Find partners
Reimagining Cyber - real world perspectives on cybersecurity

Reimagining Cyber - real world perspectives on cybersecurity

Hosted by Reimagining Cyber

Episodes

216

Latest episode

Aug 2026

Language

EN

About the show

Explore the critical intersection of cybersecurity and business impact while gaining insights into CISO priorities with "Reimagining Cyber." Stay informed on the latest cybersecurity news, trends, and solutions tailored for today's CISOs and CIOs. This podcast is your go-to resource for staying updated on cybersecurity developments and addressing common challenges in the rapidly evolving digital landscape. As featured on MillionPodcasts' Best 100 Cybersecurity Podcasts https://www.millionpodcasts.com/cyber-security-podcasts/ Top 50 Chief Information Security Officer CISO Podcasts https://www.millionpodcasts.com/ciso-podcasts/ Top 70 Security Hacking Podcasts https://www.millionpodcasts.com/security-hacking-podcasts/

Listen to episodes

60 recent
September 2, 2026Episode 21714 min

The Boardroom Edition - #217

What does cyber resilience really mean when the stakes extend far beyond the security team? In this special Reimagining Cyber: The Boardroom Edition , we bring together perspectives from three 2026 conversations to explore how cybersecurity is becoming a board-level business and operational issue. Theresa Lanowitz, Cybersecurity Analyst at Omdia and former Gartner analyst explains why resilience can't be treated as simply another cybersecurity initiative — and why the whole organization, from the board and C-suite to frontline teams, needs to take responsibility. We then look at the first year of the Digital Operational Resilience Act (DORA) with tech leader Dominic Brown (founder, Graves Light Consulting) , exploring what the regulation means for financial services, why implementation has proved challenging, and why governance, testing and accountability are becoming increasingly important. Finally, Doug Merritt, CEO of Aviatrix and former CEO of Splunk, argues that cybersecurity is entering a new “containment era.” If organizations have to assume that breaches will happen, how do they prevent those breaches from becoming catastrophic? His answer: measure the blast radius . Across all three conversations, one message stands out: cyber leadership is no longer simply about protecting technology. It's about preserving operations, protecting customers, sustaining trust and ensuring the business can continue when disruption occurs. This is cybersecurity from the boardroom perspective. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

August 26, 2026Episode 21622 min

Hackers Are Already Inside - Now What? -#216

In this episode of Reimagining Cyber , Tyler Moffitt talks with Robert Salzwedell about what happens when attackers get past the firewall — and why keeping them out is no longer enough. With cloud services, remote workers, SaaS applications and compromised credentials blurring the boundaries of the traditional network, organisations can no longer assume that someone is safe simply because they are already inside. Robert explains why organisations need to look beyond the perimeter, understand where their sensitive data lives, rethink how they trust identities, and use behaviour to spot suspicious activity. They also discuss Zero Trust, AI agents, continuous security validation and how organisations can limit the damage when an account or device is compromised. In this episode: Why the traditional network perimeter is no longer enough What happens when attackers use legitimate identities Why understanding your data is critical to security How Zero Trust can help limit access and reduce risk The growing security challenge around AI and AI agents Why security needs to be continuously assessed and improved Practical steps organisations can take to reduce their exposure A conversation about moving from simply trying to keep attackers out to making sure that, when they do get in, they can't get very far. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

August 19, 2026Episode 21516 min

Return of Cl0p and Their 'One to Many' Tactics

Cl0p is back — and once again, the ransomware group is showing why attacking the technology that connects organisations can be far more powerful than attacking them one at a time. This episode examines Cl0p’s latest campaign targeting vulnerabilities in PTC Windchill and Flex PLM, enterprise software used across engineering, manufacturing and other industries. The conversation explores Cl0p’s “one-to-many” approach: find a widely deployed piece of enterprise software, exploit a vulnerability, and use it as a gateway into potentially hundreds of organisations. It’s a strategy the group has used before, most notably in the MOVEit campaign, which ultimately affected thousands of organisations. The episode looks at why data theft and extortion can now be more valuable than traditional ransomware encryption, why attackers are increasingly targeting the “multiplier” in an organisation’s technology ecosystem, and why simply patching a vulnerability may not be enough if an attacker has already gained access. It also explores the risks posed by MSPs, remote management platforms and trusted third parties — and what security teams should be doing to identify their own potential multipliers. The key lesson? Don’t just ask what happens if this system is compromised. Ask: if this system is compromised, what else does the attacker get? As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

August 12, 2026Episode 21424 min

The Attack Is Over. Now Comes the Hard Part - #214

Ransomware recovery doesn’t end when the malware is removed and the servers come back online. In this episode of Reimagining Cyber , Tyler Moffitt is joined by Keelin Conant, a cybersecurity professional with firsthand experience of ransomware restoration, to explore what happens after the immediate crisis is over. They look beyond restoring systems to the human and business consequences that can linger for weeks, months and even years. Keelin shares stories of exhausted IT teams, leadership pressure, employee trauma, reputational damage and the danger of falling back into old habits once the immediate crisis has passed. The conversation also examines why organizations can be more vulnerable to another attack after the first one, the importance of fixing the vulnerabilities that allowed attackers in, and why backups and incident response plans aren't enough if they aren't regularly tested. From ransomware-as-a-service and repeat attacks to communication, leadership and the psychological impact on the people involved, this episode asks a fundamental question: when has an organization really recovered from a cyberattack? The answer may have less to do with getting the technology running again—and much more to do with whether the business and its people can genuinely move forward. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

