PodGrabber.com
PodGrabber Logo/Mascot - Blue Gorilla with Red Headphones

Cybersecurity Podcasts - Hacking, Threats & InfoSec

Updated 2026-07-20 05:15:03

Click title to play/pause!

Explore the world of cybersecurity with expert-led podcasts on hacking, data privacy, threat intelligence, and information security. Stay ahead of cyber threats, learn from top security professionals, and keep your digital life protected - all free to stream on PodGrabber.
Application Security PodCast
Tue 16 Jun 2026 07:00:00 - Archive | Vote

Application Security PodCast


Michael Burch - AI-Enabled Citizen Developers

Application Security PodCast Episode Details

Send us Fan Mail AI adoption is accelerating faster than most organizations know how to handle it, and the gap between curiosity and confident use is where things go wrong. Michael Burch, VP of AI Enablement and Acceleration, joins to break down what it actually takes to move teams from "interested in AI" to using it responsibly and effectively in their day-to-day work. He shares why successful adoption depends less on the technology itself and more on trust, clear guidance, and making AI app...

Critical Thinking - Bug Bounty Podcast
Thu 16 Jul 2026 03:00:00 - Archive | Vote

Critical Thinking - Bug Bounty Podcast


Episode 183: PortSwigger Research Impossible XSS SOLVED

Critical Thinking - Bug Bounty Podcast Episode Details

Episode 183: In this episode of Critical Thinking - Bug Bounty Podcast Justin and Brandyn talk about looking at AI features like tech features, Using AI to leak private repos, and solving PortSwigger’s Unexploitable XSS labsFollow us on twitter at: https://x.com/ctbbpodcastGot any ideas and suggestions? Feel free to send us any feedback here: info@criticalthinkingpodcast.ioShoutout to YTCracker for the awesome intro music!====== Links ======Follow your hosts Rhynorater, rez0 and gr3pme on X: https://x.com/Rhynoraterhttps://x.com/rez0__https://x.com/gr3pmeCritical Research Lab:https://lab.ctbb.show/ Need a Pentest? We just launched CTBB Pentests!https://pentest.ctbb.show/Hack full time? Check out the Full-Time Hunter’s Guild!https://ctbb.show/fthg====== Ways to Support CTBBPodcast ======Hop on the CTBB Discord at https://ctbb.show/discord!We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.You can also find some hacker swag at https://ctbb.show/merch!Today's Sponsor: Check out Zero Trust Network Access:https://www.criticalthinkingpodcast.io/tl-ztna====== This Week in Bug Bounty ======How LLMs are changing Bug Bounty Interview serieshttps://www.yeswehack.com/fr/community/llms-bug-bounty-interview-aituglohttps://www.yeswehack.com/fr/community/llms-bug-bounty-interview-rhynoraterhttps://www.yeswehack.com/fr/community/llms-bug-bounty-interview-icare====== Resources ======$15k - CSPT to full account takeover, then 2FA bypass via the prototype chainhttps://whoareme.com/blog/cspt-account-takeover-2fa-bypass/Two Bypasses for Chrome’s Sanitizer APIhttps://slcyber.io/research-center/two-bypasses-for-chromes-sanitizer-api/Documenting the impossible: Unexploitable XSS labshttps://portswigger.net/research/documenting-the-impossible-unexploitable-xss-labsGitLost: How We Tricked GitHub’s AI Agent into Leaking Private Reposhttps://noma.security/blog/gitlost-how-we-tricked-githubs-ai-agent-into-leaking-private-repos/Chaining Razor SSTI into RCE via Reflection and Runtime Stringshttps://phsi.se/posts/chaining-razor-ssti-into-rce-via-reflection-and-runtime-strings/====== Timestamps ======(00:00:00) Introduction(00:06:07) AI Features Are Just Tech Features(00:20:02) CSPT to full Account Takeover & Other Chains(00:35:27) Sanitizer API for Chrome and Firefox(00:46:57) Solving PortSwigger's Impossible Lab & GitLost(01:01:19) SSTI into RCE via Reflection

Cyber Distortion Podcast Series
Thu 25 Jun 2026 15:07:00 - Archive | Vote

Cyber Distortion Podcast Series


S5 - Episode 006 – The Silk Road: Fall of a Darkweb Kingpin

Cyber Distortion Podcast Series Episode Details

The Silk Road wasn't just an illegal marketplace—it was a bold, ideological experiment built on libertarian philosophy, cryptographic anonymity, and the belief that the internet could exist beyond the reach of governments and law enforcement. What began as a 26-year-old programmer's vision of a "free market" quietly grew into the most sophisticated criminal bazaar the internet had ever seen—operating in plain sight, hidden beneath layers of Tor encryption and Bitcoin transactions, accessible only to those who knew where to look. In this episode of Cyber Distortion Podcast, we break down how Ross Ulbricht—known online only as "Dread Pirate Roberts"—built a billion-dollar darkweb empire from his laptop, managing drug dealers, hackers, and forged identity vendors like a Silicon Valley CEO. From the early days of Silk Road's launch in 2011, to the elaborate FBI sting that caught him logged into his admin account at a San Francisco public library in 2013, to the controversial double-life sentence handed down in 2015, and ultimately to his full and unconditional presidential pardon in January 2025—this is the complete story of the internet's most infamous kingpin. More importantly, this isn't just a true crime story—it's a cybersecurity case study. The Silk Road exposed how Tor, Bitcoin, and operational security failures intersect in ways that both empower and ultimately betray those who rely on digital anonymity. The question isn't just whether Ulbricht deserved his fate—it's what his story tells us about the dark web, the limits of anonymity, and the long arm of digital law enforcement. Join Kevin and Jason as they break it all down with you. Resources MUST-READ BOOKS 1. American Kingpin: The Epic Hunt for the Criminal Mastermind Behind the Silk Road — Nick Bilton The definitive account of the Silk Road story. Drawing on exclusive access to key players and two billion digital words and images Ulbricht left behind, Vanity Fair correspondent Nick Bilton delivers a gripping, novelistic narrative of how a libertarian idealist became the world's most wanted cybercriminal—and how a team of mismatched federal investigators brought him down. 🔗 https://www.americankingpin.com/ 2. Silk Road — Eileen Ormsby A thorough and readable deep-dive into the Silk Road marketplace from one of the most respected journalists covering the dark web. Ormsby provides an eye-opening look at the culture, the community, and the chaos that defined the internet's most notorious underground bazaar. 🔗 https://www.goodreads.com/book/show/23502744-silk-road 3. The Dark Net — Jamie Bartlett A broader but essential exploration of the hidden internet—from darknet markets and cryptoanarchists to trolls and extremists. Puts the Silk Road story into the larger context of how the dark web operates and why it matters for cybersecurity professionals and policymakers alike. 🔗 https://www.penguinrandomhouse.com/books/318645/american-kingpin-by-nick-bilton/ 4. The Untold Story of Silk Road — Andy Greenberg (WIRED) A foundational long-form investigation from WIRED that goes deeper than any news article of its time. Essential reading for understanding the inner workings of the Silk Road, the identity of Dread Pirate Roberts, and the investigative threads that ultimately unraveled the operation. 🔗 https://www.wired.com/2015/04/silk-road-1/ DOCUMENTARY 🎥 Deep Web

Cyber Security Headlines
Mon 20 Jul 2026 01:00:00 - Archive | Vote

Cyber Security Headlines


Fairlife dairy cyberattack, ACR Stealer surge, Abbott Labs incidents

Cyber Security Headlines Episode Details

Dairy company Fairlife suffers cyberattack Microsoft warns of surge in ACR Stealer attacks on customers Abbott Labs investigates two cyber incidents amid extortion claims Get the show notes here: https://cisoseries.com/cybersecurity-news-fairlife-dairy-cyberattack-acr-stealer-surge-abbott-labs-incidents/ Huge thanks to our sponsor, QuilrAI AI agents don't ask permission. They act -- moving data, triggering workflows, changing systems. QuilrAI is the permission layer they never had. Its Decision Engine evaluates the content, context, and intent of every action - before it completes. Alerts tell you later. QuilrAI decides now. Visit quilr.ai.

