Tenable Research Podcast
Join members of Tenable Research for a discussion about the latest vulnerabilities, exploits and cyber threats. Analysis, insights and guidance for information security and IT professionals who want to stay in the know.
Episodes
37 episodes
Research Alliance Program - Shared Intelligence and Insight
This month we talked to Tenable’s director of research product management Ray Carney and Eric Hoffman, director of partnerships and alliances at Greynoise, about the formation of a new
•
Season 3
•
Episode 15
•
30:16
What is Exposed Externally That You’re Unaware Of, What Can Attackers See - and How to Manage Your Exposure
After we discussed the concept of Exposure Management on our last podcast, this time we welcome back Tenable’s senior principal security advocate Nath...
•
Season 3
•
Episode 14
•
40:04
Understanding and Achieving Exposure Management
The concept of Exposure Management has become more and more prominent in recent months, as users understand how much they are exposed to attack, how they can protect their assets and what it takes to achieve a level of compliance.
•
Season 3
•
Episode 13
•
35:21
Reviewing 90 Day Responsible Disclosure Policies in 2022
In the field of responsible disclosure, a policy of 90 days to publicly disclose vulnerabilities has been created by industry. This time period should allow the researcher to disclose the vulnerability to the recipient company, giving them time...
•
Season 3
•
Episode 12
•
33:00
Unsophisticated Extortion - Reflecting on the LAPSUS$ Group
In the first few months of 2022, the LAPSUS$ Group made a major splash in the cybersecurity headlines as it conducted a series of attacks on the likes of Nvidia, Microsoft and Okta. However a few months later, they had disappeared and arrests w...
•
Season 3
•
Episode 11
•
22:17
Understanding the Ransomware Ecosystem
Beyond the success of its impact, a lucrative criminal ecosystem has been developed for ransomware. This has seen ransomware-as-a-service (RaaS) creating an ecosystem utilizing multiple players, while the concept of double extortion has emerged...
•
Season 3
•
Episode 10
•
28:40
BIG-IP and Microsoft Fixes and AWS Hot Patches
This month we talk to Tenable research manager Scott Caveza about three recent patching stories, where F5 and Microsoft offered fixes in a regular cycle, and how Amazon Web Services released hot patches to repair earlier vulnerabilities in fixe...
•
Season 3
•
Episode 9
•
23:47
The State of OT Security, a Year Since Colonial Pipeline
On this edition of the podcast, we look at the conversation around operational technology (OT) and attacks on critical infrastructure, as we mark a year since the Colonial Pipeline incident. We’re joined by Tenable’s VP of operational technolog...
•
Season 3
•
Episode 8
•
35:23
Spring4Shell and Patches for VMware and Microsoft
This month we take a deep dive into the most recent Java related vulnerability, and ask what the situation was with this, how it got confused with another vulnerability, and how significant it is to the wider threat landscape - or was i...
•
Season 3
•
Episode 7
•
31:34
Security Research: How to Get the Job, and What to Expect
Have you ever sat in the audience at a conference, watched a video of a presentation, or listened to an interview on a podcast or TV, and seen a researcher and thought ‘how do I get to do that?’Tenable now has a wide selection...
•
Season 3
•
Episode 2
•
51:28
The Remaining Top Vulnerabilities, and Important Patches
This month we look at newly-released, important-rated patches from Microsoft, and a new blog from Tenable’s Security Response Team where more vulnerabilities from 2021 were discussed, and why they did not make the final top five in our Threa...
•
Season 3
•
Episode 5
•
23:41
Renaud Deraison - Nessus, Tenable and His Future
This month we talk to Renaud Deraison, outgoing CTO and a co-founder of Tenable, who talks about his time developing Nessus from an open source scanner in 1998 to the development of Tenable over the past 20 years, and what the future looks like...
•
29:19
Important Patches and Critical Vulnerabilities - SAP, Cisco and Microsoft
This month we look at new patches released by Cisco, Microsoft and SAP, and while there were some very critical vulnerabilities patched, we also saw Microsoft change tact with a significantly reduced patch bundle and with no critical patches re...
