WEBVTT

1
00:00:00.080 --> 00:00:03.120
<v Speaker 1>Welcome to another deep dive. Today we'll be exploring the

2
00:00:03.120 --> 00:00:08.400
<v Speaker 1>complete cybersecurity course, Volume one, Hackers Exposed by Nathan House.

3
00:00:08.720 --> 00:00:11.839
<v Speaker 2>Yeah. This one's a really fantastic resource for anyone who

4
00:00:11.839 --> 00:00:15.279
<v Speaker 2>wants to better understand well the nuts and bolts of

5
00:00:15.320 --> 00:00:16.719
<v Speaker 2>protecting their digital lives.

6
00:00:16.839 --> 00:00:19.079
<v Speaker 1>It's a very hands on guide and it covers just

7
00:00:19.160 --> 00:00:22.519
<v Speaker 1>a ton of cybersecurity topics, from the basics all the

8
00:00:22.559 --> 00:00:24.239
<v Speaker 1>way up to more advanced stuff.

9
00:00:24.280 --> 00:00:24.839
<v Speaker 2>Absolutely.

10
00:00:24.920 --> 00:00:26.199
<v Speaker 1>You know, one of the things that really struck me

11
00:00:26.280 --> 00:00:29.480
<v Speaker 1>early on was how the author really emphasizes, you know,

12
00:00:29.600 --> 00:00:32.240
<v Speaker 1>figuring out what's actually important to you before you even

13
00:00:32.280 --> 00:00:35.759
<v Speaker 1>start thinking about firewalls and encryption and all of that.

14
00:00:35.759 --> 00:00:37.759
<v Speaker 2>That's a really important point. You need to know what

15
00:00:37.759 --> 00:00:41.000
<v Speaker 2>you're trying to protect before you can effectively protect it exactly.

16
00:00:41.119 --> 00:00:43.600
<v Speaker 1>I mean, what can you absolutely not afford to lose,

17
00:00:44.200 --> 00:00:49.439
<v Speaker 1>What data, what accounts, what information is is really really

18
00:00:49.479 --> 00:00:50.159
<v Speaker 1>critical to you.

19
00:00:50.280 --> 00:00:51.679
<v Speaker 2>I think that's one of the things that makes this

20
00:00:51.679 --> 00:00:55.240
<v Speaker 2>book so valuable. It really personalizes the security journey.

21
00:00:55.320 --> 00:00:58.119
<v Speaker 1>Yeah, it helps you figure out what your priorities are

22
00:00:58.200 --> 00:01:01.359
<v Speaker 1>and how to create a security plan that actually works for.

23
00:01:01.320 --> 00:01:05.159
<v Speaker 2>You, right, because everyone's situation is different exactly.

24
00:01:05.200 --> 00:01:07.280
<v Speaker 1>And It also helps to clear up a lot of

25
00:01:07.319 --> 00:01:10.519
<v Speaker 1>confusion around around some key terms that I think get

26
00:01:10.519 --> 00:01:14.959
<v Speaker 1>thrown around a lot. Privacy, anonymity, and pseudonymity.

27
00:01:15.040 --> 00:01:18.120
<v Speaker 2>Yeah, those terms are often used interchangeably, but they actually

28
00:01:18.120 --> 00:01:19.640
<v Speaker 2>have very distinct meanings.

29
00:01:19.760 --> 00:01:22.040
<v Speaker 1>The book does a really great job of breaking those down.

30
00:01:22.239 --> 00:01:24.599
<v Speaker 1>It does so privacy, for example, you know, the book

31
00:01:24.640 --> 00:01:28.680
<v Speaker 1>talks about that being about controlling access to your information,

32
00:01:29.200 --> 00:01:32.280
<v Speaker 1>like making sure only the intended recipient can read your

33
00:01:32.319 --> 00:01:35.239
<v Speaker 1>emails or you know, access your financial data.

34
00:01:35.319 --> 00:01:38.239
<v Speaker 2>Right, It's about keeping your information confidential exactly.

35
00:01:38.319 --> 00:01:40.599
<v Speaker 1>And then anonymity that's a whole other level.

36
00:01:40.640 --> 00:01:44.519
<v Speaker 2>Anonymity is about making it impossible to link actions back

37
00:01:44.560 --> 00:01:47.719
<v Speaker 2>to your identity. It's like leaving no fingerprints at a

38
00:01:47.719 --> 00:01:48.400
<v Speaker 2>crime scene.

39
00:01:48.519 --> 00:01:51.319
<v Speaker 1>So like that burner phone scenario we always see in

40
00:01:51.319 --> 00:01:53.959
<v Speaker 1>the movies, exactly, the spies use a burner phone, yeah,

41
00:01:53.959 --> 00:01:56.280
<v Speaker 1>and then they just you know, check it in the trash,

42
00:01:56.400 --> 00:01:59.519
<v Speaker 1>no trace, no trace. And then you've got pseudonymity, which

43
00:01:59.560 --> 00:02:00.519
<v Speaker 1>is somewhere in between.

44
00:02:00.879 --> 00:02:04.239
<v Speaker 2>Right. Pseudonymity is about using a fake name or an

45
00:02:04.319 --> 00:02:07.879
<v Speaker 2>alias to protect your real identity, but still maintaining a

46
00:02:07.920 --> 00:02:08.960
<v Speaker 2>consistent persona.

47
00:02:09.400 --> 00:02:12.439
<v Speaker 1>Okay, so you're not completely anonymous, but you're not using

48
00:02:12.439 --> 00:02:15.680
<v Speaker 1>your real name either, exactly. Okay, that makes sense. So

49
00:02:15.719 --> 00:02:18.560
<v Speaker 1>we've talked about what we want to protect. Now let's

50
00:02:18.560 --> 00:02:19.159
<v Speaker 1>talk about the.

51
00:02:19.120 --> 00:02:23.560
<v Speaker 2>Threats, right, because the threat landscape is constantly evolving.

52
00:02:23.879 --> 00:02:27.360
<v Speaker 1>Yeah, the book really opened my eyes to how diverse

53
00:02:27.599 --> 00:02:30.319
<v Speaker 1>the dangers out there are. Mean, it's not just about

54
00:02:30.319 --> 00:02:33.280
<v Speaker 1>some you know, lone wolf hacker in a dark room,

55
00:02:33.400 --> 00:02:35.000
<v Speaker 1>you know, trying to break into my computer.

56
00:02:35.360 --> 00:02:38.080
<v Speaker 2>Right. A lot of the threats are automated these days.

57
00:02:38.439 --> 00:02:42.360
<v Speaker 2>Hackers use programs to scan for vulnerabilities, and that means

58
00:02:42.360 --> 00:02:43.719
<v Speaker 2>that anyone can be a target.

59
00:02:43.960 --> 00:02:46.400
<v Speaker 1>Okay, so it's not necessarily personal.

60
00:02:46.199 --> 00:02:48.560
<v Speaker 2>Not always. And then they're also targeted attacks.

61
00:02:48.560 --> 00:02:51.120
<v Speaker 1>Okay, so someone's specifically going after me, right.

62
00:02:51.199 --> 00:02:54.159
<v Speaker 2>It could be based on your activities, your location, or

63
00:02:54.199 --> 00:02:55.919
<v Speaker 2>the information that you share online.

64
00:02:56.199 --> 00:02:57.879
<v Speaker 1>I actually had a question about that, you know, because

65
00:02:57.879 --> 00:03:00.319
<v Speaker 1>I do a lot of online shopping and I always thought, well,

66
00:03:00.319 --> 00:03:03.400
<v Speaker 1>if I see that little padlock icon in my browser window,

67
00:03:03.879 --> 00:03:04.960
<v Speaker 1>that means I'm safe.

68
00:03:05.120 --> 00:03:08.759
<v Speaker 2>That padlock means you're using HTTPS, right, which relies on

69
00:03:09.000 --> 00:03:12.199
<v Speaker 2>ssltls to encrypt your connection. So it makes it much

70
00:03:12.240 --> 00:03:13.840
<v Speaker 2>harder for someone to snoop on your data.

71
00:03:13.919 --> 00:03:14.800
<v Speaker 1>Okay, that makes sense.

72
00:03:14.840 --> 00:03:17.520
<v Speaker 2>But here's the thing you mentioned. You travel a lot

73
00:03:17.560 --> 00:03:20.280
<v Speaker 2>for work, right I do. Yeah, imagine you're at a

74
00:03:20.319 --> 00:03:24.280
<v Speaker 2>conference and you're using their WiFi. Someone could be using

75
00:03:24.319 --> 00:03:27.280
<v Speaker 2>a tool like a Wi Fi Pineapple to perform what's

76
00:03:27.319 --> 00:03:28.680
<v Speaker 2>called an SSL.

77
00:03:28.319 --> 00:03:30.479
<v Speaker 1>Strip attack a Wi Fi Pineapple.

78
00:03:30.599 --> 00:03:33.080
<v Speaker 2>It sounds kind of silly, but it's actually a pretty

79
00:03:33.159 --> 00:03:36.800
<v Speaker 2>serious tool that hackers can use to basically trick your

80
00:03:36.800 --> 00:03:39.280
<v Speaker 2>browser into thinking the connection isn't encrypted.

81
00:03:39.560 --> 00:03:41.919
<v Speaker 1>Wait, so even though I see the padlock, my data

82
00:03:41.960 --> 00:03:43.120
<v Speaker 1>could still be exposed.

83
00:03:43.520 --> 00:03:47.000
<v Speaker 2>Exactly. It highlights the importance of being cautious even when

84
00:03:47.000 --> 00:03:48.639
<v Speaker 2>you think you're on a secure connection.

85
00:03:48.840 --> 00:03:51.800
<v Speaker 1>Okay, that's definitely something to think about. So even HTTPS

86
00:03:51.840 --> 00:03:54.039
<v Speaker 1>isn't fool proof, No it's not. And then on top

87
00:03:54.080 --> 00:03:56.360
<v Speaker 1>of all that, you know, the book mentions this whole

88
00:03:56.400 --> 00:04:00.240
<v Speaker 1>marketplace of vulnerabilities, like hackers can actually buy ex wait

89
00:04:00.319 --> 00:04:03.360
<v Speaker 1>kits and zero day vulnerabilities on the dark net.

90
00:04:03.639 --> 00:04:06.879
<v Speaker 2>It's a chilling thought, right, there are literally marketplaces where

91
00:04:06.879 --> 00:04:10.039
<v Speaker 2>cyber criminals can buy and sell tools to break into systems.

92
00:04:10.120 --> 00:04:12.639
<v Speaker 1>Yeah, that's pretty unsettling, and they're paying a lot of

93
00:04:12.680 --> 00:04:13.560
<v Speaker 1>money for these things.

94
00:04:13.639 --> 00:04:16.759
<v Speaker 2>They are some of these exploits can go for thousands

95
00:04:16.800 --> 00:04:17.720
<v Speaker 2>of dollars.

96
00:04:17.399 --> 00:04:20.759
<v Speaker 1>So that tells you how valuable this information is. It does, Okay,

97
00:04:20.839 --> 00:04:23.079
<v Speaker 1>so even if I'm being super careful, so it could

98
00:04:23.160 --> 00:04:26.560
<v Speaker 1>still you know, buy a digital skeleton key to my

99
00:04:26.639 --> 00:04:27.480
<v Speaker 1>online life.

100
00:04:27.560 --> 00:04:30.639
<v Speaker 2>It's a possibility, and it's something to be aware.

101
00:04:30.319 --> 00:04:32.920
<v Speaker 1>Of, okay. And then you know, on top of all that,

102
00:04:32.959 --> 00:04:35.879
<v Speaker 1>you have the whole issue of government surveillance. I mean

103
00:04:36.199 --> 00:04:38.959
<v Speaker 1>sometimes it feels like something out of a spy thriller, right.

104
00:04:39.120 --> 00:04:41.480
<v Speaker 2>It's definitely something to be aware of. The book talks

105
00:04:41.519 --> 00:04:45.480
<v Speaker 2>about programs like the Five Eyes Alliance, where intelligence agencies

106
00:04:45.839 --> 00:04:49.120
<v Speaker 2>from multiple countries share information Five Eyes.

107
00:04:49.319 --> 00:04:51.560
<v Speaker 1>Yeah, it sounds like something out of a James Bond movie.

108
00:04:51.720 --> 00:04:54.199
<v Speaker 2>It does, doesn't it. And then there are tools like

109
00:04:54.279 --> 00:04:56.879
<v Speaker 2>Carnivore that can intercept Internet traffic.

110
00:04:56.920 --> 00:04:58.439
<v Speaker 1>So even our governments are watching us.

111
00:04:58.519 --> 00:05:02.079
<v Speaker 2>It's a possibility, and it raises some serious questions about

112
00:05:02.079 --> 00:05:04.519
<v Speaker 2>privacy and how much of it we actually have online.

113
00:05:04.639 --> 00:05:07.000
<v Speaker 1>Yeah, it feels like we're walking a tightrope between staying

114
00:05:07.079 --> 00:05:09.160
<v Speaker 1>safe and maintaining our privacy.

115
00:05:09.240 --> 00:05:11.240
<v Speaker 2>It's a delicate balance, it is.

116
00:05:11.639 --> 00:05:14.000
<v Speaker 1>What about these back doors that I've heard about? Are

117
00:05:14.000 --> 00:05:14.800
<v Speaker 1>those real?

118
00:05:15.160 --> 00:05:19.240
<v Speaker 2>Unfortunately? Yes, A back door is basically a hidden vulnerability

119
00:05:19.279 --> 00:05:22.000
<v Speaker 2>that's intentionally built into software.

120
00:05:22.279 --> 00:05:24.160
<v Speaker 1>Intentionally, Why would anyone do that?

121
00:05:24.199 --> 00:05:27.519
<v Speaker 2>Often it's done by governments to gain access to encrypted data.

122
00:05:27.839 --> 00:05:30.360
<v Speaker 1>So even our own governments could be putting back doors

123
00:05:30.360 --> 00:05:31.160
<v Speaker 1>in our software.

124
00:05:31.360 --> 00:05:35.639
<v Speaker 2>It's happened before. The book uses the example of Juniper routers.

125
00:05:36.120 --> 00:05:38.839
<v Speaker 2>A backdoor was discovered in their software that allowed someone

126
00:05:38.879 --> 00:05:40.800
<v Speaker 2>to eavesdrop on connections.

127
00:05:40.879 --> 00:05:43.000
<v Speaker 1>So even the hardware can be compromised.

128
00:05:43.079 --> 00:05:46.800
<v Speaker 2>It's a possibility, and it's why understanding these vulnerabilities is

129
00:05:46.800 --> 00:05:47.399
<v Speaker 2>so important.

130
00:05:47.439 --> 00:05:49.000
<v Speaker 1>It's a lot to take in. It makes you want to,

131
00:05:49.079 --> 00:05:55.120
<v Speaker 1>you know, just run and hide, disconnect from the internet completely.

132
00:05:55.519 --> 00:05:58.480
<v Speaker 1>But the book does talk about encryption as being a

133
00:05:58.519 --> 00:06:01.879
<v Speaker 1>powerful tool it is. Can you explain how encryption works?

134
00:06:01.920 --> 00:06:03.920
<v Speaker 1>I always get a bit lost with the technical stuff.

135
00:06:04.199 --> 00:06:08.160
<v Speaker 2>Basically, encryption is the process of scrambling data to make

136
00:06:08.199 --> 00:06:11.920
<v Speaker 2>it unreadable without the correct key. It's like putting a

137
00:06:11.959 --> 00:06:15.199
<v Speaker 2>message in a locked box that only the intended recipient

138
00:06:15.319 --> 00:06:16.480
<v Speaker 2>has the key to open.

139
00:06:16.759 --> 00:06:18.920
<v Speaker 1>Okay, that makes sense. Sounds like a secret code.

140
00:06:19.040 --> 00:06:21.160
<v Speaker 2>You could think of it that way. And there are

141
00:06:21.199 --> 00:06:24.839
<v Speaker 2>different types of encryption. Symmetric encryption uses the same key

142
00:06:24.920 --> 00:06:29.120
<v Speaker 2>to encrypt and decrypt the data, while asymmetric encryption uses

143
00:06:29.160 --> 00:06:30.600
<v Speaker 2>different keys for each.

144
00:06:30.800 --> 00:06:33.480
<v Speaker 1>Okay, so symmetric is like having one key that fits

145
00:06:33.519 --> 00:06:37.600
<v Speaker 1>both locks, and asymmetric is like having two separate keys, exactly.

146
00:06:37.800 --> 00:06:40.759
<v Speaker 1>And I always hear about AES encryption being the gold standard.

147
00:06:40.839 --> 00:06:41.279
<v Speaker 1>Is that, right?

148
00:06:41.439 --> 00:06:45.199
<v Speaker 2>AES is a type of symmetric encryption, and it's considered.

149
00:06:44.839 --> 00:06:47.399
<v Speaker 1>Very strong, so it's pretty much unbreakable.

150
00:06:47.000 --> 00:06:50.079
<v Speaker 2>With current technology. Yes, it's even used by governments to

151
00:06:50.120 --> 00:06:51.560
<v Speaker 2>protect classified information.

152
00:06:52.079 --> 00:06:55.079
<v Speaker 1>So encryption sounds like a powerful way to protect our data.

153
00:06:55.480 --> 00:06:58.800
<v Speaker 2>It definitely is, but it's not the only strategy. The

154
00:06:58.839 --> 00:07:01.759
<v Speaker 2>book also talks about the concept of isolation, which is

155
00:07:01.800 --> 00:07:05.839
<v Speaker 2>all about dividing your digital life into different security zones.

156
00:07:05.920 --> 00:07:08.480
<v Speaker 1>Okay, so it's like having different bank accounts for different

157
00:07:08.519 --> 00:07:09.600
<v Speaker 1>purposes exactly.

158
00:07:10.040 --> 00:07:13.399
<v Speaker 2>If one account is compromised, the others are safe. And

159
00:07:13.439 --> 00:07:15.759
<v Speaker 2>the book talks about some interesting ways to achieve this,

160
00:07:16.000 --> 00:07:19.240
<v Speaker 2>like using separate devices for different activities, so.

161
00:07:19.199 --> 00:07:22.120
<v Speaker 1>Like having a dedicated computer just for online banking.

162
00:07:22.680 --> 00:07:25.800
<v Speaker 2>Right, But that's not always practical for everyone. So the

163
00:07:25.800 --> 00:07:28.079
<v Speaker 2>book also gets into virtual machines.

164
00:07:28.199 --> 00:07:30.759
<v Speaker 1>Virtual machines, I've heard the term, but I'm not really

165
00:07:30.759 --> 00:07:31.839
<v Speaker 1>sure what that means.

166
00:07:31.759 --> 00:07:35.000
<v Speaker 2>A virtual machine is basically a computer within your computer.

167
00:07:35.519 --> 00:07:39.160
<v Speaker 2>You can create isolated environments where you can run potentially

168
00:07:39.240 --> 00:07:43.120
<v Speaker 2>risky applications without affecting your main operating system.

169
00:07:43.279 --> 00:07:45.560
<v Speaker 1>So if something goes wrong in the virtual machine, it

170
00:07:45.600 --> 00:07:47.959
<v Speaker 1>doesn't affect my actual computer exactly.

171
00:07:48.000 --> 00:07:50.160
<v Speaker 2>It's like having a sandbox where you can play without

172
00:07:50.199 --> 00:07:51.519
<v Speaker 2>worrying about making a mess.

173
00:07:51.680 --> 00:07:55.160
<v Speaker 1>Okay, that's a pretty clever idea. Are there other isolation

174
00:07:55.319 --> 00:07:57.040
<v Speaker 1>techniques that the book mentions.

175
00:07:57.360 --> 00:08:00.560
<v Speaker 2>Yeah, it talks about hiding encrypted volumes, which makes your

176
00:08:00.639 --> 00:08:03.920
<v Speaker 2>data much harder to find, and even changing your MEE.

177
00:08:03.800 --> 00:08:06.240
<v Speaker 1>Address, changing my MA address. What's that?

178
00:08:06.519 --> 00:08:10.199
<v Speaker 2>Your MS address is a unique identifier for your device's

179
00:08:10.319 --> 00:08:13.600
<v Speaker 2>network card. Okay, by changing it, you can make it

180
00:08:13.680 --> 00:08:16.160
<v Speaker 2>more difficult to track your device on a network.

181
00:08:16.439 --> 00:08:19.120
<v Speaker 1>So it's like changing your car's license plate exactly.

182
00:08:19.480 --> 00:08:21.839
<v Speaker 2>And the book even walks you through how to do

183
00:08:21.920 --> 00:08:25.519
<v Speaker 2>this using tools like TMA for Windows and mechy changer

184
00:08:25.600 --> 00:08:26.279
<v Speaker 2>for Linux.

185
00:08:26.360 --> 00:08:28.399
<v Speaker 1>Okay, so it's not as complicated as it sounds.

186
00:08:28.519 --> 00:08:30.079
<v Speaker 2>No, it's actually pretty straightforward.

187
00:08:30.120 --> 00:08:32.320
<v Speaker 1>Okay, this is all starting to make sense. Yeah, but

188
00:08:32.360 --> 00:08:34.279
<v Speaker 1>it sounds like the operating consume you use plays a

189
00:08:34.279 --> 00:08:36.320
<v Speaker 1>big role in security too, it does.

190
00:08:36.679 --> 00:08:40.200
<v Speaker 2>All operating systems have their strengths and weaknesses. The book

191
00:08:40.240 --> 00:08:45.159
<v Speaker 2>compares Windows, mac OSX, and Linux in terms of security

192
00:08:45.240 --> 00:08:45.919
<v Speaker 2>and privacy.

193
00:08:46.120 --> 00:08:48.799
<v Speaker 1>I've always heard that MAX are more secure than Windows PCs.

