<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>OSec Insights</title><description>Original security research and analysis from OSec (OccamSec).</description><link>https://www.osec.com/</link><language>en-us</language><item><title>Pip Dreams and Security Schemes, Part II: The Interpreter in the Machine</title><link>https://www.osec.com/resources/blog/pip-dreams-and-security-schemes-part-ii-the-interpreter-in-the-machine/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/pip-dreams-and-security-schemes-part-ii-the-interpreter-in-the-machine/</guid><description>A follow-up to the original pip configuration research. pip operates in CI/CD environments with access to private registries, cloud credentials, and build systems. This article challenges the assumption that pip is merely a neutral delivery mechanism, revealing that the tooling itself presents…</description><pubDate>Thu, 04 Jun 2026 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Matt Landers</author></item><item><title>Rotten Apples Returns — macOS Codesigning Translocation Revisited</title><link>https://www.osec.com/resources/blog/rotten-apples-returns-macos-codesigning-translocation-revisited/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/rotten-apples-returns-macos-codesigning-translocation-revisited/</guid><description>In 2021, OSec&apos;s vulnerability research team discovered a flaw in amfid that allowed transplanting codesigning entitlements from one binary to another. We called it &quot;Rotten Apples.&quot; Apple&apos;s M1 release inadvertently patched this specific bug, though Apple never acknowledged it as a vulnerability,…</description><pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Brandon Duncan</author></item><item><title>What Claude Security gets right — and what it misses</title><link>https://www.osec.com/resources/blog/what-claude-security-gets-right-and-what-it-misses/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/what-claude-security-gets-right-and-what-it-misses/</guid><description>Anthropic just opened Claude Security to public beta. It scans your codebase, finds vulnerabilities, and writes the patch, all in one sitting, no ticket queue. That&apos;s a genuine capability worth taking seriously.</description><pubDate>Tue, 05 May 2026 00:00:00 GMT</pubDate><category>AI</category><author>Christian Kimball</author></item><item><title>Hollywood Has Always Run on Fragmentation. AI Is Making That Everyone&apos;s Problem.</title><link>https://www.osec.com/resources/blog/hollywood-has-always-run-on-fragmentation-ai-is-making-that-everyones-problem/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/hollywood-has-always-run-on-fragmentation-ai-is-making-that-everyones-problem/</guid><description>It takes a village to make a movie. A very large, geographically distributed, loosely governed village, and most of it has no idea what the rest of it is doing with your data.</description><pubDate>Tue, 14 Apr 2026 00:00:00 GMT</pubDate><category>AI</category><author>Mark Stamford</author></item><item><title>CIP-003-11 Is Here. Here&apos;s How to Comply Without Breaking Your OT Environment</title><link>https://www.osec.com/resources/blog/cip-003-11-is-here-heres-how-to-comply-without-breaking-your-ot-environment/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/cip-003-11-is-here-heres-how-to-comply-without-breaking-your-ot-environment/</guid><description>The &quot;low impact&quot; label has always bothered me.</description><pubDate>Thu, 09 Apr 2026 00:00:00 GMT</pubDate><category>Compliance</category><author>Christian Kimball</author></item><item><title>Test Your People, Not Just Your Filters</title><link>https://www.osec.com/resources/blog/test-your-people-not-just-your-filters/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/test-your-people-not-just-your-filters/</guid><description>Your phishing simulation told you 12% of employees clicked, unfortunately this is mostly meaningless. What could an attacker do next?</description><pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Cayce Mahon</author></item><item><title>Nobody Gives a S##t About Cybersecurity: A Postcard from the Edge of the Industry</title><link>https://www.osec.com/resources/blog/nobody-gives-a-s-t-about-cybersecurity-a-postcard-from-the-edge-of-the-industry/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/nobody-gives-a-s-t-about-cybersecurity-a-postcard-from-the-edge-of-the-industry/</guid><description>As the CEO of a cybersecurity company, I realize that it may seem strange to say that no one really cares about the very thing we sell; bear with me.</description><pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>The Validation Layer for AI: Why Verifying Vulnerabilities Matters as Much as Finding Them</title><link>https://www.osec.com/resources/blog/the-validation-layer-for-ai-why-verifying-vulnerabilities-matters-as-much-as-finding-them/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/the-validation-layer-for-ai-why-verifying-vulnerabilities-matters-as-much-as-finding-them/</guid><description>AI has changed what&apos;s possible in security testing. Tools powered by LLMs can scan thousands of assets, surface potential vulnerabilities, and generate findings at a scale and speed no human team could match on its own. For enterprises managing complex, distributed environments, that capability…</description><pubDate>Wed, 18 Mar 2026 00:00:00 GMT</pubDate><category>AI</category><author>Jimmy Fisher</author></item><item><title>The Day Zero Trust Died</title><link>https://www.osec.com/resources/blog/the-day-zero-trust-died/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/the-day-zero-trust-died/</guid><description>Your security stack has a new problem, but you can&apos;t see it. Because it doesn&apos;t look like a threat. It has valid credentials, authorized access, and a perfectly legitimate reason to be reading your email, touching your databases, and pushing code to production. But it hasn&apos;t gone through a security…</description><pubDate>Mon, 09 Mar 2026 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>Wrongfully Accused: AI and the Death of Cyber Security</title><link>https://www.osec.com/resources/blog/wrongfully-accused-ai-and-the-murder-of-cyber-security/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/wrongfully-accused-ai-and-the-murder-of-cyber-security/</guid><description>On a cold February morning (at least, on the East Coast), the world awoke to a post by AI company Anthropic that their flagship product, Claude, was finding security vulnerabilities at an alarming rate (https://red.anthropic.com/2026/zero-days/). With a headline that provoked both fear (&quot;…growing…</description><pubDate>Wed, 04 Mar 2026 00:00:00 GMT</pubDate><category>AI</category><author>Mark Stamford</author></item><item><title>AI Agents Are Already Hacking You. Your Internal Controls Won&apos;t Save You.