Geek-Guy.com

Tag: GUEST

Armis Research Reveals Australia Experiencing the Highest Volume of Cyberwarfare Attacks of Any Country Globally

GUEST RESEARCH: A rising number (72%, up from 56% last year) of Australian respondents have had to report an act of cyberwarfare to authorities, the most of any country surveyed for this report 77% of Australian IT professionals believe the ability of nation-states to harness AI for cyber operations will widen the gap between attackers…

HID 2026 State of Security and Identity Report

GUEST OPINION:   As organisations navigate an increasingly complex security landscape, the convergence of physical and digital identity is rapidly reshaping how enterprises protect people, systems and data. New insights from HID’s 2026 State of Security and Identity Report show identity management has become the central pillar of modern security strategies, as businesses respond to AI-enabled…

Snowflake Research Reveals AI-Driven Job Creation Outpaces Job Loss across Australia and New Zealand, with 74% Reporting Workforce Gains

GUEST RESEARCH: AI’s workforce impact is more nuanced than headlines suggest, with 74% of A/NZ organisations reporting AI-driven job creation compared to 50% reporting job losses A/NZ workers were most likely to use Gen AI tools without company approval with 67% reporting use of non-approved tools, suggesting pent-up demand  A/NZ organisations, more than any other…

When your IoT Device Logs in as Admin, It?s too Late! [Guest Diary], (Wed, Mar 11th)

[This is a Guest Diary by Adam Thorman, an ISC intern as part of the SANS.edu BACS program] Introduction Have you ever installed a new device on your home or company router? Even when setup instructions are straightforward, end users often skip the step that matters most: changing default credentials. The excitement of deploying a…

Overly permissive ‘guest’ settings put Salesforce customers at risk

Salesforce is urging its customers to review their Experience Cloud ‘guest’ configurations as cybercrime group ShinyHunters claims a new campaign involving data theft and extortion tied to exposed Salesforce environments. The group recently posted screenshots on its leak site claiming breaches of “several hundreds” of organizations, including around 400 websites and roughly 100 “high profile…

Pre-travel authorisation is the next big audit focus in Australian business travel

GUEST OPINION: For years, corporate travel governance in Australia has followed a familiar and largely unchallenged sequence: employees book trips, incur costs, and submit expense claims, then finance teams check compliance afterwards. That post-trip model worked until now. As travel volumes regain momentum, finance and audit leaders face new pressure to avoid non-compliant spend. The answer is pre-travel authorisation,…

IWD : Embedding Ethics, Inclusion and Skills at the Heart of AI Transformation

GUEST OPINION:  As we celebrate International Women’s Day, one truth stands out: the future of technology will be shaped by the diversity of the people behind it. Diverse teams drive better outcomes; limited voices create limited futures. When a broad range of perspectives guides how AI is built and governed, progress accelerates, and when they’re absent,…

Why Business Success Depends on IT Excellence

GUEST OPINION:  IT is the business. When systems fail, operations stop, revenue halts, and customers lose trust. The COO of KLM captured this reality succinctly: “Nobody flies without IT.” In a digital economy, technology underpins every function, from customer experience to core operations. This reality places extraordinary responsibility on IT teams and raises an important question:…

Transforming campus IT operations to enhance student experiences

GUEST OPINION: Universities are under growing pressure to deliver consistent, high-quality digital services for students, academics, and researchers. IT teams at these institutions are expected to provide uninterrupted availability and seamless experiences across complex ecosystems spanning core enterprise platforms, cloud infrastructure, and teaching technologies. This challenge is compounded by budget constraints, limited headcount, and the…

Differentiating Between a Targeted Intrusion and an Automated Opportunistic Scanning [Guest Diary], (Wed, Mar 4th)

[This is a Guest Diary by Joseph Gruen, an ISC intern as part of the SANS.edu BACS program] The internet is under constant, automated siege.  Every publicly reachable IP address is probed continuously by bots and scanners hunting for anything that can be exploited or retrieved. It’s not because there is a specific target, but…

From LinkedIn to tailored attack in 30 minutes

GUEST OPINION:    How AI accelerates target profiling for cybercrime Key takeaways: AI has turned open-source intelligence (OSINT) from a manual effort into an automated pipeline, dramatically lowering the time, cost, and skills required to build target profiles at scale. LinkedIn content (posts, images, and metadata) now functions as machine-readable intelligence that can be enriched, ranked, and operationalised…

Australian Healthcare Organisations Haven’t Advanced Beyond AI Pilots, Appian Research Finds

GUEST RESEARCH:   New research from Appian (Nasdaq: APPN) highlights the slow introduction of AI into the healthcare sector in Australia, with the majority of people surveyed within healthcare organisations with very few of the people surveyed within healthcare organizations stating their companies had moved beyond pilot stage implementations. The research, which surveyed 500 Australian healthcare…

How Australian insurers are turning automation into competitive advantage

GUEST OPINION:  Australia’s insurance industry has crossed a decisive threshold. For the past decade, artificial intelligence has lived at the edges of the business, mainly in pilots and innovation labs that didn’t fundamentally change workflows. However, by the end of 2025, most insurers had embraced generative AI and began actively seeking to shift early wins in key areas such as claims processing and underwriting into repeatable operational advantage. 

