

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec
Jerry Bell and Andrew Kalat
Defensive Security is a weekly information security podcast which reviews recent high profile cyber security breaches, data breaches, malware infections and intrusions to identify lessons that we can learn and apply to the organizations we protect.
Episodes
Mentioned books

Jul 3, 2018 • 43min
Defensive Security Podcast Episode 221
https://www.esecurityplanet.com/network-security/security-projects-cisos-should-consider-gartner.html
https://www.canadianunderwriter.ca/legal/data-breach-defendant-must-hand-computer-forensics-reports-court-1004133756
https://www.theregister.co.uk/2018/06/26/digitally_signed_malware/
https://www.bankinfosecurity.com/californias-new-privacy-law-its-almost-gdpr-in-us-a-11149
https://blog.erratasec.com/2018/06/lessons-from-npetya-one-year-later.html

Jun 28, 2018 • 40min
Defensive Security Podcast Episode 220
https://www.wired.com/story/exactis-database-leak-340-million-records/
https://www.helpnetsecurity.com/2018/06/19/opm-breach-fraud/
https://www.tenable.com/blog/should-you-still-prioritize-exploit-kit-vulnerabilities

Jun 19, 2018 • 36min
Defensive Security Podcast Episode 219
https://www.csoonline.com/article/3276584/ransomware/what-does-a-ransomware-attack-cost-beware-the-hidden-expenses.html
https://www.bankinfosecurity.com/mental-health-provider-pays-ransom-to-recover-data-a-11040
https://www.itbusinessedge.com/blogs/data-security/did-we-see-our-first-data-breach-of-the-gdpr-era.html

May 28, 2018 • 52min
Defensive Security Podcast Episode 218
https://www.zdnet.com/article/wannacry-ransomware-crisis-one-year-on-are-we-ready-for-the-next-global-cyber-attack/
https://www.zdnet.com/article/enterprise-vulnerability-management-as-effective-as-random-chance/
https://www.zdnet.com/article/enterprise-codebases-plagued-by-open-source-vulnerabilities/
https://www.databreachtoday.com/nuance-communications-breach-affected-45000-patients-a-11002

Apr 24, 2018 • 45min
Defensive Security Podcast Episode 217
https://www.csoonline.com/article/3262168/ransomware/customers-describe-the-impact-of-the-allscripts-ransomware-attack.html
https://www.infosecurity-magazine.com/news/atlanta-city-splurges-27m/
https://arstechnica.com/information-technology/2018/04/insecure-rsa-conference-app-leaked-attendee-data/
https://www.wired.com/story/inside-the-unnerving-supply-chain-attack-that-corrupted-ccleaner/

Apr 21, 2018 • 53min
Defensive Security Podcast Episode 216
https://www.verizonenterprise.com/verizon-insights-lab/dbir/

Apr 13, 2018 • 52min
Defensive Security Podcast Episode 215
https://www.bankinfosecurity.com/nj-ag-smacks-practice-hefty-fine-for-vendor-breach-a-10774
https://www.bankinfosecurity.com/panera-bread-data-leak-persisted-for-eight-months-a-10760
http://www.eweek.com/security/best-buy-delta-sears-hit-by-third-party-chat-widget-breach
http://www.baltimoresun.com/news/maryland/crime/bs-md-ci-hack-folo-20180328-story.html

Mar 29, 2018 • 50min
Defensive Security Podcast Episode 214
https://www.csoonline.com/article/3265024/privacy/are-you-letting-gdpr-s-privacy-rules-trump-security.html
http://www.zdnet.com/article/doj-indicts-iranian-hackers-for-stealing-data-from-144-us-universities/
https://www.databreachtoday.com/report-guccifer-20-unmasked-at-last-a-10737
https://www.databreachtoday.com/expedias-orbitz-suspects-880000-payment-cards-stolen-a-10729
https://www.csoonline.com/article/3266364/security/samsam-group-deletes-atlantas-contact-portal-after-the-address-goes-public.html
https://www.securityweek.com/top-vulnerabilities-exploited-cybercriminals

Mar 21, 2018 • 42min
Defensive Security Podcast Episode 213
https://www.theguardian.com/business/2018/mar/14/equifax-insider-trading-data-breach-jun-ying-charged
https://gizmodo.com/us-power-company-fined-2-7-million-over-security-flaws-1823745994
https://www.csoonline.com/article/3262551/data-protection/are-your-employees-unwittingly-invalidating-your-cyber-liability-insurance.html
https://www.cisecurity.org/controls/

Mar 13, 2018 • 1h 8min
Defensive Security Podcast Episode 212
https://www.csoonline.com/article/3258817/data-breach/sec-guidance-on-it-security-would-you-report-security-risks-before-a-breach.html
http://www.zdnet.com/article/hackers-are-selling-legitimate-code-signing-certificates-to-evade-malware-detection/
http://au.news.yahoo.com/a/39380423/equifax-expects-net-200-million-in-breach-related-costs-in-2018/
http://www.eweek.com/security/crowdstrike-reveals-time-to-breakout-as-key-cyber-security-metric
https://www.securityweek.com/sophisticated-cyberspies-target-middle-east-africa-routers