Whiteboard Wednesday Videos

Integrating Network Topology Software with Vulnerability and Exploit Data
May 22, 2013

Integrating Network Topology Software with Vulnerability and Exploit Data

In today's Whiteboard Wednesday, Ethan Goldstein will talk about how you can make your security programs more efficient and increase the ROI of security software purchases by integrating network topology software with vulnerability and exploit data.

What is Metasploit? Whiteboard Wednesday
May 15, 2013

What is Metasploit? Whiteboard Wednesday

In today's Whiteboard Wednesday, Chris Kirsch explains what Metasploit is and how you can use this penetration testing software to protect your network. Chris will dive into each edition and explain what each has to offer. You will also learn how to install Metasploit and get up and running quickly. What is Metasploit? Let Chris tell you!

How to Pitch Security Solutions to Your CIO
May 08, 2013

How to Pitch Security Solutions to Your CIO

In today's Whiteboard Wednesday, Jay Leader, Rapid7's VP of IT and CIO will talk about the five questions you need to know the answer to before pitching security solutions to CIO's. If you struggle with finding the best way to communicate with your CIO/CISO about why a security solution is worth the money and implementation effort, this video is for you!

Social Media Security Best Practices
May 01, 2013

Social Media Security Best Practices

In today's Whiteboard Wednesday, John Schimelpfenig talks about social media security best practices. With the recent AP and Livingsocial hacks in April we thought that this would be a timely topic.

Nexpose 5.6 - The Powerful New Features for Your Vulnerability Management Programs
Apr 24, 2013

Nexpose 5.6 - The Powerful New Features for Your Vulnerability Management Programs

In today's Whiteboard Wednesday, Nate Crampton will talk about the latest features in the newest Nexpose 5.6 release that will take your vulnerability management programs to the next level.

Mobilisafe Now Supports Office 365 - The Only MRM Solution To Do So
Apr 17, 2013

Mobilisafe Now Supports Office 365 - The Only MRM Solution To Do So

In today's Whiteboard Wednesday we will talk about the integration between Mobilisafe and Microsoft Office 365. See how easy it is to deploy Mobilisafe throughout your business to give you much better insight into your BYOD security.

Metasploit 4.6 - What's New in the Latest Metasploit Release?
Apr 10, 2013

Metasploit 4.6 - What's New in the Latest Metasploit Release?

In today's Whiteboard Wednesday, Chris Kirsch talks about the latest Metasploit 4.6 release and all it has to offer. Here is a hint - Metasploit 4.6 is easier than ever to use! Whether you need to run a quick pen test, audit your web applications or conduct a phishing campaign, the new Metasploit 4.6 release makes it quick and easy to setup. It's like Wizardry or something!

Top 3 Mobile Policies to Use with Mobilisafe
Apr 03, 2013

Top 3 Mobile Policies to Use with Mobilisafe

In today's Whiteboard Wednesday, Dirk Sigurdson talks about the top 3 mobile policies that you should be using with Mobilisafe. With the BYOD trend rising, it is important that you put in place mobile policies that protect your organization from a data breach from mobile devices. Mobilisafe makes it easy for you to set rules and guidelines around mobile devices that connect with your exchange server. From requiring a password protected lock screen to making sure that the devices have the latest firmware update, you can set policies in Mobilisafe easily to ensure that all devices connecting to your network are protected. Watch this quick video to learn more!

Unsecured Public Information in Amazon S3 Buckets - Are Your Buckets Leaking Data
Mar 27, 2013

Unsecured Public Information in Amazon S3 Buckets – Are Your Buckets Leaking Data?

In today's Whiteboard Wednesday, Will Vandevanter talks about the Amazon S3 service and how a lot of people are misconfiguring their Amazon S3 buckets, leaving personal information exposed. Amazon S3 provides the ability to store and serve static content from Amazon's cloud. Files within S3 are then put into "buckets" which are accessible through a predictable URL.

Metasploitable - Our Intentionally Vulnerable Machine
Mar 20, 2013

Metasploitable - Our Intentionally Vulnerable Machine

In today's Whiteboard Wednesday, Chris Kirsch shows you how you can use Metasploitable, an intentionally vulnerable machine, for testing Metasploit. Chris tells you how to download, setup, and use Metasploitable for testing Metasploit before you start using Metasploit on your production servers.