</title><link>https://www.osec.com/resources/blog/ai-agents-are-already-hacking-you-your-internal-controls-wont-save-you/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/ai-agents-are-already-hacking-you-your-internal-controls-wont-save-you/</guid><description>Something shifted in September 2025, and most organizations still haven&apos;t processed it, and yes, this is talking about AI (and specifically systems relying on LLM&apos;s), but bear with us.</description><pubDate>Tue, 24 Feb 2026 00:00:00 GMT</pubDate><category>AI</category><author>Jimmy Fisher</author></item><item><title>The $10M Distraction: Why 50,000 CVEs Don&apos;t Matter (But 3 Attack Paths Do)</title><link>https://www.osec.com/resources/blog/the-10m-distraction-why-50-000-cves-dont-matter-but-3-attack-paths-do/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/the-10m-distraction-why-50-000-cves-dont-matter-but-3-attack-paths-do/</guid><description>The latest forecast from FIRST is enough to keep any CISO awake: annual CVE disclosures are projected to surpass 50,000 in 2026, with some models predicting a surge as high as 117,000.</description><pubDate>Mon, 16 Feb 2026 00:00:00 GMT</pubDate><category>Strategy</category><author>Jimmy Fisher</author></item><item><title>AI Security Checklist 2025</title><link>https://www.osec.com/resources/blog/ai-security-checklist-2025/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/ai-security-checklist-2025/</guid><description>Prompt injection involves manipulating LLM behavior through crafted inputs that override system instructions. This includes direct injection (user input) and indirect injection (external data like emails, documents, web pages).</description><pubDate>Wed, 17 Dec 2025 00:00:00 GMT</pubDate><category>AI</category><author>Christian Kimball</author></item><item><title>The Sandworm in Your Dependencies</title><link>https://www.osec.com/resources/blog/the-sandworm-in-your-dependencies/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/the-sandworm-in-your-dependencies/</guid><description>In Frank Herbert&apos;s Dune, the Shai-Hulud are giant sandworms. They&apos;re sources of immense power and constant threat to anyone crossing the desert. The malware campaign that borrowed this name lived up to it: a self-replicating worm that compromised over 500 npm packages, stole credentials from…</description><pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>Why JLR&apos;s £3.5bn Cyber Loss Should Change How You Budget Security</title><link>https://www.osec.com/resources/blog/why-jlrs-3-5bn-cyber-loss-should-change-how-you-budget-security/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/why-jlrs-3-5bn-cyber-loss-should-change-how-you-budget-security/</guid><description>Most cyber security spending tends to be the results of one or more of the following analysis:</description><pubDate>Thu, 25 Sep 2025 00:00:00 GMT</pubDate><category>Strategy</category><author>Darren Anderson</author></item><item><title>Five AI Cyber Use Cases That Actually Work (and Two That Don&apos;t)</title><link>https://www.osec.com/resources/blog/ai-security-tools-use-cases/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/ai-security-tools-use-cases/</guid><description>The artificial intelligence revolution is in full flow. With the market size for AI in cybersecurity projected to reach $146 billion by 2032, organisations worldwide are adopting AI-powered security tools fast. But underneath the marketing hype and the vendor claims, which AI applications genuinely…</description><pubDate>Tue, 26 Aug 2025 00:00:00 GMT</pubDate><category>AI</category><author>Christian Kimball</author></item><item><title>From Point-in-Time Testing to Continuous Exposure Management</title><link>https://www.osec.com/resources/blog/continuous-exposure-management/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/continuous-exposure-management/</guid><description>For years, point-in-time penetration testing has been the standard for measuring risk. Today&apos;s environments move too fast for that alone, and staying ahead takes continuous exposure management.</description><pubDate>Mon, 25 Aug 2025 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>Top 7 Cloud Security Trends Every Business Must Know in 2025</title><link>https://www.osec.com/resources/blog/top-7-cloud-security-trends-every-business-must-know-in-2025/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/top-7-cloud-security-trends-every-business-must-know-in-2025/</guid><description>The cloud is the foundation for how many modern businesses operate, innovate, and scale. As cloud adoption deepens, so does the complexity of securing it. In 2025, the threats are more nuanced, the environments more fragmented, and the consequences of missteps more immediate.</description><pubDate>Mon, 28 Jul 2025 00:00:00 GMT</pubDate><category>Strategy</category><author>Jimmy Fisher</author></item><item><title>Executive Order Strengthens U.S. Cybersecurity</title><link>https://www.osec.com/resources/blog/executive-order-strengthens-u-s-cybersecurity/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/executive-order-strengthens-u-s-cybersecurity/</guid><description>The cybersecurity landscape just shifted. With the signing of the new Executive Order on U.S. Cybersecurity, government agencies and private companies both face sweeping changes in how they protect their digital assets. The requirements run from quantum-resistant encryption to automated IoT…</description><pubDate>Wed, 11 Jun 2025 00:00:00 GMT</pubDate><category>Compliance</category><author>Christian Kimball</author></item><item><title>Financial Services Threat Briefing</title><link>https://www.osec.com/resources/blog/financial-services-threat-report/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/financial-services-threat-report/</guid><description>This briefing covers the evolving cyber threats targeting financial services organizations. Our analysis shows attacks against the sector escalating in both sophistication and frequency, with ransomware incidents doubling year-over-year and Q1 2025 already surpassing 2024&apos;s total attack volume.