Down The Security Rabbithole

  • Author: Vários
  • Narrator: Vários
  • Publisher: Podcast
  • Duration: 398:36:06
  • More information

Informações:

Synopsis

Security. Some assembly required.Security is HARD, and 'real security' is a compromise between usability and security while knowing you're still accepting risk.This podcast alternates between interesting interviews and news analysis every other week - tune in, subscribe and join the conversation on REAL security issues relevant to your enterprise.Read the blog > http://hp.com/go/white-rabbitFollow along on Twitter > http://twitter.com/wh1t3rabbit

Episodes

  • DtSR Episode 500 - Looking Back to Look Forward - Part 2

    12/05/2022 Duration: 01h03min

    Prologue - Part 2 of 2 First - thank you to everyone who listens to this show, shares it, and has left us a review. You all are the reason these past 500 episodes got published, and why this show will keep going into the forseeable future! Link to video: https://www.linkedin.com/video/event/urn:li:ugcPost:6917850703235321856/ This episode features some of my favorite guests from the last 500 episodes, with something to say. We cover a lot of ground, totally unscripted, and we have opinions.  Guests Jim Tiller LinkedIn: https://www.linkedin.com/in/jitiller/ Will Gragido LinkedIn: https://www.linkedin.com/in/gragido/  Diana Kelley LinkedIn: https://www.linkedin.com/in/dianakelleysecuritycurve/  Rob Hansen LinkedIn: https://www.linkedin.com/in/roberthansen3/  Anton Chuvakin LinkedIn: https://www.linkedin.com/in/chuvakin/  Jeff Moss LinkedIn: https://www.linkedin.com/in/jeffmoss/ 

  • DtSR Episode 500 - Looking Back to Look Forward - Part 1

    10/05/2022 Duration: 58min

    Prologue - Part 1 of 2 First - thank you to everyone who listens to this show, shares it, and has left us a review. You all are the reason these past 500 episodes got published, and why this show will keep going into the forseeable future! Link to video: https://www.linkedin.com/video/event/urn:li:ugcPost:6917850703235321856/ This episode features some of my favorite guests from the last 500 episodes, with something to say. We cover a lot of ground, totally unscripted, and we have opinions.  Guests Jim Tiller LinkedIn: https://www.linkedin.com/in/jitiller/ Will Gragido LinkedIn: https://www.linkedin.com/in/gragido/  Diana Kelley LinkedIn: https://www.linkedin.com/in/dianakelleysecuritycurve/  Rob Hansen LinkedIn: https://www.linkedin.com/in/roberthansen3/  Anton Chuvakin LinkedIn: https://www.linkedin.com/in/chuvakin/  Jeff Moss LinkedIn: https://www.linkedin.com/in/jeffmoss/ 

  • DtSR Episode 499 - Four Hundred Ninety Nine and Counting

    03/05/2022 Duration: 53min

    Prologue Friends and colleagues - I want to thank you from the bottom of my heart. It almost brings me to tears that over the last 11 years you've been sharing, downloading, and talking about this little thing I started back in 2011. Incredible doesn't even begin to describe the ride so far. And to top it off, we've hit almost 32,000 downloads this month - the most we've ever gotten by almost 2,000 more. I'm flabbergasted. So this episode, it's just James and I - just us doing what we do.   Thank you. We love you. Keep listening!

  • DtSR Episode 498 - Living in the Tornado

    26/04/2022 Duration: 53min

    Prologue Super pumped this week to have James Azar on the show. James hosts a collection of podcasts including one I try to catch as often as possible - https://www.linkedin.com/company/cyberhubpodcast/. We cover a lot of ground, but you'll walk away with James' words ringing in your head, I can almost promise you that. Guest James Azar LinkedIn: https://www.linkedin.com/in/james-j-azar/ 

  • DtSR Episode 497 - Security Buzzword Bingo

    19/04/2022 Duration: 50min

    Prologue This week, as we approach episode 500 and the extravaganza that it will be, James and I welcome my personal friend and all-around wonderful marketing dude, Russell Wurth. We joke about what's wrong with cyber-security, and why it's mostly marketing's fault. Join us, prep your buzzword bingo card, and have a drink in hand (unless you're driving, then please don't). Guest: Russell Wurth LinkedIn: https://www.linkedin.com/in/russellwurth/  Twitter: https://twitter.com/rswurth 

