Podcasts about sysdig

  • 113PODCASTS
  • 267EPISODES
  • 40mAVG DURATION
  • 1EPISODE EVERY OTHER WEEK
  • Jul 30, 2026LATEST

POPULARITY

20192020202120222023202420252026


Best podcasts about sysdig

Latest podcast episodes about sysdig

„ANGRIFFSLUSTIG – IT-Sicherheit für DEIN Unternehmen“
#173 ANGRIFFSLUSTIG – Jadepuffer: Ransomware Angriff durch ein LLM

„ANGRIFFSLUSTIG – IT-Sicherheit für DEIN Unternehmen“

Play Episode Listen Later Jul 30, 2026 16:27 Transcription Available


Ein Ransomware-Angriff, der durch ein LLM gesteuert wird, hört sich sehr bedrohlich an. Das Treath Research Team von Sysdig hat nun einen solchen Fall dokumentiert. Spannend ist aber, dass sich für die Verteidigung vor solchen Angriffen gar nicht so viel ändert. Bevor Du also wieder ein neues (teures) Tool kaufst, solltest Du unbedingt diese Folge hören.

LowOpsCast
#53 O caminho até se tornar Kubestronaut e especialista em Cloud Security com Igor Eulalio

LowOpsCast

Play Episode Listen Later Jul 28, 2026 60:54


O próximo papo é com Igor Eulalio Morgado Lopes (https://www.linkedin.com/in/igoreulalio/), Senior Solutions Engineer na Orca Security, ex-AWS e Sysdig, engenheiro de software, palestrante e uma das referências brasileiras quando o assunto é Cloud Native, Kubernetes e segurança.A história do Igor mostra que uma carreira sólida não é construída apenas com certificações ou boas oportunidades. Ela é resultado de curiosidade, estudo constante e da disposição para assumir desafios cada vez maiores.Ao longo da conversa, falamos sobre a transição da engenharia de software para plataformas cloud, a experiência trabalhando em empresas globais, a evolução da carreira até chegar à área de segurança e os aprendizados adquiridos ao longo dessa jornada.Também conversamos sobre:* A evolução da carreira em Cloud e Platform Engineering* A experiência na AWS, Sysdig e Orca Security* Segurança em ambientes Kubernetes e Cloud Native* O papel da IA na engenharia e na segurança* Certificações, comunidade e aprendiza

Relating to DevSecOps
Episode #084: No Humans Required: Agentic Attackers vs. Automated Defenders

Relating to DevSecOps

Play Episode Listen Later Jul 24, 2026 46:40


Send us Fan MailAI is changing the economics of cyberattacks by making them faster, cheaper, and easier to scale. In this episode of Relating to DevSecOps, Ken is joined by Conor Sherman, Chief Security Officer at Sysdig and host of the Zero Signal podcast, to explore what the rise of agentic threat actors means for defenders.Using the Jade Puffer ransomware attack as a real-world example, they discuss how autonomous attackers can discover vulnerabilities, compromise environments, move laterally, adapt their code, identify valuable data, and deploy ransomware with little human involvement.The conversation also looks at how defenders can respond through stronger security architecture, automated patching, real-time detection, automatic response, and AI-assisted modernization. Rather than replacing security fundamentals, AI can help teams apply them faster, handle difficult edge cases, and build more resilient systems.For security teams wondering where to begin, the message is simple: start small, automate one meaningful workflow, and build from there.

Decipher Security Podcast
JADEPUFFER: The Era of Agentic Ransomware Has Begun | Michael Clark

Decipher Security Podcast

Play Episode Listen Later Jul 20, 2026 26:50


Michael Clark, director of Threat Research at Sysdig, talks about a recent LLM-driven extortion campaign dubbed JADEPUFFER, touching on how the team discovered it, how attackers' “intent is now legible,” and what that means for defenders.LinkSysdig research: https://www.sysdig.com/blog/jadepuffe...

Breach FM - der Infosec Podcast
Flurfunk - JadePuffer agentische Ransomware, EU Cybersecurity Action Plan & Apple verklagt OpenAI

Breach FM - der Infosec Podcast

Play Episode Listen Later Jul 15, 2026 45:38


Heute Morgen mal beide ausgeschlafen, beide im Homeoffice, Sonne draußen – das hatten Max Imbiel und ich wirklich seit Monaten nicht mehr. Die Nachrichtenlage ist dabei auch eher ruhig.Ich bringe JadePuffer mit: Sysdig hat einen Fall agentischer Ransomware veröffentlicht. Einstieg über CVE-2025-3248 in Langflow – gepatcht April 2025, im CISA KEV seit Mai 2025, trotzdem massenhaft ungepatchte Instanzen. Der Agent hat autonom die PostgreSQL-Datenbank gedumpt, API-Keys für AWS, Azure, Alibaba, Anthropic und andere gesammelt, MinIO mit Default-Credentials geöffnet und ist auf einen produktiven MySQL-Server pivotiert, wo er 1.342 Service-Konfigurationen verschlüsselte. Die viel zitierten 31 Sekunden beziehen sich auf eine einzelne Self-Healing-Schleife, nicht den Gesamtangriff. IT-Grundhygiene hat auf ganzer Linie versagt. Was bleibt: ein Agent, der Sackgassen autonom korrigiert, braucht keinen Menschen mehr am Keyboard.Max bringt den EU Cybersecurity Action Plan – kein neues Gesetz, sondern ein Koordinationsrahmen auf Basis von AI Act, NIS2 und CRA. Kernpunkte: Evaluierungskapazitäten für KI-Modelle mit Durchsetzungsbefugnis ab 2. August, ein ENISA-Blueprint für strukturierten Frontier-Modell-Zugang für Security-Zwecke, gemeinsame Testplattform und Open-Source-Resilience-Kampagne. Max findet den Ansatz gut, weil er KI endlich als Chance framt. Ich bleibe skeptisch, ob aus EU-Initiativen am Ende wirklich was wird.Zum Abschluss: Apple hat OpenAI, zwei ehemalige Mitarbeiter und Jony Ives Firma io Products wegen Trade-Secret-Diebstahls verklagt. Noch Vorwürfe, kein bestätigter Sachverhalt – aber bemerkenswert angesichts der ohnehin angespannten Beziehung der beiden Unternehmen.JadePuffer / Sysdig Threat Research https://www.sysdig.com/blog/jadepuffer-agentic-ransomware-for-automated-database-extortionEU Cybersecurity Action Plan (Europäische Kommission) https://digital-strategy.ec.europa.eu/en/policies/cybersecurity-action-planApple verklagt OpenAI (The Verge) https://www.theverge.com/2026/7/8/apple-sues-openai-trade-secrets-io-products

Business of Tech
Agent Identity Gaps: Why Apple and CISA Are Redefining the Security Perimeter

Business of Tech

Play Episode Listen Later Jul 14, 2026 12:30


The episode highlights a structural shift in cybersecurity risk, moving from a reliance on human skill as both the source of attack and defense to a landscape shaped by autonomous AI agents acting as privileged entities inside client environments. This pivot is illustrated by Sysdig's discovery of an agentic ransomware attack (“Jade Puffer”) where AI software—not a human operator—managed intrusion end-to-end, adapting in real time without manual intervention. The key structural effect is a drastic reduction in the cost and skill required to mount effective attacks, while simultaneously introducing unmanaged access points in the form of AI agents with human-equivalent credentials. Supporting this shift, Sysdig found that the AI-driven “Jade Puffer” attack executed more than 600 payloads, automatically adjusted after failures, and required minimal human oversight. ZDNet reported Apple's unusually rapid patch cycle, attributed by the company to the speed of AI-driven exploit development. According to IT Pro, attackers typically remain inside networks for about two and a half weeks before detection, with nearly half of breaches only discovered after data loss. The U.S. cybersecurity agency CISA admitted to lacking an incident response playbook, improvising during a breach. These developments collectively indicate that existing human-centric security models are being outpaced by autonomous threats. Further reinforcing this thesis, The New Stack emphasized a governance gap: most organizations lack standards for assigning identity or scoping access for AI agents, which today operate using human credentials without effective monitoring or control. AvePoint's research, as cited by Dave Sobel, suggests the number of unseen AI tools inside organizations has nearly tripled, while about half of employees now use AI agents frequently. While agent-based automation expands operational efficiency, the inability to monitor or restrict these agents exposes a widening attack surface and undermines traditional governance. For MSPs and IT service leaders, the operational ramifications include increased accountability for identifying, inventorying, and scoping AI agents as privileged identities within client environments. Continuing to rely on human-centric security and pricing models risks misalignment with actual exposure. The analysis suggests treating AI agent identity management as a distinct, recurring service line—akin to user identity and multifactor authentication—with pricing linked to risk rather than labor hours. Failure to proactively address this governance gap may result in unaccounted incidents and reactive, non-strategic service delivery that affects renewal cycles and liability positions. 00:00 5 Security Alarms Ringing at Once  04:22 Why Hacking No Longer Takes Skill  06:40 Your Agents Became the New Insiders 09:14 Why Do We Care?  Supported by: ScalePad 

Security Squawk
Medtronic Breach Hits 9M, and an AI Just Ran Its Own Ransomware Attack

