberseguridad de grandes empresas como BBVA, Santander, Indra or Airbus. Actualmente está cursando el Doctorado en Telemática con Máster e Ciberseguridad en la UC3M y ha publicado un libro sobre blockchain.
In this episode of New Cyber Frontier, our host Tim Montgomery Speaks with Steve Ginty, Director of Threat Intelligence at RiskIQ. Steve Ginty gives his knowledge of Digital Security and protection against malware across the internet. Additionally, RiskIQ has partnered with Microsoft to work with the vulnerability of their exchange systems. Join us on today's episode of New Cyber Frontier. Visit our sponsors: BlockFrame Inc. IEEE Digital Privacy Murray Security Services
On The Cloud Pod this week, the team discusses why Ryan's yelling all day (hint: he's learning). Plus: Peter misses the all-important cloud earnings, AWS Skill Builder subscriptions are now available, and Google Eventarc connects SaaS platforms. A big thanks to this week's sponsor, Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. This week's highlights
This week, Steve Ginty of RiskIQ joins NetApp's Security Evangelist Matt Trudewind and NetApp Spot's Azzedine Benameur to discuss how RiskIQ helps identify vulnerabilities across attack surfaces and where NetApp fits in.
This week on Privacy Please, we have the pleasure of speaking with Steve Ginty, the director of threat intelligence at RiskIQ! We talk about his story, security, privacy and convenience across corporations and organizations, and much more!
Gladys and Michael talk to Jason Zann, VP, Head of Platform about RiskIQ, a recent Microsoft acquisition. We also cover the latest security news about API Management, Azure Monitor, Defender for Cloud, Identity Protection and Sensitivity labels.
Brandon and Eric reflect on 2021 and their favorite episodes and topics of the year. Episode Links 32 - Open Source Sustainability (https://sudo.show/32) 30 - Loving Your Work with Dashaun Carter (https://sudo.show/30) 27 - Open Source Virtual Desktop Infrastrcture (https://sudo.show/27) 16 - Starting a Home Lab (https://sudo.show/16) 18 - Managing Multi-Cloud with Chris Psaltis (https://sudo.show/18) 22 - Tidelift (https://sudo.show/22) 24 - Data Quality with Soda (https://sudo.show/24) 37 - Data Integration with Michel Tricot of Airbyte (https://sudo.show/37) 28 - Security Intelligence with Steve Ginty of RiskIQ (https://sudo.show/28) 35 - Busting Open Source Security Myths (https://sudo.show/35) Software Links Project Hamster (https://github.com/projecthamster) Links to the network shows Destination Linux Network (https://destinationlinux.network) Sudo Show Website (https://sudo.show) Support the Show Sponsor: Bitwarden (https://bitwarden.com/dln) Sponsor: Digital Ocean (https://do.co/dln-mongo) Sudo Show Swag (https://sudo.show/swag) Contact Us: DLN Discourse (https://sudo.show/discuss) Email Us! (mailto:contact@sudo.show) Sudo Matrix Room (https://sudo.show/matrix) Follow our Hosts: Brandon's Website (https://open-tech.net) Eric's Website (https://itguyeric.com) Red Hat Streaming (https://www.redhat.com/en/livestreaming) Chapters 00:00 Intro 00:42 Welcome 02:41 DigitalOcean 03:45 Bitwarden 05:11 Main Content 47:20 Wrap Up
This is a special edition. In this episode, I spoke to a subject matter expert - Steve Ginti. We did a deep dive into the threat landscape.
Show Links: Twitch: https://www.twitch.tv/microsoftsecurityinsights Discord: https://discord.gg/thCAR7RMUe
Steve Ginty, Director of Threat Intelligence at RiskIQ talks about External Attack Surface Management (EASM)and gives advice on how companies can better prepare for and prevent cyber attacks. RiskIQ was recently acquired by Microsoft. https://www.riskiq.com/ www.securetalkpodcast.com
In a world where new vulnerabilities appear seemingly every minute, threat intelligence is more important than ever. And one of the most intriguing approaches to threat intelligence is attack surface management. To explain the ins and outs of attack surface management, I invited Steve Ginty, Director, Threat Intelligence at RiskIQ, onto the show. He shares the work RiskIQ is doing in the field and how it could benefit your organization. In this episode, we discuss: - What attack surface management is and how RiskIQ can help - How RiskIQ can let you respond faster when new vulnerabilities arise - The importance of gaining visibility into not just your own attack surfaces, but those of your vendors To hear this episode, and many more like it, you can subscribe to The Virtual CISO Podcast here. If you don't use Apple Podcasts, you can find all our episodes here. Listening on a desktop & can't see the links? Just search for The Virtual CISO Podcast in your favorite podcast player.
Ron and Chris host their vocal coach, D'Arcy Webb, for this episode of the Hacker Valley Studio podcast's Hacker Valley Blue series. Since threat intelligence is a communications-based function, Ron and Chris look to “The Speech Diva” for insight. She has experience as an actress, was a coach for TEDxCambridge, and loves teaching people how to access the power of language to touch people's hearts and change their minds. As the conversation begins, D'Arcy explains her background to listeners. She explains how an acting incident early in her career turned her attention to the topic of vocals, and clarifies that she has spent the last 25 years teaching and exploring this aspect of performance. D'Arcy is passionate about treating the voice as the instrument that it is, and she works with students such as Chris and Ron to help them discover the musical and magical components to language and improve their own speaking practice. The way we speak, she insists, impacts people, and so it is well worth pursuing excellence in this area. 1:29 - Listeners are introduced to D'Arcy. 4:35 - The group considers Ron and Chris's progress in speech. 6:08 - D'Arcy believes that magic and music are inherent in language. 8:48 - Who are D'Arcy's favorite speakers, and what is the value of pauses? 12:03 - People wanting to grow need to learn the fundamentals. 17:05 - D'Arcy addresses filler words. 19:31 - The group thinks about comfortable technique, Pablo Neruda, onomatopoeia, and more. 27:52 - D'Arcy speaks to the power of speech and the importance of proper breathing. Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about D'Arcy Webb Connect with D'Arcy on Facebook Email D'Arcy at darcy@darcywebb.com Learn more about our sponsor RiskIQ
In this episode of the Hacker Valley Studio podcast's Hacker Valley Blue series, Ron and Chris wrap up the season with a recap of its past episodes and major takeaways, as well as a look at what's to come for them personally and for the podcast. Looking back on the season, Ron and Chris consider the importance of communication in the field of threat intelligence, specifically thinking of insights from their talk with D'Arcy and lessons in poetry and delivery from Valentina. They cover the surprise of Jack's willingness to share personal thoughts, review their discussions of bias (specifically highlighting talks with Jon and Susan), and recount things learned about the concept of unhackability. Listeners will hear about the inevitability of mistakes in threat intelligence work, the “easy button” framework, the season theme of sharpening oneself outside of work, and the dynamic of a threat intelligence team. 0:47 - Ron and Chris talk about the importance of communication in the field of threat intelligence. 2:56 - What was one surprise in this season? 3:52 - The hosts review their conversations about bias. 6:55 - The episode turns to the “easy button” framework and the need for personal sharpening outside of work. 16:15 - Ron and Chris consider the inevitability of analysts missing things and the building of a team. 20:22 - What is the future of threat intelligence for Chris and Ron? 27:50 - The hosts review their insights about the possibility of an unhackable device or app. 29:43 - What is next for the Hacker Valley Studio podcast? Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about RiskIQ
