It all begins with an idea Make It Skip to Videos All | Security Weekly News | Business Security Weekly | Enterprise Security Weekly | Below The Surface | Paul's Security Weekly | Dogs, AI, and Gyrogears (it's a slow security news week) - ESW #346 Creating Trust in Biometric Authentication for Identity Verification - Sabrina Gross - ESW #346 Corporate Ransomware Deep Dive - Mikko Hypponen - PSW #828 ChatGPT Writes Exploits - PSW #827 Kicking Off With Crypto - PSW #827 Advising The President On Cyber-Physical Resilience - Philip Venables - PSW #826 Your TV Is Scanning You - PSW #826 PCI 4.0 - PSW #825 Why Is Your TV & NAS On The Internet? - PSW #824 Digging Into Supply Chain Security - James McMurry - PSW #824 It's A Minifilter! - PSW #823 XZ - Backdoors and The Fragile Supply Chain - PSW #823 Crypto, Bluetooth Vulns, Unsafe Locks - PSW #822 Crypto, Bluetooth Vulns, Unsafe Locks - PSW #822 Are we winning? - Jason Healey - PSW #822 A Dive into Vulnerabilities and Compliance - PSW #821 Securing All The Things - Josh Corman - PSW #821 Printers Are "Not Nice" - PSW #820 Memory Safety, Re-Writing Software, and OSS Supply Chains - Omkhar Arasaratnam - PSW #820 DCNextGen, Memory Safety And More! - PSW #819 Facing the Reality of Risk Prioritization - Dan DeCloss - PSW #819 Malware In Strange Places, Overheating, LockBit - PSW #818 Social Engineering: AI & Living Off The Land - Jayson E. Street - PSW #818 Panel: Physical Security and Social Engineering - PSW #817 Shim Shady and Algorithm Lovers - PSW #816 You Can’t Defend What You Can’t Define - Sergey Bratus - PSW #816 Identifying Bad By Defining Good - Danny Jenkins - PSW #815 CVE, CVSS, EPSS Falls Short - PSW #815 What Smart CISOs and Mature Orgs Get That Others Don’t About Cyber Compliance - PSW #814 Bigpanzi, PixieFAIL, Dark Xmas - PSW #813 K-12 Cybersecurity - Brian Stephens - PSW #813 We're Old Now - PSW #812 The Evolution of Purple Teaming - Jared Atkinson - PSW #812 Learning About Firmware Security - Xeno Kovah - PSW #811 Supply Chain - PSW #811 LogoFAIL, Default Passwords and Android Hacking - PSW #810 Embracing AI - Alex Sharpe - PSW #810 Holiday News Edition Featuring Special Guests - PSW #809 Vulnerability Management and Disclosure - PSW #809 Hardware Hacking - PSW #809 Vulnerability Reporting, Zyxel, GPS Spoofing - PSW #808 AI, LLMs and Some Hardware Hacking - Matthew Carpenter - PSW #808 AI and LLMs - Think of the Children - Josh More - PSW #808 SSH Under Attack, IoT Routers, BLE Spam, & Patching a House of Cards - PSW #807 3 Layers of App Security to Keep Hackers Out, Let Customers In - Aviad Mizrachi - PSW #807 Firmware, Mainframes, Security and Risk - PSW #806 Testing AI Before It Comes To Get You - Austin Carson - PSW #806 Source Code Revealed, Resume Prompt Injection, iPhones Be Updating, & Florida Man - PSW #805 Trustworthy AI for National Security - Kathleen Fisher - PSW #805 Shenanigans and more - PSW #804 VSCode Vulnerabilities - Thomas Chauchefoin, Paul Gerste - PSW #804 Fried Squid, Flipper Zero BLM Spam, Apple Devices, Signal Vulns? & Android TV Devices - PSW #803 Meet the Cyber Mercenary who can Overthrow a Government - Chris Rock - PSW #803 Android TVs (Malware Included), Patch Netscaler, Fixing Legacy Auth, & GNOME Bugs! - PSW #802 Getting Started With Reverse Engineering Hardware - PSW #802 Fake Dead Grandma's, No Flipper Zero, Looney Tunables, & $20 Mil For Zero Days - PSW #801 Malware Trends - Anuj Soni - PSW #801 Snowden Revelations, Cult of The Dead Cow Saves The Internet, & Stealing Your Pixels - PSW #800 The Right Skills For The Job - Kayla Williams - PSW #800 Ncurses & Bad Things, LVFS is NOT a Backdoor, Physical Proximity, & Oh, Fortinet! - PSW #799 AI Attacks and LLM Security Matters - Nathan Hamiel - PSW #799 Cisco 0-Day, Chrome Vulnerability, MGM Shut Down, & More! - PSW #798 Ransomware Infection Vectors - Ryan Chapman - PSW #798 WinRAR Deets, A WIFI Worm, Inside McFlurries, & Jeff's Book Review - PSW #797 Incident Response: Clouds, SMBs, and