๐Ÿ” Simplifying Cybersecurity Issue #6

Deepfake attack against Ferrari, repos of security interview questions, recommended deepfake security reading

Welcome to the latest issue of Simplifying Cybersecurity!

This newsletter is packed with info to help you up your cybersecurity game. Whether you're just getting started or a seasoned cybersecurity professional, I've got you covered with tips, tools, and resources to help you keep growing and keep your career moving forward.

In this issue:

  • Cybersecurity news stories you should read

  • Active professionals you should engage

  • Tips to stand out in your next interview

  • Training resources to improve your skills

  • Career opportunities you can apply for today

  • Recommended reading from The Bookstore

๐Ÿ‘• Anybody want a peanut hoodie?

The Simplifying Cybersecurity store is live? Inconceivable!

I wanted some cybersecurity swag of my own that I could start wearing to hacker cons, but Iโ€™m not the biggest fan of swag thatโ€™s covered with vendor logos. ๐Ÿคท

So I decided to design some swag of my own. ๐Ÿ˜‰

Iโ€™ve got a handful of designs in the store now, and Iโ€™m planning to add more soon. Oh! And stickers! I havenโ€™t uploaded any sticker designs just yet, but theyโ€™re on their way.

If you want to grab your own hoodie or tee, head on over to the store today!

๐Ÿ“ฐ Cybersecurity in the News

Ferrari exec foils deepfake attempt by asking the scammer a question only CEO Benedetto Vigna could answer. Deepfake technology is increasingly being used to impersonate high-profile executives, posing a significant threat to businesses. Security awareness and employee vigilance to the rescue! A simple question about a recent conversation between the two IRL was enough to shut down the attack immediately.

Meta to pay $1.4 billion to settle Texas facial recognition data lawsuit. Meta Platforms has agreed to pay $1.4 billion to Texas to settle a lawsuit alleging the company illegally collected biometric data of millions of Texans without their consent through its facial recognition technology. This settlement is the largest ever reached by a single state over biometric privacy violations.

North Korean hacker got hired by US security vendor, immediately loaded malware. A North Korean hacker using a stolen US identity and AI-enhanced photo was hired by KnowBe4, a US security vendor, but was caught trying to install malware on the company's network shortly after receiving their work computer. KnowBe4's security software flagged the suspicious activity, leading to an investigation by the company and the FBI, highlighting the ongoing threat of sophisticated cyberattacks.

Bipartisan Senate bill would promote cybersecurity apprenticeship programs. A bipartisan Senate bill proposes to expand cybersecurity apprenticeship programs through Department of Labor grants, aiming to address the industry's workforce shortage and equip participants with technical instruction, on-the-job training, and industry-recognized certifications. The bill follows a series of congressional efforts to bridge the cybersecurity skills gap and provide career pathways for individuals with or without college degrees.

Nicole Dove, Director Of Security Engineering At Riot Games, Wants To Help Individuals Within Or Seeking A Career In Cybersecurity Explore The Endless Possibilities. Dove, a cybersecurity expert with 20 years of experience, is passionate about helping others explore careers in the field, especially as AI technology continues to evolve. She will be speaking at the 2024 AFROTECH Conference about how to think like a hacker, cybersecurity career paths, and the importance of adapting in an ever-changing technological landscape.

๐Ÿค Professional Networking

โžก๏ธ Follow or connect with these security leaders on LinkedIn.

  • J. Nicole Dove - Cybersecurity Leader | Podcast Producer | University Lecturer

  • Rachel Tobac - CEO, SocialProof Security, Friendly Hacker, Security Awareness Videos and Live Training

  • Stu Sjouwerman - CEO at KnowBe4. (A Vista Equity Company)

  • Matt Johansen - Helping Secure the Internet

  • Mike Privette - CISO and Cybersecurity Economist at Return on Security

๐Ÿ’ผ Interview Tips

Taking practice exams before the real exam is a tried and true method for effective exam preparation.

The same can be said about practice interview questions before the real interview.

I did some digging on GitHub and found 10 repositories that I recommend you bookmark or star before your next interview.

