
129 - What is new in PCI DSS v4.0?
07/22/23 • 40 min
Enjoying the content? Let us know your feedback!
Thanks for tuning in to YusufOnSecurity, the cyber-security podcast for everyday defender from analyst to the C-Suites, in plain english.
This is another exciting episode of our cybersecurity podcast! Today, we've got a topic that's hot off the press—the newly released Payment Card Industry Data Security Standard version 4, or PCI DSS v4. If you're in the world of payments, data security, or simply curious about the latest in safeguarding your customers' sensitive information, this episode is a must-listen.
In this edition, we'll explore the key updates and changes in PCI DSS v4, the reasons behind its release, and what it means for businesses processing credit card transactions. From enhanced authentication measures to the latest encryption protocols, the new standard promises to fortify data protection and combat emerging cyber threats.
So, get ready to dive into the cutting-edge world of PCI DSS v4 as we unravel the advancements that'll shape the future of secure payment processing. Let's jump right in with the start of this week's top trending news.
- Accidental VirusTotal upload is a valuable reminder to double check what you share
- Microsoft allows logging access to all their license tiers like E3
https://support.virustotal.com:How it works
https://www.virustotal.com: Upload
https://www.bleepingcomputer.com: Stolen Microsoft key offered widespread access to Microsoft cloud services
https://www.bleepingcomputer.com: Microsoft expands access to cloud logging data for free after Exchange hacks
https://listings.pcisecuritystandards.org: PCI-DSS-v3-2-1 to v4-0 Summary of Changes
Be sure to subscribe!
You can also stream from https://yusufonsecurity.com
In there, you will find a list of all previous episodes in there too.
Enjoying the content? Let us know your feedback!
Thanks for tuning in to YusufOnSecurity, the cyber-security podcast for everyday defender from analyst to the C-Suites, in plain english.
This is another exciting episode of our cybersecurity podcast! Today, we've got a topic that's hot off the press—the newly released Payment Card Industry Data Security Standard version 4, or PCI DSS v4. If you're in the world of payments, data security, or simply curious about the latest in safeguarding your customers' sensitive information, this episode is a must-listen.
In this edition, we'll explore the key updates and changes in PCI DSS v4, the reasons behind its release, and what it means for businesses processing credit card transactions. From enhanced authentication measures to the latest encryption protocols, the new standard promises to fortify data protection and combat emerging cyber threats.
So, get ready to dive into the cutting-edge world of PCI DSS v4 as we unravel the advancements that'll shape the future of secure payment processing. Let's jump right in with the start of this week's top trending news.
- Accidental VirusTotal upload is a valuable reminder to double check what you share
- Microsoft allows logging access to all their license tiers like E3
https://support.virustotal.com:How it works
https://www.virustotal.com: Upload
https://www.bleepingcomputer.com: Stolen Microsoft key offered widespread access to Microsoft cloud services
https://www.bleepingcomputer.com: Microsoft expands access to cloud logging data for free after Exchange hacks
https://listings.pcisecuritystandards.org: PCI-DSS-v3-2-1 to v4-0 Summary of Changes
Be sure to subscribe!
You can also stream from https://yusufonsecurity.com
In there, you will find a list of all previous episodes in there too.
Previous Episode

128 - How to Achieve Cyber Resilience - Best Practices for Effective Incident Response - Part 2
Enjoying the content? Let us know your feedback!
Thanks for tuning in to YusufOnSecurity, the cyber-security podcast for everyday defender from analyst to the C-Suites, in plain english.
Today, we continue with part 2 the critical aspect of cybersecurity: incident response best practices. Given the unforgiving threat landscape, organizations face an ever-increasing number of cyber threats. Whether it's a data breach, a malware attack, or a network intrusion, incidents can disrupt operations, compromise sensitive information, and damage reputation. That's why having an effective incident response strategy is crucial. In this episode, we'll explore the key principles and strategies behind incident response best practices. We'll discuss the steps organizations should take to prepare, detect, respond, and recover from security incidents.
But before that, we will recap other trending security news including:
- https://the-decoder.com: ChatGPT with no ethical boundaries WormGPT fuels AI generated scams
- https://www.group-ib.com: Digital Risk Report 2023
https://www.sans.org/tools/: The Pyramid Of Pain
- https://support.microsoft.com:Microsoft edge secure network to protect your browsing
- https://www.theverge.com: Meta Instagram threads
- https://talosintelligence.com: Incident Response Plans
- https://www.sans.org: Incident Response Cycle
- https://www.cisco.co: Incident Response Services
Be sure to subscribe!
You can also stream from https://yusufonsecurity.com
In there, you will find a list of all previous episodes in there too.
Next Episode

130 - What is the difference between Incidence Response and Threat Hunting?
Enjoying the content? Let us know your feedback!
Listen to this very insightful episode on differentiating two important cybersecurity domains that are both intriguing and essential: Threat Hunting and Incident Response.We all agree that staying one step ahead of cybercrooks is paramount. But what sets these two critical practices apart, and how do they work together to safeguard businesses?
While we at it, we will demystify the key differences between these two cybersecurity corner stones. We'll explore the core principles, methodologies, and objectives that distinguish these two powerful approaches .
But before that, we will recap other trending security news including:
- Cybersecurity firm Sophos impersonated by a ransomware tool
- A particular ransomware gangs are taking the usual steps to leak their victim's data on the clearweb sites.
- https://cisoseries.com: Clop leaks on clearweb
- https://www.computing.co.uk: Clop clearweb publish Moveit
- https://nvlpubs.nist.gov: NIST.SP.800-61r2
- https://www.stickmancyber.com:: Incident Response Frameworks NIST-SANS
Be sure to subscribe!
You can also stream from https://yusufonsecurity.com
In there, you will find a list of all previous episodes in there too.
If you like this episode you’ll love
Episode Comments
Generate a badge
Get a badge for your website that links back to this episode
<a href="https://goodpods.com/podcasts/yusufonsecuritycom-435535/129-what-is-new-in-pci-dss-v40-59606532"> <img src="https://storage.googleapis.com/goodpods-images-bucket/badges/generic-badge-1.svg" alt="listen to 129 - what is new in pci dss v4.0? on goodpods" style="width: 225px" /> </a>
Copy