podcast
details
.com
Print
Share
Look for any podcast host, guest or anyone
Search
Showing episodes and shows of
Ryan Kovar And Mick Baccio
Shows
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Kirsty Paine
Join Ryan Kovar and special guest Kirsty Paine, Field CTO and Strategic Advisor at Splunk, for a conversation about her career in cybersecurity, including with her work on technical standards and emerging technologies, including artificial intelligence, IoT, and quantum computing. Links: - Cryptographically Relevant Quantum Computers (CRQCs) & The Quantum Threat - Quantum-Safe Cryptography & Standards: QSC, PQC, QKD & More! - The Quantum Threat: Options for Migrating to Quantum Safe Cryptography - Kirsty’s Blog Posts - Cyber Security for Consumer Internet of Things (ETSI EN 303 645) - Indicators of Compromise (IoCs) and Their Role i...
2023-12-19
31 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 12-DEC-2023 Kyivstar Cyberattack, Water Utilities Hacked, Log4j Exploited
Grab a cup of coffee and join Mick Baccio, Katie Brown and Audra Streetman for another episode of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - Ukraine’s top mobile internet company is down, blames Russian cyberattack - IRGC-Affiliated Cyber Actors Exploit PLCs in Multiple Sectors, Including U.S. Water and Wastewater Systems Facilities - North Korean hackers using Log4J vulnerability in global campaign Audra and Katie also competed in a charity challenge to share what they consider to be the largest cyber incident of...
2023-12-12
28 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Eric McGinnis
Join Audra Streetman and special guest Eric McGinnis, Senior Threat Researcher at Splunk, for a conversation about Detection as Code and how it helps to streamline the threat detection process, especially at scale. Links: https://github.com/splunk/attack_range https://atomicredteam.io/ https://github.com/splunk/attack_data https://github.com/splunk/security_content https://github.com/splunk/contentctl
2023-12-05
21 min
Coffee Talk with SURGe
Coffee Talk with SURGe: NCSC Annual Review, ENISA Threat Landscape, Netherlands Cyber Assessment
Grab a cup of coffee and join Ryan Kovar, Kirsty Paine, and Floris Ladan for a special EMEA edition of Coffee Talk with SURGe. The team from Splunk will compare highlights and similarities across recent cyber threat reports, including: - UK NCSC Annual Review 2023 - ENISA Threat Landscape 2023 - Cyber security assessment of the Netherlands 2023 Ryan and Floris also competed in a 60 second charity challenge to explain the importance of red teaming.
2023-11-29
38 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Cat Self
Join David Bianco and special guest Cat Self, Principal Adversary Emulation Engineer at MITRE and macOS/Linux Lead for ATT&CK, for a conversation about Cat’s career journey from military intelligence to cybersecurity along with her current work at MITRE. Links: - Mitre Engenuity CTID Project - Blog: "A Deep Dive into the OceanLotus Adversary Emulation for macOS & Linux" - Defensive guidance in an enterprise environment: OBTS v6 presentation, “Dropping Lotus Bombs: ATT&CK in macOS Purple Team Operations” by Cat Self & Megan Carney - CTID Adversary Emulation Library
2023-11-21
45 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-NOV-14 ICBC Ransomware, Sandworm Cuts Power in Ukraine, Volt Typhoon
Grab a cup of coffee and join Mick Baccio, Ryan Kovar, and Audra Streetman for another edition of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - LockBit says ICBC paid ransom over hack that disrupted US Treasury market https://www.reuters.com/technology/cybersecurity/icbc-paid-ransom-after-hack-that-disrupted-markets-cybercriminals-say-2023-11-13/ - Sandworm Disrupts Power in Ukraine Using a Novel Attack Against Operational Technology https://www.mandiant.com/resources/blog/sandworm-disrupts-power-ukraine-operational-technology - The NSA Seems Pretty Stressed About the Threat of Chinese Hackers in US Critical Infrastructure https://ww...
2023-11-14
40 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring John Hultquist
Join Mick Baccio and special guest John Hultquist, Chief Analyst at Mandiant Intelligence, for a conversation about John’s career in cybersecurity, his advice for aspiring CTI analysts, and what to expect at CYBERWARCON 2023 on Nov. 9. The link to register is: https://lnkd.in/gsDkmy2u.
2023-11-08
49 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-10-31 SEC SolarWinds Complaint, Biden’s Executive Order on AI
Grab a cup of coffee and join Mick Baccio, Ryan Kovar, and Audra Streetman for a spooky Halloween edition of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - SEC Charges SolarWinds and Chief Information Security Officer with Fraud, Internal Control Failures - President Biden Issues Executive Order on Safe, Secure, and Trustworthy Artificial Intelligence Mick and Ryan also competed in a charity challenge benefitting World Central Kitchen to share the lessons learned from Cybersecurity Awareness Month.
2023-10-31
42 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Michael Rodriguez
Join Mick Baccio and special guest Michael Rodriguez, Principal Strategic Consultant for Google Public Sector, for a conversation about Michael’s career path into cybersecurity, the origin of his nickname “Duckie,” and his work as a cybersecurity subject matter expert for Google Space.
2023-10-24
43 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-OCT-17 Cisco IOS XE, Signal Zero-Day Rumor, Conflict Disinformation
Grab a cup of coffee and join Mick Baccio, Ryan Kovar, and Katie Brown for another episode of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - Cisco Discloses ‘Critical’ Zero-Day Vulnerability In IOS XE - Signal Pours Cold Water on Zero-Day Exploit Rumors - European Commission demands X account for disinformation in wake of Hamas attacks
2023-10-17
44 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Patrick Gray
Join Shannon Davis and special guest Patrick Gray, host of the Risky Biz podcast, for a discussion about Patrick's cybersecurity reporting career and the work behind the scenes to produce each episode. You can listen to Risky Biz at risky.biz or wherever you get your podcasts.
2023-10-10
20 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-OCT-03 WS_FTP RCE, Exim Scope, ChatGPT, Cybersecurity Awareness Month
Grab a cup of coffee and join Mick Baccio, Ryan Kovar and Audra Streetman for another episode of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - RCE in Progress WS_FTP Ad Hoc via IIS HTTP Modules (CVE-2023-40044) - Exim patches three of six zero-day bugs disclosed last week - Exploit released for Microsoft SharePoint Server auth bypass flaw - Developments in ChatGPT capabilities - Tom Hanks warns fans about ‘AI version of me’ promoting dental plan Mick and Ry...
2023-10-03
54 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Sherrod DeGrippo
Join Ryan Kovar and special guest Sherrod DeGrippo, Director of Threat Intelligence Strategy at Microsoft, for a discussion about crimeware, threat actor naming conventions, and Sherrod's essay in a new book by SURGe titled, "Bluenomicon: The Network Defender's Compendium."
2023-09-26
42 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-SEPT-19 Data Leaks, Casino Breaches, Ransom Demands, Big Yellow Taxi
Grab a cup of coffee and join Audra Streetman and special guests Haylee Mills, Katie Brown and Drew Church for another episode of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: Microsoft's Xbox plans revealed in emails tied to FTC case 38TB of data accidentally exposed by Microsoft AI researchers Hackers who breached casino giants MGM, Caesars also hit 3 other firms, Okta says All thanks to ‘Big Yellow Taxi’: How State discovered Chinese hackers reading its emails
2023-09-20
46 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Derrick Lawson
Join Ryan Kovar and special guest Derrick Lawson, Staff Sales Engineer at Splunk, for a discussion about M-21-31, a US memorandum establishing an event logging maturity model for federal government agencies. They’ll discuss strategies and tools that can help agencies with compliance.
2023-09-16
19 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Jamie Williams
Join Ryan Kovar and special guest Jamie Williams, MITRE ATT&CK for Enterprise Lead and Principal Adversary Emulation Engineer, for a discussion about MITRE ATT&CK use cases and Jamie's essay in a new book by SURGe titled, "Bluenomicon: The Network Defender's Compendium." Download Bluenomicon
2023-09-12
39 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-SEPT-05 Mudge Joins CISA, Qakbot Takedown, Infamous Chisel Malware
Grab a cup of coffee and join Mick Baccio, Ryan Kovar and Audra Streetman for another episode of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - Famed hacker and Twitter whistleblower Peiter 'Mudge' Zatko is joining the Biden administration https://www.washingtonpost.com/politics/2023/09/05/cisa-makes-big-name-hire-its-crusade-against-insecure-products/ - FBI, Partners Dismantle Qakbot Infrastructure in Multinational Cyber Takedown https://www.fbi.gov/news/stories/fbi-partners-dismantle-qakbot-infrastructure-in-multinational-cyber-takedown - Infamous Chisel Malware Analysis Report https://www.cisa.gov/news-events/analysis-reports/ar23-243a Mick and Ryan competed in a...
2023-09-05
45 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Rick Holland
Join Ryan Kovar and special guest Rick Holland, VP and CISO at ReliaQuest, for an interview about Rick’s career journey, his advice for cybersecurity leaders, and his contribution to the SURGe team’s new book titled, “Bluenomicon: The Network Defender’s Compendium.” Follow Rick on Twitter Download the Bluenomicon PDF
2023-08-31
34 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-AUG-22 Ivanti, Citrix, Space Industry, Tesla Insider Threat, Quantum
Grab a cup of coffee and join Mick Baccio, Ryan Kovar and Audra Streetman for another episode of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - Ivanti: Customers ‘impacted’ by new zero-day vulnerability - Nearly 2,000 Citrix NetScaler Instances Hacked via Critical Vulnerability - Joint Advisory on Safeguarding the US Space Industry - Tesla says data breach impacting 75,000 employees was an insider job - CISA Factsheet on Quantum Readiness - Kirsty's Blog: Cryptographically Relevant Quantum Computers (CRQCs) & The Quantum Threat in 20...
2023-08-22
57 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Jake Williams
Join Audra Streetman and special guest Jake Williams (@MalwareJake) for a discussion about hiring in cybersecurity, interview advice, the challenges associated with vulnerability prioritization, Microsoft's Storm-0558 report, and Jake's take on the future of AI and LLMs in cybersecurity.
