The Gate 15 Podcast Channel

The Gate 15 Podcast Channel

By Gate 15Business
Download on the App Store

The Gate 15 Podcast Channel episodes

  • Nerd Out EP 61. The 2/3 of the Year Awards!

    In the latest episode of Nerd Out, Dave goes through the annual (3rd or 4th - who knows) 2/3 of the year awards! The categories are:

    1. MVP. Who or what is the security MVP to date. This can be a person, or a tactic.
    2. The Cobra (Sly Stallone) Award - "You're the disease and I’m the cure". What has been a great security process or procedure that can really help "cure" organization's security problems.
    3. The Dennis Green "they are who we thought they are" Award. What is a threat or tactic that threats use that really showed their true colors.
    4. The Aldus Snow (Get Him to The Greek) Award. Don’t forget about me - what is the security threat that remains always present . Something so simple yet so deadly.
    5. Dumpster Fire Award. What incident or threat will just make things a mess.
    6. Scotty Doesn’t Know award (EuroTrip) Award. What threat is out there that orgs aren’t thinking about but should.
    7. Avengers Team Up Award. Is there a great product or paper that involved multiple groups that orgs should know about.
    8. Heath Ledger Joker Award. What threat just takes it to another level - when you think last time was bad, the next time is worse.
    36 min
  • The Gate 15 Interview EP 61 – Adam Rak on CyberUSA, building communities, Vikings, Valkyries and community service

    In this episode of The Gate 15 Interview, Andy Jabbour speaks with Adam Rak, Executive Director CyberUSA, Head of Strategic Partnerships, and San Carlos City Council Member and Former Mayor. Adam is a highly accomplished, analytical government relations executive with 25 years of experience and proven success promoting initiatives in the technology and cyber security industry. Possesses detailed expertise in developing partnerships and programs to achieve organizational objectives, and enhance industry reputation. Learn more about Adam on LinkedIn.

    In the discussion Adam and Andy cover:

    • Adam’s background.
    • CyberUSA, overview, members, and marketplace
    • Building communities
    • Selling new ideas in tech and security
    • We play 3 Questions and talk civics, being an Eagle Scout, Vikings, Valkyries and more!


    Selected links:

    • CyberUSA
    • NM Technology Council Unites with CyberUSA to Bridge Innovation and Cybersecurity
    • CyberUSA Welcomes CyberMontana as Newest Affiliate
    • Cyber Florida at USF Partners with CyberUSA, Strengthening National Cybersecurity Collaboration
    • CyberUSA Marketplace
    • CyberUSA Gate 15 Marketplace Offer: Gate 15 Resilience and Intelligence Portal (GRIP) Subscription
    • CyberUSA Gate 15 Marketplace Offer: Gate 15 Low Cost Ransomware Workshop
    30 min
  • Weekly Security Sprint EP 123. Drone analysis, Hurricane Erin, and perimeter fences

    In this week's Security Sprint, Dave and Andy are joined by Alec Davison and they covered the following topics:

    Warm Open:

    • Crypto ISAC

    • Odin.fun Exploited for $7 Million as 58.2 BTC Stolen in Security Breach

    • BtcTurk under attack again: withdrawals suspended after alleged $50 million hack & Major Turkish Crypto Exchange BtcTurk Allegedly Hacked for Nearly $50 Million

    • Treasury Sanctions Cryptocurrency Exchange and Network Enabling Sanctions Evasion and Cyber Criminals

    • More everyday in the SUN. Join the GRIP! Get the SUN!


    Main Topics:


    EPA, WaterISAC caution utilities on drone threats and cyber risks in evolving security landscape. The U.S. Environmental Protection Agency (EPA) and WaterISAC recognized that UASs (unmanned aerial systems), or drones, can pose significant threats to critical infrastructure, due to their accessibility, versatility, and potential for misuse. These threats can range from unauthorized surveillance, physical attacks, and even cyber attacks. Drones have revolutionized the critical infrastructure sector by enabling efficient and cost-effective inspections, reducing the need for manual labor and minimizing safety risks associated with hazardous environments, while providing real-time data and high-resolution imagery, allowing for more accurate monitoring and maintenance of infrastructure assets, leading to improved operational efficiency and reduced downtime.


