Blog

By Eric Corcoran, Posted in Technology Week in Review

Monday 5/5 ICYMI: On April 22, 2025, Gotham's CTO, Ken Phelan, was joined by Check Point Software's Head of U.S. East Sales, Mark Ostrowski, to discuss Check Point's latest Threat Report, their cybersecurity innovations involving artificial intelligence, and more. Click the link below for the full video. https://www.youtube.com/watch?v=WwTolJAStz4&t The Expanding Attack Surface: Stopping Account Takeovers at Your Front Door Is Critical (Proofpoint) Organizations must understand that there are count... read more.

  • May 09, 2025

By Steve Gold, Posted in Security

Written with contributions from Bryon Singh, Director of Security Operations, RailWorks Corporation Encrypting Data on Removable Media: The "Q" of Cybersecurity In the thrilling world of James Bond, "Q" is the gadget master, equipping 007 with state-of-the-art technology to keep his missions secure. From encrypted briefcases to self-destructing drives, Q ensures that Bond's classified information remains out of enemy hands. In the realm of cybersecurity, encrypting data on removable media plays a similarl... read more.

  • May 06, 2025

By Eric Corcoran, Posted in Technology Week in Review

Monday 4/28 Windows 10 Enterprise End of Life: What you need to know & next steps (Nerdio) As support ends, the risks stack up quickly. Without regular updates, virtual desktops running Windows 10 will become targets for cyberattacks, particularly in environments where endpoints are exposed to external traffic or house confidential information. https://getnerdio.com/resources/windows-10-enterprise-end-of-life-what-you-need-to-know-next-steps/ Proofpoint Innovations That Simplify Your Operations (Pro... read more.

  • May 02, 2025

By Steve Gold, Posted in Security

Written with contributions from Bryon Singh, Director of Security Operations, RailWorks Corporation Documenting Data Flows: Navigating the Maze of Cybersecurity with Pac-Man In the world of cybersecurity, documenting data flows is as essential as navigating through a complex maze. Much like Pac-Man, the beloved arcade game character who zips around collecting dots and avoiding ghosts, organizations must meticulously track and understand the pathways that their data takes. This process is encapsulated in C... read more.

  • April 29, 2025

By Eric Corcoran, Posted in Technology Week in Review

Monday 4/21 Modern Cybersecurity Strategies for Linux Servers (CyberArk) Organizations can effectively bridge the gap between traditional and modern infrastructures by adopting enhanced flexibility, strong authentication support and the ability to integrate with existing security tools. This holistic approach can strengthen security and support the continuous evolution of cybersecurity practices. https://www.cyberark.com/resources/blog/modern-cybersecurity-strategies-for-linux-servers What Is Data Gover... read more.

  • April 25, 2025

By Bert Amodol, Posted in Security

When most individuals think about hacking, they often envision someone in a hoodie typing intensely in a dark room with green code streaming across the screen. Actual penetration testing is somewhat less cinematic; nevertheless, it remains an intriguing process that requires meticulous planning, extensive knowledge of cybersecurity and cybersecurity tools, and a strategic approach. In this post, we will provide insight into a real-world penetration test conducted for a mid-sized technology company. The det... read more.

  • April 23, 2025

By Steve Gold, Posted in Security

Written with contributions from Bryon Singh, Director of Security Operations, RailWorks Corporation Establishing and Maintaining a Data Classification Scheme: The "Sorting Hat" of Cybersecurity If you are a Harry Potter fan, you know the Sorting Hat plays a pivotal role in determining the future of young witches and wizards by categorizing them into one of the four Hogwarts houses: Gryffindor, Hufflepuff, Ravenclaw, or Slytherin. You probably also know which Hogwarts house you want to be in. This classifi... read more.

  • April 22, 2025

By Eric Corcoran, Posted in Technology Week in Review

Monday 4/14 Citrix and Unicon: Control the endpoint, control the experience (Citrix) When the acquisition was announced in January, we immediately saw the potential to create meaningful synergies. Citrix already leads in delivering virtual apps and desktops, zero trust access, and secure application delivery. By integrating Unicon’s secure endpoint OS and management capabilities, Citrix now offers end-to-end control across the entire technology stack. https://www.citrix.com/blogs/2025/04/09/citrix-... read more.

  • April 18, 2025

By Eric Corcoran, Posted in Technology Week in Review

Monday 4/7 The Expanding Attack Surface: How One Determined Attacker Thrives in Today’s Evolving Digital Workplace (Proofpoint) While email remains the primary threat vector, cybercriminals are exploiting new channels like messaging collaboration platforms, cloud apps and file-sharing services. This has created a fragmented security landscape with disconnected point products, resulting in higher operational costs, and increasing security gaps. https://www.proofpoint.com/us/blog/email-and-cloud-thre... read more.

  • April 11, 2025

79%

By Ken Phelan, Posted in Security

I spent some time with the CrowdStrike team last month going through their annual Global Threat Report. If you haven’t seen it, please do. This should be required reading for every cyber operator - https://go.crowdstrike.com/2025-global-threat-report.html 79 is the percentage of breaches that occurred without malware. Hence the much-used quote, “hackers don’t break in, they log in.” For years a quick explanation of cyber-attacks read as follows: Software has vulnerabilities. Ha... read more.

  • April 10, 2025