Explore every episode of the podcast IANS Cyber Intel
| Title | Pub. Date | Duration | |
|---|---|---|---|
| Security Briefing: Azure DDoS Attack, Cloudflare Malware Delivery, DNS Poisoning | 07 Aug 2024 | 00:29:42 | |
August 7th, 2024 Security Briefing with IANS Faculty Dave Shackleford and Shannon Lietz This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Twilio Authy Breach, Rockwell Automation PanelView Flaws, HealthEquity Data Exposed | 10 Jul 2024 | 00:28:10 | |
July 10th, 2024 with IANS Faculty Jessica Hebenstreit and Shannon Lietz This Episode Details:
| |||
| Security Briefing: Snowflake Fallout, OT Device Attacks, SOHO Router Hack | 05 Jun 2024 | 00:29:19 | |
June 5th, 2024 with IANS Faculty Dave Shackleford and Wolfgang Goerlich This Episode Details:
| |||
| Security Briefing: Kaiser Data Breach, Criminals Exploit CrushFTP Vuln, Brokewell Malware Takes Over Android Devices | 01 May 2024 | 00:28:59 | |
May 1st, 2024 Security Briefing with IANS Faculty Wolfgang Goerlich and Jessica Hebenstreit Kaiser Notifies Millions of Data Breach - 13.4 insured people and patients will be receiving breach notices that their protected health information may have been compromised - considered the largest health-related data breach of 2024 to date. Criminals Exploit CrushFTP Vulnerability - Adversaries are exploiting a vulnerability in CrushFTP to gain remote code execution (RCE). The vulnerability (CVE-2024-4040) combines server-side template injection with a virtual file system sandbox escape to allow attackers to read and execute files as root on Linux systems hosting CrushFTP. Brokewell Malware Takes Over Android Devices - Discovered and documented by researchers at ThreatFabric, Brokewell is malware running on Android phones and devices. With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Stolen MSFT Source Code, Possible Chinese Crane Espionage | 13 Mar 2024 | 00:18:26 | |
March 13th, 2024 Security Briefing with IANS Faculty Dave Shackleford and Jennifer Minella This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Change Healthcare Hack, I-Soon Leaks, NIST CSF 2.0 | 28 Feb 2024 | 00:30:14 | |
February 28th, 2024 Security Briefing with IANS Faculty Jessica Hebenstreit and Dave Shackleford This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Shim Secure Boot Bypass, Fortinet CVE, Ivanti Vulns | 14 Feb 2024 | 00:27:04 | |
February 14th, 2024 Security Briefing with IANS Faculty Jake Williams and Gal Shpantzer This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Volt Typhoon, Ivanti Zero Day, Cloudflare Breach, AnyDesk Hack | 07 Feb 2024 | 00:25:14 | |
February 7th, 2024 Security Briefing with IANS Faculty Jessica Hebenstreit and Jennifer Minella This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| 2024 CISO Compensation: Strategies for Thriving in a Slow-Moving Market | 18 Dec 2024 | 00:54:38 | |
The CISO job market has been slow in 2024 – largely due to conservative job movement caused by challenging macroeconomic conditions, but signs of improvement are emerging for 2025. Want to learn more? Download the summary version of IANS' 2024 CISO Compensation Benchmark Report here. In this webinar, IANS Faculty Steve Martano and Senior Research Director Nick Kakolowski will share insights from the recently published 2024 IANS and Artico Search CISO Compensation Survey and discuss how CISOs can best navigate the marketplace. Join the session to hear:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Cloudflare Loses Logs, LogoFAIL Exploited, Firefox Zero Days | 04 Dec 2024 | 00:29:50 | |
December 4th, 2024 Security Briefing with IANS Faculty Wolfgang Goerlich and Jake Williams This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: More MOVEit Fallout, North Korean MacOS Malware, TSA Cyber Rules | 13 Nov 2024 | 00:28:39 | |
November 13th, 2024 Security Briefing with IANS Faculty Wolfgang Goerlich and Jessica Hebenstreit This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| AI and your organization: Making the Case for your Use Case | 28 Oct 2024 | 00:33:26 | |
October 28th, 2024 AI Deep Dive with IANS Faculty Jake Williams and Jessica Hebenstreit Join IANS Faculty Jake Williams and Jessica Hebenstreit in the first episode of IANS AI Deep Dive Series for security professionals. This episode will cover:
Interested in more AI content? Check out IANS AI Resources page and sign up for our AI Playbook series! With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Report Sneak Peek: IANS and Artico Search CISO Comp & Budget | 17 Sep 2024 | 00:54:26 | |
With budget planning season kicking off, we’re opening up the budget-related findings of the IANS and Artico CISO Compensation and Budget Survey ahead of our usual reporting cycle. The goal: Give you the benchmarking data you need to make a budget case. IANS Senior Research Director Nick Kakolowski and Faculty member Steve Martano will discuss:
Interested in learning more about IANS and Artico's budget findings? Download IANS Security Budget Benchmark Summary Report! Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: DPRK Hackers Target Devs, CISA RansomHub Advisory, Security Cam Vuln Spreads Mirai | 04 Sep 2024 | 00:30:24 | |
September 4th, 2024 Security Briefing with IANS Faculty Dave Shackleford and Jennifer Minella This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| The State of the CISO in 2025 | 17 Feb 2025 | 00:55:02 | |