BackTrack is Now Kali Linux
Mar 13, 2013

Pen Testing Tools - BackTrack is now Kali Linux

Today's Whiteboard Wednesday video features Metasploit Product Marketing Manager Chris Kirsch, who talks about one of the most well-known pen testing tools, Kali Linux—the next step in the evolution of BackTrack, a popular pen testing tool. Learn about all of the new features in this updated and renamed release, and how Metasploit now supports Kali Linux as an official platform.

Abusing Windows Remote Management Service with Metasploit
Mar 06, 2013

Abusing Windows Remote Management Service with Metasploit

In today's Whiteboard Wednesday, David Maloney talks about the Windows Remote Management Service. WinRM is a service designed to allow System Administrators to issue commands to remote machines. In this video, David discusses how Metasploit can identify these services and attack them, gaining unfettered access to machines, and doing so without being detected by Antivirus Solutions.

EZ Mode Hacking with Metasploit
Feb 27, 2013

EZ Mode Hacking with Metasploit

In this week's Whiteboard Wednesday, Rapid7 CSO HD Moore walks us through a simple pen testing trick that doesn't require use of exploits. This technique can be a useful tool in a social engineering campaign to measure users' security awareness.

Password Auditing with Metasploit
Feb 20, 2013

Password Auditing with Metasploit

In today's Whiteboard Wednesday, David Maloney dives into password auditing techniques with Metasploit. He goes over the three main techniques which are brute force or online password attacks, hash cracking or offline attacks and password recovery attacks. To learn more about these techniques, watch the video above. Make sure to download Metasploit for password auditing!

Mobile Security - A Day in the Life of an IT Manager
Feb 13, 2013

Mobile Security - A Day in the Life of an IT Manager

In today's Whiteboard Wednesday, Saj Sahay and Giri Sreenivas do a little role play and discuss what it is really like to be an IT manager during the BYOD trend. Giri and Saj will provide you with more information around what BYOD is, how it effects your organization and what you can do to protect your company's information through mobile devices. Using a mobile risk management or mobile risk assessment software like Mobilisafe will allow you to track all of the devices that connect to your exchange server, see which devices are at risk, and even allows you to set policies that ensure that every device on your network meets the required security needs.

Password Security Tips and Best Practices
Feb 06, 2013

Password Security Tips and Best Practices

As our workforce grows increasingly mobile, it's more important than ever to make sure you secure your passwords to keep the data you access on your laptop, your cell phone-wherever-safe and sound. Rapid7 Community Manager Patrick Hellen shares some password security tips to make sure you keep your accounts uncompromised.

Top 4 Mobile Device Security Concerns
Jan 30, 2013

Top 4 Mobile Device Security Concerns

In today's Whiteboard Wednesday, Saj Sahay and Giri Sreenivas discuss the Bring Your Own Device (BYOD) trend and mobile device security in general. This video names the top mobile device security concerns associated with the popular "Bring Your Own Device" (BYOD) trend. Giri and Saj also discuss how you can mitigate mobile vulnerabilities so that company data cannot be accessed on your exchange servers. If BYOD and mobile device security is on your mind these days—as it is for most security professionals-you'll want to watch this video to learn more!

Top 5 Challenges Securing Mobile Devices
Jan 23, 2013

Top 5 Challenges Securing Mobile Devices

In today's Whiteboard Wednesday, Saj Sahay talks about the top 5 challenges in securing mobile devices. With the bring your own device (BYOD) trend growing, it is important to protect your employee's mobile devices and the exchange servers that access company data. Watch this quick video to learn how to secure your devices.

Evading Anti-virus Detection with Metasploit
Jan 16, 2013

Evading Anti-virus Detection with Metasploit

Organizations need to be able to understand and test their users' behavior without anti-virus programs stopping these tests in their tracks. A great way to explore that user behavior is by deploying social engineering programs during a pen test. In today's Whiteboard Wednesday, David Maloney explains several anti-virus evasion techniques you can employ for your Metasploit pen tests.