Security Squawk

Play Episode Listen Later Jul 8, 2026 33:04


Your Social Security number and health history could be sitting on a criminal's hard drive right now, and you wouldn't find out until the letter shows up in your mailbox. That's exactly what happened to nine million Medtronic customers. This week, a global medical giant, a city right outside Atlanta, and an attack run start to finish by artificial intelligence all point to the same uncomfortable lesson. *Nobody is too small to hack, and the basics still decide who survives.* Bryan Hornung, Randy Bryan, and Reginald Andre break down this week's stories for executives, owners, and operators who don't have time to keep up with cyber news but can't afford to be blindsided by it either. First up, Medtronic. The company that makes pacemakers and insulin pumps is now notifying about nine million people that their names, birth dates, Social Security numbers, and health information were stolen by a crew called ShinyHunters. Here's the part that should worry every business owner: ShinyHunters didn't need a genius hack to get in. They called an employee, pretended to be tech support, and talked their way past the front door, the same move that works on your team. Even a company this size is looking at a cleanup that averages 279 days for a healthcare breach, and a small business doesn't have that kind of runway. Then we bring it home. On June 8th, the City of Acworth, right here in Cobb County, got hit hard enough to call in outside cybersecurity pros and law enforcement. Weeks later, the city still won't say what kind of attack it was or whether any data walked out the door. The good news buried in the story: everything was restored with no lasting disruption, which almost always means one thing, working backups. Government ransomware jumped about 65 percent in the first half of 2025, and attackers hunt small cities for the same reason they hunt small businesses: thin teams and tight budgets. We close with the one that keeps us up at night. Researchers at Sysdig say they caught the first ransomware attack run entirely by an AI, no human at the keyboard. It broke in, stole credentials, locked up a database, and wrote its own ransom note. When one login failed, it diagnosed the problem, rewrote its own code, and was back in within about 31 seconds. And in this case, even paying the ransom may not have brought the data back, which means backups are not your plan B anymore, they are your plan A. Three very different targets. One playbook that decides who walks away fine and who doesn't. In this episode, we discuss: • The Medtronic breach that exposed Social Security numbers and health data for about nine million people • Why a cyberattack on the City of Acworth is a preview of what hits small businesses • The first ransomware attack researchers say was run entirely by an AI, with no human directing it • Why the size of the target stopped mattering a long time ago • The three boring fundamentals, backups, multi-factor, and patching, that decide how every one of these stories ends • What business owners should actually check this week before they need it Security Squawk is a weekly podcast and live stream for business owners and executives. Support the show: buymeacoffee.com/securitysquawk Subscribe | Like | Share #SecuritySquawk #CyberSecurity #Medtronic #ShinyHunters #DataBreach #Ransomware #AI #Acworth #SmallBusiness #VendorRisk #MSP #BusinessRisk

LowOpsCast
#49 Open Source, comunidade e segurança Cloud Native com Edson Ferreira

LowOpsCast

Play Episode Listen Later May 27, 2026 68:02


Neste episódio do LowOpsCast, o papo é com Edson Ferreira, Sr Solutions Engineer na Sysdig, palestrante internacional, CNCF Ambassador, Kubestronaut e contributor open source.Mas antes dos títulos, certificações e tecnologias, a conversa é sobre a pessoa por trás da carreira.Vamos falar sobre trajetória, escolhas, comunidade, perseverança e os caminhos que levaram o Edson a sair dos primeiros passos com Linux, suporte e desenvolvimento, até atuar hoje ajudando empresas a construírem ambientes Cloud Native mais seguros, observáveis e preparados para operar em escala.O Edson é uma daquelas pessoas que mostram que carreira em tecnologia não acontece em linha reta. Tem estudo, tentativa, erro, comunidade, contribuição open source, eventos, documentação, bastidor, operação e muita consistência ao longo do tempo.Ao longo do episódio, a gente conversa sobre:A jornada pessoal e profissional do Edson na tecnologiaComo a comunidade ajudou a moldar sua carreiraOs desafios de crescer tecnicamente sem perder o lado humanoOpen source, contribuição e o impacto de compartilhar conhecimentoA vida de quem atua com Cloud Native Security, Kubernetes e observabilidadeExperiências em SRE, DevOps, incidentes, operação e ambientes críticosO papel da segurança em ambientes Kubernetes e Cloud NativeComo é estar envolvido com CNCF, Kubestronaut e iniciativas globais da comunidadeTambém falamos sobre carreira internacional, palestras, certificações, bastidores da evolução técnica e aquela parte que pouca gente vê: o processo de continuar estudando, contribuindo e aparecendo mesmo quando o caminho não é simples.Esse episódio não é só sobre Kubernetes, segurança ou observabilidade.É sobre construção de carreira, comunidade, consistência e sobre como a tecnologia pode abrir portas quando a pessoa decide continuar caminhando, mesmo quando o terminal responde com erro e a vida parece um YAML mal identado.Se você trabalha com DevOps, SRE, Cloud Native, segurança, Kubernetes, open source ou está tentando encontrar seu espaço na área de tecnologia, esse episódio vai fazer bastante sentido.Assista agora e acompanhe o LowOpsCast.

Eye On A.I.
Loris Degioanni: Why AI Is Breaking Cybersecurity, and What Comes Next

Eye On A.I.

Play Episode Listen Later May 6, 2026 51:15


AI has fundamentally changed the cybersecurity threat landscape, not by inventing new attack types, but by collapsing the timeline. The same tools that make software developers more productive are now being used by attackers to move from vulnerability disclosure to active exploit in a matter of hours. That shift, argues Loris Degioanni, CTO and founder of Sysdig, changes everything about how defense needs to work. In this episode, Craig Smith talks with Loris Degioanni about why human-centered security is becoming a structural liability, what "headless cloud security" means in practice, and why the coding agent (tools like Claude Code or Codex) may become the new operating system through which all enterprise security workflows run. It's a conversation about architecture, urgency, and what it actually means to fight a tank when you've been trained to use a baseball bat. If this conversation made you think differently about AI and security, subscribe to Eye on A.I. for weekly conversations with the people building and defending the future.

The CyberWire
Anna Belak: Acquiring skills to make you into a unicorn. [Thought Leadership] [Career Notes]

The CyberWire

Play Episode Listen Later Mar 8, 2026 10:23


Please enjoy this encore of Career Notes. Anna Belak, Director of Thought Leadership at Sysdig, shares her story from physics to cyber. Anna explains how she went into college with the thinking of getting a physics degree and then for her PhD decided to switch to material science and engineering. Both were not something she enjoyed and ultimately decided to go into cyber. She shares some advice on how you should never limit yourself to your degree, as well as always learning new skills and honing in on skills you already have. She say's by doing these things it will make you into a unicorn, meaning if you are good at one thing and teach yourself to be good at something else, you will become that much more valuable. Anna hopes she makes an impact with the people she works with, she hopes they will want to work with her even long after she leaves a company. We thank Anna for sharing her story. Learn more about your ad choices. Visit megaphone.fm/adchoices

Career Notes
Anna Belak: Acquiring skills to make you into a unicorn. [Thought Leadership]

Career Notes

Play Episode Listen Later Mar 8, 2026 10:23


Please enjoy this encore of Career Notes. Anna Belak, Director of Thought Leadership at Sysdig, shares her story from physics to cyber. Anna explains how she went into college with the thinking of getting a physics degree and then for her PhD decided to switch to material science and engineering. Both were not something she enjoyed and ultimately decided to go into cyber. She shares some advice on how you should never limit yourself to your degree, as well as always learning new skills and honing in on skills you already have. She say's by doing these things it will make you into a unicorn, meaning if you are good at one thing and teach yourself to be good at something else, you will become that much more valuable. Anna hopes she makes an impact with the people she works with, she hopes they will want to work with her even long after she leaves a company. We thank Anna for sharing her story. Learn more about your ad choices. Visit megaphone.fm/adchoices

mnemonic security podcast

"It's prime time for runtime!"In this episode of the mnemonic security podcast, we're joined by Sergej Epp, Global CISO & Member of the Executive Team of Sysdig, to discuss threats at machine speed and runtime security.Sergej explains how runtime security enables organisations to understand what is really happening inside containers and serverless workloads, and why, without it, they are effectively blind to critical activity within their cloud-native environments. He shares recent examples of supply chain incidents that highlight these risks, including the GitHub Actions compromise, NPM attacks, and the two waves of Shai-Hulud.Robby and Sergej also discuss the most common ways that attackers get access to clusters and containers, and how organisations can stay ahead of attacks using real-time telemetry.Send a text

Cyber Morning Call
932 - VOLTAMOS!! - Campanha do Evelyn Stealer afeta Devs

Cyber Morning Call

Play Episode Listen Later Jan 19, 2026 5:12


Referências do EpisódioFrom Extension to Infection: An In-Depth Analysis of the Evelyn Stealer Campaign Targeting Software DevelopersPDFSIDER Malware - Exploitation of DLL Side-Loading for AV and EDR EvasionVoidLink threat analysis: Sysdig discovers C2-compiled kernel rootkitsUnveiling VoidLink – A Stealthy, Cloud-Native Linux Malware FrameworkRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

AWS for Software Companies Podcast
Ep150: Security Considerations for Generative AI with CyberArk, Fortra and Sysdig

AWS for Software Companies Podcast

Play Episode Listen Later Sep 26, 2025 30:09


Security leaders from CyberArk, Fortra, and Sysdig share actionable strategies for securely implementing generative AI and reveal real-world insights on data protection and agent management.Topics Include:Panel explores practical security approaches for GenAI from prototype to productionThree-phase framework discussed: planning, pre-production, and production security considerationsSecurity must be built-in from start - data foundation is criticalUnderstanding data location, usage, transformation, and regulatory requirements is essentialFortra's security conglomerate approach integrates with AWS native tools and partnersMachine data initially easier for compliance - no PII or HIPAA concernsIdentity paradigm shift: agents can dynamically take human and non-human roles97% of organizations using AI tools lack identity and access policiesSecurity responsibility increases as you move up the customization stackOWASP Top 10 for GenAI addresses prompt injection and data poisoningRigorous model testing including adversarial attacks before deployment is crucialSysdig spent 6-9 months stress testing their agent before production releaseTension exists between moving fast and implementing proper security controlsDifferent security approaches needed based on data sensitivity and model usageZero-standing privilege and intent-based policies critical for agent managementMulti-agent systems create "Internet of Agents" with exponentially multiplying risksDiscovery challenge: finding where GenAI is running across enterprise environmentsAPI security and gateway protection becoming critical with acceptable latencyTop customer need: translating written AI policies into actionable controlsThreat modeling should focus on impact rather than just vulnerability severityParticipants:Prashant Tyagi - Go-To-Market Identity Security Technology Strategy Lead, CyberArkMike Reed – Field CISO, Cloud Security & AI, FortraZaher Hulays – Vice President Strategic Partnerships, SysdigMatthew Girdharry - WW Leader for Observability & Security Partnerships, Amazon Web ServicesFurther Links:CyberArk: Website – LinkedIn – AWS MarketplaceFortra: Website – LinkedIn – AWS MarketplaceSysdig: Website – LinkedIn – AWS MarketplaceSee how Amazon Web Services gives you the freedom to migrate, innovate, and scale your software company at https://aws.amazon.com/isv/

Inside the ICE House
Episode 477: Sysdig CEO Bill Welch on Cloud Defense & the Next-Gen of Cyber Security

Inside the ICE House

Play Episode Listen Later Jul 14, 2025 28:51


Cloud security is undergoing a major transformation as threats become more complex and automated. Generative AI is helping teams cut through noise, automate tasks, and respond to risks faster. Sysdig, led by CEO Bill Welch, is at the forefront of this shift—empowering security teams with real-time insights and accelerating global growth. He goes Inside the ICE House to discuss company growth and the tools the his team is equipping CISOs with to fight growing threats.

Chinchilla Squeaks
Voices from FOSDEM 2025

Chinchilla Squeaks

Play Episode Listen Later Jul 3, 2025 98:32


Fast rewind back to February and I had some fascinating conversations with various projects at FOSDEM in Brussels, including the Rust Foundation, Sysdig about StratoShark, Nextcloud, and Mastodon. Want the power of Mermaid for enterprises?Mermaid chart brings WYSIWYG editing, generative AI, collaboration, and more to the flexible syntax of Mermaid.https://go.chrischinchilla.com/mermaid Try the best git GUI for macOS and WindowsGrapple git without the grief and try Tower, the best graphical interface for git on macOS and Windows.https://go.chrischinchilla.com/tower For show notes and an interactive transcript, visit chrischinchilla.com/podcast/To reach out and say hello, visit chrischinchilla.com/contact/To support the show for ad-free listening and extra content, visit chrischinchilla.com/support/

Epik Mellon - the QA Cafe Podcast
“The Wireshark Story” with Gerald Combs of Sysdig, Creator and Lead Developer of Wireshark

Epik Mellon - the QA Cafe Podcast

Play Episode Listen Later Jun 3, 2025 46:01


In this episode, I get to sit down with one of my heroes, Gerald Combs, who created and has maintained Wireshark for decades - one of the most critical projects to everything we do today in a connected world. We talk about a passion for problem solving, the magic of open-source, the old days of pre-standardized networking, and how so much of what society relies on is held together by a few very dedicated people.Donate to the Wireshark Foundation here: https://wiresharkfoundation.org/donate/Find the Wireshark Foundation Podcast on YouTube: @SharkBytesWireshark

The CyberWire
China's new cyber arsenal revealed. [Research Saturday]

The CyberWire

Play Episode Listen Later Apr 26, 2025 25:33


Today we are joined by Crystal Morin, Cybersecurity Strategist from Sysdig, as she is sharing their work on "UNC5174's evolution in China's ongoing cyber warfare: From SNOWLIGHT to VShell." UNC5174, a Chinese state-sponsored threat actor, has resurfaced with a stealthy cyber campaign using a new arsenal of customized and open-source tools, including a variant of their SNOWLIGHT malware and the VShell RAT. Sysdig researchers discovered that the group targets Linux systems through malicious bash scripts, domain squatting, and in-memory payloads, indicating a high level of sophistication and espionage intent. Their evolving tactics, such as using spoofed domains and fileless malware, continue to blur attribution and pose a significant threat to research institutions, critical infrastructure, and NGOs across the West and Asia-Pacific regions. The research can be found here: UNC5174's evolution in China's ongoing cyber warfare: From SNOWLIGHT to VShell Learn more about your ad choices. Visit megaphone.fm/adchoices

Research Saturday
China's new cyber arsenal revealed.

Research Saturday

Play Episode Listen Later Apr 26, 2025 25:33


Today we are joined by Crystal Morin, Cybersecurity Strategist from Sysdig, as she is sharing their work on "UNC5174's evolution in China's ongoing cyber warfare: From SNOWLIGHT to VShell." UNC5174, a Chinese state-sponsored threat actor, has resurfaced with a stealthy cyber campaign using a new arsenal of customized and open-source tools, including a variant of their SNOWLIGHT malware and the VShell RAT. Sysdig researchers discovered that the group targets Linux systems through malicious bash scripts, domain squatting, and in-memory payloads, indicating a high level of sophistication and espionage intent. Their evolving tactics, such as using spoofed domains and fileless malware, continue to blur attribution and pose a significant threat to research institutions, critical infrastructure, and NGOs across the West and Asia-Pacific regions. The research can be found here: UNC5174's evolution in China's ongoing cyber warfare: From SNOWLIGHT to VShell Learn more about your ad choices. Visit megaphone.fm/adchoices

Cloud Security Podcast
Mindset: Modern SOC Strategies for Cloud & Kubernetes (Ft Sergej Epp. Ex-Deutsche Bank)

Cloud Security Podcast

Play Episode Listen Later Apr 24, 2025 35:01


Join Ashish Rajan in this episodeas he dives deep into the evolving world of cloud security with Sergej Epp, formerly of Deutsche Bank and Palo Alto Networks, now with Sysdig.Discover why traditional security approaches fall short in today's dynamic cloud-native environments, where workloads resemble swarms of drones rather than predictable trains. Sergej explains the critical shift from basic posture management (CSPM/CNAPP) towards runtime security, emphasizing the need for an "assume breach" mindset.Learn about the staggering reality that over 60% of containers now live for less than a minute and the immense challenges this poses for detection, incident response, and forensics.This episode covers:The evolution from traditional security to cloud-native and runtime security.Why CNAPP/CSPM is like a map, but runtime security is the essential radar.The complexities of modern incident response with ephemeral workloads.Key strategies for Security Operations Centers (SOC) adapting to the cloud.The importance of visibility, data collection, and tools for hybrid and even air-gapped environments.How AI is starting to aid security operations and forensics.Guest Socials: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Sergej LinkedinPodcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Podcast- Youtube⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠- ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠- ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠If you are interested in AI Cybersecurity, you can check out our sister podcast -⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ AI Cybersecurity PodcastQuestions asked:(00:00) Introduction: Cloud Security & The One-Minute Container Problem(01:31) Meet Sergej Epp: 20+ Years in Cybersecurity (Deutsche Bank, Palo Alto, Sysdig)(02:44) What is Cloud Native Today? From Train Stations to Airports with Drones(05:34) Runtime Security Explained: Why It's Crucial Now(11:05) The Evolution of Cloud Security: Beyond Basic Posture Management(13:49) Incident Response Evolution: Tackling One-Minute Containers(18:34) Who Needs Runtime Security? Platform Engineers, SOC Teams & More(21:01) Runtime Security as a Platform: Beyond Detection to Prevention & Insights(24:45) Cloud Security Program Maturity: From On-Prem to Cloud Native SOC(29:20) AI in SOC Operations: Speeding Up Forensics & Context

Risky Business
Snake Oilers: Pangea, Cosive and Sysdig

Risky Business

Play Episode Listen Later Apr 17, 2025 47:45


In this edition of Snake Oilers three vendors pitch host Patrick Gray on their tech: Pangea: Guardrails and security for AI agents and applications (https://pangea.cloud) Worried about your AI apps going rogue, being mean to your customers or even disclosing sensitive information? Pangea exists to address these risks. Fascinating stuff. Cosive: A threat intelligence company that can host your MISP server in AWS. CloudMISP! (https://www.cosive.com/snakeoilers) Are you running a MISP server on some old hardware under a desk in your SOC? There's a better way! Cosive can run it for you on AWS so you can just use it instead of wrestling with maintaining it. They also do some CTI consulting to help you get better use out of MISP. Sysdig: A Linux runtime security platform (https://sysdig.com/) The modern Windows network is an all-singing, all-dancing, perfectly orchestrated, EDR-protected ballet. The modern Linux production environment… isn't. Find out how Sysdig can help you get some visibility and control over your Linux fleet. This episode is also available on Youtube. Show notes

Resilient Cyber
Resilient Cyber w/ Sergej Epp - Cloud-native Runtime Security & Usage

Resilient Cyber

Play Episode Listen Later Mar 19, 2025 32:13


In this episode, we sit with security leader and venture investor Sergej Epp to discuss the Cloud-native Security Landscape. Sergej currently serves as the Global CISO and Executive at Cloud Security leader Sysdig and is a Venture Partner at Picus Capital. We will dive into some insights from Sysdig's recent "2025 Cloud-native Security and Usage Report."Big shout out to our episode sponsor, Yubico!Passwords aren't enough. Cyber threats are evolving, and attackers bypass weak authentication every day. YubiKeys provides phishing-resistant security for individuals and businesses—fast, frictionless, and passwordless.Upgrade your security:https://yubico.comSergj and I dove into a lot of great topics related to Cloud-native Security, including:Some of the key trends in the latest Sysdig 2025 Cloud-native Security Report and trends that have stayed consistent YoY. Sergj points out that while attackers have stayed consistent, organizations have and continue to make improvements to their securitySergj elaborated on his current role as Sysdig's internal CISO and his prior role as a field CISO and the differences between the two roles in terms of how you interact with your organization, customers, and the community.We unpacked the need for automated Incident Response, touching on how modern cloud-native attacks can happen in as little as 10 minutes and how organizations can and do struggle without sufficient visibility and the ability to automate their incident response.The report points out that machine identities, or Non-Human Identities (NHI), are 7.5 times riskier than human identities and that there are 40,000 times more of them to manage. This is a massive problem and gap for the industry, and Sergj and I walked through why this is a challenge and its potential risks.Vulnerability prioritization continues to be crucial, with the latest Sysdig report showing that just 6% of vulnerabilities are “in-use”, or reachable. Still, container bloat has ballooned, quintupling in the last year alone. This presents real problems as organizations continue to expand their attack surface with expanded open-source usage but struggle to determine what vulnerabilities truly present risks and need to be addressed.We covered the challenges with compliance, as organizations wrestle with multiple disparate compliance frameworks, and how compliance can drive better security but also can have inverse impacts when written poorly or not keeping pace with technologies and threats.We rounded out the conversation with discussing AI/ML packages and the fact they have grown by 500% when it comes to usage, but organizations have decreased public exposure of AI/ML workloads by 38% since the year prior, showing some improvements are being made to safeguarding AI workloads from risks as well.