1๏ธโƒฃ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—˜๐—ป๐—ด๐—ถ๐—ป๐—ฒ๐—ฒ๐—ฟ ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ถ๐—ผ๐—ป๐˜€
2๏ธโƒฃ ๐—”๐—ฝ๐—ฝ๐—น๐—ถ๐—ฐ๐—ฎ๐˜๐—ถ๐—ผ๐—ป ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—˜๐—ป๐—ด๐—ถ๐—ป๐—ฒ๐—ฒ๐—ฟ ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ถ๐—ผ๐—ป๐˜€
3๏ธโƒฃ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ถ๐—ผ๐—ป๐˜€
4๏ธโƒฃ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ถ๐—ผ๐—ป๐˜€ - ๐—ฐ๐˜†๐—ฏ๐—ฒ๐—ฟ๐—ฐ๐—น๐—ผ๐˜‚๐—ฑ.๐—ด๐˜‚๐—ฟ๐˜‚
5๏ธโƒฃ ๐—ฃ๐—ฒ๐—ป๐˜๐—ฒ๐˜€๐˜๐—ถ๐—ป๐—ด ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ถ๐—ผ๐—ป๐˜€
6๏ธโƒฃ ๐—ช๐—ฒ๐—ฏ ๐—ฆ๐—ฒ๐—ฐ ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„
7๏ธโƒฃ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—”๐—ฟ๐—ฐ๐—ต๐—ถ๐˜๐—ฒ๐—ฐ๐˜ ๐—ฎ๐—ป๐—ฑ ๐—ฃ๐—ฟ๐—ถ๐—ป๐—ฐ๐—ถ๐—ฝ๐—ฎ๐—น ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—˜๐—ป๐—ด๐—ถ๐—ป๐—ฒ๐—ฒ๐—ฟ๐—ถ๐—ป๐—ด ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ถ๐—ผ๐—ป๐˜€
8๏ธโƒฃ ๐—œ๐—ป๐—ณ๐—ผ๐—ฆ๐—ฒ๐—ฐ ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ถ๐—ผ๐—ป๐˜€
9๏ธโƒฃ ๐—ฅ๐—ฒ๐—ฑ ๐—ง๐—ฒ๐—ฎ๐—บ ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ถ๐—ผ๐—ป๐˜€
๐Ÿ”Ÿ ๐—”๐—ฝ๐—ฝ๐—น๐—ถ๐—ฐ๐—ฎ๐˜๐—ถ๐—ผ๐—ป ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—œ๐—ป๐˜๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ค๐˜‚๐—ฒ๐˜€๐˜๐—ถ๐—ผ๐—ป๐˜€

๐Ÿ’ก Training Opportunities

Given the recent attack against a high profile Ferrari exec using deepfake technology, I have 2 courses to share with you from LinkedIn Learning.

If youโ€™ve got a Premium profile, or if your company has a LinkedIn Learning subscription, you can check out these courses anytime youโ€™d like.

But even if you donโ€™t have a LinkedIn Learning subscription, you can use these links to take these courses for FREE. The links themselves shouldnโ€™t expire, but as soon as you click on them, you have 24 hours to complete the courses. You can bookmark them for a rainy day.

โžก๏ธ Knock out a course over lunch or bookmark them all for a rainy day.

๐Ÿš€ Career Opportunities

If youโ€™re looking for an Entry Level or Associate role, you might want to check out these opportunities:

If youโ€™re looking for a Mid-Senior Level role, you might want to check out these opportunities:

๐Ÿ“š The Bookstore

Deepfakes: The Coming Infocalypse by Nina Schick explores the alarming rise of deepfakes, AI-generated media that convincingly mimic reality, and the potential consequences for society. Schick warns of an impending "Infocalypse," a crisis of misinformation where distinguishing truth from falsehood becomes impossible, threatening democracy, national security, and personal trust. The book examines the political implications, manipulation tactics, and the unpreparedness of governments and tech companies for this evolving threat.

That's it for this week. If Iโ€™m doing my job right, youโ€™re a few steps closer to making the career moves you want to make.

If youโ€™re digging this newsletter, Iโ€™ve got two quick asks:

โžก๏ธ Share it with a friend or colleague who might like it as well. Weโ€™re all in this together, and sharing what we learn along the way helps everyone.

โžก๏ธ If someone forwarded this to you, subscribe here.

โžก๏ธ Connect with me on LinkedIn! I'm always up for chatting about all things cybersecurity and career growth.

Stay safe out there, and keep learning!

Jerod

Just wanted to give you a heads-up! Bookstore links are affiliate links, which means if you click on them and make a purchase, Simplifying Cybersecurity gets a small commission. This helps support Simplifying Cybersecurityโ€™s mission and keep the content coming, so thanks for your support!

You found it! You can use the promo code LEET1337 to save 25% on any order in the Simplifying Cybersecurity store. This promo code will self-destruct inโ€ฆ well, you know the rest. Nicely done!