Cybersecurity Today
Sun 19 Jul 2026 19:00:00 - Archive | Support w/ Donations | Vote

Cybersecurity Today


Wordpress RCE, New Windows 0-day and Coca-Cola's Fairline ransomed

Cybersecurity Today Episode Details

New Windows zero-day, Coca-Cola's Fairlife hit by ransomware, and a core WordPress RCE David Shipley covers a new Windows zero-day disclosure from "Nightmare Eclipse" called LegacyHive, a local privilege escalation flaw in the Windows User Profile Service that could be weaponized despite a stripped-back public release, as Microsoft investigates and sets a Patch Tuesday record with 570 fixes including two exploited zero-days. Coca-Cola suspended U.S. production at its Fairlife dairy unit after a ransomware attack, with scope still being assessed and the Food and Ag ISAC warning the sector has seen about 205 attacks this year. Abbott faces two separate breach claims: ShinyHunters alleges vishing-led SSO compromise and massive data theft from legacy systems, while Shadowbytes claims access via LabCentral credentials, which Abbott disputes as non-sensitive. The episode also highlights Conti leak revelations about healthcare targeting and details a core WordPress bug chain (WP_2Shell) enabling unauthenticated RCE, now patched in 6.9.5 and 7.0.2. 00:00 Sponsor NordLayer 00:36 Headlines Preview 01:05 Windows Zero Day LegacyHive 03:35 Record Patch Tuesday 04:22 Fairlife Ransomware Shutdown 05:49 Abbott Dual Breach Probes 08:09 Conti Leaks Healthcare Cruelty 09:33 WordPress Core RCE WP 2Shell 11:29 Wrap Up And Listener Notes 12:06 Sponsor Message NordLayer

CyberWire Daily
Sat 18 Jul 2026 23:00:00 - Archive | Vote

CyberWire Daily


Europe's push for space sovereignty. [T-Minus: Space-Cyber Briefing]

CyberWire Daily Episode Details

As space becomes an increasingly critical part of modern infrastructure, governments are reevaluating decades of policy to ensure reliable, secure, and independent access to the systems they are increasingly relying on. In this week’s episode, host Maria Varmazis sits down with producer Ethan Cook⁠ to explore Europe's evolving space strategy and how it is increasingly prioritizing space sovereignty. During the conversation, they examine the EU's proposed Space Act and how it aims to improve the region's space security, sustainability, and reliability for years to come.⁠⁠⁠ Key sources: EU Space Act. EU Space Strategy for Security and Defense. Like what you heard? Be sure to subscribe to our free Signals and Space Briefing⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, our Sunday newsletter covering the intersection of cybersecurity and space. Subscribe at: https://thecyberwire.com/newsletters/signals-and-space Is there a topic or person you’d like to hear on our show? You can send your questions and feedback to space@n2k.com⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠. You can also fill our our audience survey: https://www.surveymonkey.com/r/NJYCN2P T-Minus: Space-Cyber Briefing is a production of N2K CyberWire. N2K is your nexus for discovery and connection for people, technology, and ideas shaping the future of secure innovation. Learn how at n2k.com. Learn more about your ad choices. Visit megaphone.fm/adchoices

Darknet Diaries
Tue 07 Jul 2026 01:00:00 - Archive | Vote

Darknet Diaries


176: NSL

Darknet Diaries Episode Details

One day Nick got a visit from the FBI demanding he give them data on one of his customers. They asked for it in the form of a National Security Letter or NSL. Something wasn’t right about this letter. It seemed to violate the constitution. So he set out to change the law. Learn more about Nicks work at calyxinstitute.org and phreeli.com. Check out Cindy’s book Privacy’s Defender: My Thirty-Year Fight Against Digital Surveillance (https://amzn.to/4gXuK2J). Sponsors Support for this show comes from ThreatLocker®. ThreatLocker® is a Zero Trust Endpoint Protection Platform that strengthens your infrastructure from the ground up. With ThreatLocker® Allowlisting and Ringfencing™, you gain a more secure approach to blocking exploits of known and unknown vulnerabilities. ThreatLocker® provides Zero Trust control at the kernel level that enables you to allow everything you need and block everything else, including ransomware! Learn more at www.threatlocker.com. Support for this episode comes from NetSuite. NetSuite gives you visibility and control of your financials, planning, budgeting, and of course - inventory - so you can manage risk, get reliable forecasts, and improve margins. NetSuite helps you identify rising costs, automate your manual business processes, and see where to save money. KNOW your numbers. KNOW your business. And get to KNOW how NetSuite can be the source of truth for your entire company. Visit www.netsuite.com/darknet to learn more. This show is sponsored by Maze. Maze uses AI agents to triage and remediate cloud vulnerabilities by figuring out what’s actually exploitable, not just what’s theoretically risky. They remove the noise, prioritize vulns that matter, and manage remediation, so your team stops wasting time on meaningless vulns. Visit MazeHQ.com/darknet for more information. View all active sponsors. Sources https://www.democracynow.org/2010/8/11/gagged_for_6_years_nick_merrill https://globalfreedomofexpression.columbia.edu/cases/u-s-nicholas-merrill-v-loretta-e-lynch-14-cv-9763-vm/ https://clearinghouse.net/case/12966/ https://www.theguardian.com/law/2015/dec/06/fbi-national-security-letter-gag-order-nick-merrill https://www.aclu.org/documents/national-security-letters https://www.eff.org/cases/re-matter-2011-national-security-letter Cindy’s Book: Privacy’s Defender: My Thirty-Year Fight Against Digital Surveillance

Defense in Depth
Thu 16 Jul 2026 04:00:00 - Archive | Vote

Defense in Depth


Protecting AI Agents in O365 and Google Workspace

Defense in Depth Episode Details

All links and images can be found on CISO Series Check out this post for the discussion that is the basis of our conversation on this week's episode co-hosted by David Spark, the producer of CISO Series, and Steve Zalewski. Joining is their sponsored guest, Rajan Kapoor, vp, security, Material Security. In this episode: Pre-existing conditions Architecture over rollout Access isn't legitimacy Data has a half-life A huge thanks to our sponsor, Material Security Legacy email security only watches the door. Material protects your entire cloud workspace—email, files, and accounts—as one ecosystem. It's more coverage for less than the cost of a legacy SEG. One price, no surprises: just security that covers the whole surface area. Learn more at material.security.

Down the Security Rabbithole Podcast
Tue 14 Jul 2026 04:00:00 - Archive | Vote

Down the Security Rabbithole Podcast


DtSR Episode 714 - Limitations and Expectations for AI SOC Part 2

Down the Security Rabbithole Podcast Episode Details

TL;DR: This week's pod is the conclusion to the 2-part series on AI SOC with Anton Chuvakin, Daniel Miessler, Rock Lambros, Erik Bloch, and Raja Mukerji. We talk about the rational application of AI to cybersecurity and what the future holds for the various options. You won't want to miss this one. Youtube Video: https://youtu.be/5YIpZuQLTMg Have something to say? Let's hear it. Support the show >>> Please consider clicking the link above to support the show! -=-=-=-=-=-=-=-=-=-=-=-=...

Forensic Fix
Wed 27 May 2026 01:00:00 - Archive | Vote

Forensic Fix


Forensic Fix Episode 27

Forensic Fix Episode Details

In this episode, Colm Gannon shares his extensive experience at the intersection of technology, online safety, and child protection. We explore the impact of AI, digital trust, age assurance, and the human element in safeguarding children online. If you want to be sure you are up to date with the latest in DFIR, don’t miss an episode!

Hacking Humans
Wed 15 Jul 2026 23:00:00 - Archive | Vote

Hacking Humans


Caught on ScamTok

Hacking Humans Episode Details

This week, while Maria is out hosts ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Dave Bittner⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ and ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Joe Carrigan⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ are discussing the latest in social engineering scams, phishing schemes, and criminal exploits that are making headlines. Dave covers a phishing campaign using fake Facebook verification emails to trick users into handing over their account credentials. Joe highlights the Better Business Bureau's new Scam Tracker heat map for visualizing scam trends and discusses a global INTERPOL operation that led to thousands of arrests and hundreds of millions of dollars in seized fraudulent funds. Our Catch of the Day is on a scam-baiter who encounters a hilariously inept TikTok scam account, proving that not every scammer is a master criminal. Resources and links to stories: Phishing Attacks Targeted Facebook Users With Fake Verification Offer Heatmap Over 5,800 arrests, USD 293 million intercepted in global fraud bust These TikTok scam accounts are literally so stupid ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Have a Catch of the Day you'd like to share? Email it to us at ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠hackinghumans@n2k.com⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠.

Phillip Wylie Show
Wed 15 Jul 2026 09:25:01 - Archive | Vote

Phillip Wylie Show


From Curiosity to Zero Days: Milton Valencia (wetw0rk) on Exploit Development, Research, and Giving Back

Phillip Wylie Show Episode Details

In this episode of The Phillip Wylie Show, Phillip Wylie sits down with offensive security researcher Milton Valencia, better known in the cybersecurity community as wetw0rk. Known for his exploit development research, educational content, and commitment to mentoring others, Milton shares the remarkable journey that took him from a curious student fascinated by hacking to discovering zero-day vulnerabilities and working on elite offensive security teams.Milton discusses overcoming adversity, breaking into the industry without a traditional path, earning certifications like the OSCP, finding his first security roles, and ultimately building a career centered around vulnerability research and exploit development. Along the way, he emphasizes the importance of curiosity, persistence, and helping others succeed.The conversation also explores the future of offensive security, the growing role of AI in reverse engineering, why exploit development remains a valuable specialty, and how aspiring researchers can get started today.If you enjoyed this episode, check out Milton on Season 3 Episode 19 of Simply Offensive @Suzulabs.========================= Planning to attend Black Hat USA 2026? Use my code PHILLIPWYLIE to receive $200 off a Briefings Pass or $100 off a Business Pass.Register here: https://blackhat.com/us-26/registration.html?_mc=sm_social_phillipwylieBlack Hat invited me to attend this year's event and sponsored my conference pass.========================= Connect with Milton Valencia:LinkedIn: https://www.linkedin.com/in/milton-wetw0rk/Blog: https://wetw0rk.github.io/YouTube: https://www.youtube.com/@wetw0rk7========================= Connect with your host, Phillip Wylie: LinkedIn: https://linkedin.com/in/phillipwylieX: https://x.com/PhillipWylieInstagram: https://www.instagram.com/phillipwylie========================= Sponsored by Suzu Labs=========================All the ways to connect with @Suzulabshttps://suzulabs.comhttps://x.com/suzulabshttps://www.linkedin.com/company/suzu-labs/

Phoenix Cast
Mon 22 Jun 2026 01:02:00 - Archive | Vote

Phoenix Cast


MCCES (Murello & Shankar)

