We're sunsetting PodQuest on 2025-07-28. Thank you for your support!
Export Podcast Subscriptions
cover of episode D3FEND 1.0: A Milestone in Cyber Ontology - Peter Kaloroumakis - ESW #388

D3FEND 1.0: A Milestone in Cyber Ontology - Peter Kaloroumakis - ESW #388

2024/12/20
logo of podcast Security Weekly Podcast Network (Audio)

Security Weekly Podcast Network (Audio)

Shownotes Transcript

Since D3FEND was founded to fill a gap created by the MITRE ATT&CK Matrix, it has come a long way. We discuss the details of the 1.0 release of D3FEND with Peter in this episode, along with some of the new tools they've built to go along with this milestone.

To use MITRE's own words to describe the gap this project fills:

"it is necessary that practitioners know not only what threats a capability claims to address, but specifically how those threats are addressed from an engineering perspective, and under what circumstances the solution would work"

Segment Resources:

In the enterprise security news,

  • a final few fundings before the year closes out
  • Arctic Wolf buys Cylance from Blackberry for cheap, a sentence that feels very weird to say
  • the quiet HTTPS revolution
  • passkeys are REALLY catching on
  • resilience keeps showing up in the titles of news items
  • Apple Intelligence insults the BBC’s intelligence
  • MITRE ATT&CK evals drama
  • Lastpass breach drama continues

All that and more, on this episode of Enterprise Security Weekly

As we wrap up the year, we have an honest discussion about how important security really is to the business. We discuss some of Katie's predictions for AppSec in 2025, as well as "what sucks" in security!

Visit https://www.securityweekly.com/esw) for all the latest episodes!

Show Notes: https://securityweekly.com/esw-388)