2023-08-17
30 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-AUG-01 Ivanti EPMM, SEC Reporting Rules, Black Hat, Defcon
Grab a cup of coffee and join Mick Baccio, Ryan Kovar and Audra Streetman for another episode of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - Threat Actors Exploit Ivanti EPMM Vulnerabilities - Splunk Threat Research Team analytic story - Strengthening Cybersecurity: Can The SEC’s Landmark New Rules Be Enforced? - Senator calls on DOJ to investigate alleged China hack of Microsoft cloud tools - U.S. Hunts Chinese Malware That Could Disrupt American Military Operations Mick and Ryan also shared their top a...
2023-08-02
56 min
Coffee Talk with SURGe
Coffee Talk with SURGe: the Interview Series featuring Eva Galperin
Join Audra Streetman and special guest Eva Galperin, director of cybersecurity at the Electronic Frontier Foundation, for an interview about data privacy, stalkerware, artificial intelligence, and the recent rise in deepfake sextortion schemes. You can follow Eva on Twitter @evacide and learn more about her work at EFF.org.
2023-07-25
22 min
Coffee Talk with SURGe
SURGe author panel on Bluenomicon: The Network Defender’s Compendium
Join Mick Baccio and Ryan Kovar as they interview several Splunk cybersecurity experts at .conf23 whose essays are featured in Bluenomicon: The Network Defender’s Compendium. The authors include Sydney Howard, Principal Threat Hunter at Splunk, Jason Lee, Splunk CISO, and Paul Kurtz, Splunk's Chief Cybersecurity Advisor. To order a free copy of Bluenomicon, visit: https://www.splunk.com/en_us/form/the-network-defenders-compendium.html.
2023-07-24
34 min
Coffee Talk with SURGe
Coffee Talk with SURGe: APT Tradecraft and Data Privacy with Jake Williams and Eva Galperin
Join Ryan, Mick, and Audra for a special edition of Coffee Talk with SURGe, live from .conf23 in Las Vegas. This episode, the trio from Splunk is joined by cybersecurity experts Jake Williams and Eva Galperin to discuss the trends in tradecraft they've observed among APT groups along with the topic of data privacy.
2023-07-24
42 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-JULY-11 Meta’s Threads, US/EU Data Sharing, MOVEit Update, iOS Patch
Grab a cup of coffee and join Mick Baccio, Ryan Kovar and Audra Streetman for another episode of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - Threads Becomes Most Rapidly Downloaded App, Raising Twitter’s Ire - U.S. and E.U. Finalize Long-Awaited Deal on Sharing Data - Three new MOVEit bugs spur CISA warning as more victims report breaches - Apple Ships Urgent iOS Patch for WebKit Zero-Day Mick and Ryan competed in a 60 second charity challenge benefitting the Malala Fund to sha...
2023-07-11
47 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-JUNE-27 SolarWinds SEC, Iran Hack-and-Leak, MOVEit Fallout, Cyber Force
Grab a cup of coffee and join Mick Baccio, Ryan Kovar and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the livestream here. The team from Splunk will discuss the latest security news, including: - SolarWinds says SEC investigation ‘progressing to charges’ - The potent cyber adversary threatening to further inflame Iranian politics - Siemens Energy, UCLA latest confirmed victims in MOVEit hack - Turn your phone off every night for five minutes, Australian PM tells residents - Cyber Force for the...
2023-06-28
51 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Alex Pinto
Join Ryan Kovar and special guest Alex Pinto, Senior Manager of Threat Intelligence at Verizon for an interview about the key takeaways from the 2023 Verizon Data Breach Investigations Report (DBIR). You can watch the livestream of this episode here. Read the DBIR report Follow Alex on Twitter
2023-06-28
56 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-JUNE-13 Fortinet, Barracuda, MOVEit Transfer, CISA Directive, DPRK
Grab a cup of coffee and join Mick Baccio, Ryan Kovar and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the livestream of this episode here. The team from Splunk will discuss the latest security news, including: - Fortinet fixes critical RCE flaw in Fortigate SSL-VPN devices, patch now - Barracuda Urges Replacing — Not Patching — Its Email Security Gateways - MOVEit Transfer Vulnerability Advisory from CISA - STRT Analytic Story for MOVEit Transfer vulnerability - Americans should prepare for cyber sabotage from Chin...
2023-06-14
50 min
Coffee Talk with SURGe
Coffee Talk with SURGe: the Interview Series featuring Scott Roberts
Join Mick Baccio and special guest Scott Roberts, head of threat research at Interpres Security for an interview about Scott's career journey, how he's seen cybersecurity evolve over time, and his essay featured in the SURGe team's new book, Bluenomicon: The Network Defender’s Compendium. You can watch the livestream of this episode here.
