read.cash Log in
@M.Rosenquist

@M.Rosenquist in October 2020

@M.Rosenquist

Phishing Just Became More Dangerous What do you get when you combine phishing + AI + worm capabilities? Trouble that moves fast! The latest social engineering attacks hijack victims email response messages to send trusted phishing to others as a means of rapidly spreading. https://www.zdnet.com/article/this-worm-phishing-campaign-is-a-game-changer-in-password-theft-account-takeovers/ We have been expecting such attacker innovation in the social-engineering space for some…

@M.Rosenquist

Leveraging culture for better cybersecurity? Join the free webinar on Oct 28th 10am PST to listen to the panel discuss how culture can contribute or destroy cybersecurity! Colleagues Jack Roehrig, Theo Nasser, and myself will be discussing the importance of weaving a positive cyber culture into organizations as part of a greater set of best-practices for effective cyber strategy. Come join a great conversation at this free event!…

@M.Rosenquist

Should Governments be Responsible for Protecting the Internet? https://youtu.be/mEPln0d6rGM Does society want governments to take on the role of protecting the Internet? Should the Internet be considered a Critical Infrastructure and therefore be overseen by governments? Will such actions undermine privacy and liberty or will it be demanded by citizens to protect personal access and online security? The Singapore government recently announced a policy shift to protect…

@M.Rosenquist

Microsoft's New Tactics Disrupts Trickbot Ransomware https://youtu.be/z4xuIbZRht8 Microsoft and partners have taken down the Trickbot ransomware infrastructure. That is a temporary relief, as the cybercriminals will soon adapt. The bigger picture is how the Microsoft Digital Crimes Unit (DCU) has created a template and partnerships to better target and disrupt future malware campaigns! Subscribe to my new YouTube channel for more Cybersecurity Insights, rants, news, and…

@M.Rosenquist

Is Paying Ransomware Now Illegal? https://youtu.be/DwmP8PI1fEk Security experts say don't pay ransomware, but now the U.S. Treasury Department is now declaring it illegal! Every company on the Internet must deal with the threat and emerging regulations. Ransomware continues to be a growing problem because victims have been rewarding the attackers. If regulations expand, the option to pay-off the criminals will no longer be viable. We must address ransomware in a more…

@M.Rosenquist

Apple T2 Chip Vulnerability Challenges the Industry https://youtu.be/A9BRmXnOZUU Recent verified reports highlight exploitable vulnerabilities in Apple’s security chip that cannot be patched! The announcement adds to the growing concerns and shifting perceptions about hardware security. Hardware-based security has pros and cons. Many ask if the risk is worth the reward when hardware might be vulnerable. As consumers, we must act responsibly when we choose products and…

@M.Rosenquist

Cyber Threats Enhance Phishing with AI and Worm Functions for Rapid Disruption https://youtu.be/NR_QYsAMI-I New phishing malware leverages Artificial Intelligence and worm functionality to rapidly spread to contacts of victims. By leveraging previously established relationships the malware can bypass technical controls and easily fool new targets into becoming infected. This is just another step forward, albeit an interesting and effective tactic, in the ongoing escalation…

@M.Rosenquist

Charges Against Russian Nation-State Hackers Sends a Message https://youtu.be/gCLoFBJw5jY The U.S. Department of Justice filed charges against six Russian agents, identified as members of the APT group known as Sandworm. The unsealed documents reveal that the six suspects are all current or have former ties to the Russian foreign intelligence agency, the GRU. The charges outline how this group is supported and coordinated by the Russian government to conduct hacks against…

@M.Rosenquist

Cybersecurity & IoT Showcase 2020 conference https://www.youtube.com/watch?v=RRpDfXsT3Ec ***"Why Sacramento is Ripe to be a Cybersecurity Hub"*** panel discussion, was lively and engaging. Moderated by Carmen Marsh and featuring Malcolm Harkins, Matthew Rosenquist, and George Usi, the panel discussed a broad range of topics including: Why pick Sacramento to start a cybersecurity product or services company, advice for aspiring entrepreneurs looking for innovative ideas, and…

@M.Rosenquist

The NSA knows something you don't https://youtu.be/uUjwWrAv4E4 The U.S. National Security Agency knows which vulnerabilities China backed hackers are exploiting the most to gain access to sensitive data. The Chinese state-sponsored information gathering engine is a vacuum when it comes to acquiring information from foreign companies and countries. NSA’s list of critical CVEs to be patched (PDF file):…

@M.Rosenquist

Cybersecurity Awareness Month – Accept My Challenge https://youtu.be/dn30uRxFeJA October is Cybersecurity Awareness Month. It is a time to consider the risks we accept everyday when using computers and what we can do to better protect ourselves. I have a challenge for each and every person. Something that will help people individually and everyone collectively. Let me know if you are up to the challenge and how you will think about being more secure, private, and safe in our…

@M.Rosenquist

Upcoming Cybersecurity Speaking Events Events are free to join. Register now! ***2020 Cyber Innovators Summit*** https://www.thecyberinstitute.org/summit Register here. Friday Oct 30th 9am-5:30pm PST https://zoom.us/webinar/register/WN_8Y0LOYOLRfmbT8gzguBs4g Raj Samani is the keynote - a can’t-miss speaker who is always informative and entertaining. The talks will cover a wide range and depth of topics, including new edge vulnerabilities, cybersecurity training, privacy…

@M.Rosenquist

California Privacy Rules Updated to Target Shady Practices https://youtu.be/H2lc0d2e8L0 The California Consumer Privacy Act (CCPA) has been around since 2018, as the more protective data privacy legislation of any state, but not all businesses have been acting ethically in their compliance and respect for user privacy. As a result, the CA Attorney General has once again updated the CCPA. This time, to thwart unscrupulous businesses who go out of their way to thwart citizens'…

@M.Rosenquist

Bahamas new digital currency will be the next testbed for innovative cybercrime attacks https://youtu.be/XgR70bdwzEY The government’s Central Bank of the Bahamas has released the world’s first Central Bank Digital Currency (CBDC) - the “SAND DOLLAR”. This is attracting the interest of cybercriminals as well as security professionals. As national currencies transform into a digital form, criminals will seek ways to steal and abuse monetary systems at a scale never seen…