</description><pubDate>Tue, 10 Jun 2025 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>IIoT and OT Cybersecurity: The Next Battleground for Cyber Adversaries</title><link>https://www.osec.com/resources/blog/iiot-and-ot-cybersecurity-the-next-battleground-for-cyber-adversaries/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/iiot-and-ot-cybersecurity-the-next-battleground-for-cyber-adversaries/</guid><description>Operational Technology (OT) and Industrial Internet of Things (IIoT) systems are increasingly becoming prime targets for cyberattacks, signaling a significant shift in OT management and execution. According to the SANS 2023 ICS/OT Cybersecurity Survey, there were 68 attacks with physical…</description><pubDate>Sun, 16 Feb 2025 00:00:00 GMT</pubDate><category>Threats</category><author>James Murtha</author></item><item><title>Stop Worrying About The Quantum Apocalypse</title><link>https://www.osec.com/resources/blog/stop-worrying-about-the-quantum-apocalypse/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/stop-worrying-about-the-quantum-apocalypse/</guid><description>Basically zero.</description><pubDate>Tue, 11 Feb 2025 00:00:00 GMT</pubDate><category>Strategy</category><author>Elliot Kaplan</author></item><item><title>Security Awareness Training Is Mostly Pointless: A Practitioner&apos;s Perspective</title><link>https://www.osec.com/resources/blog/security-awareness-training-is-mostly-pointless/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/security-awareness-training-is-mostly-pointless/</guid><description>Security awareness training has become an annual ritual: assign the modules, run a phishing simulation, log the completion rates, satisfy the auditor. This piece makes the practitioner&apos;s case that most of it is theater. It rarely changes what a capable attacker can actually pull off, and it quietly…</description><pubDate>Sat, 01 Feb 2025 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>Threat Led Pen Testing and DORA</title><link>https://www.osec.com/resources/blog/threat-led-pen-testing-and-dora/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/threat-led-pen-testing-and-dora/</guid><description>The Digital Operational Resilience Act (DORA), arriving for January 2025 and introduced by the European Union, aims to strengthen the IT resilience of financial services organizations by setting regulatory requirements for digital security and risk management. DORA places a significant emphasis on…</description><pubDate>Tue, 03 Dec 2024 00:00:00 GMT</pubDate><category>Compliance</category><author>Darren Anderson</author></item><item><title>When chatbots strike</title><link>https://www.osec.com/resources/blog/when-chatbots-strike/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/when-chatbots-strike/</guid><description>From the moment we invented the wheel eons ago, our species has been on a roll, creating and refining tools that eventually carried us to the wondrous technologies we utilize today. With the advent of user-friendly artificial intelligence (AI), as we have seen in applications such as ChatGPT and…</description><pubDate>Wed, 27 Nov 2024 00:00:00 GMT</pubDate><category>AI</category><author>Rory Guidry</author></item><item><title>Cyber insurance — friend or foe?</title><link>https://www.osec.com/resources/blog/cyber-insurance-friend-or-foe/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/cyber-insurance-friend-or-foe/</guid><description>Just ask yourself: &quot;is saving the cost of the ounce of prevention worth the pounds of cures you&apos;ll need when a cyberattack comes?&quot;</description><pubDate>Tue, 19 Nov 2024 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>Enhancing Vulnerability Management with Incenter Tag Filtering</title><link>https://www.osec.com/resources/blog/enhancing-vulnerability-management-with-incenter-tag-filtering/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/enhancing-vulnerability-management-with-incenter-tag-filtering/</guid><description>Organizations are drowning in a growing volume of vulnerabilities. Managing them well keeps the business resilient and its daily operations running. Tagging, already built into Incenter, streamlines that work: assign custom or predefined tags to assets, then filter vulnerability information by…</description><pubDate>Mon, 04 Nov 2024 00:00:00 GMT</pubDate><category>Strategy</category><author>Christian Kimball</author></item><item><title>Cisco Breached Data Posted on Dark Web Forums</title><link>https://www.osec.com/resources/blog/cisco-breached-data-posted-on-dark-web-forums/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/cisco-breached-data-posted-on-dark-web-forums/</guid><description>A confirmed breach at Cisco was disclosed on dark web forums on October 14th by threat actors IntelBroker, &quot;EnergyWeaponUser,&quot; and &quot;zjj.&quot; The company confirmed the breach occurred on October 6th.</description><pubDate>Wed, 16 Oct 2024 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>Pip Dreams and Security Schemes: Chaos in your Configuration Files</title><link>https://www.osec.com/resources/blog/pip-dreams-and-security-schemes-chaos-in-your-configuration-files/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/pip-dreams-and-security-schemes-chaos-in-your-configuration-files/</guid><description>In the world of Python development, pip is an indispensable tool for managing packages and dependencies. While it simplifies many aspects of package management, there are risks associated with using pip configuration files (pip.conf or pip.ini) that developers and the people who manage systems…</description><pubDate>Wed, 18 Sep 2024 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Matt Landers</author></item><item><title>Microsoft Patch Tuesday Analysis — September 2024</title><link>https://www.osec.com/resources/blog/microsoft-patch-tuesday-analysis-september-2024/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/microsoft-patch-tuesday-analysis-september-2024/</guid><description>This month&apos;s Patch Tuesday sees 79 fixes for September. Of the issues found, 19 are of a high severity and likelihood of exploitation in the future. In the wild, 4 have been actively exploited by threat actors (with one having been exploited since 2018). The class of vulnerabilities this month are…</description><pubDate>Wed, 11 Sep 2024 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>Microsoft Patch Tuesday Analysis — July 2024</title><link>https://www.osec.com/resources/blog/patch-tuesday-july/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/patch-tuesday-july/</guid><description>For July&apos;s Patch Tuesday round-up, there were 143 security updates from Microsoft. Of the updates, a majority of the vulnerabilities are categorized as Remote-Code-Execution (RCE), followed by privilege elevation (with one exploited in the wild), and security feature bypasses. On the lower end,…</description><pubDate>Thu, 11 Jul 2024 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>Microsoft Patch Tuesday Analysis — April 2024</title><link>https://www.osec.com/resources/blog/microsoft-patch-tuesday-analysis-april-2024/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/microsoft-patch-tuesday-analysis-april-2024/</guid><description>April 9, 2024, Microsoft released their monthly Patch Tuesday security updates, totalling over 150 new Microsoft CVE&apos;S. Below we discuss the vulnerabilities of the highest severity, based on our analysis, as well as two vulnerabilities that are under active exploitation at the moment.</description><pubDate>Thu, 11 Apr 2024 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>LLMs Behaving Badly, Part 1 — Malware Creation</title><link>https://www.osec.com/resources/blog/llms-behaving-badly-part-1/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/llms-behaving-badly-part-1/</guid><description>In this document, the first part of the results of our ongoing research in to LLMs, we examine the potential for large language models to produce malware. Our focus is on open source models as these lend themselves more easily to malicious activities (logging in to ChatGPT and trying to write…</description><pubDate>Fri, 15 Mar 2024 00:00:00 GMT</pubDate><category>AI</category><author>Brandon Duncan</author></item><item><title>Purple Teams — The Business Benefits of Cost-Effective Purple Penetration Testing</title><link>https://www.osec.com/resources/blog/cost-effective-purple-penetration-testing/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/cost-effective-purple-penetration-testing/</guid><description>Penetration testing plays a vital role in broader cybersecurity defensive strategies. As threats from bad actors have evolved and increased in frequency, the defensive tactics used by those tasked with thwarting attacks have also changed.</description><pubDate>Mon, 19 Feb 2024 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Gabe LeBlanc</author></item><item><title>Microsoft Patch Tuesday Analysis — February 2024</title><link>https://www.osec.com/resources/blog/microsoft-patch-tuesday-analysis-february-2024/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/microsoft-patch-tuesday-analysis-february-2024/</guid><description>On February 13, 2024, Microsoft released their monthly Patch Tuesday security updates (see here), totaling 73 new Microsoft CVE&apos;s, including 2 Zero-day vulnerabilities, and 1 non-Microsoft security update. Below we discuss the vulnerabilities of the highest severity, based on our analysis.</description><pubDate>Fri, 16 Feb 2024 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>Living off the Land: An Introduction to Blending In for Red Teams</title><link>https://www.osec.com/resources/blog/living-off-the-land-an-introduction-to-blending-in-for-red-teams/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/living-off-the-land-an-introduction-to-blending-in-for-red-teams/</guid><description>Living off the Land (LotL) is a technique used by both red teams, and bad guys. It involves using existing tools, scripts, and resources that are already present in the target environment to achieve the objectives of the engagement. While not a new approach, it started officially being known as…</description><pubDate>Thu, 25 Jan 2024 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Matt Landers</author></item><item><title>Unleashing the Power of Purple Teaming with MITRE ATT&amp;CK</title><link>https://www.osec.com/resources/blog/unleashing-the-power-of-purple-teaming-with-mitre-attck/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/unleashing-the-power-of-purple-teaming-with-mitre-attck/</guid><description>MITRE ATT&amp;CK is a globally accessible knowledge base of adversary tactics and techniques based on real-world observations. It is used as a foundation for the development of specific threat models and methodologies in the private sector, in government, and in the cybersecurity product and service…</description><pubDate>Tue, 16 Jan 2024 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Gabe LeBlanc</author></item><item><title>Indicators of Compromise (IOC): Understanding, Identifying, and Utilizing Cyber Threat Indicators</title><link>https://www.osec.com/resources/blog/indicators-of-compromise-ioc-understanding-identifying-and-utilizing-cyber-threat-indicators/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/indicators-of-compromise-ioc-understanding-identifying-and-utilizing-cyber-threat-indicators/</guid><description>Organizations face more cyber threats every year. Ransomware, supply chain breaches, the risk of unauthorized access or malicious activity is higher than it has ever been. To detect and respond to these threats, security professionals rely on Indicators of Compromise (IOCs): pieces of forensic data…</description><pubDate>Mon, 15 Jan 2024 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>OSINT in Threat Hunting</title><link>https://www.osec.com/resources/blog/osint-in-threat-hunting/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/osint-in-threat-hunting/</guid><description>Traditional defenses no longer hold up on their own against