Entries by Scott Gombar

MFA and Social Engineering

https://thehumanelementpod.s3.amazonaws.com/ep6.mp3Podcast: Play in new window | DownloadSubscribe: RSSA lot is made of adding MFA/2FA to everything you log in to. And you absolutely should do this. What isn’t discussed enough are ways to circumvent MFA. Most of the methods for bypassing 2FA/MFA are social engineering tactics. What’s even scarier is the methods used to bypass […]

Are Your Passwords Are Belong to Us

https://thehumanelementpod.s3.amazonaws.com/ep5.mp3Podcast: Play in new window | DownloadSubscribe: RSSEp 5 – All Your Passwords Are Belong to Us A recent data breach of Nvidia revealed that employees were using really bad passwords like “nvidia” or “password“. Why do people continue to use weak passwords, and why are businesses not enforcing a stronger password policy? We discuss […]

The High Cost of Convenience – Zelle Phishing

https://thehumanelementpod.s3.amazonaws.com/ep4.mp3Podcast: Play in new window | DownloadSubscribe: RSSEp 4: The High Cost of Convenience – Zelle Phishing Payment apps and digital wallets are fast and convenient. They are great tools to send and receive money to someone quickly. Apps like Venmo, Cash App, and Zelle make it possible to accept payments or send money to […]

Russia – Ukraine Cyberwar is very real. Do you need to worry?

https://thehumanelementpod.s3.amazonaws.com/Ep3.mp3Podcast: Play in new window | DownloadSubscribe: RSSEp 3: Ukraine Cyberwar is very real. Do you need to worry? Episode 3 became necessary after I was asked at least a dozen times how to prepare for the potential of a cyberattack resulting from the war in Ukraine. I wasn’t going to podcast about the war […]

Vishing Increases Phishing Success Rate by 3 Times

https://thehumanelementpod.s3.amazonaws.com/Ep2.mp3Podcast: Play in new window | DownloadSubscribe: RSSEp 2: Vishing Increases Phishing Success Rate by 3 Times Episode 2 reviews an article on InfoSecurity Magazine. Phishing was the number 1 threat vector in 2021 closely followed by vulnerabilities. For clarity, vulnerabilities are defined as software and hardware glitches the manufacturer has issued patches or updates […]

A New Twist on the Tech Support Scam

https://thehumanelementpod.s3.amazonaws.com/ep1.mp3Podcast: Play in new window | DownloadSubscribe: RSSEp 1: A New Twist on the Tech Support Scam In Episode 1 we talk about a data breach notification from Cox Communications in December of 2021. In the notification, they disclose someone was able to gain access to some of their internal tools, and as a result […]