    UK NPSA: Security Fences and Gates. Fences, along with integrated gates, play a key role in delivering security solutions both for perimeters and protecting important assets. This guidance is intended to aid those responsible for delivering security solutions including fences and gates to identify the factors that need to be considered. NPSA wish to advise that fences and gates are no longer tested to the Manual Forced Entry Standard (MFES). As a result, all fences and gates which were previously given an MFES rating have been removed from the Catalogue of Security Equipment. This document provides advice on the requirements for security fences and gates and signpost alternative security standards that should be considered. Please use the NPSA Forced Entry Standards Guidance1 to assist you. NPSA Forced Entry Standard 2024


    Hurricane Erin:

    • NHC issuing advisories for the Atlantic on Hurricane Erin

    • Key messages regarding Hurricane Erin

    • Hurricane Erin to grow, will next threaten US coast with dangerous conditions


    Quick Hits:

    • NOAA - July 2025 was planet's 3rd warmest on record

    • Dragos Industrial Ransomware Analysis: Q2 2025

    • CISA: Foundations for OT Cybersecurity: Asset Inventory Guidance for Owners and Operators

    • Canada’s Guide on Biometric Management Is a Useful Resource for All Corporate Security Directors

    • Canadian Centre for Cyber Security

    o Steps to address data spillage in the cloud (ITSAP.50.112)

    o Introduction to cloud computing (ITSAP.50.110)

    o Models of cloud computing (ITSAP.50.111)

    • Norway spy chief blames Russian hackers for hijacking dam

    • Colt Telecom attack claimed by WarLock ransomware, data up for sale

    • SNI5GECT: Sniffing and Injecting 5G Traffic Without Rogue Base Stations & Risky Bulletin: Academics pull off novel 5G attack

    • Hundreds of N-able N-central Instances Affected by Exploited Vulnerabilities

    • ReliaQuest Uncovers New Critical Vulnerability in SAP NetWeaver

    • Plex warns users to patch security vulnerability immediately

    • ClickFix phishing links increased nearly 400% in 12 months, report says


    22 min
  • Weekly Security Sprint EP 122. FBI Crime Report, Cyber Threats and be ready for the weather

    In this week's Security Sprint, Dave and Andy covered the following topics:

    Main Topics:


    Physical Security:

    • FBI Releases 2024 Reported Crimes in the Nation Statistics

    o Hate crimes hit second largest record in 2024: FBI

    o Crime down in every category in 2024, FBI report says

    o Jews targeted in 69% of religion hate crimes in 2024, 71% since October 2023, per FBI data

    o FBI Report: Anti-Jewish Hate Crimes Across U.S. Nearly 10x Higher Than Any Other Group

    o NYC Sees Drop in Antisemitic Hate Crimes, Yet Jews Still Targeted Most, Police Say


    • CDC shooter blamed COVID vaccine for depression; union demands statement against misinformation

    o CDC Shooter Believed Covid Vaccine Made Him Suicidal, His Father Tells Police

    o Suspect identified in Atlanta shooting outside CDC: What to know


    • Shooter kills three in a Target parking lot in Austin before being captured, police say

    o Child among 3 killed in north Austin shooting, suspect detained

    o 'I was running for my life' | 3 dead in shooting at North Austin Target


    The Cost of a Call: From Voice Phishing to Data Extortion - Update (August 5) & Google says hackers stole its customers’ data by breaching its Salesforce database


