Explorez tous les épisodes du podcast Pwned: The Information Security Podcast
| Titre | Date | Durée | |
|---|---|---|---|
| Episode 200 - Reflections of Pwned...Until Next Time | 03 Apr 2024 | 00:36:43 | |
In this episode of Pwned, Justin and Jack celebrate their milestone 200th episodes the best way they can…with some good old Ransomware Rye. Join the duo offsite at Mad River Distillers tasting room in Burlington, Vermont, as they review podcast excerpts from the last few years and respond with fresh takes, all while guessing who actually said it. Check out the links below on people we reference in this episode: Glen Bressner, Co-Founder and Managing Partner, Activate VP Chris Metinko, Senior Reporter, Crunchbase News Key moments: 00:00 – Title Sequence 00:20 – Introduction 05:30 – Café Press and Hot, Stinky Soup 10:17 – Punxsutawney Programmer 15:05 – Sometimes You Should Argue the Price of Champagne 21:36 – Parsing Through Cybersecurity Product TUD 26:30 – Meat Market March 31:13 – Beyond the Badness-Ometer 34:57 – Wrap Up If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 199 - When a BlackCat Crosses Your Path... | 21 Mar 2024 | 00:24:28 | |
In this episode of Pwned, BlackCat rises from the grave for another life full of ransomware attacks; this time targeting a healthcare organization, Change Healthcare, for a whopping $22 million. Join Justin and Jack as they look through the facts and speculate that BlackCat may not be who they say they are. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 189 - Shaky Plans - Pwned Takes on the President's Blueprint for an AI Bill of Rights | 20 Dec 2023 | 00:27:35 | |
In the second part of our series on Federal AI proclamations, Justin and Jack make a point-by-point assessment of the Federal view on inalienable protections from AI misbehavior. If you’re concerned with AI’s incursions into everyday life or are interested in understanding whether our leaders have a grasp on the issues, this is an episode you can’t miss. AI is complicated. Cybersecurity is complicated. Political language is complicated. Your Pwned team is here to make things understandable. Tune in and find out. Check out the resources and references mentioned in this episode: Blueprint for an AI Bill of Rights Episode 188 - Safe, Secure, and Trustworthy. Pwned on the President's AI Executive Order Episode 182 - The Next AI Episode - With Diana Kelley! Key Takeaways: 00:00 – Title Sequence 00:22 – Introduction to the topic 01:47 – Safe and Effective Systems: What Exactly Does That Mean? 10:22 – Algorithmic Discrimination Protections: Put the Human in the Loop 14:29 – Data Privacy: Understanding the Cost of Using Services 20:05 – Notice and Explanation: Responsibility of Data Exposure 22:05 – Human Alternatives, Consideration, and Fallback: Why? Because the Algorithm Says So 24:23 – Closing Statements If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 188 - Safe, Secure, and Trustworthy. Pwned on the President's AI Executive Order | 05 Dec 2023 | 00:29:03 | |
In this episode, Justin and Jack are reviewing the recent presidential executive order on AI. While there are plenty of good ideas in the mix, the team is taking some time to examine their feasibility, their value, and their likelihood of execution in our current, fast-paced, AI environment.
