943 épisodes

If you’re looking for advice and information on enterprise security solutions, look no further than Enterprise Security Weekly! We give you an “insider” perspective into security vendors, including coverage on new product announcements, integrations, funding, M&A, and more! Adrian, Tyler, Katie, and Sean have unique perspectives on the enterprise security landscape. All four hosts are former analysts. Adrian has been a consultant, practitioner, founder, and runs Security Weekly Labs. Tyler has spent many years as a marketing executive for security vendors. Katie has also recently moved to a vendor marketing role. Sean is founder and CTO at Trimarc Security, a professional services company which focuses on improving enterprise security. Together they provide valuable resources for protecting the enterprise and following the market each week!

Enterprise Security Weekly (Video‪)‬ Security Weekly Productions

    • Actualités

If you’re looking for advice and information on enterprise security solutions, look no further than Enterprise Security Weekly! We give you an “insider” perspective into security vendors, including coverage on new product announcements, integrations, funding, M&A, and more! Adrian, Tyler, Katie, and Sean have unique perspectives on the enterprise security landscape. All four hosts are former analysts. Adrian has been a consultant, practitioner, founder, and runs Security Weekly Labs. Tyler has spent many years as a marketing executive for security vendors. Katie has also recently moved to a vendor marketing role. Sean is founder and CTO at Trimarc Security, a professional services company which focuses on improving enterprise security. Together they provide valuable resources for protecting the enterprise and following the market each week!

    • video
    Crazy money and crazy outcomes - cybersecurity acquisitions in all shapes and sizes - ESW #358

    Crazy money and crazy outcomes - cybersecurity acquisitions in all shapes and sizes - ESW #358

    This week, Adrian and Tyler discuss some crazy rumors - is it really possible that a cloud security startup valued at over $8 billion in November 2021 just got bought for $200 million???
    Some healthy funding for Cyera and Cohesity ($300m and $150m, respectively)
    Onum, Alethea, Sprinto, Andesite AI, StrikeReady, YL-Backed Miggo, Nymiz, Salvador Technologies, and Simbian all raise smaller seed, A, or B rounds.
    Akamai picks up API security startup, Noname Security, Zscaler picks up Airgap networks, and it's rumored that Armis will acquire Silk Security for $150M.
    LimaCharlie seems to be doing some vertical growth, adding its own response and automation capabilities (what they call "bi-directional" capabilities). CISA releases a malware analysis system to the general public. Boostsecurity.io releases "poutine", an open source CI/CD pipeline vulnerability scanner.
    Some great essays this week, with Phil Venables' Letter from the Future, Ben Hawkes' Robots Dream of Root Shells, and Aileen Lee's 10 year Unicorn anniversary piece.
    We briefly discuss the 3rd party breach that affected Cisco Duo customers, and the financial impact of Change Healthcare's highly disruptive ransomware incident.
    Finally, we talk about the latest research on the security of LLMs and the apps using them. It's not looking great.
    For more details, check out the show notes here: https://www.scmagazine.com/podcast-episode/3188-enterprise-security-weekly-358
    Show Notes: https://securityweekly.com/esw-358

    • 1h 6 min
    • video
    From Hackers to Streakers - How Counterintelligence Teams are Protecting the NFL - Joe McMann - ESW #358

    From Hackers to Streakers - How Counterintelligence Teams are Protecting the NFL - Joe McMann - ESW #358

    Protecting a normal enterprise environment is already difficult. What must it be like protecting a sports team? From the stadium to merch sales to protecting team strategies and even the players - securing an professional sports team and its brand is a cybersecurity challenge on a whole different level.
    In this interview, we'll talk to Joe McMann about how Binary Defense helps to protect the Cleveland Browns and other professional sports teams.
    Show Notes: https://securityweekly.com/esw-358

    • 41 min
    • video
    The AI-est news segment ever, now with even more AI! - ESW #357

    The AI-est news segment ever, now with even more AI! - ESW #357

    This week, Tyler and Adrian discuss Cyera's $300M Series C, which lands them a $1.4B valuation! But is that still a unicorn? Aileen Lee of Cowboy Ventures, who coined the term back in 2013, recently wrote a piece celebrating the 10th anniversary of the term, and revisiting what it means. We HIGHLY recommend checking it out: https://www.cowboy.vc/news/welcome-back-to-the-unicorn-club-10-years-later
    They discuss a few other companies that have raised funding or just come out of stealth, including Scrut Automation, Allure Security, TrojAI, Knostic, Prompt Armor.
    They discuss Eclipsium's binary analysis tooling, and what the future of fully automated security analysis could look like.
    Wiz acquired Gem, and Veracode acquired Longbow. Adrian LOVES Longbow's website, BTW.
    They discuss a number of essays, some of which are a must read:
    Daniel Miessler's Efficient Security Principle Subsalt's series on data privacy challenges Lucky vs Repeatable, a must-read from Morgan Housel AI has Flown the Coop, the latest from our absent co-host, Katie Teitler-Santullo Customer love by Ross Haleliuk and Rami McCarthy We briefly cover some other fun - reverse typosquatting, AI models with built-in RCE, and Microsoft having YET ANOTHER breach.
    We wrap up discussing Air Canada's short-lived AI-powered support chatbot.
    Show Notes: https://securityweekly.com/esw-357

