<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic August 2022 Meeting Minutes in Cleveland Chapter Discussion Forum</title>
    <link>https://community.isc2.org/t5/Cleveland-Chapter-Discussion/August-2022-Meeting-Minutes/m-p/57170#M17</link>
    <description>&lt;P&gt;Start: ##:##&lt;/P&gt;&lt;P&gt;Attendees: ##, # first time&lt;/P&gt;&lt;P&gt;Sponsor: Dell&lt;/P&gt;&lt;P&gt;Location: Improving, Independence, OH&lt;/P&gt;&lt;P&gt;Officers in attendance&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Rob Netgen&lt;/LI&gt;&lt;LI&gt;Chris Hartley&lt;/LI&gt;&lt;LI&gt;Troy Sheley&lt;/LI&gt;&lt;LI&gt;Ted Kozenko&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Information Security Summit Announcement&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Call for volunteers&lt;/LI&gt;&lt;LI&gt;Announcement of registration&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Job openings&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Security Friends&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Student Loans&lt;/LI&gt;&lt;LI&gt;Hacker News - ransomware customized to target&lt;/LI&gt;&lt;LI&gt;Intelex offers exploits for iOS and Android for $8MM&lt;/LI&gt;&lt;LI&gt;NH lottery website cyber attack&lt;/LI&gt;&lt;LI&gt;LockBit ransomware v3.0 tripe extortion level&lt;/LI&gt;&lt;LI&gt;Portugal airline prevent cyberattack&lt;/LI&gt;&lt;LI&gt;LastPass hacked&lt;/LI&gt;&lt;LI&gt;Russia malware hijacks ADFS to login&lt;/LI&gt;&lt;LI&gt;Lloyds of London will stop covering nations state attacks from ransomware policies&lt;/LI&gt;&lt;LI&gt;Okta hackers behind Twilio and Cloudflare&lt;/LI&gt;&lt;LI&gt;South Staffordshire Water announce cyber-attack, Clop misidentified&lt;/LI&gt;&lt;LI&gt;MS cannot stop scammers&lt;/LI&gt;&lt;LI&gt;Palto Alto bug&lt;/LI&gt;&lt;LI&gt;FBI &amp;amp; CISA warns about Zeppelin million dollar demands&lt;/LI&gt;&lt;LI&gt;Anonymous poop gifting site hacked&lt;/LI&gt;&lt;LI&gt;Cisco confirms network breach&lt;/LI&gt;&lt;LI&gt;124 stories in August.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Topic 1: Rob Netgan - IBMi Cybersecurity&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Redheaded stepchild of cybersecurity&lt;/LI&gt;&lt;LI&gt;Why - incredibly securable, but often not secured&lt;/LI&gt;&lt;LI&gt;Security pros don’t' know it&lt;/LI&gt;&lt;LI&gt;IBM'ers don't know security&lt;/LI&gt;&lt;LI&gt;Previously known as AS/400, introduced in 2008&lt;/LI&gt;&lt;LI&gt;Used by many firms&lt;/LI&gt;&lt;LI&gt;Runs business critical apps, bug DB, core to biz, ERP,&lt;/LI&gt;&lt;LI&gt;Often run by 1 person / small team&lt;/LI&gt;&lt;LI&gt;Often not pen tested or SIEM'ed&lt;/LI&gt;&lt;LI&gt;Need to consider IBMi in supply chain assessment&lt;/LI&gt;&lt;LI&gt;Can get IBMi in the cloud&lt;/LI&gt;&lt;LI&gt;Weaknesses&lt;/LI&gt;&lt;UL&gt;&lt;LI&gt;Network drive mapped to root&lt;/LI&gt;&lt;LI&gt;One person departments&lt;/LI&gt;&lt;LI&gt;Old hardware and no support&lt;/LI&gt;&lt;LI&gt;Password limitations&lt;/LI&gt;&lt;LI&gt;Unencrypted network connections&lt;/LI&gt;&lt;LI&gt;Old firewall systems&lt;/LI&gt;&lt;/UL&gt;&lt;LI&gt;Recommendations&lt;/LI&gt;&lt;UL&gt;&lt;LI&gt;Have IBMi and InfoSec talk&lt;/LI&gt;&lt;LI&gt;Demand IBMi savvy vendors when using IBMi&lt;/LI&gt;&lt;LI&gt;Demand security from IBMi vendors&lt;/LI&gt;&lt;LI&gt;Password level 3, upgraded from level 1&lt;/LI&gt;&lt;LI&gt;Maintain security, not once and done&lt;/LI&gt;&lt;LI&gt;Implement CIS controls&lt;/LI&gt;&lt;LI&gt;Implement exit-point based security app&lt;/LI&gt;&lt;LI&gt;Don't share IFS root&lt;/LI&gt;&lt;LI&gt;Lock down all objects and users&lt;/LI&gt;&lt;/UL&gt;&lt;/UL&gt;&lt;P&gt;End 19:41&lt;/P&gt;</description>
    <pubDate>Sat, 11 Feb 2023 00:55:55 GMT</pubDate>
    <dc:creator>TedKozenko</dc:creator>
    <dc:date>2023-02-11T00:55:55Z</dc:date>
    <item>
      <title>August 2022 Meeting Minutes</title>
      <link>https://community.isc2.org/t5/Cleveland-Chapter-Discussion/August-2022-Meeting-Minutes/m-p/57170#M17</link>
      <description>&lt;P&gt;Start: ##:##&lt;/P&gt;&lt;P&gt;Attendees: ##, # first time&lt;/P&gt;&lt;P&gt;Sponsor: Dell&lt;/P&gt;&lt;P&gt;Location: Improving, Independence, OH&lt;/P&gt;&lt;P&gt;Officers in attendance&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Rob Netgen&lt;/LI&gt;&lt;LI&gt;Chris Hartley&lt;/LI&gt;&lt;LI&gt;Troy Sheley&lt;/LI&gt;&lt;LI&gt;Ted Kozenko&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Information Security Summit Announcement&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Call for volunteers&lt;/LI&gt;&lt;LI&gt;Announcement of registration&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Job openings&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Security Friends&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Student Loans&lt;/LI&gt;&lt;LI&gt;Hacker News - ransomware customized to target&lt;/LI&gt;&lt;LI&gt;Intelex offers exploits for iOS and Android for $8MM&lt;/LI&gt;&lt;LI&gt;NH lottery website cyber attack&lt;/LI&gt;&lt;LI&gt;LockBit ransomware v3.0 tripe extortion level&lt;/LI&gt;&lt;LI&gt;Portugal airline prevent cyberattack&lt;/LI&gt;&lt;LI&gt;LastPass hacked&lt;/LI&gt;&lt;LI&gt;Russia malware hijacks ADFS to login&lt;/LI&gt;&lt;LI&gt;Lloyds of London will stop covering nations state attacks from ransomware policies&lt;/LI&gt;&lt;LI&gt;Okta hackers behind Twilio and Cloudflare&lt;/LI&gt;&lt;LI&gt;South Staffordshire Water announce cyber-attack, Clop misidentified&lt;/LI&gt;&lt;LI&gt;MS cannot stop scammers&lt;/LI&gt;&lt;LI&gt;Palto Alto bug&lt;/LI&gt;&lt;LI&gt;FBI &amp;amp; CISA warns about Zeppelin million dollar demands&lt;/LI&gt;&lt;LI&gt;Anonymous poop gifting site hacked&lt;/LI&gt;&lt;LI&gt;Cisco confirms network breach&lt;/LI&gt;&lt;LI&gt;124 stories in August.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Topic 1: Rob Netgan - IBMi Cybersecurity&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Redheaded stepchild of cybersecurity&lt;/LI&gt;&lt;LI&gt;Why - incredibly securable, but often not secured&lt;/LI&gt;&lt;LI&gt;Security pros don’t' know it&lt;/LI&gt;&lt;LI&gt;IBM'ers don't know security&lt;/LI&gt;&lt;LI&gt;Previously known as AS/400, introduced in 2008&lt;/LI&gt;&lt;LI&gt;Used by many firms&lt;/LI&gt;&lt;LI&gt;Runs business critical apps, bug DB, core to biz, ERP,&lt;/LI&gt;&lt;LI&gt;Often run by 1 person / small team&lt;/LI&gt;&lt;LI&gt;Often not pen tested or SIEM'ed&lt;/LI&gt;&lt;LI&gt;Need to consider IBMi in supply chain assessment&lt;/LI&gt;&lt;LI&gt;Can get IBMi in the cloud&lt;/LI&gt;&lt;LI&gt;Weaknesses&lt;/LI&gt;&lt;UL&gt;&lt;LI&gt;Network drive mapped to root&lt;/LI&gt;&lt;LI&gt;One person departments&lt;/LI&gt;&lt;LI&gt;Old hardware and no support&lt;/LI&gt;&lt;LI&gt;Password limitations&lt;/LI&gt;&lt;LI&gt;Unencrypted network connections&lt;/LI&gt;&lt;LI&gt;Old firewall systems&lt;/LI&gt;&lt;/UL&gt;&lt;LI&gt;Recommendations&lt;/LI&gt;&lt;UL&gt;&lt;LI&gt;Have IBMi and InfoSec talk&lt;/LI&gt;&lt;LI&gt;Demand IBMi savvy vendors when using IBMi&lt;/LI&gt;&lt;LI&gt;Demand security from IBMi vendors&lt;/LI&gt;&lt;LI&gt;Password level 3, upgraded from level 1&lt;/LI&gt;&lt;LI&gt;Maintain security, not once and done&lt;/LI&gt;&lt;LI&gt;Implement CIS controls&lt;/LI&gt;&lt;LI&gt;Implement exit-point based security app&lt;/LI&gt;&lt;LI&gt;Don't share IFS root&lt;/LI&gt;&lt;LI&gt;Lock down all objects and users&lt;/LI&gt;&lt;/UL&gt;&lt;/UL&gt;&lt;P&gt;End 19:41&lt;/P&gt;</description>
      <pubDate>Sat, 11 Feb 2023 00:55:55 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Cleveland-Chapter-Discussion/August-2022-Meeting-Minutes/m-p/57170#M17</guid>
      <dc:creator>TedKozenko</dc:creator>
      <dc:date>2023-02-11T00:55:55Z</dc:date>
    </item>
  </channel>
</rss>