CISOs are currently under more pressure than ever to deliver results with lean teams and increasingly scrutinized budgets. CISOs’ scope continues to expand while boards and leaders are continually focused on cyber budgets and program execution. At the same time, resources are tight and orgs are still figuring out how to navigate emerging areas of digital risk – particularly AI and its corresponding data governance implications. CISOs who navigate these challenges successfully will set themselves apart by enhancing their personal brand and the reputation and success of the programs they lead. In this session, IANS Faculty Steve Martano and IANS Senior Research Director Nick Kakolowski will provide a deep dive into the current state of the CISO role. They’ll cover:
Interested in learning more about IANS and Artico's State of the CISO findings? Download IANS State of the CISO Summary Report! Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Infosec Trends you should be watching in 2025 | 15 Jan 2025 | 00:53:42 | |
2025 Deep Dive Webinar and Podcast with IANS FacultyJessica Hebenstreit and Jake Williams Infosec teams are stretched. Budgets are flat, resources are strained, and we’re always trying to stay one step ahead of adversaries. Layer in new regulations, the integration of AI into seemingly all aspects of the business, and other disruptions. It’s no wonder CISOs and their teams are constantly challenged as to where to prioritize their time, resources, and activities. In this podcast, IANS Faculty Jake Williams and Jessica Hebenstreit call out the areas they believe will be most impactful to CISOs and their teams in 2025. Hear an overview of the trends and recommendations of actionable steps to work into your roadmap. Topics of discussion include:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Treasury Breach, Cyberhaven Chrome Extension Compromise, CDN Shutdown | 08 Jan 2025 | 00:52:44 | |
January 8th, 2025 Security Briefing with IANS Faculty Jessica Hebenstreit and Jake Williams This Episode Details: Treasury Gets BeyondTrusted - The Treasury Department reported that it was the victim of a compromise on its unclassified network. It reported that the source of the hack was a third party facilitating remote access into the environment, which is known to be BeyondTrust. Browser Plugins Are a (Cyber)haven for Malware - On Christmas Eve, a Cyberhaven developer fell victim to a phish that allowed a threat actor to publish applications to Cyberhaven’s account in the Google Chrome Web Store where browser extensions are published. CDN Shutdowns and Build Pipelines - The CDN provider Edgeio is in Chapter 11 bankruptcy proceedings and is facing imminent shutdown of its CDN services. While Edgeio customers are in a mad scramble to migrate off the platform, many organizations don’t realize they’ll be impacted by this. With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: EU Souring on US Cloud Providers, CISA Cuts, Supply Chain Cautionary Tale | 09 Apr 2025 | 00:30:27 | |
April 9th, 2025 Security Briefing with IANS Faculty Jake Williams and Jessica Hebenstreit This Episode Details: EU Companies Exploring Alternatives to US Cloud Providers - WIRED reported that some EU companies are exploring ways to de-risk their involvement with U.S. cloud providers by looking at alternatives to Amazon, Google, and Microsoft. More Cuts at CISA - Reporters at Politico (among others) are reporting additional staffing cuts coming to CISA imminently. Some reports detail expectations of as many as 1300 of CISA's 3300 remaining staff to be cut. Novel Supply Chain Bug Bounty - In February, Roni Carta (aka Lupin) published a post-mortem on a bug bounty that involved a complex supply chain attack. The impact was so severe that the organization paid Carta and his partner Snorlhax $50k for the report With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Pause on Offensive Ops Against Russia, DPRK’s Bybit Heist, Copilot Exposes GitHub Pages | 05 Mar 2025 | 00:29:52 | |
March 5th, 2025 Security Briefing with IANS Faculty Jake Williams and Wolfgang Goerlich This Episode Details: U.S. Pauses Offensive Cyber Ops Against Moscow - The United States has suspended its offensive cyber activities targeting Russia. This decision, authorized by U.S. Defense Secretary, aims to encourage Moscow to engage in negotiations to end the ongoing conflict in Ukraine. DPRK Behind the $1.5B Bybit Heist - The FBI confirmed that the North Korean Lazarus Group (also known as TraderTraitor) was responsible for the recent theft of approximately $1.5 billion in virtual assets from the cryptocurrency exchange Bybit. Copilot Exposes Private GitHub Pages - The AI security firm Lasso has identified GitHub Copilot, an AI coding assistant, was inadvertently exposing private GitHub Pages. So called “zombie repositories" (repositories that were once public and are now private) were retrievable using specific Copilot prompts. With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Verizon DBIR 2025 Highlights, Mobile Security, Darcula GenAI Concerns | 30 Apr 2025 | 00:30:27 | |
April 30th, 2025 Security Briefing with IANS Faculty Dave Shackleford and Shannon Lietz This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Mobile Provider Leaks Location Data, ConnectWise Breach, Red Canary Acquired | 04 Jun 2025 | 00:30:16 | |
June 4th, 2025 Security Briefing with IANS Faculty Jake Williams and Jessica Hebenstreit This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: Exchange Vulns, SonicWall Zero Day That Wasn’t, GitHub to Join MSFT’s CoreAI | 13 Aug 2025 | 00:27:45 | |
August 13th, 2025 Security Briefing with IANS Faculty Jake Williams and Jessica Hebenstreit This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||
| Security Briefing: SEC and SolarWinds, Crypto Agility and TLS Rotation, Ingram Micro Ransomware Attack | 09 Jul 2025 | 00:30:32 | |
July 9th, 2025 Security Briefing with IANS Faculty Wolfgang Goerlich and Jessica Hebenstreit This Episode Details:
With IANS Research, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams. Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice. | |||