The Virtual CISO Moment

The Virtual CISO Moment

By Greg SchafferTechnology
Download on the App Store

The Virtual CISO Moment episodes

  • Infosec Wrap Up - March 24, 2023

    GitHub rotates exposed private key, fake ChatGPT Chrome extension, ChatGPT bug leaked users' conversation histories, what type of identity are you talking to,

    SharePoint phishing scam, a common user mistake can lead to compromised Okta login credentials, update on the Dole breach, and today's list - six ways to secure an organization on a smaller budget.

    https://www.bleepingcomputer.com/news/security/githubcom-rotates-its-exposed-private-ssh-key/

    https://thehackernews.com/2023/03/fake-chatgpt-chrome-browser-extension.html

    https://www.bbc.com/news/technology-65047304

    https://www.darkreading.com/vulnerabilities-threats/are-you-talking-to-a-carbon-silicon-or-artificial-identity-

    https://www.infosecurity-magazine.com/news/sharepoint-phishing-scam-targets/

    https://www.helpnetsecurity.com/2023/03/23/discover-valid-okta-credentials/

    https://securityaffairs.com/143902/data-breach/dole-food-company-data-breach.html

    https://securityintelligence.com/articles/six-ways-to-secure-organization-on-smaller-budget/

    23 min
  • Throwback Thursday - A Conversation with Marci McCarthy

    From October 26, 2022 - In October 2022's special end of month Wednesday episode we talk with Marci McCarthy, CEO and President at T.E.N. CEO and Chairman at ISE® Talent. She founded T.E.N.’s flagship program, the Information Security Executive® of the Year (ISE®) Program Series, which is lauded by the IT industry as the premier recognition and networking program for security professionals in the U.S. and Canada. She is a 2012 recipient of a 4th Congressional District of Georgia Citation for fostering greater visibility and professionalism for the IT security industry, naming March 13th “Marci McCarthy Day.” She was listed as one of IFSEC Global’s Security and Fire Influencers for 2018 as #3 of 20 total leaders in their Cybersecurity category; she was also the highest-ranking woman on the list. She is also the DeKalb GOP Chairman (Georgia). She joins us to discuss information security and election integrity.

    26 min
  • S5E15 - A Conversation with Michael Lines

    Michael Lines is CISO for Open Technology Solutions, an expert in developing and leading information security and risk programs for organizations ranging from global enterprises to SaaS startup, and is authoring a book titled Heuristic Risk Management, dealing with why most risk management efforts are ineffective and what to do about it.

    30 min
  • Cyber Quick Strike - March 20, 2023

    NBA breach, Hinatabot botnet DDoS threat, Fortinet vuln exploited, Samsung zero days, ChatGPT cybersecurity potential, are cybersecurity jobs recession proof, and today's list - mistakes working from home.

    https://securityaffairs.com/143693/data-breach/nba-data-breach.html

    https://www.bleepingcomputer.com/news/security/new-hinatabot-botnet-could-launch-massive-33-tbps-ddos-attacks/

    https://thehackernews.com/2023/03/chinese-hackers-exploit-fortinet-zero.html

    https://www.scmagazine.com/news/device-security/18-zero-day-samsung-android-wearables-telematics

    https://www.helpnetsecurity.com/2023/03/17/chatgpt-cybersecurity-potential/

    https://www.techtarget.com/searchsecurity/tip/Is-cybersecurity-recession-proof

    https://erikchristianjohnson.com/working-from-home-mistakes-you-dont-want-to-make/

    19 min
  • Infosec Wrap Up - March 17, 2023

    Ransomware gangs breached the networks of at least 860 critical infrastructure organizations last year, multiple threat actors exploited a critical three-year-old security flaw in Progress Telerik to break into an unnamed federal entity in the U.S., two us citizens charged for hacking into DEA portal in 2022, Chinese influence operations are growing more aggressive, Lockbit broke into Maximum Industries (which makes parts for SpaceX), Chinese and Russian hackers using SILKLOADER malware to evade detection, UK bans TikTok from government mobile phones, plus The LIST - Sophos best practices for securing your firewall.

    https://www.bleepingcomputer.com/news/security/fbi-ransomware-hit-860-critical-infrastructure-orgs-in-2022/

    https://thehackernews.com/2023/03/multiple-hacker-groups-exploit-3-year.html

    https://www.hackread.com/us-citizens-charged-hacking-dea/

    https://cyberscoop.com/china-worldwide-threats-cyber/

    https://www.theregister.com/2023/03/13/lockbit_spacex_ransomware/

    https://thecybersecurity.news/general-cyber-security-news/chinese-and-russian-hackers-using-silkloader-malware-to-evade-detection-25218/

    https://www.theguardian.com/technology/2023/mar/16/uk-bans-tiktok-from-government-mobile-phones

    https://news.sophos.com/en-us/2023/03/16/best-practices-for-securing-your-firewall/

    17 min
  • Throwback Thursday - A Conversation with Albert Whale

    From October 25, 2023 - Albert Whale, Founder and CEO of IT Security Solutions, Inc and the developer of ITS Safe which provides real-time continuous protection at machine speed. He has over 30 years of experience with reducing the risk for business owners, minimizing their liabilities and overall risk. He has extensive experience in the techniques that criminal hackers use and identifies the probability and impact risks to exploit their business. He is the author of #Hacked and the primary author of #Hacked2.  https://its-safe.com/ https://thehackedbook2.com/

    22 min
  • S5E14 - A Conversation with Carlota Sage

    Carlota Sage is the Founder and Community CISO for Pocket CISO, thrives in that squishy area where business and technology meet human nature, and builds the relationships that get security, technology, business processes and people working together better, and has a background that includes information architecture, enterprise infrastructure, information security, and knowledge management. Among other things we discuss the vCISO space and the importance of brake lines!

    25 min
  • Quick Strike - March 13, 2023

    Silicon Valley Bank fallout, AI risks to business, AI generated YouTube risks, how to master cyber threat intel skills, and eight websites to check if an email address was compromised.

    https://www.nbcnews.com/business/business-news/treasury-says-will-back-silicon-valley-bank-deposits-rcna74570

    https://nypost.com/2023/03/13/hsbc-will-buy-uk-subsidiary-of-collapsed-silicon-valley-bank/

    https://www.helpnetsecurity.com/2023/03/13/svb-cyber-fraud/

    https://securityaffairs.com/143394/security/company-data-chatgpt-risks.html

    https://thehackernews.com/2023/03/warning-ai-generated-youtube-video.html

    https://infosecwriteups.com/how-to-master-in-real-cyber-threat-intelligence-build-military-grade-intelligence-skills-7df418b4b508

    https://infosecwriteups.com/8-free-websites-to-check-if-your-email-address-is-compromised-7e8742e099c6

    18 min
  • Infosec Wrap Up - March 10, 2023

    https://www.tsa.gov/news/press/releases/2023/03/07/tsa-issues-new-cybersecurity-requirements-airport-and-aircraft

    https://www.bleepingcomputer.com/news/security/sonicwall-devices-infected-by-malware-that-survives-firmware-upgrades/

    https://thehackernews.com/2023/03/lastpass-hack-engineers-failure-to.html

    https://www.theregister.com/2023/03/08/acer_confirms_server_breach/

    https://krebsonsecurity.com/2023/03/sued-by-meta-freenom-halts-domain-registrations/

    https://www.bleepingcomputer.com/news/security/duckduckgo-launches-ai-powered-search-query-answering-tool/

    https://www.nist.gov/itl/applied-cybersecurity/nice/resources/veteran-resources

    https://www.hackread.com/businesses-focus-on-cybersecurity/

    https://www.helpnetsecurity.com/2023/03/08/building-perfect-cybersecurity-startup/

    26 min
  • Throwback Thursday - A Conversation with Jon Sternstein

    From October 19. 2022 - Jon Sternstein is the Founder and Principal of Stern Security, a cyber security company headquartered in Raleigh, NC. He is co-author of the Cisco Press course titled “Security Penetration Testing (The Art of Hacking) LiveLessons”, holds many security certifications including: GIAC Penetration Tester and Certified Information Systems Security Professional (CISSP), is a featured cyber security expert, and talks with us about managing risks - and a little guitar! Recorded at RETR3AT Cyber Conference Montreat College September 23, 2022.

    15 min

About The Virtual CISO Moment

From the publisher's feed

The Virtual CISO Moment dives into the stories of information security, information technology, and risk management pros; what drives them and what makes them successful while helping small and midsized business (SMB) security needs. No frills, no glamour, no transparent whiteboard text, no complex graphics, and no script - just honest discussion of SMB information security risk issues.