DiscoverSysAdmin Weekly019 - What Counts as a Security Breach (and What Doesn't)
019 - What Counts as a Security Breach (and What Doesn't)

019 - What Counts as a Security Breach (and What Doesn't)

Update: 2025-08-27
Share

Description

"Compromised." We throw the word around like everyone agrees what it means, but do we?

This week, Andy and Eric dig into the many faces of compromise in a security context and why it’s not a simple definition

In this episode:

- What actually counts as a security compromise (and why the answer is “it depends”)

- Full breach vs. partial breach: Does it even matter?

- Why lateral movement should keep you up at night

- Session token hijacking in M365 and why MFA isn’t a silver bullet

- The Myth of the Green Matrix Terminal Hacker (aka Hollywood hacking nonsense)

- How risk profiling and layered defenses can contain the blast radius

- Real-world detection failures and the “10,000 alert problem”

- Practical steps to tune logs, outsource monitoring, and avoid burnout


📬 Reminder! - You can subscribe to the SysAdmin Weekly Companion Newsletter (link below) or email your own security horror story to contact@sysadminweekly.com!


Episode Resources:

- SysAdmin Weekly Companion Newsletter

- AndyOnTech

- Project Runspace

- SysAdmin Weekly 012 - Identity is the New Firewall

- Evilginx (Reverse Proxy Phishing Toolkit)

- Debian 13 “Trixie” Release Notes

- Ghost CMS Overview

Comments 
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

019 - What Counts as a Security Breach (and What Doesn't)

019 - What Counts as a Security Breach (and What Doesn't)

Andy Syrewicze and Eric Siron