194
00:08:49.080 --> 00:08:52.600
<v Speaker 2>That's a common myth. While MAX have historically had fewer

195
00:08:52.679 --> 00:08:55.519
<v Speaker 2>viruses targeting them, they're not immune to attacks.

196
00:08:55.679 --> 00:08:58.360
<v Speaker 1>Okay, so no operating system is perfect.

197
00:08:58.159 --> 00:09:00.720
<v Speaker 2>Exactly, and the book goes into detail tail about some

198
00:09:00.799 --> 00:09:02.559
<v Speaker 2>privacy concerns with Windows ten.

199
00:09:02.919 --> 00:09:04.720
<v Speaker 1>Windows ten. What's wrong with it?

200
00:09:04.720 --> 00:09:08.600
<v Speaker 2>It collects a lot of data about your browsing history,

201
00:09:08.799 --> 00:09:10.240
<v Speaker 2>app usage, location.

202
00:09:10.639 --> 00:09:12.480
<v Speaker 1>It does I had no idea, It's all in.

203
00:09:12.399 --> 00:09:14.960
<v Speaker 2>The privacy policy. And while some of this data collection

204
00:09:15.039 --> 00:09:17.840
<v Speaker 2>can be useful, it also raises privacy concerns.

205
00:09:18.240 --> 00:09:19.639
<v Speaker 1>Is there any way to stop it?

206
00:09:19.960 --> 00:09:22.679
<v Speaker 2>The book suggests some tools to help you customize your

207
00:09:22.679 --> 00:09:25.919
<v Speaker 2>privacy settings in Windows ten, or you could look into

208
00:09:25.919 --> 00:09:28.879
<v Speaker 2>more privacy focused operating systems like Linux.

209
00:09:29.120 --> 00:09:31.720
<v Speaker 1>Linux. That sounds pretty technical, it can be.

210
00:09:31.960 --> 00:09:34.720
<v Speaker 2>But there are distributions like Debian that are known for

211
00:09:34.759 --> 00:09:37.200
<v Speaker 2>their strong security and privacy features.

212
00:09:37.480 --> 00:09:39.559
<v Speaker 1>So even though it might be a little more challenging

213
00:09:39.600 --> 00:09:42.480
<v Speaker 1>to use, Linux could be a good option for someone

214
00:09:42.519 --> 00:09:44.159
<v Speaker 1>who's really serious about.

215
00:09:43.879 --> 00:09:47.759
<v Speaker 2>Privacy, absolutely, and the book provides some basic guidance on

216
00:09:47.919 --> 00:09:50.639
<v Speaker 2>using Linux, so it's not as daunting as it might seem.

217
00:09:50.679 --> 00:09:53.480
<v Speaker 1>Okay, So it's not just about choosing the right operating system,

218
00:09:53.480 --> 00:09:54.919
<v Speaker 1>it's also about knowing how to use.

219
00:09:54.759 --> 00:09:59.000
<v Speaker 2>It securely exactly. And the book goes beyond the technical solutions,

220
00:09:59.440 --> 00:10:01.919
<v Speaker 2>highlighting the the human factor in cybersecurity.

221
00:10:02.559 --> 00:10:03.360
<v Speaker 1>The human factor.

222
00:10:03.399 --> 00:10:06.000
<v Speaker 2>What do you mean, well, that brings us to social engineering.

223
00:10:06.360 --> 00:10:10.320
<v Speaker 1>Ah? Yes, those pesky phishing emails.

224
00:10:10.039 --> 00:10:13.639
<v Speaker 2>That's one example, but social engineering is a much broader concept.

225
00:10:13.799 --> 00:10:17.279
<v Speaker 2>It's about manipulating people into giving up sensitive information.

226
00:10:17.600 --> 00:10:20.000
<v Speaker 1>So it's not just about hacking into computers. It's about

227
00:10:20.000 --> 00:10:21.480
<v Speaker 1>hacking into.

228
00:10:21.360 --> 00:10:23.679
<v Speaker 2>People exactly, and it can be very effective.

229
00:10:23.840 --> 00:10:27.039
<v Speaker 1>Okay, So what can we do to protect ourselves from

230
00:10:27.080 --> 00:10:28.519
<v Speaker 1>social engineering attacks?

231
00:10:29.080 --> 00:10:32.399
<v Speaker 2>The book offers some strategies for managing your online identity

232
00:10:32.440 --> 00:10:36.279
<v Speaker 2>and minimizing how much personal information you reveal, Like what Well,

233
00:10:36.320 --> 00:10:38.879
<v Speaker 2>it starts by questioning whether you even need to be

234
00:10:39.000 --> 00:10:42.399
<v Speaker 2>on social media? Could you avoid it altogether or at

235
00:10:42.519 --> 00:10:45.200
<v Speaker 2>least minimize your usage.

236
00:10:44.840 --> 00:10:47.320
<v Speaker 1>For some people, maybe, but social media is a big

237
00:10:47.360 --> 00:10:49.039
<v Speaker 1>part of a lot of people's lives these days.

238
00:10:49.120 --> 00:10:52.960
<v Speaker 2>I agree. So the next level is compartmentalization. Can you

239
00:10:53.159 --> 00:10:56.200
<v Speaker 2>use different online identities for different purposes.

240
00:10:56.039 --> 00:10:58.360
<v Speaker 1>So like having a separate persona for work and for

241
00:10:58.440 --> 00:10:59.639
<v Speaker 1>personal stuff exactly.

242
00:10:59.679 --> 00:11:02.879
<v Speaker 2>You can also keep your personal and professional networks completely separate,

243
00:11:03.200 --> 00:11:06.399
<v Speaker 2>or be really mindful about what information you're sharing online.

244
00:11:06.559 --> 00:11:09.120
<v Speaker 2>It's all about creating a strategy that works for you

245
00:11:09.240 --> 00:11:10.039
<v Speaker 2>and your needs.

246
00:11:10.399 --> 00:11:12.360
<v Speaker 1>Okay, that makes sense. What about when you have to

247
00:11:12.360 --> 00:11:15.320
<v Speaker 1>register on websites it feels like you're always giving up

248
00:11:15.360 --> 00:11:16.399
<v Speaker 1>some personal information.

249
00:11:17.200 --> 00:11:20.919
<v Speaker 2>The book suggests some clever workarounds for that. First, try

250
00:11:20.919 --> 00:11:23.480
<v Speaker 2>to find services that don't even require you to create

251
00:11:23.480 --> 00:11:24.080
<v Speaker 2>an account.

252
00:11:24.639 --> 00:11:25.480
<v Speaker 1>I never thought of that.

253
00:11:25.960 --> 00:11:28.919
<v Speaker 2>But when you do need to register, the book suggest

254
00:11:29.000 --> 00:11:34.360
<v Speaker 2>creating a separate email address specifically for online registrations.

255
00:11:33.639 --> 00:11:35.960
<v Speaker 1>So like a throwaway email address that I just use

256
00:11:36.039 --> 00:11:37.159
<v Speaker 1>for signing.

257
00:11:36.919 --> 00:11:40.000
<v Speaker 2>Up for things exactly. And for those websites that require

258
00:11:40.039 --> 00:11:42.559
<v Speaker 2>you to verify your phone number with an SMS code,

259
00:11:42.919 --> 00:11:45.960
<v Speaker 2>the book even mentions sites that offer temporary phone numbers

260
00:11:46.080 --> 00:11:46.720
<v Speaker 2>so I don't have to.

261
00:11:46.679 --> 00:11:49.320
<v Speaker 1>Give up my real number. That's brilliant, it is.

262
00:11:49.320 --> 00:11:51.360
<v Speaker 2>And it can really help to protect your privacy.

263
00:11:51.519 --> 00:11:54.919
<v Speaker 1>Okay, what about those social engineering tactics we talked about earlier,

264
00:11:55.200 --> 00:11:58.519
<v Speaker 1>Like phishing emails. How can I avoid falling for those?

265
00:11:59.240 --> 00:12:01.240
<v Speaker 2>Well, one of the biggest those things is to never

266
00:12:01.440 --> 00:12:04.399
<v Speaker 2>click on links and emails, especially if they're asking for

267
00:12:04.480 --> 00:12:05.919
<v Speaker 2>personal information.

268
00:12:05.960 --> 00:12:09.679
<v Speaker 1>Right because that link could lead to a fake website

269
00:12:10.000 --> 00:12:12.679
<v Speaker 1>designed to steal my passwords exactly.

270
00:12:13.000 --> 00:12:16.120
<v Speaker 2>Instead, always type the website addressed directly into your browser.

271
00:12:16.279 --> 00:12:18.840
<v Speaker 1>Good advice. And if I do need to click a link,

272
00:12:18.879 --> 00:12:19.720
<v Speaker 1>what should I look for?

273
00:12:19.879 --> 00:12:23.759
<v Speaker 2>Pay close attention to the URL, look for misspellings, unusual

274
00:12:23.799 --> 00:12:28.000
<v Speaker 2>domain names, or anything that seems off. Be a digital detective.

275
00:12:28.159 --> 00:12:30.799
<v Speaker 1>Okay, I like that, Be a digital detective.

276
00:12:31.039 --> 00:12:35.080
<v Speaker 2>Another good tip is to be suspicious of any unsolicited contact,

277
00:12:35.320 --> 00:12:39.039
<v Speaker 2>whether it's an email, phone call, or text message. Don't

278
00:12:39.120 --> 00:12:43.039
<v Speaker 2>give out personal information unless you've independently verified the identity

279
00:12:43.080 --> 00:12:45.320
<v Speaker 2>of the person or organization contacting you.

280
00:12:45.559 --> 00:12:48.919
<v Speaker 1>So no trusting those emails from Nigerian princes exactly.

281
00:12:49.159 --> 00:12:52.519
<v Speaker 2>Remember, social engineering is all about exploiting our trust and

282
00:12:52.559 --> 00:12:56.679
<v Speaker 2>our emotions. Staying calm and thinking critically is your best defense.

283
00:12:57.039 --> 00:12:59.720
<v Speaker 1>Okay. So it's not just about technology, it's about changing

284
00:12:59.759 --> 00:13:01.840
<v Speaker 1>the way we think about security exactly.

285
00:13:01.919 --> 00:13:05.000
<v Speaker 2>It's about being vigilant, cautious, and skeptical.

286
00:13:05.159 --> 00:13:05.679
<v Speaker 1>I like that.

287
00:13:05.840 --> 00:13:08.840
<v Speaker 2>Not taking anything at face value and being aware of

288
00:13:08.840 --> 00:13:11.240
<v Speaker 2>potential dangers both online and offline.

289
00:13:11.320 --> 00:13:13.080
<v Speaker 1>Okay, So it's about taking ownership of.

290
00:13:13.000 --> 00:13:16.240
<v Speaker 2>Our security exactly, and that's what this book is all about.

291
00:13:16.639 --> 00:13:20.440
<v Speaker 2>It's about empowering us to protect ourselves in the digital world.