    Hackers Hijacked Google’s Gemini AI With a Poisoned Calendar Invite to Take Over a Smart Home; For likely the first time ever, security researchers have shown how AI can be hacked to create real-world havoc, allowing them to turn off lights, open smart shutters, and more. In a new apartment in Tel Aviv, the internet-connected lights go out. The smart shutters covering its four living room and kitchen windows start to roll up simultaneously. And a connected boiler is remotely turned on, ready to start warming up the stylish flat. The apartment’s residents didn’t trigger any of these actions. They didn’t put their smart devices on a schedule. They are, in fact, under attack. Each unexpected action is orchestrated by three security researchers demonstrating a sophisticated hijack of Gemini, Google’s flagship artificial intelligence bot.


    Quick Hits:

    • NOAA - Prediction remains on track for above-normal Atlantic hurricane season

    • New state, local cyber grant rules prohibit spending on MS-ISAC

    • Joint Counterterrorism Assessment Team (JCAT): Hybrid and Electric Vehicle Emergency Planning and Postattack Response Considerations

    • Canadian Centre for Cyber Security - Potential SSL VPN Zero-Day vulnerability impacting Gen 7 SonicWall Firewalls

    • SonicWall Hunts for Zero-Day Amid Surge in Firewall Exploitation

    • Microsoft Releases Guidance on High-Severity Vulnerability (CVE-2025-53786) in Hybrid Exchange Deployments

    • CISA Releases Malware Analysis Report Associated with Microsoft SharePoint Vulnerabilities

    • CISA Issues ED 25-02: Mitigate Microsoft Exchange Vulnerability

    • Leak Reveals the Workaday Lives of North Korean IT Scammers

    • US companies spending record amounts to protect executives as threats rise

    • Mysterious Crime Spree Targeted National Guard Equipment Stashes

    • American Nazis: The Aryan Freedom Network is riding high in Trump era

    • Florida Man Sentenced to 20 Years for Conspiring to Destroy Baltimore Region Power Grid & Neo-Nazi leader sentenced to 20 years for plotting Baltimore power grid attack

    • Leader of Transnational Terrorist Group Pleads Guilty to Soliciting Hate Crimes, Soliciting the Murder of Federal Officials, and Conspiring to Provide Material Support to Terrorists

    21 min
  • Weekly Security Sprint EP 121. Hostile events and grievances, Cyber reports, and government funding

    In this week's Security Sprint, Dave and Andy covered the following topics:


    Warm Open:

    • Decrypted: FunkSec Ransomware; Avast releases free decryptor for AI-assisted FunkSec ransomware & Skip directly to the decryptor download.


    Main Topics:


    Hostile Events:

    • NYC shooting at heavily secured office building raises questions about what more can be done

    • FBI Arrests Dayton Man for Making Social Media Post Threatening to Kill Tens of Thousands & Man accused of threatening to kill 30K Black people in Cincinnati days after megaviral attack video

    • Tennessee man threatened to kill public officials, kept explosive devices in his home, authorities say


    Cyber Threat Reports:

    • CrowdStrike 2025 Threat Hunting Report: AI Becomes a Weapon and a Target

    • Censys: 2025 State of the Internet: Malware Investigations

    • Forescout - Midyear Threat Report: Numbers Grow in Nearly All the Wrong Places

    • Cside: Client-Side Attack Report Q2 2025


    DHS Launches Over $100 Million in Funding to Strengthen Communities’ Cyber Defenses


    Quick Hits:

    • FBI PSA - Unsolicited Packages Containing QR Codes Used to Initiate Fraud Schemes

    • Leading phone repair and insurance firm collapses after paying crippling ransomware demand — Cutting 100+ employees to just eight wasn’t enough

    • Canadian Centre for Cyber Security - Security considerations for critical infrastructure (ITSAP.10.100)

    • Iran hiring criminal networks in Europe to attack Jews, US religious freedom report finds

    • UNC2891 Bank Heist: Physical ATM Backdoor & Linux Forensic Evasion Evasion

    • Swedish crypto exchange Trijo hacked for 7.8 MSEK



    22 min
  • Weekly Security Sprint EP 120. Active Shooters, Bystanders, and exploiting Vulnerabilities

    On this week's Security Sprint, Dave is solo and talked about the following topics.