  • DtSR Episode 496 - How to Win Friends and Influence CISOs

    12/04/2022 Duration: 49min

    Prologue Have you noticed that the relationship between buyer and seller, or more precisely, between CISO and seller is... eh ... tenuous lately? OK, maybe it's a lot worse than that in some cases. Why is that? How did we get here? And how do we fix a relationship that is quite clearly necessary, but just so broken? Yaron Levi, long-time industry veteran joins Rafal to discuss the challenges and opportunities of the CISO - vendor relationship.   Guest Yaron Levi LinkedIn: https://www.linkedin.com/in/yaronrl/ 

  • DtSR Episode 495 - Analyzing Russia's Offensive Cyber Ops

    04/04/2022 Duration: 58min

    Prologue This week, as Vladimir Putin's Russia continues to commit war crimes and genocide against the people of Ukraine, DtSR gathered a panel of experts to discuss and dissect the threat of a Russian-based cyber offensive against the west. Our panelists helped separate fact from fiction, and gave us some take-aways that we can use to rationally and realistically protect ourselves from this and other related threats. LinkedIn Livestream video recording: https://www.linkedin.com/video/event/urn:li:ugcPost:6915354239766568960/  Guests Karim Hijazi LinkedIn: https://www.linkedin.com/in/karimhijazi/  Joe Slowik LinkedIn: https://www.linkedin.com/in/joe-slowik/  Mattias Wåhlén https://www.linkedin.com/in/mattias-w%C3%A5hl%C3%A9n-9b3b58201/ 

  • DtSR Episode 494 - Forensics The Art of the Science Plus a Cat

    29/03/2022 Duration: 47min

    Prologue Special thanks on this episode to OpenText for bringing Mike to us on this show. What a fantastic conversation about the state of forensics and a little bit of reminiscing too! This episode we talk forensics, and the art and science, plus how to build that back-fill of talent this entire industry is short on. Michael has decades of knowledge and experience, and it's a joy of a conversation. Also, if you're into nothing else on this episode, check out the world's cutest kitten. Come for the kitten, stay for the forensics goodness. Guest Michael Hill -- You'll have to go look him up yourself :)

  • DtSR Episode 493 - Breaches: Is Anyone Learning Anything

    22/03/2022 Duration: 47min

    Prologue A big Texas welcome back to the podcast to our friend Shawn Tuma, our legal-eagle in residence. This week Shawn talks to us about the cases he's involved in, and the types of trends he's seeing in his client base when being their breach coach, and fire-fighter guide. With all these breaches, and all this money and productivity lost - is anyone paying attention? Is anyone learning anything? Join us, Shawn will tell you.   Guest Shawn Tuma LinkedIn: https://www.linkedin.com/in/shawnetuma/  Shawn's recent appearence on The Above Board Show: https://www.linkedin.com/feed/update/urn:li:activity:6909959787845730304/ 

  • DtSR Episode 492 - Operationally Useful Blocklists

    16/03/2022 Duration: 44min

    Prologue This week, the guy with the best vendor hoodies ever is back! Philippe Humeau of Crowdsec joins us again to talk about some of the data his team have gathered, analyzed, and are using to crowd-source protection in the form of block lists. Anton Chuvakin joins us to bring his useful manner of snarkasm, just to keep us honest. Guests Philippe Humeau LinkedIn: https://www.linkedin.com/in/philippehumeau/  Anton Chuvakin LinkedIn: https://www.linkedin.com/in/chuvakin/

  • DtSR Episode 491 - SOAR is Boring

    08/03/2022 Duration: 47min

    Prologue I read an article the other day that got me thinking, and inspired me to get Wesley onto the podcast to talk about SOAR. Yes, SOAR is absolutely boring -  but that's OK, isn't it? What's the actual purpose of SOAR technology, and where is it being utilized today? Are we getting the most of this, or is it just a boring fad? All this and more on today's show. Guest Wesley Belleman LinkedIn: https://www.linkedin.com/in/cyberwes/ 

  • DtSR Episode 490 - CISO Ascending Beyond Enterprise Security

    01/03/2022 Duration: 35min

    Prologue We open this episode with an acknowledgement of the crisis in Ukraine, as Putin's madness is unleashed. We stand with the brave people of Ukraine as they defend themselves from unprecedented evil. That said, this week James and I bring Grant Sewell onto the show. Grant has experience being a "behind the scenes" CISO, and more recently in a customer-facing role. We discuss the evolution of the CISO into a "trust officer" and the focus that takes. Guest Grant Sewell LinkedIn: https://www.linkedin.com/in/grantsewell/  Twitter: https://twitter.com/grantsewell 

  • DtSR Episode 489 - Crowdstrike Global Threat Report Feb 22

    22/02/2022 Duration: 52min

    LinkedIn Live stream (recorded): https://www.linkedin.com/video/event/urn:li:ugcPost:6895440886222643201/  DtSR LinkedIn Page (subscribe here!): https://www.linkedin.com/company/down-the-security-rabbithole-podcast/  Prologue This week is a slightly longer (oops) episode of the DtSR Podcast with a three-timer, Adam Meyers of Crowdstrike. Adam joins James and Rafal to talk about the latest Global Threat Report and all the trends and insights. There is a lot of good insight here, and if you want to catch the LIVE (recorded) video you can get that too! Don't forget to subscribe to our DtSR page on LinkedIn to get all the latest content. Guest Adam Meyers LinkedIn: https://www.linkedin.com/in/adam-meyers-7a58481/ Twitter: https://twitter.com/adam_cyber

  • DtSR Episode 488 - Essential CISO Business Skills

    15/02/2022 Duration: 39min

    Prologue This week I'm so thankful that James and I have the opportunity to talk to the authors of "The CISO Evolution" -- a fantastic book for anyone who wants to be, or is working as, a security leader. Rock and Matt join us to talk about the book, share some insights, and maybe answer a tough question or two. Guests: Rock Lambros LinkedIn: https://www.linkedin.com/in/rocklambros/  Rock Cyber: https://www.linkedin.com/company/rockcyber/  Matthew Sharp LinkedIn: https://www.linkedin.com/in/ciso-mba/ 

  • DtSR Episode 487 - Software Supply Chain is a BFD

    08/02/2022 Duration: 44min

    Prologue Continuing our thread on the software supply chain and SBoM (Software Bill of Materials) we bring in Ed Moyle who is writing a series on the subject for his column. Ed brings up some very interesting points on some key aspects of software supply chain including feasibility and asks that difficult question "So what if you get it?" Guest Ed Moyle LinkedIn: https://www.linkedin.com/in/edmoyle/  Must-read article: https://www.techtarget.com/searchsecurity/tip/4-software-supply-chain-security-best-practices 

  • DtSR Episode 486 - SBOM in the Real World

    02/02/2022 Duration: 44min

    Prologue SBoM ("Software Bill of Materials") is the new rage. Everyone's talking about it. What it means is you're expecting a list of software components and includes, libraries, etc that make up the software you're buying or using. The problem is, in real life, SBoM is exceptionally difficult and maybe even slightly impractical. Listen in as Rafal & James discuss SBoM in real-life scenarios with Paul Caiazzo -- a guy who's trying to make this idea work in his day-job. Guest Paul Caiazzo LinkedIn: https://www.linkedin.com/in/pcaiazzo/ 

  • DtSR Episode 485 - YGHT Beating Ransomware at Its Game

    25/01/2022 Duration: 39min

    Prologue Back in episode 469 ( https://ftwr.libsyn.com/dtsr-episode-469-yght-they-hacked-ransomware ) we brought Steve Perkins of Nubeva ("Cloud Go" in Portuguese) to talk about a very interesting "accidental" development. They'd figured out a way to steal encryption keys from ransomware, thus rendering it potentially toothless. Well, now Steve's back with a product, and a way to reverse ransomware's encryption with minimal friction and without paying the ransom. So ... yeah. Listen in.

  • DtSR Episode 484 - Defrauding Mobile Payments

    18/01/2022 Duration: 37min

    Prologue Have you ever made a payment from your mobile device, wirelessly using NFC? Of course you have, most of us have by now. Did you know there are some (or at least were) fairly significant design flaws, otherwise known as "features", in the various platforms? On this show, we're interested in learning more about Timur's research and what he's uncovered. You'll want to do what I did, check your phone's NFC payments settings, once this show is over.

  • DtSR Episode 483 - How Not to Screw Up Your Cloud

    11/01/2022 Duration: 46min

    Prologue We have a repeat guest today! Mr. Mark Simos joins me once again to talk about Microsoft's Cloud Adoption Framework (CAF) and it's applicability to not only Azure, but also your other clouds. Building resilient and secure clouds isn't just about security, it's about design and architecture that adheres to good practices. Microsoft's CAF is fantastic place to start - listen here to learn more. Guest Mark Simos LinkedIn: https://www.linkedin.com/in/marksimos/  Twitter: @marksimos

  • DtSR Episode 482 - Tales of Wireless Hacking

    04/01/2022 Duration: 41min

    Prologue This week, on a good start to the new year, Eric Escobar joins us to talk about hacking wireless - and a little bit of history on the topic. Taking us back to early wireless hacking where you had to have the right wireless PCMCIA card and drivers, to today where things are a little more complicated but oddly not too much has changed. Guest Eric Escobar LinkedIn: https://www.linkedin.com/in/eric-escobar/ 

page 3 from 29