Phoenix Cast Episode Details

In this episode of Phoenix Cast, host John mentally travels back to the Marine Corps Communication Electronics School in 29 Palms, the place where the cast was basically born, to talk with Col Arun Shankar, MCCES’s commanding officer, and LtCol Steve Morello, who leads Communication Training Battalion. The conversation digs into how the comm community is shifting from being “just plumbers” to owning information management, why how you employ a C2 system now matters as much as the system itself, and the cybersecurity training gaps the schoolhouse is racing to close. John presses them on managing risk, virtualizing hands-on training, and how they’re using AI to compress a three-year curriculum cycle down to days. If you claim comm or cyber, lead Marines, or just want to hear how the schoolhouse is modernizing to keep pace with Ukraine-era threats, this homecoming episode is worth the listen.We'd love to hear your thoughts! Tweet us @ThePhoenixCast, and don't forget to join our LinkedIn Group to connect with fellow Phoenix Casters. If you enjoyed the episode, help us out by leaving one of those coveted 5-star reviews on Apple Podcasts. Thanks for listening!Links:- Murello bio (MCCES): https://www.mcces.marines.mil/Leaders/Biography/Article/3929785/lieutenant-colonel-steven-murello/- Shankar bio (MCCES): https://www.mcces.marines.mil/Leaders/Biography/Article/3929593/colonel-arun-shankar/- Shankar Hoover Q&A (Nov 2022): https://www.hoover.org/news/qa-lieutenant-colonel-arun-shankar-us-marine-corps-national-security-affairs-fellow- "Assured C2: Pivoting the 06xx Community," MCG Nov 2022: https://mca-marines.org/blog/gazette/assured-c2/- "Offensive Cyberspace Operations," MCG Feb 2023: https://www.mca-marines.org/wp-content/uploads/Offensive-Cyberspace-Operations-Shankar.pdf- USNI News, "Virtual Tech in Marine Comms School Saves Time, Money" (Feb 2026): https://news.usni.org/2026/02/23/virtual-tech-in-marine-comms-school-saves-time-moneyBook RecommendationsCol Shankar: Primal Leadership by Daniel Goleman; Range by David Epstein.LtCol Murello: Mindset by Carol Dweck; White Sun War by Mick Ryan; 10 to 25 by David Yeager.

Risky Business
Tue 07 Jul 2026 22:51:09 - Archive | Vote

Risky Business


Soap Box: Using threat hunting to drive detection

Risky Business Episode Details

In this wholly sponsored Soap Box edition of the podcast Patrick Gray chats with Damien Lewke, the CEO and founder of Nebulock, about the future of threat hunting and detection. Damien spent a decade in the EDR and MDR space before founding Nebulock in 2024. It started off as an AI-powered threat hunt platform but has evolved into a broader security data platform that can answer questions, drive hunts and drive detections. This product is engineered around the idea that a lot of security is a data problem. So, if we accept this premise, how do we solve security? And how much of that solution is about agents, vs building a good graph? And if you’re going to build a good graph, do you want to build it for a person to use, or an agent to use? This is truly a conversation for the security nerd’s nerd. Enjoy! This episode is also available on YouTube

Securanoia
Sun 19 Jul 2026 12:20:51 - Archive | Vote

Securanoia


Wait, What? Brooke and Alex on Jethro Cornelissen’s Episode

Securanoia Episode Details

Some conversations leave us with more questions than answers, and that’s exactly where we want to be. I’m Alex S, producer turned reluctant co-host thanks to a little Swiss chocolate from my wife and host Brooke S, PhD. Together we revisit the big moments, unpack the “wait what?” reactions, and bring your voices into the mix. Short, candid, and a little unexpected, these episodes are your chance to shape where the conversation goes next. What do you want us to dig into? Disclaimer: Securanoia is an educational podcast intended to inform and spark discussion. It does not offer legal, or diagnostic advice.

Secure AF - A Cybersecurity Podcast
Wed 08 Jul 2026 11:00:00 - Archive | Vote

Secure AF - A Cybersecurity Podcast


Windows BlueHammer Flaw Now Actively Exploited by Ransomware Gangs

Secure AF - A Cybersecurity Podcast Episode Details

Got a question or comment? Message us here! Ransomware operators are leveraging the BlueHammer privilege escalation flaw to gain SYSTEM-level access and disable security controls. Get the latest insights and response recommendations. Support the show Watch full episodes at youtube.com/@aliascybersecurity. Listen on Apple Podcasts, Spotify and anywhere you get your podcasts.

Security Now
Unknown Date - Archive | Vote

Security Now


SN 1087: HalluSquatting, GhostApproval & GitLost - Patch Tuesday Breaks Records

Security Now Episode Details

AI is rewriting the rules of cybersecurity, and this week, massive government and private sector moves show just how quickly the stakes are rising. Find out how regulators, attackers, and defenders are all scrambling to keep up as vulnerabilities surface at record speed. Europe warns their largest banks to prepare for AI attack. The EU launches an action plan for AI Cybersecurity. China considers keeping its budget AI to itself. The UK's NCSC & GCHQ announce their "Cyber Shield". CISA is using Mythos to audit U.S. government code. Microsoft warns of their upcoming patch flood. "RoguePlanet" receives an on-the-fly patch. An underused mode to kid-proof an iPhone. Listener feedback and three new AI attacks HalluSquatting, GhostApproval & GitLost Show Notes - https://www.grc.com/sn/SN-1087-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: blackhat.com/us-26 and use code TWIT arcticwolf.com/trends threatlocker.com/twit XBOW.com adaptivesecurity.com cohesity.com/Resilience

