{"id":57558,"date":"2021-05-11T01:58:20","date_gmt":"2021-05-10T17:58:20","guid":{"rendered":"https:\/\/wp-productionenv-bjg9h2g2bgg5b8aa.southeastasia-01.azurewebsites.net\/news\/cybersatdigital-speakers-red-teaming-helps-industry-understand-detect-evolving-threats\/"},"modified":"2021-05-11T01:58:20","modified_gmt":"2021-05-10T17:58:20","slug":"cybersatdigital-speakers-red-teaming-helps-industry-understand-detect-evolving-threats","status":"publish","type":"post","link":"https:\/\/starpath.global\/news\/cybersatdigital-speakers-red-teaming-helps-industry-understand-detect-evolving-threats\/","title":{"rendered":"CyberSatDigital Speakers: \u201cRed-Teaming\u201d Helps Industry Understand, Detect Evolving Threats"},"content":{"rendered":"<\/p>\n<p>Red team exercises \u2013 or, simulated cyber attack scenarios run by internal IT groups and\/or external third parties \u2013 can help satellite companies keep pace with constantly evolving cyberattacks, according to speakers on CyberSatDigital\u2019s opening panel on Monday.<\/p>\n<p>Speaking on the bluntly titled session, \u201cI am Going to Compromise your Satellite Infrastructure: Here is What You Can Do to Stop It,\u201d Matt Devost, CEO of cybersecurity intelligence and analysis firm <strong>OODA LLC<\/strong> and <strong>CrossCountry Consulting<\/strong> Partner Cameron Over engaged in a hypothetical red-team exercise run by a fictitious satellite company they called \u201cFourStarSat.\u201d<\/p>\n<p>Devost and Over took opposing roles as a talented hacker and the CISO of FourStarSat, respectively. Both ran through the process of how both sides would prepare for and execute their cybersecurity offense and defense.<\/p>\n<p>Devost said that like most satellite companies, FourStarSat\u2019s defense would be limited by its available resources and the nature of its infrastructure. \u201cMost likely, the attack against FourStarSat will target the brownfield assets on the ground,\u201d he said. \u201cIt\u2019s important that the red team exercise gives FourStarSat perspective on the hacker\u2019s thinking, their knowledge of the company\u2019s existing weaknesses, and how they would adapt and change their strategy over time.\u201d<\/p>\n<p>Red team exercises are not a new concept. The 1992 Robert Redford film \u201cSneakers\u201d opens with a famous red team-operation during which Redford\u2019s third-party firm is hired to hack, and even break into a national bank.<\/p>\n<p>Over explained that executive leaders at satellite companies should start their red team program by sketching out their desired scope of learning and how much they are willing to invest in the program.&nbsp; \u201cThe red-teaming concept should be stealthy, but also involve both internal capabilities and external, 3rd-parties,\u201d she said. \u201cNobody should think that they have to defend against cyber threats all by themselves. It takes a community.\u201d<\/p>\n<p>Over added that red teaming can help CISOs build better defenses by understanding how the offense is built. \u201cIt starts by performing a threat model and sketching out who your most likely adversaries might be,\u201d she said, adding that the scenario should involve a \u2018real\u2019 hacker with \u2018real\u2019 motivations for the attack, such as fame or money, and armed with accessible tools and hardware.<\/p>\n<p>When evaluating the results of a red team exercise, Devost said that it\u2019s important for companies not to approach them as pass-fail events. \u201cIf you want to validate the existence of the controls you put into place, you have to think of the long-term. Hackers don\u2019t stop after one attempt. They evolve their attack and adapt to your defenses. Only through a series of red team exercises, with data collected over a period of time, can help measure the effectiveness of your defensive posture and clarify the actions that need to take place in order to bolster your defenses,\u201d he said.<\/p>\n<p>CyberSatDigital\u2019s unclassified program runs through Tuesday, May 11, with a classified program taking place on Wednesday, May 12.<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Red team exercises \u2013 or, simulated cyber attack scenarios run by internal IT groups and\/or external third parties \u2013 can help satellite companies keep pace with constantly evolving cyberattacks, according to speakers on CyberSatDigital\u2019s opening panel on Monday. Speaking on the bluntly titled session, \u201cI am Going to Compromise your Satellite Infrastructure: Here is What [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":57559,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":"","_links_to":"","_links_to_target":""},"categories":[2],"tags":[],"class_list":["post-57558","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"acf":[],"_links":{"self":[{"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/posts\/57558"}],"collection":[{"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/comments?post=57558"}],"version-history":[{"count":0,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/posts\/57558\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/media\/57559"}],"wp:attachment":[{"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/media?parent=57558"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/categories?post=57558"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/starpath.global\/blog\/wp-json\/wp\/v2\/tags?post=57558"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}