Author

 John Brenberg & Rebecca Herold
LinkedIn
RSS
E-Mail

Profile of John Brenberg & Rebecca Herold

Information Security & Compliance Manager at 3M and Founder/CEO of The Privacy Professor; Co-Founder/ President of SIMBUS360
Member Since: 7/14/2014
Author
News & Commentary Posts: 1
Comments: 0

John Brenberg has over 30 years of experience spanning new product introduction, system development, infrastructure management and information security and compliance across multiple business segments and processes. He is responsible for leading the IT programs for information security, compliance and risk, all for the protection of company and customer information and critical business processes. Brenberg credits his success to his many strong internal partnerships across intellectual property, privacy, compliance and systems management.

Rebecca Herold (FIP, CISSP, CISA, CISM, CIPT, CIPM, CIPP/US, FLMI) is CEO and founder of The Privacy Professor consultancy, established in 2004. She is also co-founder and president of SIMBUS, LLC, an information security, privacy, technology and compliance management cloud service for organizations of all sizes, in all industries, in all locations, founded in 2014.

She also acts as a privacy consultant for 3M and receives compensation from 3M in connection with her participation as a 3M Privacy Consultant.

Articles by John Brenberg & Rebecca Herold
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
The Year in Security 2018
This Dark Reading Tech Digest explores the biggest news stories of 2018 that shaped the cybersecurity landscape.
Flash Poll
How Enterprises Are Attacking the Cybersecurity Problem
How Enterprises Are Attacking the Cybersecurity Problem
Data breach fears and the need to comply with regulations such as GDPR are two major drivers increased spending on security products and technologies. But other factors are contributing to the trend as well. Find out more about how enterprises are attacking the cybersecurity problem by reading our report today.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-20735
PUBLISHED: 2019-01-17
** DISPUTED ** An issue was discovered in BMC PATROL Agent through 11.3.01. It was found that the PatrolCli application can allow for lateral movement and escalation of privilege inside a Windows Active Directory environment. It was found that by default the PatrolCli / PATROL Agent application only...
CVE-2019-0624
PUBLISHED: 2019-01-17
A spoofing vulnerability exists when a Skype for Business 2015 server does not properly sanitize a specially crafted request, aka "Skype for Business 2015 Spoofing Vulnerability." This affects Skype.
CVE-2019-0646
PUBLISHED: 2019-01-17
A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka "Team Foundation Server Cross-site Scripting Vulnerability." This affects Team.
CVE-2019-0647
PUBLISHED: 2019-01-17
An information disclosure vulnerability exists when Team Foundation Server does not properly handle variables marked as secret, aka "Team Foundation Server Information Disclosure Vulnerability." This affects Team.
CVE-2018-20727
PUBLISHED: 2019-01-17
Multiple command injection vulnerabilities in NeDi before 1.7Cp3 allow authenticated users to execute code on the server side via the flt parameter to Nodes-Traffic.php, the dv parameter to Devices-Graph.php, or the tit parameter to drawmap.php.