How attackers are targeting identity, and how to respond
Attackers don’t always need a technical vulnerability. Often, they just need someone to trust a voice, a message, or a login that looks real. From a help desk password reset to an AI-generated voice approving a wire transfer, the methods differ but the target is the same.
Autonomous ransomware kits and AI-driven impersonation have made these attacks faster and cheaper to run at scale, putting identity at the center of enterprise defense.
Jud Dressler of Resilience’s Risk Operations Center moderates a conversation with Stephanie Barnes of Resilience and Max Henderson of Kroll on what the threat data shows right now and how security teams can respond.
About Speakers

Max Henderson is a Managing Director in Cyber and Data Resilience at Kroll, based in Tampa. He brings over 10 years of experience in Digital Forensics and Incident Response, having directly led more than 1,000 incident response cases involving ransomware, email compromise, and insider threats. Max previously built the DFIR program at Pondurance, and has served as an expert witness for Fortune 100 companies and a contributor to CNN on cybersecurity. He holds a BS in Computer Criminology from Florida State University.

Judson Dressler is the Director of the Risk Operations Center. Dressler recently joined Resilience after serving 20 years in the U.S. Air Force. He was previously the Permanent Professor and Head of the Department of Computer and Cyber Sciences at the United States Air Force Academy, where he taught more than 1,200 cadets each year and conducted long-term artificial intelligence and cybersecurity research.
He served as the Commander of the 835th Cyberspace Operations Squadron, where he led 134 cyber airmen to conduct threat-focused, intelligence-driven defensive cyberspace operations. Dressler holds a PhD in Computer Science from Rice University and a Master’s in Computer Science from the U.S. Air Force Institute of Technology.

Steph is a Senior Cyber Threat Intelligence Analyst at Resilience. A career-changer, she started her infosec career working in Security Operation Centers for federal agencies. She has hands-on experience with a number of different tools. Steph has conducted initial triage for incident response and written security documentation. She holds a BSc in Psychology, a BSc in Information Technology, and an MSc in Cybersecurity.
Any company that sells hardware or software with network connectivity into an EU member state has to report vulnerabilities and incidents affecting that product. The regulation calls these products with digital elements, and it applies to the manufacturer regardless of where the manufacturer is based, so a US firm with no EU presence is covered from the moment its first unit ships into the single market.