CyberRiskTV Live Coverage from BlackHat 2024 – Day 1
View Show IndexSegments
1. BlackHat Day #1: What to watch for at BSidesLV – BH24 #1
Bill Brenner and Paul Wagenseil talk about what they are most excited to cover during BSidesLV, BlackHat, and DefCon! Also: A look at events at Black Hat events focusing on mental health and neurodiversity in cybersecurity.
Visit https://securityweekly.com/blackhat for all of the CyberRisk Alliance coverage of Hacker Summer Camp!
Hosts
2. Operational Resilience in Healthcare – Marty Momdjian – BH24 #1
Many cybersecurity experts are calling recent attacks on healthcare more sophisticated than ever. One attack disrupted prescription drug orders for over a third of the U.S. and has cost $1.5 billion in incident response and recovery services. Separately, an operator of over 140 hospitals and senior care facilities in the U.S. was also victimized. These attacks are becoming all too common. Disruptions can lead to life-and-death situations with massive impacts on patient care. All industries, especially healthcare, have to better prepare for ransomware attacks. Are you ready to turn the tables on threat actors? Marty Momdjian, Semperis EVP and General Manager provides advice on how hospitals can regain the upper hand.
This segment is sponsored by Semperis. Visit https://securityweekly.com/semperisbh to learn more about them!
Guest
As General Manager for Ready1 and EVP of Services, Marty Momdjian brings more than 15 years’ strategic and tactical leadership in cyber resilience and incident response (IR) to Semperis. His expertise in identity security, particularly in applied controls and ease of use, was forged while leading IR and recovery teams during some of the most well-known cyber breaches in the healthcare industry. At Semperis, Marty’s focus is on breach preparedness and mitigating the impact to clinical and business operations during cyber events.
Host
3. Secure Web Gateways Have Failed Us – Vivek Ramachandran – BH24 #1
With employees spending most of their working hours on the browser, web attacks are one of the biggest attack vectors today. Yet, both enterprises and security vendors today aren’t focused on securing the browser – a huge risk given that attackers can easily bypass Secure Web Gateways, SASE and SSE solutions.
This segment will demonstrate the importance of a browser-native solution, discuss the limitations of current solutions and how enterprises can better protect their employees from web attacks.
Segment Resources: DEF CON talk abstract: https://defcon.org/html/defcon-32/dc-32-speakers.html#54470
Enterprise use cases for SquareX: https://www.sqrx.com/enterprise
Data Sheet: https://drive.google.com/file/d/1tv3q2iTFROJPceq2b9SJtzkdHD9J6mvC/view?usp=sharing
Why Browser Native Solutions are better than Cloud Based Proxies: https://drive.google.com/file/d/1cItXj1KEm45ZNklASFmcvprbPqZChcMn/view?usp=sharing
Blog on the Many Failures of Secure Web Gateways: https://labs.sqrx.com/the-unspoken-challenges-of-secure-web-gateways-c516bc287a6d
This segment is sponsored by Square X. Visit https://securityweekly.com/squarexbh to learn how SquareX can protect your employees from web attacks!
Guest
Vivek Ramachandran is a security researcher, book author, speaker-trainer, and serial entrepreneur with over two decades of experience in offensive cybersecurity. He is currently the founder of SquareX, building a browser-native security product focused on detecting, mitigating, and threat-hunting web attacks against enterprise users and consumers. Prior to that, he was the founder of Pentester Academy (acquired in 2021), which has trained thousands of customers from government agencies, Fortune 500 companies, and enterprises from over 140+ countries. Before that, Vivek’s company built an 802.11ac monitoring product sold exclusively to defense agencies.
Vivek discovered the Caffe Latte attack, broke WEP Cloaking, conceptualized enterprise Wi-Fi Backdoors, and created Chellam (Wi-Fi Firewall), WiMonitor Enterprise (802.11ac monitoring), Chigula (Wi-Fi traffic analysis via SQL), Deceptacon (IoT Honeypots), among others. He is the author of multiple five-star-rated books in offensive cybersecurity, which have sold thousands of copies worldwide and have been translated into multiple languages.
He has been a speaker/trainer at top security conferences such as Blackhat USA, Europe and Abu Dhabi, DEFCON, Nullcon, Brucon, HITB, Hacktivity, and others. Vivek’s work in cybersecurity has been covered in Forbes, TechCrunch, and other popular media outlets.
In a past life, he was one of the programmers of the 802.1x protocol and Port Security in Cisco’s 6500 Catalyst series of switches. He was also one of the winners of the Microsoft Security Shootout contest held in India among a reported 65,000 participants. He has also published multiple research papers in the field of DDoS, ARP Spoofing Detection, and Anomaly-based Intrusion Detection Systems. In 2021, he was awarded an honorary title of Regional Director of Cybersecurity by Microsoft for a period of three years, and in 2024 he joined the BlackHat Arsenal Review Board.
Host
4. Addressing the Rise of Deepfake-Driven Scams: Expert Insights – Allison Miller – BH24 #1
Allison will discuss the increasing concerns around scams and deepfake-driven scams, sharing insights from her recent work on fraud detection technologies. She will highlight the evolving role of maturity models in fraud and abuse programs and how organizations can better protect themselves.
Segment Resources: Framing-up the Discussion on Fraud Frameworks: https://www.cartomancylabs.com/p/20240701-framingupfraudframeworks
Allison Miller - BSides 2024 Keynote - Watching the Detectives: https://www.youtube.com/watch?v=TVUty--OF3k
Guest
Allison Miller is a Faculty member at IANS Research and an internationally regarded industry expert and innovator in cybersecurity, fraud/anti-abuse, and payments technology, having spent the past 20 years scaling teams and technology that protect people and platforms. She has led major initiatives to engineer the defenses for core payment and e-commerce systems and deliver capabilities into key technologies that protect consumers from online threats, pioneering the development of real-time risk prevention and detection systems running at internet-scale. As an independent consultant and advisor, she works with CEOs, CISOs, and technical teams to hone their product and go-to-market strategies, scale operations effectively, and improve performance.
Host
5. Revolutionizing Cyber Resilience: Automating Security Remediation Beyond Manual Tasks – Rekha Shenoy – BH24 #1
As security monitoring has gotten more mature over the years, remediating security vulnerabilities is still stuck in the dark ages requiring mountains of CVE reports and thousands of manual tasks to be done by network engineers at the wee hours of the nights and weekends. Cyber resilience requires a more continuous approach to remediation, one that does not depend on manual work but also one that can be trusted not to cause outages.
This segment is sponsored by BackBox. Visit https://securityweekly.com/backboxbh to learn more about them!
Guest
With over 25 years in B2B tech, Rekha has led product and go-to-market strategies at top companies like Belden, Tripwire, and BMC Software. She is excited to lead the strong team at BackBox and recognizes network automation’s transformative power. Her expertise has consistently driven innovation and growth and will position the company for continued success in this evolving space.
Host
6. BlackHat 2024: Day 1 Wrap-Up: BSidesLV highlights and more – BH24 #1
Bill Brenner and Jeff Man talk about the fun and exciting things they've seen at BSidesLV, BlackHat, and DefCon so far, including the massively popular Skytalks at BSides.
Visit https://securityweekly.com/blackhat for all the CyberRisk Alliance coverage of Hacker Summer Camp!