Risky Business

Risky Business #803 -- Oracle's CSO Mary Ann Davidson quietly departs

35 snips
Aug 20, 2025
Fletcher Heisler, CEO of Authentik and an expert in open-source identity solutions, shares his insights on the intricacies of implementing SSO across different operating systems. He reveals surprising challenges that varied significantly between Windows, Mac, and Linux. The discussion also touches on the broader cybersecurity landscape, including recent issues surrounding Oracle's departing CSO and the critical need for robust identity management solutions. Tune in for a blend of technical challenges and industry insights!
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

ICS Intrusion Shows Risk Despite Low Impact

  • Attackers targeted a Norwegian dam's ICS to flip switches and open valves, but robust design prevented major harm.
  • Even unsuccessful physical-impact intrusions demonstrate risk and intent to interfere with critical infrastructure.
ADVICE

Inventory OT Assets Methodically

  • Do follow the new multi-agency guidance on OT asset inventory to discover and classify critical devices.
  • Use the provided worked examples and data fields to speed implementation and justify budget to leadership.
INSIGHT

FortiWeb Bug Reveals QA Shortfalls

  • The new Fortinet FortiWeb bug (Fort Majeur) is an auth bypass caused by out-of-bounds key index reading.
  • The hosts are frustrated this trivial fuzzing-discoverable flaw existed, implying poor QA practices at Fortinet.
Get the Snipd Podcast app to discover more snips from this episode
Get the app