292
00:13:20.840 --> 00:13:22.879
<v Speaker 1>This has been really helpful. I'm feeling a lot more

293
00:13:22.879 --> 00:13:25.840
<v Speaker 1>informed and maybe a little more paranoid, but in a

294
00:13:25.879 --> 00:13:26.320
<v Speaker 1>good way.

295
00:13:26.399 --> 00:13:29.960
<v Speaker 2>That's the point. Awareness is the first step to protecting yourself.

296
00:13:30.039 --> 00:13:32.360
<v Speaker 1>Okay. So now that we've got a basic understanding of

297
00:13:32.399 --> 00:13:35.000
<v Speaker 1>the threats and the tools, where do we go from here?

298
00:13:35.080 --> 00:13:37.240
<v Speaker 2>Well, the book goes into a lot more detail about

299
00:13:37.240 --> 00:13:40.440
<v Speaker 2>the different types of attacks, the motivations behind them, and

300
00:13:40.480 --> 00:13:42.759
<v Speaker 2>the strategies you can use to defend yourself.

301
00:13:42.840 --> 00:13:44.639
<v Speaker 1>Okay, So there's a lot more to learn.

302
00:13:44.519 --> 00:13:46.679
<v Speaker 2>There is, but don't worry, we'll cover it all in

303
00:13:46.720 --> 00:13:47.600
<v Speaker 2>our next deep dive.

304
00:13:47.720 --> 00:13:48.919
<v Speaker 1>Great, I'm looking forward to.

305
00:13:48.840 --> 00:13:51.720
<v Speaker 2>It me too. We've talked a lot about, you know,

306
00:13:51.799 --> 00:13:56.240
<v Speaker 2>the technical side of cybersecurity, firewalls, encryption.

307
00:13:56.200 --> 00:13:58.320
<v Speaker 1>All that good stuff, right, the tools and the tactics.

308
00:13:58.440 --> 00:14:03.279
<v Speaker 2>But this book that come complete cybersecurity course, it really

309
00:14:03.519 --> 00:14:07.480
<v Speaker 2>it really hits home the point about well, the human element, the.

310
00:14:07.480 --> 00:14:10.399
<v Speaker 1>Human element, right, right, because, like we said, social engineering

311
00:14:10.960 --> 00:14:13.840
<v Speaker 1>that praise on our emotions, exact our trust.

312
00:14:14.279 --> 00:14:17.559
<v Speaker 2>It's not just about you know, having the strongest firewall

313
00:14:17.679 --> 00:14:22.480
<v Speaker 2>or the most complex encryption algorithm. It's about recognizing that people,

314
00:14:22.600 --> 00:14:24.320
<v Speaker 2>well people are often the weakest link.

315
00:14:24.600 --> 00:14:27.600
<v Speaker 1>Yeah, that makes sense. So let's talk about these attackers.

316
00:14:27.679 --> 00:14:29.200
<v Speaker 1>Who are they, what makes them tick?

317
00:14:29.360 --> 00:14:32.399
<v Speaker 2>Well, the book goes into like a pretty good amount

318
00:14:32.440 --> 00:14:36.639
<v Speaker 2>of detail about the different types of attackers. You've got

319
00:14:36.679 --> 00:14:41.200
<v Speaker 2>you know what they call script kitties, scrypt kitties. Yeah, basically,

320
00:14:41.519 --> 00:14:46.120
<v Speaker 2>they're amateurs. They're using pre made tools causing mischief.

321
00:14:46.399 --> 00:14:46.600
<v Speaker 1>Right.

322
00:14:47.039 --> 00:14:51.279
<v Speaker 2>Then you've got your cyber criminals motivated by well profit,

323
00:14:51.759 --> 00:14:57.159
<v Speaker 2>they're trying to steal data, financial information, intellectual property.

324
00:14:56.840 --> 00:14:57.840
<v Speaker 1>Steal money basically.

325
00:14:57.960 --> 00:15:02.399
<v Speaker 2>Yeah, and then you've got well, well, the state sponsored hackers.

326
00:15:02.080 --> 00:15:05.320
<v Speaker 1>State sponsored hackers. That sounds like something out of you know,

327
00:15:05.440 --> 00:15:06.279
<v Speaker 1>a spy movie.

328
00:15:06.399 --> 00:15:08.960
<v Speaker 2>It does sound like a Hollywood plot, but it's very real.

329
00:15:09.120 --> 00:15:10.879
<v Speaker 1>So governments are actually hiring hackers.

330
00:15:11.080 --> 00:15:14.559
<v Speaker 2>Well, they're investing in you know, cyber capabilities, Okay, for

331
00:15:14.639 --> 00:15:16.720
<v Speaker 2>both defensive and offensive purposes.

332
00:15:17.080 --> 00:15:19.759
<v Speaker 1>Right, So they're trying to protect themselves, but they're also

333
00:15:19.879 --> 00:15:22.120
<v Speaker 1>using these capabilities to attack other countries.

334
00:15:22.320 --> 00:15:27.000
<v Speaker 2>It's a digital arms race, countries fighting for control in cyberspace.

335
00:15:27.159 --> 00:15:30.080
<v Speaker 1>It's like a whole new battlefield. So what kind of

336
00:15:30.080 --> 00:15:31.080
<v Speaker 1>tactics are they using?

337
00:15:31.240 --> 00:15:35.879
<v Speaker 2>Oh, all sorts of things, spear phishing, malware, and you

338
00:15:35.879 --> 00:15:39.919
<v Speaker 2>know those social engineering techniques we talked about spearfishing. What's that, Well,

339
00:15:39.960 --> 00:15:44.840
<v Speaker 2>spear phishing, it's it's a targeted attack where the attacker,

340
00:15:45.200 --> 00:15:48.919
<v Speaker 2>you know, researches their victim, they craft a very specific email.

341
00:15:49.159 --> 00:15:51.399
<v Speaker 1>Oh so it's not just some random spam email.

342
00:15:51.559 --> 00:15:52.919
<v Speaker 2>No, this is very personalized.

343
00:15:53.000 --> 00:15:53.320
<v Speaker 1>Okay.

344
00:15:53.399 --> 00:15:56.879
<v Speaker 2>They might use information they've gathered from like social media

345
00:15:57.039 --> 00:15:59.679
<v Speaker 2>or company websites to make it look like it's coming

346
00:15:59.720 --> 00:16:01.559
<v Speaker 2>from well, a trusted source.

347
00:16:01.679 --> 00:16:03.840
<v Speaker 1>So it's like a con artist gaining your trust before

348
00:16:03.960 --> 00:16:04.840
<v Speaker 1>taking advantage of you.

349
00:16:05.159 --> 00:16:07.000
<v Speaker 2>That's a good way to put it. And then there's malware,

350
00:16:07.080 --> 00:16:10.039
<v Speaker 2>which is any software designed to harm or exploit a system.

351
00:16:10.200 --> 00:16:12.720
<v Speaker 1>Okay, malware, that's a pretty broad term, right, I mean,

352
00:16:12.759 --> 00:16:13.879
<v Speaker 1>what are some examples of that.

353
00:16:13.960 --> 00:16:20.039
<v Speaker 2>You've got viruses, worms, trojans, ransomware. There's all kinds.

354
00:16:19.799 --> 00:16:22.440
<v Speaker 1>Really, so many different ways to cause havoc.

355
00:16:22.559 --> 00:16:26.399
<v Speaker 2>They have different ways of infiltrating systems and causing damage yeah,

356
00:16:26.480 --> 00:16:27.559
<v Speaker 2>I mean ransomware.

357
00:16:27.759 --> 00:16:30.200
<v Speaker 1>That one's been in the news a lot lately. It

358
00:16:30.279 --> 00:16:33.240
<v Speaker 1>has encrypting people's files and holding them hostage.

359
00:16:33.320 --> 00:16:35.720
<v Speaker 2>It's become a big business for cyber criminals.

360
00:16:35.879 --> 00:16:39.679
<v Speaker 1>Yeah, and it's not just targeting individuals anymore. It's hitting businesses,

361
00:16:39.720 --> 00:16:40.879
<v Speaker 1>even government agencies.

362
00:16:40.919 --> 00:16:42.799
<v Speaker 2>It can cripple entire organizations.

363
00:16:43.159 --> 00:16:46.440
<v Speaker 1>Right, and I've heard they often demand payment, and bitcoin

364
00:16:46.600 --> 00:16:48.559
<v Speaker 1>or some other cryptocurrency.

365
00:16:48.919 --> 00:16:55.120
<v Speaker 2>Cryptocurrencies offer a level of anonymity that's well, it's attractive to.

366
00:16:55.080 --> 00:16:58.480
<v Speaker 1>Criminals, right, makes it harder to trace exactly. So it's

367
00:16:58.519 --> 00:17:01.720
<v Speaker 1>like a perfect crime digital it can feel that way.

368
00:17:01.840 --> 00:17:03.840
<v Speaker 2>Yeah, it's a serious threat.

369
00:17:04.119 --> 00:17:07.839
<v Speaker 1>Okay, so we've got phishing, we've got social engineering malware.

370
00:17:08.079 --> 00:17:11.000
<v Speaker 1>What about those exploit kits we talked about earlier, those

371
00:17:11.039 --> 00:17:13.000
<v Speaker 1>pre made hacking tools, Right.

372
00:17:12.880 --> 00:17:16.240
<v Speaker 2>Those are packages of software tools that automate the process

373
00:17:16.279 --> 00:17:20.480
<v Speaker 2>of exploiting vulnerabilities. They're like hacking for dummies, So.

374
00:17:20.519 --> 00:17:22.559
<v Speaker 1>Even if you don't know how to code, you can

375
00:17:22.640 --> 00:17:24.440
<v Speaker 1>still use these to launch an attack.

376
00:17:24.759 --> 00:17:29.039
<v Speaker 2>That's the scary part. And they're readily available on the dirknet.

377
00:17:28.720 --> 00:17:31.079
<v Speaker 1>Right, those underground marketplaces, making.

378
00:17:30.839 --> 00:17:33.920
<v Speaker 2>It easier than ever for attackers to get their hands

379
00:17:33.920 --> 00:17:35.480
<v Speaker 2>on sophisticated tools.

380
00:17:35.559 --> 00:17:39.240
<v Speaker 1>Okay, this is all starting to sound well, kind of overwhelming.

381
00:17:39.319 --> 00:17:40.519
<v Speaker 2>It's a lot to take in.

382
00:17:40.880 --> 00:17:43.680
<v Speaker 1>It feels like we're constantly under attack from all sides.

383
00:17:43.759 --> 00:17:46.160
<v Speaker 2>It can feel that way, but remember, there are things

384
00:17:46.200 --> 00:17:48.240
<v Speaker 2>we can do to defend ourselves, right.

385
00:17:48.279 --> 00:17:51.400
<v Speaker 1>Right, we talked about strong passwords, secure Wi Fi.

386
00:17:51.799 --> 00:17:54.319
<v Speaker 2>Absolutely, those are the basics, the foundation.

387
00:17:54.599 --> 00:17:58.480
<v Speaker 1>Okay, the foundation, Yeah, but what about going beyond the basics,

388
00:17:58.480 --> 00:18:00.640
<v Speaker 1>what about more advanced strategies.

389
00:18:00.880 --> 00:18:03.960
<v Speaker 2>Well, the book talks a lot about security through isolation.

390
00:18:04.400 --> 00:18:05.720
<v Speaker 1>Okay, isolation, what's that.

391
00:18:06.119 --> 00:18:09.799
<v Speaker 2>It's about compartmentalizing your digital life so that if one

392
00:18:09.880 --> 00:18:13.480
<v Speaker 2>area gets compromised, well, the damage is contained.

393
00:18:13.519 --> 00:18:16.079
<v Speaker 1>Okay. So it's like if one part of your house

394
00:18:16.160 --> 00:18:18.640
<v Speaker 1>catches fire, you want to make sure the fire doesn't

395
00:18:18.640 --> 00:18:19.079
<v Speaker 1>spread to.

396
00:18:19.039 --> 00:18:21.799
<v Speaker 2>The rest of the house exactly. The book talks about

397
00:18:21.799 --> 00:18:27.799
<v Speaker 2>physical isolation, which is using completely separate devices for different activities.

398
00:18:27.279 --> 00:18:30.039
<v Speaker 1>Right, like having a dedicated computer just for online banking.

399
00:18:30.480 --> 00:18:34.000
<v Speaker 2>Right, But like we said, that's not always practical. So

400
00:18:34.079 --> 00:18:37.640
<v Speaker 2>the book also gets into virtual isolation, which is using

401
00:18:37.720 --> 00:18:39.680
<v Speaker 2>virtual machines or vms.

402
00:18:39.799 --> 00:18:41.880
<v Speaker 1>Vms. I think we touched on that earlier. Can you

403
00:18:41.880 --> 00:18:42.759
<v Speaker 1>remind me how those work.

404
00:18:43.079 --> 00:18:46.519
<v Speaker 2>Yeah. So a VM is basically a computer within your computer.

405
00:18:46.680 --> 00:18:46.960
<v Speaker 1>Okay.

406
00:18:47.000 --> 00:18:50.000
<v Speaker 2>It creates an isolated environment, so you can.

407
00:18:49.920 --> 00:18:53.559
<v Speaker 1>Run risky programs in the VM without affecting your main

408
00:18:53.599 --> 00:18:54.799
<v Speaker 1>computer exactly.

409
00:18:55.200 --> 00:18:58.599
<v Speaker 2>If the VM gets compromised, your main operating system and

410
00:18:58.640 --> 00:19:00.640
<v Speaker 2>your personal files are still protected.

411
00:19:00.759 --> 00:19:04.039
<v Speaker 1>Okay, that makes sense. It's like having a separate, disposable

412
00:19:04.119 --> 00:19:06.480
<v Speaker 1>workspace for risky activities.

413
00:19:06.640 --> 00:19:09.160
<v Speaker 2>That's a good analogy. And the book even talks about

414
00:19:09.200 --> 00:19:14.240
<v Speaker 2>application isolation, isolating specific applications within your operating system.

415
00:19:14.359 --> 00:19:18.079
<v Speaker 1>Oh. Interesting, So like isolating your web browser exactly. They

416
00:19:18.079 --> 00:19:20.960
<v Speaker 1>call it sandboxing sandboxing. I'm picturing kids playing in a

417
00:19:21.000 --> 00:19:21.920
<v Speaker 1>sandbox at the park.

418
00:19:22.000 --> 00:19:24.599
<v Speaker 2>Think of it like that. You're containing the potential mess.

419
00:19:24.680 --> 00:19:27.319
<v Speaker 1>Okay, I get it. So if my browser gets infected,

420
00:19:27.680 --> 00:19:31.160
<v Speaker 1>the malware is contained within that sandbox. It can't spread

421
00:19:31.200 --> 00:19:32.119
<v Speaker 1>to the rest of my computer.

422
00:19:32.240 --> 00:19:32.880
<v Speaker 2>That's the idea.

423
00:19:32.960 --> 00:19:36.720
<v Speaker 1>Okay, so sandboxing adds another layer of protection. And you

424
00:19:36.720 --> 00:19:40.079
<v Speaker 1>said some operating systems have built in sandboxing features.

425
00:19:40.200 --> 00:19:43.240
<v Speaker 2>They do, and there are also third party applications you

426
00:19:43.279 --> 00:19:45.599
<v Speaker 2>can use. The book has some recommendations.

427
00:19:45.680 --> 00:19:50.200
<v Speaker 1>Okay. So we've got physical isolation, virtual machines, sandboxing, what

428
00:19:50.279 --> 00:19:51.519
<v Speaker 1>other isolation techniques.

429
00:19:51.559 --> 00:19:54.240
<v Speaker 2>Does the book mention, Oh, it goes into changing your

430
00:19:54.359 --> 00:19:56.240
<v Speaker 2>ma seed RUSS, which we talked about earlier.

431
00:19:56.319 --> 00:19:58.400
<v Speaker 1>Right, that's like changing your car's license plate to make

432
00:19:58.440 --> 00:19:59.480
<v Speaker 1>it harder to track.

433
00:19:59.359 --> 00:20:01.519
<v Speaker 2>Exactly, and the book gives instructions on how to do

434
00:20:01.559 --> 00:20:03.000
<v Speaker 2>it on different operating systems.

435
00:20:03.119 --> 00:20:06.880
<v Speaker 1>Okay, changing your MAAC address, got it. What about VPNs?

436
00:20:07.359 --> 00:20:09.000
<v Speaker 1>Those seem to be all the rage these days.

437
00:20:09.119 --> 00:20:12.839
<v Speaker 2>Yeah, VPNs, or virtual private networks, are a great tool

438
00:20:12.880 --> 00:20:14.920
<v Speaker 2>for enhancing your security and privacy.

439
00:20:15.279 --> 00:20:15.839
<v Speaker 1>How do it work?

440
00:20:16.319 --> 00:20:20.519
<v Speaker 2>Well, they create an encrypted tunnel between your device and

441
00:20:20.599 --> 00:20:23.880
<v Speaker 2>a VPN server, so it masks your IP address and

442
00:20:24.000 --> 00:20:25.599
<v Speaker 2>encrypts all of your Internet traffic.

443
00:20:25.640 --> 00:20:27.880
<v Speaker 1>Okay, so it's like you're driving through a secure tunnel.

444
00:20:28.079 --> 00:20:30.559
<v Speaker 1>Nobody can see what's inside your car or where you're going.

445
00:20:30.720 --> 00:20:34.200
<v Speaker 2>That's a great analogy. And VPNs are especially useful when

446
00:20:34.240 --> 00:20:36.559
<v Speaker 2>you're using public Wi Fi, oh right.

447
00:20:36.480 --> 00:20:39.480
<v Speaker 1>Because public Wi Fi is often unsecured exactly.

448
00:20:39.720 --> 00:20:42.400
<v Speaker 2>Anyone on that network could potentially see what you're doing.

449
00:20:42.799 --> 00:20:45.720
<v Speaker 2>But if you're using a VPN, your traffic is encrypted,

450
00:20:45.759 --> 00:20:47.960
<v Speaker 2>so it's much harder for anyone to snoop.

451
00:20:48.440 --> 00:20:50.400
<v Speaker 1>So it's like putting a shield around your data.

452
00:20:50.720 --> 00:20:53.039
<v Speaker 2>You could think of it that way. The book recommends

453
00:20:53.200 --> 00:20:56.839
<v Speaker 2>using a reputable VPN service and explains the different types

454
00:20:56.839 --> 00:20:58.599
<v Speaker 2>of VPN protocols available.

455
00:20:58.759 --> 00:21:01.319
<v Speaker 1>Okay, so VPNs or a must have for anyone who

456
00:21:01.440 --> 00:21:04.440
<v Speaker 1>uses public Wi Fi regularly. What else does the book cover?

457
00:21:04.680 --> 00:21:07.319
<v Speaker 2>Well, it spends a good chump of time on operating systems,

458
00:21:07.319 --> 00:21:10.880
<v Speaker 2>security and privacy. It compares the strength and weaknesses of

459
00:21:10.920 --> 00:21:12.480
<v Speaker 2>different operating systems, right.

460
00:21:12.359 --> 00:21:14.279
<v Speaker 1>Like Windows, Mac, and Linux.

461
00:21:14.039 --> 00:21:17.200
<v Speaker 2>Exactly, and it goes deeper into their specific features and

462
00:21:17.279 --> 00:21:21.359
<v Speaker 2>vulnerabilities how to configure them for maximum security.

463
00:21:20.960 --> 00:21:23.799
<v Speaker 1>Okay, because it's not enough to just choose the right

464
00:21:23.880 --> 00:21:26.359
<v Speaker 1>operating system, you have to know how to use it securely.

465
00:21:26.559 --> 00:21:30.559
<v Speaker 2>Right. It provides guidance on customizing privacy settings, finding the

466
00:21:30.599 --> 00:21:34.720
<v Speaker 2>right balance between security, privacy and usability.

467
00:21:34.480 --> 00:21:36.359
<v Speaker 1>Right because you don't want to lock things down so

468
00:21:36.480 --> 00:21:37.720
<v Speaker 1>tight that you can't actually use.

469
00:21:37.599 --> 00:21:40.880
<v Speaker 2>Your computer exactly. It's about finding that sweet spot.

470
00:21:41.079 --> 00:21:43.960
<v Speaker 1>Okay. What about social media? We've talked about that earlier,

471
00:21:43.960 --> 00:21:47.200
<v Speaker 1>but it feels like social media is a cybersecurity minefield

472
00:21:47.240 --> 00:21:47.799
<v Speaker 1>in itself.

473
00:21:48.000 --> 00:21:50.480
<v Speaker 2>It can be. Social media companies collect a lot of

474
00:21:50.559 --> 00:21:53.599
<v Speaker 2>data about us, and we often share things without thinking

475
00:21:53.640 --> 00:21:56.079
<v Speaker 2>about the potential consequences.

476
00:21:55.440 --> 00:22:00.000
<v Speaker 1>Right, like our name, our location, our interests.

477
00:21:59.000 --> 00:22:01.680
<v Speaker 2>All that stuff exactly, and all of that data can

478
00:22:01.680 --> 00:22:03.440
<v Speaker 2>be used to build a profile of you.

479
00:22:04.079 --> 00:22:08.000
<v Speaker 1>And that profile can be used by advertisers, marketers, even criminals.

480
00:22:08.200 --> 00:22:11.359
<v Speaker 2>It's a valuable commodity. So the book offers strategies for

481
00:22:11.480 --> 00:22:16.960
<v Speaker 2>managing your online identity, minimizing your digital footprint, like what well,

482
00:22:17.480 --> 00:22:19.799
<v Speaker 2>first of all, being mindful of what you share, do

483
00:22:19.839 --> 00:22:22.400
<v Speaker 2>you really need to post that photo of your vacation? Oh?

