Eric Sorensen
Security Breach
A weekly discussion of new developments and the latest cybersecurity threats, including ransomware, malware, phishing schemes, DDoS attacks and more, facing the U.S. industrial sector.
Author
Eric Sorensen
Category
Podcast website
Latest episode
Jun 24, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Chasing Cyber Ghosts 06.03.2024 28:35
Send us Fan Mail How thinking like a hacker can lead to better cybersecurity ROI and avoid the dreaded "hope" strategy. Regardless of what you might hear from some, ransomware in the industrial sector is at an all-time high in terms of frequency and cost. Zero day and day one vulnerabilities are being discovered at a historic level and patching continues to be a challenge. Asset visualiz...
Missteps Creating 'An Internal Collection of Hackers' 28.02.2024 40:01
Send us Fan Mail Creating an OT vision, and why hackers are "like water." With hackers repeatedly demonstrating that that they play no favorites in terms of the sector of manufacturing, its location, or the size of the enterprise, detection and response strategies can be universally dissected in addressing ransomware, phishing or any number of social engineering approaches. And this dat...
Leveraging Threat Intelligence Data 22.02.2024 37:57
Send us Fan Mail Hacker insight and vulnerability updates are great, but that's only half the battle. An ever-expanding attack surface has created a number of complexities when it comes to combining the benefits of new automation technologies with the challenges of securing the OT environment and supply chain. This led Cybersixgill to predict that in 2024, more companies will adopt Threat Exp...
The Hacker's Most Lucrative Attack 15.02.2024 36:12
Send us Fan Mail The tech that's helping social engineers expand current exploits, including credential harvesting. In this episode, we welcome Kory Daniels, CISO of Trustwave, a leading provider of industrial cyber risk solutions, to the show. The conversation spanned a number of topics, including: The double-edged sword of credential harvesting hacks. How data theft is providing greater vis...
SBOMs, AI and the Crown Jewels 07.02.2024 33:17
Send us Fan Mail How prioritizing the wrong data and assets is leading to more cyber risk. When it comes to OT security, the cruel reality is that the bad guys are doing what most predators do over time – they continue to hunt and evolve. This evolution allows hackers to constantly adjust to new security protocols and more rapidly react to common vulnerabilities – often days, weeks or months befor...
Tech Debt and the Unsexy Side of Cybersecurity 31.01.2024 40:45
Send us Fan Mail How the legacy of OT innovation contributes to cyber challenges. Vulnerabilities across the cybersecurity landscape are obviously trending in an upward direction. Perhaps most concerning, however, is the number of zero and one-day vulnerabilities being uncovered in key industrial control systems by many of the sector’s leading providers of software, automation and system integrati...
What Happens When a Torque Wrench Gets Hacked 25.01.2024 28:45
Send us Fan Mail Two recent vulnerabilities, one traditional and one frighteningly unique, could reshape industrial cybersecurity. In this episode, we’re going to dive into two recently detected vulnerabilities that could have a significant impact on the industrial sector, as they involve two companies with wide-reaching influence on manufacturers of all sizes. One involves the Siemens Automation...
AI, ChatGPT Fueling Surge in Ransomware 09.01.2024 22:13
Send us Fan Mail Elevated social engineering, more connections and growing extortion amounts will drive attack growth. Late last year we discussed Lockbit’s ransomware attack on Boeing, and the ensuing “cyber incident” that resulted in a large quantity of the aerospace giant’s data being stolen. One of the experts we tapped into in breaking down the attack, and its fallout, was Tony Pietrocola. In...
New Strategies for Old-School Hacks 09.01.2024 28:24
Send us Fan Mail Coordinating patches, covering the basics and not falling for 'pinky promises.' Late last year we discussed Lockbit’s ransomware attack on Boeing, and the ensuing “cyber incident” that resulted. One of the experts we tapped into in breaking down the attack, and its fallout, was KnowBe4’s Erich Kron. You can check that episode out in our archives. In addition to his exten...
Learning from the Dark Side 20.12.2023 41:16
Send us Fan Mail A former black hat offers insight on defending against hackers that "go for the throat every time." One of the mindsets shared by hackers and their corporate victims is the desire to put a successful bow on the calendar year. For you this could mean hitting a collection of shipping dates, production quantities or equipment implementations. What many are beginning to real...
The Growing Impact of Hacktivists and State-Sponsored Groups 13.12.2023 42:11
Send us Fan Mail Accidental advancements by state-sponsored hackers are impacting ICS security, and elevating network visibility needs. Amongst the traditional threats to manufacturing enterprises and industrial control systems are the escalating roles of state-sponsored hacker groups. Refined through recent hostilities in the Ukraine and Gaza Strip, more and more cyber attacks against critical in...
Vulnerability Data from 'The Wild' 07.12.2023 41:06
Send us Fan Mail MITRE’s ATT&CK knowledgebase, and the intrusion patterns, hacker tactics and response data it provides. While there are a number of indicators showing the positive direction in which industrial cybersecurity is heading, it's still worth taking a look at some of the more alarming facts impacting our current situation. For example, Fortinet is reporting that: Three-fourths...
Walking the Line 01.12.2023 29:44
Send us Fan Mail Balancing resources to keep the bad guys out, improve real-time visibility, and develop quicker responses to new attacks. In what might be legendary singer Johnny Cash's most famous song, he speaks of keeping his eyes wide open all the time, and those tasked with OT security responsibilities are finding that they too need to walk the line. In the cybersecurity world this mea...
Breaking Down the Boeing Hack 21.11.2023 26:08
Send us Fan Mail Industry experts assess the ransomware attack, the attacker, and critical takeaways for manufacturers of all sizes. Recently, one of the most high-profile manufacturers in the world – Boeing – suffered what they’re describing as a “cyber incident”, which resulted in a large, but unknown quantity of data being stolen and held for ransom by the notorious Russian RaaS group, Lockbit....
Turning Up the Cat & Mouse Game 16.11.2023 25:42
Send us Fan Mail Staying ahead of hackers as they look to infiltrate every new connection point. The balancing act continues when it comes to industrial cybersecurity, with the focus of many organizations split between focusing on known internal weaknesses or harnessing a better understanding of the external black hat organizations wanting to shut them down, steal data or extort payments. One stat...
This is the Way ... to Beat Hackers 10.11.2023 39:00
Send us Fan Mail There are two common elements of a hacker’s strategy that show up regardless of whether it’s a ransomware attack on a local healthcare system or a malware drop on a global automotive manufacturer. The first is speed. Once an exploit is detected by the bad guys, they will work as quickly as possible to take advantage of it, hopefully beating the deployment of any patches. The sec...
Criminal Organizations Know You 02.11.2023 39:49
Send us Fan Mail Using hacker tactics against them by getting IT and OT on the same page. One of the most recent, widespread and hardest hitting cyberattacks is the MOVEit exploit spearheaded by the ransomware gang Clop. The zero-day vulnerabilities associated with this file transfer tool impacted a number of global manufacturers, including Shell, Schneider Electric, Siemens Energy, Emerson, FANUC...
Patches, PLCs and Making it Harder for Hackers 26.10.2023 35:54
Send us Fan Mail The little things that can shore up cyber defenses and protect against evolving attack groups. When it comes to assessing the threat landscape for OT cybersecurity environments, the challenge has become less about identifying possible sources of attack, and more about prioritizing them. Protection from external sources gets a lot of attention, and rightfully so. However, another s...
Why AI is Your Biggest Threat and Most Powerful Ally 19.10.2023 28:58
Send us Fan Mail Artificial intelligence is an unrivaled cyber threat, but benefits are also emerging for the White Hats. We’ve talked about a lot of challenges, vulnerabilities, attacks and hacker groups on Security Breach , but no topic generates greater consternation than Artificial Intelligence, and all the questions it brings to the table. According to an IBM report, the average cost for a d...
The Ransomware Roller Coaster 11.10.2023 25:11
Send us Fan Mail How a dip in reported ransomware attacks could be disguising a push to target smaller manufacturers. Today’s episode offers some new takes on a familiar topic – the rollercoaster-like dynamics of ransomware attacks. One of the latest updates comes via Kovrr and their Ransomware Threat Landscape report for the first half of 2023. The firm found that while the number of reported ran...
'There's A Train Wreck Coming' 04.10.2023 35:48
Send us Fan Mail Quantum Computing is not a future need - how it impacts (positively and negatively) everything you want to keep secure. Instead of setting things up with data about recent attacks or stats from industry reports, we're going to dive right into this episode's topic - Quantum Computing, and its short and long-term impact on every piece of personal, intellectual and operatio...
'They're Hitting Everyone They Can' 29.09.2023 37:18
Send us Fan Mail How and why hackers are targeting smaller enterprises, and one organization's efforts to defend manufacturing. We all know that cyberattacks in the industrial sector continue to rise and create new production, supply chain and data management challenges throughout the industrial sector. And conversations on this podcast have covered numerous reasons as to why these numbers co...
How Hackers are Targeting Vehicles and Fleets 20.09.2023 41:31
Send us Fan Mail EV charging stations, telematics and infotainment offer tremendous benefits, and security vulnerabilities. Typically, when we talk about the expanding attack surface being created by new, exciting and efficiency-driven technology, we’re referencing digital transformation’s impact on the plant floor and throughout the manufacturing enterprise. Today, pun intended, we’re shifting ge...
Doubling Down to Beat the Hackers 14.09.2023 33:16
Send us Fan Mail How the Industry IoT Consortium's new security framework offers a 'belt and suspenders' approach to cybersecurity. One cybersecurity topic that gets me up on the soapbox quicker than most is the need for stakeholders within the industrial sector to collaborate and share more information on cyber attacks, hacker tactics and best practices for both in warding off intr...
Inside the Summer's Biggest Industrial Hacks 07.09.2023 37:09
Send us Fan Mail Takeaways from two unique, yet similarly damaging attacks. This episode takes a slightly different approach. Instead of a single leading voice discussing trends and strategies focused on addressing and responding to OT cyberattacks, we’re going to dive into a couple of recent hacks that impacted the manufacturing sector. We’re going to start off with Matt Radolec. He’s an incident...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.