This episode of the Hacker Valley Studio podcast's Hacker Valley Blue series is a bit unique. It features Brandon Dixon, the VP of Strategy at RiskIQ, a major sponsor of the podcast. Brandon co-founded Passive Total in 2014, and it was later purchased by RiskIQ. He is the quintessential guest, invested in fitness, philosophy, tech, and leadership. He is an expert in both the practice and business of threat intelligence, and he shares with Ron and Chris about himself, his work, and the field. Much of the conversation focuses on Brandon and his work background. Brandon explains his journey into the threat intelligence field, from his early interest, through jobs in tech and academia, and to work in espionage research. Eventually, he and friend Steve McGinty saw a need and tried to solve it; their efforts took shape in the company they co-founded, Passive Total. Brandon explains to listeners the process by which he and Steve created Passive Total, as well as the way in which they arrived at the deal to sell Passive Total to RiskIQ. Brandon was heavily involved in the integration of Passive Total into RiskIQ, before eventually settling into a specific role within RiskIQ that capitalizes his love of the business side of the field. He aims to work in light of his personal philosophy on life and success, which he also details. 0:26 - The conversation begins with an introduction to this unique episode, its guest, and his background. 2:43 - The group considers the changing business of threat intelligence and what drives Brandon. 8:24 - The next topics are bias and intelligence collection, as well as what surprises Brandon. 13:00 - Brandon shares the story of Passive Total and its integration into RiskIQ, also addressing the business side of the field and lessons learned through his experience. 24:04 - Brandon addresses intelligence leads and the question of unhackability. 34:44 - What is Brandon's philosophy on life and success? 39:37 - Brandon explains what threat intelligence leaders need to do to improve their programs. Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Follow Brandon on Twitter Learn more about our sponsor RiskIQ Follow RiskIQ on Twitter Connect with RiskIQ on YouTube
This episode of the Hacker Valley Studio podcast is the fifth installment in this first season of the Hacker Valley Blue series, and features guest Susan Peediyakkal, an expert in building threat intelligence programs. Susan is a cyber threat intelligence consultant, the founder of BSides Sacramento, and a member of the advisory boards for several cybersecurity companies. She joins hosts Ron and Chris to speak to her background, the future of threat intelligence, and much more. Susan first details her background, running through the highlights of her approximately 16 years in cybersecurity, which have focused mostly on threat intelligence. Susan began her career in the air force, and is still a reservist. She worked with radar, and eventually decided to cross-train and branch into IT. The following years saw her in a number of roles with various organizations, and move decisively into the threat intelligence field. Eventually, Susa noticed that her career trajectory was moving her toward building threat intelligence programs for government entities. She built programs for such varied clients as the government of Abu Dhabi, USPS, US courts, and industry leaders. She recently paused her work to pursue further education, but has since returned to work as a threat intelligence practitioner. 1:40 - Listeners are introduced to the episode and today's guest, Susan Peediyakkal; Susan then shares her background. 5:41 - The group considers the importance of community, misconceptions Susan has noticed about her field, and the artistry and human element of threat intelligence. 16:02 - What kind of bias is Susan running into, and where do analysts go wrong with regard to bias? 21:38 - Susan addresses the term “unhackable.” 24:35 - Susan and her hosts turn to matters of podcasting, voice, and speaking. 31:40 - What do people outside the field get wrong about it? 33:48 - What's the future look like for Susan, her field, and the workforce? Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Follow Susan on Twitter Connect with Susan on LinkedIn Learn more about the episode sponsor, RiskIQ
On this episode of Hacker Valley Studio, hosts Ron and Chris speak with Rachel Tobac, CEO of SocialProof Security and Chair of the Women in Security and Privacy Board. Their conversation covers everything from neuroscience to spearfishing and human's place in cyber security. Rachel is a human hacker, also known as a social engineer, and she begins the episode by explaining her background in social engineering and experience in the non profit space. She credits her success in the field to her background in neuroscience and behavioral psychology as well as training in improv. 1:59 - Rachel Tobac and today's episode of Hacker Valley Red is introduced. 8:50 - What are the skills needed to become a social engineer? 10:51 - Rachel leads Ron and Chris through an improv exercise. 13:59 - Rachel shares where she thinks technology is headed. 20:20 - Rachel shares the scariest part of social engineering hacks. 25:29 - Rachel's key takeaways. 34:11 - Rachel is looking toward 2020 election security. Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Follow Rachel Tobac on Twitter Learn more about the season sponsor, RiskIQ
In this episode of the Hacker Valley Studio podcast, hosts Ron and Chris introduce the podcast's new series: Hacker Valley Red. After the previous season highlighted the defensive side of cyber security, this season will focus on the other side of the coin - the offensive side. Ron and Chris spend this initial episode talking about their experience with the offensive side of cyber security, what listeners can look forward to hearing in the episodes ahead, and what sorts of questions experts will field throughout the season. As the conversation gets underway, Ron and Chris introduce the season, which will cover such topics as the background and personas of red teamers, information about red teaming technology, misconceptions from the blue side, and what red teaming really looks like. The hosts then share their own backgrounds in red teaming. While they both had some prior experience with red teaming, they learned a lot through hosting the episodes in the season. As they introduce the series ahead, Ron and Chris touch on the social side of red teaming, analogies by which red teaming can be explained, Ron's exploitation video, the value and use of red teaming within organizations, the shared community of red and blue teaming, purple team engagement, the concept of unhackability, and more. In the episodes ahead, Ron and Chris will ask guests what other aspects of life and technology help them with red teaming, and there are particular topics from the episodes that they are most excited to consider with listeners. These topics include the issue between blue and red teams, the concept of a hacker, the idea of unhackability, and different perspectives of paths into the field of red teaming and to mastery within it. Ron and Chris conclude their introductory conversation with two lessons they hope listeners will take from the season: the lesson that creation is a process and that the best red teamers learn to love the process, and the lesson that both red and blue team members are on the same team. 0:48 - The podcast is now moving to the other side of the coin: the offensive side of cyber security. 2:48 - Ron and Chris share their respective backgrounds in red teaming. 7:25 - What other aspects of life and technology help guests with red teaming? 10:50 - Chris asks about Ron's exploitation video. 12:52 - The hosts address the iterative improvement of an organization's security posture. 18:14 - Ron and Chris talk about purple team engagement. 21:12 - Is unhackability real or possible? 24:53 - Hacking can have to deal with a human, rather than a device or application. 26:34 - What key takeaways do the hosts want listeners to take from the season? 28:10 - What do Ron and Chris want listeners to learn? Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about the season sponsor, RiskIQ