New Malicious npm Package Highlights the Speed at Which Supply Chain Risks Propagate

GUEST RESEARCH:  Tenable Research investigated a malicious package in the npm public registry named “amber-src” that underscores the rapid nature of modern supply chain attacks. The package, which was downloaded approximately 50,000 times before its removal, was designed to mimic a popular package “ember-source”, to infect developers’ systems across Windows, macOS, and Linux.

Finding Signal in the Noise: Lessons Learned Running a Honeypot with AI Assistance [Guest Diary], (Tue, Feb 24th)

[This is a Guest Diary by Austin Bodolay, an ISC intern as part of the SANS.edu BACS program] Over the past several months, I have gained practical insight into the challenges of deploying and operating a honeypot, even within a relatively simple environment. This work highlighted how varying hardware, software, and network design—can significantly alter…

The CLAIR Model: A Synthesized Conceptual Framework for Mapping Critical Infrastructure Interdependencies [Guest Diary], (Wed, Feb 25th)

  [This is a guest diary contributed by Claire Perry (LinkedIn)] The structural integrity of modern society is predicated upon a dense and often opaque network of interconnected systems. For decades, the modeling of these systems remained siloed within specific domains: industrial processes were governed by the hierarchical constraints of the Purdue Model, while corporate…

Thoughtworks and IDC Report Reveals Most Organisations Trapped in Costly Legacy Cycles; Only 12% Achieve True AI-Driven Operations

GUEST RESEARCH:  Thoughtworks, a global technology consultancy integrating design, engineering and AI to drive digital innovation, today released findings from its global report, titled; “Modernisation Is No Longer a Project: AI-Enabled Managed Services for Continuous Change.” The data reveals a critical disconnect between AI adoption and maturity in IT operations. The report delves into what separates…

Cloud security misconceptions that continue to leave organisations exposed

GUEST OPINION: The cloud has revolutionised how businesses operate, providing scalability, flexibility, agility, and transparency. However, confidence in cloud security has not kept pace. Large-scale data exposures continue to trace back to basic errors such as publicly accessible storage, excessive permissions, and poor configuration. These failures highlight the persistent illusions about how cloud security works.

Technology, collaboration and investment drives Australia’s energy transition, ABB research shows

GUEST RESEARCH: Survey of Australian businesses conducted by ABB’s Energy Industries division indicates technology advancements (68 per cent) and AI and automation (51 per cent) are key drivers of the energy transition Almost all (99 per cent) of respondents plan to boost energy transition investment, with 69 per cent due to allocate over 10 per…

Ensuring legal compliance with Digital Paystub generation systems for multinational organisations

GUEST OPINION: As businesses expand across borders and adopt remote or hybrid work models, payroll management has become more complex than ever. Multinational organisations must navigate a patchwork of regional tax laws, labour regulations, and reporting standards while still delivering accurate and timely employee compensation. Digital paystub generation systems have emerged as a practical solution,…

Innovative printing solutions: Empowering tech brands in a digital world

GUEST OPINION: In the fast-paced realm of information technology, where innovation drives every breakthrough, printing solutions have evolved far beyond basic document output. Today, they serve as strategic tools for branding, prototyping, and sustainable operations. For tech companies—from startups prototyping circuit boards to enterprises launching global campaigns—advanced printing integrates seamlessly with digital workflows, boosting efficiency…

Face off: Meta’s Glasses and America’s internet kill switch

Could America turn off Europe’s internet? That’s one of the questions that Graham and special guest James Ball will be exploring as they discuss tech sovereignty. Could Gmail, cloud services, and critical infrastructure really become geopolitical leverage? And is anyone actually building a Plan B? Plus we explore if Meta is quietly plotting to turn its…

Smashing Security podcast #455: Face off: Meta’s Glasses and America’s internet kill switch

Could America turn off Europe’s internet? That’s one of the questions that Graham and special guest James Ball will be exploring as they discuss tech sovereignty. Could Gmail, cloud services, and critical infrastructure really become geopolitical leverage? And is anyone actually building a Plan B? Plus we explore if Meta is quietly plotting to turn…

The Future of Work in the Age of AI: Opportunities for HR Leaders in 2026  

GUEST OPINION:  As workplaces, roles and responsibilities continue to evolve at speed, people and culture leaders must be there to help organisations and employees adapt at pace. In the age of AI, how do we ensure we keep the human edge at work? Since AI surged into the mainstream, this question has defined strategic discussions.  The accessibility and power of AI has introduced unprecedented uncertainty to the world of work, here in Australia and around the world,…

The Future of Work in the Age of AI: Opportunities for HR Leaders in 2026

GUEST OPINION:  As workplaces, roles and responsibilities continue to evolve at speed, people and culture leaders must be there to help organisations and employees adapt at pace. In the age of AI, how do we ensure we keep the human edge at work? Since AI surged into the mainstream, this question has defined strategic discussions.  The accessibility and power of AI has introduced unprecedented uncertainty to the world of work, here in Australia and around the world,…

Four Seconds to Botnet – Analyzing a Self Propagating SSH Worm with Cryptographically Signed C2 [Guest Diary], (Wed, Feb 11th)

[This is a Guest Diary by Johnathan Husch, an ISC intern as part of the SANS.edu BACS program] Weak SSH passwords remain one of the most consistently exploited attack surfaces on the Internet. Even today, botnet operators continue to deploy credential stuffing malware that is capable of performing a full compromise of Linux systems in…