Stay tuned for part two on the Blueprint for an AI Bill of Rights! Check out the resources we referenced in this episode: Episode 176 - Outcomes, Prescriptions, and Presidental Policy Key Takeaways: 00:00 – Title Sequence 00:27 – Topic Introduction 01:16 – What is the Fact Sheet? 01:44 – Software Security 04:43 - New Standards for AI Safety and Security 14:46 – Protecting American’s Privacy 18:27 - Advancing Equity and Civil Rights 21:06 – Supporting Workers: Adapting to New Innovations in the Workplace 26:43 – Recap and Positive Note If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 187 - Pwned Making the Case for Judicial Security | 22 Nov 2023 | 00:18:17 | |
Following Justin's work with members of the press on the recent Kansas City court system ransomware shutdown, he and Jack are talking about the potential impacts and repercussions of increasing cyberattacks against the judiciary. There are issues of timely judgements, sealed records, even courts paying criminals, as the Pwned team judges the situation and brings some new evidence to the discussion of causes and prevention. See Justin in the press: https://www.wibw.com/2023/10/19/cybersecurity-expert-explains-issues-facing-kansas-courts-they-remain-offline/. Key Takeaways: 00:00 – Title sequence 00:22 – Introduction 00:51 – Incident Details 01:42 – Courts shut down: back to basics 04:10 – Chain of custody in the event of a ransomware attack? 05:13 – Justin’s press presence: analogies 06:48 – Courts paying criminals? 07:18 – ETA for opening the courts 09:32 – Targets and motivation 11:23 – Are attackers getting all information, or are there barriers for information that should be protected? 14:04 – CJIS 16:15 – Digitizing paper files for security 17:20 -- Recap If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 186 - The Acquisition of Revelstoke | 01 Nov 2023 | 00:20:56 | |
In this episode of Pwned, Justin and Jack discuss the recent acquisition of automation firm Revelstoke by managed security vendor Arctic Wolf. With a lot of cash on the line, is this deal a right swipe, or do they think Arctic Wolf will be left in the dark when the lights come up? Tune in for the details. Key Takeaways: 00:00 – Title sequence 00:28 – Introduction to acquisition 02:04 – Financial details 04:53 – Analogy: A nickel for a dollar 06:53 – Convertible Note details 08:20 – Jack’s decision 10:00 – Justin’s response 11:29 – Justin’s decision 12:05 -- Recap If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 185 - An Unconventional Take on Cybersecurity Awareness | 26 Oct 2023 | 00:20:51 | |
In this episode of Pwned, Justin and Jack tackle Cybersecurity Awareness Month 2023. Coming at you with three unconventional tips to keep in the back of your mind, the duo dive into the world of security for vendors, purchasers, and members of the public.
Key takeaways 00:00 – Title Sequence 00:34 – Introduction to Cybersecurity Awareness Month 01:36 – What does security awareness mean? 02:40 – More heightened cybersecurity awareness this year overall 05:12 – More informed public = more informed questions 06:34 – The market is demanding more secure software and services 07:11 – Tip #1: Be aware that it’s okay to ask for things to be secure enough 07:49 – Analogy: Cybersecurity awareness = healthcare/consumer medicine awareness 09:19 – What was it that made the provider think this service is good for you? 10:04 – Providers will try to sell you their product, not what you need 12:32 – Tip #2: Awareness = How can we all work to make things better both at work and at home? 14:31 – Blockbuster: People shouldn’t have to be so cybersecurity-aware 15:43 –Make security seamless, so people don’t have to worry about it in their day-to-day 16:55 – Give your network the ability to filter out malicious content so it’s not on the backs of your employees 17:58 – Tip #3: Vendors be aware of the vulnerabilities caused by too much functionality 19:13 – Recap If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 184 - 4 Steps to a Security Strategy | 04 Oct 2023 | 00:32:03 | |
In this episode of Pwned, Justin and Jack are evaluating a four-step process for developing a cybersecurity strategy and end up creating one of their own. If you’re looking for some ideas or a blueprint for your own planning, it’s probably worth a listen. Stay tuned for our upcoming blog: 4 Steps to a Rock-Solid Cybersecurity Strategy for an in-depth look at what we came up with! As a recap, here are our four steps to a cybersecurity strategy:
Step 1: Ask and Understand The single most important component in every cybersecurity strategy is understanding your business thoroughly. Step 2: Apply Your Expertise With a deep understanding of your business in place, you are now ready to apply your knowledge to define the appropriate security controls and measures. Step 3: Measure Progress Now that you have your security controls in place, it's time to assess how well you're implementing them. This step involves measuring your progress and identifying any gaps. It's also an opportunity to involve key stakeholders and keep them informed. Step 4: Create and Communicate The final step involves formalizing your cybersecurity strategy and ensuring its ongoing relevance and effectiveness. It's about creating a living, breathing strategy that evolves with your organization's needs. Key elements of this episode: 0:26 – Introduction to 4 steps to build a cybersecurity strategy 2:32 – Know your organization’s tolerance for risk mitigation 5:04 – Planning roadmaps for internal success 5:33 – These four steps are a great starting point, but they won’t get you all the way home 6:02 – Crucial missing piece: Your cybersecurity strategy should start with your business strategy 7:33 – Building a cybersecurity strategy = building a house 9:07 – Meet the organization where they're at 11:49 – Educate organizations on what they need to know for their security strategy 13:09 – NuHarbor’s 4 steps to creating a cybersecurity strategy 14:00 – Step 1 – Ask and Understand 18:08 – Step 2 – Apply Your Expertise 21:24 – Step 3 – Measure Progress 24:58 – Step 4 – Create and Communicate If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 183 – Making a New Cybersecurity Job Work | 06 Sep 2023 | 00:12:47 | |
