Protecting the Neglected: Measuring County Cyber Risk with Dr. Ido Sivan Sevilla

Protecting the Neglected: Measuring County Cyber Risk with Dr. Ido Sivan Sevilla

Dr. Ido Sivan Sevilla joins host Caleb Tolin⁠⁠⁠ to break down battlefield stories from a massive analysis of over 3,000 local government entities. Dr. Sivan Sevilla, who serves as an Assistant Professor at the UMD College of Information and holds joint positions at the Hebrew University School of Public Policy & Governance and the School of Computer Science and Engineering, brings a multidisciplinary lens to the alarming reality of risk clusters. Their discussion moves past theory to explore how hundreds of counties share identical IP addresses and third-party service providers, creating centralized points of failure that attackers can identify using data. The dialogue highlights the dual-use nature of modern AI models. While these tools allow adversaries to automate exploit generation for open-source software, Dr. Sivan Sevilla, leveraging his expertise as founder of UMD's Tech Policy Hub, explains how defenders can use AI operations to map their own attack surfaces for free. By utilizing honeypots and large language models, limited-resource organizations can transition from reactive patching to a proactive posture. The episode concludes with a strategic look at identity resilience, advocating for adaptive regulations that learn from compliance data rather than static, outdated legislative mandates. Resources CISA KEV Catalog: https://www.cisa.gov/known-exploited-vulnerabilities-catalog This research was conducted by Dr. Ido Sivan Sevilla, Dr. Charles Harry, and Mr. Mark McDermot, with additional support from student researcher Mr. Parthav Poudel What You’ll Learn How to prioritize the 3% of vulnerabilities that actually result in real-world exploitation. The definition of attack surface diversity versus severity in measuring county level risk. The impact of LLMs on identifying flaws in open source software for attackers and defenders. Why risk clusters create a single point of failure for hundreds of independent county governments. Methods for conducting ethical passive reconnaissance to map organizational security postures from the outside. How adaptive regulations can improve compliance by learning from real-time security data and metrics. The strategic benefit of using honeypots to monitor targeted threats against limited-resource digital infrastructure.

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(66)

Downtime in Healthcare is Fatal: Achieving Resilience in Health & Life Sciences

Downtime in Healthcare is Fatal: Achieving Resilience in Health & Life Sciences

Please enjoy this encore of Data Security Decoded. Cybersecurity in healthcare is undergoing a critical shift. What was once viewed as a back-office IT concern is now directly tied to patient safety...

29 Syys 25min

The Terrorist Designation: A New Red Line for Ransomware with Cynthia Kaiser

The Terrorist Designation: A New Red Line for Ransomware with Cynthia Kaiser

Please enjoy this encore of Data Security Decoded. In this episode, host⁠⁠ ⁠Caleb Tolin⁠⁠⁠ explores the battlefield of enterprise defense, which has moved from simple data theft to ultra heinous cri...

15 Syys 29min

Agentic AI and Identity Sprawl

Agentic AI and Identity Sprawl

Please enjoy this encore of Data Security Decoded. In this episode of ⁠Data Security Decoded⁠, join host ⁠Caleb Tolin⁠ as he welcomes back ⁠Joe Hladik⁠, Head of Rubrik Zero Labs, to unpack the findi...

8 Syys 24min

AI Moves Fast. Privacy Has to Move Faster.

AI Moves Fast. Privacy Has to Move Faster.

Enjoy this encore of Data Security Decoded. AI promises speed, scale, and efficiency—but it also magnifies privacy risk in ways many organizations aren’t prepared for. In this episode, ⁠Caleb Tolin⁠...

25 Elo 25min

The Real Risks of Agentic AI in the Enterprise

The Real Risks of Agentic AI in the Enterprise

Please enjoy this encore of Data Security Decoded. As enterprises race to adopt AI, many are discovering that traditional security models no longer hold. In this episode of Data Security Decoded, ho...

18 Elo 27min

Top CISO Priorities and Global Digital Trust with Morgan Adamski

Top CISO Priorities and Global Digital Trust with Morgan Adamski

Please enjoy this encore of Data Security Decoded. Welcome to ⁠Data Security Decoded⁠. Join host ⁠Caleb Tolin⁠ in conversation with ⁠Morgan Adamski⁠ who leads Cyber, Data, and Tech Risk at PwC and i...

11 Elo 23min

Building Automation Frameworks and Tackling Cloud Archiving with Fred Lhoest

Building Automation Frameworks and Tackling Cloud Archiving with Fred Lhoest

This episode delivers operational insights from the frontlines of global telecommunications, drawing on Fred Lhoest's experience managing IT infrastructure across 60 countries at PCCW Global. The disc...

28 Heinä 17min

Securing Research Infrastructure and Managing Shadow AI with Kevin Mortimer

Securing Research Infrastructure and Managing Shadow AI with Kevin Mortimer

This episode explores the technical hurdles of protecting academic research environments and navigating the shift to automated cloud architectures, drawing on Kevin Mortimer's twenty five years of tec...

21 Heinä 29min

Suosittua kategoriassa Liike-elämä ja talous

sijotuskasti
vallattomat
mimmit-sijoittaa
rss-rahapodi
rss-oivalluksia-rahasta-elamasta
psykopodiaa-podcast
ostan-asuntoja-podcast
oppimisen-psykologia
rss-rahamania
rss-kaupan-tila
rss-hereilla
rss-startup-ministerio
rss-inderes
rss-paasipodi
rahapuhetta
rss-sami-miettinen-neuvottelija
asuntoasiaa-paivakirjat
sijoitusovi-podcast
rss-karon-grilli
rss-bisnesta-bebeja