Enterprise Security Weekly (Audio)

Insider threats, migrating away from cloud, RSAC interviews with Cyera and Blumira - Rob Allen, Matthew Warner, Yotam Segev - ESW #411

Jun 16, 2025
Rob Allen, Chief Product Officer at ThreatLocker, specializes in insider threats and endpoint security. Yotam Segev, CEO of Cyera, leads discussions on cloud data security and its classification challenges. Matthew Warner, CEO of Blumira, focuses on making cybersecurity accessible to SMBs. They explore the rising trend of hybrid and edge computing, the significance of insider threats, and the critical evolution in data security practices. Insights from RSAC 2025 highlight how organizations can navigate emerging complexities in cybersecurity.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

Cyber CEO's Hallucinogenic Pen Test

  • A cybersecurity CEO wrote PowerShell malware on a hospital PC during a paranoia episode, thinking he was pen testing.
  • He uploaded screenshots every 20 minutes to an external location but was caught due to hospital staff keen physical security.
ANECDOTE

PowerShell Used for Screenshot Exfiltration

  • The PowerShell script took screenshots every 20 minutes and uploaded them outside the hospital network.
  • Rob Allen demonstrated how to modify this script to take screenshots every minute and upload them elsewhere.
ADVICE

Simple Security Hygiene Matters

  • Lock your computers and avoid leaving passwords on sticky notes attached to machines.
  • Limit PowerShell availability and restrict its network access to prevent malicious use.
Get the Snipd Podcast app to discover more snips from this episode
Get the app