

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec
Jerry Bell and Andrew Kalat
Defensive Security is a weekly information security podcast which reviews recent high profile cyber security breaches, data breaches, malware infections and intrusions to identify lessons that we can learn and apply to the organizations we protect.
Episodes
Mentioned books

Sep 11, 2016 • 59min
Defensive Security Podcast Episode 170
http://news.softpedia.com/news/retiring-sysadmin-fakes-cyber-attack-to-get-away-with-data-theft-507992.shtml
https://oversight.house.gov/wp-content/uploads/2016/09/The-OPM-Data-Breach-How-the-Government-Jeopardized-Our-National-Security-for-More-than-a-Generation.pdf
http://money.cnn.com/2016/09/08/investing/wells-fargo-created-phony-accounts-bank-fees/index.html
http://spectrum.ieee.org/view-from-the-valley/computing/it/facebook-engineers-crash-data-centers-in-realworld-stress-test
http://www.bloomberg.com/news/articles/2016-09-08/cisco-s-network-bugs-are-front-and-center-in-bankruptcy-fight

Aug 30, 2016 • 45min
Defensive Security Podcast Episode 169
http://www.csoonline.com/article/3110975/techology-business/how-do-you-measure-success-when-it-comes-to-stopping-phishing-attacks.html
http://www.databreachtoday.com/equation-group-hacking-tool-dump-5-lessons-a-9358
http://www.csoonline.com/article/3109982/security/attackers-dont-need-vulnerabilities-when-the-basics-work-just-as-well.html
http://www.securityweek.com/attacker-uses-virtual-machine-hide-malicious-activity
http://www.networkworld.com/article/3110653/security/imperva-application-layer-ddos-attacks-are-on-the-rise.html
http://arstechnica.com/security/2016/08/actively-exploited-ios-flaws-that-hijack-iphones-likely-spread-for-years/

Aug 21, 2016 • 51min
Defensive Security Podcast Episode 168
https://nakedsecurity.sophos.com/2016/08/18/nists-new-password-rules-what-you-need-to-know/
http://www.extremetech.com/extreme/234031-your-guide-to-the-shadow-brokers-nsa-theft-which-puts-the-snowden-leaks-to-shame
http://phys.org/news/2016-08-people-software-percent.html
http://www.csoonline.com/article/3108025/cyber-attacks-espionage/cerber-ransomware-earns-2-3mil-with-0-3-response-rate.html

Aug 14, 2016 • 1h 3min
Defensive Security Podcast Episode 167
http://www.csoonline.com/article/3101863/security/report-only-3-percent-of-u-s-companies-pay-attackers-after-ransomware-infections.html
http://www.bankinfosecurity.com/fed-reserve-a-9282
http://www.tripwire.com/state-of-security/featured/does-dropping-malicious-usb-sticks-really-work-yes-worryingly-well/
http://arstechnica.com/security/2016/08/frequent-password-changes-are-the-enemy-of-security-ftc-technologist-says/
http://spectrum.ieee.org/tech-talk/telecom/security/nigerian-scammers-infect-themselves-with-own-malware-revealing-new-wirewire-fraud-scheme
http://www.csoonline.com/article/3106076/data-protection/disable-wpad-now-or-have-your-accounts-and-private-data-compromised.html
http://fortune.com/2016/08/12/delta-airlines-outages/

Jul 25, 2016 • 48min
Defensive Security Podcast Episode 166
http://www.bankinfosecurity.com/report-new-york-fed-fumbled-cyber-heist-response-a-9281
http://motherboard.vice.com/read/ransomware-gang-claims-fortune-500-company-hired-them-to-hack-the-competition
http://www.lexology.com/library/detail.aspx?g=d0f4e774-6c6a-4783-b993-4f165f1dcc7e

Jul 17, 2016 • 58min
Defensive Security Podcast Episode 165
Tiaracon: http://tiaracon.org/
http://www.cbc.ca/news/technology/antivirus-software-1.3668746
http://www.csoonline.com/article/3089439/business-continuity/9-critical-controls-for-todays-threats.html
http://www.bankinfosecurity.com/interviews/heartbleed-update-america-vulnerable-i-3242
http://www.bankinfosecurity.com/blogs/av-wars-sophos-vs-cylance-p-2172
http://www.reuters.com/article/us-cyber-fdic-china-idUSKCN0ZT20M
http://blog.talosintel.com/2016/07/ranscam.html

Jun 30, 2016 • 1h 3min
Defensive Security Podcast Episode 164
http://blog.erratasec.com/2016/06/etheriumdao-hack-similfied.html#.V3BKyvkrJhE
http://www.zdnet.com/article/cvss-scores-are-not-enough-for-modern-security/
http://www.crn.com/news/security/300081157/sophos-slams-cylance-in-blog-post-as-market-for-endpoint-security-heats-up.htm?itc=refresh

Jun 20, 2016 • 1h 1min
Defensive Security Podcast Episode 163
http://www.darkreading.com/vulnerabilities—threats/windows-badtunnel-attack-hijacks-network-traffic/d/d-id/1325875
http://krebsonsecurity.com/2016/06/adobe-update-plugs-flash-player-zero-day/
http://krebsonsecurity.com/2016/06/banks-credit-card-breach-at-cicis-pizza/
http://ieee-security.org/TC/SP2016/papers/0824a018.pdf
https://securelist.com/blog/research/75027/xdedic-the-shady-world-of-hacked-servers-for-sale/
https://www.washingtonpost.com/world/national-security/guccifer-20-claims-credit-for-dnc-hack/2016/06/15/abdcdf48-3366-11e6-8ff7-7b6c1998b7a0_story.html
http://fox4kc.com/2016/06/15/platte-county-commissioners-give-treasurer-one-week-to-repay-funds-lost-to-email-scam/
http://www.abc.net.au/news/2016-06-18/software-legal-battle-could-put-sa-patients’-safety/7522934

Jun 5, 2016 • 51min
Defensive Security Podcast Episode 162
TeamViewer Denies Hack, Blames Password Reuse for Compromises
http://www.businessinsurance.com/article/20160602/NEWS06/160609935/chubb-p-f-changs-federal-insurance-co-cybersecurity-by-chubb-credit
http://www.csoonline.com/article/3075385/backup-recovery/will-your-backups-protect-you-against-ransomware.html#jump
http://www.csoonline.com/article/3077434/security/93-of-phishing-emails-are-now-ransomware.html#jump
http://venturebeat.com/2016/06/04/federal-reserve-bank-was-hacked-more-than-50-times-between-2011-and-2015/
http://www.csoonline.com/article/3075758/data-breach/up-to-a-dozen-banks-are-reportedly-investigating-potential-swift-breaches.html#jump
http://www.theregister.co.uk/2016/06/03/swift_threatens_insecure_bank_suspensions/

May 23, 2016 • 33min
Defensive Security Podcast Episode 161
Vote for us! https://www.surveymonkey.com/r/secbloggerwards2016
http://www.csoonline.com/article/3071337/cyber-attacks-espionage/cybercriminals-are-increasingly-embracing-a-sophisticated-business-model-approach.html#tk.rss_all
https://www.yahoo.com/news/special-report-cyber-thieves-exploit-banks-faith-swift-052100312–finance.html?ref=gs
http://www.securityweek.com/google-soon-kill-sslv3-rc4-support-gmail
https://threatpost.com/microsoft-warns-of-sneaky-new-macro-trick/118227/
http://www.networkworld.com/article/3073495/security/kansas-heart-hospital-hit-with-ransomware-paid-but-attackers-demanded-2nd-ransom.html