Down the Security Rabbithole Podcast (DtSR) cover image

Down the Security Rabbithole Podcast (DtSR)

Latest episodes

undefined
Aug 8, 2023 • 41min

DtSR Episode 563 - AI Washing Black Hat 2023 Pre-Gaming

Guests Karim Hijazi and Damian Profancik discuss the upcoming 'hacker summer camp' event in Las Vegas. They address the trend of 'cloud washing' and the AI hype, express concerns about the return of Clippy, and explore the use of AI in cybersecurity. They share tips for attending conferences and staying informed.
undefined
Aug 1, 2023 • 1h

DtSR Episode 562 - Is There Even a BYOD Debate Anymore?

Send the hosts a message - try it now!TL;DR:I crashed a party on Security Uncorked and the crew that was having the discussion was kind enough to indulge me and my "bombs" (questions, really) - so I decided to have JJ and Josh on DtSR, and James and I continued the debate and conversation.This was so much more fun than it should have been, but the result is something I think we can be happy with - a healthy debate, some conclusions reached, and a lot of "it depends".Take a listen and make up your own mind.Security Uncorked episode that started it all: https://www.linkedin.com/events/byod-makeitorbreakit-securityun7087427632488722432/comments/YouTube video: https://youtube.com/live/3zeyKpwuneUGuestsJennifer ("JJ") MinellaLinkedIn: https://www.linkedin.com/in/jenniferminella/Josh MarpetLinkedIn: https://www.linkedin.com/in/joshuaviktor/Support the show>>> If you're reading this, consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast
undefined
Jul 25, 2023 • 39min

DtSR Episode 561 - Telling Generative AI Your Corporate Secrets

Send the hosts a message - try it now!TL;DR:This week my old buddies Jason Clark and James Robinson join James and me to talk about "AI" and the realm of possibilities (and risks) that it is.We discuss Artificial Intelligence (AI) as a generational leap in technology - but also the risks it poses for corporations (and real-life, real people too).Listen to the pod in your ears, and watch the video - trust me, you'll laugh along.YouTube Livestream (replay): https://youtube.com/live/HyxhBVdTdB8GuestsJason ClarkLinkedIn: https://www.linkedin.com/in/jasonclarkfl/James RobinsonLinkedIn: https://www.linkedin.com/in/0xjames/Support the show>>> If you're reading this, consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast
undefined
Jul 18, 2023 • 44min

DtSR Episode 560 - AppSec Philosophers

Send the hosts a message - try it now!TL;DR:This week's episode is a come-back episode from the appearance I did on Dan Kuykendall's "Dan on Dev" podcast a couple of days ago. We started such a fun conversation, we just couldn't let it end there. We go through some interesting (in my opinion) history of the AppSec space, Dan does a little "back in my day" stuff, and I get all "Get off my lawn".You'll enjoy the episode if for no other reason than the nostalgia...oh sweet nostalgia.Go subscribe to Dan's channel on YouTube, he's an old-timer like me, and he always good great insights.Dan-on-Dev Episode you should catch first (for context and stuff): https://www.youtube.com/watch?v=PJ3X6YiHw5EYouTube Video Stream: https://youtube.com/live/P2o-SAGQMkUGuestDan KuykendallLinkedIn: https://www.linkedin.com/in/dankuykendall/Dan on Dev Podcast: https://www.youtube.com/@DanOnDevSupport the show>>> If you're reading this, consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast
undefined
Jul 11, 2023 • 39min

DtSR Episode 559 - The Law of Diminishing Returns Ride Again

Send the hosts a message - try it now!TL;DRYou've got a slightly different episode this week - it's just James and I on the mic to talk through one of my favorite topics. But first! ... we have to talk about "Threads" and the social media "too much" that's happening. Then we talk about the Law of Diminishing Returns in cyber security -from budget to effort - "How much is good enough?"YouTube Link: https://youtube.com/live/eA6ugisBZb4Support the show>>> If you're reading this, consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast
undefined
Jul 4, 2023 • 52min

DtSR Episode 558 - The Problems Of Massive Scale

Send the hosts a message - try it now!Tl;DR:    ** Happy Birthday America! **This week the podcast is celebrating America's birthday by releasing an episode that is a conversation with one of my favorite Canadians. Mark Nunnikhoven is one of the foremost cloud and large scale security professionals, and if anyone in security understands how to explain some of the stresses and strains of security at massive scale it's Mark. We talk about what he's working on, and how we as an industry can start addressing security problems at massive scale.YouTube Video: https://youtube.com/live/KIm5m8cAM0QGuestMark NunnikhovenLinkedIn: https://www.linkedin.com/in/marknca/Support the show>>> If you're reading this, consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast
undefined
Jun 26, 2023 • 36min

DtSR Episode 557 - Changing Culture and Not Getting Fired

Send the hosts a message - try it now!TL;DR:On this week's episode we have an expert in leadership with experience in the Federal/Military sector as well as the civilian side. Bo talks about how culture can be changed, ways to approach your constituents, and which styles of information dissemination work best in organizations both large and small.If you're thinking about how to get your team more "security aware" and more bought in - this is an episode you must hear.Guest:Bo BirdwellLinkedIn: https://www.linkedin.com/in/bobirdwell/Support the show>>> If you're reading this, consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast
undefined
Jun 20, 2023 • 48min

DtSR Episode 556 - Will Regulation Price Out the Competition

Send the hosts a message - try it now!TL;DR:On this software security and regulation-focused episode of the podcast, the OG of AppSec (Jeff Williams) joins James & I to talk about the latest spate of regulations that require self-attested transparency about what companies are doing with respect to securing their software via supply chain and direct action.Jeff contends this is a good thing and it's hard to argue that transparency drives good - however - I'm always curious what this does to those who struggle to afford to do better, which is what the vast majority of vendors to FedGov are.Interesting discussion, join us!YouTube Video: https://youtube.com/live/iavtEVADp4gGuestJeff WilliamsLinkedIn: https://www.linkedin.com/in/planetlevel/Support the show>>> If you're reading this, consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast
undefined
Jun 13, 2023 • 1h 3min

DtSR Episode 555 - Why Can't We Figure Out the Developer Security Relationship

Send the hosts a message - try it now!TL;DR:On this 555th episode, James Wickett joins James and me on an interesting discussion on AppSec, developer relationships, and why we just can't seem to make it work. Or maybe we're making it work but not giving ourselves credit? Listen in to this conversation and find out. This one will hook you in, as James, James, and I have a slightly depressing conversation that  I think ends in something to be hopeful about.YouTube video stream replay: https://youtube.com/live/UIXtZy61CKU Guest:James WickettLinkedIn: https://www.linkedin.com/in/wickett/Support the show>>> If you're reading this, consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast
undefined
5 snips
Jun 6, 2023 • 47min

DtSR Episode 554 - This is Why AppSec Can't Have Nice Things

Send the hosts a message - try it now!TL;DRThis week's episode goes down the AppSec rabbit hole with Francesco Cipollone (call him "Frank") as we discuss some of the ins and outs of the modern software security challenge.  We're all over the place on topics, but the message, in the end, is sane.YouTube video replay: https://youtube.com/live/tJ6pvV3f0uA  Guest:Francesco CipolloneLinkedIn: https://www.linkedin.com/in/fracipo/Support the show>>> If you're reading this, consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode