Tim Sattler πͺπΊπΊπ¦
@sattlert
Followers
673
Following
7K
Media
71
Statuses
4K
#InfoSec, #cybersecurity, #science, and common sense. Doctor of physics. #CISO @ MDAX-listed company & President @ISACAGermany. Views are my own.
Hamburg, Germany
Joined December 2009
Building cyber resilience in always-on industrial environments - https://t.co/eeOckEG26a - @sattlert #ICS #Warehouse #Monitoring #RiskManagement #SupplyChain #CyberReseilience #SecurityControl #Strategy #CISO #netsec #InfoSecurity #ITsecurity #CyberSecurityNews #SecurityNews
helpnetsecurity.com
Cybersecurity in industrial environments means managing risk through modularity, visibility, strong partners, and skilled talent.
1
2
1
Malicious campaign by threat actor Storm-0558 may be more impactful than originally thought https://t.co/irfj7SdhUE
#Microsoft #CyberSecurity
wiz.io
Our investigation of the security incident disclosed by Microsoft and CISA and attributed to Chinese threat actor Storm-0558, found that this incident seems to have a broader scope than originally...
0
0
0
Only a few #MOVEit data-theft victims are likely to pay. Nevertheless, #Cl0p is still expected to amass an impressive $75-100 million solely from these payments, given the substantial ransom demands https://t.co/bvfu9g48eZ
#InfoSec
0
0
0
As #ransomware affiliates are paid less frequently, they have adapted their strategies to compensate for the shifting dynamics of cyber extortion https://t.co/BFBNglmEkn
#InfoSec
coveware.com
As ransomware affiliates are paid less frequently, they have adapted their strategies to compensate for the shifting dynamics of cyber extortion.
0
0
0
"[...] #security teams are in the spotlight when things go wrong, but not celebrated when attacks arenβt successful" https://t.co/G3xmyzVYSR
#InfoSec
techrepublic.com
Among the strategic propositions in Gartner's 2023-2024 cybersecurity outlook are that organizations need to institute cultural changes to lower pressure on security teams.
0
0
0
Great guidance on how to protect against #AiTM / #MFA #phishing attacks in combination with Microsoft protections https://t.co/jcZJF6m2PN via @JeffreyAppel7 #InfoSec
jeffreyappel.nl
Adversary-in-the-middle phishing attacks are still more common in use, in the last year and the start of 2025 there is still a more visible increase in AiTM/ MFA phishing. Since the removal of basic...
0
0
0
Nothing exemplifies a complete failure to understand the point of science like demanding to settle a scientific issue through the medium of emotionally persuasive public shouting
89
3K
25K
#CyberInsurance companies are faced with the challenge of quantifying the risk and measuring the cascading impact of a cyber attack https://t.co/sbKrP9Rtd1 via @wef #InfoSec
weforum.org
Despite the increasing complexity in cyber insurance and rapidly evolving cyber threats, security leaders can minimize risks by focusing on four areas.
0
0
0
0
0
0
For many #CISO|s stress comes from βthe lack of authority to implement best practices across the company and the lack of visibility at the top on some of the issues that keep them up at night.β https://t.co/IvLOdS7foA
#InfoSec
0
0
0
Google's newly launched .zip #TLD simplifies the creation of extremely convincing #phishing URLs https://t.co/lHQW2qg5PG
#InfoSec
0
1
1
The Australia government's Cyber Security Centre publishes an MFA maturity level, which government agencies are audited against. This is a fantastic way to assess your own org's MFA maturity and relevant to everyone as they are based on NIST with a few variations. β¬οΈ
10
64
211
0
0
3
We seem to have the problem contained...
71
90
811
π
New Nasa director swears oath on Carl Saganβs book instead of Bible via @Independent
https://t.co/4E3MLC2nIP
0
0
0
#Cybersecurity needs to follow the aviation industry's shift from a blame culture to a "just" culture https://t.co/NJiHdLCV58 via @TheRegister
theregister.com
: When admitting to an error isn't seen as a failure, improvement easy to achieve, says pilot-turned-CISO
0
0
0
There are many #ActiveDirectory objects and groups that need to be considered #TierZero in every #Windows environment https://t.co/GfihBg8QaW
#cybersecurity
darkreading.com
There are plenty of AD objects and groups that should be considered tier zero in every environment, but some will vary among organizations.
0
0
0
.@CISAgov, @BSI_Bund and others have published joint guidance urging manufacturers to take the necessary steps to ship digital products that are #securebydesign and #securebydefault
https://t.co/oJy6F89sdM
#cybersecurity #productsecurity
cisa.gov
Joint guidance by CISA, FBI, NSA, and the cybersecurity authorities of Australia, Canada, United Kingdom, Germany, Netherlands, and New Zealand (CERT NZ, NCSC-NZ) that urges software manufacturers to...
0
0
0
System of Trust: #MITRE Framework for #SupplyChain Security https://t.co/zqXNqyyS9j
https://t.co/qO7LOg6xB5
#InfoSec
0
0
0