2023 BH #2
View Show IndexSegments
1. Getting Security Right in a Cloud Native World – Jason Rolleston – BH23 #2
Modern applications are transforming how businesses serve their customers, employees, and partners. But they also challenge security teams with limited to no visibility or control while expanding an organization’s attack surface. Jason Rolleston, vice president and general manager of VMware Carbon Black, discusses how security teams can enable their companies to safely adopt modern application environments.
Segment Resources:
https://blogs.vmware.com/security/2023/07/announcing-cloud-native-detection-and-response-for-carbon-black.html
This segment is sponsored by VMWare Carbon Black. Visit https://securityweekly.com/vmwarebh to learn more about them!
Guest
Jason is an accomplished business executive with experience across multiple technologies and a passion for cybersecurity. He has expertise managing businesses at scale while also developing next generation capabilities for adjacent opportunities. Jason joined VMware in 2021 to lead product management for VMware Carbon Black. Prior to VMware, Jason most recently served as Chief Product Officer at Kenna Security where he lead product management, product marketing, and business development. Prior to Kenna security, he was Vice President for Security Operations Products at McAfee, where he was responsible for McAfee’s security operations products, including SIEM, endpoint detection and response, behavioral analytics, and sandboxing. Prior to that, he served as Head of Product Management for Enterprise Routing at Cisco and held several senior positions at Symantec. He holds a B.S. in applied physics and a masters in engineering management from Cornell University, and an MBA from the University of Chicago Booth School of Business.
Host
2. Top Mobile App Attacks Targeting the World’s Biggest Brands – Asaf Ashkenazi – BH23 #2
In today's mobile-first world, where Android and iOS apps are crucial for customer engagement, companies often overlook the vulnerability of their applications - which poses a growing risk to the enterprise. While business cybersecurity measures are robust, hackers exploit the app path to circumvent server-side security. To help you understand the risks and safeguard your mobile apps and your customer PII, Asaf Ashkenazi will talk about the top mobile app attacks, the real-world implications, the blind spot in many company security teams, and easy ways to protect, detect and respond to this growing threat.
Segment Resources:
Asaf Ashkenazi introduces Verimatrix XTD
Verimatrix’s Triple-Threat Initiative Enhances Mobile App Security
This segment is sponsored by Verimatrix. Visit https://securityweekly.com/verimatrixbh to learn more about them!
Guest
Asaf Ashkenazi is Chief Executive Officer of Verimatrix. Asaf joined Verimatrix in 2018 and previously served as the company’s Chief Operating Officer. As CEO, Asaf leads the company’s ongoing business model transformation that focuses on recurring subscription-based revenue sources and new products. Offering a distinct mix of extensive cybersecurity technical expertise and management successes, he brings proven insights for market analysis, strategic partnerships as well as mergers and acquisitions. Asaf is a recognized security expert and routinely appears as a thought leader in industry publications around the globe – positioning Verimatrix as a top innovator that’s committed to providing the most powerful yet people-friendly protection for digital content, applications and devices. Prior to Verimatrix, he served as vice president of IoT security products at Rambus (NASDAQ: RMBS), lead security products at Qualcomm (NASDAQ: QCOM), and held other engineering management positions at Freescale Semiconductor and Motorola (NYSE: MSI). Asaf is a former board member of the FIDO Alliance and holds 10 U.S. patents for security architectures as well as an engineering degree from Ben-Gurion University of the Negev.
Host
3. A Shared Playbook: New Sophos Research Finds Ransomware Groups Working Together – John Shier – BH23 #2
Segment description coming soon!
This segment is sponsored by Sophos. Visit https://securityweekly.com/sophosbh to learn more about them!
Guest
John Shier is a Field CTO, Threat Intelligence at Sophos with more than two decades of cybersecurity experience. He’s passionate about protecting consumers and organizations from advanced threats, and has researched everything from costly ransomware to illicit dark web activity, uncovering insights needed to strengthen proactive cybersecurity defenses.
John is often consulted by press, and has been quoted in publications like Reuters, WIRED, Fortune, CNN, The Hill, Fast Co, Yahoo, and more. He’s also a frequent speaker at industry events like RSA Conference, Infosec, Cebit, Gitex, and more.
Based in Toronto, John is available on Twitter (@john_shier) and can be reached via email at [email protected].
Host
4. Today’s Ransomware Economy Players – IABs, RaaS Affiliates, and now C2Ps – Jon Miller – BH23 #2
During this segment, Jon will explore today’s ransomware economy players from IABS to RaaS affiliates, to money launders and now C2Ps. For the discussion, Jon will leverage Halcyon’s latest research, which demonstrates a new technique to uncover how C2Ps, like Cloudzy, are used to identify upcoming ransomware campaigns and other advanced attacks. The research revealed that Cloudzy, knowingly or not, provided services to attackers while assuming a legitimate business profile. Threat actors that leveraged Cloudzy include APT groups tied to the Chinese, Iranian, North Korean, Russian, Indian, Pakistani, and Vietnamese governments; a sanctioned Israeli spyware vendor whose tools are known to target civilians; several criminal syndicates and ransomware affiliates whose campaigns have spurred international headlines.
He will also reference findings from Halcyon’s 2022 Ransomware Malicious Quartile (RMQ).
Segment Resources: • Cloudzy research - https://www.halcyon.ai/blog/report-ransomware-command-and-control-providers-unmasked-by-halcyon-researchers • 2022 RMQ - https://www.halcyon.ai/blog/power-rankings-2022-ransomware-malicious-quartile
This segment is sponsored by Halcyon. Visit https://securityweekly.com/halcyonbh to learn more about them!
Guest
Jon Miller is the CEO & Co-founder of Halcyon with 25+ years working in the cybersecurity industry. Prior to Halcyon, Jon was the CEO & Co-founder of Boldend, a next-generation defense contractor focused on building offensive tools for the US Government. Previous to Boldend, Jon held the title of Chief Research Officer of Cylance (now Blackberry) where he focused on malware and product efficacy. Prior to Cylance, Jon was employee number 70 at Accuvant (now Optiv) where with a group of others he helped build and lead the largest technical consultancy at the time Accuvant LABS, working with over 95% of the Fortune 500 as an offensive security expert. Before Accuvant, Jon was a ten year veteran penetration tester, serving as one of the first in the industry working for the Internet Security Systems (now IBM) X-Force.
Host
5. From Threat to Asset: Using Generative AI to Supercharge Your Cyberdefenses – Eyal Benishti – BH23 #2
The security mediascape is buzzing with discussions around the growing threat of generative AI. But, how can we use this powerful new weapon for good? In this executive interview, IRONSCALES CEO Eyal Benishti walks us through the ways in which generative AI can be used to significantly harden organizations’ cyber defenses, and even unveils the latest, cutting-edge tools to be added to IRONSCALES’ growing AI suite of capabilities. Meet IRONSCALES’ Themis Co-Pilot for Outlook and learn how your team can use artificial intelligence to tip the scales back in your favor.
Segment Resources:
PR Announcement: IRONSCALES Revolutionizes Email Security with Powerful New Generative AI Capabilities
Video: IRONSCALES: Email Security powered by AI and Human Insights
This segment is sponsored by IRONSCALES. Visit https://securityweekly.com/ironscalesbh to learn more about them!
Guest
As Chief Executive Officer at IRONSCALES, Eyal Benishti pioneered the development of the world’s first self-learning email security solution that combines AI, machine learning, and human insights to automatically stop advanced phishing, BEC, and account takeover attacks.
Eyal brings to his executive leadership role over 15 years of software industry experience with enterprise and startup companies. Prior to founding IRONSCALES in 2013, he was a security researcher and malware analyst at Radware and worked as technical lead for various information security solutions at Imperva. Previously, he held a variety of R&D roles with Comverse and Amdocs. A passionate cybersecurity researcher from a young age, Eyal earned his bachelor’s degree in computer science and mathematics from Bar-Ilan University in Israel.
Host
6. Go Hack Yourself: War Stories from ~20k Pentests with NodeZero – Snehal Antani – BH23 #2
In this session, Snehal will discuss several real-world examples of what autonomous pentesting discovered in networks just like yours. You’ll hear more about how fast and easy it was to safely compromise some of the biggest (and smallest) networks in the world - with full domain takeover in a little more than a few hours. Learn how you can safely do the same in your own network today!
Segment Resources:
War Stories from 15K Pentests: With Log4shell, Vulnerable ≠ Exploitable
This segment is sponsored by Horizon3.ai. Visit https://securityweekly.com/horizon3aibh to learn more about them!
Guest
Snehal Antani is co-founder and CEO of Horizon3.ai. Prior to Horizon3.ai, he was CTO of Joint Special Operations Command (JSOC), CTO of Splunk, and a CIO within GE Capital. Antani holds 18 patents granted by the USPTO in data processing, cloud computing, and virtualization. He regularly participates in keynote speeches and often writes articles on leadership, innovation, digital transformation, data security, and cloud security.
Host
7. Secure the Cloud and See ROI in Cyber Investments – Raghu Nandakumara – BH23 #2
In this interview, Raghu discusses the specific challenges in securing the cloud and how to overcome them. He shares how to make your life easier by making security a team sport, how to gain the visibility you need across clouds, data centers, and endpoints, and how to get a return on your cloud security investments.
This segment is sponsored by Illumio. Visit https://securityweekly.com/illumiobh to learn more about them!
Guest
Raghu Nandakumara is Head of Industry Solutions at Illumio, the Zero Trust Segmentation company. Based in London, UK, Raghu is responsible for helping customers and prospects across a variety of industries build resilience and accelerate Zero Trust outcomes with Zero Trust Segmentation.
Previously, Raghu spent 15 years at Citibank, where he held a number of network security operations and engineering roles. Most recently, he served as a Senior Vice President, where he was responsible for defining strategy, engineering, and delivery of solutions to secure Citi’s private, public, and hybrid cloud environments. Raghu holds an undergraduate degree in mathematics and computer science from the University of Cambridge, and a master’s degree in advanced computing from Imperial College London.
Host
8. Attacking Your Way to Accurate Answers with Breach and Attack Simulation – Tomer Bar – BH23 #2
It’s no secret that the attack surface is increasing and the best defense is one that’s matched to the most relevant risks. Through proactive and reactive research, The SafeBreach Labs team helps customers discover their most critical threats and security gaps by building the industry’s most current and complete playbook of attacks. In this session, SafeBreach Director of Research Tomer Bar will share how attacks are conducted, which APT group have been the most active, and how breach and attack simulation can help teams think like an adversary and leverage recent vulnerabilities to gain accurate insights.
Segment Resources: https://www.safebreach.com/safebreach-labs/
This segment is sponsored by SafeBreach. Visit https://securityweekly.com/safebreachbh to learn more about them!
Guest
Tomer Bar is a hands-on security researcher with 20 years of unique experience in cyber security. He leads the SafeBreach Labs as the VP of Security Research. In the past, he ran research groups for the Israeli government and then led the endpoint malware research for Palo Alto Networks. His main interests are Windows vulnerability research, reverse engineering, and APT research. His recent discoveries are the PrintDemon vulnerabilities in the Windows Spooler mechanism which were a candidate in the best privilege escalation Pwnie awards. He presented his research at Black Hat 2020, Defcon 2020, 2021, 2022, SecTor, Recon, HackCon, Security Fest and Confidence conferences.