💡 On Nexus, @CristinGoodwin writes about the release of President Trump’s Cyber Strategy for America and a new Exec Order on Combating Cybercrime, Fraud, and Predatory Schemes Against American Citizens mark a shift in tone and intent. https://t.co/i34X1Hu7ds
“Speed is everything in cyber defense. You might not catch the attacker but sharing how they did it helps everyone.”
@CristinGoodwin on #ExplainToShane, discussing why fast information sharing through CISA makes the ecosystem stronger.
Listen to the full #ExplaintoShane episode here: https://t.co/GqYECDYgI6
Whenever I head down the escalators to the N gates in the south side of SEA, the escalator zone always smells like my son’s soccer cleats. 🤢It’s the only place in the airport like this. Anyone else notice this?
New GTIG analysis reveals spyware vendor Intellexa is still going strong, responsible for 15 unique zero-days since 2021.
We discuss their exploit chain deploying sophisticated PREYHUNTER malware, plus a new delivery tactic: malicious ads.
Full report: https://t.co/fXY3zx7oAi
Today at 10am ET: Join @ShaneTews, Caitlin Clarke, @james_a_lewis, and @CristinGoodwin to go over the specifics of CISA 2015 and CISA the agency.
Watch the @AEI webinar here: https://t.co/GNcvHD6TI5
My talk from @defcon is finally out! Watch 'Secure Code Is Critical Infrastructure: Hacking Policy for Public Good' here:
https://t.co/hYAVWEKvIe
If you like it, please give it a thumbs up. 👍
Literally just starting to hang some bannister lights and immediately said out loud to no one “I’ll have to fix that cord violation before this can be finished.” 😂 Thanks to @ratemyskyperoom I know the rules!!
As CISA 2015 has sunset, here’s a quick video of 7 ideas for TI and IR teams (and ISACs) to consider until the rules are re-established: https://t.co/nwK1Dy1xhS
@OrinKerr It’s perfect. And also prompted me to literally shred my home office wondering where my copy was, along with an autographed moot court brief from Antonin Scalia.
I was on a panel at SecTor @BlackHatevents in Toronto alongside Chad Breslin, Brett Grady, and Ian Hassard. We tore apart Vibe Coding! What it is, the risks it introduces, and how to use AI to write more secure code. #SecTor2025#SecTorCA
https://t.co/qIqEtkDBF7
Manhattan was looking extra bright tonight as I flew from @BlackHatEvents#sector2025 to LGA and then on to DC for meetings Thurs and Fri on #cybersecurity future planning. W/ the sunset of #CISA2015 it should make for an interesting few days ahead. @AdvanceCyberLaw working hard!
Agentic AI is the future, and identity is at the center of that future. Security teams, corp leaders, and governments have a lot of work ahead to create the future we want. #SecTorCA#sector2025@BlackHatEvents 🙏
Had two flights today to get to Toronto and didn’t have wifi on either flight. It’s like I left Seattle and it turned into 2004. So happy to turn off Airplane Mode! 🛫😱🛬😂
@MarkSimos Security-adjacent role that’s coming due to all the outage reporting obligations - Chief Availability Officer. That’s an area that has to grow in technical tracking and customer mapping over the next 2-5 years. Regulation is the tail wagging that dog!