•
20:41
Black History Month: Pioneers, Hidden Figures and Diversity
As it is Black History Month in North America in February, we talked to the co-chairs of Black@Tenable, the diversity and inclusion group for African-American employees of Tenable, about the recognition of black leaders in technology, efforts t...
•
Season 3
•
Episode 3
•
25:16
The Threats, Vulnerabilities, Attacks and Incidents That Made 2021
In our first look at the research highlights of 2022, we take a deep dive into Tenable’s 2021 Threat Landscape Retrospective, and look at the incidents, attacks and notable vulnerabilities that made up the past year....
•
Season 3
•
Episode 1
•
43:52
Log4J, Fixes For ZoHo and SonicWall and December Microsoft Patches
This month we take a look back at the impact of Log4J and how both the industry and Tenable were able to respond to this major incident that affected so many users globally. There are also fresh fixes from SonicWall and ZoHo for ManageEngine...
•
Season 2
•
Episode 11
•
40:57
Will the CISA Directive Create a More Secure Government?
The recent Binding Operational Directive from CISA will see a number of U.S. government departments receive better instruction on which vulnerabilities need to be patched, and to do so within a six month time frame. <...
•
Season 2
•
Episode 10
•
35:56
Common Attacks on Active Directory
This time we’re joined by Tenable’s security strategist Sylvain Cortes, as we look at the types of attacks being targeted at Active Directory, how attackers look to get a foothold into enterprise networks by exploiting AD, and what steps you...
•
Season 2
•
Episode 9
•
32:25
Patches for Apache and VMware, and October Patch Tuesday
This month we look at patches from Apache and VMware, an example of very rapid response to a researcher’s findings, and another quiet month from Microsoft’s Patch Tuesday, with guests Claire Tills and Satnam Narang from Tenable's Security Re...
•
Season 2
•
Episode 8
•
22:51
OMIGOD: Critical Vulnerabilities in Atlassian, OMI and Microsoft, and Remote Working Trends
This month we review new blogs from Tenable’s Security Response Team on a vulnerability in Atlassian’s Confluence Server, review what made cybersecurity say “OMIGOD” and look at another light load of patches from Microsoft. We also look at new ...
•
Season 2
•
Episode 7
•
1:06:40
Hold the Door - VPN Vulnerabilities Unlock Entry to Your Network
On this edition of the Research podcast, we talk to Satnam Narang and Claire Tills about the Security Response Team’s recent research blog around SSL VPN vulnerabilities. That blog looked back at how three particular flaws in major VPNs are fre...
•
Season 2
•
Episode 6
•
19:19
Light Patches, Router Issues and a Year of Zerologon
This month we look at new blogs from Tenable’s security response team, including on a year of Zerologon, vulnerabilities in Microsoft Exchange Servers and Pulse Secure, and a widely spread flaw in wifi routers which could affect thousands of...
•
Season 2
•
Episode 5
•
45:36
Black Hat 2021 and the Return to Conferences
As the first major security conference prepares to take place, Tenable's chief security strategist Nathan Wenzler talks to Dan Raywood about what the conference scene could look like going forward, what people can expect from the experience and...
•
Season 2
•
Episode 4
•
30:02
Nightmare, Ransomware, Patches Everywhere
In this episode we talk to security researchers Claire Tills and Satnam Narang on a busy month in cybersecurity headlines, from an MSP facing a major ransomware situation, to Microsoft’s attempts to keep up with the PrintNightmare issue, and...
•
Season 2
•
Episode 3
•
43:54
Back to Reality, Ransomware and Patch Tuesday
Welcome back to the Tenable Research Podcast. In this new episode we look back at June’s Microsoft patches, and ask Tenable staff research engineer Satnam Narang what he feels the reasons are for the number of patches generally decreasing bo...
•
Season 2
•
Episode 2
•
45:16