Episodes
-
InfosecICU is closing its doors, and Steve and Gerry hop in the studio for a final farewell and thank you to the community that made this show such a pleasure and a success. Thank you for all the support through the 2 years we were publishing. It was a pleasure and an honor to serve […]
The post Farewell InfosecICU – The Send Off Episode appeared first on MUSC Podcasts.
-
Gerry and Aaron discuss the exponential growth of cyber breaches in 2019, the explosion of Emotet in September, and out for comments CMS Exceptions to providing security services for free to competitors. As always they end with One Cool Thing. Show Notes Resources: Breaches up to 7.9 Billion in 2019 https://cyware.com/news/data-breaches-become-worse-as-79-billion-records-get-exposed-in-the-first-nine-months-of-2019-42139fbc Emotet surges 730% https://cyware.com/news/emotet-activity-increases-by-730-after-being-in-dormant-state-for-nearly-four-months-84a384c1 […]
The post Cyber Breaches at Record Highs, Emotet Surges 730%, CMS Exceptions appeared first on MUSC Podcasts.
-
Missing episodes?
-
Gerry is riding solo this week. Laser attacks on personal digital assistants, a review on research showing a correlation between ransomware and increased heart attacks, Google’s Project Nightingale. As always they end with One Cool Thing. Show Notes Resources: Light Commands https://lightcommands.com/ Ransomware Leads to Heart Attacks https://krebsonsecurity.com/2019/11/study-ransomware-data-breaches-at-hospitals-tied-to-uptick-in-fatal-heart-attacks/ Google Project Nightingale https://www.wsj.com/articles/behind-googles-project-nightingale-a-health-data-gold-mine-of-50-million-patients-11573571867 EyeBaller AI https://github.com/BishopFox/eyeballer […]
The post LightCommand, Ransomware Leads to Higher Heart Attack Rates, Project Nightingale appeared first on MUSC Podcasts.
-
Steve is back in studio for a special 100th Infosec ICU episode. The guys discuss an industry state of phishing report, the cover the problem with mHealth, and they revisit their bold cyber predictions for 2019 they made in 2018. As always they end with One Cool Thing. Show Notes Resources: Cofense Phishing Report https://cofense.com/phishing-report-2019/ […]
The post Industry Phishing Report, Scoring Hosts’ 2019 Predictions, and the Problem w/ mHealth appeared first on MUSC Podcasts.
-
Its the PRIVACY Episode! Gerry and Matt review privacy implications of SRLabs recently released research on using digital assistants as eavesdropping devices. They interview Privacy Officer Kellie Mendoza for her perspective and reflect afterward on the interview. As always they end with One Cool Thing. Show Notes Resources: Digital Assistant Spies https://www.scmagazine.com/home/security-news/iot/malicious-voice-apps-can-turn-alexa-and-google-home-devices-into-spies-say-researchers/ Kellie Mendoza Expert […]
The post The Privacy Episode! Digital Assistants spies and Interview with Privacy Expert Kellie Mendoza appeared first on MUSC Podcasts.
-
Gerry and Matt dig into the proposed federal regulation ‘Mind Your Own Business Act’ and how it could shape privacy. They examine how to build a cybersecurity culture at your organization, and reflect on the recently released Ponemon global report on SMB cybersecurity. As always they end with One Cool Thing. Show Notes Resources: Mind […]
The post Federal Privacy Legislation, Cybersecurity Culture Best Practices, SMB Still Struggling appeared first on MUSC Podcasts.
-
Gerry and Brandon discus various methods for malware analysis, the infosec job market, and multifactor authentication. As always they end with One Cool Thing. Show Notes Resources: Malware Analysis https://app.any.run/ Infosec Job Market https://www.cyberseek.org/heatmap.html Black Hills Information Security – 5 Year Path: Success in Infosec FBI Warning Around MFA https://www.zdnet.com/article/fbi-warns-about-attacks-that-bypass-multi-factor-authentication-mfa/ One Cool Thing Malware Traffic […]
The post Malware Analysis, Infosec Job Market, and MFA appeared first on MUSC Podcasts.
