All Episodes

Displaying 21 - 40 of 101 in total

AI-Powered Behavioral Analytics: The SOC Team's Secret Weapon

SOC teams are drowning in alerts — AI-powered behavioral analytics may be the fix. This episode breaks down how machine learning transforms threat detection by learnin...

Adversarial Machine Learning: How Attackers Are Fooling AI

AI-powered defenses are under attack — and the models don't even know it. This episode breaks down adversarial machine learning: how attackers manipulate, poison, and ...

Patch Now or Pay Later: Inside CISA's Most Dangerous Known Exploited Vulnerabilities

CISA's Known Exploited Vulnerabilities catalog reads like a threat actor's hit list — and some organizations still haven't patched entries from 2021. This episode brea...

Initial Access Vectors You're Probably Ignoring in Your Security Plan

Attackers don't always need zero-days — sometimes a forgotten API key or an abandoned subdomain is all it takes. This episode breaks down six overlooked initial access...

Post-Exploitation Tactics That Still Work in 2025

Attackers in 2025 aren't reinventing the wheel — they're refining techniques that defenders keep leaving open. This episode breaks down six post-exploitation tactics s...

Payload Detonation in Cloud Sandboxes: Evasion Tactics and Defenses

Cloud sandboxes are a cornerstone of malware defense — but attackers have spent years learning exactly how to fool them. This episode breaks down the evasion tactics b...

Object Lock and Air-Gapped Backups: Building Ransomware-Proof Storage

Ransomware operators target backups first — so this episode breaks down Object Lock and air-gapped storage, two controls that make your backups genuinely unreachable a...

Mapping C2 Tunnels Without Deep Packet Inspection

Defenders don't need to crack open encrypted packets to expose covert C2 channels. This episode breaks down how flow records, beaconing analysis, TLS fingerprinting, a...

NIST 800-53 vs. ISO 27001: Choosing the Right Security Framework

NIST 800-53 and ISO 27001 are both industry-standard security frameworks — but they serve very different purposes. This episode breaks down the key differences and hel...

Modern Heap Exploitation: How Attackers Evolved Past the Old Playbook

Heap exploitation has left behind its blunt, crash-and-burn origins — today's attackers chain multiple subtle vulnerabilities into precise, multi-stage attacks that sl...

Model Inversion Attacks: What Your AI Is Unintentionally Exposing

AI models trained on sensitive data can quietly betray it — model inversion attacks let adversaries reconstruct private information just by querying your model. This e...

Microsegmentation Pitfalls No One Talks About

Microsegmentation promises to stop lateral movement cold — but most deployments quietly fail from the inside out. This episode breaks down seven under-discussed pitfal...

Microsegmentation: Shrinking the Attack Surface in Hybrid Cloud Chaos

Hybrid cloud environments have shattered the traditional network perimeter — and flat networks are an attacker's dream. This episode breaks down how microsegmentation ...

Hardening macOS Fleets at Scale: TCC, PPPC, and Notarization Security Gaps

Managing macOS at scale means wrestling with TCC, PPPC, and notarization — three overlapping permission layers that can quietly break security when misconfigured. This...

LOLBAS: How Attackers Use Your Own Tools Against You

Attackers don't need custom malware when your own trusted, pre-installed tools can do the job. This episode unpacks LOLBAS — how threat actors weaponize legitimate sys...

iOS Lockdown Mode for Executives: Protecting High-Risk iPhones from Targeted Attacks

Apple's Lockdown Mode can be a powerful shield for executives facing targeted attacks — but only when deployed strategically. This episode breaks down who needs it, wh...

LLM Prompt Injection: Where Natural Language Becomes an Exploit

LLMs don't distinguish between developer instructions and attacker-planted text — and that architectural gap is exactly what prompt injection exploits. This episode br...

Permission Sprawl: Why Your Service Accounts Are a Silent Security Crisis

Service accounts are multiplying silently across cloud and CI/CD environments — and most organizations have no idea how much access they've accumulated. This episode b...

Event-Driven Security: Locking Down Apache Kafka Before It Leaks

Apache Kafka's speed-first design makes it a security liability hiding in plain sight — and this episode breaks down exactly how to lock it down before event-driven ar...

Interpreted Malware: How Python, PowerShell, and Scripts Hide in Memory

Modern attackers don't need custom malware when Python, PowerShell, and JavaScript are already on your systems. This episode breaks down how interpreted and fileless m...

Broadcast by