Sveriges mest populära poddar

Security Weekly Podcast Network (Audio)

D3FEND 1.0: A Milestone in Cyber Ontology - Peter Kaloroumakis - ESW #388

103 min • 20 december 2024

Since D3FEND was founded to fill a gap created by the MITRE ATT&CK Matrix, it has come a long way. We discuss the details of the 1.0 release of D3FEND with Peter in this episode, along with some of the new tools they've built to go along with this milestone.

To use MITRE's own words to describe the gap this project fills:

"it is necessary that practitioners know not only what threats a capability claims to address, but specifically how those threats are addressed from an engineering perspective, and under what circumstances the solution would work"

Segment Resources:

In the enterprise security news,

  1. a final few fundings before the year closes out
  2. Arctic Wolf buys Cylance from Blackberry for cheap, a sentence that feels very weird to say
  3. the quiet HTTPS revolution
  4. passkeys are REALLY catching on
  5. resilience keeps showing up in the titles of news items
  6. Apple Intelligence insults the BBC’s intelligence
  7. MITRE ATT&CK evals drama
  8. Lastpass breach drama continues

All that and more, on this episode of Enterprise Security Weekly

As we wrap up the year, we have an honest discussion about how important security really is to the business. We discuss some of Katie's predictions for AppSec in 2025, as well as "what sucks" in security!

Visit https://www.securityweekly.com/esw for all the latest episodes!

Show Notes: https://securityweekly.com/esw-388

Förekommer på
00:00 -00:00