2023-06-14
47 min
Coffee Talk with SURGe
Coffee Talk with SURGe: Volt Typhoon, CosmicEnergy, Pentagon Cyber Strategy, AI Risk
Grab a cup of coffee and join Mick Baccio and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the livestream here. The team from Splunk will discuss the latest security news, including: - Volt Typhoon targets US critical infrastructure with living-off-the-land techniques - COSMICENERGY: New OT Malware Possibly Related To Russian Emergency Response Exercises - Real-world experience' informs new Pentagon cyber strategy - Lender OneMain fined $4.25 million for cybersecurity lapses - A.I. Poses ‘Risk of Extinction,’ Industry Leaders Warn
2023-06-14
55 min
Coffee Talk with SURGe
Coffee Talk with SURGe: the Interview Series featuring Sydney Howard
Join Audra Streetman and special guest Sydney Howard, Principal Threat Hunter at Splunk for an interview about her career journey, why she thinks purple teaming is so important, and her approach to threat hunting. Links: - Introducing the PEAK Threat Hunting Framework - Hypothesis-Driven Hunting with the PEAK Framework - Model-Assisted Threat Hunting (M-ATH) with the PEAK Framework - SCYTHE Purple Team Exercise Framework
2023-06-14
18 min
Coffee Talk with SURGe
Coffee Talk with SURGe: Telegram Vulnerability, Dallas Ransomware Attack, Dragos, Snake Malware
Grab a cup of coffee and join Mick Baccio and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the livestream of this episode here. The team from Splunk will discuss the latest security news, including: - Software engineer publicly discloses Telegram vulnerability - Dallas says it 'will likely take weeks to get back to full functionality' after ransomware attack - Hackers attempt to extort Dragos and its executives in suspected ransomware attempt - Joint advisory on Hunting Russian Intelligence “Snake” Malware Mick...
2023-06-14
37 min
Coffee Talk with SURGe
Coffee Talk with SURGe: the Interview Series featuring DomainTools
Join David Bianco and special guest Aaron Gee-Clough, Senior Data Engineer at DomainTools for an interview about their collaboration for a research project evaluating the trustworthiness of certificate authorities (CAs) by analyzing five billion TLS certificates using Splunk. Watch the livestream of this episode here. Listen to the talk at RSA Conference 2023 RSA slides DomainTools 2021 report
2023-06-14
38 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-MAY-02 SolarWinds, US Marshals Service, OT Threat Sharing, Bluesky, RSA
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the livestream of this episode here. The team from Splunk will discuss the latest security news, including: - The DOJ Detected the SolarWinds Hack 6 Months Earlier Than First Disclosed - US Marshals Service still recovering from February ransomware attack affecting system used by fugitive hunters - Industrial security vendors partner to share intelligence about critical infrastructure threats Ryan and Mick competed in a...
2023-06-14
42 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-APR-25 The Interview Series live from RSA Conference
Grab a cup of coffee and join Mick Baccio and special guests Juan Andres Guerrero-Saade and Jon DiMaggio for another episode of Coffee Talk with SURGe, live from RSA Conference in San Francisco. Guerrero-Saade and DiMaggio are both contributing authors for Bluenomicon, a new book by SURGe that features stories and advice from security leaders and practitioners. You don't want to miss it! You can watch the livestream of this episode here.
2023-06-14
25 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-APR-18 NSO Group, LockBit macOS Encryptors, AI in CTI, MSFT Taxonomy
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the livestream of this episode here. The team from Splunk will discuss the latest security news, including: - Citizen Lab releases report on NSO Group's new zero-click exploit chains - LockBit ransomware encryptors found targeting Mac devices - Did someone really hack into the Oldsmar, Florida, water treatment plant? New details suggest maybe not. Mick and Ryan competed in a 60 sec...
2023-06-14
45 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Michael Haag
Join Coffee Talk with SURGe for our bi-weekly interview series. This week, Audra Streetman interviews Michael Haag, Senior Threat Researcher at Splunk. They'll discuss his YouTube show, Atomics on a Friday, along with the Living off the Land Drivers project, which aims to consolidate vulnerable and malicious drivers into a centralized location. Links: Episode livestream Splunk Threat Research Team Splunk blog about certificate abuse Splunk blog about IIS Modules Splunk content on Windows drivers LOLDrivers Project Form to submit drivers Atomic R...
2023-06-14
28 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 3CX Supply Chain Compromise, Medical Device SBOMs, Italy bans ChatGPT
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: -The Splunk Threat Research Team releases a blog with insights into the 3CX supply chain compromise -Medical device manufacturers in the US must soon provide SBOMs -Italy's data protection agency temporarily bans ChatGPT Audra and Mick competed in a 60 second charity challenge on whether or not they see...
2023-06-14
48 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Allan Liska
Join Coffee Talk with SURGe for our bi-weekly interview series. This week, SURGe member Shannon Davis interviews Allan Liska, threat intelligence analyst at Recorded Future and author of Ransomware: Understand. Prevent. Recover. They'll talk about the threat of ransomware, including recent trends, the impact of hack-back operations, and how organizations can become more resilient against attacks. Links: Watch the episode livestream Follow Allan on Twitter Learn more about Allan's book
2023-06-14
37 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-MAR-21 Oakland Ransomware Attack, BreachForums, Acropalypse, GPT-4
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - Oakland could be dealing with a second ransomware attack in two months - Notorious hacking forum shuts down after administrator gets arrested - Google Pixel flaw allowed recovery of redacted, cropped images Mick and Ryan shared their takes on responding to 0day vulnerabilities and the...
