Dec. 4, 2023, 8:01 p.m. | Brian Boettcher, Amanda Berlin, and Bryan Brake

Brakeing Down Security Podcast www.brakeingsecurity.com

Show Topic Summary:

Ms. Berlin proposes a question of how to gather more headcount with metrics, we discuss the BLUFFS bluetooth vulnerability, and “Ranty Claus” talks about CISA’s remarks of putting the onus on device product makers to remove choice for customers and implement secure defaults.

#youtube VOD: https://www.youtube.com/watch?v=emcAzTx9z0c 

Questions and topics:

  1. https://cyberscoop.com/cisa-goldstein-secure-by-design/

  2. https://hackaday.com/2023/12/02/update-on-the-bluffs-bluetooth-vulnerability/

Additional information / pertinent LInks (Would you like to know more?):

  1. https://cyberscoop.com/jen-easterly-secure-by-design/

  2. https://www.cisa.gov/resources-tools/resources/stop-passing-buck-cybersecurity 

  3. Examples of companies forcing changes https://www.bleepingcomputer.com/news/microsoft/microsoft-will-roll-out-mfa-enforcing-policies-for-admin-portal-access/  

  4. https://github.com/aya-rs/aya - eBPF implementation in Rust

  5. https://ossfortress.io/ …

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC