David D'Amato, a cybersecurity expert, refutes the idea that cyber threats are completely unpredictable, arguing threat detection should focus on familiar attack steps.
“An attack isn't made up of one action. It's usually made up of multiple actions. And so what you may see is one different action in that attack, and probably multiple, maybe 10 or 12 of the steps that you've seen in previous attacks. So in most cases, you're looking to detect those things that are not new.”
quote is from the automated transcript, cleaned for reading:
filler sounds and stutters are removed, nothing is rephrased. names can be misheard
(the analysis reads context, assessments check outside sources). how →
More from David D'Amato
Opinion
D'Amato: Corporate board focus on China and Russia is a distraction
“They're simply really interested in things that are in the news. So if you look at things like China and Russia that don't impact most organizations, they want to know who's attacking and where they're from, what they're doing. And to be honest with you, that'…”
David D'AmatoJan 2, 2019▶ 7:21a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
Opinion
D'Amato: Cyber attack attribution does not matter for private corporations
“And for most organizations, the attribution doesn't matter. For the government, it absolutely matters. But as a corporation, what will you be able to do? You're not going to be able to hack back that, that country.”
David D'AmatoJan 2, 2019▶ 7:50a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
AssertionNot checkable as stated
D'Amato: Cyber attackers often understand target networks better than defenders
“Most organizations don't really understand their own organization, their environment, and that in many cases, attackers understand the environment much better than the defenders do.”
David D'AmatoJan 2, 2019▶ 15:36a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
AssertionNot checkable as stated
D'Amato: Chief Security Officers commonly do not know their endpoint count
“When I asked them how many systems they had in their organization, how many endpoints they had, computers and servers and things like that, They had no idea. So that's pretty common.”
David D'AmatoJan 2, 2019▶ 15:58a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
AssertionNot checkable as stated
D'Amato: Penetration testers breached top secure facilities in under two hours
“I'll be honest with you, I was not very good, but within about a week or less, I think my best was about two hours, we were able to break into some of the most secure locations in the world. Physically and Based on information technology.”
David D'AmatoJan 2, 2019▶ 6:11a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
Insight
D'Amato: Integrity attacks are most devastating because they go undetected
“And integrity tends to be one of the most devastating attacks, because you typically don't know what's happened.”
David D'AmatoJan 2, 2019▶ 12:34a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
Made with StarZero
Turn any episode into a week of clips.
This entire site, over 1,000 episodes transcribed, diarized, checked and made playable,
runs on the StarZero media pipeline. Drop in your own episode and the podcast clipper finds the
moments worth sharing, cuts them, captions them, and reframes them for every feed.
We use essential cookies to make the site work. With your permission we
also use analytics cookies (Google Analytics and Mixpanel) to understand
usage and improve StarZero. See our Cookie Policy.