484
00:22:22.400 --> 00:22:24.720
<v Speaker 2>And more, share your political views, right.

485
00:22:24.559 --> 00:22:27.640
<v Speaker 1>Because once something is online, it's out there forever.

486
00:22:27.880 --> 00:22:30.240
<v Speaker 2>It's hard to erase your digital pass, Okay, so think

487
00:22:30.279 --> 00:22:31.079
<v Speaker 2>before you post.

488
00:22:31.200 --> 00:22:31.599
<v Speaker 1>What else?

489
00:22:31.640 --> 00:22:34.680
<v Speaker 2>It also discusses the use of pseudonyms or aliases.

490
00:22:34.799 --> 00:22:37.599
<v Speaker 1>So like using a fake name online.

491
00:22:37.119 --> 00:22:39.920
<v Speaker 2>Right, it can help protect your real identity. If you're

492
00:22:39.920 --> 00:22:43.359
<v Speaker 2>concerned about privacy, it's like having a separate online persona.

493
00:22:43.680 --> 00:22:47.160
<v Speaker 1>Okay, interesting. What about those privacy enhancing tools you mentioned

494
00:22:47.240 --> 00:22:48.160
<v Speaker 1>like VPNs?

495
00:22:48.359 --> 00:22:51.880
<v Speaker 2>VPNs are great, but the book also talks about browser

496
00:22:51.920 --> 00:22:54.799
<v Speaker 2>extensions that can block trackers and cookies.

497
00:22:54.880 --> 00:22:56.519
<v Speaker 1>Trackers and cookies, what are those?

498
00:22:56.839 --> 00:23:00.880
<v Speaker 2>Basically, there are little bits of code that websites used

499
00:23:00.920 --> 00:23:04.079
<v Speaker 2>to collect data about you and your browsing habits.

500
00:23:04.200 --> 00:23:06.559
<v Speaker 1>So they are like little spies following me around.

501
00:23:06.319 --> 00:23:09.599
<v Speaker 2>The internet kind of. They're not always malicious, but they

502
00:23:09.640 --> 00:23:12.799
<v Speaker 2>do allow companies to build a detailed profile of your

503
00:23:12.839 --> 00:23:13.839
<v Speaker 2>online activity.

504
00:23:14.079 --> 00:23:16.279
<v Speaker 1>Okay, that's a little creepy. So how do I protect

505
00:23:16.279 --> 00:23:17.960
<v Speaker 1>myself from these trackers and cookies?

506
00:23:18.079 --> 00:23:20.720
<v Speaker 2>You can use browser extensions to block them. You can

507
00:23:20.759 --> 00:23:23.640
<v Speaker 2>also adjust your browser's privacy settings, so.

508
00:23:23.599 --> 00:23:25.359
<v Speaker 1>It's like putting up a do not track sign on

509
00:23:25.359 --> 00:23:26.759
<v Speaker 1>my browser exactly.

510
00:23:27.079 --> 00:23:29.200
<v Speaker 2>The book gives instructions on how to do that on

511
00:23:29.240 --> 00:23:30.119
<v Speaker 2>different browsers.

512
00:23:30.279 --> 00:23:34.559
<v Speaker 1>Okay, managing our online identity, got it? What about social

513
00:23:34.599 --> 00:23:39.119
<v Speaker 1>engineering on social media? It's not just limited to email, right, No.

514
00:23:39.240 --> 00:23:42.440
<v Speaker 2>Social engineering can be even more effective on social media

515
00:23:42.480 --> 00:23:44.799
<v Speaker 2>because people tend to be less guarded.

516
00:23:45.079 --> 00:23:47.240
<v Speaker 1>Right. It's easier to let your guard down when you're

517
00:23:47.359 --> 00:23:48.440
<v Speaker 1>interacting with friends.

518
00:23:48.240 --> 00:23:51.880
<v Speaker 2>And family exactly. So the book offers tips on how

519
00:23:51.920 --> 00:23:55.680
<v Speaker 2>to spot fake accounts and avoid falling for social engineering traps, like.

520
00:23:55.640 --> 00:23:57.480
<v Speaker 1>Being careful about who you connect.

521
00:23:57.079 --> 00:24:01.440
<v Speaker 2>With, right, and being wary of messages that seem too

522
00:24:01.480 --> 00:24:02.279
<v Speaker 2>good to be true.

523
00:24:02.599 --> 00:24:06.200
<v Speaker 1>Okay, so don't accept friend requests from strangers. Yeah, and

524
00:24:06.319 --> 00:24:08.559
<v Speaker 1>don't believe everything you see on social.

525
00:24:08.319 --> 00:24:12.440
<v Speaker 2>Media exactly, think critically about the information you're consuming and

526
00:24:12.480 --> 00:24:13.799
<v Speaker 2>the people you're interacting with.

527
00:24:14.000 --> 00:24:17.680
<v Speaker 1>Okay, good advice. What about location tracking? I know a

528
00:24:17.680 --> 00:24:20.039
<v Speaker 1>lot of apps want to know my location all the time.

529
00:24:20.200 --> 00:24:24.160
<v Speaker 2>It's a valid concern. Location tracking can be convenient, but

530
00:24:24.240 --> 00:24:27.400
<v Speaker 2>it also raises privacy issues, right, It's like, do.

531
00:24:27.400 --> 00:24:29.359
<v Speaker 1>I really want everyone to know where I am all

532
00:24:29.400 --> 00:24:29.799
<v Speaker 1>the time?

533
00:24:29.920 --> 00:24:32.640
<v Speaker 2>The book encourages you to think about those trade offs,

534
00:24:32.880 --> 00:24:35.640
<v Speaker 2>and it offers advice on how to manage location tracking

535
00:24:35.640 --> 00:24:37.720
<v Speaker 2>settings on your phone and within apps.

536
00:24:37.920 --> 00:24:40.559
<v Speaker 1>Okay, So be aware of the risks and make informed

537
00:24:40.640 --> 00:24:41.680
<v Speaker 1>choices exactly.

538
00:24:41.759 --> 00:24:44.240
<v Speaker 2>And the book reminds us about the risks of public

539
00:24:44.279 --> 00:24:45.880
<v Speaker 2>Wi Fi, which we've talked about before.

540
00:24:46.039 --> 00:24:48.160
<v Speaker 1>Right. Public Wi Fi can be a life saver, but

541
00:24:48.200 --> 00:24:51.119
<v Speaker 1>it's also a security risk if you're not careful.

542
00:24:51.240 --> 00:24:53.839
<v Speaker 2>Always use a VPN when connecting to public Wi Fi.

543
00:24:54.200 --> 00:24:58.039
<v Speaker 1>Okay, So no online banking at the coffee shop without

544
00:24:58.079 --> 00:24:59.240
<v Speaker 1>a VPN exactly.

545
00:24:59.599 --> 00:25:03.599
<v Speaker 2>And the book also discusses Mobile Device Management or MDM.

546
00:25:03.839 --> 00:25:04.559
<v Speaker 1>MDM with that.

547
00:25:05.000 --> 00:25:08.279
<v Speaker 2>Basically, it's a set of tools that organizations use to

548
00:25:08.359 --> 00:25:10.680
<v Speaker 2>secure and manage employee devices.

549
00:25:10.920 --> 00:25:12.680
<v Speaker 1>So it's like a security guard for your phone.

550
00:25:13.359 --> 00:25:15.079
<v Speaker 2>You could think of it. That way, it helps to

551
00:25:15.160 --> 00:25:19.400
<v Speaker 2>enforce security policies like requiring strong passwords and encrypting data.

552
00:25:19.519 --> 00:25:21.799
<v Speaker 1>Okay, that makes sense, But I thought MDM was just

553
00:25:21.839 --> 00:25:22.480
<v Speaker 1>for companies.

554
00:25:23.160 --> 00:25:25.559
<v Speaker 2>It is often used in corporate environments, but there are

555
00:25:25.559 --> 00:25:28.559
<v Speaker 2>also MDM solutions available for individuals.

556
00:25:28.599 --> 00:25:30.920
<v Speaker 1>Well. Interesting. So if I'm really concerned about mobile security,

557
00:25:30.920 --> 00:25:33.440
<v Speaker 1>I could use an MDM solution on my personal phone.

558
00:25:33.519 --> 00:25:35.759
<v Speaker 2>Absolutely. The book talks about some different options.

559
00:25:35.839 --> 00:25:38.240
<v Speaker 1>Okay, cool. So the book really covers all the key

560
00:25:38.279 --> 00:25:39.960
<v Speaker 1>aspects of mobile security it.

561
00:25:39.920 --> 00:25:44.880
<v Speaker 2>Does, from using strong passwords to being cautious about app downloads,

562
00:25:45.039 --> 00:25:47.559
<v Speaker 2>keeping your operating system and apps updated.

563
00:25:47.680 --> 00:25:50.960
<v Speaker 1>Okay, patching, patging, patging, it's a recurring theme, it is.

564
00:25:51.240 --> 00:25:54.400
<v Speaker 2>And it also talks about enabling remote wipe, which allows

565
00:25:54.440 --> 00:25:57.680
<v Speaker 2>you to erase your device's data remotely if it's lost

566
00:25:57.759 --> 00:26:01.000
<v Speaker 2>or stolen. Oh wow, So it's like having a self

567
00:26:01.039 --> 00:26:03.279
<v Speaker 2>destruct button for your phone exactly.

568
00:26:03.519 --> 00:26:06.039
<v Speaker 1>It can be a lifesaver if your phone falls into

569
00:26:06.039 --> 00:26:06.759
<v Speaker 1>the wrong hands.

570
00:26:07.039 --> 00:26:11.000
<v Speaker 2>Okay, So mobile security is just as important as computer security.

571
00:26:11.079 --> 00:26:14.079
<v Speaker 1>Absolutely. Our phones are basically mini computers these days. We

572
00:26:14.200 --> 00:26:15.039
<v Speaker 1>use them for everything.

573
00:26:15.200 --> 00:26:17.599
<v Speaker 2>That's true. I do pretty much everything on my phone.

574
00:26:17.599 --> 00:26:19.880
<v Speaker 1>So it's important to treat them with the same level

575
00:26:19.920 --> 00:26:21.119
<v Speaker 1>of security awareness.

576
00:26:21.200 --> 00:26:23.519
<v Speaker 2>Okay, I'll try to be more mindful of that. What

577
00:26:23.640 --> 00:26:26.839
<v Speaker 2>about data security in general, that's a pretty broad topic.

578
00:26:26.720 --> 00:26:31.519
<v Speaker 1>It is. Data security is about protecting sensitive information both

579
00:26:31.599 --> 00:26:33.440
<v Speaker 1>in transit and at rest.

580
00:26:33.759 --> 00:26:36.599
<v Speaker 2>Okay, data in transit that's when it's being sent over

581
00:26:36.640 --> 00:26:37.400
<v Speaker 2>the Internet, right.

