
Selena Larson
Threat researcher on Proofpoint's research team and co-host of the Only Malware in the Building podcast, presenting analysis of the Trust Connect RAT-as-a-service masquerading as an RMM.
Top 10 podcasts with Selena Larson
Ranked by the Snipd community

12 snips
Jul 12, 2025 • 25min
Click here to steal. [Research Saturday]
Selena Larson, a Threat Researcher at Proofpoint and co-host of Only Malware in the Building, dives deep into the world of Amatera Stealer, a sophisticated rebranding of ACR Stealer. She reveals its advanced evasion techniques, including stealthy C2 communication and powerful PowerShell loaders. The discussion uncovers how Amatera employs creative social engineering and blockchain hosting to steal sensitive data, posing serious threats amid changing cybersecurity landscapes. Larson emphasizes the importance of heightened awareness and evolving defenses against such malware threats.

12 snips
Feb 22, 2025 • 24min
From small-time scams to billion-dollar threats. [Research Saturday]
Selena Larson, a threat researcher and lead for intelligence analysis at Proofpoint, dives into the evolving landscape of cybercrime. She highlights how ransomware groups now rival state-sponsored threats in sophistication and impact. Larson argues for a shift away from an APT-centric view towards one that equally addresses cybercrime risks. The discussion also emphasizes the urgent need for enhanced cybersecurity protections for individuals and the critical implications of cyberattacks on services like healthcare.

10 snips
Jan 3, 2026 • 21min
Don’t trust that app!
Selena Larson, a staff threat researcher at Proofpoint, dives into the alarming world of MFA phishing. She outlines how threat actors impersonate legitimate services like Adobe using fake Microsoft OAuth apps, successfully stealing credentials through realistic phishing kits. Larson explains the mechanics of these attacks, including the methods used to bypass MFA and capture sensitive data. She concludes with recommendations for individuals and organizations to bolster security measures and stay vigilant against these evolving threats.

9 snips
Sep 6, 2025 • 21min
Don’t trust that app! [Research Saturday]
Selena Larson, co-host of Only Malware in the Building and a Lead Threat Researcher at Proofpoint, dives into the alarming rise of Microsoft OAuth app impersonation campaigns. These sophisticated attacks target users by mimicking trusted services like Adobe and SharePoint, leading to MFA phishing. Larson explains how cybercriminals capture sensitive information through fake login pages, highlighting the importance of user education and vigilance. She also discusses Microsoft’s impending security updates to combat these threats, making cybersecurity awareness paramount.

5 snips
Mar 2, 2024 • 19min
The return of a malware menace. [Research Saturday]
Exploring the disappearance and return of the Bumblebee malware, its role as a downloader for cybercriminals, unique malware campaigns utilizing fake voicemail links, evolving tactics of cybercriminals, and the importance of user education in reducing cyber threats.

Apr 11, 2026 • 25min
A wolf in admin clothing. [Research Saturday]
Selena Larson, threat researcher at Proofpoint and co-host of Only Malware in the Building, reveals TrustConnect masquerading as a remote monitoring tool but acting as a RAT-for-hire. She breaks down phishing delivery, polished fake installers and control panels, RMM abuse in the criminal ecosystem, resilient operator tactics, and how AI both helps and betrays attackers.

Jun 30, 2026 • 28min
Defending the Authentication Flow: Device Code Phishing with Selena Larson
Selena Larson, senior threat researcher leading intelligence strategy at Proofpoint and podcaster, discusses device code phishing and abuse of Microsoft OAuth. She breaks down how attackers leverage commercial phishing kits and AI to craft realistic lures. Conversations cover who profits, how compromises spread across suppliers, and concrete controls like conditional access and device compliance.

Dec 27, 2024 • 48min
A cyber carol.
Selena Larson, a Proofpoint intelligence analyst and host of DISCARDED, joins Dave Bittner and Rick Howard to explore the intersection of cybersecurity and holiday cheer. They share chilling yet entertaining tales of malware and social engineering amidst festive anecdotes. The trio discusses the evolution of security measures like two-factor authentication and the rise of consumer-targeted scams. They wrap up with quirky reflections on classic holiday stories, urging listeners to stay vigilant and protect their digital lives this season.

Jul 20, 2024 • 22min
Olympic scammers go for gold. [Research Saturday]
Selena Larson, from Proofpoint, discusses the research on fraudulent Olympics ticketing websites. Scammers create fake sites mimicking legitimate ticketing platforms, using deceptive tactics like phony QR codes. Law enforcement and Olympics partners have shut down 51 out of 338 fraudulent websites, cautioning against purchasing tickets from unofficial sources.
Jun 27, 2024 • 44min
Selena Larson on e-crime matching nation state hackers; Disinfo before the Supreme Court
Selena Larson, a senior threat intelligence analyst, highlights the impact of criminal hacking groups on society. They discuss the importance of focusing on e-crime alongside state-backed hackers, the fallout of a Supreme Court ruling on disinformation, and the need to prioritize cybersecurity measures based on real risks faced by organizations.