    • 1h 6 min
    • video
    Understanding KillNet and Recent Waves of DDoS Attacks - Michael Smith - ESW #357

    Understanding KillNet and Recent Waves of DDoS Attacks - Michael Smith - ESW #357

    In the days when Mirai emerged and took down DynDNS, along with what seemed like half the Internet, DDoS was as active a topic in the headlines as it was behind the scenes (check out Andy Greenberg's amazing story on Mirai on Wired). We don't hear about DDoS attacks as much anymore. What happened?
    Well, they didn't go away. DDoS attacks are a more common and varied tool of cybercriminals than ever. Today, Michael Smith is going to catch us up on the state of DDoS attacks in 2024, and we'll focus particularly on one cybercrime actor, KillNet.
    Segment Resources:
    Understanding DDoS Attacks: What is a DDoS Attack and How Does it Work? What is An Application-Layer DDoS Attack, and How Do I Defend Against Them? 2023 DDoS Statistics and Trends https://en.wikipedia.org/wiki/Killnet Show Notes: https://securityweekly.com/esw-357

    • 36 min
    • video
    Getting Vulnerability Management Back on the Rails - Patrick Garrity - ESW #356

    Getting Vulnerability Management Back on the Rails - Patrick Garrity - ESW #356

    NVD checked out, then they came back? Maybe?
    Should the xz backdoor be treated as a vulnerability?
    Is scan-driven vulnerability management obsolete when it comes to alerting on emerging threats?
    What were some of the takeaways from the first-ever VulnCon?
    EPSS is featured in over 100 security products, but is it properly supported by those that benefit from it?
    How long do defenders have from the moment a vulnerability is disclosed to patch or mitigate it before working exploits are ready and in the wild?
    There's SO much going on in the vulnerability management space, but we'll try to get to the bottom of some of in in this episode. In this interview, we talk to Patrick Garrity about the messy state of vulnerability management and how to get it back on the rails.
    Segment Resources:
    Exploitation TImelines NVD Sources for known exploitation Exploitation in the Wild - Rockstar Show Notes: https://securityweekly.com/esw-356

    • 52 min
    • video
    Have you heard about AI? Lots of AI news. Also, RSA conference, and RooBadges! - ESW #356

    Have you heard about AI? Lots of AI news. Also, RSA conference, and RooBadges! - ESW #356

    As we near RSA conference season, tons of security startups are coming out of stealth! The RSA Innovation Sandbox has also announced the top 10 finalists, also highlighting early stage startups that will be at the show.
    In this week's news segment,
    We discuss the highlights of the Cyber Safety Review Board's detailed and scathing report on Microsoft's 2023 breach We spend a bit of time on the xz backdoor, but not too much, as it has been covered comprehensively elsewhere We discover half a dozen of the latest startups to receive funding or come out of stealth: Coro, Skyflow, Zafran, Permiso, Bedrock Security, Abstract Security, and Sandfly Apple is reportedly going to have some big AI announcements this summer, and we discuss how overdue voice assistants are for an LLM makeover. Finally, we discuss the amazing innovation that is the Volkswagen RooBadge! By the way, the thumbnail is a reference to the xz backdoor link we include in the show notes: https://lcamtuf.substack.com/p/technologist-vs-spy-the-xz-backdoor
    Show Notes: https://securityweekly.com/esw-356

    • 1h 5 min

Classement des podcasts dans Actualités

LEGEND
Guillaume Pley
Les Grosses Têtes
RTL
Les actus du jour - Hugo Décrypte
Hugo Décrypte
L’Heure du Monde
Le Monde
C dans l'air
France Télévisions
Géopolitique
France Inter

D’autres se sont aussi abonnés à…

CyberWire Daily
N2K Networks
CISO Series Podcast
David Spark, Mike Johnson, and Andy Ellis
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
Johannes B. Ullrich
Markets Daily Crypto Roundup
CoinDesk
AWS Podcast
Amazon Web Services
Cyber Security Headlines
CISO Series