-
Gerry and Brandon interview professional red teamer and penetration test expert Paul Ihme. As always they end with One Cool Thing. Show Notes Resources: Paul Ihme https://www.linkedin.com/in/ihme/ One Cool Thing Security Onion https://github.com/Security-Onion-Solutions/security-onion/wiki/IntroductionToSecurityOnion Wappalyzer https://www.wappalyzer.com/ Contact Email [email protected] Twitter: Gerry Auger (@Gerald_Auger) Brandon Stephens (@bstephens418)
The post Offensive Pentester Paul Ihme Interview and Reflections appeared first on MUSC Podcasts.
-
Gerry and Brandon discuss trends in malspam, a permanent iOS vulnerability, and a significant webkit exploit campaign. As always they end with One Cool Thing. Show Notes Resources: Malspam Trends https://www.zdnet.com/article/most-malspam-contains-a-malicious-url-these-days-not-file-attachments/ iOS Permenant Vulnerability https://www.healthcareinfosecurity.com/apple-ios-has-permanent-bootrom-vulnerability-a-13159 Webkit Zeroday for Mac and iOS https://arstechnica.com/information-technology/2019/09/webkit-zeroday-exploit-besieges-mac-and-ios-users-with-malvertising-redirects/ One Cool Thing Wu-Tang: An American Saga https://www.youtube.com/watch?v=w37TQZwnjXY Asset Discovery https://rumble.run/ Contact Email […]
The post Malspam Trends and Apple Security News appeared first on MUSC Podcasts.
-
Gerry and Brandon discuss an absurd amount of public cloud misconfigurations, IoT door locks, and things you can do to be involved with October’s National Cyber Security Awareness. As always they end with One Cool Thing. Show Notes Resources: Public Cloud Misconfigurations https://www.zdnet.com/article/99-percent-of-all-misconfiguration-in-the-public-cloud-go-unreported/ Digital and IoT Physical Security https://threatpost.com/hack-of-high-end-hotel-smart-locks-shows-iot-security-fail/147178/ National Cyber Security Awareness Month https://niccs.us-cert.gov/national-cybersecurity-awareness-month-2019 One […]
The post Public Cloud Breaches, IoT Physical Security, National Cyber Security Awareness Month appeared first on MUSC Podcasts.
-
Gerry and Brandon discuss risk when working through merger and acquisitions and Gerry interviews Cyber Risk Underwriter’s Jeffrey Smith about cyber insurance. As always they end with One Cool Thing. Show Notes Resources: Mergers and Acquisitions Put Your IP at Risk https://www.scmagazine.com/home/opinion/executive-insight/ma-gone-bad-the-brutal-truths-about-insider-threat/ Interview with Cyber Risk Underwriter’s Jeffrey Smith Interview Commentary and Cyber Insurance One Cool […]
The post Insider Threats with M & A and Jeffrey Smith Interview on Cyber Insurance appeared first on MUSC Podcasts.
-
Gerry and Brandon discuss Health Industry Cybersecurity Matrix – Information Sharing Organizations (HIC-MISO), ask how insider threats can affect your organization, and mention a NIST initiative for securing PACS systems. As always they end with One Cool Thing. Show Notes Resources: Health Industry Cybersecurity – Matrix of Information Sharing Organizations (HIC-MISO) https://healthsectorcouncil.org/hic-miso/ Insider Threats https://www.ekransystem.com/en/blog/insider-threat-statistics-facts-and-figures […]
The post HIC-MISO, Insider Threats, and NIST Securing PACS appeared first on MUSC Podcasts.
-
Gerry and Aaron discuss the current state of a HIPAA lawsuit featuring Google and UChicago Medical Center as defendants. They discuss the emerging security concerns surrounding Telehealth and what NIST is doing about it. They wrap up the main show discussing yet another major player in the market apologizing for letting humans hear private recordings. […]
The post Telehealth Cybersecurity Considerations, Google and UChicago Lawsuit Updates, and Siri says Sorry appeared first on MUSC Podcasts.
-
Gerry and Brandon discuss a breach at Massachusetts General Hospital, patient privacy reform around addiction treatment, and how to solve the cyber security problem. As always they end with One Cool Thing. Show Notes Resources: Breach at Massachusetts General Hospital https://www.idigitalhealth.com/news/data-breach-of-10k-at-mgh-puts-study-participants-genetic-info-at-risk Patient Privacy Reform for Addiction Treatment https://healthitsecurity.com/news/hhs-proposes-reform-of-patient-privacy-rules-for-addiction-treatment Solving the Cyber Security Problem https://www.hackread.com/solving-cyber-security-problem-mission-impossible/ One […]
The post Oops we lost your DNA, Patient Privacy Reform, and Solving the Cyber Security Problem appeared first on MUSC Podcasts.
-
Gerry and Brandon discuss the coordinated attack on Texas municipalities, CHISL – a healthcare leadership security certification, and a third-party lawsuit from Delta for inadequate security. As always they end with One Cool Thing. Show Notes Resources: Texas Ransomware https://threatpost.com/coordinated-ransomware-attack-hits-23-texas-government-agencies/147457/ CHISL https://www.healthcareinfosecurity.com/interviews/new-credential-for-healthcare-security-leaders-i-4415 Delta Lawsuit https://www.scmagazine.com/home/security-news/data-breach/delta-sues-ai-vendor-over-2017-breach-exposing-info-on-825k/ One Cool Thing Unit 42 Playbook Viewer https://pan-unit42.github.io/playbook_viewer/?pb=windshift T-Mobile “Scam […]
The post Coordinated Ransomware Attack in The Lone Star State, Security Certs for Healthcare Leaders, and a Delta Lawsuit for “Inadequate” Security appeared first on MUSC Podcasts.
-
Gerry and Brandon discuss Gerry’s Blackhat and DEFCON experience and feature a few key talks from the conference. As always they end with One Cool Thing. Show Notes Resources: BlackHat 2019 https://www.blackhat.com/us-19/ DEFCON 27 https://www.defcon.org/html/defcon-27/dc-27-index.html Deepfakes https://i.blackhat.com/USA-19/Thursday/us-19-Price-Playing-Offense-And-Defense-With-Deepfakes.pdf Cyber Insurance https://www.blackhat.com/us-19/micro-summits.html#cyber-insurance One Cool Thing Jocko Wilink Discipline equals Freedom https://www.amazon.com/Discipline-Equals-Freedom-Field-Manual/dp/1250156947 MentiMeter https://www.mentimeter.com/ Contact Email [email protected] Twitter: […]
The post Blackhat and DEFCON, Defending Deepfakes, and Cyber Insurance In-Depth appeared first on MUSC Podcasts.
-
Gerry and Brandon discuss the recent Capital One breach and how the alleged attacker was easily captured. The cover the release of 11 0-day vulnerabilities for a highly used but little discussed OS. They finish the discussion with securing healthcare patient portals. As always they end with One Cool Thing. Show Notes Resources: Capital One […]
The post Capital One Breach, Urgent/11, and Securing Patient Portals appeared first on MUSC Podcasts.
-
Gerry and Brandon dig into a classic debate in the information security world: Encryption Backdoors. Atty General William Barr recently implored an audience of cybersecurity professionals to champion backdoors in technology implemented encryption. They discuss the utility and implementation of the state of Louisana’s ‘state of emergency’ declaration; is the National Guard a cyber fire […]
The post Encryption Backdoors, State of Emergency for Ransomware Attacks, “Educating” the Human Factor appeared first on MUSC Podcasts.
-
Gerry and Brandon discuss the impending Equifax $700M settlement and what it means in a macrocosm manner. They follow up analyzing the quantified trend of CISOs on average lasting 18-24 months per job posting. They finish by interviewing Dr. Mike Ham around BGP security. As always they end with One Cool Thing. Show Notes Resources: […]
The post Equifax Settling for $700M, CISOs 18-Month Shelf Life, and BGP Insecurity interview with Dr. Mike Ham appeared first on MUSC Podcasts.
-
Gerry and Steve discuss Zoom and Apples response and actions from the Zoom fallout of silent local webservers on endpoints. The guys discuss the Ponemon report on third party risk management in the healthcare industry. Finally they discuss the academic conference Gerry is currently attending in Charleston and feature a talk on Adversarial Attack Sampling […]
The post Zoom Vulnerability Responses, Ponemon Report on 3rd Party Vendor Risk in Healthcare, Data and Privacy Security Academic Conference appeared first on MUSC Podcasts.
- Show more