In this mailbag episode of Pwned, Justin and Jack respond to a listener question that has all the earmarks of a well-known security problem: a new leader starting in an organization with what feels like a random mix of products and problems. By talking through the different elements of the situation, the team offers proven and straightforward suggestions for making the transition more action-oriented, more measurable, and much less stressful. Check out this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 182 – The Next AI Episode – With Diana Kelley! | 23 Aug 2023 | 00:33:44 | |
This week, Justin and Jack are talking AI with one of the security industry’s most well-known experts and influencers, Diana Kelley of Protect AI. The topics, like the growth of AI, are all over the place, from the impacts of AI on security teams to secure AI development, and even a quick mention of the rights of sentient AI. Come hear what’s new in ML SecOps and high-integrity AI, and some well-informed predictions for the future. If you want to get in touch with Diana, you can find her LinkedIn here. Check out this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 181 – Breached Trust: Lazarus Making Friends | 16 Aug 2023 | 00:18:13 | |
In this breach of the week episode, Justin and Jack look into the recent attacks targeting the GitHub developer community. Developers are increasingly being targeted by North Korean state-sponsored threat actors to use and execute poison code. Tune in to get the scoop. The DarkReading article can be found here: North Korean Cyberspies Target GitHub Developers (darkreading.com) CISA’s request for comment can be found here: Request for Comment on Secure Software Self-Attestation Common Form | CISA Watch this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 180 – Thales Not Impervious to Imperva’s Charm | 02 Aug 2023 | 00:17:47 | |
Multifaceted French security and defense firm, Thales, has acquired longtime application and availability cybersecurity pioneer, Imperva, in a major acquisition from U.S. cybersecurity private equity leader, Thoma Bravo. In this RightSwipes episode of Pwned, Justin and Jack review the histories of both Imperva and Thales, adding valuable context to the market analysis. There’s plenty to talk about and factor into this week’s thumbs-up/thumbs-down conclusion. Check out the following links for resources mentioned in this episode: Watch this week’s episode: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 198 - Heard it Through the Grapevine - Beyond the Beltway, 2024 | 08 Mar 2024 | 00:16:25 | |
It’s a first, with Jack going solo, and the subject is a set of 8 recent recommendations from senior IT and security leaders at the recent e.Republic/Center for Digital Democracy Beyond the Beltway show. Panels of executives described their experience with successful security and technology communications, and Jack interprets and applies these for our Pwned cybersecurity audience. It’s a rare view into the minds and reactions of the kind of leaders that we know are fundamental to the success of any security strategy. Check out these links: e.Republic: https://www.erepublic.com/ Beyond the Beltway: https://events.govtech.com/Beyond-the-Beltway-2024.html#/agenda Center for Digital Government: https://www.govtech.com/cdg Key takeaways: 00:00 - Title Sequence 00:25 – Introduction 02:48 – Know the Plan 03:58 – Bring Objective Data 05:02 – Speak to All 06:05 – Find the Baseline 07:45 – Upskill My Team 10:11 - Everything is Relative 11:50 - Bring the Value 13:10 - Prepare for Change 14:27 – Recap If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 179 – Collaboration Celebration | 20 Jul 2023 | 00:13:10 | |
In Massachusetts, a group of communities are banding together to improve IT acquisition effectiveness. In this episode of Pwned, Justin and Jack explore the benefits of this alliance, ideas on the cybersecurity impact, and the relationship between this effort and other regional and whole-of-state strategies. It’s a feel-good episode of Pwned, and the team is bringing positive vibes. Learn more about the North Shore IT Collaborative here: North Shore IT Collaborative | Danvers, MA (danversma.gov) Watch this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 178 – SOC Talk | 13 Jul 2023 | 00:17:14 | |
In this episode Justin and Jack are taking a question from the mailbag on choosing regional or private security operations centers (SOCs). The conversation quickly turns to finding the best SOC for your needs, the most beneficial preparation before engaging with vendors, and the right of any organization to demand answers in language they can understand and apply. Watch this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 177 – The Obligatory AI Episode: Prevail or Fail? Can’t Spell Either Without AI | 06 Jul 2023 | 00:16:41 | |
From ChatGPT to predictive analytics, AI techniques are changing all industries and knocking on the door of cybersecurity. Justin and Jack are answering with an episode examining potential advancements and limitations that we’ll likely encounter over the next few years. If you’re interested in an experienced, optimistic, but grounded view on what AI can do for your security operation, this is an episode for you. Check out this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 176 – Outcomes, Prescriptions, and Presidential Policy | 28 Jun 2023 | 00:21:37 | |
The White House has released another statement on their National Cybersecurity Strategy. This time Justin and Jack are supportive of the tone and some of the content. In this episode, hear about the new approach to improving cybersecurity with an emphasis on vendor responsibility, liability, opportunities, and outcomes. Do you think the President’s directive is helpful, or do you think it lacks the specifics for these policies to succeed?
Resources mentioned in this episode: Policy: FACT SHEET: Biden-Harris Administration Announces National Cybersecurity Strategy | The White House. Dark Reading: The White House National Cybersecurity Strategy Has a Fatal Flaw (darkreading.com) by Eyal Mamo. Request for Comment on Software Security Attestation: Request for Comment on Secure Software Self-Attestation Common Form | CISA by CISA.
For more insight on federal cybersecurity policy, listen to our 2022 White House Week series: Presidential Prerogative – “Bulletproof Cybersecurity in One Week or Less” Another Presidential Push – This Time It’s National Washington Week 3 is Spelled SEC
Check out this week’s video:
If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 175 – Acquisitions Defining a Changing Landscape for Deception | 21 Jun 2023 | 00:25:04 | |
In this RightSwipes episode, the unexpected union of Proofpoint and Illusive creates an irresistible combination for Justin and Jack. They’re talking through the applicability of deception technology, market appetite, and Proofpoint’s move to deepen their bench with Illusive. The question remains whether Proofpoint was looking to strengthen identity-based defenses or if there’s a broader strategy in motion. As referenced in this episode, you can check out Ericka Chickowski’s article on DarkReading here. Watch this week’s video here: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 174 – Getting More Intelligence Out of Threat Intelligence | 13 Jun 2023 | 00:23:13 | |
In this episode, Justin and Jack are talking about threat intelligence, from its ideal content mix to the audience, and ways to improve its usefulness and availability. Threat intel is about more than feeds. It’s about hunting, sharing, and enriching our understanding of threats whenever we can. Check out our SLED Cybersecurity Priorities Report here to examine top cybersecurity priorities in SLED, what’s fueling them, and how you can implement them in your organization. Check out this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 173 – An Old Friend, Some Old Equipment, and New Challenges All Around: Part 2 | 08 Jun 2023 | 00:26:22 | |
In part two of “An Old Friend, Some Old Equipment, and New Challenges All Around,” we welcome back Zack Borst. Since his departure from NuHarbor Security, Zack has since embarked on a mission to enhance emergency management, including cyber preparedness, and now he’s talking with Justin and Jack about the state of cybersecurity systems and subsequent challenges. Join the trio for the second part of this eye-opening discussion about technology, threats, aging equipment, critical services, and the troubling mix of kinetic and cybersecurity emergencies. Watch this week’s video here: Check out EM Weekly at EM Weekly — The Readiness Lab or on your favorite podcast streaming service. You can find Zack on Linked in here: https://www.linkedin.com/in/zborst/, or by email at zack.borst@dobermanemg.com. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 173 – An Old Friend, Some Old Equipment, and New Challenges All Around: Part 1 | 02 Jun 2023 | 00:17:43 | |
Our latest episode welcomes back Zack Borst, former co-host and co-contributor to Pwned in its earlier seasons. Zack has since embarked on a mission to enhance emergency management, including cyber preparedness, and he’s talking with Justin and Jack about the state of cybersecurity systems and subsequent challenges. It’s an eye-opening discussion that blends technology, threats, aging, equipment, critical services, and the troubling mix of kinetic and cybersecurity emergencies. Gain insight into an emerging arena and a heightened urgency for cybersecurity improvements. Watch this week’s video here: You can find Zack on Linked in here: https://www.linkedin.com/in/zborst/, or by email at zack.borst@dobermanemg.com. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 172 – Applications, Security, Supply Chain, and SBOMs | 25 Apr 2023 | 00:28:50 | |
In an episode that is close to Jack’s heart and history, he and Justin explore a renewed interest in the security of applications. They discuss the new Application Security Center of Excellence (ASCOE) being built at the Commonwealth of Massachusetts, shifting far left of boom by prioritizing contract language, and the importance of championing the need for application security before implementing any program. Listen in for practical ways to make progress in an area that will only get better by working on the applications you’ll see tomorrow. Key moments: 1:51 – Introduction to application security. 8:26 – Application security surrounding AI/ChatGPT. Is open source insecure? 9:38 – Application security = restaurant? 10:39 – In a world where no one wants you to get in front of application security, how do you get in front of it? 18:15 – Strong application security requires healthy communication. 21:38 – Why is application security so important? 25:26 – Application security is not a one-and-done deal; it goes on forever. It’s a continuing cycle of Whac-A-Mole. Watch this week’s episode here: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 171 – Balancing Security to the Left and Right of Boom | 18 Apr 2023 | 00:20:21 | |
In this episode, Justin and Jack delve into the growing trend toward increased investment in detection and response. With the rise in successful attacks and public breaches, detection and response are getting plenty of love, sometimes at the expense of preventative measures. Tune in as our duo explore the current state of affairs, share their observations on various response tactics, and provide valuable insight for listeners who are considering investing in cybersecurity capabilities to reduce the likelihood or impact of inevitable threats. Check out this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 197 - Curt Wood, CISA, and the Cavalry | 21 Feb 2024 | 00:30:36 | |
Well-known public sector executive advisor, Curt Wood, joins the team to talk about the role of the Cybersecurity and Infrastructure Security Agency (CISA), statewide cybersecurity, and the complex responsibilities of leaders as they understand and integrate multiple communities in their cybersecurity planning. As former executive secretary and CIO for the Commonwealth of Massachusetts and the current executive director for the 2023/2024 SLED Cybersecurity Priorities Report (CPR), Curt is going broad and deep with Justin Fimlaid and Jack Danahy on the changing nature of threat intelligence, interagency communications, and establishing a leadership position for cybersecurity. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 170 – Staying on Course When You’ve Got Headwinds | 16 Mar 2023 | 00:21:51 | |
In this mailbag edition of Pwned, Justin and Jack are presented with a question from a listener who’s feeling pressured to justify continuing cybersecurity tooling spend. They’ve seen this happen repeatedly and offer recommendations for responding with well-articulated tradeoffs and benefits and preparing for budget cuts during the proposal and acquisition process. Ultimately, security leaders do their best when they can maximize value from their existing tooling, or garner support from non-security stakeholders that can translate the negative impacts of reduced security capabilities into business terms. Listen in for practical advice as security teams start to bear more scrutiny and field more requests for spending justification in tight economic times. Check out this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 169 – The Lesson Is in the Struggle | 09 Mar 2023 | 00:22:01 | |
In this episode, Justin and Jack discuss a recent CISO dialogue around the difficulties in replacing staff that move on, and strategies for easing the impact of losing talented folks to competitors or lottery wins. From educating other team members, to succession planning and developing close relationships with vendors there are ways to prevent the unexpected loss of teammates from resulting in a corresponding loss of sleep. Check out this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 168 – Roadmaps and Socializing Support for Security | 22 Feb 2023 | 00:17:17 | |
In this episode, Justin and Jack respond to a note from the mailbag. A listener inquires about successful approaches to recruiting support for security initiatives, and the team shares stories about educating stakeholders, developing champions, and encouraging security program collaborators, especially when planning a multiyear, multipronged strategy. Check out this week’s video: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 167 – Cybersecurity Seat – Half-full/Half-empty, Have Patience | 07 Feb 2023 | 00:15:46 | |
Following a listener request, Justin Fimlaid and Jack Danahy are talking about successful paths forward when a CISO finds themselves in a role that’s a little larger than they expected, or an organization has a well-meaning CISO that needs a little more time to get it right. This happens all the time, and it doesn’t have to end with burning out or throwing out an otherwise capable executive. If you find yourself in that oversized chair, sit back and give a listen. Helpful links: The Hunt for the Super CISO Part 1 The Hunt for the Super CISO Part 2 Check out this week’s video:
Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 166 – Rethinking Cyber Insurance to Help it Survive, and Thrive | 26 Jan 2023 | 00:26:55 | |
Following well-publicized comments from Zurich Insurance CEO Mario Greco on the potential demise of cyber insurance, Justin and Jack are digging deep. They describe the challenge to insurers, the potential for unlimited liability, and propose a new and more intentional model that benefits insurers, clients, and the CISOs involved. It’s a new take on a thorny problem, with lessons for all players. Links: Are Cyber Attacks Uninsurable? World Economic Forum 2020 Grim Insurance Predictions On a lighter note: Whisky Home – Old Forester | First Bottled Bourbon™
Check out this week’s video:
Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Atonement and Autonomous Aggrandizement | 06 Jan 2023 | 00:20:28 | |
In this last episode of PWNED Season 3, Justin and Jack are paying off the year’s debts from infractions against the Pit of Despair, while analyzing a BlackHat announcement by a leader in the market. There are debts to be paid, and there’s a striking new example of the old security tendency to obscure, over-the-top messaging. The season is going out with a bang, and it looks like Season 4 will start with a blank slate but a full list of issues to watch for. As mentioned in this episode, check out the Security Bullshit Generator! Check out this week’s video: Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| BREAKING NEWS: Annual SLED Cybersecurity Priorities Report is LIVE | 14 Dec 2022 | 00:24:06 | |
After much work and a little fanfare, the 2022 SLED Cybersecurity Priorities Report has been publicly released. Justin and Jack are giving a quick overview of the findings, along with their usual, and unavoidable, take on some of the results. For those of you who have participated in the research or have been following the lead-up to this day, you’ll be glad to hear that the result does not disappoint. Here’s the announcement: SLED Leaders Find Roadmap for 2023 Success in Groundbreaking Report From NuHarbor Security | Business Wire And here’s the CPR: https://info.nuharborsecurity.com/2022-sled-cpr | |||
| Are CISOs Dying on the Security Hill or Just Stumbling Over a Cliff? | 07 Dec 2022 | 00:17:49 | |
In this episode of PWNED, Justin springs an unexpected topic, based on his deep affection for social media. Seeing a post from a security leader who feels he has been unfairly held accountable by his company, he’s bringing it to the podcast. We’ve got victimhood, CISO expectation setting, transparency, and disappointment, all in one episode as Jack and Justin take this common feeling apart. As referenced in this episode, you can find the book, “Can’t Hurt Me”, by David Goggins here: Can’t Hurt Me, David Goggins If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Previewing the Annual SLED Cybersecurity Priorities Report | 29 Nov 2022 | 00:23:12 | |
In this episode, Justin and Jack are talking about the trends, common concerns, and research done to support the soon-to-be-released 2022 SLED Cybersecurity Priorities Report. Input from hundreds of sources has been combined with insights from major vendors and the NuHarbor team to deliver some surprising conclusions about the state of the SLED cybersecurity landscape and the leaders that are transforming protection of public services and public trust. As referenced in this episode, check out this article by Wendy Nather (2011) on the The Security Poverty Line. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/
| |||
| Checked Out | 22 Nov 2022 | 00:16:41 | |
Following the news that Twitter, now owned by Elon Musk, is charging users for a “blue check” next to their name — an icon that once signaled a verified and authentic user, Justin and Jack discuss the cybersecurity implications behind this new phenomenon, and clear away the confusion and chaos that comes with it. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 196 - The Recent MOAB Event -- Mother or Just Another? | 14 Feb 2024 | 00:20:17 | |
Justin Fimlaid and Jack Danahy are talking about the recent 26.6B records found exposed. While the records are mainly old, the Pwned perspective is always new. Listen in for some history, some discussion of other expert views like Troy Hunt and others, and a perspective on whether this Mother of All Breaches may in fact be more of a news story and less of a new story. View Troy's article: Troy Hunt: The Data Breach "Personal Stash" Ecosystem View the original MOAB post: Mother of All Breaches: a Historic Data Leak Reveals 26 Billion Records | Cybernews Key Takeaways: 00:00 – Title Sequence 00:45 – Introduction to topic: Mother of All Breaches 02:24 – Public Reaction 03:42 – Where Did the Records Come From? 05:28 – Mystery Leads to Uproar 08:25 – Biggest Takeaway From the Breach 10:53 – Making Improvements, But Still a Long Way to Go 13:13 – Complex Passwords and Password Vaults 15:40 – AI-Generated Code 18:00 – Summary If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Is it time for CrowdSwipes? | 03 Nov 2022 | 00:29:20 | |
In this RightSwipes episode of Pwned, Justin and Jack start with an analysis of the recent CrowdStrike acquisition of Reposify, and while they may not agree on the love match, it starts an interesting new debate on “Best-in-Breed” versus “Combined Value” players in cybersecurity. It’s an important point of inflexion for companies, and maybe for the cybersecurity market, so listen in. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| The Pwned Public Chat with the Public Sector: Part 3 | 31 Oct 2022 | 00:22:15 | |
In this final episode with Justin and Jack speaking to a group of state security leaders, the PWNED team is talking about a series of topics from new, more successful awareness campaigns to the challenges of avoiding being a target in the first place. This entire session is driven by audience questions, and you may hear one that you’d have asked were you there. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| The Pwned Public Chat with the Public Sector: Part 2 | 06 Oct 2022 | 00:13:21 | |
In their second episode in front of a group of public sector tech execs, Justin and Jack are talking about the challenge and risks of application security, including the cascading exposure from supply chain vulnerabilities like log4j. They also spend some time talking about the attack trend towards automation and the ubiquitous threats that indiscriminately target organizations regardless of size or specialty. It’s another episode driven by listener questions and current events, with a focus on the impact to mid-sized organizations and those who serve through the SLED community. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| The Pwned Public Chat with the Public Sector: Part 1 | 23 Sep 2022 | 00:20:54 | |
In this first installment of a three-part series, Justin and Jack are speaking with public sector leaders about the unique challenges and successes of securing platforms and systems within the State, Local, and higher Ed (SLED) community. They’ve got plenty of experience and plenty to say as they answer questions about current threats, new approaches, and the patterns of success that NuHarbor has seen over the past few years. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| School’s Out – Ransomware and K-12 | 14 Sep 2022 | 00:10:34 | |
Following another school system breach and some pretty dire reporting, Justin and Jack are reviewing current events and talking about the current environment of risk and impact to K-12. There is plenty to discuss, but the result is a much more balanced view and some thoughts on applying a reasonableness filter to the stories we’re hearing. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Last Words and LastPasses – A Breach of the Week Two-fer | 01 Sep 2022 | 00:23:14 | |
In a new two-for-one Breach of the Week, Justin and Jack discuss a couple of controversial events from the news this week. First, the recent disclosures by Twitter’s Pieter (Mudge) Zatko and a follow-on article by long-time security icon Edward Amoroso, have our hosts sharing two different points of view on what the story means. Second, we get back to a harmonious Pwned cast as Justin and Jack discuss the recent LastPass source code breach, which was handled quickly and effectively by the LastPass team. It’s a two-fer, combining the role of the CISO and the hyperbole of breach reporting, all in one BOTW episode. Helpful Links: CNN Business article reporting on Mudge If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Rickhouse Swipes | 23 Aug 2022 | 00:28:00 | |
Justin and Jack join John Egan, founder of Mad River Distillers, for a chat about his thoughts on cybersecurity acquisitions, and his own experience as a lawyer in the technology field. Special thank you to John, Mad River Distillers President Mimi Buttenheim, and General Manager/Head Distiller Alex Hilton for welcoming the team and giving their time. To view the Mad River crew, click here. Justin and Jack took the time to write out reviews of some of the beverages from Mad River. Those can be found below:
If you want to reach out to John Egan, you can email him at jegan@goodwinlaw.com, or find him on LinkedIn. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Mailbag – Deciding Your Future Based on the Past | 16 Aug 2022 | 00:16:15 | |
We’ve got more mail! Thank you to Mike for sending in this intriguing question about how to decide what cybersecurity college program to attend to get the most for your future. Justin and Jack have an answer for you, and it’s a little more complicated than you would think; take a look at a program’s past and present successes to determine what you want your future to be. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Research, Report, Release, Repeat | 09 Aug 2022 | 00:21:29 | |
With the release of the new Enterprise Strategy Group (ESG) report, by Jon Oltsik, in late July, Justin and Jack sit down and discuss their thoughts on the research and the importance of consolidating industry-wide terminology and technology. Will they deem the report to be spot-on, or are there just too many unrealistic expectations? Tune in to find out! If you would like to read through the ESG report, please click here. For information on the AWS conference, please click here. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Maslow’s Hierarchy of Cybersecurity Maturity | 03 Aug 2022 | 00:23:09 | |
Jack is back at it this time at the National Association of Counties (NACo) conference in Aurora, Colorado. Justin attempts to remotely highjack the microphone to discuss Maslow’s Hierarchy of Needs for Cybersecurity with the audience. Justin checks in before and after the presentation to discuss talking points, maturity of an organization, and how the presentation went. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Episode 195 - Reflections on Election Security | 09 Feb 2024 | 00:26:14 | |
In a discussion covering election issues from disinformation to voter access, Justin Fimlaid and Jack Danahy are both dispelling and reinforcing listener concerns about the impact of technology and cyber threats on the upcoming elections. Tune in for an in-depth discussion on disinformation, newly proposed government/social media contact restrictions, and a look into what may come (or that the team think should come) to deliver more secure elections in the future. Key Takeaways: 00:00 – Title Sequence 00:22 – Introduction 04:16 – Social media and influencing elections 06:50 – Disinformation from the very beginning 10:33 – Can we ever go back to disconnected elections? 13:47 – Trusting election security technology 16:37 – Estonia’s voting technology 18:43 – Voting ID’s and intrusiveness 21:33 – Education and election awareness 24:30 – Wrapping up If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. For general information, you can reach us at info@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cybersecurity protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor LinkedIn: https://www.linkedin.com/company/nuharbor Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Almanna Cyber – Startups for Everyone | 26 Jul 2022 | 00:35:35 | |
In this special Pwned episode, Justin and Jack discuss Almanna Cyber – their new cybersecurity accelerator fund. Almanna, derived from the Old Norse word for “everyone”, is just that: a cyber accelerator for everyone. The J’s are inviting new cyber startups and individuals with a great ideas to apply for membership in their first cohorts. Sharing over 50 years of experience in the industry, and having built multiple successful cybersecurity businesses, Justin and Jack will help cohort members to grow their own ideas and companies into a strong, successful, cyber business. Pwned content will still be released weekly, but keep an eye out for their new podcast as well: Cyber Engine, which can be found on your favorite podcast streaming apps, or through the Almanna Cyber Website. To listen to the first episode, please click here. For questions regarding Almanna Cyber, please visit www.almannacyber.com, or email Justin at justin@almannacyber.com or Jack at jack@almannacyber.com. If you have any questions or suggestions regarding Pwned, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you on the next one. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Home Alone – A Swipeless RightSwipes | 12 Jul 2022 | 00:16:37 | |
US birth rates are the lowest in 40 years, and we may be seeing a spread of that trend into our RightSwipes matchups. With no meaningful Swipes in sight, Jack and Justin are taking a look at the SwipeScene and drawing some conclusions (and predictions) about the Swipeless period we find ourselves in. Is it a return to the bright lights of fundamental analysis showing some of the real faces behind the carefully crafted cosmetics, or is everyone taking a “wait & see” attitude towards the end of the night? Hard to tell, but Justin and Jack are making some prognostications for the quarterly and yearly likely SwipeStats. If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you next time. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| GOGO Breach of the Week – CafePress and Hot, Stinky Soup | 07 Jul 2022 | 00:28:13 | |
In this GOGO (Give One, Get One) episode of Pwned, Justin and Jack discuss two recent breaches. The first, a breach of 23 million compromised accounts from CafePress that was disguised to users as a password policy update; and the other a recipe for a hot tub breach with a side of “hot, stinky soup”. To access the articles we reference in this episode, check out these links below:
If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you next time. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||
| Heart-Stopping Finale for Ransomware Cardiologist | 28 Jun 2022 | 00:12:19 | |
An overachieving heart surgeon in Venezuela has turned his hand to ransomware, and it looks like his heart was really in it. Sadly for him, but great for those us losing “patients” with this cottage economy, he was busted by the FBI, and it’s Code Blue for his highly-rated, 5-star reviewed, $10K+/month, custom ransomware platform and SDK. Justin and Jack break it down and talk through the details and the factors that are making this type of malpractice possible. For more information on this topic, check out these links: If you have any questions or suggestions, send us an email at pwned@nuharborsecurity.com. If you like our content, please like, share, and subscribe! We’ll catch you next time. Check out NuHarbor Security for complete cyber security protection for your business and a security partner you can trust. Website: https://nuharborsecurity.com Facebook: https://www.facebook.com/nuharbor/ Twitter: https://twitter.com/NuHarbor@nuharbor LinkedIn: https://www.linkedin.com/company/nuharbor/ Instagram: https://www.instagram.com/nuharborsecurity/ | |||