Billede af showet The Security Engineering Show

The Security Engineering Show

Podcast af The Security Engineering Show

engelsk

Videnskab & teknologi

Begrænset tilbud

2 måneder kun 19 kr.

Derefter 99 kr. / månedOpsig når som helst.

  • 20 lydbogstimer pr. måned
  • Podcasts kun på Podimo
  • Gratis podcasts
Kom i gang

Læs mere The Security Engineering Show

These are the stories of the security engineering projects that are worth telling. We skip past the broad strokes to the tactics, obstacles, and the untold stories behind the successes and failures. This is the show for the people who architect strong security systems.

Alle episoder

5 episoder

episode Something in the Water | Ep. #5 | The Security Engineering Show cover

Something in the Water | Ep. #5 | The Security Engineering Show

A pentester navigated from basic internal network access to achieving full Domain Controller (DC) compromise and ultimately SCADA system control, revealing vulnerabilities that could have led to a hazardous chlorine release into a city's water supply. Episode 5 of The Security Engineering Show offers invaluable insights into modern offensive security and real-world breaches. This is the show for security engineers, by security engineers. Featuring Noah Stanford: CEO at 0pass Finn Foulds-Cook: Senior Penetration Tester at Volkis 00:00 - Intro 1:40 - The Engagement 4:45 - Windows Exploitation and Tooling 6:55 - ADCS, Coerced Auth, and Certs! 11:10 - Domain Controller Takeover 13:20 - Abusing DC Sync and EDR 15:55 - From DA to Azure 18:00 - Disabling your fancy EDR 19:30 - Escalating to Azure Global Admin 21:10 - Everything hacked, now what? 22:03 - Enumerating SCADA 24:31 - From SCADA to DEATH 27:44 - How do we fix all of this? 30:01 - Important security insights 31:47 - Message to Security / IT teams 33:36 - Outro

24. juni 2024 - 35 min
episode Learning from Lazarus Group | Ep. #3 | The Security Engineering Show cover

Learning from Lazarus Group | Ep. #3 | The Security Engineering Show

Delve into the nitty-gritty of a company's two run-ins with the Lazarus Group. The first time, to clean up the mess they left behind, and the second, to stop them in their tracks after getting a telltale alert from the SEIM. This is the show for security engineers, by security engineers. Featuring Noah Stanford: CEO at 0pass Matt Toussain: Founder at Open Security 00:00 Intro 00:47 Lazarus Group Compromise #1: Negotiating ransomware payment 02:55 Lazarus Group Compromise #1: Their tactics and techniques 07:55 Lazarus Group Compromise #1: Bad practices that led to the first breach 10:43 Lazarus Group Compromise #1: Cleaning up the mess 15:38 SEIMs and how not to die the death of a thousand alerts 19:35 Lazarus Compromise #2: Intro 24:18 Lazarus Compromise #2: We're going to "hurt your billable rate" 27:38 Lazarus Compromise #2: How they gained access and what they did 33:27 Lazarus Compromise #2: Reverse engineering the malware 36:24 Lazarus Compromise #2: Hacking back and the FBI 45:10 Working in Private Sector vs US Gov 48:34 Outro advice

26. feb. 2024 - 53 min
episode Oh The Places You'll Find Malware | Ep. #1 | The Security Engineering Show cover

Oh The Places You'll Find Malware | Ep. #1 | The Security Engineering Show

"Oh the places you'll find malware" brings surprising stories of infections and security incidents. Michael Grube, formerly a security engineer at SpaceX and now a vulnerability researcher at an employer we won't disclose, tells the stories about how he found malware in a Hadoop cluster, on a water jet machine (bought straight from the manufacturer), and in an Active Directory environment. We talk about the tricks that threat actors used to cover their tracks and how they were exposed. This is the show for security engineers, by security engineers. Featuring Noah Stanford, CEO at 0pass: https://www.linkedin.com/in/pwned/ [https://www.linkedin.com/in/pwned/] Michael Grube: Vulnerability Researcher and Security Engineer

30. nov. 2023 - 39 min
Tilmeld dig for at lytte
En fantastisk app med et enormt stort udvalg af spændende podcasts. Podimo formår virkelig at lave godt indhold, der takler de lidt mere svære emner. At der så også er lydbøger oveni til en billig pris, gør at det er blevet min favorit app.
En fantastisk app med et enormt stort udvalg af spændende podcasts. Podimo formår virkelig at lave godt indhold, der takler de lidt mere svære emner. At der så også er lydbøger oveni til en billig pris, gør at det er blevet min favorit app.
Rigtig god tjeneste med gode eksklusive podcasts og derudover et kæmpe udvalg af podcasts og lydbøger. Kan varmt anbefales, om ikke andet så udelukkende pga Dårligdommerne, Klovn podcast, Hakkedrengene og Han duo 😁 👍
Podimo er blevet uundværlig! Til lange bilture, hverdagen, rengøringen og i det hele taget, når man trænger til lidt adspredelse.

Vælg dit abonnement

Mest populære

Begrænset tilbud

Premium

20 timers lydbøger

  • Podcasts kun på Podimo

  • Ingen reklamer i podcasts fra Podimo

  • Opsig når som helst

2 måneder kun 19 kr.
Derefter 99 kr. / måned

Kom i gang

Premium Plus

100 timers lydbøger

  • Podcasts kun på Podimo

  • Ingen reklamer i podcasts fra Podimo

  • Opsig når som helst

Prøv gratis i 7 dage
Derefter 129 kr. / måned

Prøv gratis

Kun på Podimo

Populære lydbøger

Kom i gang

2 måneder kun 19 kr. Derefter 99 kr. / måned. Opsig når som helst.