Open Source Exploit Development
Jan 09, 2013

Open Source Exploit Development

Today's Whiteboard Wednesday video is presented by Tod Beardsley who talks about open source exploit development. Learn how Metasploit was created and how the open source community is leveraged to make Metasploit so powerful.

The Malware Lifecycle
Jan 02, 2013

The Malware Lifecycle

This Whiteboard Wednesday features Mark Schloesser, who talks about the malware lifecycle. Mark explains what malware is, why malware is created and how you can prevent it. Since malware is involved in almost every data breach, it is important to know more about it and how you can protect yourself.

Social Engineering Security and Phishing with Metasploit
Dec 19, 2012

Social Engineering Security and Phishing with Metasploit

Today's Whiteboard Wednesday features Joe Dubin, Rapid7's Product Marketing Manager for Metasploit, who will be talking about social engineering security with Metasploit, specifically phishing.

BrowserScan with HD Moore - Whiteboard Wednesday
Dec 12, 2012

BrowserScan with HD Moore - Whiteboard Wednesday

Today's Whiteboard Wednesday features HD Moore who will talk about BrowserScan, Rapid7's latest free tool that checks for browser based risks.

BYOD Security - Whiteboard Wednesday
Dec 05, 2012

BYOD Security - Whiteboard Wednesday

Today's Whiteboard Wednesday features Giri Sreenivas, our VP and GM of Mobilisafe, here at Rapid7. Giri explains exactly what BYOD security is, how it came to be, and what BYOD security means in the context of ever-changing business needs. He'll also dive into what he sees as the future of BYOD security.

7 Things We Are Thankful For This Holiday Season - Whiteboard Wednesday
Nov 21, 2012

7 Things We Are Thankful For This Holiday Season - Whiteboard Wednesday

Today's Whiteboard Wednesday features seven of Rapid7's executives. With the holiday's right around the corner, the executive team wanted to give thanks to everyone out there who continues to support us at Rapid7.

IPv6 Security - Why You Should Care About It
Nov 07, 2012

Gaining Credibility With IT Teams Via Pen Testing

Today's Whiteboard Wednesday features Patrick Vitalone and John Greene, who will be talking about how you can gain credibility with IT teams by pen testing for risk validation.

IPv6 Security - Why You Should Care About It
Oct 31, 2012

IPv6 Security - Why You Should Care About It

Today's Whiteboard Wednesday features Bernd Leger, Rapid7's VP of Marketing, who will be talking about IPv6 security and why it is important to your security program. He goes over what IPv6 actually is, why it is relevant to the security world and next steps to protect IPv6 networks and devices.

Save 150+ Hours / Month On Vulnerability Management
Oct 24, 2012

Save 150+ Hours / Month On Vulnerability Management

Today's Whiteboard Wednesday features Bernd Leger, Rapid7's VP of Marketing, who will be talking about how you can become more efficient with vulnerability management programs by focusing on the vulnerabilities that really matter!

Justifying Penetration Testing Budget
Oct 17, 2012

Justifying Penetration Testing Budget

Today's Whiteboard Wednesday features Chris Kirsch, Rapid7's Product Marketing Manager for Metasploit, who will be talking about how you can effectively justify your penetration testing budget to your executive team.

Rapid7 Acquires Mobilisafe - Whiteboard Wednesday
Oct 10, 2012

Rapid7 Acquires Mobilisafe - Whiteboard Wednesday

Today's WhiteBoard Wednesday features Mike Tuchen, Rapid7's CEO, who will be talking about the acquisition of Mobilisafe and what it means to you.

Risk Prioritization For Maximum Efficiency
Oct 03, 2012

Risk Prioritization For Maximum Efficiency

In this video, Bernd Leger, VP of Marketing, shows you how to prioritize threats in your environments in order to become more efficient and proactive with your vulnerability management.

What is Penetration Testing
Sep 26, 2012

What is Penetration Testing?

In this video, Chris Kirsch, Product Marketing Manager of Metasploit, explains exactly what penetration testing is - and what it isn't. In addition, he reviews how you can use penetration testing tools to validate security risks in your environment.