The Cyber Threat Perspective cover image

The Cyber Threat Perspective

Latest episodes

undefined
May 17, 2023 • 37min

Episode 41: Security Assessment vs Pentest Which is More Impactful and Why

Delve into the key differences between security assessments and penetration tests, highlighting how each serves distinct roles in safeguarding IT infrastructure. Discover the value of real-world penetration testing in measuring the effectiveness of security policies. The conversation emphasizes the critical need for testing third-party applications to unveil vulnerabilities and discusses the challenges organizations face in resource allocation for effective assessments. Gain insights on how both methods complement each other for a stronger cybersecurity strategy.
undefined
May 10, 2023 • 31min

Episode 40: How Attackers Target Law Firms and How To Detect & Prevent It

It's no secret law firms have become prime targets for attackers due to the sensitive information they handle and the clients they do business with. In this episode Brad and Spencer discuss common tactics used by attackers to breach law firms' defenses and provide practical tips on how to detect and prevent these types of attacks.Blog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://twitter.com/cyberthreatpovWork with Us: https://securit360.com
undefined
May 3, 2023 • 1h 6min

Episode 39: Pentesting Certifications Tier List Part 2

Dive into the world of pentesting certifications as experts rank them from best to worst. Discover the significance of key credentials like OSCP, GPN, and the emerging PNPT. Explore personal experiences with the G-Pen and critiques of practical versus theoretical value in these certifications. Learn about the advantages of Pentest Plus and advanced red team tactics with CRTO. Get insights into accessible certification options and community support for beginners, igniting a lively debate on their real-world application!
undefined
Apr 26, 2023 • 31min

Episode 38: Pentesting Certifications Tier List Part 1

The hosts rank popular pentesting certifications from best to worst, diving into their significance in cybersecurity. They emphasize real-world experience and community involvement as key factors in this landscape. Discussions include detailed critiques of certifications like the Burp Suite Certified Practitioner and ECPPT, with evaluations of their exam formats and practical applications. The tier list approach sparks lively debate, inviting listeners to share their own perspectives on these valuable credentials.
undefined
Apr 19, 2023 • 32min

Episode 37: Offensive Security Testing Part 5 - Wireless Pentesting

In this episode Brad and Darrius continue the Offensive Security Testing series and discuss Wireless Penetration Testing. Wireless Pentesting is often overlooked, but could be the blind spot that allows an attacker onto your network. Listen to this episode for key insights and considerations related to wireless networks and pentesting.Blog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://twitter.com/cyberthreatpovWork with Us: https://securit360.com
undefined
Apr 12, 2023 • 36min

Episode 36: Pentest vs Purple Team vs Red Team

Explore the intriguing world of cybersecurity as experts dissect the differences between penetration testing, purple team exercises, and red team engagements. Discover the critical role of standardized terminology in aligning security needs with client expectations. Learn how public information can be a double-edged sword, posing risks that attackers can exploit. Dive into the dynamic interplay of red, blue, and purple teams, illuminating collaborative strategies to enhance an organization's security posture and resilience.
undefined
Apr 5, 2023 • 42min

Episode 35: Getting Into Pentesting Without an IT Background

In this episode, Spencer and Tyler discuss Tyler's journey from working at Home Depot to getting a job as  a Penetration Tester. They also share first-hand advice for those that are looking to break into this exciting field.Blog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://twitter.com/cyberthreatpovWork with Us: https://securit360.com
undefined
Mar 29, 2023 • 26min

Episode 34: The State of Web Application Penetration Testing

In this episode, Darrius and Brad look at the current state of web application penetration testing, why it is how it is, and what you can do if you want to break into the field. Blog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://twitter.com/cyberthreatpovWork with Us: https://securit360.comBlog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://twitter.com/cyberthreatpovWork with Us: https://securit360.com
undefined
Mar 22, 2023 • 24min

Episode 33: Reflections on Privacy Law and Privacy Issues

In this episode, Brad and Darrius talk about some of the buzz around recent changes in privacy regulation/law and how it may impact other market verticals such as banking, law firms, and retail. Blog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://twitter.com/cyberthreatpovWork with Us: https://securit360.comBlog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://twitter.com/cyberthreatpovWork with Us: https://securit360.com
undefined
Mar 15, 2023 • 32min

Episode 32: Our Favorite Pentesting Tools: PingCastle

In this episode Spencer shares his affinity for PingCastle. If you are in IT, if you're a sysadmin or network admin or have any kind of responsibility for the security of your environment. I encourage you to have a look at PingCastle. Not only can it be used to find VERY severe vulnerabilities, but you can use it to track progress over time and show leadership you're doing the work. We also talk about some of my favorite ways to use this tool on penetration tests. Blog: https://offsec.blog/Youtube: https://www.youtube.com/@cyberthreatpovTwitter: https://twitter.com/cyberthreatpovWork with Us: https://securit360.com

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode