Topics
Industry
Events
Podcasts
Research
Recognition
Leadership
Paul's Security WeeklySubscribe
Asset Management, Container security, Cloud, DDOS, Endpoint Security, Endpoint Security

PSW #661

August 12, 2020
Section 0

Sponsored By

sponsor
Visit http://domaintools.com/ for more information!

Chad talks about the DomainTools COVID research (and how they stumbled on the CovidLock Android ransomware), mapping the Reopen Campaigns in more detail. He will then touch on some of the work he is doing that will be released that maps Twitter hunting into a nice, observable dashboard for the lazy.

This segment is sponsored by DomainTools.

Visit https://securityweekly.com/domaintools to learn more about them! This segment is sponsored by DomainTools. Visit http://domaintools.com/ to learn more about them! Visit https://www.securityweekly.com/psw for all the latest episodes!

Full Episode Show Notes

SWVHSC: Observing Disinformation Campaigns

To learn more about the research, visit: http://domaintools.com/

Hosts

Jeff Man

Jeff Man – Sr. InfoSec Consultant

Joff Thyer

Joff Thyer – Security Analyst

Larry Pesce

Larry Pesce – Senior Managing Consultant and Director of Research

Lee Neely

Lee Neely – Senior Cyber Analyst

Matt Alderman

Matt Alderman – CEO

Paul Asadoorian

Paul Asadoorian – Founder & CTO

Guests

Chad Anderson

Chad Anderson – Senior Security Researcher

Announcements

  • Do you have a specific guest or topic that you want us to cover on one of the shows? Submit your suggestions for guests by visiting https://securityweekly.com/guests and completing the form! We review suggestions monthly and will reach out to you once reviewed!

http://traffic.libsyn.com/sw-all/PSW_661_-_Chad_Anderson_DomainTools-0_converted.mp3
Section 1

How hackers could spy on satellite internet traffic with just $300 of home TV equipment, Smart locks opened with nothing more than a MAC address, 17-Year-Old ‘Mastermind’ and 2 Others Behind the Biggest Twitter Hack Arrested, Flaw in popular NodeJS express-fileupload module allows DoS attacks and code injection, and how Netgear Won’t Patch 45 Router Models Vulnerable to a Serious Flaw! Visit https://www.securityweekly.com/psw for all the latest episodes!

Full Episode Show Notes

SWVHSC: Netgear Flaws, Satellite Spying, & Stealing UltraLoq Keys

None

Hosts

Jeff Man

Jeff Man – Sr. InfoSec Consultant

Joff Thyer

Joff Thyer – Security Analyst

Larry Pesce

Larry Pesce – Senior Managing Consultant and Director of Research

Lee Neely

Lee Neely – Senior Cyber Analyst

Matt Alderman

Matt Alderman – CEO

Paul Asadoorian

Paul Asadoorian – Founder & CTO

Announcements

  • Join the Security Weekly Mailing List for webcast/virtual training announcements and to receive your personal invite to our Discord server by visiting https://securityweekly.com/subscribe and clicking the button to join the list!

http://traffic.libsyn.com/sw-all/PSW_661_-_Security_News-0_converted.mp3
Section 2

Sponsored By

sponsor
Visit https://securityweekly.com/qualys for more information!

In this segment we discuss the importance of automating the Vulnerability Management Program and discuss Qualys VMDR which takes vulnerability management to the next level bringing detection and response to vulnerability management.

For your free trial of Qualys VMDR, visit: https://securityweekly.com/qualys

Visit https://www.securityweekly.com/psw for all the latest episodes!
Full Episode Show Notes

Automating Your Vulnerability Management Program

None

Hosts

Paul Asadoorian

Paul Asadoorian – Founder & CTO

Guests

Mehul Revankar

Mehul Revankar – VP Product Management and Engineering, VMDR

Sumedh Thakar

Sumedh Thakar – President and Chief Product Officer

Announcements

  • Visit https://securityweekly.com/webcasts to see what we have coming up! Learn How to Create and Run a Conference, from some of the geniuses behind Layer8 Conference and Wild West Hackin Fest on August 19th! Our next technical training on August 27th will teach you about BootHole, SIGRed and SMBleed…Best Practices To Prioritize And Remediate Now! Or visit securityweekly.com/ondemand to view our previously recorded webcasts!

http://traffic.libsyn.com/sw-all/PSW_661_-_Mehul__Sumedh_Qualys-0_converted.mp3

Related

Remote access
Remote work complicates insider-threat challenge, says ex-Bank of America CIO

Karen HoffmanMay 25, 2022

Former Bank of America CIO David Reilly, who recently joined the boards of Safe Security and Ally Bank, says administrators, employees and third-party vendors add to the risk landscape.

Remote access
Zyxel patches RCE vulnerability in firewalls following report by Rapid7

Steve ZurierMay 13, 2022

Rapid7 researchers found the vulnerability allowing remote code execution by an attacked in a broad range of Zyxel firewalls.

Malware
Novel ‘Nerbian RAT’ uses OS-agnostic Go programming language to spread across platforms 

Steve ZurierMay 11, 2022

Proofpoint researchers say novel malware uses COVID-19 and World Health Organization themes to spread in Italy, Spain and the United Kingdom.

prestitial ad

About Us
SC MediaCyberRisk AllianceContact UsCareersPrivacy
Get Involved
SubscribeContribute/SpeakAttend an eventJoin a peer groupPartner With Us
Explore
Product reviewsResearchWhite papersWebcastsPodcasts

Copyright © 2022 CyberRisk Alliance, LLC All Rights Reserved This material may not be published, broadcast, rewritten or redistributed in any form without prior authorization.

Your use of this website constitutes acceptance of CyberRisk Alliance Privacy Policy and Terms & Conditions.