August 5, 2026Episode 21321 min

CaptiveCrunch - The Evolution of Public WiFi Attacks - #213

Hotel Wi-Fi has long been considered a cybersecurity risk—but what if you're connected to the correct network? In this episode of Reimagining Cyber , Tyler Moffitt examines CaptiveCrunch , a sophisticated campaign that compromises legitimate hotel and conference Wi-Fi infrastructure to intercept users before they ever reach the internet. Discover how attackers manipulate DNS traffic, abuse device code authentication, bypass traditional phishing defenses, and deploy malware such as Cornflake and CocoShell to steal credentials, OAuth tokens, and corporate access. Tyler explains why familiar security signals—including genuine Wi-Fi networks, legitimate Microsoft login pages, and even multi-factor authentication—may no longer be enough to protect travellers. Whether you're a business traveller, security leader, or IT professional, this episode offers practical guidance on reducing risk, securing remote connections, and adapting to a new generation of identity-based attacks. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

July 28, 2026Episode 21219 min

Nuclear Power 'Hack': What Really Happened? - #212

Nearly 19,000 files reportedly connected to India’s Kudankulam Nuclear Power Plant appeared on a ransomware group’s leak site. The files allegedly included engineering drawings, facility layouts, supplier details, inspection records, project correspondence, and equipment photographs. The plant’s operator says nuclear safety and security systems were not compromised. That distinction matters, but it does not make the exposed information worthless. Ben interviews Tyler Moffitt about how attackers can collect intelligence without penetrating a reactor, why contractors become attractive targets, and how individually mundane documents can combine into an operational map of critical infrastructure. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

July 22, 2026Episode 21125 min

How Ransomware Stopped America's Milk Supply - #211

A ransomware attack against Coca-Cola-owned Fairlife forced the company to temporarily suspend production across the United States. Product safety was not affected, but production-related systems were. How does a cyberattack stop a physical product from being manufactured? Why would a company shut down production when there is no evidence that the product itself was compromised? And what does this tell us about the difference between restoring technology and restoring a business? Ben interviews Tyler Moffitt about operational ransomware, manufacturing dependencies, containment decisions, and what organizations should learn from Fairlife’s response. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

July 15, 2026Episode 21021 min

The Ransomware Negotiator Who Worked for the Hackers - #210

What happens when a trusted ransomware negotiator secretly works for the very hackers he's supposed to stop? In this episode of Reimagining Cyber , Tyler Moffitt unpacks one of the most shocking insider threat cases in recent cybersecurity history. A ransomware negotiator admitted to providing confidential victim information—including insurance limits and negotiation strategies—to the BlackCat (ALPHV) ransomware gang while representing organizations during active ransomware attacks. Learn how ransomware negotiations really work, why information is the most valuable asset during a cyber incident, and what this case reveals about ransomware-as-a-service, cyber insurance, incident response, and insider threats. Whether you're a CISO, security leader, IT professional, or simply interested in cybersecurity, this episode offers practical lessons on trust, risk, and protecting sensitive information when every decision matters. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

July 8, 2026Episode 2099 min

How an Alleged Scattered Spider was Tracked Down - #209

Federal prosecutors have charged an alleged member of the Scattered Spider cybercrime group in a case that highlights how modern cyber investigations are evolving. While the arrest itself made headlines, one detail stood out: investigators reportedly used Microsoft's Global Device ID (GDID), alongside other forensic evidence, to help connect the dots. In this episode of Reimagining Cyber , Tyler Moffitt unpacks what makes this investigation so significant. The conversation explores: Who Scattered Spider is and how the group gains initial access What Microsoft's Global Device ID (GDID) is and how it factored into the investigation Why device identity is becoming just as important as user identity What this case reveals about modern digital investigations Why VPNs don't guarantee anonymity The importance of logging, endpoint visibility, and identity monitoring for defenders Practical steps organizations can take to strengthen identity security and help desk processes The biggest takeaway? Cybersecurity is no longer just about protecting user accounts. As attackers become more effective at impersonating people, defenders—and investigators—are increasingly relying on device identity, telemetry, and data correlation to uncover malicious activity. If you enjoyed this episode, please rate, review, and share Reimagining Cyber . New episodes are released every Wednesday. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

July 1, 2026Episode 20815 min

What Defenders Are Still Getting Wrong About Identity - #208

For years, cybersecurity assumed attackers had to break into organizations. Today, they increasingly just log in. Valid credentials, stolen browser sessions, OAuth tokens, help desk social engineering,and underground marketplaces have fundamentally changed how attacks unfold. So why are organizations still thinking about identity the same way they did five years ago? In this episode, Tyler Moffitt discusses the biggest misconceptions around identity security, why trust has become a commodity, and why cyber resilience requires more than prevention alone. Relevant links: 'What defenders are still getting wrong' webcast series with Tyler Moffitt https://www.brighttalk.com/webcast/8241/646699?utm_source=LinkedIn&utm_medium=brighttalk&utm_campaign=646699 As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

Is this your show?

Claim this listing to keep it up to date, reach guests who want to pitch you, and manage bookings with Guestify.

Claim this listing

More Technology podcasts