advanced attacks. Proactive threat hunting has become a core part of modern security work, letting organizations detect and neutralize threats before they do real damage. One of the hunter&apos;s sharpest tools is Open Source Intelligence…</description><pubDate>Sun, 14 Jan 2024 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>What&apos;s Up, Doc? An OSec Approach to the Looney Tunables Bug (CVE-2023-4911)</title><link>https://www.osec.com/resources/blog/whats-up-doc-an-osec-approach-to-the-looney-tunables-bug-cve-2023-4911/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/whats-up-doc-an-osec-approach-to-the-looney-tunables-bug-cve-2023-4911/</guid><description>The landscape of Linux security is forever evolving, and CVE-2023-4911 marks a watershed moment. This vulnerability, rooted deep in the GNU C Library (glibc), specifically targets the dynamic linker/loader, ld.so. As ld.so is responsible for the launching of every single dynamically linked…</description><pubDate>Wed, 11 Oct 2023 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Rory Guidry</author></item><item><title>Protecting Education: Cybersecurity&apos;s Vital Mission</title><link>https://www.osec.com/resources/blog/protecting-education-cybersecuritys-vital-mission/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/protecting-education-cybersecuritys-vital-mission/</guid><description>Cybersecurity is as indispensable today as electricity and running water. Everyone deserves strong security and the right to feel safe, but some industries and institutions are favored over others. Education is a case in point. Despite the essential role it plays in shaping our future, it doesn&apos;t…</description><pubDate>Tue, 05 Sep 2023 00:00:00 GMT</pubDate><category>Strategy</category><author>Christian Kimball</author></item><item><title>Will Continuous Penetration Testing Lead to More Zero-Days?</title><link>https://www.osec.com/resources/blog/continuous-testing-zero-days/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/continuous-testing-zero-days/</guid><description>Point-in-time penetration testing has long been the mainstay of our industry. For many of our clients, testing is conducted for a period of weeks at a quarterly or semi-annual cadence. One such client had undergone a four-week engagement before transitioning to continuous penetration testing. While…</description><pubDate>Thu, 31 Aug 2023 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Mark Stamford</author></item><item><title>A Threat Model for Space-Based Data Centers</title><link>https://www.osec.com/resources/blog/a-threat-model-for-space-based-data-centers/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/a-threat-model-for-space-based-data-centers/</guid><description>As space becomes increasingly commercialized, there is growing interest in establishing data centers and computing infrastructure in space. On-orbit data centers could support future initiatives like space mining, space-based solar power, space tourism, and exploration missions to the Moon, Mars,…</description><pubDate>Tue, 29 Aug 2023 00:00:00 GMT</pubDate><category>Strategy</category><author>Matt Landers</author></item><item><title>Navigating the SEC Cybersecurity Risk Management Rules</title><link>https://www.osec.com/resources/blog/navigating-the-sec-cybersecurity-risk-management-rules/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/navigating-the-sec-cybersecurity-risk-management-rules/</guid><description>The U.S. Securities and Exchange Commission (SEC) recently proposed rules requiring companies to disclose cybersecurity incidents within four days if deemed material. The intent is sound, but the rigid deadline creates real compliance headaches for chief information security officers (CISOs). As…</description><pubDate>Thu, 10 Aug 2023 00:00:00 GMT</pubDate><category>Compliance</category><author>Christian Kimball</author></item><item><title>Cracked Open: Why Overlooking Lower-Risk Vulnerabilities Can Backfire</title><link>https://www.osec.com/resources/blog/the-sentry-holding-the-door-open/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/the-sentry-holding-the-door-open/</guid><description>TLDR: During an engagement our team chained multiple lower-risk vulnerabilities into a serious exploit that captured credentials. Lower-risk issues need to be addressed as part of an overall security strategy, not deferred.</description><pubDate>Wed, 09 Aug 2023 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Spencer Lindgren</author></item><item><title>The Human Touch in Cybersecurity: Why AI Can&apos;t Fully Replace Penetration Testers</title><link>https://www.osec.com/resources/blog/the_human_touch_in_cybersecurity/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/the_human_touch_in_cybersecurity/</guid><description>The rise of automated penetration testing tools and services marks a real shift in how we approach cybersecurity. These tools scour networks and systems for vulnerabilities at a level of efficiency and scale that was previously unthinkable. But the deeper we go, the clearer one truth becomes:…</description><pubDate>Mon, 07 Aug 2023 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Spencer Lindgren</author></item><item><title>Is the SQL Injection Optional?</title><link>https://www.osec.com/resources/blog/optional-sql-injection/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/optional-sql-injection/</guid><description>SQL injection remains one of the sharpest threats to web applications. This is a walkthrough of a blind SQL injection vulnerability in a Node.js application, caused by one insecure configuration option in Sequelize, a popular Object-Relational Mapping library. Sequelize&apos;s documentation warns about…</description><pubDate>Thu, 29 Jun 2023 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Matt Landers</author></item><item><title>Mastering FortiOS Exploitation: No Direct Debugging Required</title><link>https://www.osec.com/resources/blog/mastering-fortios-exploitation-no-direct-debugging-required/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/mastering-fortios-exploitation-no-direct-debugging-required/</guid><description>FortiOS proved to be a simple target when diffing because there is only one main binary, init. Running file on the binary provides some info:</description><pubDate>Wed, 14 Jun 2023 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Brandon Duncan</author></item><item><title>Unmasking Hidden Dangers: The Critical Need for Threat Hunting</title><link>https://www.osec.com/resources/blog/unmasking-hidden-dangers-the-critical-need-for-threat-hunting/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/unmasking-hidden-dangers-the-critical-need-for-threat-hunting/</guid><description>In the endless cat and mouse game of cybersecurity, threat hunting emerges as a formidable ally, proactively uncovering potential security threats before they inflict any harm. This entails an exhaustive and meticulous exploration of an organization&apos;s network and systems, on the hunt for red flags…</description><pubDate>Thu, 08 Jun 2023 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>Major Incenter Updates Cover Mobile, API, Cloud and More</title><link>https://www.osec.com/resources/blog/major-incenter-updates-cover-mobile-api-cloud-and-more/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/major-incenter-updates-cover-mobile-api-cloud-and-more/</guid><description>OSec&apos;s Incenter expands threat exposure and vulnerability identification to include mobile, API, and cloud environments in addition to existing external infrastructure and web application capabilities to deliver the most comprehensive consolidated security platform for Continuous Threat Exposure…</description><pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate><category>Strategy</category><author>Jimmy Fisher</author></item><item><title>Exploit for CVE-2023-2825</title><link>https://www.osec.com/resources/blog/exploit-for-cve-2023-2825/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/exploit-for-cve-2023-2825/</guid><description>On May 23, 2023 GitLab released version 16.0.1 which fixed a critical vulnerability, CVE-2023-2825, affecting the Community Edition (CE) and Enterprise Edition (EE) version 16.0.0. The vulnerability allows unauthenticated users to read arbitrary files through a path traversal bug. It was discovered…</description><pubDate>Thu, 25 May 2023 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Rory Guidry</author></item><item><title>Getting Root — A Technical Walkthrough</title><link>https://www.osec.com/resources/blog/getting-root-a-technical-walkthrough/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/getting-root-a-technical-walkthrough/</guid><description>A good example of what continuous penetration testing turns up. OSec obtained root access on a system by chaining several vulnerabilities identified over time. That gave our team, and would have given attackers, full access to a range of sensitive data.</description><pubDate>Wed, 22 Mar 2023 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Chris Frederick</author></item><item><title>Don&apos;t Put All Your Faith in Cyber Insurance</title><link>https://www.osec.com/resources/blog/dont-put-all-your-faith-in-cyber-insurance/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/dont-put-all-your-faith-in-cyber-insurance/</guid><description>A useful tool, as long as you consider the limitations.</description><pubDate>Tue, 21 Feb 2023 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>Once You POP You Just Can&apos;t Stop</title><link>https://www.osec.com/resources/blog/once-you-pop-you-just-cant-stop/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/once-you-pop-you-just-cant-stop/</guid><description>This is the first release in a miniseries on POP chain development in popular PHP frameworks and software. The research is written to read three ways: as a developer, as an auditor, and as an attacker. It assumes you know PHP fundamentals, but the technical detail is broken down so it stays…</description><pubDate>Sun, 11 Dec 2022 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Rory Guidry</author></item><item><title>SIM Swapping, an Overview</title><link>https://www.osec.com/resources/blog/sim-swapping-an-overview/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/sim-swapping-an-overview/</guid><description>While Sim Swapping has been a threat for nearly 10 years, it has gained in popularity mostly due to an emerging hacking group called Lapsus who have successfully targeted Microsoft, Uber, Samsung, T-Mobile, Nvidia, Ubisoft, Rockstar Games, as well as Brazil&apos;s Ministry of Health all since December,…</description><pubDate>Fri, 11 Nov 2022 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>I Spy an LFI</title><link>https://www.osec.com/resources/blog/i-spy-an-lfi/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/i-spy-an-lfi/</guid><description>PHP Object injection occurs when user input is supplied to unserialize(). The misconception is that using PHP&apos;s unserialize() is bad practice when in reality there are plenty of reasons for developers to serialize and unserialize data and it&apos;s sometimes unavoidable when running an application that…</description><pubDate>Mon, 12 Sep 2022 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Rory Guidry</author></item><item><title>A WAF Bypass</title><link>https://www.osec.com/resources/blog/wafbypass/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/wafbypass/</guid><description>If Wargames were remade in 2022, the WOPR would operate behind a Web Application Firewall (WAF). During penetration testing, security teams must identify WAF bypasses quickly rather than spending weeks researching vulnerabilities. This article documents two methods OSec discovered to bypass WAF…</description><pubDate>Tue, 28 Jun 2022 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Rory Guidry</author></item><item><title>The Move to Logic Exploitation</title><link>https://www.osec.com/resources/blog/the-move-to-logic-exploitation/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/the-move-to-logic-exploitation/</guid><description>Logical exploitation is becoming more and more prevalent in place of memory exploitation in face of advancing hardware and software protections. This is most apparent in XNU based operating systems, where hardware and software protections are by far most abundant, but also as a platform agnostic…</description><pubDate>Wed, 23 Feb 2022 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Brandon Duncan</author></item><item><title>Be Better at Infosec — OWASP London</title><link>https://www.osec.com/resources/blog/be-better-at-infosec-owasp-london/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/be-better-at-infosec-owasp-london/</guid><description>OSec CEO Mark Stamford shares some insights he has learned over his career in infosec.