CCT 360: SSA Whistleblower and the Thumb Drive: What CISSP Asset Security Tells Us About This Disaster

CCT 360: SSA Whistleblower and the Thumb Drive: What CISSP Asset Security Tells Us About This Disaster

Send us Fan Mail Imagine hearing a claim that the most sensitive identity data in the United States could be sitting on a personal thumb drive. That allegation is still unverified and under investigation, but it gives us a rare chance to see CISSP Domain 2 asset security in real time, with consequences that go far beyond a typical data breach. I walk through what’s being reported about Social Security Administration data access and potential copying, then I put on the Domain 2 lens: data cla...

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(366)

CCT 362: Security Assessment Strategies & Abandoned Cloud Storage Risks (CISSP 6.1) - REPLAY

CCT 362: Security Assessment Strategies & Abandoned Cloud Storage Risks (CISSP 6.1) - REPLAY

Send us Fan Mail That forgotten cloud storage you stopped thinking about months ago can become a real attack path today. We start with a simple but dangerous scenario: abandoned AWS S3 buckets and oth...

20 Juli 34min

CCT 361: Bad Epoll - Root Access in 6 Instructions

CCT 361: Bad Epoll - Root Access in 6 Instructions

Send us Fan Mail A six-instruction timing glitch in the Linux kernel can be the difference between “low-priv user” and full root control, and that is why we dig into the Bad EPoll vulnerability from a...

13 Juli 32min

CCT 359: ShinyHunters vs. Oracle — Supply Chain Risk Every CISSP Must Know

CCT 359: ShinyHunters vs. Oracle — Supply Chain Risk Every CISSP Must Know

Send us Fan Mail A vendor gets breached and suddenly your perimeter does not matter, because the attacker does not need to “hack” you. They just reuse the access you already approved. That’s the core ...

29 Juni 43min

CCT 358: EDR Bypass Ransomware: The Gentle Killer Threat Every CISSP Must Know

CCT 358: EDR Bypass Ransomware: The Gentle Killer Threat Every CISSP Must Know

Send us Fan Mail Your endpoint tool can be world class and still get taken out first. That’s the unsettling reality behind a new wave of “EDR killer” capabilities being packaged inside ransomware-as-a...

22 Juni 43min

CCT 357: Is Your Encrypted Data Already Stolen? Quantum Risk & Supply Chain Attacks for CISSP

CCT 357: Is Your Encrypted Data Already Stolen? Quantum Risk & Supply Chain Attacks for CISSP

Send us Fan Mail Someone is stealing encrypted data right now and they are not trying to read it today. They are saving it for later, betting that quantum computing will eventually break the encryptio...

15 Juni 32min

CCT 356: Supply Chain Attacks Are Exploding in 2026 — Here's What the NCSC Wants You to Do

CCT 356: Supply Chain Attacks Are Exploding in 2026 — Here's What the NCSC Wants You to Do

Send us Fan Mail Your software is only as trustworthy as the dependencies you quietly inherit and attackers know it. Today I break down the NCSC warning on software supply chain security and why open ...

8 Juni 41min

CCT 355: Zapier Breach Lessons For Cloud Security and Setting Up TPRM Program in 15 Minutes

CCT 355: Zapier Breach Lessons For Cloud Security and Setting Up TPRM Program in 15 Minutes

Send us Fan Mail The breach that takes down a company often does not kick in the front door. It walks in through a “simple” integration you set up months ago, powered by a token no one remembered to r...

4 Juni 24min

Populärt inom Utbildning

historiepodden-se
det-skaver
rss-bara-en-till-om-missbruk-medberoende-2
harrisons-dramatiska-historia
nu-blir-det-historia
not-fanny-anymore
rss-viktmedicinpodden
allt-du-velat-veta
johannes-hansen-podcast
sektledare
rikatillsammans-om-privatekonomi-rikedom-i-livet
sa-in-i-sjalen
i-vantan-pa-katastrofen
rss-basta-livet
roda-vita-rosen
rss-traningsklubben
sex-pa-riktigt-med-marika-smith
vi-gar-till-historien
rss-ar-det-rimligt
rss-dr-bjorklund