Screaming in the Cloud
The Current State of Cloud Security with Crystal Morin

Screaming in the Cloud

Play Episode Listen Later Mar 18, 2025 36:46


Sysdig's 2025 Cloud-Native and Security Usage Report is hot off the presses, and Corey has questions. On this episode, he's joined by Crystal Morin, a Cybersecurity Strategist at Sysdig, to break down the trends of the past year. They discuss Sysdig's approach to detecting and responding to security and the success the company has seen with the rollout of Sysdig Sage (an AI product that Corey thinks is actually useful). They also chat about what's driving a spike in machine identities, practical hygiene in cloud environments, and the crucial importance of automated responses to maintain robust security in the face of increasingly sophisticated cyber threats.Show Highlights(0:00) Intro(0:39) Sysdig sponsor read(2:22) Explaining Sysdig's 5/5/5 Benchmark(4:06) What does Sysdig's work entail?(10:03) Cloud security trends that have changed over the last year(14:30) Sysdig sponsor read(15:16) How Sysdig is using AI in its security products(19:09) How many users are adopting AI tools like Sysdig Sage(25:51) The reality behind the recent spike of machine identities in security(29:24) Handling the scaling of machine identities(35:37) Where you can find Sysdig's 2025 Cloud-Native and Security Usage ReportAbout Crystal MorinCrystal Morin is a Cybersecurity Strategist with more than 10 years of experience in threat analysis and research. Crystal started her career as both a Cryptologic Language Analyst and Intelligence Analyst in the United States Air Force and as a contractor for Booz Allen Hamilton, where she helped develop and evolve their cyber threat intelligence community and threat-hunting capabilities. In 2022, Crystal joined Sysdig as a Threat Research Engineer on the Sysdig Threat Research Team, where she worked to discover and analyze cyber threat actors taking advantage of the cloud. Today, Crystal bridges the gap between business and security through cloud-focused content for leaders and practitioners alike. Crystal's thought leadership has been foundational for pieces such as the “2024 Cloud-Native Security and Usage Report” and “Cloud vs. On-Premises: Unraveling the Mystery of the Dwell Time Disparity,” among others.LinksSysdig's 2025 Cloud-Native and Security Usage Report: https://sysdig.com/2025-cloud-native-security-and-usage-report/Sysdig on LinkedIn: https://www.linkedin.com/company/sysdig/Crystal's LinkedIn: https://www.linkedin.com/in/crystal-morin/SponsorSysdig: https://sysdig.com/

The Business of Open Source
The CFO's View of Open Source Companies with Eileen Doody and Karen Walker

The Business of Open Source

Play Episode Listen Later Feb 19, 2025 37:16


This week on The Business of Open Source I had a slightly different conversation: I spoke with the CFOs of two open source companies, Sysdig and Percona, to better understand what is different (and what is not) about financial management in open source companies. Karen Walker is the CFO at Sysdig, and Eileen Doody is the CFO at Percona. They both joined me to talk about the CFO role in general and the CFO role in particular at an open source company. Why did I do this episode? Many founders I've spoken with are a bit unclear on the role of a CFO — whereas I've never spoken with a founder who had trouble understanding what their CTO does. Here's some takeaways from our conversation: Part of the CFO's role is about thinking about open source strategically, in terms of how the open source project is going to fit into the company's overall strategy.Because open source is so ingrained in the company, it doesn't fit into a single budget line item; it's impossible to break out and say ‘we spend $X on open source' because it's so integrated into everything the company doesHow do you measure your ROI on investment in open source? At Sysdig, two out of three prospects come to the company because of Falco, their open source project. We also talked about the ecosystem effects of having a huge footprint with your open source project; it's hard to measure the positive influence of having massive brand awareness, but both CFOs are convinced that it is very important to the company. Eileen says that many CIOs now have mandates to look for open source solutions when possible, which was not the case a decade ago. That's changed the dynamic for a company like Percona that's based around open source. Another reason I did this episode is because while I usually have founders on the podcast, there are some really important perspectives from other leadership team members. Part of the the role of a CEO is to understand all the other C-level leadership position's roles and responsibilities, and in my experience the CFO is one of the less well understood roles. In fact, we wrapped up the conversation by talking about how a CFO can be a real strategic partner that's forward-thinking rather than just the bean-counter that some people expect a CFO to be. A couple things to mention. First of all, if you want to learn more about my consulting work with open source companies, you can do so here. Second, if you want to chance to connect with other founders of open source companies, consider joining Open Source Founders Summit this May 19th and 20th in Paris. 

AWS for Software Companies Podcast
Ep076: Incident Response in the Age of Personal CISO Liability with Suresh Vasudevan of Sysdig

AWS for Software Companies Podcast

Play Episode Listen Later Jan 28, 2025 34:20


Suresh Vasudevan, CEO of Sysdig, discusses the evolving challenges of cloud security incident response and the need for new approaches to mitigate organizational risk.Topics Include:Cybersecurity regulations mandate incident response reporting.Challenges of cloud breach detection and response.Complex cloud attack patterns: reconnaissance, lateral movement, exploit.Rapid exploitation - minutes vs. days for on-prem.Importance of runtime, identity, and control plane monitoring.Limitations of EDR and SIEM tools for cloud.Coordinated incident response across security, DevOps, executives.Criticality of pre-defined incident response plans.Increased CISO personal liability risk and mitigation.Documenting security team's diligence to demonstrate due care.Establishing strong partnerships with legal and audit teams.Covering defensive steps in internal communications.Sysdig's cloud-native security approach and Falco project.Balancing prevention, detection, and response capabilities.Integrating security tooling with customer workflows and SOCs.Providing 24/7 monitoring and rapid response services.Correlating workload, identity, and control plane activities.Detecting unusual reconnaissance and lateral movement behaviors.Daisy-chaining events to identify potential compromise chains.Tracking historical identity activity patterns for anomaly detection.Aligning security with business impact assessment and reporting.Adapting SOC team skills for cloud-native environments.Resource and disruption cost concerns for cloud agents.Importance of "do no harm" philosophy for response.Enhancing existing security data sources with cloud context.Challenges of post-incident forensics vs. real-time response.Bridging security, DevOps, and executive domains.Establishing pre-approved incident response stakeholder roles.Maintaining documentation to demonstrate proper investigation.Evolving CISO role and personal liability considerations.Proactive management of cyber risk at board level.Developing strong general counsel and audit relationships.Transparency in internal communications to avoid discovery risks.Security teams as business partners, not just technicians.Sysdig's cloud security expertise and open-source contributions.Participants:· Suresh Vasudevan – CEO, SysdigSee how Amazon Web Services gives you the freedom to migrate, innovate, and scale your software company at https://aws.amazon/isv/

Coach2Scale: How Modern Leaders Build A Coaching Culture
Building Cohesive Global Sales Teams with Jim Gannon - Coach2Scale Episode #74

Coach2Scale: How Modern Leaders Build A Coaching Culture

Play Episode Listen Later Jan 14, 2025 54:00


What if sales success wasn't just about the money? Join us as we challenge this age-old myth with insights from Jim Gannon, SVP of Sales at Sysdig. Discover how autonomy, competition, and a genuine drive to impact the business play pivotal roles in achieving sales excellence. Jim reveals why curiosity and the willingness to learn from peers set top performers apart, shedding light on the motivations that propel seasoned pros and ambitious newcomers alike.The episode further unpacks the essence of team dynamics with a spotlight on recognition and accountability. By celebrating the collective efforts of everyone from sales engineers to onboarding teams, we uncover how fostering an inclusive culture strengthens team cohesion. Jim dives into the balancing act leaders face in maintaining a positive yet accountable environment, emphasizing the critical role of enablement and data-driven insights in recognizing high-performing teams.Leadership and mindset take center stage as Jim shares his experiences leading in Japan, offering valuable lessons on cultural awareness and scalable processes. Explore how a winning attitude, even against fierce competition, can be nurtured within sales teams. From strategies for private companies to tales of overcoming odds in the sports world, this conversation is your playbook for elevating sales performance and leadership prowess. Don't miss Jim's engaging stories and practical advice that promise to inspire and transform.Chapters:(00:00) Busting Sales Myths With Jim Gannon(12:08) Fostering Team Recognition and Accountability(19:05) Enhancing Sales Enablement Through Accountability(28:01) Building a Winning Mindset in Sales(33:51) Enhancing Customer Success in Sales(38:55) Casting a Leadership Shadow(42:53) Cultural Awareness and Training StoriesTakeaways:Sales Motivation Beyond Money: Jim Gannon challenges the common myth that salespeople are primarily driven by monetary incentives. He emphasizes that autonomy, competition, and the desire to impact the business are key motivators. Understanding these can help CROs better tailor their leadership and incentive structures.Curiosity as a Differentiator: Top-performing salespeople often exhibit a strong sense of curiosity and a willingness to learn. CROs should foster an environment that encourages intellectual engagement and peer learning to enhance team performance.Recognition and Accountability: Building a cohesive sales team involves recognizing contributions from all team members, not just those who close deals. CROs should focus on fostering a culture of inclusivity and accountability, which aligns with company values and encourages collective success.Sales Enablement and Data-Driven Coaching: Effective sales enablement requires moving beyond content overload to live training sessions and leveraging tools like Gong for data-driven coaching. CROs should ensure their teams have access to insights that can improve performance and identify areas for development.Building a Winning Mindset: In challenging market conditions, CROs should inspire their teams by sharing stories of underdogs who have succeeded against the odds. This helps instill confidence and drive, encouraging teams to execute the basics with excellence.Cultural Awareness in Global Leadership: For CROs overseeing international teams, understanding cultural nuances is crucial. Jim's experiences in Japan highlight the importance of cultural sensitivity and the concept of a "leadership shadow" in global contexts.Leveraging Competitive Spirit: Salespeople who thrive often enjoy the challenge of competing against larger, better-branded competitors. CROs can harness this competitive spirit by encouraging strategies that focus on differentiation and value delivery.Balancing Inspirational Leadership with Accountability: Jim emphasizes the need for CROs to balance inspirational leadership with creating a culture of accountability. This involves setting high standards while motivating teams to achieve them through clear, consistent expectations and support.Ways to Tune In:Spotify: https://open.spotify.com/show/0Yb1wPzUxyrfR0Dx35ym1A Apple Podcasts: https://podcasts.apple.com/us/podcast/coach2scale-how-modern-leaders-build-a-coaching-culture/id1699901434 Google Podcasts: https://podcasts.google.com/feed/aHR0cHM6Ly9mZWVkcy50cmFuc2lzdG9yLmZtL2NvYWNoMnNjYWxlLWhvdy1tb2Rlcm4tbGVhZGVycy1idWlsZC1hLWNvYWNoaW5nLWN1bHR1cmU Amazon Music: https://music.amazon.com/podcasts/fd188af6-7c17-4b2e-a0b2-196ecd6fdf77 Podchaser: https://www.podchaser.com/podcasts/coach2scale-how-modern-leaders-5419703 YouTube: https://www.youtube.com/@Coach2Scale CoachEm™ is the first Coaching Execution Platform that integrates deep learning technology to proactively analyze patterns, highlight the "why" behind the data with root causes, and identify the actions that will ultimately improve business results going forward.  These practical coaching recommendations for managers will help their teams drive more deals, bigger deals, faster deals and loyal customers. Built with decades of go-to-market experience, world-renowned data scientists and advanced causal AI/ML technology, CoachEm™ leverages your existing tech stack to increase rep productivity, increase retention, and replicate best practices across your team.Learn more at coachem.io

Content Is Profit
How To Outsmart Google in 2025. They've Been Doing It For 20 Years. Ft. Jason M. Barnard

Content Is Profit

Play Episode Listen Later Jan 7, 2025 55:59


In Today's episode we chat with our good friend and co-mastermind member, Jason M. Barnard. He blew our minds when it c omes to SEO, Google, Personal Branding and much more. This guy has been outsmarting Google for 20 years, and he told us everything we need to know about it. I could not stop taking notes. This conversation made us rethink a lot of what we "know" about Google and how we show up online if we really want to create a positive impact in the world. Which, I'm assuming, you want to do! We talked how this frameworks are so simple to put in place, you can do it today if you want to. We discussed modern models of AI, and how they all suck when it comes to building your brand... yes, including Chat GPT... And we wrapped up the episode with how you can get all these resources, for free! It was so good, and actionable! We can't wait to hear from you! Timestamped Overview: 00:00 Google algorithm expert with superhero alter ego. 05:26 Incredible show and valuable insights shared. 07:34 Summarizing the text in 7 words: Discussing content organization and personal branding strategies. 10:27 Jason and coach conversation on self-definition simplification. 13:27 Curiosity about unique marketing approach in SEO. 18:05 Social media algorithms keep users engaged. 21:20 Algorithms guide users through the sales journey. 24:32 Identifying content categories for efficient problem-solving. 29:31 Google search guides users through educational journey. 30:44 Sysdig engines recommend Biz Bros for B2B podcast production, guiding users through the buying process. 35:00 Focus on solving big problems through smaller tasks. 38:16 Content generating profit—pipeline platform, collaboration, tracking. 42:26 Iterative process using GPT 4 to generate answers. 46:14 Sharing knowledge freely, nature can't be changed. 48:32 Consistent red shirt creates strong professional identity. 51:15 Wearing a red shirt can make connections. 54:39 Package branded marketing for search engines effectively. Connect With Jason M. Barnard: Facebook Instagram LinkedIn Twitter Connect with FONZI: Facebook Instagram LinkedIn Twitter Connect with LUISDA: Facebook Instagram LinkedIn Twitter Subscribe to the podcast on Youtube, Apple, Spotify, Google, Stitcher, or anywhere you listen to your podcasts. You can find this episode plus all previous episodes here. If this episode was helpful, please don't forget to leave us a review by clicking here, and share it with a friend.  You can go here to see the full list of episodes

The Tech Blog Writer Podcast
3134: Transforming Cloud Security: The Power of Agentic AI with Sysdig

The Tech Blog Writer Podcast

Play Episode Listen Later Dec 30, 2024 34:23


  How is agentic AI reshaping cloud security and what does the future hold for this transformative technology? In today's episode of Tech Talks Daily, I sit down with Loris Degioanni, the founder and CTO of Sysdig, to explore how agentic AI is driving innovation in cloud security. As the creator of Sysdig and the CNCF runtime security tool Falco, Loris brings a wealth of expertise to the conversation, having also been a key contributor to the widely-used open-source network analyzer, Wireshark. We discuss how Sysdig has pioneered the first AI-powered cloud security tool using agentic AI. This groundbreaking approach enables AI agents to function as domain-specific experts, working collaboratively to provide rapid threat detection—reducing response times to under 10 minutes in cloud environments where speed is critical. Loris shares insights into the cultural and technological factors fueling the rise of agentic AI and its potential to revolutionize cybersecurity. The conversation also delves into the promises and pitfalls of agentic AI, such as its ability to handle complex tasks in a way that mimics human teams, alongside challenges like latency and cost. Loris highlights how open-source tools like Falco and Sysdig play a crucial role in advancing AI by making domain-specific knowledge publicly accessible, empowering the broader developer community to optimize AI capabilities. Looking ahead, we explore the future of AI in enterprise and cloud security, including predictions about how conversational interfaces and agentic AI architectures will redefine how businesses interact with and manage security tools. Whether you're curious about the evolution of AI in cybersecurity or interested in learning how Sysdig is leveraging this innovation to address today's challenges, this episode offers a fascinating glimpse into the intersection of technology and security. What are your thoughts on the role of agentic AI in shaping the future of cybersecurity? Join the discussion and share your perspective!

The New Stack Podcast
How Falco Brought Real-Time Observability to Infrastructure

The New Stack Podcast

Play Episode Listen Later Dec 26, 2024 19:27


Falco, an open-source runtime observability and security tool, was created by Sysdig founder Loris Degioanni to collect real-time system events directly from the kernel. Leveraging eBPF technology for improved safety and performance, Falco gathers data like pod names and namespaces, correlating them with customizable rules. Unlike static analysis tools, it operates in real-time, monitoring events as they occur. In this episode of The New Stack Makers, TNS Editor-in-Chief, Heather Joslyn spoke with Thomas Labarussias, Senior Developer Advocate at Sysdig, Leonardo Grasso, Open Source Tech Lead Manager at Sysdig and Luca Guerra, Sr. Open Source Engineer at Sysdig to get the latest update on Falco. Graduating from the Cloud Native Computing Foundation (CNCF) in February 2023 after entering its sandbox six years prior, Falco's maintainers have focused on technical maturity and broad usability. This includes simplifying installations across diverse environments, thanks in part to advancements from the Linux Foundation.Looking ahead, the team is enhancing core functionalities, including more customizable rules and alert formats. A key innovation is Falco Talon, introduced in September 2023, which provides a no-code response engine to link alerts with real-time remediation actions. Talon addresses a longstanding gap in automating responses within the Falco ecosystem, advancing its capabilities for runtime security.Learn more from The New Stack about Falco:Falco Is a CNCF Graduate. Now What?Falco Plugins Bring New Data Sources to Real-Time SecurityeBPF Tools: An Overview of Falco, Inspektor Gadget, Hubble and CiliumJoin our community of newsletter subscribers to stay on top of the news and at the top of your game.

Coach2Scale: How Modern Leaders Build A Coaching Culture
Top 10 Lessons for Sales Leaders from 2024 Shared on the Coach2Scale Podcast

Coach2Scale: How Modern Leaders Build A Coaching Culture

Play Episode Listen Later Dec 24, 2024 6:48 Transcription Available


As we close the book on 2024, I want to take a moment to say THANK YOU. Whether you tuned in for one episode or all 52, you're part of a movement that believes coaching is the rocket fuel for performance. This year, Coach the Scale recorded over 65 episodes, reaching thousands of sales leaders. But this isn't about vanity metrics—this is about impact. Each episode brought lessons that slapped us in the face and whispered, "Pay attention."So, let's hit rewind on the top 10 lessons from 2024 that every sales leader needs tattooed (metaphorically) on their brain:1. Coaching isn't teaching—it's training for battle.Your reps don't learn to box by watching YouTube. It's role plays, feedback, and reps that build champions.2. High performers are your blue-chip stocks.Feed them or someone else will. Stop spending all your energy on the bottom 20%.3. Focus on behaviors, not just outcomes.Outcomes lag. Daily actions drive the engine. We are what we repeatedly do.4. Active listening is a martial art.As Colum at CoachEm says, curiosity is the currency that unlocks trust.5. Feedback is love.Frequent, honest feedback isn't a luxury—it's oxygen for growth. (Thanks to Dr. Rachel Pacheco for the unforgettable underwear analogy.

Secrets of Rockstar CFOs
Sysdig: Leading In Cloud Security With Karen Walker

Secrets of Rockstar CFOs

Play Episode Listen Later Dec 17, 2024 51:16


Karen Walker, CFO of Sysdig, joins Jack McCullough to discuss what it takes to lead in the dynamic world of cloud security. Karen shares her journey from global childhood experiences to leadership roles at iconic companies, such as Uber and Pandora. Together, they explore the evolving role of CFOs, the power of networking, and how technology is reshaping financial leadership. Whether you are curious about scaling fast-growing businesses or balancing passion and practicality, this conversation offers valuable insights for professionals at every stage of their careers.To book a demo with Payhawk, click here.To book a demo with Planful, click here.

Screaming in the Cloud
Best Practices for Securing AWS Cloud with Eric Carter

Screaming in the Cloud

Play Episode Listen Later Nov 27, 2024 30:19


Eric Carter of Sysdig joins Corey to tackle the evolving landscape of cloud security, particularly in AWS environments. As attackers leverage automation to strike within minutes, Sysdig focuses on real-time threat detection and rapid response. Tools like Runtime Insights and open-source Falco help teams identify and mitigate misconfigurations, excessive permissions, and stealthy attacks, while Kubernetes aids in limiting lateral movement. Eric introduced the “10-minute benchmark” for defense, combining automation and human oversight. Adapting to constant change, Sysdig integrates frameworks like MITRE ATT&CK to stay ahead of threats. Corey and Eric also discuss Sysdig's conversational AI security analyst, which simplifies decision-making.Show Highlights(0:00) Intro(0:32) Sysdig sponsor read(0:51) What they do at Sysdig(3:28) When you need a human in the loop vs when AI is useful(5:12) How AI may affect career progression for cloud security analysts(8:18) The importance of security for AI(12:18) Sysdig sponsor read(12:39) Security practices in AWS(15:19) How Sysdig's security reports have shaped Corey's thinking(18:10) Where the cloud security industry is headed(20:03) Cloud security increasingly feeling like an arms race between attackers and defenders(23:33) Frustrations with properly configuring leased permissions(28:17) How to keep up with Eric and SysdigAbout Eric CarterEric is an AWS Cloud Partner Advocate focused on cultivating Sysdig's technology cloud and container partner ecosystem. Eric has spearheaded marketing efforts for enterprise technology solutions across various domains, such as security, monitoring, storage, and backup. He is passionate about working with Sysdig's alliance partners, and outside of work, enjoys performing as a guitarist in local cover bands.LinksSysdig's website: https://sysdig.com/Sysdig's AWS Cloud Security: https://sysdig.com/ecosystem/aws/Sysdig's 5 Steps to Securing AWS Cloud Infrastructure: https://sysdig.com/content/c/pf-5-steps-to-securing-aws-cloud-infrastructure?x=Xx8NSJSponsorSysdig: https://www.sysdig.com 

The Daily Decrypt - Cyber News and Discussions
iPhone Spyware, Phish n Ships, WordPress Vulns, EmeraldWhale oh my. Cybersecurity News

The Daily Decrypt - Cyber News and Discussions

Play Episode Listen Later Nov 1, 2024


Video Episode: https://youtu.be/-fHd8wOJGHg In today’s episode, we discuss the recent surge in cyber threats, starting with the improved LightSpy spyware targeting iPhones, which enables heightened surveillance through 28 new plugins and destructive capabilities like device freezing. We also cover a critical vulnerability (CVE-2024-50550) in the LiteSpeed Cache WordPress plugin, allowing hackers to gain unauthorized admin access to over six million sites. Additionally, we examine the Phish n’ Ships campaign, which has affected over a thousand online stores, and the EmeraldWhale operation that has stolen more than 15,000 cloud credentials from exposed Git repositories, highlighting the ongoing challenges in mobile security, WordPress vulnerabilities, and credential theft. References: 1. https://thehackernews.com/2024/10/new-lightspy-spyware-version-targets.html 2. https://www.bleepingcomputer.com/news/security/litespeed-cache-wordpress-plugin-bug-lets-hackers-get-admin-access/ 3. https://www.bleepingcomputer.com/news/security/over-a-thousand-online-shops-hacked-to-show-fake-product-listings/ 4. https://www.bleepingcomputer.com/news/security/hackers-steal-15-000-cloud-credentials-from-exposed-git-config-files/ 1. What are today’s top cybersecurity news stories? 2. How does the new version of LightSpy spyware target iPhones? 3. What vulnerabilities exist in the LiteSpeed Cache WordPress plugin? 4. What is the Phish n’ Ships phishing campaign about? 5. How did hackers steal 15,000 cloud credentials from Git config files? 6. What measures can be taken to secure iPhones against spyware? 7. What are the implications of the LiteSpeed Cache privilege elevation flaw? 8. What steps should consumers take to avoid falling for phishing scams? 9. How are hackers exploiting Git configuration files for data theft? 10. What are the latest trends in mobile cybersecurity threats? LightSpy, spyware, iOS, malware, LiteSpeed Cache, vulnerability, WordPress, exploitation, Satori, phishing, vulnerabilities, counterfeit, EmeraldWhale, Git, credentials, Sysdig,

The CyberWire
Guarding the Vote

The CyberWire

Play Episode Listen Later Oct 31, 2024 33:47


CISA spins up an election operations war room. Microsoft neglected to restrict access to gender-detecting AI. Yahoo uncovers vulnerabilities in OpenText's NetIQ iManager. QNAP issues urgent patches for its NAS devices. Sysdig uncovers Emerald Whale. A malvertising campaign exploits Meta's ad platform to spread the SYS01 infostealer. Senator Ron Wyden wants to tighten rules aimed at preventing U.S. technologies from reaching repressive regimes. Researchers use AI to uncover an IoT zero-day. Sophos reveals a five year battle with firewall hackers. Our guest is Frederico Hakamine, Technology Evangelist from Axonius, talking about how threats both overlap and differ across individuals and critical infrastructure. Be afraid of spooky data. Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest Our guest is Frederico Hakamine, Technology Evangelist from Axonius, talking about how threats both overlap and differ across individuals and critical infrastructure. Selected Reading CISA Opens Election War Room to Combat Escalating Threats (GovInfo Security) Agencies face ‘inflection point' ahead of looming zero-trust deadline, CISA official says (CyberScoop) Microsoft Provided Gender Detection AI on Accident (404 Media) Yahoo Discloses NetIQ iManager Flaws Allowing Remote Code Execution (SecurityWeek) QNAP patches critical SQLi flaw (Beyond Machines) EMERALDWHALE: 15k Cloud Credentials Stolen in Operation Targeting Exposed Git Config Files (Sysdig) Fake Meta Ads Hijacking Facebook Accounts to Spread SYS01 Infostealer (Hackread) Exclusive: Senator calls on Commerce to tighten proposed rules on exporting surveillance, hacking tech to problematic nations (CyberScoop) GreyNoise Intelligence Discovers Zero-Day Vulnerabilities in Live Streaming Cameras with the Help of AI (GreyNoise)  Inside Sophos' 5-Year War With the Chinese Hackers Hijacking Its Devices (WIRED) Pacific Rim: Inside the Counter-Offensive—The TTPs Used to Neutralize China-Based Threats (Sophos News) Spooky Data at a Distance (LinkedIn) Share your feedback. We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.  Want to hear your company in the show? You too can reach the most influential leaders and operators in the industry. Here's our media kit. Contact us at cyberwire@n2k.com to request more info. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

ITSPmagazine | Technology. Cybersecurity. Society
SecTor 2024 Announces Summit Schedule | Brand Story | 2 Minutes on ITSPmagazine

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Oct 10, 2024 2:11


SecTor, Canada's largest cybersecurity conference, today announced the release of its full schedule of Summits for SecTor 2024. The live, in-person event will take place from October 22 to October 24 at the Metro Toronto Convention Centre in downtown Toronto. Summits will take place on Tuesday, October 22 and include:SecTor Executive Summit – This Summit will offer CISOs and other cybersecurity executives an opportunity to hear from industry experts helping to shape the next generation of information security strategy. Sponsors include: Armis, Sysdig, Cyera, and Trend Micro. To apply, please visit blackhat.com/sector/2024/executive-summit.html.Inaugural AI Summit at SecTor – This Summit will take place as part of The AI Summit Series, a global conference and expo series focusing on practical applications of AI technologies. This Summit will underscore the importance of artificial intelligence (AI) as an organization's newest and greatest weapon within the ever-evolving cybersecurity landscape. Passes can be purchased here: blackhat.com/sector/2024/ai-summit.html.Cloud Security Summit at SecTor – This Summit is Canada's leading cloud security event featuring keynote speakers, panel discussions, and networking opportunities, and provides an invaluable opportunity for every security professional to engage with leaders and discuss the future of cloud security. Sponsors include: CrowdStrike, Cyera, Kyndryl, Okta, OpenText, StrongDM, Sysdig, and Lookout. Passes can be purchased here: blackhat.com/sector/2024/cloud-summit.html.Note: This story contains promotional content. Learn more.ResourcesLearn more and catch more stories from SecTor Cybersecurity Conference Toronto 2024: https://www.itspmagazine.com/sector-cybersecurity-conference-2024-cybersecurity-event-coverage-in-toronto-canadaLearn more about 2 Minutes on ITSPmagazine Short Brand Story Podcasts: https://www.itspmagazine.com/purchase-programs

Unspoken Security
Can We Make Everyone a Threat Hunter?

Unspoken Security

Play Episode Listen Later Sep 17, 2024 46:56


In this episode of Unspoken Security, host AJ Nash talks with Crystal Morin, Cybersecurity Strategist at Sysdig, about the world of threat hunting. Crystal shares her journey from military linguist to cyber defender, highlighting the skills that translate across these fields.The conversation dives into what threat hunting is and why it's crucial for proactive cybersecurity. Crystal explains how she developed a company-wide threat-hunting program at Booz Allen Hamilton, emphasizing the importance of open-source tools and training.Crystal discusses the challenges of funding proactive security measures and the need for more threat hunters in the industry. She also touches on recent discoveries, including novel cybercriminal operations and targeted attacks against large language models. The episode wraps up with insights on making threat hunting accessible to more professionals in the cybersecurity field.Send us a textSupport the show

Smashing Security
The Godfather club, and AirTags to the rescue

Smashing Security

Play Episode Listen Later Sep 4, 2024 54:16


There's a whole new dating scam that could mean you end up out of pocket (or beaten up) after a first date with a glamorous admirer, and a woman in Los Alamos uses an Air Tag to entrap a thief.Plus - don't miss our featured interview with Maya Levine of Sysdig.All this, and a very bad Cockney accent, in the latest edition of the "Smashing Security" podcast by industry veterans Graham Cluley and Carole Theriault.Warning: This podcast may contain nuts, adult themes, and rude language.Episode links:Mail Theft Suspect Apprehended Using AirTag - Santa Barbara County Sheriff's Office.Google and Apple deliver support for unwanted tracking alerts in Android and iOS - Google Security blog.Apple and Google deliver support for unwanted tracking alerts in iOS and Android - Apple.Barclays Scams Bulletin: Men more likely to fall victim to romance scams, while women lose more money - Barclays.3 men trapped by same woman: Journalist on modus operandi of dating app scams - India Today. Mumbai club under fire for 'dating scam' after man gets Rs 61,000 bill - India News.Romance scams in 2024 + online dating statistics - Norton.Tips for romance scams - Better Business Bureau.What to know about romance scams - Consumer Advice.The Godfather club dating app scam in Mumbai - YouTube.What accent does Butcher have in ‘The Boys'? - NME.Shokz bone conduction headphones - Shokz.Smashing Security merchandise (t-shirts, mugs, stickers and stuff)Sponsored by:1Password Extended Access Management - Secure every sign-in for every app on every device.Sysdig - Secure your cloud in real time. Detect, investigate, and respond to threats at cloud speed.Material Security – email security that covers the full threat landscape –

Screaming in the Cloud
Battling Back Against Data Breaches with Maya Levine

Screaming in the Cloud

Play Episode Listen Later Aug 27, 2024 33:19


Data breaches can throw countless lives into disarray. With massive leaks and compromises happening on what feels like a daily basis, what can be done to protect people and services? On this episode, Sysdig Product Manager Maya Levine joins us for a discussion on the current state of affairs in the world of cybersecurity. Why do these attacks keep happening? Are they becoming too frequent? What can we do to prevent them? Maya has all the answers as well as tips to help keep you and your organization safe.Show Highlights:(0:00) Intro(0:37) Sysdig sponsor read(0:58) Product management at Sysdig(2:09) Are cyber attacks becoming more frequent in the cloud?(5:58) Urgency (or lack thereof) while under attack (10:37) Motives and methods in modern data breaches(15:57) Sysdig sponsor read(16:20) The cost (and necessity) of audit logging(18:46) “If breach is inevitable, what can people do?”(22:36) Maya's “I am Confused” talk(25:40) Stopping attacks before they spiral out of control(32:32) Where can find more from Maya and SysdigAbout Maya Levine:Maya Levine is a Product Manager for Sysdig. Previously she worked at Check Point Software Technologies as a Security Engineer and later a Technical Marketing Engineer, focusing on cloud security. Her earnest and concise communication style connects to both technical and business audiences. She has presented at many industry conferences, including AWS re:Invent and AnsibleFest. She has also been regularly interviewed on television news channels, written publications, and podcasts about cybersecurity.Links:Maya's LinkedIn: https://www.linkedin.com/in/maya-levine/Sysdig: https://sysdig.com/SponsorSysdig: https://sysdig.com/

The CyberWire
Squarespace's square off with hijacked domains.

The CyberWire

Play Episode Listen Later Jul 16, 2024 36:53


Some Squarespace users see their domains hijacked. Kaspersky Lab is shutting down US operations. BackPack APKs break malware analysis tools. Hackers use 7zip files to deliver Poco RAT malware. CISA's red-teaming reveals security failings at an unnamed federal agency. Microsoft fixes an Outlook bug triggering false security alerts. Switzerland mandates open source software in the public sector. On our Industry Voices segment, N2K's Rick Howard speaks with Alex Lawrence and Matt Stamper from Sysdig about their 555 Cloud Security Benchmark.  Bellingcat sleuths pinpoint an alleged cartel member.  Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest On our Industry Voices segment, N2K's Rick Howard speaks with Alex Lawrence and Matt Stamper from Sysdig about their 555 Cloud Security Benchmark. Learn more about the /555 benchmark. Selected Reading Researchers: Weak Security Defaults Enabled Squarespace Domains Hijacks (Krebs on Security) Kaspersky Lab Closing U.S. Division; Laying Off Workers (Zero Day) Beware of BadPack: One Weird Trick Being Used Against Android Devices (Palo Alto Networks Unit 42) New Poco RAT Weaponizing 7zip Files Using Google Drive (GB Hackers) CISA broke into a US federal agency, and no one noticed for a full 5 months (The Register) Organizations Warned of Exploited GeoServer Vulnerability (Security Week) Microsoft finally fixes Outlook alerts bug caused by December updates (Bleeping Computer) New Open Source law in Switzerland (Joinup) Exploring the Skyline: How we Located an Alleged Cartel Member in Dubai (Bellingcat) Share your feedback. We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.  Want to hear your company in the show? You too can reach the most influential leaders and operators in the industry. Here's our media kit. Contact us at cyberwire@n2k.com to request more info. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

The CyberWire
AT&T's not so LOL hack.

The CyberWire

Play Episode Listen Later Jul 12, 2024 36:41


AT&T wireless announces a massive data breach. NATO will build a cyber defense center in Belgium. The White House outlines cybersecurity budget priorities.A popular phone spyware app suffers a major data breach.Some Linksys routers are sending user credentials in the clear. Sysdig describes Crystalray malware. A massive phishing campaign is exploiting Microsoft SharePoint servers. Germany strips Huawei and ZTE from 5G infrastructure. Our guest is Brigid Johnson, Director of AWS Identity, on the importance of identity management. The EU tells X-Twitter to clean up its act or pay the price. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest At the recent AWS re:Inforce 2024 conference, N2K's Brandon Karpf spoke with Brigid Johnson, Director of AWS Identity, about the importance of identity and where we need to go. You can watch a replay of Brigid's session at the event, IAM policy power hour, here.  Selected Reading AT&T Details Massive Breach of Customers' Call and Text Logs (Data Breach Today) NATO Set to Build New Cyber Defense Center (Infosecurity Magazine) New Presidential memorandum sets cybersecurity priorities for FY 2026, tasking OMB and ONCD to evaluate submissions (Industrial Cyber) mSpy Data Breach: Millions of Customers' Data Exposed (GB Hackers) Advance Auto Parts' Snowflake Breach Hits 2.3 Million People (Infosecurity Magazine) These Linksys routers are likely transmitting cleartext passwords (TechSpot) Known SSH-Snake bites more victims with multiple OSS exploitation (CSO Online) Beware of Phishing Attack that Abuses SharePoint Servers (Cyber Security News) Germany to Strip Huawei From Its 5G Networks (The New York Times) EU threatens Musk's X with a fine of up to 6% of global turnover (The Record) Share your feedback. We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.  Want to hear your company in the show? You too can reach the most influential leaders and operators in the industry. Here's our media kit. Contact us at cyberwire@n2k.com to request more info. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Cloud Security Podcast
The role of Real Time Defense in Cloud Security

Cloud Security Podcast

Play Episode Listen Later Apr 16, 2024 21:35


In this episode from KubeCon Paris 2024, we spoke to Loris Degioanni, Co-Founder and CTO of Sysdig about Open Source Project, Falco that celebrated its graduation this year at KubeconEU, Loris shared with us this proud moment and journey from writing the 1st lines of code to its critical role in protecting Kubernetes environments, and the future roadmap post-graduation. We spoke about the gap between traditional security measures and the dynamic needs of modern infrastructures. Guest Socials: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Loris's Linkedin Podcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels: - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Podcast- Youtube⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp 00:00 Introduction 01:13 A bit about Loris 01:44 What does graduation mean for Falco? 02:58 What is Falco? 04:59 eBPF and Falco 06:01 Why eBPF is secure? 07:11 Runtime Security in Kubernetes 10:32 ROI for leaders for Runtime Security Tools 12:50 Preventative Security vs Runtime Security 14:08 Runtime Security in Modern Environments 16:42 Whats the Future for Falco? 18:31 The Fun Questions

The CyberWire
Python developers under attack.

The CyberWire

Play Episode Listen Later Mar 25, 2024 34:33


A supply chain attack targets python developers. Russia targets German political parties. Romanian and Spanish police dismantle a cyber-fraud gang. Pwn2Own prompts quick patches from Mozilla. President Biden nominates the first assistant secretary of defense for cyber policy at the Pentagon. An influential think tank calls for a dedicated cyber service in the US. Unit42 tracks a StrelaStealer surge. GM reverses its data sharing practice. Our guest is Anna Belak, Director of the Office of Cybersecurity Strategy at Sysdig, who shares trends in cloud-native security. And a Fordham Law School professor suggests AI creators take a page from medical doctors.  Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest Guest Anna Belak, Director of the Office of Cybersecurity Strategy at Sysdig, shares trends in cloud-native security. To learn more, you can check out Sysdig's 2024 Cloud-Native Security and Usage Report.  Selected Reading Top Python Developers Hacked in Sophisticated Supply Chain Attack (SecurityWeek) Russian hackers target German political parties with WineLoader malware (Bleeping Computer) Police Bust Multimillion-Dollar Holiday Fraud Gang (Infosecurity Magazine) Mozilla Patches Firefox Zero-Days Exploited at Pwn2Own (SecurityWeek) Biden nominates first assistant defense secretary for cyber policy (Nextgov/FCW) Pentagon, Congress have a ‘limited window' to properly create a Cyber Force (The Record) StrelaStealer targeted over 100 organizations across the EU and US (Security Affairs) General Motors Quits Sharing Driving Behavior With Data Brokers (The New York Times) AI's Hippocratic Oath by Chinmayi Sharma (SSRN) Share your feedback. We want to ensure that you are getting the most out of the podcast. Please take a few minutes to share your thoughts with us by completing our brief listener survey as we continually work to improve the show.  Want to hear your company in the show? You too can reach the most influential leaders and operators in the industry. Here's our media kit. Contact us at cyberwire@n2k.com to request more info. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © 2023 N2K Networks, Inc.

Content Is Profit
How To Outsmart Google in 2024. They've Been Doing It For 20 Years. Ft. Jason M. Barnard

Content Is Profit

Play Episode Listen Later Mar 7, 2024 56:23


In Today's episode we chat with our good friend and co-mastermind member, Jason M. Barnard. He blew our minds when it c omes to SEO, Google, Personal Branding and much more. This guy has been outsmarting Google for 20 years, and he told us everything we need to know about it. I could not stop taking notes. This conversation made us rethink a lot of what we "know" about Google and how we show up online if we really want to create a positive impact in the world. Which, I'm assuming, you want to do! We talked how this frameworks are so simple to put in place, you can do it today if you want to. We discussed modern models of AI, and how they all suck when it comes to building your brand... yes, including Chat GPT... And we wrapped up the episode with how you can get all these resources, for free! It was so good, and actionable! We can't wait to hear from you! Timestamped Overview: 00:00 Google algorithm expert with superhero alter ego. 05:26 Incredible show and valuable insights shared. 07:34 Summarizing the text in 7 words: Discussing content organization and personal branding strategies. 10:27 Jason and coach conversation on self-definition simplification. 13:27 Curiosity about unique marketing approach in SEO. 18:05 Social media algorithms keep users engaged. 21:20 Algorithms guide users through the sales journey. 24:32 Identifying content categories for efficient problem-solving. 29:31 Google search guides users through educational journey. 30:44 Sysdig engines recommend Biz Bros for B2B podcast production, guiding users through the buying process. 35:00 Focus on solving big problems through smaller tasks. 38:16 Content generating profit—pipeline platform, collaboration, tracking. 42:26 Iterative process using GPT 4 to generate answers. 46:14 Sharing knowledge freely, nature can't be changed. 48:32 Consistent red shirt creates strong professional identity. 51:15 Wearing a red shirt can make connections. 54:39 Package branded marketing for search engines effectively. Connect With Jason M. Barnard: Facebook Instagram LinkedIn Twitter Connect with FONZI: Facebook Instagram LinkedIn Twitter Connect with LUISDA: Facebook Instagram LinkedIn Twitter Subscribe to the podcast on Youtube, Apple, Spotify, Google, Stitcher, or anywhere you listen to your podcasts. You can find this episode plus all previous episodes here. If this episode was helpful, please don't forget to leave us a review by clicking here, and share it with a friend.  You can go here to see the full list of episodes

Kubernetes Podcast from Google
Falco Graduation, with Mike Coleman

Kubernetes Podcast from Google

Play Episode Listen Later Mar 6, 2024 48:19


Mike Coleman is a developer advocate at Sysdig focused on open source software and spends a lot of time working on the Falco project. We'll explore how Falco enables runtime security, and celebrate its recent graduation!   Do you have something cool to share? Some questions? Let us know: - web: kubernetespodcast.com - mail: kubernetespodcast@google.com - twitter: @kubernetespod News of the week Falco Graduation announcement Google Gemma Open Model GitOps Associate Certification (CGOA) Certified GitOps Associate (CGOA) Exam Linkerd 2.15 announcement Linkerd 2.15 stable release announcement Crossplane 1.15 announcement Open Source Summit North America Schedule Cloud Native Security Con North American Cloud Native Security Con America CFP Links from the interview Mike Coleman LinkedIn Twitter "Docker?!?! But, I'm a sysadmin" - Mike Coleman Mike Colemane and Bill Gates in an Earthquake Falco project LinkedIn Twitter Slack KubeCon NA 2019 CTF Cryptomining Detection Using Falco Navigating Open Source Project Hurdles to Achieve Community Enpowerments Aizhamal Nurmamat kyzy & Bob Killen Wrangle your alerts with open source Falco and the gcpaudit plugin Falcosidekick Practical Cloud Native Security with Falco Certified Kubernetes Security (CKS) exam

Packet Pushers - Full Podcast Feed
KU049: Security Frameworks, Tools, and Strategies for Kubernetes

Packet Pushers - Full Podcast Feed

Play Episode Listen Later Feb 29, 2024 51:32


Kubernetes is designed to be highly scalable and highly dynamic… a perfect habitat for cryptominers to terminal shell into and then exploit your workload's resources to the max. And that's just one example of security threats Kubernetes users need to prepare against. Nigel Douglas from Sysdig joins Michael Levan and Kristina Devochko to give you... Read more »

Packet Pushers - Fat Pipe
KU049: Security Frameworks, Tools, and Strategies for Kubernetes

Packet Pushers - Fat Pipe

Play Episode Listen Later Feb 29, 2024 51:32


Kubernetes is designed to be highly scalable and highly dynamic… a perfect habitat for cryptominers to terminal shell into and then exploit your workload's resources to the max. And that's just one example of security threats Kubernetes users need to prepare against. Nigel Douglas from Sysdig joins Michael Levan and Kristina Devochko to give you... Read more »

Kubernetes Podcast from Google
Kubernetes stale reads, with Madhav Jivrajani

Kubernetes Podcast from Google

Play Episode Listen Later Feb 9, 2024 43:37


Madhav Jivrajani is an engineer at VMware, a tech lead in SIG Contributor Experience and a GitHub Admin for the Kubernetes project. He also contributes to the storage layer of Kubernetes, focusing on reliability and scalability. In this episode we talked with Madhav about a recent post on social media about a very interesting stale reads issue in Kubernetes, and what the community is doing about it.   Do you have something cool to share? Some questions? Let us know: - web: kubernetespodcast.com - mail: kubernetespodcast@google.com - twitter: @kubernetespod Chatter of the week Mofi Rahman co-host this episode with Kaslin Twitter/X LinkedIn Kubernetes Podcast episode 211 News of the week Google announced a new partnership with Hugging Face RedHat self-managed offering of Ansible Automation Platform on Microsoft Azure The schedule for KubeCon CloudNativeCon EU 2024 is out CNCF Ambassador applications are open The CNCF Hackathon at KubeCon CloudNativeCon EU 2024 CFP is open now The annual Cloud Native Computing Foundation report for 2023 CNCF's certification expiration period will change to 24 months starting April 1st, 2024. Sysdig 2024 Cloud Native Security and Usage Report Links from the interview Madhav Jivrajani Twitter/X LinkedIn Priyanka Saggu Interview Stale reads Twitter/X thread by Madhav "Kubernetes is vulnerable to stale reads, violating critical pod safety guarantees" - GitHub Issue tracking the stale reads CAP Theorem issue CMU Wasm Research Center "A CAP tradeoff in the wild" blog by Lindsey Kuper "Reasoning about modern datacenter infrastructures using partial histories" research paper The Kubernetes Storage Layer: Peeling the Onion Minus the Tears - Madhav Jivrajani, VMware KEP-3157: allow informers for getting a stream of data instead of chunking. KEP 2340: Consistent Reads from Cache Journey Through Time: Understanding Etcd Revisions and Resource Versions in Kubernetes - Priyanka Saggu, KubeCon NA 2023 Kubernetes API Resource Versions documentation

The CyberWire
Hacktivism in two hybrid wars (with an excursus on gastropods).

The CyberWire

Play Episode Listen Later Nov 1, 2023 28:25


The Hamas-Israel war continues to be marked by hacktivism. Arid Viper's exploitation of Arabic speaker's Android devices. Iran shows improved cyberespionage capabilities. A URL shortener in the C2C market. Taking down the Mozi botnet. Ransomware in healthcare. Two are Russians arrested on treason charges, accused of hacking for Ukraine. In our sponsored Industry Voices segment, Anna Belak from Sysdig shares a new threat framework for the cloud. Rick Howard previews his new online course on cyber security first principles. And no, Russia hasn't really replaced its currency with Arctic Ocean gastropods. For links to all of today's stories check out our CyberWire daily news briefing: https://thecyberwire.com/newsletters/daily-briefing/12/209 Selected reading. ‘Hacktivists' join the front lines in Israel-Hamas war (C4ISRNet)  The global cyber divide between Gaza and Israel - IT-Online (IT-Online) Arid Viper disguising mobile spyware as updates for non-malicious Android applications (Cisco Talos Blog) In Cyberattacks, Iran Shows Signs of Improved Hacking Capabilities (New York Times) FBI ‘keeping a close eye' on Iranian hackers as Israel-Hamas war intensifies (Record) Why Iran Is Gambling on Hamas (Foreign Affairs) To Aid and Abet: Prolific Puma Helps Cybercriminals Evade Detection (Infoblox Blog) Who killed Mozi? Finally putting the IoT zombie botnet in its grave (ESET) The State of Ransomware in Healthcare 2023 (Sophos) Russian security service detains two hackers allegedly working for Ukraine (Record)  Pro-Ukraine group says it breached Russian card payment system (Record)  Learn more about your ad choices. Visit megaphone.fm/adchoices

The CyberWire
AMBERSQUID hides in the depths. [Research Saturday]

The CyberWire

Play Episode Listen Later Oct 21, 2023 17:37


Sysdig's Alessandro Brucato and Michael Clark join Dave to discuss their work on "AWS's Hidden Threat: AMBERSQUID Cloud-Native Cryptojacking Operation." Attackers are targeting what are typically considered secure AWS services, like AWS Fargate and Amazon SageMaker. This means that defenders generally aren't as concerned with their security from end-to-end. The research states "The AMBERSQUID operation was able to exploit cloud services without triggering the AWS requirement for approval of more resources, as would be the case if they only spammed EC2 instances." This poses additional challenges targeting multiple services since it requires finding and killing all miners in each exploited service. The research can be found here: AWS's Hidden Threat: AMBERSQUID Cloud-Native Cryptojacking Operation Learn more about your ad choices. Visit megaphone.fm/adchoices