If you’re gonna fad, at least learn something.

Have you ever noticed that security is an industry driven in large parts by fads? It’s true.  There are a few different types of fads out there.  First, there are technology fads.  If you’ve been in the industry for a while, you probably remember at least...

OMG. Why does it always take the worst case scenario?

Here’s an article about how medical device manufacturers continue to not get it done securing what they produce.  It references a few data points, including one from a Ponemon survey outlining how people are concerned about it, but yet action taken is relatively...

Security Buying Spree: What’s Microsoft Up To?

So Microsoft apparently is buying the Israeli security firm Hexadite.  Hexadite, interestingly enough, makes an automation tool to support incident response.  In fact, it’s specifically designed to support (or arguably replace) human analysts in performing...

Microsoft holding EternalBlue patches for 3 months

So it’s a week later and I’m still talking about the ridiculous saga that is EternalBlue/WannaCry/Spy vs. Spy. I told myself to discuss something (literally anything) else today, but I continue to be fascinated by the questions that this issue has opened...

ShadowBroker Notice: Probably want to pay attention

Mike Mimoso over at the Threat Post has a great article up about the next round of potential vulnerabilities from the Shadow Brokers. Now, of course I always love reading an article from Mike – he’s one of those folks that could write about bread mold and...