Paul’s Security Weekly Episode #721 – December 15, 2021
Subscribe to all of our shows and mailing list by visiting: https://securityweekly.com/subscribe
1. All Your Holiday Hack Challenge Belong To Us – 06:00 PM-06:45 PM
Announcements
-
In an overabundance of caution, we have decided to flip this year’s SW Unlocked to a virtual format. The safety of our listeners and hosts is our number one priority. We will miss seeing you all in person, but we hope you can still join us at Security Weekly Unlocked Virtual! The event will now take place on Thursday, Dec 16 from 9am-6pm ET. You can still register for free at https://securityweekly.com/unlocked.
Description
Let’s talk about the 2021 SANS Holiday Hack Challenge. Lotsa great new stuff this year, with a focus on hardware hacking in a virtual world… plus TWO cons at the North Pole.
Segment Resources:
www.holidayhackchallenge.com
www.counterhack.com
www.sans.edu
Guest(s)
|
Ed Skoudis – President of SANS Technology Institute, Director of Holiday Hack Challenge at SANS Institute & Counter Hack @edskoudis Ed Skoudis has taught cyber incident response and advanced penetration testing techniques to more than 12,000 cybersecurity professionals. He is a SANS Faculty Fellow and the lead for the SANS Penetration Testing Curriculum. His courses distill the essence of real-world, front-line case studies he accumulates because he is consistently one of the first experts brought in to provide after-attack analysis on major breaches where credit card and other sensitive financial data is lost. |
Hosts
Josh Marpet @quadling Executive Director at RM-ISAO |
Larry Pesce @haxorthematrix Principal Managing Consultant and Director of Research & Development at InGuardians |
Lee Neely @lelandneely Senior Cyber Analyst at Lawrence Livermore National Laboratory |
Paul Asadoorian @securityweekly Founder at Security Weekly |
2. What to Expect in 2022 – 07:00 PM-07:45 PM
Sponsored By

Visit https://securityweekly.com/barracuda for more information!
Announcements
-
Throughout 2022, CRA’s Business Intelligence Unit will be releasing research reports on the top topics across the security industry. Our first report will be on Third-Party Risk and the Supply Chain. To participate in the survey, please visit https://securityweekly.com/thirdpartyrisk. The results will be shared at our Third-Party Risk eSummit in January.
Description
Visit https://securityweekly.com/barracuda for more information!
Announcements
-
Throughout 2022, CRA’s Business Intelligence Unit will be releasing research reports on the top topics across the security industry. Our first report will be on Third-Party Risk and the Supply Chain. To participate in the survey, please visit https://securityweekly.com/thirdpartyrisk. The results will be shared at our Third-Party Risk eSummit in January.
Description
Since it is Dec 15 – might make sense to have a discussion on what might be coming in 2022 in terms of security – topics could span Ransomware, and other threats as well as technology segments like Zero Trust and SASE, etc.
Segment Resources:
Barracuda research on Ransomware trends and remote code execution vulns:
https://blog.barracuda.com/2021/08/12/threat-spotlight-ransomware-trends/
https://blog.barracuda.com/2021/10/13/threat-spotlight-remote-code-execution-vulnerabilities/
This segment is sponsored by Barracuda Networks.
Visit https://securityweekly.com/barracuda to learn more about them!
Presenter(s)
|
Sinan Eren – VP, Zero Trust Access • ZTNA Engineering at Barracuda Networks @DidymaWorks Sinan Eren is the VP of Zero Trust Access at Barracuda. Sinan was formerly the Founder & CEO at Fyde, acquired by Barracuda in November of 2020. |
Hosts
Josh Marpet @quadling Executive Director at RM-ISAO |
Larry Pesce @haxorthematrix Principal Managing Consultant and Director of Research & Development at InGuardians |
Lee Neely @lelandneely Senior Cyber Analyst at Lawrence Livermore National Laboratory |
Paul Asadoorian @securityweekly Founder at Security Weekly |
3. Printing Shellz, Block Chain For C2, WordPress Theft, & Log4j Who? – 08:00 PM-09:30 PM
Announcements
-
Do you have a specific guest or topic that you want us to cover on one of the shows? Submit your suggestions for guests by visiting https://securityweekly.com/guests and completing the form! We review suggestions monthly and will reach out to you once reviewed!
-
Join us January 20th to learn how to build your own security lab at home! Don’t forget to check out our library of on-demand webcasts & technical trainings at https://securityweekly.com/ondemand.
Description
This week in the Security News: Printing Shellz, the exploit is in the link, 42 CVEs, time to update all of your browsers again, Microsoft App spoofing vulnerability, stealing credit cards in WordPress, using block chain for C2, MangeEngine 0day, oh and did you hear about the log4j vulnerability?
Hosts
Josh Marpet @quadling
Executive Director at RM-ISAO |
Larry Pesce @haxorthematrix
Principal Managing Consultant and Director of Research & Development at InGuardians |
|
Lee Neely @lelandneely
Senior Cyber Analyst at Lawrence Livermore National Laboratory |
|
Paul Asadoorian @securityweekly
Founder at Security Weekly |
|