Ben Rothke

@benrothke.bsky.social

I do information security, risk management and other tech stuff. Co-author of new book: The Definitive Guide to PCI DSS Version 4: Documentation, Compliance, and Management. https://amzn.to/3WhEfh1

"𝘖𝘯𝘦 𝘰𝘧 𝘵𝘩𝘦 𝘣𝘰𝘰𝘬’𝘴 𝘴𝘵𝘳𝘰𝘯𝘨𝘦𝘴𝘵 𝘤𝘰𝘯𝘵𝘳𝘪𝘣𝘶𝘵𝘪𝘰𝘯𝘴 𝘪𝘴 𝘪𝘵𝘴 𝘢𝘳𝘵𝘪𝘤𝘶𝘭𝘢𝘵𝘪𝘰𝘯 𝘰𝘧 𝘩𝘰𝘸 𝘈𝘐 𝘤𝘢𝘯 𝘤𝘳𝘦𝘢𝘵𝘦 𝘵𝘩𝘦 𝘴𝘦𝘮𝘣𝘭𝘢𝘯𝘤𝘦 𝘰𝘧 𝘪𝘯𝘵𝘦𝘭𝘭𝘪𝘨𝘦𝘯𝘤𝘦—𝘱𝘳𝘰𝘥𝘶𝘤𝘪𝘯𝘨 𝘰𝘶𝘵𝘱𝘶𝘵𝘴 𝘵𝘩𝘢𝘵 𝘢𝘱𝘱𝘦𝘢𝘳 𝘪𝘯𝘵𝘦𝘯𝘵𝘪𝘰𝘯𝘢𝘭 𝘰𝘳 𝘢𝘶𝘵𝘩𝘰𝘳𝘪𝘵𝘢𝘵𝘪𝘷𝘦 𝘥𝘦𝘴𝘱𝘪𝘵𝘦 𝘭𝘢𝘤𝘬𝘪𝘯𝘨 𝘨𝘦𝘯𝘶𝘪𝘯𝘦 𝘶𝘯𝘥𝘦𝘳𝘴𝘵𝘢𝘯𝘥𝘪𝘯𝘨." -- Caroline Wong in her review of Justin "Hutch" Hutchens' 𝙏𝙝𝙚 𝙇𝙖𝙣𝙜𝙪𝙖𝙜𝙚 𝙤𝙛 𝘿𝙚𝙘𝙚𝙥𝙩𝙞𝙤𝙣

Bild

For first time in 19 years, @Verizon @VZDBIR looked at what happens after attackers get in. Mapped routes taken to privilege escalation. Real exposures live in the permissions, configurations & trust relationships along those routes. HT @XMCyber_. api.cyfluencer.com/s/the-2026-v... #DBIR

The 2026 Verizon DBIR Stopped Asking How Attackers Get in and Started Asking Where They Go | XM Cyber

Learn more about The 2026 Verizon DBIR Stopped Asking How Attackers Get in and Started Asking Where They Go . Read more on XM Cyber website.

api.cyfluencer.com

Shai-Hulud is one of the most persistent supply-chain worms in recent years. It’s a self-replicating worm & actively compromising packages with 3M+ weekly downloads, hijacking tokens from CI/CD pipelines, bypassing trusted publishing protections. #Shai-Hulud cybersec.gitguardian.com/s/mini-shai-...

Mini Shai-Hulud: A persistent supply-chain worm

A self-replicating worm is actively compromising packages with 3M+ weekly downloads, hijacking tokens from CI/CD pipelines, and bypassing trusted publishing protections.