582
00:26:37.359 --> 00:26:39.359
<v Speaker 1>Right, And data at rest is when it's stored on

583
00:26:39.400 --> 00:26:41.839
<v Speaker 1>our devices or in the cloud exactly.

584
00:26:41.880 --> 00:26:44.240
<v Speaker 2>And the book covers all the different ways data can

585
00:26:44.279 --> 00:26:49.160
<v Speaker 2>be compromised, from hacking to data breaches to physical theft.

586
00:26:49.319 --> 00:26:51.680
<v Speaker 1>Yeah, those data breaches seem to be happening all the

587
00:26:51.680 --> 00:26:55.079
<v Speaker 1>time these days. Hackers stealing millions of records from companies.

588
00:26:55.240 --> 00:26:59.039
<v Speaker 2>It's a huge problem, and it often happens because companies

589
00:26:59.079 --> 00:27:01.440
<v Speaker 2>haven't implemented proper security measures.

590
00:27:01.720 --> 00:27:04.160
<v Speaker 1>So what can we do to protect ourselves? It feels

591
00:27:04.160 --> 00:27:06.359
<v Speaker 1>like these data breaches are inevitable.

592
00:27:06.799 --> 00:27:10.960
<v Speaker 2>Well, the book starts with the basics strong passwords and

593
00:27:11.039 --> 00:27:12.359
<v Speaker 2>two factor authentication.

594
00:27:12.799 --> 00:27:15.480
<v Speaker 1>Two factor authentication. Remind me how that works?

595
00:27:15.519 --> 00:27:19.680
<v Speaker 2>Again, it's basically adding an extra layer of security. So

596
00:27:19.759 --> 00:27:22.720
<v Speaker 2>instead of just your password, you also need a second

597
00:27:22.839 --> 00:27:24.759
<v Speaker 2>form of identification to log.

598
00:27:24.559 --> 00:27:26.799
<v Speaker 1>In, like a code send to your phone or email.

599
00:27:27.000 --> 00:27:30.240
<v Speaker 2>Exactly. So even if a hacker gets your password, they

600
00:27:30.319 --> 00:27:33.279
<v Speaker 2>still can't access your account without that second factor.

601
00:27:33.400 --> 00:27:35.480
<v Speaker 1>Okay, that makes sense. So it's like having two locks

602
00:27:35.480 --> 00:27:35.960
<v Speaker 1>on your door.

603
00:27:36.240 --> 00:27:39.160
<v Speaker 2>That's a great analogy. And the book also talks about encryption.

604
00:27:39.440 --> 00:27:42.039
<v Speaker 1>Encryption. Again, it seems like that's a key theme throughout

605
00:27:42.039 --> 00:27:42.519
<v Speaker 1>this book.

606
00:27:42.640 --> 00:27:46.160
<v Speaker 2>It is encryption is crucial for protecting data, both in

607
00:27:46.200 --> 00:27:47.519
<v Speaker 2>transit and at rest.

608
00:27:47.960 --> 00:27:51.200
<v Speaker 1>Okay, so use encryption whenever possible. What else does the

609
00:27:51.200 --> 00:27:52.000
<v Speaker 1>book recommend?

610
00:27:52.160 --> 00:27:55.079
<v Speaker 2>It talks a lot about data backups backups.

611
00:27:55.079 --> 00:27:57.640
<v Speaker 1>We talked about those in the context of ransomware, but

612
00:27:57.640 --> 00:27:59.559
<v Speaker 1>they're also important for other reasons. Right.

613
00:28:00.799 --> 00:28:05.680
<v Speaker 2>Backups are essential for recovering from hardware failures, accidental deletions,

614
00:28:06.160 --> 00:28:09.079
<v Speaker 2>or any other situation where you might lose access to

615
00:28:09.119 --> 00:28:09.640
<v Speaker 2>your data.

616
00:28:09.759 --> 00:28:12.160
<v Speaker 1>Right because you never know when disaster might strike.

617
00:28:12.480 --> 00:28:14.400
<v Speaker 2>It's like having a spare tire in your car.

618
00:28:14.640 --> 00:28:16.559
<v Speaker 1>Okay, so have a good backup strategy.

619
00:28:16.640 --> 00:28:20.440
<v Speaker 2>The book goes into detail about different backup strategies, using

620
00:28:20.480 --> 00:28:24.839
<v Speaker 2>external hard drives, cloud storage services, and even off site backups.

621
00:28:24.880 --> 00:28:26.440
<v Speaker 1>Off site backups what are those?

622
00:28:26.799 --> 00:28:29.559
<v Speaker 2>Basically, there are backups that are stored in a physically

623
00:28:29.599 --> 00:28:32.119
<v Speaker 2>separate location from your primary data.

624
00:28:32.160 --> 00:28:34.079
<v Speaker 1>So it's like having a safe deposit box for.

625
00:28:34.039 --> 00:28:36.480
<v Speaker 2>Your data exactly. It protects you in case of a

626
00:28:36.519 --> 00:28:38.559
<v Speaker 2>disaster like a fire or a flood.

627
00:28:38.640 --> 00:28:42.960
<v Speaker 1>Okay, that makes sense. So data security is about being proactive.

628
00:28:42.559 --> 00:28:46.319
<v Speaker 2>Exactly, think about the risks, take precautions, and use strong

629
00:28:46.359 --> 00:28:47.400
<v Speaker 2>security practices.

630
00:28:47.599 --> 00:28:51.400
<v Speaker 1>Okay, So encryption, backups, strong passwords, all that good.

631
00:28:51.279 --> 00:28:54.480
<v Speaker 2>Stuff, right, And the book encourages us to think about

632
00:28:54.559 --> 00:28:56.960
<v Speaker 2>data security as an ongoing process.

633
00:28:57.000 --> 00:28:58.200
<v Speaker 1>An ongoing process.

634
00:28:58.240 --> 00:29:00.839
<v Speaker 2>Cybersecurity is a journey, not a destination.

635
00:29:01.000 --> 00:29:02.039
<v Speaker 1>Okay, what do you mean by that?

636
00:29:02.200 --> 00:29:07.119
<v Speaker 2>The threat landscape is constantly changing. New threats emerge every day,

637
00:29:07.519 --> 00:29:09.920
<v Speaker 2>so we can't just set things up once and forget

638
00:29:09.960 --> 00:29:13.240
<v Speaker 2>about it. We have to keep learning, adapting, and improving

639
00:29:13.319 --> 00:29:14.519
<v Speaker 2>our security practices.

640
00:29:14.640 --> 00:29:17.039
<v Speaker 1>So it's like a marathon, not a sprint exactly.

641
00:29:17.440 --> 00:29:19.839
<v Speaker 2>And this book gives you the training you need to

642
00:29:19.920 --> 00:29:20.839
<v Speaker 2>run that marathon.

643
00:29:21.000 --> 00:29:23.279
<v Speaker 1>I like that analogy. So how do we stay ahead

644
00:29:23.319 --> 00:29:25.400
<v Speaker 1>of the curve? How do we make sure we're always

645
00:29:25.480 --> 00:29:26.920
<v Speaker 1>learning and adapting? Well?

646
00:29:26.960 --> 00:29:30.839
<v Speaker 2>The book stresses the importance of continuous learning, reading books,

647
00:29:30.880 --> 00:29:33.519
<v Speaker 2>following security blogs, attending conferences.

648
00:29:33.640 --> 00:29:35.400
<v Speaker 1>Okay, so stay informed? What else?

649
00:29:35.599 --> 00:29:39.440
<v Speaker 2>The book also emphasizes the importance of community and collaboration.

650
00:29:39.960 --> 00:29:41.880
<v Speaker 2>We're all in this together. We can learn a lot

651
00:29:41.920 --> 00:29:42.480
<v Speaker 2>from each other.

652
00:29:42.599 --> 00:29:45.240
<v Speaker 1>This is like a neighborhood watch for the digital world exactly.

653
00:29:45.640 --> 00:29:48.680
<v Speaker 2>Sharing information about threats and best practices can help us

654
00:29:48.720 --> 00:29:50.160
<v Speaker 2>all stay safer.

655
00:29:50.119 --> 00:29:51.839
<v Speaker 1>Right because knowledge is power.

656
00:29:52.279 --> 00:29:56.039
<v Speaker 2>And finally, the book encourages us to advocate for stronger

657
00:29:56.079 --> 00:30:01.920
<v Speaker 2>security and privacy protections, contacting our elected offici, supporting organizations

658
00:30:01.920 --> 00:30:03.640
<v Speaker 2>that are fighting for digital rights.

659
00:30:03.920 --> 00:30:07.240
<v Speaker 1>So it's not just about protecting ourselves, it's about creating

660
00:30:07.279 --> 00:30:09.799
<v Speaker 1>a safer digital world for everyone.

661
00:30:09.599 --> 00:30:13.279
<v Speaker 2>Exactly, and this book empowers us to do just that.

662
00:30:13.279 --> 00:30:16.119
<v Speaker 1>That's a great message. So we've talked about the threats,

663
00:30:16.200 --> 00:30:19.680
<v Speaker 1>the tools, the strategies, the mindset. What's the big takeaway

664
00:30:19.680 --> 00:30:22.640
<v Speaker 1>from all of this? What should our listeners be thinking

665
00:30:22.680 --> 00:30:25.400
<v Speaker 1>about as they go about their digital lives.

666
00:30:25.759 --> 00:30:29.920
<v Speaker 2>I think the biggest takeaway is that cybersecurity is everyone's responsibility.

667
00:30:30.039 --> 00:30:32.039
<v Speaker 1>Okay, so it's not just up to the experts, it's

668
00:30:32.119 --> 00:30:32.680
<v Speaker 1>up to all.

669
00:30:32.599 --> 00:30:35.039
<v Speaker 2>Of us exactly. We all have a role to play

670
00:30:35.079 --> 00:30:37.519
<v Speaker 2>in protecting ourselves and each other, and.

671
00:30:37.480 --> 00:30:41.240
<v Speaker 1>That means being aware of the risks, taking precautions, and staying.

672
00:30:41.039 --> 00:30:43.559
<v Speaker 2>Informed exactly and never stop learning.

673
00:30:43.599 --> 00:30:46.240
<v Speaker 1>Well said, Yeah, so where we go from here, what's

674
00:30:46.279 --> 00:30:48.000
<v Speaker 1>next in our cybersecurity journey.

675
00:30:48.359 --> 00:30:50.960
<v Speaker 2>Well, there's still a lot more to explore. The book

676
00:30:50.960 --> 00:30:54.039
<v Speaker 2>goes into much more detail about specific types of attacks,

677
00:30:54.519 --> 00:30:59.160
<v Speaker 2>advanced defense strategies, and even the ethical implications of cybersecurity.

678
00:30:59.480 --> 00:31:02.279
<v Speaker 1>Okay, there's a whole other layer to this, the ethical

679
00:31:02.319 --> 00:31:02.880
<v Speaker 1>side of things.

680
00:31:02.920 --> 00:31:05.119
<v Speaker 2>It's an important part of the conversation and we'll dive

681
00:31:05.160 --> 00:31:06.759
<v Speaker 2>into that in our next deep dive.

