DiscoverIANS Cyber Intel
IANS Cyber Intel
Claim Ownership

IANS Cyber Intel

Author: IANS Research

Subscribed: 3Played: 4
Share

Description

IANS Cyber Intel Podcast addresses must-know-now topics, such as AI risk, prominent breaches, Zero Day exploitation, compliance updates, and much much more. Each podcast provides actionable, practical guidance for CISOs and Information Security professionals.

The podcast includes exclusive highlights from IANS client-only weekly Tech Briefings.

With ⁠IANS Research⁠, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams.
23 Episodes
Reverse
August 13th, 2025 Security Briefing with IANS Faculty ⁠Jake Williams⁠ and ⁠Jessica HebenstreitThis Episode Details:Exchange Server Vulns: Researchers from Outsider Security presented on a new vulnerability in Exchange Server on premises that could allow a threat actor to take control of associated M365 tenants under certain circumstances. The SonicWall Zero Day That Wasn’t: In July, security researchers noticed increased exploitation of SonicWall devices. This lead many to theorize that there was another zero day in SonicWall’s software.GitHub CEO Leaves, Microsoft Won’t Be Replacing Him: The CEO of GitHub, Thomas Dohmke, has announced he is leaving the company. Microsoft has announced it is not replacing Dohmke. Instead GitHub will no longer function as an independent organization from Microsoft.With ⁠IANS Research⁠, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams.Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice.
July 9th, 2025 Security Briefing with IANS Faculty ⁠Wolfgang Goerlich⁠ and ⁠Jessica Hebenstreit⁠This Episode Details:SEC and SolarWinds Make a Deal: The U.S. Securities and Exchange Commission (SEC) and SolarWinds have reached a preliminary agreement to settle the high-profile lawsuit stemming from the 2020 cyberattack.Instagram Rotating Certificates Daily: Earlier this year, the CA/Browser Forum agreed to drastically reduce the lifespan of public certificates (Ballot SC081v3). The agreed upon enforcement schedule is 398 days in 2025, 200 days starting in 2026, 100 days starting in 2027, and 47 days starting in 2029.IT Supplier the Latest Ransomware Victim: Ingram Micro found itself grappling with a ransomware incident that took key internal systems offline just as the July 4 holiday weekend began. While details remain thin and statements tight-lipped, what’s emerging looks like a familiar but increasingly frustrating playbook: Attackers leveraged credential-based access to a Palo Alto GlobalProtect VPN, moved laterally, and escalated privileges.With ⁠IANS Research⁠, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams.Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice.
June 4th, 2025 Security Briefing with IANS Faculty Jake Williams and Jessica HebenstreitThis Episode Details:Virgin Media O2 Exposed Customers’ Geolocations: A network security flaw in Virgin Media O2’s 4G network and Wi-Fi calling features exposed sensitive customer data, including geolocation via Cell ID, SIM card information, and phone model details.ConnectWise Breached by Nation-State Actors: On May 28, 2025, ConnectWise confirmed it had “recently learned of suspicious activity within our environment that we believe was tied to a sophisticated nation-state actor, which affected a very small number of ScreenConnect customers.”Zscaler Acquires MDR Provider Red Canary: On May 27, 2025, Zscaler announced an agreement to acquire Red Canary, a leading Managed Detection and Response (MDR) provider. This move reflects the ongoing consolidation and platformization trend across the cybersecurity market.With ⁠IANS Research⁠, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams.Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice.
April 30th, 2025 Security Briefing with IANS Faculty Dave Shackleford⁠⁠⁠⁠ and ⁠⁠Shannon LietzThis Episode Details: Verizon DBIR 2025: In this year’s version of the Verizon Data Breach Investigations Report (DBIR), there were several main takeaways.State of Mobile Security 2025: With adversaries' growing interest in mobile attack vectors, this year’s State of Mobile Security report by NowSecure introduces a need to help users understand that they should minimize what they add to their phones.Darcula Gets GenAI Features: Netcraft researchers have documented the extension of Darcula with GenAI features, reducing the barrier to entry for attackers looking to create their own phishing campaigns.With ⁠IANS Research⁠, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams.Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice.
April 9th, 2025 Security Briefing with IANS Faculty ⁠⁠⁠⁠Jake Williams⁠⁠⁠ and ⁠Jessica Hebenstreit⁠This Episode Details: EU Companies Exploring Alternatives to US Cloud Providers - WIRED reported that some EU companies are exploring ways to de-risk their involvement with U.S. cloud providers by looking at alternatives to Amazon, Google, and Microsoft.More Cuts at CISA - Reporters at Politico (among others) are reporting additional staffing cuts coming to CISA imminently. Some reports detail expectations of as many as 1300 of CISA's 3300 remaining staff to be cut.Novel Supply Chain Bug Bounty - In February, Roni Carta (aka Lupin) published a post-mortem on a bug bounty that involved a complex supply chain attack. The impact was so severe that the organization paid Carta and his partner Snorlhax $50k for the reportWith ⁠IANS Research⁠, get security expertise at speed. IANS Research is a clear-headed resource for decision making and articulating risk, providing experience-based security insights for Chief Information Security Officers and their teams.Any views or opinions presented in this document are solely those of the Faculty and do not necessarily represent the views and opinions of IANS. Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our written reports, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by the client in connection with such information, opinions, or advice.
loading
Comments