2023-06-14
50 min
Coffee Talk with SURGe
Coffee Talk with SURGe: The Interview Series featuring Sergio Caltagirone
Join us as we kick off our new bi-weekly 1-1 interview series, starting with Sergio Caltagirone. Sergio was formerly at NSA, Director of Threat Intelligence at Microsoft, VP of Threat Intelligence at Dragos, Technical Director of the Global Emancipation Network, now the founder and president of the Threat Intelligence Academy, and of course, co-author of The Diamond Model. We will talk about all the things threat intelligence, thought models, and probably a solid side of snark. Links: Episode livestream ChrisSanders.org Read the Cuckoos Egg Sergio's new a...
2023-06-14
48 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-MAR-07 National Cybersecurity Strategy, CVE-2023-21716, Health Data
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Kirsty Paine for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - Biden administration releases U.S. National Cybersecurity Strategy -PoC exploit for recently patched Microsoft Word RCE is public (CVE-2023-21716) -Ransomware moving into extortion of health data
2023-06-14
47 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-FEB-21 Twitter SMS 2FA, Ukraine Cyber Threat Landscape, Pyramid of Pain
Grab a cup of coffee and join David Bianco, Shannon Davis, and Audra Streetman for another episode of Coffee Talk with SURGe. The team from Splunk will discuss the latest security news, including: - Twitter plans to remove access to SMS 2FA for non-subscribing users https://blog.twitter.com/en_us/topics/product/2023/an-update-on-two-factor-authentication-using-sms-on-twitter - Google TAG, Mandiant, and Google Trust & Safety release a report analyzing how the war in Ukraine has impacted the cyber threat landscape https://blog.google/threat-analysis-group/fog-of-war-how-the-ukraine-conflict-transformed-the-cyber-threat-landscape/ David Bianco and Shannon Davis also competed in a c...
2023-06-14
25 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-FEB-07 ESXi servers, Royal Mail ransomware, Gamaredon, Bard AI
Grab a cup of coffee and join Ryan Kovar, Audra Streetman, and special guest David Bianco for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - VMware warns admins to patch ESXi servers, disable OpenSLP service - LockBit ransomware group threatens Royal Mail with data leak deadline - Russia-backed hacker group Gamaredon attacking Ukraine with info-stealing malware David and Ryan also competed in a 60 second charity challenge to share their ta...
2023-06-14
56 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-JAN-24 Ticketmaster, Apple Hardware Security Keys, Ukraine, Bias
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - Ticketmaster says a cyberattack disrupted Taylor Swift ticket sales - Apple iOS 16.3 arrives with support for hardware security keys - Ukraine signs an agreement to join the NATO cyber defense center - Google will stop exempting campaign email from automated spam detection Mick and Ry...
2023-06-14
39 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2023-JAN-10 LastPass, Slack, CircleCI, Chick-fil-A, CISA, ChatGPT
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - LastPass, Slack, and CircleCI notify customers of security incidents. - Chick-fil-A investigates reports of hacked customer accounts - CyberScoop reports: Insiders worry CISA is too distracted from critical cyber mission Mick and Ryan competed in a 60 second charity challenge to share their opinion of ChatGPT and its impact o...
2023-06-14
44 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-DEC-13 GovSummit, NIS2, Cyber Collaboration, Exercise Crossed Swords
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Kirsty Paine for a special episode of Coffee Talk with SURGe, live in Washington, DC for GovSummit. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - NIS2 is coming… What does it mean? - NDAA requires intelligence agencies to study creation of cyber collaboration program - Exercise Crossed Swords 2022 Kicks Off! The episode also features a special GovSummit segment featuring Splunk CEO Gary Steele and Juli...
2023-06-14
49 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-NOV-29 RansomBoggs, Log4Shell, Medibank Update, Twitter E2EE Messaging
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - ESET Research identifies a wave of ransomware attacks targeting organizations in Ukraine that they're calling #RansomBoggs - Cincinnati State College is added to Vice Society's leak site - Iranian Hackers use Log4Shell to mine crypto on a US Federal computer system - The extortion site used in...
2023-06-14
40 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-NOV-08 Election Security, OpenSSL, Medibank, Azov Ransomware, Mastodon
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - CISA reminds voters that there is no credible threat to voting equipment for the U.S. midterm elections. - Splunk released a blog last week about the OpenSSL vulnerabilities, which were downgraded from critical to high severity. - Medibank says it will not pay the ransom after data fo...
2023-06-14
29 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-OCT-25 DOJ China Espionage, Drizly Complaint, Text4Shell, U.S. Midterms
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - The DOJ announces charges against two Chinese intelligence officers accused of trying to subvert a U.S. criminal investigation involving a China-based telecom. - The FTC is taking action against Drizly, an online alcohol delivery service, for failing to take steps to protect consumer data. - Why Text4Shell is n...
2023-06-14
43 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-OCT-11 EU Data, Vice Society Ransomware, Killnet
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news, including: - President Joe Biden signs an executive order outlining a new data transfer framework between the EU and US. - Ransomware attacks disrupt programming for three Brazilian broadcasters and a bank in Brazil reportedly paid $950,000 in Bitcoin to a LockBit affiliate. - Healthcare providers associated with CommonSpirit Health are stil...
2023-06-14
39 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-SEPT-27 Ukraine, GRU Hactivist Coordination, Network Monitoring, Optus
Grab a cup of coffee and join Audra Streetman and special guests David Bianco and Haylee Mills for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The trio will discuss the latest cybersecurity news, including: - Officials in Ukraine say they believe the Kremlin is planning "massive cyberattacks on critical infrastructure" - Mandiant researchers at Google see Russia coordinating with hacktivists in cyberattacks tied to the Ukraine war - VICE reports on an internet monitoring tool purchased by the U.S. military ...
2023-06-14
36 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-SEPT-13 Mudge Testimony, Albania Cyberattacks, Vice Society
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk discussed the latest cybersecurity news, including: - Twitter’s former head of security, Peiter Zatko, testified in a Senate committee hearing about security concerns he claims the company ignored. - Albania reports a second cyberattack that officials attribute to the Iranian government. - CISA issues an alert about the Vice Society ransomware group targeting the education secto...
2023-06-14
41 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-AUG-30 Twitter Whistleblower, Roasting Oktapus, Montenegro Cyberattack
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk will discuss the latest security news including: - Twitter whistleblower Peter Zatko will testify at a Senate hearing on Sept. 13. - Group-IB published a blog about a phishing campaign targeting Okta identity credentials that they're calling "Roasting Oktapus." - Montenegro is dealing with cyberattacks targeting critical infrastructure. - Lloyd's plans to exclude catastrophic nation-backed cybe...
2023-06-14
39 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-AUG-16 Signal, FTC Data Privacy Rules, Conti Ransomware, E2EE
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. This week the team from Splunk discussed Signal's response to the Twilio breach, the FTC's effort to create new data privacy rules, and a $10 million reward for information about a suspected Conti ransomware operator. Mick and Ryan competed in a 60 second charity challenge benefiting The Hunger Project. They each took turns explaining the importance of encrypted comms following news of Facebook testing end-to-end encrypted messages on th...
2023-06-14
31 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-AUG-10 Live from Black Hat
Join Mick and Ryan as they travel to the desert to experience Hacker Summer Camp 2022. They'll discuss what exciting new cyber thought leadership they've picked up in a day or two, the heat, how much they miss Audra, and what's happened in the world since .conf22. You can watch the episode livestream here.
2023-06-14
22 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-JUNE-28 Iran Steel Industry, Killnet DDoS, LockBit 3.0, PowerShell
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk discussed the latest security news, including: Check Point Research's analysis of cyberattacks targeting Iran's steel industry Killnet launches DDoS attacks against Lithuanian government websites in response to EU sanctions affecting Kaliningrad LockBit announces a bug bounty program and the release of LockBit 3.0 Conti shuts down its Tor servers as affiliates infiltrate other ransomware operations ...
2023-06-14
33 min
Coffee Talk with SURGe
LIVE from .conf22: Coffee Talk with SURGe: 2022-JUNE-16 Snoop Dogg Concert, Security Session Recap
Join Ryan Kovar, Mick Baccio, and Audra Streetman live at .conf22 for a recap of the Splunk Insider Minicon and Boss of the SOC VII. The trio also highlights some of the security sessions at .conf22. You don't want to miss it! You can watch the episode livestream here.
2023-06-14
16 min
Coffee Talk with SURGe
Live from .conf22: Coffee Talk with SURGe: 2022-JUNE-15 Highlights and Security Sessions
Join Mick Baccio, Tony Iacobelli, and Audra Streetman live at .conf22 for a recap of the Splunk Insider Minicon and Boss of the SOC VII. The trio also highlights some of the security sessions at .conf22. You don't want to miss it! You can watch the episode livestream here.
2023-06-14
19 min
Coffee Talk with SURGe
Live from .conf22: Coffee Talk with SURGe: 2022-JUNE-14 Insider Minicon, Boss of the SOC VII
Join Ryan Kovar, Mick Baccio, and Audra Streetman live at .conf22 for a recap of the Splunk Insider Minicon and Boss of the SOC VII. The trio also highlights some of the security sessions at .conf22. You don't want to miss it! You can watch the episode livestream here.
2023-06-14
20 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-JUNE-09 RSA, Karakurt, Apple Passwords, Confluence, Follina/MSDT
Join the SURGe Team with a guest from the land down under, a recap of important news in the security landscape, a discussion on RSA, and a special interview with Danielle Jablanski of Nozomi Networks! You can watch the episode livestream here. This week Ryan Kovar, Audra Streetman, Mick Baccio, and Shannon Davis discussed CISA advisories about China state-sponsored threat actors and the data extortion group Karakurt plus an update on the Confluence and MSDT/Follina zero-days. Mick and Ryan competed in a 60 second charity challenge regarding Apple's plan to replace passwords with biometric authentication me...
2023-06-14
26 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-MAY-31 Follina MSDT Zero-Day, Ransomware Roundup, Supply Chain Risk
Grab a cup of coffee and join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk broke down the Follina/MSDT zero day vulnerability (CVE-2022-30190), rounded up the latest ransomware activity, and discussed supply chain risk related to Python and PHP libraries. Mick and Ryan competed in a 60 second charity challenge to explain LOLBins before taking a deep dive into the 2022 Verizon Data Breach Investigations Report. Microsoft Blog on CVE-2022-30190 REvil prosecution re...
2023-06-14
32 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-MAY-17 Conti Hits Costa Rica, Cardiologist Ransomware, CISA MSP Alert
Grab a cup of coffee and join Audra Streetman, Mick Baccio, and special guest Haylee Mills for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. The team from Splunk discussed a ransomware attack that prompted Costa Rica to issue a state of emergency, a cardiologist in Venezuela accused of building ransomware tools, and an alert from CISA warning about cyber threats to MSPs. This week Audra and Haylee competed in a 60 second charity challenge on "certs vs. degrees" in cybersecurity before taking a deep dive into Splunk Risk-Based Alerting....
2023-06-14
25 min
Coffee Talk with SURGe
Coffee Talk with SURGe! 2022-MAY-03 CISA Top Vulnerabilities, Mandiant Zero-Days, State of Security
Grab a cup of coffee and join Ryan Kovar, Audra Streetman, and Mick Baccio for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. This week the team from Splunk discussed CISA's list of the top exploited vulnerabilities for 2021, Mandiant's analysis of 80 zero-days exploited in the wild last year, and signs the ransomware group REvil may be back in operation. Mick and Ryan competed in a 60 second charity countdown on how to solve the talent crisis in cybersecurity before taking a deep dive into the topic of zero-days and vulnerability mi...
2023-06-14
30 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-APR-19 MS-RPC Vulnerability, Lazarus, Pipedream
Grab a cup of coffee and join Ryan Kovar, Audra Streetman, and Mick Baccio for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. This week the team from Splunk discussed the latest security news, including the MS-RPC vulnerability CVE 2022 26809, a CISA alert about the North Korean state-sponsored Lazarus Group, and Sunday's 60 Minutes episode on the threat of Russian cyberattacks targeting U.S. critical infrastructure. Mick and Ryan also competed in a 60 second charity challenge to explain why Americans should be concerned about the potential for a Russian cyberattack targeting U...
2023-06-14
31 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-APR-05 State Department, Elections, Spring4Shell, Certs, Lapsus$, RSAC
Grab a cup of coffee and join Ryan Kovar, Audra Streetman, and Mick Baccio for another episode of Coffee Talk with SURGe. You can watch the episode livestream here. This week the team discussed the takedown of Hydra, the U.S. State Department's new Bureau of Cyberspace and Digital Policy, and a coordinated phishing campaign aimed at targeting U.S. election officials in the lead up to the 2022 midterm elections. Mick and Ryan both competed in a 60 second charity challenge to explain the current situation regarding the Spring4Shell vulnerability. They also discussed the recent ar...
2023-06-14
31 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-MAR-22 Government Cyber Statements, Okta Breach, WiCyS
Bring a cup of coffee and tune in to join the SURGe security team for a recap of cybersecurity news and events, our 60-second charity challenge, and another topic deep dive! You can watch the episode livestream here. This week Audra Streetman, Mick Baccio, and Ryan Kovar discussed a recent warning from the Biden administration about Russian cyberattacks against the U.S. CISA and the FBI also released a joint advisory warning about possible threats to SATCOM networks in the U.S. and abroad. The trio also discussed claims that the Lapsus$ hacking group breached Okta along w...
2023-06-14
31 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-MAR-08 War in Ukraine, Attack Reporting, Ransomware, Days of Our Lives
Join Splunk's SURGe team for the latest in cybersecurity news, a deep-dive lesson into something near and dear to our hearts, and of course a 60-second charity challenge. You can watch the episode livestream here. In this episode, Audra Streetman, Mick Baccio, and Ryan Kovar discuss the war in Ukraine along with the latest cybersecurity guidance from Splunk. The trio also talked about the chat log leak tied to the Conti ransomware group and a Senate bill that would require critical infrastructure organizations to report cyberattacks to CISA within 72 hours. Mick and Ryan explained the be...
2023-06-14
30 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-FEB-22 Russia/Ukraine Conflict, CISA, and CNE
It's time for another recap of cybersecurity news, a 60-second explanation of security concepts benefitting a charity, and plenty of banter between SURGe's Mick Baccio, Ryan Kovar, and Audra Streetman! You can watch the episode livestream here. The team from Splunk discussed the latest security news, including: - What the Russia-Ukraine conflict means for network defenders with information from CISA and others - CISA's new online resource hub for free tools - Major chat channel outage causes issues around the world 60 second charity challenge: - Mick and R...
2023-06-14
30 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-FEB-08 Cyber Safety Review Board, News Corp, VBA Macros
Join Ryan Kovar, Mick Baccio, and Audra Streetman for another episode of Coffee Talk with SURGe where they'll discuss the new DHS Cyber Safety Review Board, a cyberattack targeting News Corp along with Microsoft's decision to block internet VBA macros by default in Office 365 apps. Mick and Ryan competed in a 60 second charity challenge to define a macro and explain how it can be used to deploy malware. They also discussed whether geopolitics should influence how organizations approach security and how the Diamond Model framework can help organizations with intrusion analysis.
2023-06-14
29 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-JAN-25 SANS CTI Summit, DHS Bulletin, Analysis of Competing Hypotheses
This week the Splunk security team was joined by two guest speakers: Rick Holland, Co-Chair of SANS CTI Summit and Scott R., head of threat hunting and cyber threat intelligence at Splunk. Audra Streetman provided an overview of the new memorandum signed by President Joe Biden aiming to improve cybersecurity for U.S. defense and intelligence agencies. The group also discussed a DHS bulletin, first reported by CNN that warns of the potential of a Russian cyberattack against the U.S. due to rising tensions in Ukraine. CISA also issued an alert regarding the threat of Russian state-sponsored cyberattacks...
2023-06-14
30 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-JAN-11 Log4Shell, FIN7 BadUSBs, Global Risks Report
Join Ryan Kovar, Mick Baccio, and Audra Streetman for this week's Coffee Talk with SURGe where they'll discuss an update from CISA and the FTC regarding Log4Shell and a warning from the FBI about FIN7 packages with BadUSBs. The trio will also discuss the 2022 Global Risks Report from the World Economic Forum. Mick and Ryan compete in a charity countdown to explain if they think cyber issues should be part of a "global risk" report. Finally, Mick and Ryan discuss the need for more risk analysis within organizations.
2023-06-14
28 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2022-JAN-04 Log4Shell, Ransomware, Data Harvesting, AirTags, RSA Postponed
Join the SURGe team for the first show of 2022 for a recap of recent security news and another 60 second charity challenge over a streaming cup of coffee.
2023-06-14
26 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2021-DEC-14 Ed Skoudis Interview about SANS Holiday Hack Challenge
Join Audra Streetman, Mick Baccio, and Ryan Kovar for another edition of Coffee Talk with SURGe featuring an interview with Dave Herrald and Ed Skoudis about what to expect in this year's SANS Holiday Hack Challenge. You can watch the full interview with Ed and Dave here.
2023-06-14
28 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2021-NOV-12 CYBERWARCON Interview with John Hultquist
Coffee Talk with SURGe, live at CYBERWARCON! We had some onsite technical difficulties but Mick Baccio and Ryan Kovar were able to overcome and give 25ish minutes of great content, including: - Audra Streetman interviews John Hultquist, founder of CYBERWARCON and vice president of intelligence analysis at Mandiant - 60 second charity countdown for VetSec charity (in honor of Veteran’s day) on “attribution.” - A quick run down of talks from CYBERWARCON that morning with a focus on Christopher Krebs‘ keynote. - Call out for our upcoming Coffee Talk with SURGe episodes...
2023-06-14
23 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2021-NOV-03 BlackMatter, NSO Group, 5G Networks
Join Audra Streetman, Ryan Kovar, and Mick Baccio for another episode of Coffee Talk with SURGe where they'll discuss the latest security news including BlackMatter's farewell, NSO Group, 5G networks, and Splunk's work to integrate CVE details into security content.
2023-06-14
25 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2021-OCT-21 .conf21, Spicy Cybersecurity Hot Takes
On this episode of Coffee Talk with the SURGe, Mick Baccio, Ryan Kovar, and Audra Streetman discuss cyber news and Splunk .conf21. Mick and Ryan also attempt to discuss internet cybersecurity hot takes while eating increasingly hot sauce on tofu in a new segment called "Burning Questions." You can watch the episode livestream here.
2023-06-14
26 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2021-OCT-06 BGP Hijacking, MFA, Twitch Leak, Ransomware
Join Mick Baccio and Ryan Kovar for another edition of Coffee Talk with SURGe where they break down BGP hijacking in 60 seconds for charity, the value of MFA in an interconnected world, the Twitch leak, dwell time, and Ransomware All Day Every Day.
2023-06-14
22 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2021-SEPT-21 Cloud Vulnerabilities, Federal Logging Mandates
Join Ryan Kovar and Mick Baccio for this week's Coffee Talk with SURGe where they'll discuss the latest news in Cloud Services Provider vulnerabilities, an update on U.S. federal logging mandates, and the usual witty banter and maybe even another 60 second challenge.
2023-04-18
21 min
Coffee Talk with SURGe
Coffee Talk with SURGe: 2021-SEPT-07 Confluence Vulnerability, OMB Memorandum
Join Ryan Kovar and Mick Baccio for this week's Coffee Talk with SURGe where they'll discuss the latest Confluence vulnerability along with attack surface management and the OMB Memorandum with tiered instructions on logging requirements.
2023-04-18
22 min
Federal Tech Podcast: for innovators, entrepreneurs, and CEOs who want to increase reach and improve brand awareness
Ep. 18 Splunk's SURGe: How to Get Immense Value from a Small Group
Ep. 18 Splunk's SURGe: How to get immense value from a small group A convincing argument can be made that Splunk is a leader in analyzing machine data for enterprise systems; ninety-two of the Fortune 100 use Splunk. They apply this skill set to the federal world and help enhance security and drive resilience. Because of this wide experience, they have seen many kinds of attacks like the infamous Solar Winds incident. There are many ways to respond to this amalgamation of knowledge. One can hold that knowledge behind a paywall and charge people. What is interesting...
2022-07-21
23 min