Shared Security
Sun 19 Jul 2026 22:00:00 - Archive | Vote

Shared Security


Surveillance Pricing: When Your Data Sets the Price

Shared Security Episode Details

Surveillance pricing turns personal data, shopping history, location signals, loyalty programs, and AI-driven profiling into different prices or discounts for different people — often without consumers realizing their data has become the price tag.

Simply Offensive
Wed 15 Jul 2026 11:50:44 - Archive | Vote

Simply Offensive


AI Won't Make You a Hacker: Why Fundamentals Still Matter

Simply Offensive Episode Details

Artificial intelligence is transforming offensive security, but does that mean traditional penetration testing skills are becoming obsolete? In this episode of Simply Offensive, Phillip Wylie is joined by offensive security researcher Milton "wetw0rk" Valencia and Suzu Labs offensive security practitioner Jacob Krell for an in-depth discussion about the future of penetration testing, exploit development, and the role AI is playing in modern offensive security. Drawing from decades of combined experience, the conversation explores why understanding the underlying fundamentals remains essential—even as AI dramatically accelerates many offensive security workflows. From exploit development and malware research to certifications, training philosophies, and the economics of cybersecurity consulting, the panel examines what the next generation of ethical hackers needs to succeed. Milton shares insights from years of exploit development and red team operations, including lessons learned at IBM, Immunity, and HPE, while Jacob discusses his research into AI-assisted penetration testing and how large language models are changing the speed and scale of offensive security work.========================= Connect with Milton Valencia:LinkedIn: https://www.linkedin.com/in/milton-wetw0rk/Blog: GitHub: https://wetw0rk.github.io/YouTube: https://www.youtube.com/ ⁨@wetw0rk7⁩ =========================Connect with Jacob Krell:LinkedIn: ⁠https://www.linkedin.com/in/jacob-krell/⁠⁠X: https://x.com/hackerfren⁠=========================Connect with your host, Phillip Wylie:LinkedIn: https://linkedin.com/in/phillipwylieYouTube: https://youtube.com/@PhillipWylie=========================Presented by Suzu Labs=========================All the ways to connect with @Suzulabshttps://suzulabs.comhttps://x.com/suzulabshttps://www.linkedin.com/company/suzu-labs/

The Cyber Threat Perspective
Fri 17 Jul 2026 03:00:00 - Archive | Vote

The Cyber Threat Perspective


Guaranteed way to catch threat actors | Ep 188

The Cyber Threat Perspective Episode Details

In this episode, Spencer and Tyler discuss why deception is one of the best ways to catch threat actors. Resources Spencer's Cyber Deception WebinarSpencer's X posts on the topic of cyber deceptionhttps://thinkst.com/, https://canary.tools/@_subtee on X, @haroonmeer on Xhttps://tracebit.com/Blog: https://offsec.blog/ Youtube: https://www.youtube.com/@cyberthreatpov Twitter: https://x.com/cyberthreatpov Follow Spencer on social ⬇ Spencer's Links: https://spenceralessi.com Work with Us: https:/...

The Social Engineer Podcast
Mon 16 Mar 2026 00:00:00 - Archive | Vote

The Social Engineer Podcast


Ep. 343 - The Human Element Series - Spark Your Mental Fitness with Todd Bertsch

The Social Engineer Podcast Episode Details

Today we are joined by Todd Bertsch. Todd is a keynote speaker, mental fitness coach, and creator of the Spark Framework—a system rooted in neuroscience and behavioral psychology that focuses on building resilience, leadership clarity, and sustainable personal growth through small, consistent changes. After overcoming early struggles with addiction and pivoting from entrepreneurship into coaching during the COVID pandemic, Todd now helps leaders strengthen their "mental muscle" by identifying negative thought patterns and shifting into a more constructive, resilient mindset. [March 16, 2026] 00:00 – Intro 00:26 - Intro Links Social-Engineer.com - http://www.social-engineer.com/ Offensive Security Vishing Services - https://www.social-engineer.com/offensive-security/vishing/ Offensive Security SMiShing Services - https://www.social-engineer.com/offensive-security/smishing/ Offensive Security Phishing Services - https://www.social-engineer.com/offensive-security/smishing/ Call Back Phishing - https://www.social-engineer.com/offensive-security/call-back-phishing/ Adversarial Simulation Services - https://www.social-engineer.com/offensive-security/adversarial-simulation/ Social Engineering Risk Assessments - https://www.social-engineer.com/offensive-security/social-engineering-risk-assessment/ Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb CLUTCH - http://www.pro-rock.com/ innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 01:27 - Todd Bertsch Intro 02:39 - Todd's Origin Story 05:47 - Trauma and the Spark 08:30 - COVID Pivot to Coaching 10:58 - Mental Fitness for Leaders 14:37 - The Spark Framework Explained 17:04 - Curiosity and Burnout 18:37 - Small Steps, Big Change 19:35 - Protein-First Plan 20:09 - Weightloss Breakthrough 21:02 - Micro-Changes for Lifestyle 21:54 - Atomic Habits and Momentum 23:44 - Accountability and Coaching 24:08 - One Inch Wins Story 24:48 - Patience, Gratitude, and the Journey 28:34 - Connect with Todd and Book Picks https://www.toddbertsch.com/ https://www.linkedin.com/in/toddmbertsch/ https://www.instagram.com/theboltwithtoddb/ Recommended Books: The 7 Habits of Highly Effective People – Stephen R. Covey The Go-Giver – Bob Burg & John David Mann 32:12 - Mentors and Closing

The Wake UP X - With Efren L. Salazar | Securing Tomorrow, Empowering Today
Fri 17 Jul 2026 22:11:00 - Archive | Vote

The Wake UP X - With Efren L. Salazar | Securing Tomorrow, Empowering Today


He Thought Hacking Was a Cheat Code. Networking Changed Everything | Devin Prasad | Wake UP X

The Wake UP X - With Efren L. Salazar | Securing Tomorrow, Empowering Today Episode Details

In this episode of the Wake UP X Podcast, host Efren Salazar sits down with network engineer Devin Prasad for one of the most honest and relatable conversations about breaking into tech.Devin thought hacking was going to be simple. One path. One button. Easy mode. He even took an ethical hacking course thinking he would be doing advanced cyber operations within a year.He was humbled fast.The truth is that hacking is not linear. There is no single method. No cheat code. Hacking simply means using something for a purpose it was never intended for. And once Devin understood that he realized he had a much deeper problem.He was standing one foot away from a hundred foot canvas. He could only see one tiny corner of the full picture. He needed to back up. Understand how everything connected. Learn the full tapestry of how systems communicate before he could ever think about breaking into them.That led him to one conclusion. He had to learn networking first.🔹 He started with Network Plus. It clicked immediately.🔹 His goal was always to get back to cybersecurity but he accepted it was going to take time.🔹 Networking opened doors to understanding databases, servers and cloud in ways a direct path never would have.But just as things were building the agency he worked at sent all their full time employees to a Cisco CCNA bootcamp. Devin was a contractor. He was not on the list.And then two agencies that had previously passed on him called back with better paying offers on the table.More money. A familiar opportunity. An easy way out.Devin went home and thought about it. And what he decided next is the kind of move that only makes sense when you are playing the long game.🎙️ Host: Efren Salazar👤 Guest: Devin Prasad | Network Engineer & BGP Expert🎙️ Show: Wake UP X Podcast🔗 Full Episode: https://www.wakeupxpodcast.com/the-full-career-story-nobody-tells-you-about-getting-into-itcyber-devin-prasad/Episode Length: ~30 minutes