On this episode of Hacker Valley Studio, hosts Ron and Chris speak with Alissa Knight, author of the book Hacking Connected Cars and self described “recovering hacker.” Their conversation covers content creation, API's and hacking cars. Alissa grew up in Seattle, Washington where there was a big art scene. She began building her own computers and running her own boards at an early age. She says a lot of people don't know that she started out in the BBS scene back in the 90's. At seventeen she hacked into a government network and was arrested. Eventually, the charges were dropped on a technicality and she went on to work for the US Intelligence Community in cyber warfare. 2:08 - The episode and guest are introduced. 3:19 - Alissa gives an overview of her background. 6:29 - How Alissa's career began. 10:16 - Do you have to program to hack? 14:26 - What led Alissa to hacking cars? 24:55 - Alissa explains what people get wrong about the red team. 29:25 - Alissa answers the question, “is there an unhackable device?” 36:54 - How KnightTV came into being. 41:08 - Alissa gives her advice on where to start getting into cyber security Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Follow Alissa Knight on Twitter Subscribe to Alissa's YouTube Channel Learn more about the season sponsor, RiskIQ
This episode of the Hacker Valley Studio podcast continues the Hacker Valley Red series by featuring Alex Rice. Alex is the CTO and co-founder of HackerOne, and he joins hosts Ron and Chris for a conversation about such topics as the beginnings of the researcher community, bug bounty, and the term “hacker.” Alex first shares about his background leading up to what he's doing today. He worked as a developer, and then about 20 years ago, he moved into the security field. Part of his career trajectory was motivated by his frustration over a lack of feedback loops, and he explains both how HackerOne came to be and some details about bug bounty. Ron and Chris are particularly interested in why HackerOne has the term “hacker” in it, even though the term can carry with it negative connotations (however inaccurate they may be). Alex clarifies that he and his colleagues do not want to beat around the bush, but want to be part of the work of dismantling false stereotypes about hacking. 1:34 - Listeners are introduced to Alex Rice and the conversation to come. 2:41 - What is Alex's background, and what is he doing today? 7:45 - Alex explains why the term “hacker” is included in his company's name. 10:45 - The group considers cease and desist orders, bug bounty community, and gamification of security and hacking. 18:11 - Alex addresses the reality of teenagers making millions through bug bounty, as well as the personas of hacking outliers. 22:43 - Alex talks bug bounty, COVID-19, and writing reports. 25:41 - Is unhackability possible? If not, what's the closest we can get to it? 30:02 - The conversation concludes with Alex's thoughts on the future, hobbies, and encouragement to people in bug bounty looking to continue in the field. Links: Connect with Alex Rice on Twitter Connect with the Bug Bounty Community at hackerone.com/hacktivity Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about the season sponsor, RiskIQ
In this episode of the Hacker Valley Studio podcast's Hacker Valley Red series, this time featuring guest Ted Harrington. Ted is an Executive Partner at ISE Security, an author, and a professional speaker. Hosts Ron and Chris speak with Ted about the concept of unhackability, his experience in the security field, an interesting story of an attack in real time, and more! To start off the interview, Ted shares about his background. He currently works for a consulting firm that focuses on ethical hacking and aims to help companies solve their security problems, and his interest in the work of hacking goes back to a car-hacking experience in which he and his colleagues were inspired by a claim of unhackability and disproved the claim. 1:50 - The episode features Ted Harrington; listeners are introduced to him and the episode ahead. 3:05 - The conversation begins with Ted's background. 7:21 - The group considers the term “unhackable,” closing attack vectors, and breakers starting as builders. 14:02 - “Think like a hacker.” 20:02 - Ted explains some lessons from real-life work, focusing on a cryptocurrency wallet example. 25:13 - What should people learn and do? 30:38 - Where do Ted's energy and motivation come from, and what is the most interesting part of his work? 34:32 - Ted offers advice and shares what he hopes his legacy in the field will be. Links: Connect with Ted on LinkedIn or email him at ted@ise.io Learn about Ted's book, Hackable Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about the season sponsor, RiskIQ
On this episode of Hacker Valley Studio, hosts Ron and Chris speak with Lisa Jiggetts, founder of Women's Society of Cyberjutsu. Their conversation covers Lisa's background, her current work and her involvement as a penetration tester. Lisa says she's always been a techie who loved gadgets, breaking things and trying to understand how they fit together. She knew she wanted to work with computers, but wasn't sure what that meant, exactly. Out of high school she joined the military working in IT, but knew she wanted to be a hacker. Eventually, she made her way to pentesting apps and systems in the cloud. Lisa loves the game aspect of pentesting and the red team. She says she enjoys the challenge of trying to get into the box and “level up,” trying more and more ways in before reaching out for help. 2:12 - The episode and guest are introduced. 3:50 - Lisa gives an overview of her background. 10:00 - Lisa explains her breaker mentality. 15:57 - What made Lisa commit to pentesting and the red team? 20:34 - Lisa discusses the founding of the Women's Society of Cyberjutsu. 29:44 - Lisa's advice for listeners interested in the red team and cyber security. Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about WSC Follow Lisa Jiggetts on Twitter Learn more about the season sponsor, RiskIQ
This episode of Hacker Valley Studio podcast's Hacker Valley Red Series features guest Maurice Ashley, a chess grandmaster and author of Chess for Success. Maurice is a chess guru and has been playing it ever since his high school years. He is currently involved in commentating for chess events, teaching chess, and training national chess champions. In this episode, Maurice and the hosts talk about Maurice's chess journey along with some parallels between chess and cyber security. The hosts, Ron and Chris, start off the interview by pointing out one parallel between chess and cybersecurity: the art of training. Maurice responds by sharing about the rigorous training of chess, and of the different strategies and techniques that must be learned. He also takes some time to explain his own journey with training in chess and how it progressed through the years. In high school, he started playing with his brother, and then moved to playing in more formal settings with more challenging opponents. This eventually led to earning the title of chess grandmaster. Being the first black male to receive the Chess Grandmaster title, Maurice speaks on how this accomplishment inspired others to reach for their goals. 2:49 - Maurice introduces himself 6:46 - Maurice's journey of becoming a grandmaster 9:20 - The impact of Exposure 11:07 - Maurice tells of the significance of being the first black male to earn the title of Chess Grandmaster. 15:00 - Maurice tells of the influence of his family in earning the title of Chess Grandmaster. 17:58 - Maurice speaks on practicing for performance and how it relates to cyber security. 22:00 -The parallels between an unbeatable chess player and an unhackable system 25:18 - Maurice explains blitz and bullet chess and how it relates to cyber security. 33:25 - Maurice gives some tips on how to get started playing chess. 37:04 - Maurice gives advice on how to reach greatness. Links: To learn more about Maurice Ashley, visit https://mauriceashley.com Follow Maurice Ashley on Twitter and Instagram Learn more about Maurice Ashley's book Chess for Success and his app Learn Chess with Maurice Ashley Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about the season sponsor, RiskIQ
This episode of the Hacker Valley Studio podcast concludes the Hacker Valley Red series. In this finale, Ron and Chris interview their friend - and formerly their shared roommate - Marco Figueroa. Marco is a security researcher and cybersecurity speaker, and he is also a bug bounty enthusiast. He and the hosts constant improvement, bug bounty, and more, while also looking back at the conversations thus far in the season. -The episode features Marco Figueroa, and listeners are introduced to the content ahead. -What is Marco's background, and what is he doing now? -Is there such a thing as an unhackable device? -The group talks about Marco's philosophy in his protection work, the place of social engineering, and the value of building relationships. -What is the hacker mindset, and do you need coding experience to be a good hacker? -If interested in the red side of the field, what should someone do first? -Marco shares about what he sees on the horizon. -The group considers two major season takeaways: the value of mentorship and the need to put yourself out there and take the first shot. -Where is Marco planning to take his contact creation from here? Links: Connect with Marco Figueroa on Twitter Connect with Marco on LinkedIn Follow Marco's Livestream Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about the season sponsor, RiskIQ
This episode of the Hacker Valley Studio podcast features Jon DiMaggio, a Senior Threat Intelligence Analyst at Symantec. Jon is a researcher and longtime bad guy chaser, and Ron and Chris fill this installment of Hacker Valley Blue with Jon's thoughts on ransomware, threat research, attribution, and more! 1:41 - Listeners are introduced to Jon DiMaggio and the episode before Jon explains his background.. 5:04 - The first major topic Jon shares about is that of nation-states, specifically speaking to the work of combating nation-state attackers. 12:57 - The conversation turns to the economics of ransomware. 18:39 - What are Jon's thoughts on the possibility of another major worm attack? 20:26 - Jon is asked about how people can enter his field or that of hacking. 24:54 - How should listeners approach attribution and bias, and how has Jon navigated bias in his own life? 31:31 - The group considers Jon's mental organization, his recall of information, and the topic of communication. Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Access the recent work and research on Symantec's threat intelligence feed Learn more about the episode sponsor, RiskIQ
Fan-favorite Jack Rhysider of the Darknet Diaries podcast joins Hacker Valley Studio hosts Ron and Chris for the second episode of Hacker Valley Blue! Jack joins the show again during an ideal season - one focused on threat intelligence - and this episode will focus on Jack's past in the field of threat intelligence, as well as on a major issue faced daily by analysts in the field: that of managing bias. As the conversation begins, the group focuses on threat intelligence and Jack's work in the field. Jack has been pouring himself into his own podcast, leaning into the fact that threat intelligence is a form of knowing what has happened in the past by his sharing of stories. Jack explains what has surprised him recently in his work, how he maintains a sharp sense of focus, and what sort of continuity he sees between the news-sharing of his current role and a more formal practitioner role within the field of threat intelligence. Jack's podcast work necessitates practical skill in his field, and demands an ability to share complex concepts through simple expression. 1:40 - Listeners are introduced to Jack and the episode ahead. 4:13 - How is Jack currently thinking about storytelling? 8:40 - The group dives into some topics related to Jack's work: his focus and need for practical skill. 12:37 - The conversation turns to the subject of bias. 28:28 - What is Jack doing for research today, and how does he navigate technical questions of storytelling? 36:35 - Finally, Jack and his hosts turn to considerations of personal privacy. Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about Jack Rhysider Follow Jack on Twitter Learn more about Darknet Diaries Learn more about the episode sponsor, RiskIQ
In this episode of the Hacker Valley Studio podcast, hosts Ron and Chris welcome Valentina Palacín for the third episode in the Hacker Valley Blue series. Valentina is a threat hunter who used to work as a translator, and she is currently a senior cyber threat intelligence analyst. She joins Ron and Chris to talk about her background in languages, poetry and the impact of words, and much more. As the conversation gets underway, Valentina explains her background to listeners. She studied translation before starting her career in that field, but transitioned to information technology about two years ago. In her free time, she researches threat hunting in her home country of Argentina. It was challenging for Valentina to change her career path, since she had no background in computer science, but she took multiple steps - working in web development, learning to do programming, taking courses, and more - ultimately becoming a threat intel analyst and speaker. Though the journey was difficult, Valentina feels she was born to work in her current field, and has found her past experience, including knowledge of over 7 languages, to be helpful in her work. 1:38 - Listeners are introduced to Valentina, her background, and her challenging process to enter into the large intel community in Argentina . 5:24 - Did knowledge of language impact Valentina's threat intelligence work? 7:55 - Valentina shares about her programming experience and details her journey into threat intel. 14:23 - What are Valentina's thoughts about MITRE and the relation between intelligence and threat hunting? 18:06 - The group considers how to keep up with changes in the field, and acknowledges that threat intelligence will not catch everything. 22:48 - One thing that Valentina is passionate about pursuing is hobbies outside of work. 27:56 - Does poetry help with threat intelligence work? 32:53 - The conversation turns to Valentina's community, focusing on BlueSpace Security. Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Connect with Valentina Palacín on Twitter Connect with Valentina on LinkedIn Learn more about the episode sponsor, RiskIQ
Hosts Ron and Chris welcome you to today's episode! This episode of Hacker Valley Studio is the start of a new season, Hacker Valley Blue, a series dedicated to threat intelligence, exclusively for listeners. The episode begins with Ron and Chris sharing their backgrounds in threat intelligence and cybersecurity. Chris picked intelligence as his job field in the United States Marine Corps, and eventually went on to The National Security Agency and United States Cyber Command. He focused on the how, who, and what of all the cyber-attacks happening at the time. Chris then went on to create his own company, and do consulting work in threat intelligence for over a decade. Throughout the episode, you will hear about what threat intelligence can do for businesses. Ron and Chris discuss how analysts can build rapport with the employees and stakeholders using their intelligence, and what questions companies should ask of analysts for the best results. They do this by walking listeners through Chris' EASY framework. 1:07 - The new season of Hacker Valley Blue is introduced. 3:43 - Chris shares his background in intelligence. 6:15 - Ron shares his background in intelligence 11:43 - What can threat intelligence do for an organization? 17:50 - The EASY Framework 18:41 - Elicit Requirements 21:40 - Asses Collection Plan 26:03 - Strive for Impact 30:24 - Yield the Feedback Links: Learn more about Hacker Valley Studio Support Hacker Valley Studio on Patreon Follow Hacker Valley Studio on Twitter Follow Ronald Eddings on Twitter Follow Chris Cochran on Twitter Learn more about the episode sponsor, RiskIQ
Ethan Davidoff founded Atlas in 2017 and serves as CEO. Prior to Atlas, Ethan was a founding member of RiskIQ, where he took on a variety of individual contributor and management responsibilities resulting in exponential revenue growth and ultimately an acquisition by Microsoft. Prior to RiskIQ, Ethan owned and operated a software development firm that built smartphone applications for fortune 500 brands. Ethan earned his business degree from UC Berkeley and attended the London School of Economics. Ethan joins me today to discuss how his company helps patients pay for their healthcare. He shares his personal story that brought him to his company's mission. He explains how they found initial customers and how to convince them to work with a startup. “Making sure we continue to hire the right people into the right roles, setting the right structure, giving everybody an amazing career path. Making sure we're generous and thoughtful with compensation structures. Making sure we're thoughtful human beings, and we're good to each other and that we don't we find the balance of the intensity and the passion and the killer instinct and the end the long hours of work with, being there to support each other's families, and time off, and mental health and balance.” - Ethan DavidoffToday on Startups for Good we cover:Medical financial aidSelecting the right co-founderChanging leadership while keeping the company strongChallenges to fast growthCOVID's impact on the companyThe role of a startup founderHow concept market fit differs from product market fitEthically promoting the companyNurturing the relationship with the early adoptersThe book that Ethan mentioned was: The New Great DepressionConnect with Ethan through LinkedInSubscribe, Rate & Share Your Favorite Episodes!Thanks for tuning into today's episode of Startups For Good with your host, Miles Lasater. If you enjoyed this episode, please subscribe and leave a rating and review on your favorite podcast listening app.Don't forget to visit our website, connect with Miles on Twitter or LinkedIn, and share your favorite episodes across social media. For more information about The Giving Circle
Steve Ginty Director of Threat Intelligence at RiskIQ joins us on this episode to discuss detecting risks your organization might not be aware of. Steve also talks about how RiskIQ contributes to the detection of Cobalt Strike, ransomware actor activity, supply chain attacks, and how RiskIQ can help with vendor management. Website: https://www.riskiq.com/ LinkedIn: https://www.linkedin.com/in/sginty/
Calling All Platforms Tech - Tech news for fans of Apple, Google and Microsoft
Apple: 1:23 - MagSafe Battery Pack General Tech: 8:34 - Tesla's Auto Pilot can now fully drive your car Microsoft: 17:02 - Windows printing bug is still happening - New version of Windows 10 - What will Windows 11 run on? - Windows 365 - Microsoft acquired RiskIQ Google: 29:00 - Pixel 6 rumors - Pinball in Google app on iOS General Tech: 34:49 - Snapdragon Phone - Can we actually recommend Ring now? PSA: 43:07 - Scams are giving links on text messages now. Gaming: 45:26 - Tag Heuer Super Mario smart watch - Netflix might stream games - Nintendo Switch OLED - Xbox Family Settings updates - New Apple Arcade games - Steam Deck https://www.patreon.com/callingallplatforms T-Shirts! Contact: podcast@callingallplatforms.com Social: Facebook Twitter YouTube Apple Podcasts Google Podcasts Spotify Android
This week, in our first segment, we welcome Rajiv Thomas, Sr Systems Engineer at Gas South LLC, to discuss Gas South and ExtraHop- A Journey of Security Partnership! In the Enterprise News, Contrast Security partners with Secure Code Warrior, Bandura releases the Cyber Intelligence Marketplace, Illumio beefs up zero-trust security with automated policy enforcement, Rapid7 Launches InsightCloudSec to Automate Continuous Security and Compliance, Leaked email shows Tanium just lost its fourth chief marketing officers in five years, Bitdefender launches eXtended EDR platform, ThycoticCentrify Releases a new version of Server Suite, Outpost24 acquires threat intelligence solution Blueliv, Microsoft acquires RiskIQ, Cybereason raises $275 million led by Steven Mnuchin's VC fund, and Arctic Wolf triples valuation and raises an additional $150m! Finally, we wrap up the show with two micro interviews from RSAC featuring Deepika Gajaria of Tala Security and Scott Scheferman from Eclypsium! Show Notes: https://securityweekly.com/esw234 Visit https://securityweekly.com/eclypsium to learn more about them! Visit https://securityweekly.com/talasecurity to learn more about them! To learn more about ExtraHop, visit: https://securityweekly.com/extrahop Visit https://www.securityweekly.com/esw for all the latest episodes! Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