</description><pubDate>Thu, 23 Sep 2021 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>Penetration Test or Red Team?</title><link>https://www.osec.com/resources/blog/penetration-test-or-red-team/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/penetration-test-or-red-team/</guid><description>Criminals are highly creative and persistent. It&apos;s their job to develop new ways to breach your defenses and steal something of value, and they work hard at it. They are, unfortunately, exceptionally good at their jobs, costing the world more than $1 trillion in 2020 alone.</description><pubDate>Tue, 17 Aug 2021 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Mark Stamford</author></item><item><title>Rotten Apples: macOS Codesigning Translocation Vulnerability</title><link>https://www.osec.com/resources/blog/rotten-apples-macos-codesigning-translocation-vulnerability/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/rotten-apples-macos-codesigning-translocation-vulnerability/</guid><description>It&apos;s a breezy autumn night and I&apos;m doing some research on my Mac while lazily flipping through volume one of &quot;OS Internals&quot; by Johnathan Levin, specifically the chapter on the Mach-O file format. All of a sudden, a thought buds in my mind: &quot;What if I can translocate one code signature blob from…</description><pubDate>Thu, 29 Jul 2021 00:00:00 GMT</pubDate><category>Vulnerability Research</category><author>Brandon Duncan</author></item><item><title>Evolving Attacks on Healthcare in 2020 and Beyond</title><link>https://www.osec.com/resources/blog/evolving-attacks-on-healthcare-in-2020-and-beyond/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/evolving-attacks-on-healthcare-in-2020-and-beyond/</guid><description>The COVID-19 pandemic has caused hospital systems&apos; resources to be strained to the breaking point, and in some cases, beyond. Those who manage and use information systems need to take action now.</description><pubDate>Tue, 19 Jan 2021 00:00:00 GMT</pubDate><category>Threats</category><author>Christian Kimball</author></item><item><title>OWASP London / Suffolk Chapter Meeting</title><link>https://www.osec.com/resources/blog/owasp-london-suffolk-chapter-meeting/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/owasp-london-suffolk-chapter-meeting/</guid><description>On October 8, 2020, OSec participated in a joint OWASP London and OWASP Suffolk meeting.</description><pubDate>Fri, 09 Oct 2020 00:00:00 GMT</pubDate><category>Strategy</category><author>Cayce Mahon</author></item><item><title>Establishing a Beachhead</title><link>https://www.osec.com/resources/blog/establishing-a-beachhead/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/establishing-a-beachhead/</guid><description>Establishing a beachhead is an important objective during many of our security assessments. To gain further access into an environment we need to get access to an Internet facing system, which can then be used to pivot into the network. The walkthrough below is a real life example, taken from one…</description><pubDate>Thu, 30 Jul 2020 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Rudolph Pereira</author></item><item><title>What Is the Future of Commercial Drone Security?</title><link>https://www.osec.com/resources/blog/what-is-the-future-of-commercial-drone-security/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/what-is-the-future-of-commercial-drone-security/</guid><description>Commercial drone programmes in the UK are being accelerated by the restrictions of the Coronavirus lockdown: medical PPE drops from mainland UK to the Isle of Wight, essential medicines delivered to doorsteps in Northern Ireland. These trials are early indicators of what could be possible…</description><pubDate>Thu, 23 Jul 2020 00:00:00 GMT</pubDate><category>Strategy</category><author>Cayce Mahon</author></item><item><title>A Security Strategy for the New Normal</title><link>https://www.osec.com/resources/blog/a-security-strategy-for-the-new-normal/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/a-security-strategy-for-the-new-normal/</guid><description>During the ongoing COVID-19 outbreak many security professionals have by necessity been operating tactically &amp; in response mode, trying to identify and mitigate the security risks of organisations that have had to move rapidly to remote working. It is right that they do, as the risks are clear &amp;…</description><pubDate>Wed, 27 May 2020 00:00:00 GMT</pubDate><category>Strategy</category><author>Robert Hayes</author></item><item><title>More Secure Zoom Use</title><link>https://www.osec.com/resources/blog/more-secure-zoom-use/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/more-secure-zoom-use/</guid><description>Some organizations have halted their use of Zoom over the security concerns and alerts that arrive almost daily. For many people it is still the only option, and it remains hugely popular for remote meetings. With &quot;Zoombombing&quot; on the rise and so many users reusing meeting IDs, you need to know how…</description><pubDate>Sat, 11 Apr 2020 00:00:00 GMT</pubDate><category>Strategy</category><author>Christian Kimball</author></item><item><title>Hostage Negotiation and Cyber Security</title><link>https://www.osec.com/resources/blog/hostage-negotiation-and-cyber-security/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/hostage-negotiation-and-cyber-security/</guid><description>In one of my past lives, before cyber security came along, I was a hostage negotiator.</description><pubDate>Wed, 11 Mar 2020 00:00:00 GMT</pubDate><category>Strategy</category><author>Robert Hayes</author></item><item><title>In the Race to the Cloud, What Could Possibly Go Wrong?</title><link>https://www.osec.com/resources/blog/in-the-race-to-the-cloud-what-could-possibly-go-wrong/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/in-the-race-to-the-cloud-what-could-possibly-go-wrong/</guid><description>As we are constantly evaluating and refining our methodology for cloud penetration testing in a rapidly changing landscape, with both cloud native and hybrid cloud environments, we sometimes have a hard time placing our approach into established contexts of an on-prem world.</description><pubDate>Fri, 28 Feb 2020 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>Emerging Trends in Threat Actor Communication Methods</title><link>https://www.osec.com/resources/blog/emerging-trends-in-threat-actor-communication-methods/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/emerging-trends-in-threat-actor-communication-methods/</guid><description>Threat actors are adapting to current intelligence gathering techniques. We are observing the switch from hidden services (i.e. Tor) to conventional communication methods that are used by the general public. Platforms such as Twitter, Facebook, and even Discord (a popular app originally intended…</description><pubDate>Thu, 02 Jan 2020 00:00:00 GMT</pubDate><category>Threats</category><author>Cayce Mahon</author></item><item><title>The Industry Guide to Being a Successful &quot;Bad Actor&quot;</title><link>https://www.osec.com/resources/blog/the-industry-guide-to-being-a-successful-bad-actor/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/the-industry-guide-to-being-a-successful-bad-actor/</guid><description>We thought we would provide a guide to anyone looking to be a bad actor/malicious adversary/evil hacker based on much of what we have been hearing from the security industry at large.</description><pubDate>Thu, 14 Nov 2019 00:00:00 GMT</pubDate><category>Threats</category><author>Mark Stamford</author></item><item><title>Tales From the Red Team Crypt — Episode 1</title><link>https://www.osec.com/resources/blog/tales-from-the-red-team-crypt-episode-1/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/tales-from-the-red-team-crypt-episode-1/</guid><description>Welcome to The Red Team Crypt, where we keep the most riveting testing stories. Join me, the Crypt Keeper, through this week&apos;s episode. Not everything is as it seems, and you know what they say when you assume…</description><pubDate>Wed, 30 Oct 2019 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Davin Bateman</author></item><item><title>Everyone Can Be Taught New Tricks — Considerations for Application Pen Tests</title><link>https://www.osec.com/resources/blog/everyone-can-be-taught-new-tricks-considerations-for-application-pen-tests/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/everyone-can-be-taught-new-tricks-considerations-for-application-pen-tests/</guid><description>Application security is one of the areas that we put a great deal of our consulting efforts into and we perform many web application penetration tests (WAPT). Overtime, we&apos;ve seen a shift in the technical landscape and I wanted to write up something for others to chew on.</description><pubDate>Tue, 01 Oct 2019 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Cayce Mahon</author></item><item><title>Lessons Learned from Healthcare Security Assessments</title><link>https://www.osec.com/resources/blog/lessons-learned-from-healthcare-security-assessments/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/lessons-learned-from-healthcare-security-assessments/</guid><description>With cyber attack tactics and targets evolving rapidly, healthcare providers must assess how their cybersecurity (or lack thereof) will affect their patients and the integrity of their facility.</description><pubDate>Fri, 13 Sep 2019 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>LinkedIn Pwnage: Why We Can&apos;t All Be Friends</title><link>https://www.osec.com/resources/blog/linkedin-pwnage-why-we-cant-all-be-friends/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/linkedin-pwnage-why-we-cant-all-be-friends/</guid><description>Last July an article appeared on the outline entitled &quot;How to Beat LinkedIn: The Game&quot;, it&apos;s an entertaining read regardless of how you feel about LinkedIn. Ever since reading it, we&apos;ve been thinking about writing up something on how we have used LinkedIn during our work.</description><pubDate>Fri, 30 Aug 2019 00:00:00 GMT</pubDate><category>Threats</category><author>Mark Stamford</author></item><item><title>Do Better Penetration Tests — for Buyers and Testers</title><link>https://www.osec.com/resources/blog/do-better-penetration-tests-for-buyers-and-testers/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/do-better-penetration-tests-for-buyers-and-testers/</guid><description>We do lots of penetration tests. Along the way, we&apos;ve learned a few things worth sharing to get more out of penetration testing. There are caveats, of course. Specific situations need specific answers. But some generalizations hold in most cases.</description><pubDate>Sun, 30 Jun 2019 00:00:00 GMT</pubDate><category>Offensive Security</category><author>Mark Stamford</author></item><item><title>M&amp;A Cybersecurity</title><link>https://www.osec.com/resources/blog/ma-cybersecurity/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/ma-cybersecurity/</guid><description>Articles appear almost daily detailing yet another significant merger or acquisition, a trend common across sectors and geographies. Also growing are the number of de-mergers and spin-outs, with new entities being created from a larger parent organisation. Over the last couple of years, I have…</description><pubDate>Tue, 16 Apr 2019 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item><item><title>Lessons Learned from Working with Media Companies</title><link>https://www.osec.com/resources/blog/lessons-learned-from-working-with-media-companies/</link><guid isPermaLink="true">https://www.osec.com/resources/blog/lessons-learned-from-working-with-media-companies/</guid><description>OSec has delivered security assessment and management services to a range of media companies. Below are some of the common issues discovered during these engagements and how we helped solve them. Media companies are high value targets and often the focus of determined adversaries.</description><pubDate>Thu, 14 Mar 2019 00:00:00 GMT</pubDate><category>Strategy</category><author>Mark Stamford</author></item></channel></rss>