cybersec.gitguardian.com

📝 𝙍𝙚𝙫𝙞𝙚𝙬 𝘿𝙖𝙮! 📕 Jack Freund reviews 𝙈𝙖𝙨𝙩𝙚𝙧𝙞𝙣𝙜 𝙏𝙝𝙞𝙧𝙙-𝙋𝙖𝙧𝙩𝙮 𝙍𝙞𝙨𝙠: 𝘼 𝙋𝙧𝙖𝙘𝙩𝙞𝙘𝙖𝙡 𝙃𝙖𝙣𝙙𝙗𝙤𝙤𝙠 𝙛𝙤𝙧 𝙈𝙖𝙣𝙖𝙜𝙞𝙣𝙜 𝙑𝙚𝙣𝙙𝙤𝙧, 𝙏𝙝𝙞𝙧𝙙-𝙋𝙖𝙧𝙩𝙮, 𝙖𝙣𝙙 𝙎𝙪𝙥𝙥𝙡𝙮 𝘾𝙝𝙖𝙞𝙣 𝙏𝙝𝙧𝙚𝙖𝙩𝙨 𝙞𝙣 𝙀𝙫𝙚𝙧𝙮 𝙊𝙧𝙜𝙖𝙣𝙞𝙯𝙖𝙩𝙞𝙤𝙣, authored by Bill Bonney, Chris Forbes, Gary Hayslip, Andrea Little Limbago, and Matt Stamper. 👉 Review: tinyurl.com/3aahu3rm

CyberCanon Review of Mastering Third-Party Risk

Good @jbhall56 piece: He notes YoY #PCI #27001 audit efficiencies are only in 2%-4 % range. The real problem is a consultancy sales exec who thinks it’s >25% & lowers the audit price to make clients happy. It’s then the consultants who have to deliver. pciguru.wordpress.com/2026/07/27/t...

The Audit Efficiency Myth

I have been guilty in the past of agreeing to this and have always regretted it. Clients think that an audit/assessment is like assembling a widget. The more times you do it the faster and more eff…

pciguru.wordpress.com

In the rush to secure AI, many forget about the data center & AI infrastructure security risks. The #FORGE #AI framework from #Lava, coming out of stealth, is quite compelling. It is about hardening the metal beneath the model. Something many forgot to do. api.cyfluencer.com/s/the-top-10...

Top 10 Risks

A practical security framework for Data Centers and AI Infrastructure: the Top 10 risks in the layer that trains, hosts, and serves AI.

api.cyfluencer.com

#Argon2 is a key derivation function (KDF) designed to make brute-force attacks more computationally expensive by limiting advantages attackers gain from GPUs & other high-performance cracking hardware. Passwords getting close to being almost uncrackable. api.cyfluencer.com/s/new-resear...

[New Research] Does Argon2 Mean Your Password is Uncrackable?

Does Argon2 make passwords uncrackable? See how it performs against the latest hardware with this research from Specops.

api.cyfluencer.com

#Gamaredon is a Russia-aligned APT, widely attributed to Russia's Federal Security Service. @mfa_russia attempted to infect over 1,500 Ukrainian government systems & ran 5,000 attacks by late 2021. They’re still quite active & dangerous. HT @PicusSecurity. cybersec.picussecurity.com/s/gamaredon-...

Gamaredon (Primitive Bear) APT Profile and MITRE ATT&CK Breakdown

Gamaredon is a Russia-linked APT active since 2013 targeting Ukraine and NATO. Learn their TTPs, GammaLoad, and GammaSteel tools.

cybersec.picussecurity.com

🏛 HoF Nominee: 𝘍𝘰𝘳 𝘢𝘯𝘺𝘰𝘯𝘦 𝘴𝘦𝘦𝘬𝘪𝘯𝘨 𝘵𝘰 𝘶𝘯𝘥𝘦𝘳𝘴𝘵𝘢𝘯𝘥 𝘸𝘩𝘺 𝘱𝘳𝘪𝘷𝘢𝘤𝘺 𝘮𝘢𝘵𝘵𝘦𝘳𝘴, 𝘸𝘩𝘺 𝘵𝘦𝘤𝘩𝘯𝘰𝘭𝘰𝘨𝘺 𝘢𝘯𝘥 𝘭𝘪𝘣𝘦𝘳𝘵𝘺 𝘢𝘳𝘦 𝘪𝘯𝘦𝘹𝘵𝘳𝘪𝘤𝘢𝘣𝘭𝘺 𝘭𝘪𝘯𝘬𝘦𝘥, 𝘢𝘯𝘥 𝘸𝘩𝘺 𝘵𝘩𝘦𝘴𝘦 𝘲𝘶𝘦𝘴𝘵𝘪𝘰𝘯𝘴 𝘳𝘦𝘮𝘢𝘪𝘯 𝘢𝘴 𝘶𝘳𝘨𝘦𝘯𝘵 𝘵𝘰𝘥𝘢𝘺 𝘢𝘴 𝘵𝘩𝘦𝘺 𝘸𝘦𝘳𝘦 𝘢 𝘤𝘦𝘯𝘵𝘶𝘳𝘺 𝘢𝘨𝘰, 𝘵𝘩𝘪𝘴 𝘣𝘪𝘰𝘨𝘳𝘢𝘱𝘩𝘺 𝘪𝘴 𝘪𝘯𝘥𝘪𝘴𝘱𝘦𝘯𝘴𝘢𝘣𝘭𝘦. -Daniel 'Rags' Ragsdale of 𝙇𝙤𝙪𝙞𝙨 𝘿. 𝘽𝙧𝙖𝙣𝙙𝙚𝙞𝙨: 𝘼 𝙇𝙞𝙛𝙚 by Melvin Urofsky

