Security Serengeti  By  cover art

Security Serengeti

By: David Schwendinger and Matthew Keener
  • Summary

  • A news analysis focused information security podcast dedicated to getting you the actionable information and analysis you need to improve your company's posture and response!
    © 2021
    Show more Show less
Episodes
  • SS-NEWS-145 - Snowflakes are not unique, summary of incidents at .gov
    Jun 17 2024

    This week we discuss the FY23 incidents in the US Government's annual report, and then we discuss Snowflake a bit, and some of the issues around SAAS and Malware Remediation (infostealers steal more than just the work accounts!)

    Article 1 - White House report dishes deets on all 11 major government breaches from 2023
    Supporting Article:
    Microsoft breach led to theft of 60,000 US State Dept emails

    Article 2 - Snowflake customers not using MFA are not unique – over 165 of them have been compromised
    Supporting Articles:
    UNC5537 Targets Snowflake Customer Instances for Data Theft and Extortion
    No Snow, No Flakes: Pondering Cloud Security Shared Responsibility, Again!
    Mapping Snowflake’s Access Landscape

    If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

    Show more Show less
    45 mins
  • SS-NEWS-144
    Jun 3 2024

    This week we discuss the shocking new revelation of ORB networks! Oh wait, it's just a rebrand. Still, kind of interesting. Then we talk about the privacy implications of Apple and Android Wifi Positioning Systems, which is a little overblown, but still interesting. Wow, this week was kind of a disappointment.

    Article 1 - Chinese-linked hacking units increasingly use ‘ORBs’ to obfuscate espionage, researchers say
    Supporting Article:
    Hackers backed by Russia and China are infecting SOHO routers like yours, FBI warns

    Article 2 - Privacy Implications of Tracking Wireless Access Points

    If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

    Show more Show less
    52 mins
  • SS-NEWS-143: Minimum Viable SOC Transformation!
    May 20 2024

    We turn back to one of my (Matthew's) favorite analysts, Anton Chuvakin and his recent article on what a Minimum Viable SOC Transformation looks like. Then we take a few minutes at the end to discuss making self-driving cars ignore stop signs. Cheeky and fun shenanigans!

    Article 1 - Baby ASO: A Minimal Viable Transformation for Your SOC

    Article 2 - GhostStripe attack haunts self-driving cars by making them ignore road signs

    If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

    Show more Show less
    52 mins

What listeners say about Security Serengeti

Average customer ratings

Reviews - Please select the tabs below to change the source of reviews.