    Warm Opening.

    • Check out the blogs on the Gate 15 website including the recent one on network segmentation (www.gate15.global). https://gate15.global/digital-firebreaks/


    Main Topics.

    • NYC active shooter incident. https://www.nbcnews.com/news/us-news/nyc-shooting-suspect-shane-devon-temura-what-know-rcna221638


    • Walmart incident and bystanders. https://www.nbcnews.com/news/us-news/walmart-stabbings-michigan-traverse-city-suspect-terrorism-what-know-rcna221445


    • CISA Active Shooter resources: https://www.cisa.gov/topics/physical-security/active-shooter-preparedness


    • Chinese ‘Fire Ant’ spies start to bite unpatched VMware instances. https://www.csoonline.com/article/4029545/chinese-fire-ant-spies-start-to-bite-unpatched-vmware-instances.html


    • Sygnia Uncovers Active Chinese-Nexus Threat Actor Targeting Critical Infrastructure. https://www.sygnia.co/press-release/sygnia-uncovers-chinese-threat-targeting-critical-infrastructure/
    16 min
  • Nerd Out EP 60. Cyber fundamentals and nerding out with Hunter

    In the latest Nerd Out, Alec and Dave welcome in Hunter Headapohl to talk about the cyber basics, and why so many threats can be prevented by following appropriate cyber hygiene. Alec and Hunter share their best practices and some of their tools and resources that can be leveraged to mitigate risk.

    Some of the references from the pod include:

    • Top Cyber Actions for Securing Water Systems - https://www.cisa.gov/resources-tools/resources/top-cyber-actions-securing-water-systems
    • Defending OT Operations Against Ongoing Pro-Russia Hacktivist Activity - https://www.cisa.gov/resources-tools/resources/defending-ot-operations-against-ongoing-pro-russia-hacktivist-activity
    • IRGC-Affiliated Cyber Actors Exploit PLCs in Multiple Sectors, Including US Water and Wastewater Systems Facilities - https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-335a
    • China Strategically Infiltrates U.S. Critical Infrastructure as Cyberattacks Escalate - https://thesoufancenter.org/intelbrief-2025-january-10/
    • Secure by Design - https://www.cisa.gov/securebydesign
    • CISA Training - https://www.cisa.gov/resources-tools/training
    45 min
  • Weekly Security Sprint EP 119. Cyber fundamentals - third party management, passwords, and patching - plus P2D2!

    In this week's Security Sprint, Dave and Andy covered the following topics:


    Warm Open:

    • 26th Annual TribalNet Conference & Tradeshow

    • The Gate 15 Interview EP 60 – Sasha Larkin: “I like the chaos, chaos makes sense to me.”

    • The SUN will not be published the week of 28 Jul – 01 Aug. The SUN will resume the following week.

    • P2D2!


    Main Topics:


    Microsoft, China & Vendor Risk Management:

    • A Little-Known Microsoft Program Could Expose the Defense Department to Chinese Hackers

    • US senator seeks details from Defense Department on Microsoft's Chinese engineers

    • Microsoft says it will no longer use engineers in China for Department of Defense work

    • Chairmen Gimenez, Moolenaar, Self Probe Tech Companies Over Risks To Undersea Telecom Infrastructure


    Passwords. Weak password allowed hackers to sink a 158-year-old company


    Patching!