CyberCanon Review of 'Louis D. Brandeis'

Many people are victims of identity theft but don’t have a clue how to recover from it. What does one do if they’re hacked? #Psono has a practical step-by-step guide to containing damage, recovering accounts and reducing the risk of being hacked again. api.cyfluencer.com/s/what-to-do...

What to Do If You Get Hacked

A practical step-by-step guide for containing damage, recovering accounts, protecting money and data, and reducing the chance of getting hacked again.

api.cyfluencer.com

Securing the modern onboarding process is challenging. Employee onboarding always relied on the service desk. Now service desk is the target. AI-powered attacks & remote/hybrid work are 2 of many trends making this a very risky area. HT @specopssoftware api.cyfluencer.com/s/a-guide-to...

A Guide to Secure Employee Onboarding in 2026

The service desk is facing increased threats in 2026. Learn how to secure employee onboarding from issues like social engineering.

api.cyfluencer.com

Great Dr. @RanigaVinay of @UniofOxford @BlavatnikSchool video details how utterly corrupt @FIFAcom @FIFAWorldCup is. #FIFA has zero oversight & is a cash cow. The work of Chuck Blazer, former @CONCACAF General Secretary, has sadly done little to change FIFA. www.youtube.com/@drvinayraniga

Dr Vinay Raniga

Videos to help you better understand the world (and the people who run it). Join our community: https://vinayraniga.beehiiv.com/ Inquiries: vinayraniga@hotmail.com

youtube.com

🕵️‍♂️ 𝗥𝗲𝘃𝗶𝗲𝘄 𝗗𝗿𝗼𝗽! Today, Jonathan Cote provides an in-depth analysis of Kurtis Minder's 𝘾𝙮𝙗𝙚𝙧 𝙍𝙚𝙘𝙤𝙣: 𝙈𝙮 𝙇𝙞𝙛𝙚 𝙞𝙣 𝘾𝙮𝙗𝙚𝙧 𝙀𝙨𝙥𝙞𝙤𝙣𝙖𝙜𝙚 𝙖𝙣𝙙 𝙍𝙖𝙣𝙨𝙤𝙢𝙬𝙖𝙧𝙚 𝙉𝙚𝙜𝙤𝙩𝙞𝙖𝙩𝙞𝙤𝙣. ✍ cybercanon.org/cyber-recon-... #CyberCanonReview #RansomwareNegotation #CTI #CyberCrime #CybersecurityBooks | @jon24cote.bsky.social

CyberCanon Review of Cyber Recon

For the first time, @VerizonBusiness @VZDBIR ran attack graph analysis on real environments, mapping users, groups & permissions to model what happens after an attacker gets in. #DBIR found that 16% of organizations had about 80% exposure. HT @XMCyber_. api.cyfluencer.com/s/the-2026-v...

The 2026 Verizon DBIR Stopped Asking How Attackers Get in and Started Asking Where They Go | XM Cyber

Learn more about The 2026 Verizon DBIR Stopped Asking How Attackers Get in and Started Asking Where They Go . Read more on XM Cyber website.

api.cyfluencer.com