Broken Links Emergence and Future of Software Supply Chain Compromises

Subscribers:
6,000
Published on ● Video Link: https://www.youtube.com/watch?v=i6cFm5rhFvw



Duration: 29:30
1 views
0


The last two years have been filled with high-profile enterprise security incidents that shared a common origin: breach of a trusted software provider. In truth, supply chain attacks have played a key role in numerous targeted and opportunistic attacks - many of which flew under the radar - for years. This presentation examines the emergence of software supply chain compromises, the factors incentivizing attackers to adopt this approach, and practical approaches to risk mitigation and defense that enterprises can take in response.


Presenters:
Ryan Kazanciyan - Chief Product Officer, Tanium
In his role as Chief Product Officer, Ryan Kazanciyan sets the strategy and roadmap for Tanium's product offerings. Ryan brings more than 15 years of experience in security architecture, incident response, and security assessment and compliance. He previously served as Tanium's Chief Security Architect, where he focused on the company's Threat Response solution and led the Endpoint Detection and Response (EDR) team. Prior to joining Tanium, Ryan oversaw investigation and remediation efforts at Mandiant, partnering with dozens of Fortune 500 organizations affected by targeted attacks. Ryan has trained hundreds of security practitioners as an instructor for Black Hat and the FBI's cyber squad, and is a contributing author for "Incident Response and Computer Forensics 3rd Edition" (McGraw-Hill, 2014). Ryan also worked as a technical consultant for the television series "Mr. Robot," where he collaborated with the writers and production team to design the hacks depicted in the show.

Black Hat - Europe - 2018
Hacking conference
#hacking, #hackers, #infosec, #opsec, #IT, #security




Other Videos By All Hacking Cons


2021-12-22Debug Resurrection on Nordic nRF52 Series
2021-12-22From Zero to Sixty The Story of North Korea's Rapid Ascent to Becoming a Global Cyber Superpower 2
2021-12-22POSWorld Should You be Afraid of Hands On Payment Devices
2021-12-22IAM Concerned OAuth Token Hijacking in Google Cloud GCP
2021-12-22Precursor Towards Evidence Based Trust in Hardware
2021-12-22From Zero to Sixty The Story of North Korea's Rapid Ascent to Becoming a Global Cyber Superpower
2021-12-22It's not FINished The Evolving Maturity in Ransomware Operations
2021-12-22Quantum Security and Cryptography You Are Probably Doing it Wrong
2021-12-21Far Sides of Java Remote Protocols Black Hat - Europe - 2019
2021-12-21Breaking Bootloaders on the Cheap
2021-12-21Broken Links Emergence and Future of Software Supply Chain Compromises
2021-12-21I Block You Because I Love You Social Account Identification Attack Against a Website Visitor
2021-12-21Cloud Native Sandboxes for Microservices Understanding New Threats and Attacks
2021-12-21Real Time Detection of Attacks Leveraging Domain Administrator Privilege
2021-12-21The Mummy 2018 Microsoft Accidentally Summons Back Ugly Attacks from the Past
2021-12-21Container Attack Surface Reduction Beyond Name Space Isolation
2021-12-21In Search of CurveSwap Measuring Elliptic Curve Implementations in the Wild
2021-12-21RustZone Writing Trusted Applications in Rust
2021-12-21The Undeniable Truth
2021-12-21Keeping Secrets Emerging Practice in Database Encryption
2021-12-21Cutting Edge Microsoft Browser Security From People Who Owned It



Tags:
data
hacker
security
computer
cyber
internet
technology
hacking
attack
digital
virus
information
hack
online
crime
password
code
web
concept
thief
protection
network
scam
fraud
malware
secure
identity
criminal
phishing
software
access
safety
theft
system
firewall
communication
business
privacy
binary
account
spy
programmer
program
spyware
hacked
hacking conference
conference
learn
how to
2022
2021
cybersecurity
owned
break in
google
securing
exploit
exploitation
recon
social engineering