The BlueHat Podcast cover image

The BlueHat Podcast

Canary (Tokens) in the Code Mine with Casey Smith

Jan 10, 2024
37:23

Thinkst Canary, Cyber Security Researcher Casey Smith joins Nic Fillingham on this week's episode of The BlueHat Podcast. Nic and Casey discuss his background in security, his experience presenting at Blue Hat, and his session on building a Canary token to monitor Windows process execution. The Canary token project is an open-source initiative that creates artifacts on a network to alert defenders when an attacker interacts with them. The tokens can take various forms, such as documents, cloud credentials, QR codes, or executables, providing an early warning system for potential breaches. They also cover the importance of failure in the research process and the evolution of the canary token project to adapt to new attack techniques. 

 

 

In This Episode You Will Learn:    

 

  • The need for defenders to explore new features in the Windows operating system 
  • Challenges of keeping ahead of more sophisticated adversaries 
  • The use of legitimate binaries for malicious activities 

 

 

Some Questions We Ask:    

 

  • How do you balance curiosity-driven research with practical security concerns? 
  • What challenges do you see in the current state of endpoint security? 
  • How do you navigate working with customers and using what you learn for research? 

 


Resources:  

View Casey Smith on LinkedIn 

View Wendy Zenone on LinkedIn 

View Nic Fillingham on LinkedIn 

 

Related Microsoft Podcasts:                 

 

 

Discover and follow other Microsoft podcasts at microsoft.com/podcasts  


Hosted on Acast. See acast.com/privacy for more information.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode