Épisodes

  • 'I Can't Wait for Passwords to Die!'
    Oct 11 2021

    This week's episode is (nearly) all about those pesky passwords that won't go away and how one industry giant told Richard how he can't wait for them to 'Die'!

    We explore the concept of the 'password-less' future, how Coinbase got hacked by some rascals bypassing MFA and why you should listen to Michael McIntyre on the subject too. See below!

    Show Links:
    Michael McIntyre - You should probably change your password!


    Afficher plus Afficher moins
    33 min
  • 🎵 REvil's back... back again! 🎵
    Sep 10 2021

    Back by zero demand, as if they never went away, REvil's back and up to their old tricks. Was it as simple as a nice summer break or something more sinister?

    Also - is it time we rewrite the rules of business continuity and incidence recovery processes? Should be be placing more focus on the ability to deflect, rather the ability to recover, from a cyber incident?

    Listen to find out!

    Afficher plus Afficher moins
    35 min
  • WhatsUp ChaosDB!?
    Sep 3 2021

    In this week's roundup of our industry's SNAFU's, we delve into the 'Worst Vulnerability Ever Found' in a cloud provider, the largest fine ever dealt out by the Irish Data Protection Commission, and LockBit strikes again!

    Notes:

    • The WhatsApp story.
    • The ChaosDB story.
    • The Lockbit story.
    Afficher plus Afficher moins
    44 min
  • SEASON 2 baby! Ransomware RANts, lazy CISOs, soggy budgets etc....
    Aug 19 2021

    SEASON 2! We're back and we're bold! And bald....

    Vlad and Richard pick from where they left off at the end of Season 1.

    But now with added edginess!

    Unlike the rest of the world, the bad guys don't seem to have taken a summer break; the most noteworthy event being the Accenture hack by a LockBit affiliate last week.

    Also, Vlad relives his time at Black Hat Las Vegas... well, he didn't actually get to Las Vegas, but his interviewer, Dany Appelgate, Co-Founder of rThreat was there!!

    We also attempt to wring out the soggy middle in an effort to help meet the latest craze of net-zero IT budgets... That'll all make sense when you listen!

    Afficher plus Afficher moins
    34 min
  • REcurring REvil!
    Jul 19 2021

    In this final episode of the season, we cover two of the most notable cyber incidents in recent weeks; PrintNightmare and the Kaseya breach. As a result, we lament the problem of the 'soggy middle' taking the 'tickbox' approach to cybersecurity.

    Also Vlad and Richard go through several 'triggered' moments trying once again to get security leaders and marketeers to drop the cheese, engage the business, and get the cybersecurity agenda on the board table before you become the next headline! We even go as far as telling you how to do it!

    Afficher plus Afficher moins
    40 min
  • VENDOR SPOTLIGHT: KnowBe4
    Jul 1 2021

    VENDOR SPOTLIGHT:KnowBe4

    In another of our sub-series where we focus on a particular vendor in our portfolio, we welcome Javvad Malik, a Security Awareness Advocate from KnowBe4.

    It's a given that the majority of successful cybersecurity breaches start with a social engineering attack; the majority of them being a Phishing email. So, how do we help people avoid being caught out? Training, testing, training, testing, training, repeat....

    But: not all users are alike and not all user-awareness training schemes are alike and so a carefully designed and deployed program is the only way to really make a difference.

    Javvad does a great job of trying to use more analogies than Richard in the pursuit of bringing the KnowBe4 capabilities to life, but it's safe to say: this is the podcast for you if you ever needed help to justify a program of awareness training in your organisation!

    Afficher plus Afficher moins
    42 min
  • A.I. - Actual Ignorance?
    Jun 25 2021

    This week we talk about the concept of 'SOC Burnout' and the need for companies to recognise the condition and support the analysts.

    Tenuously related to SOC burnout, we examine (destroy!), the 'Artificial Intelligence' myth that Cybersecurity vendors peddle on a daily basis.

    It's machine-learning, people!

    Open invitation: Any Cybersecurity vendor that would like to come on the show and explain how their product is 'intelligent' - we would love to have you on!

    Notes:

    • The article concerning 'SOC burnout': https://www.helpnetsecurity.com/2021/06/23/soc-burnout-is-real/


    Afficher plus Afficher moins
    36 min
  • What the Fastly!?
    Jun 11 2021

    This week's episode is dominated by the snafu at Fastly that brought the Internet to its knees.

    And following the news this week that the FBI was able to 'recover' a significant portion of the ransom paid to the DarkSide gang after the incident at Colonial Pipeline, we ask the rather fundamental question, 'is anything safe anymore?!'

    Vlad dons his foil hat and ends up down several rabbit holes whilst contemplating the answer!

    Afficher plus Afficher moins
    36 min