Start your day with intelligence. Get The OODA Daily Pulse.

Home > Example Query Loops


Analysis

  • Sophisticated Cyber Espionage Exploits Russia and No One Says a Word

    In mid-May 2021, Russia’s Federal Security Service (FSB)’s National Coordination Center for Computer Incidentspublished a joint report with Rostelecom-Solar, the cybersecurity arm of Russian telecom company Rostelecom, about a 2020 cyber espionage campaign that targeted Russian government agencies.  The publicly-available portion of the report disclosed stealthy cyber operations that targeted key individuals associated with “the…

  • The Executive’s Guide To Mitigating The Ransomware Threat

    This is the second part of our special series on Ransomware. The first provided an update on the nature of the threat, including an anatomy of a modern attack. This post, produced with inputs from real world cybersecurity practitioners Matt Devost, Bob Flores, Junaid Islam and Bob Gourley, provides information for Corporate Board of Directors and…

  • Ransomware: The Present we Deserve?

    The scourge of ransomware is the inevitable result of decades of schizophrenia about our relationship with information technology and security. Treating this problem in the same fashion as we have those that came before it will only prolong our suffering. Clarity, creativity, and will are required if we are to have any hope of a…

  • Recent Iranian Cyber Attacks Show How Geopolitics Drive Cyber Activity

    A recent report has revealed that an Iranian threat actor group dubbed “Agrius” has been operating in Israel since 2020.  The group has been linked to cyber espionage activity and has quickly evolved into conducting destructive wiper malware attacks against Israeli targets.  What’ more, these attacks have been posing as ransomware attacks in order to…

  • Ransomware: An update on the nature of the threat

    The technology of ransomware has evolved in sophistication and the business models of the criminal groups behind it have as well. The result: The threat from ransomware has reached pandemic proportions. This post provides an executive level overview of the nature of this threat. This post is part of the OODA Cybersecurity Sensemaking series and…

  • FTC Expectations For Corporate Board Level Oversight of Cybersecurity

    The Federal Trade Commission (FTC) has published expectations for corporate board level oversight of cybersecurity. They advise every member of every board: “Don’t underestimate your role in data security oversight”. This post provides insights for OODA members on what this new guidance may mean for the future of board operations.

  • Dark Side Reports Closing Shop: What’s the Future for Ransomware Gangs?

    The ransomware attack against Colonial Pipeline revealed how disruptive this malware can be when it impacts civilian critical infrastructure.  The successful shutdown of 5,500 miles of pipeline created concern among gas-strapped populations and a government wondering if this attack was the work of cyber criminals or a foreign adversary looking for retribution.

  • President Biden Supports Cease-Fire in Call With Netanyahu

    President Biden declared his support for a cease-fire between Israel and Palestine during a call with Israeli Prime Minister Benjamin Netanyahu. Israel claims to be targeting Hamas locations and a tunnel network used by the terrorist organization via airstrikes, however, the moves have caused rising civilian casualties as well as power outages and resource shortages.…

  • Civilian Critical Infrastructure Is No Longer a Taboo Target

    Several governments including the United States recognize the criticality of protecting critical infrastructure as a national security priority.  But there is little headway in determining what, if any, operations against critical infrastructure are acceptable.  Without such consensus, nation states are left to their own devices, opting to use sanctions or retaliatory cyber strikes to register…

  • A CTO’s Perspective on Technology Debt in M&A

    One of the critical factors which needs to be evaluated in any technical due diligence is the concept of Technology Debt. This report provides insights into technology debt from the perspective of an enterprise CTO turned due diligence professional. These lessons can help companies preparing for a future transaction to better position themselves for optimal…


OODAcasts

  • Leading Cyber Change: Allan Friedman on the Revolution of SBOM & Future Cybersecurity Initiatives

    Leading Cyber Change: Allan Friedman on the Revolution of SBOM & Future Cybersecurity Initiatives

    Allan Friedman is a senior strategist at CISA (the Cyber Security and Infrastructure Security Agency) where he coordinates all of their cross-sector activities on the topic of SBOM: The Software Bill of Materials.