This week, Coté and Matt Ray finally nail the secrets of enterprise devrel. You won't want to miss this one! Also: Coté gives up on streaming PowerPoint and IT survey show that it's time to ask for a raise. Mood board: Free glowsticks for leadgenning yourself. Our tragic doppleganger. DevRel secrets. If you open a terminal you win streaming. Memes are serverless. You gotta spend money to lose money. All about the pincher. Rundown Cloud Native Integration Platform TriggerMesh Receives Strategic Funding from Cisco Investments, Existing Investors (https://www.triggermesh.com/blog/cloud-native-integration-platform-triggermesh-receives-strategic-funding-from-cisco-investments-existing-investors). Cisco leads $5M round for multicloud application integration startup TriggerMesh (https://siliconangle.com/2021/07/13/cisco-leads-5m-round-multicloud-application-integration-startup-triggermesh/). Checking in on Matt's devrel notes. Twitter is shutting down Fleets on August 3, citing low usage (https://techcrunch.com/2021/07/14/twitter-is-shutting-down-fleets-on-august-3-citing-low-usage/). Labor shortages in IT, but growing IT budgets. (https://key2.bluematrix.com/docs/pdf/799caf53-ac05-45b3-a99c-bf54be456c99.pdf) Microsoft is giving employees a $1,500 pandemic bonus (https://www.theverge.com/2021/7/8/22568582/microsoft-employee-pandemic-bonus-1500-dollars) Biden is preparing an executive order targeting noncompete clauses for workers. (https://www.nytimes.com/2021/07/07/us/politics/biden-noncompete-clauses-workers.html?referringSource=articleShare) Relevant to your interests Oi! Our British Airways data breach compo sueball is still going, shouts rival law firm (http://https://www.theregister.com/2021/07/07/british_airways_data_breach_rival_lawsuit/) Stamps.com Agrees to Thoma Bravo Buyout in $6.6 Billion Deal (http://https://finance.yahoo.com/news/thoma-bravo-buys-stamps-com-120837681.html) CentOS Stream: 'I was slow on the uptake, but I get what they are doing now,' says Rocky Linux founder (http://https://www.theregister.com/2021/07/09/centos_stream_greg_kurtzer/) Experts analyzed Andy Jassy's first memo to Amazon employees as CEO (http://https://newsnationusa.com/news/finance/banking/experts-analyzed-andy-jassys-first-memo-to-amazon-employees-as-ceo-heres-why-its-nearly-perfect/) Microsoft Agrees to Acquire Cybersecurity Company RiskIQ for >$500 million (https://www.bloomberg.com/news/articles/2021-07-11/microsoft-is-said-to-be-buying-cybersecurity-company-riskiq) Microsoft to acquire cybersecurity startup RiskIQ; reports peg deal at more than $500M (https://www.geekwire.com/2021/microsoft-reportedly-acquire-cybersecurity-startup-riskiq-500m/) @vladtenev (CEO of @RobinHoodApp) is now following @profgalloway (https://twitter.com/somospostpc/status/1414581950677934090?s=20) The Future IBM We Will Probably Never See (http://https://www.nextplatform.com/2021/07/08/the-future-ibm-we-will-probably-never-see/) Q3 IPO cycle starts strong with Couchbase pricing and Kaltura relisting (https://techcrunch.com/2021/07/12/q3-ipo-cycle-starts-strong-with-couchbase-pricing-and-kaltura-relisting/) Report: Broadcom in talks to buy SAS for as much as $20B (http://https://www.wraltechwire.com/2021/07/12/report-broadcom-in-talks-to-buy-sas-for-as-much-as-20b/) Broadcom No Longer in Talks to Buy SAS Institute, Sources Say (https://www.wsj.com/articles/broadcom-no-longer-in-talks-to-buy-sas-institute-sources-say-11626212065) Probably Wrong Flowchart, this time on AWS database services! (https://twitter.com/forrestbrazeal/status/1414956493561077761?s=21) Concern trolls and power grabs: Inside Big Tech's angry, geeky, often petty war for your privacy (https://www.protocol.com/policy/w3c-privacy-war) Person advises Principal AWS engineer not to build AWS on AWS, because a16z's cloud repatriation piece said it's too expensive at scale. (https://twitter.com/zackkanter/status/1415106401177907200?s=21) The Windows 365 Cloud PC (http://https://www.microsoft.com/en-us/microsoft-365/blog/2021/07/14/introducing-a-new-era-of-hybrid-personal-computing-the-windows-365-cloud-pc/) SonicWall warns of ‘imminent ransomware campaign' targeting its EOL equipment (https://therecord.media/sonicwall-warns-of-imminent-ransomware-campaign-targeting-its-eol-equipment/) Analyzing the Legal Implications of GitHub Copilot (https://fossa.com/blog/analyzing-legal-implications-github-copilot/) Kelsey Hightower changing Roles (https://twitter.com/kelseyhightower/status/1415156964380880898) Nonsense Spike in “Chain Gang” Destructive Attacks on ATMs (https://krebsonsecurity.com/2021/07/spike-in-chain-gang-destructive-attacks-on-atms/) Tesla finally releases Full Self-Driving Beta v9 (http://https://electrek.co/2021/07/10/tesla-full-self-driving-beta-v9-first-videos-release-notes/) Netflix to offer Video Games (https://www.bloomberg.com/news/articles/2021-07-14/netflix-nflx-to-offer-video-games-on-its-streaming-platform) Sponsors strongDM — Manage and audit remote access to infrastructure. Start your free 14-day trial today at strongdm.com/SDT (http://strongdm.com/SDT) CBT Nuggets — Training available for IT Pros anytime, anywhere. Start your 7-day Free Trial today at cbtnuggets.com/sdt (https://cbtnuggets.com/sdt) Conferences RabbitMQ Summit (https://rabbitmqsummit.com), July 13-14 Carolina VMUG, July 22 (https://twitter.com/cote/status/1415326605291950083?s=21) - Coté gives DevOps metrics talk. THAT Conference, (https://that.us/activities/call-for-counselors/wi/2021) July 26-29 SpringOne (https://springone.io), Sep 1-2 SDT news & hype Join us in Slack (http://www.softwaredefinedtalk.com/slack). Send your postal address to stickers@softwaredefinedtalk.com (mailto:stickers@softwaredefinedtalk.com) and we will send you free laptop stickers! Follow us on Twitch (https://www.twitch.tv/sdtpodcast), Twitter (https://twitter.com/softwaredeftalk), Instagram (https://www.instagram.com/softwaredefinedtalk/) and LinkedIn (https://www.linkedin.com/company/software-defined-talk/). Brandon built the Quick Concall iPhone App (https://itunes.apple.com/us/app/quick-concall/id1399948033?mt=8) and he wants you to buy it for $0.99. Use the code SDT to get $20 off Coté's book, (https://leanpub.com/digitalwtf/c/sdt) Digital WTF (https://leanpub.com/digitalwtf/c/sdt), so $5 total. Become a sponsor of Software Defined Talk (https://www.softwaredefinedtalk.com/ads)! Recommendations Matt: McGruff's SMART KIDS Album (https://www.youtube.com/watch?v=y4P4plYXKFE) Coté: Cumin Beef, from FuLu Mandarijn (https://fulumandarijn.com).
This week, in our first segment, we welcome Rajiv Thomas, Sr Systems Engineer at Gas South LLC, to discuss Gas South and ExtraHop- A Journey of Security Partnership! In the Enterprise News, Contrast Security partners with Secure Code Warrior, Bandura releases the Cyber Intelligence Marketplace, Illumio beefs up zero-trust security with automated policy enforcement, Rapid7 Launches InsightCloudSec to Automate Continuous Security and Compliance, Leaked email shows Tanium just lost its fourth chief marketing officers in five years, Bitdefender launches eXtended EDR platform, ThycoticCentrify Releases a new version of Server Suite, Outpost24 acquires threat intelligence solution Blueliv, Microsoft acquires RiskIQ, Cybereason raises $275 million led by Steven Mnuchin's VC fund, and Arctic Wolf triples valuation and raises an additional $150m! Finally, we wrap up the show with two micro interviews from RSAC featuring Deepika Gajaria of Tala Security and Scott Scheferman from Eclypsium! Show Notes: https://securityweekly.com/esw234 Visit https://securityweekly.com/eclypsium to learn more about them! Visit https://securityweekly.com/talasecurity to learn more about them! To learn more about ExtraHop, visit: https://securityweekly.com/extrahop Visit https://www.securityweekly.com/esw for all the latest episodes! Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
In the Enterprise News, Contrast Security partners with Secure Code Warrior, Bandura releases the Cyber Intelligence Marketplace, Illumio beefs up zero-trust security with automated policy enforcement, Rapid7 Launches InsightCloudSec to Automate Continuous Security and Compliance, Leaked email shows Tanium just lost its fourth chief marketing officers in five years, Bitdefender launches eXtended EDR platform, ThycoticCentrify Releases a new version of Server Suite, Outpost24 acquires threat intelligence solution Blueliv, Microsoft acquires RiskIQ, Cybereason raises $275 million led by Steven Mnuchin's VC fund, and Arctic Wolf triples valuation and raises an additional $150m! Visit https://www.securityweekly.com/esw for all the latest episodes! Show Notes: https://securityweekly.com/esw234
