

PP061: Comparing Breach Reports, RSAC 2025 Highlights, and a Security Awareness Soapbox
May 6, 2025
Recent breach reports indicate that the dwell times for threat actors are significantly reducing, but there are some important considerations. Insights from the RSA Conference shed light on cybersecurity challenges, including the need for transparency in security disclosures. With credential management at the forefront, password updates and the use of managers are stressed. The podcast also delves into the complexities of implementing effective cybersecurity training programs in organizations, highlighting innovative strategies for better compliance.
AI Snips
Chapters
Transcript
Episode notes
Advocate For Wide Vulnerability Disclosure
- Vendors should disclose vulnerabilities publicly and communicate early and broadly with users to enhance protection.
- Relying solely on private notifications limits awareness and risks leaving exposed systems unprotected.
JJ's Home Security Talk
- Jennifer JJ Bonilla shared her experience presenting at RSA on home network security with a focus on Wi-Fi.
- She created a three-tier approach for casual users, DIY admins, and targeted professionals with enterprise-grade needs.
Practical Password Management
- Use password managers properly to handle hundreds of unique passwords securely.
- Keep a few critical passwords memorized and do not store them digitally.