Please download one of these browsers:
Keep your browser version up-to-date for a fast, secure, web experience.
Grant Schneider talks about new cybersecurity strategy outlines five pillars that urge more mandates on the private sector, which controls most of the nation's digital infrastructure, and an increased government role to disrupt and dismantle threat actors. The strategy has been widely praised and has garnered conversations; however, it raises several questions - who is going to pay for it and who is going to execute it?
The Internet of Things (IoT) is expanding at a dramatic rate. As we connect our devices to more and more aspects of our daily lives, we are creating a roadmap for invasive listening, hacking and business disruption.
Microsoft Sentinel is a scalable, cloud-native, security information and event management (SIEM) and security orchestration, automation, and response (SOAR) solution.
In the US, NIST is the de-facto standard for security, compliance and privacy. If you are doing business with the US federal government, manage critical infrastructure, or maintain personally identifiable information (PII), you must be compliant with NIST standards. NIST provides the Cybersecurity Framework (CSF) and Risk Management Framework (RMF) to guide organizations on securing their infrastructure, systems, and data.
Richard Meeus of Akamai shares how comprehensive visibility across IT infrastructure, data streams and applications strengthens organizational defenses and ensures robust operational resilience.
Trend Micro's senior threat researcher Nitesh Surana reveals critical vulnerabilities in Azure Machine Learning services, demonstrating how attackers can compromise ML workspaces.
Dive into the world of MinIO security as we uncover and exploit an information disclosure vulnerability, gaining access to sensitive data.
Master container security in our Vulnerable Erlang course! Exploit CVE-2025-32433, deploy vulnerable Docker containers, detect threats with Sysdig Falco, and secure systems. Ideal for security professionals, DevSecOps, and pentesters.
Embark on your journey into the dynamic world of cybersecurity with our introductory course tailored for aspiring red team members or advanced penetration testers. Designed for those new to the realm of Antivirus (AV) and Endpoint Detection and Response (EDR) evasions.
Steve Jackson of Binalyze demonstrates how automation can revolutionize SOC operations, addressing key challenges in operational security, resource management and regulatory compliance in today's "assume breach" landscape.
Learn about cutting edge trends in AI-Powered SOCs today!
This course is designed to teach you about the 2021 version of the OWASP Top 10 Web Application Vulnerabilities. The OWASP Top 10 is a list of the most critical security risks to web applications, and it is widely used by organizations to improve their web application security.
James Kettle of PortSwigger reveals sophisticated web race condition exploits, demonstrating how attackers can manipulate state machines and create backdoors through precise timing attacks.
Kirils Solovjovs of Possible Security exposes novel methods for intercepting phone calls through PSTN vulnerabilities, demonstrating how attackers can exploit SS7 protocols and call routing mechanisms.
Security researcher Nemo examines UPI's security architecture, revealing critical vulnerabilities in mobile number verification and offering recommendations to strengthen India's digital payment ecosystem.
Industry leaders Matanda Doss, Susan Koski, William Beer and Paul Leonhirth discuss cloud adoption challenges, API security and AI-powered fraud detection in financial services cybersecurity.
Sean Blenkhorn from Axonius explains modern approaches to cybersecurity asset management in increasingly complex environments.
Luke Babarinde of Imperva shares strategies for securing critical data assets and maintaining regulatory compliance across diverse environments.
SafeGuard Cyber CEO Chris Lehman discusses AI-powered defense strategies against language-based attacks across communication channels.
Stephen Johnson introduces Entro's Secrets Security Platform for managing secrets across vaults, source code and cloud environments.
Siddharth Iyer from Radware examines current DDoS attack trends and proactive protection strategies for financial institutions.
Geoff Brown, former CISO of the City of New York, shares insights on machine-to-machine intelligence and lessons from Ukraine and Belgium's cybersecurity strategies.
Trevor Foskett of Virtru explores military-grade encryption and data-centric protection strategies for financial services compliance and security.
David Cifuentes of Devo Technology demonstrates how AI can eliminate 95% of security alerts and enable real-time threat detection in financial SOCs.
Steven Wallstedt, Vlad Brodsky and Bino Gopal discuss real-world applications and challenges of generative AI in financial services security.
Industry experts Gary Meshell and John Gutkowski explore how financial institutions can integrate AI and cyber mesh architecture to enhance threat detection and improve security resilience.
Dr. Amirudin Abdul Wahab, CEO of CyberSecurity Malaysia, discusses evolving data protection frameworks and the balance between security and privacy in the digital era.
Ali Abdulla Alsadadi shares insights on managing multi-cloud security. Learn about quantifying risks, tackling API complexities, integrating data, and building offensive strategies to mitigate risks in siloed multi-cloud environments.
Learn from Matthias Yeo, Mel Migrino, and Jenny Tan about tackling the cybersecurity talent crunch, building resilient offensive strategies, leveraging automation, and weaving cybersecurity accountability across business functions for enhanced defense.
Prof. Syed Munir Khasru shares insights on fostering business-IT collaboration, building enterprise-wide data strategies, and ensuring robust data governance. Learn how to optimize data use while safeguarding security and privacy in a data-driven world.
Join Khalid Nizami as he explores aligning digital technologies with business goals, adopting AI-driven innovations like generative AI, and addressing challenges in talent, skills, and governance to drive business transformation and growth.
Lt. Col. Francel Padilla-Taborlupa shares insights on privacy challenges CISOs face. Learn about compliance strategies, cross-team collaboration, and adapting privacy strategies to evolving regulations, AI, IoT, and rapid technological advancements.
Learn from Gigi Mathew Thomas, Venkatesh Mahadevan, and Awais Ahmad about governance for generative AI, promoting responsible AI use, and enhancing security solutions to combat AI-enabled threats. Explore AI's potential and risks, including deepfakes and cyberattacks.
Bryan Rosensteel of Wiz explains how AI has collapsed the time to exploit, why siloed security fails in the cloud, and how visibility and context let defenders prioritize true risk.
Chip Witt of Radware examines how AI is expanding the healthcare attack surface, accelerating cyberattacks and introducing prompt injection risks, while outlining practical strategies to secure APIs and AI-powered applications.
Amit Gupta, Esmond Kane, Jesse Ku, Mike Leffer and Nick Sturgeon examine how healthcare organizations can balance cybersecurity spending with patient safety by prioritizing risk, strengthening resilience and using AI to improve defense.
Alex Cobos of Tanium explains how healthcare organizations can close visibility gaps with a three-pillar framework that improves asset intelligence, accelerates patching and strengthens incident response while protecting patient care.
Phil Englert of Health-ISAC explains how SBOMs strengthen healthcare software supply chain security by improving visibility into medical device software, enabling better vulnerability management and supporting patient safety.
Shilpa Sawant of Sumitomo Mitsui Banking Corporation examines why reactive security is no longer enough, and how preemptive, AI-driven frameworks can help organizations anticipate and neutralize emerging threats.
Manjunath Pasupuleti of ENNOVI presents a real-world case study on building third-party data risk visibility as the essential foundation for responsible, mature AI deployment across the enterprise.
Jicheng Zhu of GLP presents a four-step, business-driven approach to digital supply chain security, covering visibility, tiered risk requirements and continuous monitoring across complex third-party ecosystems.
Jeffrey Macre of Darktrace explains why OT risk assessments must focus on operational context, critical processes and business impact instead of vulnerability scores alone, with practical guidance for improving cyber resilience.
Kajeevan Rajanayagam shares eight years of lessons building security architecture across a complex healthcare environment - from asset discovery and VLAN segmentation to vendor access controls and legacy device governance.
Yossi Oren of Ben-Gurion University examines why IoT hardware is so difficult to future-proof - covering the success-popularity mismatch, the compounding risks of modernization and the role of AI on both sides of the threat.
Jasper van Woudenberg and Rajesh Velegalati of Keysight demonstrate how voltage fault injection manipulates edge AI perception and how LLM agents can automate the attack, making neural accelerators a serious hardware security risk.
Joe Grand of Grand Idea Studio walks through the full reverse engineering of a real hardware implant discovered inside a Ledger Nano X - exposing how a supply chain attack on a cryptocurrency wallet works in the wild.
Roman Korkikian demonstrates how a $2,000 power side-channel setup breaks the root of trust in a commercial TPM, extracting ECDH private keys from a device certified to protect them against physical attack.
Edoardo Mantovani walks through the complete defeat of MediaTek Wi-Fi firmware encryption across Wi-Fi 6, 6E and 7 - from driver analysis and ROM dumping to breaking AES protection and integrity checks.
Scott Sheahan reverse engineers the electronic security architecture of a 2025 Indian Scout Bobber, demonstrating how to bypass its immobilizer and start the bike without a key through CAN bus analysis and protocol exploitation.
Jakub Szefer presents experimental research on cross-talk vulnerabilities in cloud-based quantum computers, demonstrating how qubit interactions on shared hardware enable interference and information leakage between users.
1 2 3 4 Next