Insight certainty 4/5 debate potential 2/5

D'Amato: Cyber attackers face no accountability, enabling endless retries

David D'Amato · a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room · Jan 2, 2019 · at 16:49

David D'Amato explains the structural asymmetry between cyber defenders and persistent attackers who face no deterrents.

0:00 / 0:08exact quote · 8.0s
▶ Watch the full episode on YouTube → 720p mp4 · rendered on demand · StarZero watermark
“As an attacker, I can keep trying my attack as many times as I want. So every time you catch me, I simply restart my attack because there is no accountability.”

quote is from the automated transcript, cleaned for reading: filler sounds and stutters are removed, nothing is rephrased. names can be misheard (the analysis reads context, assessments check outside sources). how →

More from David D'Amato

Opinion
D'Amato: Corporate board focus on China and Russia is a distraction
“They're simply really interested in things that are in the news. So if you look at things like China and Russia that don't impact most organizations, they want to know who's attacking and where they're from, what they're doing. And to be honest with you, that'…”
David D'Amato Jan 2, 2019 ▶ 7:21 a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
Opinion
D'Amato: Cyber attack attribution does not matter for private corporations
“And for most organizations, the attribution doesn't matter. For the government, it absolutely matters. But as a corporation, what will you be able to do? You're not going to be able to hack back that, that country.”
David D'Amato Jan 2, 2019 ▶ 7:50 a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
Assertion Not checkable as stated
D'Amato: Cyber attackers often understand target networks better than defenders
“Most organizations don't really understand their own organization, their environment, and that in many cases, attackers understand the environment much better than the defenders do.”
David D'Amato Jan 2, 2019 ▶ 15:36 a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
Assertion Not checkable as stated
D'Amato: Chief Security Officers commonly do not know their endpoint count
“When I asked them how many systems they had in their organization, how many endpoints they had, computers and servers and things like that, They had no idea. So that's pretty common.”
David D'Amato Jan 2, 2019 ▶ 15:58 a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
Assertion Not checkable as stated
D'Amato: Penetration testers breached top secure facilities in under two hours
“I'll be honest with you, I was not very good, but within about a week or less, I think my best was about two hours, we were able to break into some of the most secure locations in the world. Physically and Based on information technology.”
David D'Amato Jan 2, 2019 ▶ 6:11 a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
Insight
D'Amato: Integrity attacks are most devastating because they go undetected
“And integrity tends to be one of the most devastating attacks, because you typically don't know what's happened.”
David D'Amato Jan 2, 2019 ▶ 12:34 a16z Podcast | Cybersecurity in the Boardroom vs. the Situation Room
Made with StarZero

Turn any episode into a week of clips.

This entire site, over 1,000 episodes transcribed, diarized, checked and made playable, runs on the StarZero media pipeline. Drop in your own episode and the podcast clipper finds the moments worth sharing, cuts them, captions them, and reframes them for every feed.