Thom
thomlangford.bsky.social
Thom
@thomlangford.bsky.social
Reposted by Thom
Episode 224 of the host unknown podcast is out... and I'm not a petty person, I don't go hunting for receipts just to prove a point. But it's not often that @sirjester.bsky.social serves me up the opportunity on a silver platter. For once @thomlangford.bsky.social was safe!
June 30, 2025 at 1:19 PM
Reposted by Thom
With such an impassioned intro by @thomlangford.bsky.social - you gotta give the podcast a go Right @sirjester.bsky.social ... special thanks to @brianhonan.bsky.social for his unwitting contribution.
June 19, 2025 at 6:06 PM
Reposted by Thom
Our editor @danraywood.bsky.social sat down with @thomlangford.bsky.social to talk about his new-ish role at #rapid7, processing threat intelligence and working with CISOs on strategy.

insight.scmagazineuk.com/interview-th...
Interview: Thom Langford, Rapid7 on Threat Intelligence and Security Strategy
insight.scmagazineuk.com
June 17, 2025 at 7:23 AM
I sat down with the gorgeous people of Information Security Media Group (ISMG) during the recent Infosecurity Europe for an impromptu chat about InfoSec and risk.

Full video below:
www.databreachtoday.com/casino-appro...

Find out more about Intelligence Hub: www.rapid7.com/platform/thr...
The Casino Approach: Why CISOs Should Play to Win
Security leaders have always viewed risk as something to eliminate, but they should adopt a “casino” mindset for risk management. It's extremely rare for a
www.databreachtoday.com
June 18, 2025 at 2:05 PM
Reposted by Thom
220 episodes into the host unknown podcast, and @thomlangford.bsky.social still hits random buttons. cc @sirjester.bsky.social

Subscribe if you want more shenanigans and the occassional security story.
May 21, 2025 at 10:46 AM
I love a good analogy, especially the pinging noise they make when they are stretched to breaking point.

I think this one is pretty solid though, but would welcome thoughts, comments and questions.

insight.scmagazineuk.com/ensuring-you...
Ensuring Your House Always Wins by Embracing a Casino Mindset to Security
insight.scmagazineuk.com
May 8, 2025 at 11:23 AM
Reposted by Thom
This is an important read for anyone who wonders if things are really that bad or if DEI is really something that matters. Also, huge respect for those for testifying about their experiences.
In it we reveal some of the identities of those who testified regarding their experiences with Chris, and I would like to personally thank them for standing up for our community when remaining silent would have been easier.
storage.courtlistener.com
February 25, 2025 at 9:33 AM
#DeepSeek is still generating a lot of buzz, and many companies are rushing to integrate it into their operations. But speed should not come at the expense of security.

Thoughts from #Rapid7’s Stuart Millar PhD shared with @martincoulter.bsky.social  for @sifted.eu ->

sifted.eu/articles/dee...
DeepSeek explained: Is the Chinese AI model safe for business?
Startups using the DeepSeek's AI models may face legal and data protection risks, according to lawyers and cybersecurity experts.
sifted.eu
February 5, 2025 at 9:38 PM
Good rugby today, and a big shout out to my Irish friends hosting England for for the #sixnations.

England may be winning at the moment, but it is all to play for still.
February 1, 2025 at 5:27 PM
Reposted by Thom
Well done to all at @europol-eu.bsky.social and other law enforcement agencies involved in this operation. Two online forums allegedly providing a range of cybercriminal services were taken offline resulting in 2 suspects arrested so far.

www.europol.europa.eu/media-press/...

#cybercrime
January 30, 2025 at 1:35 PM
Proof why we can’t have nice things…

DeepSeek, China's fresh out-of-the-box large language model is already under attack.

This is a good commentary on the situation, including from @rapid7.com that is worth two minutes of your time:

www.techtarget.com/searchsecuri...

#AI #CISO
DeepSeek claims 'malicious attacks' disrupting AI service | TechTarget
Newly popular AI vendor DeepSeek turned off its account registrations as a result of what it described as 'large-scale malicious attacks.'
www.techtarget.com
January 30, 2025 at 12:24 PM
Reposted by Thom
This is one of the most fun pieces I've written partially because of the boffo #shmoocon talk @dontlookbehindyou.bsky.social gave, which inspired me to write it.

Also, thanks to @thomlangford.bsky.social of Rapid7 and Deepen Desai of Zscaler for their insights.
www.csoonline.com/article/3808...
Tricking the bad guys: realism and robustness are crucial to deception operations
The tactic of luring bad actors into digital traps goes beyond honeypots, requiring robust infrastructure and highly realistic lures to gather intelligence on intruders and identify insider threats.
www.csoonline.com
January 24, 2025 at 2:35 PM
My first actual post on @bsky.app, and I am thrilled to say it is highlight a post from @csoonline.bsky.social on deception technologies by Cynthia Brumfield @metacurity.com.

www.csoonline.com/article/3808...

It's a good read, even the parts where i am quoted!

#CSO #CISO #Rapid7
Tricking the bad guys: realism and robustness are crucial to deception operations
The tactic of luring bad actors into digital traps goes beyond honeypots, requiring robust infrastructure and highly realistic lures to gather intelligence on intruders and identify insider threats.
www.csoonline.com
January 24, 2025 at 2:16 PM
Reposted by Thom
Good to catch up with the host unknown crew. @thomlangford.bsky.social (on the far right) and one of the other two is the other one (forgot their name) @sirjester.bsky.social @danraywood.bsky.social
December 14, 2024 at 3:50 PM