• Secure Networks: Endace Packet Forensics Files

  • 著者: Michael Morris
  • ポッドキャスト

Secure Networks: Endace Packet Forensics Files

著者: Michael Morris
  • サマリー

  • "Secure Networks: Endace Packet Forensics Files" features interviews with leading cybersecurity and networking experts from companies such as Cisco, Darktrace, Palo Alto Networks, and others. It focuses on the issues that Security, Network Operations and DevOps teams face in securing and managing their networks and applications and provides insights into best practices and future developments.

    © 2024 Endace Technology. All Rights Reserved.
    続きを読む 一部表示
activate_samplebutton_t1
エピソード
  • Episode 57: Ryan Chapman - SANS Author and Instructor | Veteran DFIR Expert
    2024/08/26

    Ransomware has shifted from simple, isolated attacks to coordinated, human-operated campaigns that target entire organizations.

    In this episode of the Endace Packet Forensics Files, Michael Morris talks with Ryan Chapman, SANS Instructor and expert in Digital Forensic and Incident Response (DFIR) about these evolving threats.

    Ryan explains how attackers are becoming more methodical and sophisticated, focusing on disabling EDR/XDR solutions to evade detection and leaving organizations vulnerable to advanced attacks.

    One of the key challenges Ryan highlights is visibility. Without robust logging, packet capture, and monitoring tools, it’s nearly impossible to understand how an attack happened fully. Even encrypted traffic can reveal critical patterns if analyzed properly.

    Ryan shares examples of organizations that suffered reinfections because they rushed to restore systems without identifying the original entry point. Packet capture data plays a vital role in pinpointing when and how attackers infiltrated, ensuring a safe recovery and minimizing disruption.

    As ransomware tactics evolve, adopting a Zero-Trust approach is essential. Ryan discusses how limiting permissions and avoiding overly trusting software configurations can help prevent breaches. He cites the Kaseya attack, where some organizations avoided compromise by not blindly whitelisting trusted directories. As attackers increasingly use legitimate tools, verifying all network activity and following least privilege principles are critical defenses.

    Don’t miss this insightful episode, where Ryan provides actionable advice for preparing your organization against today’s ransomware threats.

    続きを読む 一部表示
    28 分
  • Episode 55: Taran Singh - VP, Product Management at Keysight Technologies
    2024/05/16

    In this episode, I chat with Taran Singh, VP of Product Management at Keysight Technologies, about network observability.

    Taran explains its importance within the zero-trust architecture and discusses the challenges organizations face in achieving clear network visibility.

    He highlights the role of historical data analysis in cybersecurity and outlines Keysight's approach to network visibility.

    Don’t miss this insightful discussion on network observability and its significance in modern cybersecurity.

    Follow Taran here on LinkedIn - https://www.linkedin.com/in/taransingh/

    続きを読む 一部表示
    18 分
  • Episode 54: Jake Williams - IANS faculty member, former SANS educator, computer science and information security expert and U.S. Army veteran.
    2024/04/12

    In this episode of the Endace Packet Forensics Files, Michael chats with Jake Williams, aka @MalwareJake who delves into the concept of Zero Trust and its significance for organizations seeking to bolster their security defences.

    Discover how Zero Trust challenges traditional security models and learn about the crucial role of continuous verification and network visibility in mitigating threats. Gain valuable insights into networking fundamentals and the integration of cybersecurity principles from an industry veteran.

    Don't miss out on this opportunity to enhance your cybersecurity knowledge and stay ahead of evolving threats.

    続きを読む 一部表示
    25 分

あらすじ・解説

"Secure Networks: Endace Packet Forensics Files" features interviews with leading cybersecurity and networking experts from companies such as Cisco, Darktrace, Palo Alto Networks, and others. It focuses on the issues that Security, Network Operations and DevOps teams face in securing and managing their networks and applications and provides insights into best practices and future developments.

© 2024 Endace Technology. All Rights Reserved.

Secure Networks: Endace Packet Forensics Filesに寄せられたリスナーの声

カスタマーレビュー:以下のタブを選択することで、他のサイトのレビューをご覧になれます。