more! - Amanda Berlin - PSW #797 Lora Projects, WinRAR, Kali Mobile, Benchmarks Vs. IRL, & VPN HYPE! - PSW #796 Managing Bug Bounty Programs At Scale - Dr. Jared DeMott - PSW #796 NIST CSF, JTAG vs (OG) Xbox, Tricked Ya, Intel's Security, & Josh Debates Jeff - PSW #795 Defending Public Infrastructure While At War - Antranig Vartanian - PSW #795 Evil Flippers, The Human-Brain-Machine, AMD CPUs, Hacking Teslas & Rubber Duckies - PSW #794 Super Admins, Ancient Language Codes, Great Leakage, & Mirai Vs. Tomcat - PSW #793 Super Admins, Ancient Language Codes, Great Leakage, & Mirai Vs. Tomcat - PSW #793 Incident Response Stories - Bill Swearingen - PSW #793 Flipper Zeroes, The "Kia Boys", RFID Tags for Amazon, & PCI Wizardry - PSW #792 Security Certification - Rohit Misuriya, Sumit Siddharth - PSW #791 Lost Keys, LOL Drivers, Nintendo Helps FBI, Mali Mail, & Our Rap Names - PSW #791 Supply Chains, Firmware, And Patching - Jason Kikta - BTS #29 5G Hackathons - Casey Ellis - BTS #28 Governance, Compliance, and The Digital Supply Chain - Josh Marpet - BTS #27 What We Don’t Know Will Hurt Us - Cheryl Biswas - BTS #26 Supply Chain Threats and Regulations - BTS #25 Managing Supply Chain Risk - Saša Zdjelar - BTS #24 Closing The Supply Chain Visibility Gap - Dr. Olga Livingston - BTS #23 SBOMs and Supply Chains - Allan Friedman - BTS #22 Supply Chain Risk Management - David Vaughn - BTS #21 Network Device Supply Chains and Lateral Movement - Joe Hall - BTS #20 A Year in Review on Offensive Security, Defensive Landscapes, and Global Implications -... - BTS #19 Defending Against Supply Chain Attacks - Bri Rolston - BTS #18 Protecting The Digital Supply Chain - Yuriy Bulygin - BTS #17 UEFI and The Digital Supply Chain - Dick Wilkins - BTS #16 Reverse Engineering BMCs and Other Firmware - Vladyslav Babkin - BTS #15 Protecting The Federal Supply Chain - John Loucaides - BTS #14 Network Device Supply Chain Security - Nate Warfield - BTS #13 Dealing with The Digital Supply Chain - Ramy Houssaini - BTS #12 SCRM and Supply Chain Security Up and Down the Stack - Steve Orrin - BTS #11 Learning About Firmware Security - Xeno Kovah - BTS #10 Accidentally Learning about Security: From Firmware to the Cloud - Brian Richardson - BTS #9 Introducing fwupd and the Linux Vendor Firmware Service - Richard Hughes - BTS #8 Firmware Pulse - What is Happening Right Now - Nicholas Starke - BTS #7 Armoring the Unified Extensible Firmware Interface (UEFI) - Vince Zimmer - BTS #6 Community Insights: Supply Chain Threats, Critical Firmware Attacks, and more! - BTS #5 Supply Chain Threats, Vulnerable Drivers, OpenSSL Vulnerabilities, and more! - BTS #4 Inevitable Attacks, UEFI Vulnerabilities, and more! - BTS #3 Root of Trust (RoT) - BTS #2 Firmware & Supply Chain Security - BTS #1 Threat Modeling and Understanding Inherent Threats - Adam Shostack - ESW #359 Autonomous - I don't think that word means what you think it means - ESW #359 From Hackers to Streakers - How Counterintelligence Teams are Protecting the NFL - Joe... - ESW #358 Understanding KillNet and Recent Waves of DDoS Attacks - Michael Smith - ESW #357 Have you heard about AI? Lots of AI news. Also, RSA conference, and RooBadges! - ESW #356 Getting Vulnerability Management Back on the Rails - Patrick Garrity - ESW #356 Multi-Layered Defense Platforms and other terms we found in security press releases - ESW #355 Why cyber hygiene requires curious talent - Clea Ostendorf - ESW #355 Top 5 Myths About API Security and What to Do Instead - Robert Dickinson - ESW #354 Lots Of Funding News, Airbus Says No, and Cato Networks Going IPO? - ESW #354 Will AI allow us to finally scale vuln mgmt and threat detection? - ESW #353 Addressing Identity-Related Threats in 2024 - Rod Simmons - ESW #353 What can we do today to prevent tomorrow's breach? - Michael Mumcuoglu - ESW #352 Early stage startup M&A on fire, funding healthy, and attackers are like lawyers? - ESW #352 Funding goes quiet while M&A makes some noise! - ESW #351