  • Joe Sullivan on Managing Complex Security Challenges

    Joe Sullivan on Managing Complex Security Challenges

    Joe Sullivan has been at the forefront of managing security risk in rapidly growing high tech companies over the past 20 years serving as the Chief Security Officer at Facebook from early start-up through the IPO, CSO of Uber and CloudFlare, and as a security leader at eBay/PayPal. Learn what motivates him and some of…

  • Joe Tranquillo on the Revolution in Biological Science
    ,

    Joe Tranquillo on the Revolution in Biological Science

    Joe Tranquillo is a Professor of Biomedical Engineering at Bucknell University and a provost at the school. He is also and author and speaker with a knack for helping make new and at times complex subjects understandable. In this OODAcast we discuss many aspects of the revolution in biological sciences with Joe including topics like:…

  • MITRE Futurist Charles Clancy on our Quantum Enabled Future

    MITRE Futurist Charles Clancy on our Quantum Enabled Future

    Charles Clancy has successfully led technology efforts in government, industry, academia and continues to lead and innovate in his current position as Senior Vice President and GM of MITRE Labs. He is MITRE’s Chief Futurist. His role in technology leadership and his tracking of tech across multiple domains made for an incredibly insightful OODAcast. We…

  • Mark McGrath: John Boyd Is Far More Than The OODA Loop

    Mark McGrath: John Boyd Is Far More Than The OODA Loop

    Mark McGrath has applied the teachings of John Boyd to a career that began in the Marine Corps, included leadership positions in financial services firms and consulting with businesses with a need to learn to thrive in volatile, uncertain, complex and ambiguous (VUCA) environments. He co-founded the consultancy AGLX and serves as its Chief Learning…

  • Serene – The Hacker Pianist Saving Cyberspace

    Serene – The Hacker Pianist Saving Cyberspace

    Serene is a hacker in the truest sense of the word. She’s applied a hacker mindset to learn coding, piano, and blend art and engineering in fascinating ways. You’ll find her collaborating on-stage with Grimes one night and coding censorship resistant technologies the next day. As a self-taught coder she was the first engineer hired…

  • Andy Bochman on Countering Cyber Sabotage

    Andy Bochman on Countering Cyber Sabotage

    Andy Bochman is the Senior Grid Strategist-Defender for Idaho National Laboratory’s National and Homeland Security directorate. In this role, Andy provides strategic guidance on topics at the intersection of grid security and climate resilience to INL leadership as well as senior U.S. and international government and industry leaders. Andy is a frequent speaker, writer, and trainer…

  • Spencer Ante on Creative Capital and Disruptive Innovation

    Spencer Ante on Creative Capital and Disruptive Innovation

    Spencer Ante is the author or “Creative Capital: Georges Doriot and the Birth of Venture Capital”, which was on my Top 10 book list for 2022. In fact, I found Doriot’s story so compelling that a portrait of him hangs on the wall at the Hack Factory start-up studio in Reston, VA. Doriot is a…

  • Bob Zukis and the Digital Directors Network: Helping corporate boards mitigate systemic risk

    Bob Zukis and the Digital Directors Network: Helping corporate boards mitigate systemic risk

    Bob Zukis is a man on a mission to improve the ability of corporate America to succeed in a complex digital world, even when under constant cyber attack. Bob is the CEO and founder of the Digital Directors Network, the global pioneer in helping corporate directors advance their understanding of systemic risk. We consider Bob…

  • Adam Shostack on Cybersecurity and What Every Engineer Should Learn From Star Wars

    Adam Shostack on Cybersecurity and What Every Engineer Should Learn From Star Wars

    Adam Shostack is widely known in the cybersecurity world for his pioneering work on disclosing and discussing computer vulnerabilities (the CVE  (common vulnerabilities and exposures) list). He also helped formalize and train leading approaches to threat modeling and wrote the foundational book on the subject (Threat Modeling: Designing for Security). In this OODAcast we seek…

OODAcons