
UNSECURITY: Information Security Podcast
Weekly information security podcast airing Monday mornings hosted by Oscar Minks and Brad Nigh. In a unique focus on protecting personal information, Oscar and Brad discuss information security as an issue that includes cyber security, physical security, as well as administrative controls. Oscar is the CTO of FRSecure and heads technical services and operations at the company. Brad is the Principal Security Consultant and a 20+ year veteran of the industry.
Latest episodes

Dec 6, 2023 • 33min
Business Impact Analysis Starter Kit, CMMC
Episode 212 of the Unsecurity Podcast is now live!This time, Brad and Oscar sit down with FRSecure's Shawn Pollard to discuss our new free BIA starter kit, CMMC, and more.Water facilities report falling to hackers in separate breacheshttps://arstechnica.com/security/2023/11/2-municipal-water-facilities-report-falling-to-hackers-in-separate-breaches/Send any questions, comments, or feedback to unsecurity@protonmail.com.About FRSecurehttps://frsecure.com/FRSecure is a mission-driven information security consultancy headquartered in Minneapolis, MN. Our team of experts is constantly developing solutions and training to assist clients in improving the measurable fundamentals of their information security programs. These fundamentals are lacking in our industry, and while progress is being made, we can’t do it alone. Whether you’re wondering where to start, or looking for a team of experts to collaborate with you, we are ready to serve.

Nov 20, 2023 • 35min
R&D and Defense Evasion w/ Eric Hanson and Seth Bowling
Episode 211 of the Unsecurity Podcast is now live!This time, Brad and Oscar sit down with FRSecure's Eric Hanson and Seth Bowling to discuss R&D and defensive evasion.Blackcat report company they breached to SEC https://www.bleepingcomputer.com/news/security/ransomware-gang-files-sec-complaint-over-victims-undisclosed-breach/About FRSecure: https://frsecure.com/FRSecure is a mission-driven information security consultancy headquartered in Minneapolis, MN. Our team of experts is constantly developing solutions and training to assist clients in improving the measurable fundamentals of their information security programs.These fundamentals are lacking in our industry, and while progress is being made, we can’t do it alone. Whether you’re wondering where to start, or looking for a team of experts to collaborate with you, we are ready to serve.

Nov 1, 2023 • 41min
Proofpoint 2023 Voice of the CISO w/ Megan Larkins
Episode 210 of the Unsecurity Podcast is now live!This time, Brad is joined by Megan Larkins to discuss her role as FRSecure's security consulting manager, as well as Proofpoint's 2023 Voice of the CISO report.Proofpoint's 2023 Voice of the CISOhttps://www.proofpoint.com/us/resources/white-papers/voice-of-the-ciso-reportGive this episode a listen and send any questions, comments, or feedback to unsecurity@protonmail.com

Oct 19, 2023 • 25min
Catching Up with Evan!
Episode 209 of the Unsecurity Podcast is now live! This time, Oscar and Brad welcome Evan back to the show to catch up on all his latest endeavors.Give this episode a listen and send any questions, comments, or feedback to unsecurity@protonmail.com.

Oct 17, 2023 • 32min
Catching Up - DEFCON, Annual InfoSec Report, CISSP Mentor Program
Episode 208 of the Unsecurity Podcast is now live!This time, Oscar returns to the show and the guys get a chance to catch up on all the latest.Give this episode a listen and send any questions, comments, or feedback to unsecurity@protonmail.com

Sep 12, 2023 • 32min
Defcon 2023 Recap, Huntin' Ground, CloudNordic
The hosts discuss their experiences at Defcon 2023 and participating in a Capture The Flag event. They explore the limitations of traditional training methods in information security and the value of CTF-style exercises. They emphasize the importance of keeping team members sharp and simulating attacks using moderate Caldera. They also mention a cool initiative for red team scenarios and a news story about a company refusing to pay a ransomware demand. Additionally, they highlight the significance of data backups and express skepticism towards claims of no evidence of data exfiltration.

Jul 25, 2023 • 29min
Adobe ColdFusion & Citrix NetScaler Vulnerabilities
This week, Oscar and Brad sit down to discuss Adobe ColdFusion & Citrix NetScaler Vulnerabilities.Give this episode a listen or watch and send any questions, comments, or feedback to unsecurity@protonmail.com

Jul 18, 2023 • 54min
Unsecurity/Hacklebox Crossover: MOVEit, Microsoft Patch Tuesday, and Fortinet Infinity
This month, we're doing a crossover episode with The Hackle Box!For those who are not yet aware, The Hacklebox is another FRSecure podcast focused on the technical end of current events and happenings within the security industry. It's hosted several times a month by FRSecure's Technical Services Team.Discussed this month: MOVEit AttacksMicrosoft Patch Tuesday: Six 0-DaysFortinet InfinityPlease like, subscribe, and follow us on social! Facebook: https://www.facebook.com/frsecure/Twitter: https://twitter.com/frsecure/Instagram: https://www.instagram.com/frsecureofficial/ LinkedIn: https://www.linkedin.com/company/frsecure/

Jul 7, 2023 • 32min
ChatGPT, Mobile Malware, Super Mario Malware
Episode 205 of the Unsecurity Podcast is now live!This week, Oscar and Brad sit down to discuss ChatGPT, mobile malware, and the recent Super Mario malware. Don't forget: The show is available in audio or video form wherever you get your podcasts!Give this episode a listen or watch and send any questions, comments, or feedback to unsecurity@protonmail.com.

Jun 20, 2023 • 29min
MOVEit, Fortinet, and Barracuda Vulnerabilities
Episode 204 of the Unsecurity Podcast is now live!This week, Oscar and Brad sit down to discuss the recent MOVEit, Fortinet, and Barracuda Vulnerabilities.Links: Fortigate/Fortinet Vulnerability https://projecthyphae.com/threat/the-fortigate-to-mordor-has-been-left-open/ Critical MOVEit Transfer Vulnerability https://projecthyphae.com/threat/hackers-like-to-moveit-moveit-critical-moveit-transfer-vulnerability/ Zero-Day Vulnerability Exploited to Hack Barracuda Email Security Gateway Applianceshttps://www.securityweek.com/zero-day-vulnerability-exploited-to-hack-barracuda-email-security-gateway-appliances/Give this episode a listen or watch and send any questions, comments, or feedback to unsecurity@protonmail.com. Don't forget to like and subscribe!