In the Enterprise News, Contrast Security partners with Secure Code Warrior, Bandura releases the Cyber Intelligence Marketplace, Illumio beefs up zero-trust security with automated policy enforcement, Rapid7 Launches InsightCloudSec to Automate Continuous Security and Compliance, Leaked email shows Tanium just lost its fourth chief marketing officers in five years, Bitdefender launches eXtended EDR platform, ThycoticCentrify Releases a new version of Server Suite, Outpost24 acquires threat intelligence solution Blueliv, Microsoft acquires RiskIQ, Cybereason raises $275 million led by Steven Mnuchin's VC fund, and Arctic Wolf triples valuation and raises an additional $150m! Visit https://www.securityweekly.com/esw for all the latest episodes! Show Notes: https://securityweekly.com/esw234
Windows 365 & Cloud PC, Windows 11 updates, RiskIQ Microsoft brings Windows to the cloud with Windows 365 and Cloud PC More Windows 11 handwringing Microsoft updates Windows 11 with a bunch of fixes for Dev Channel testers Microsoft Could Miss an Opportunity with Windows 11 (Premium) PC Market PC Sales Growth is Slowing Down More Microsoft Microsoft to Acquire RiskIQ Xbox Corner Xbox Family Settings App Adds Spending Management Google Makes Stadia More Attractive to Developers Tips & Picks Tip of the week: How to use Snap Groups in Windows 11 App pick of the week: Firefox 90 App pick of the week: Google Drive desktop client App pick of the week: DeskScapes on Steam Enterprise pick of the week: Microsoft cloud for sustainability Enterprise pick of the week: Teams and Dynamics 365 get even more chummy Drink pick of the week: Switchel Hosts: Mary Jo Foley, Paul Thurrott, and Mikah Sargent Download or subscribe to this show at https://twit.tv/shows/windows-weekly Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit Check out Paul's blog at thurrott.com Check out Mary Jo's blog at AllAboutMicrosoft.com The Windows Weekly theme music is courtesy of Carl Franklin. Sponsors: plextrac.com/twit Endava Podcast - Tech Reimagined
Windows 365 & Cloud PC, Windows 11 updates, RiskIQ Microsoft brings Windows to the cloud with Windows 365 and Cloud PC More Windows 11 handwringing Microsoft updates Windows 11 with a bunch of fixes for Dev Channel testers Microsoft Could Miss an Opportunity with Windows 11 (Premium) PC Market PC Sales Growth is Slowing Down More Microsoft Microsoft to Acquire RiskIQ Xbox Corner Xbox Family Settings App Adds Spending Management Google Makes Stadia More Attractive to Developers Tips & Picks Tip of the week: How to use Snap Groups in Windows 11 App pick of the week: Firefox 90 App pick of the week: Google Drive desktop client App pick of the week: DeskScapes on Steam Enterprise pick of the week: Microsoft cloud for sustainability Enterprise pick of the week: Teams and Dynamics 365 get even more chummy Drink pick of the week: Switchel Hosts: Mary Jo Foley, Paul Thurrott, and Mikah Sargent Download or subscribe to this show at https://twit.tv/shows/windows-weekly Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit Check out Paul's blog at thurrott.com Check out Mary Jo's blog at AllAboutMicrosoft.com The Windows Weekly theme music is courtesy of Carl Franklin. Sponsors: plextrac.com/twit Endava Podcast - Tech Reimagined
Windows 365 & Cloud PC, Windows 11 updates, RiskIQ Microsoft brings Windows to the cloud with Windows 365 and Cloud PC More Windows 11 handwringing Microsoft updates Windows 11 with a bunch of fixes for Dev Channel testers Microsoft Could Miss an Opportunity with Windows 11 (Premium) PC Market PC Sales Growth is Slowing Down More Microsoft Microsoft to Acquire RiskIQ Xbox Corner Xbox Family Settings App Adds Spending Management Google Makes Stadia More Attractive to Developers Tips & Picks Tip of the week: How to use Snap Groups in Windows 11 App pick of the week: Firefox 90 App pick of the week: Google Drive desktop client App pick of the week: DeskScapes on Steam Enterprise pick of the week: Microsoft cloud for sustainability Enterprise pick of the week: Teams and Dynamics 365 get even more chummy Drink pick of the week: Switchel Hosts: Mary Jo Foley, Paul Thurrott, and Mikah Sargent Download or subscribe to this show at https://twit.tv/shows/windows-weekly Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit Check out Paul's blog at thurrott.com Check out Mary Jo's blog at AllAboutMicrosoft.com The Windows Weekly theme music is courtesy of Carl Franklin. Sponsors: plextrac.com/twit Endava Podcast - Tech Reimagined
Patrocínio: Peduti Advogados Acelere a adequação da sua empresa à LGPD com quem sabe o que está fazendo. Acesse https://www.peduti.com.br/. -------------------------------- Sobre o Podcast O Loop Matinal é um podcast do Loop Infinito que traz as notícias mais importantes do mundo da tecnologia para quem não tem tempo de ler sites e blogs de tecnologia. Marcus Mendes apresenta um resumo rápido e conciso das notícias mais importantes, sempre com bom-humor e um toque de acidez. Confira as notícias das últimas 24h, e até amanhã! -------------------------------- Apoie o Loop Matinal! O Loop Matinal está no apoia.se/loopmatinal e no picpay.me/loopmatinal! Se você quiser ajudar a manter o podcast no ar, é só escolher a categoria que você preferir e definir seu apoio mensal. Obrigado em especial aos ouvintes Advogado Junio Araujo, Alexsandra Romio, Alisson Rocha, Anderson Barbosa, Anderson Cazarotti, Angelo Almiento, Arthur Givigir, Breno Farber, Caio Santos, Carolina Vieira, Christophe Trevisani, Claudio Souza, Dan Fujita, Daniel Ivasse, Daniel Cardoso, Diogo Silva, Edgard Contente, Edson Pieczarka Jr, Fabian Umpierre, Fabio Brasileiro, Felipe, Francisco Neto, Frederico Souza, Gabriel Souza, Guilherme Santos, Henrique Orçati, Horacio Monteiro, Igor Antonio, Igor Silva, Ismael Cunha, Jeadilson Bezerra, Jorge Fleming, Jose Junior, Juliana Majikina, Juliano Cezar, Juliano Marcon, Leandro Bodo, Luis Carvalho, Luiz Mota, Marcus Coufal, Mauricio Junior, Messias Oliveira, Nilton Vivacqua, Otavio Tognolo, Paulo Sousa, Ricardo Mello, Ricardo Berjeaut, Ricardo Soares, Rickybell, Roberto Chiaratti, Rodrigo Rosa, Rodrigo Rezende, Samir da Converta Mais, Teresa Borges, Tiago Soares, Victor Souza, Vinícius Lima, Vinícius Ghise e Wilson Pimentel pelo apoio! -------------------------------- Resumão de indicados ao Emmy: https://www.emmys.com/awards/nominees-winners Apple TV+ ganha 34 indicações ao Emmy: https://9to5mac.com/2021/07/13/apple-tv-plus-emmy-nominations-2/ ESPN+ fica mais caro nos EUA: https://9to5mac.com/2021/07/12/espn-plus-price-increase/ Fortnite ganha LeBron James: https://www.epicgames.com/fortnite/pt-BR/news/the-king-has-arrived-lebron-james-joins-fortnite-s-icon-series Radar dos produtos Echo medirá padrão de sono do usuário: https://www.theverge.com/2021/7/12/22573807/amazon-echo-radar-sensor-sleep-tracking-google-soli Microsoft compra a RiskIQ: https://www.bloomberg.com/news/articles/2021-07-11/microsoft-is-said-to-be-buying-cybersecurity-company-riskiq?sref=rfAB4PXT Gmail começará a exibir ícones autenticados de remetentes: https://www.theverge.com/2021/7/12/22573813/google-authenticated-brand-logos-gmail-rolling-out-bimi-dmarc Google Drive ganha app desktop: https://9to5google.com/2021/07/12/new-google-drive-desktop/ Twiter verificou bots por engano. Ou não: https://9to5mac.com/2021/07/13/twitter-verification-of-bots/ TikTok bane promoção de criptomoedas: https://www.entrepreneur.com/article/376996 WhatsApp deixará você entrar em chamas que já estão acontecendo: https://macmagazine.com.br/post/2021/07/13/whatsapp-permitira-entrar-em-chamadas-ja-em-andamento/ Apple garante patente de câmera periscópica para o iPhone: https://9to5mac.com/2021/07/13/iphone-periscope-lens-patent/ Apple anuncia MagSafe Battery Pack para iPhone 12: https://9to5mac.com/2021/07/13/apple-releases-magsafe-battery-pack-for-iphone-12-available-now-for-99/ -------------------------------- Site do Loop Matinal: http://www.loopmatinal.com Anuncie no Loop Matinal: comercial@loopinfinito.net Marcus Mendes: https://www.twitter.com/mvcmendes Loop Infinito: https://www.youtube.com/oloopinfinito
Windows 365 & Cloud PC, Windows 11 updates, RiskIQ Microsoft brings Windows to the cloud with Windows 365 and Cloud PC More Windows 11 handwringing Microsoft updates Windows 11 with a bunch of fixes for Dev Channel testers Microsoft Could Miss an Opportunity with Windows 11 (Premium) PC Market PC Sales Growth is Slowing Down More Microsoft Microsoft to Acquire RiskIQ Xbox Corner Xbox Family Settings App Adds Spending Management Google Makes Stadia More Attractive to Developers Tips & Picks Tip of the week: How to use Snap Groups in Windows 11 App pick of the week: Firefox 90 App pick of the week: Google Drive desktop client App pick of the week: DeskScapes on Steam Enterprise pick of the week: Microsoft cloud for sustainability Enterprise pick of the week: Teams and Dynamics 365 get even more chummy Drink pick of the week: Switchel Hosts: Mary Jo Foley, Paul Thurrott, and Mikah Sargent Download or subscribe to this show at https://twit.tv/shows/windows-weekly Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit Check out Paul's blog at thurrott.com Check out Mary Jo's blog at AllAboutMicrosoft.com The Windows Weekly theme music is courtesy of Carl Franklin. Sponsors: plextrac.com/twit Endava Podcast - Tech Reimagined
Canary Cry News Talk 361 - 07.12.2021 - CYBERWAXXINE: Virgin Firmament, Klaus Cyber Jabs, World Pop Day, Waccine Strawmen, Cuba Our LINK TREE: CanaryCry.Party SUBSCRIBE TO US ON: NewPodcastApps.com PAYPAL: https://bit.ly/3v59fkR INTRO 0:06:54 -Kamala thinks rural means amish? Absurd take on Voter ID's (Clip) FLIPPY 0:11:20 -Robot Arm BOLT, Phantom Camera makes the Rock look swoll on Black Adam (CBR) 4 HORSEMAN/SPACE 0:23:18 -Richard Bransons touches down after first Billionaire “Space Flight” (CNN) -Footage of the flight, Virgin Galactic (Clip) -Footage from the flight, Richard Branson (Clip) -Rabbit Trail: Truth or Consequence NM, Corona, 33, Roswell -Bezos says he's going to space (CBS) :40 CYBERPANDEMIC 0:52:19 -Cyber Polygon launches, Russia still blamed (Clip) -Cyber Polygon direct encrypted line to ISS established (TweakTown) -Klaus Schwab says we need to vaccinate the Internet (Clip) -Microsoft buys RiskIQ for $500 million, cyber fears boost CS stocks (Seeking Alpha) GREAT RESET 1:06:55 -World Population Day (July 10), CEO of Sophie's Bio-nutrient's calls for food reset (Yahoo) -Also on World Population Day, Harry and Meghan awarded for limiting to 2 kids (Bazaar) -Move to Clean Energy investments can drive 10 million green new jobs (Reuters) BREAK (producer party) 1:22:55 WACCINE/PANDEMIC SPECIAL 2:03:40 -Strawman: Graphene Oxide in Jabs, latest to get debunked, seeks FDA funding (Forbes) -UCSF doctor argues Delta Variant panic causing more harm than good (SF Chron.) -FDA to announce new warning against J&J jab (Wapo) POLYTICK 2:28:38 -A 7-point-plan to reinstate Donald Trump, handed out at CPAC (Biz Insider) -Being Watched: Army Surveillance to be used against Americans by Capital Police (Wa. Times) -Biggest protest in decades in Cuba (NY Times) ADDITIONAL STORIES -Tyranny in Australia, 12 year olds arrested for no mask (Clips) -FBI Abuse chronicler dies at age 84 (NYT) -Fauci, claims 99% of those who died from Covid lat month were unjabbed (The Hill) -CIA spy operations exposed by the Swiss (Wapo) -Entire outline of Klaus' quotes from the launch of Cyber Polygon 2021 (Sociable) PRODUCERS ep. 361 Jason H ** Sir Sigrah the Beast* Aaron J (30)Sir Casey the Shield Knight Duc L Saul A James H Scott K Kim W Ely P Tristan H Richard S TIMESTAMPS: Christine C ART: Allie Dove Hungry Hungarian MEET UPS ARIZONA MEET UP (July 24) RSVP: ciaralauren93@gmail.com OREGON MEET UP Please contact Kimberly (shieldmaidenforchrist) at maidservantofchrist88@protonmail.com or find the Oregon Meetup post on Canary Cry Community if you are interested in the Northern Oregon/Southern Washington meetup in Estacada. OR/WA meetup date is set for Aug 7!)
Just two grumpy old men with some AppSec sprinkled in. Topics this week include new research from portswigger using print to bypass new Chrome XSS iframe restrictions, how XSS is still the best (and worst) issue we deal with, and Microsoft's acquisition of RiskIQ.
Wesfarmers, the owner of Bunnings and Officeworks, could be getting into the pharmacy space, offering $687 million to buy the owner of Priceline. Telstra has launched its first brand campaign since 2016 as it strives to win back trust from the Australian community. Microsoft will acquire security intelligence company RiskIQ to fight back against the rise of cyber attacks on companies. --- Save money and win cash prizes up to $250k weekly: https://bit.ly/Wintheweek Get your credit score for free: https://bit.ly/fluxcreditscore Download the free app (App Store): http://bit.ly/FluxAppStore Download the free app (Google Play Store): http://bit.ly/FluxappGooglePlay Weekly newsletter: https://bit.ly/fluxnewsletter Instagram: http://bit.ly/fluxinsta TikTok: https://www.tiktok.com/@flux.finance --- The content in this podcast reflects the views and opinions of the hosts, and is intended for personal and not commercial use. We do not represent or endorse the accuracy or reliability of any opinion, statement or other information provided or distributed in these episodes. See omnystudio.com/listener for privacy information.
This week the Mat and Mike chat with Steve Ginty, Director of Threat Intelligence at RiskIQ. They dive into cyber threat intelligence, the RiskIQ platform, and the unlikely path Steve took to get there. Oh Oh and also movies, of course. -------------------------Stay current with cyberTAP:cyber.tap.purdue.edu/blogFollow us on all the things:Twitter: @PCyberTAPLinkedIn: Purdue cyberTAPEmail the Cyber Tap with suggestions (or be a guest)cybertappodcast@purdue.eduTo learn more about Purdue cyberTAP's education and professional services, visit cyber.tap.purdue.edu
SANS Internet Stormcenter Daily Network/Cyber Security and Information Security Stormcast
Cloudflare Warp + NordVPN on iOS Leads to Traffic in the Clear https://awakened1712.github.io/hacking/hacking-whatsapp-gif-rce/ WhatsApp Bug https://awakened1712.github.io/hacking/hacking-whatsapp-gif-rce/ MacOS Catalina and Safari Update Released https://www.macrumors.com/2019/10/07/apple-releases-macos-catalina/ https://support.apple.com/en-us/HT201222 (nothing new yet) Magecart Still Going Strong https://www.theregister.co.uk/2019/10/04/magecart/ (original RiskIQ report requires Registration)
On Friday, British Airways disclosed a data breach impacting customer information from roughly 380,000 booking transactions made between August 21 and September 5 of this year. The company said that names, addresses, email addresses, and sensitive payment card details were all compromised. Now, researchers from the threat detection firm RiskIQ have shed new light on how the attackers pulled off the heist.