682
00:31:07.079 --> 00:31:09.960
<v Speaker 1>I'm looking forward to it. Until then, stay safe out

683
00:31:10.000 --> 00:31:11.119
<v Speaker 1>there in the digital world.

684
00:31:11.720 --> 00:31:13.759
<v Speaker 2>It really struck me as we've been talking about all

685
00:31:13.799 --> 00:31:16.119
<v Speaker 2>of this stuff, you know, going through the book. I mean,

686
00:31:16.160 --> 00:31:21.079
<v Speaker 2>this book, the complete cybersecurity course, doesn't shy away from

687
00:31:21.079 --> 00:31:22.640
<v Speaker 2>the ethical considerations.

688
00:31:22.799 --> 00:31:24.519
<v Speaker 1>Yeah. I think that's a that's a really good point,

689
00:31:25.279 --> 00:31:27.480
<v Speaker 1>the ethical side of cybersecurity. I mean it's something that

690
00:31:27.519 --> 00:31:31.960
<v Speaker 1>often gets overlooked. Yeah, but as technology, you know, becomes

691
00:31:31.960 --> 00:31:34.519
<v Speaker 1>more and more a part of our lives, these questions

692
00:31:34.559 --> 00:31:36.680
<v Speaker 1>are only becoming more and more important, right.

693
00:31:36.720 --> 00:31:39.039
<v Speaker 2>I mean, it's not just about you know, protecting data,

694
00:31:39.119 --> 00:31:43.000
<v Speaker 2>it's about privacy, freedom of speech. I mean, even you know,

695
00:31:43.039 --> 00:31:45.759
<v Speaker 2>the potential for AI to be used in harmful ways.

696
00:31:45.920 --> 00:31:48.480
<v Speaker 1>Absolutely, I mean the book brings up some really interesting

697
00:31:48.559 --> 00:31:53.000
<v Speaker 1>questions about the balance, you know, between security and freedom. Yeah,

698
00:31:53.079 --> 00:31:56.039
<v Speaker 1>how much how much surveillance is acceptable? Right, you know,

699
00:31:56.160 --> 00:31:57.920
<v Speaker 1>in the name of safety, Right, where do you draw

700
00:31:57.960 --> 00:32:00.920
<v Speaker 1>the line exactly? And then what are the ethical implications

701
00:32:00.920 --> 00:32:04.799
<v Speaker 1>of using AI for things like, you know, facial recognition, right,

702
00:32:05.079 --> 00:32:08.440
<v Speaker 1>predictive policing. It's a brave new world out there, it is.

703
00:32:08.480 --> 00:32:11.079
<v Speaker 2>It's uncharted territory, and I think the book does a

704
00:32:11.079 --> 00:32:14.640
<v Speaker 2>good job of really encouraging us to have these conversations, Yeah,

705
00:32:14.680 --> 00:32:18.519
<v Speaker 2>to think critically about how technology impacts society.

706
00:32:18.680 --> 00:32:21.039
<v Speaker 1>It's not just a technical issue, right, It's a human issue.

707
00:32:21.079 --> 00:32:22.440
<v Speaker 2>It's a societal issue.

708
00:32:22.519 --> 00:32:24.440
<v Speaker 1>Yeah, and it's something we need to be thinking about

709
00:32:24.480 --> 00:32:26.200
<v Speaker 1>now before it's too late.

710
00:32:26.440 --> 00:32:29.640
<v Speaker 2>I agree. I think we have a responsibility to shape

711
00:32:29.720 --> 00:32:32.960
<v Speaker 2>the future of technology and you know, ensure that it

712
00:32:33.039 --> 00:32:35.920
<v Speaker 2>benefits humanity, not the other way around.

713
00:32:35.920 --> 00:32:38.519
<v Speaker 1>Okay, so we need to be mindful of the ethical implications.

714
00:32:39.200 --> 00:32:40.839
<v Speaker 1>What else does the book kind of leave us with.

715
00:32:41.400 --> 00:32:44.119
<v Speaker 2>Well, you know, one of the things that emphasizes over

716
00:32:44.160 --> 00:32:46.359
<v Speaker 2>and over again is the importance of taking ownership of

717
00:32:46.400 --> 00:32:49.279
<v Speaker 2>our security, right. You know, we can't just rely on

718
00:32:49.440 --> 00:32:51.599
<v Speaker 2>companies or governments to protect us.

719
00:32:51.720 --> 00:32:54.519
<v Speaker 1>Okay, So it's about empowering ourselves exactly.

720
00:32:54.839 --> 00:32:57.440
<v Speaker 2>The book gives us the knowledge and the tools we

721
00:32:57.519 --> 00:32:59.759
<v Speaker 2>need to protect ourselves. It's really it's like a call

722
00:32:59.799 --> 00:33:01.319
<v Speaker 2>to I like that, a.

723
00:33:01.279 --> 00:33:04.160
<v Speaker 1>Call to action. Yeah, so what are some specific actions

724
00:33:04.200 --> 00:33:06.400
<v Speaker 1>that we can take, you know, starting today.

725
00:33:06.599 --> 00:33:08.440
<v Speaker 2>Well, a lot of the things we've already talked about,

726
00:33:08.759 --> 00:33:14.200
<v Speaker 2>you know, strong passwords, two factor authentication, right, being aware

727
00:33:14.359 --> 00:33:18.000
<v Speaker 2>of phishing scams, keeping our software updated, you know, all

728
00:33:18.079 --> 00:33:19.680
<v Speaker 2>the basics, the basics.

729
00:33:19.240 --> 00:33:20.400
<v Speaker 1>But it goes beyond that, right now.

730
00:33:20.480 --> 00:33:23.240
<v Speaker 2>Yeah, I mean the book really encourages us to develop

731
00:33:23.480 --> 00:33:25.079
<v Speaker 2>good security.

732
00:33:24.559 --> 00:33:28.960
<v Speaker 1>Habits, Okay, habits so like thinking before we click on

733
00:33:29.039 --> 00:33:32.640
<v Speaker 1>links exactly, being careful about what we share, right.

734
00:33:32.519 --> 00:33:37.839
<v Speaker 2>Being skeptical, being vigilant, you know, thinking critically about our

735
00:33:37.880 --> 00:33:38.880
<v Speaker 2>online behavior.

736
00:33:39.160 --> 00:33:42.000
<v Speaker 1>So it's about making security a part of our everyday

737
00:33:42.039 --> 00:33:45.799
<v Speaker 1>lives exactly. Okay, So awareness, vigilance.

738
00:33:45.599 --> 00:33:48.440
<v Speaker 2>Education, and you know, don't be afraid to ask for help.

739
00:33:48.480 --> 00:33:51.519
<v Speaker 2>I mean there are a lot of great resources out there, organizations,

740
00:33:51.640 --> 00:33:56.240
<v Speaker 2>websites right right that offer information and support on you know,

741
00:33:56.400 --> 00:33:57.720
<v Speaker 2>all things cybersecurity.

742
00:33:57.799 --> 00:34:01.359
<v Speaker 1>Yeah, I mean there's the Electronic Frontier Foundation, the Sans Institute.

743
00:34:01.400 --> 00:34:06.359
<v Speaker 1>I mean, even the National Institute of Standards and Technology missed.

744
00:34:07.000 --> 00:34:09.599
<v Speaker 1>They all have, you know, really great resources available.

745
00:34:09.760 --> 00:34:11.800
<v Speaker 2>They do, and I think this book can serve, as

746
00:34:12.000 --> 00:34:13.800
<v Speaker 2>you know, a really great starting point. It gives you

747
00:34:13.840 --> 00:34:16.400
<v Speaker 2>that foundation, you know, to kind of go out and

748
00:34:16.440 --> 00:34:17.199
<v Speaker 2>explore and.

749
00:34:17.760 --> 00:34:22.360
<v Speaker 1>Keep learning, a jumping off point for our cybersecurity journey. Absolutely,

750
00:34:22.519 --> 00:34:24.679
<v Speaker 1>this has been really eye opening. I mean, going through

751
00:34:25.159 --> 00:34:27.559
<v Speaker 1>this book with you, I feel like I've learned a

752
00:34:27.559 --> 00:34:31.920
<v Speaker 1>ton me too, and I definitely feel more empowered, more informed,

753
00:34:32.559 --> 00:34:35.920
<v Speaker 1>more well maybe a little more paranoid, but I think

754
00:34:35.920 --> 00:34:37.239
<v Speaker 1>that's good in a good way.

755
00:34:37.599 --> 00:34:40.480
<v Speaker 2>A healthy dose of paranoia is good in cybersecurity.

756
00:34:40.719 --> 00:34:44.360
<v Speaker 1>Okay, so we've talked about the threats, the tools, the

757
00:34:44.400 --> 00:34:48.280
<v Speaker 1>strategies that we've talked about, you know, the mindset, the ethics.

758
00:34:48.760 --> 00:34:52.599
<v Speaker 1>What would you say is is the big takeaway, you

759
00:34:52.599 --> 00:34:54.920
<v Speaker 1>know from all of this, What should our listeners be

760
00:34:54.920 --> 00:34:57.199
<v Speaker 1>thinking about as they go about their digital lives.

761
00:34:57.840 --> 00:34:59.760
<v Speaker 2>I think if there's one thing to remember, it's that

762
00:35:00.000 --> 00:35:02.960
<v Speaker 2>cybersecurity is everyone's responsibility, right right.

763
00:35:03.000 --> 00:35:05.400
<v Speaker 1>It's not just up to the experts, the IT guys,

764
00:35:06.000 --> 00:35:06.920
<v Speaker 1>the government, It's.

765
00:35:06.840 --> 00:35:08.440
<v Speaker 2>Up to all of us. We all have a role

766
00:35:08.480 --> 00:35:10.679
<v Speaker 2>to play in protecting ourselves and each other.

767
00:35:10.840 --> 00:35:13.360
<v Speaker 1>We're all in this together we are, so be aware,

768
00:35:13.920 --> 00:35:16.119
<v Speaker 1>take precautions, and stay informed.

769
00:35:16.639 --> 00:35:18.039
<v Speaker 2>Couldn't have said it better myself.

770
00:35:18.239 --> 00:35:20.119
<v Speaker 1>All right, Well, I think that's a perfect place to

771
00:35:20.119 --> 00:35:23.880
<v Speaker 1>wrap things up. Big thanks to the Complete Cybersecurity course

772
00:35:24.000 --> 00:35:28.000
<v Speaker 1>Volume one hackers exposed for opening our eyes to the

773
00:35:28.000 --> 00:35:30.840
<v Speaker 1>world of cybersecurity, and to you for helping us make

774
00:35:30.880 --> 00:35:31.480
<v Speaker 1>sense of it all.

775
00:35:31.599 --> 00:35:32.559
<v Speaker 2>It's been my pleasure.

776
00:35:32.800 --> 00:35:35.519
<v Speaker 1>Until next time, Stay safe out there in the digital world.