    • Microsoft SharePoint vulnerability CVE-2025-53770: Microsoft: Customer guidance for SharePoint vulnerability CVE-2025-53770 & UK NCSC: Active exploitation of vulnerability affecting Microsoft Office SharePoint Server products in the UK

    • Canadian Centre for Cyber Security: CrushFTP security advisory (AV25-432)

    • CISA Adds One Known Exploited Vulnerability to Catalog - CVE-2025-25257 Fortinet FortiWeb SQL Injection Vulnerability

    • CitrixBleed 2 situation update — everybody already got owned

    • Canadian Centre for Cyber Security - Vulnerabilities impacting Citrix NetScaler ADC and NetScaler Gateway - CVE-2025-5349, CVE-2025-5777 and CVE-2025-6543 – Update 2


    Managing Politics and Bias


    Quick Hits:

    • National Guard hacked by Chinese 'Salt Typhoon' campaign for nearly a year, DHS memo says

    • Charter Calls Increased Critical Infrastructure Attacks on Spectrum Network in Missouri Acts of Domestic Terrorism

    • UK NPSA - Security-Minded Communications - Guidance for Remote and Rural Locations

    • Canadian Centre for Cyber Security (CCCS) & Canadian Anti-Fraud Centre (CAFC) Joint Advisory: Cyber officials warns of malicious campaign to impersonate high-profile public figures

    • Examining How International Hacktivist Groups Pursue Attention, Select Targets, and Interact in an Evolving Online Landscape

    • China’s cyber sector amplifies Beijing’s hacking of U.S. targets

    • Submarine Cables Face Increasing Threats Amid Geopolitical Tensions and Limited Repair Capacity

    • Of course, Grok’s AI companions want to have sex and burn down schools

    • Investor Alert: Look Out For Possible Investment Scams Related to the Texas Floods

    • The Amnban Files: Inside Iran's Cyber-Espionage Factory Targeting Global Airlines

    • Indian crypto exchange CoinDCX hacked, $44M drained



    24 min
  • The Gate 15 Interview EP 60 – Sasha Larkin: “I like the chaos, chaos makes sense to me.”

    In this episode of The Gate 15 Interview, Andy Jabbour speaks with Sasha Larkin, Director of Intelligence and C4 Operations at FIFA World Cup 2026. Sasha retired as an Assistant Sheriff with the Las Vegas Metropolitan Police Department, where she served for over twenty-five years. Sasha oversaw two Divisions: Homeland Security and Investigative Services. She was also the Intelligence Commander for Major County Sheriff’s Association and represented the LVMPD in national conferences on issues related to crime, terrorism, and prevention efforts. Sasha also sat on the Office of Director National Intelligence Board and the Joint Counterterrorism Assessment Team in Washington DC on behalf of the Sheriff to ensure proactive messaging for the LVMPD in the prevention and recognition of domestic and international terrorism. Sasha has been honored by numerous community organizations for her work in terrorism, law enforcement and community building efforts. She’s also a very proud wife and mother, with a little boy and twin girls. Learn more about Sasha on LinkedIn.In the discussion Sasha and Andy cover:

    • Sasha’s background and being a member of the Super Friends.
    • Mass events and gatherings and Sasha’s takes on drones, crowds and protests, hometown security, learning from others, cybersecurity and more.
    • The Route 91 Harvest Music Festival, Sasha’s powerful personal experience and lessons learned.
    • The importance of partnerships, training, and managing the fog of war.
    • Personal wellness, health and resilience and the importance of sleep, balance and boundaries.
    • Giving back, supporting women in law enforcement and the 30 x 30 initiative.
    • We play 3 Questions as we learn some unexpected likes and Sasha’s sports and fitness journey, from ballet to kicking ass to yoga and running.
    • Lots more!


    Selected links:

    • ‘Mission first, people always': Sasha Larkin’s blueprint for law enforcement leadership and second career success
    • Shattering glass ceilings: Sasha Larkin’s legacy in policing
    • Book Sasha to speak at your next event!
    • 30X30 Advancing and Supporting Women in Policing
    53 min
  • Weekly Security Sprint EP 118. Ripping through the headlines and some P2D2.

    In the latest Weekly Security Sprint, Dave and Andy covered the following topics:

    Warm Open:

    • Join the GRIP! The GRIP is one year old and to celebrate, we’re running an anniversary sale!! Join the GRIP in July and use promo code HOTJULY2025 to receive a 20% discount!

    • We’re excited to release this brand-new collaborative report! (TLP:CLEAR) North Korea IT Worker Threat Report: Threat Overview and Mitigation. This report is a collaboration that incorporates analysis from several leading Information Sharing and Analysis Centers (ISACs), including Crypto ISAC, Oil and Natural Energy ISAC (ONE-ISAC), Real Estate ISAC, Tribal ISAC, WaterISAC, the Faith-Based Information Sharing and Analysis Organization (ISAO), and Gate 15.

    • New! Lock It Down: Why MFA Isn’t Optional Anymore

    • FB-ISAO Current Threat Level

    • Faith-Based (U.S.): TLP:CLEAR | FB-ISAO Newsletter

    • DHS intelligence office halts staff cuts after stakeholder backlash


    Main Topics:

    • Unreleased Beyoncé music stolen from car at Atlanta's Krog Street Market

    • Elmo has been hacked, claims Trump is in Epstein files, calls for Jews to be exterminated

    • Hacktivist Attacks on Critical Infrastructure Grow as New Groups Emerge

    • NOAA - June 2025 was Earth’s 3rd warmest on record

    • A deadly 1987 flood foreshadowed the Texas disaster. Survivors ask, ‘why didn’t we learn?’

    • Camp Mystic waited over an hour to evacuate after receiving ‘life threatening’ flood alert

    • CSU: Forecast for 2025 Hurricane Activity, 09 Aug update. PDF

    • UK arson attack trial reveals how Russia-linked operatives recruited ‘gig’ workers for terrorism

    o British criminals convicted over Wagner Group-linked arson attack on London warehouse

    o Intelligence officials worry a sabotage campaign blamed on Russia is growing more dangerous


    Quick Hits:

    • A Marco Rubio impostor is using AI voice to call high-level officials

    • Recorded Future: US Violent Extremists Likely Shifting Focus to Targeted Physical Threats in 2025

    • Soufan Center: Assessment of the Global Terrorism Threat Landscape in Mid-2025

    • Public exploits released for Citrix Bleed 2 NetScaler flaw, patch now

    • Pay2Key’s Resurgence: Iranian Cyber Warfare Targets the West

    o To view this content in one document, please download the full threat report here.

    o Iranian ransomware crew reemerges, promises big bucks for attacks on US or Israel

    • CISA warns hackers are actively exploiting critical ‘Citrix Bleed 2’ security flaw

    • 'Anti-Government Militia' Says It’s Targeting Oklahoma Weather Radars

    • Suspect In News 9 Radar Vandalism Arrested By Oklahoma City Police

    • (TLP:CLEAR) WaterISAC: Anti-Government Extremist Group Threatens to Destroy Critical Weather Radars, NOAA Warns (15 May 2025)

    • Far-right extremist group threatens to take weather radars offline

    • US neo-fascist group claims it is part of Texas floods relief efforts & Extremist Groups Uphold Long Tradition of Exploiting National Tragedies for Publicity

    • Swedish PM’s private address revealed by Strava data shared by bodyguards

    • UK NCSC: Getting your organisation ready for Windows 11 upgrade before Autumn 2025

    • Crypto Wallets Continue to be Drained in Elaborate Social Media Scam

    • U.S. Secret Service One-Year Update Following the July 13, 2024, Attempted Assassination of President Donald Trump

    • US GAO - Cybersecurity: Implementation of the 2015 Information Sharing Act

    • NATO Ally Warns of Iranian Assassination Threat


    24 min

About The Gate 15 Podcast Channel

From the publisher's feed

The Gate 15 Company is a leader in helping organizations by providing threat-informed, risk-based approaches to analysis, preparedness and operations.