

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec
Jerry Bell and Andrew Kalat
Defensive Security is a weekly information security podcast which reviews recent high profile cyber security breaches, data breaches, malware infections and intrusions to identify lessons that we can learn and apply to the organizations we protect.
Episodes
Mentioned books

Feb 25, 2016 • 47min
Defensive Security Podcast Episode 150
http://www.scmagazineuk.com/russian-bank-licences-revoked-for-using-hackers-to-withdraw-funds/article/474464/
http://arstechnica.com/security/2016/02/hospital-pays-17k-for-ransomware-crypto-key/
http://news.softpedia.com/news/us-school-agrees-to-pay-8-500-to-get-rid-of-ransomware-500684.shtml
http://www.scmagazineuk.com/44-of-ransomware-victims-in-the-uk-have-paid-to-recover-their-data/article/475426/
http://arstechnica.com/security/2016/02/extremely-severe-bug-leaves-dizzying-number-of-apps-and-devices-vulnerable/

Feb 16, 2016 • 50min
Defensive Security Podcast Episode 149
http://www.tripwire.com/state-of-security/latest-security-news/cisco-patches-critical-asa-ike-buffer-overflow-vulnerability/
http://www.securityweek.com/we-cant-give-preventing-breaches
http://www.csoonline.com/article/3033160/security/ransomware-takes-hollywood-hospital-offline-36m-demanded-by-attackers.html
http://arstechnica.com/security/2016/02/clever-bank-hack-allowed-crooks-to-make-unlimited-atm-withdrawals/

Feb 11, 2016 • 57min
Defensive Security Podcast Episode 148
http://www.theregister.co.uk/2016/02/04/norse_corp_ceo_fired/
http://www.secureworks.com/resources/blog/ransomware-used-as-a-distraction/
http://www.zdnet.com/article/most-windows-flaws-mitigated-by-removing-admin-rights-says-report/
http://mobile.reuters.com/article/idUSKCN0VD14X
http://www.csoonline.com/article/3025787/security/defending-against-insider-security-threats-hangs-on-trust.html
http://www.securityforrealpeople.com/2016/02/poor-ux-leads-to-poorly-secured-soho.html

Feb 1, 2016 • 42min
Defensive Security Podcast Episode 147
Hack in the Box: https://conference.hitb.org/
Circle City Con: https://circlecitycon.com/tickets/
http://www.theregister.co.uk/2016/01/28/nsas_top_hacking_boss_explains_how_to_protect_your_network_from_his_minions/?page=1
https://www.youtube.com/watch?v=bDJb8WOJYdA
http://krebsonsecurity.com/2016/01/sources-security-firm-norse-corp-imploding/
http://arstechnica.com/security/2016/01/secret-ssh-backdoor-in-fortinet-hardware-found-in-more-products/

Jan 27, 2016 • 40min
Defensive Security Podcast Episode 146
https://blog.malwarebytes.org/intelligence/2016/01/draft-lechiffre-a-manually-run-ransomware/
http://www.tripwire.com/state-of-security/security-data-protection/boeing-supplier-hacked-claims-55-million-worth-of-damage-as-stock-price-falls/
http://krebsonsecurity.com/2016/01/firm-sues-cyber-insurer-over-480k-loss/
http://shawnetuma.com/2016/01/08/supervalu-data-breach-class-action-dismissed-for-lack-of-harm/
Hack in the Box: https://conference.hitb.org/
Circle City Con: https://circlecitycon.com/tickets/

Jan 21, 2016 • 36min
Defensive Security Podcast Episode 145
http://arstechnica.com/security/2016/01/security-firm-sued-for-filing-woefully-inadequate-forensics-report/
http://arstechnica.com/security/2016/01/et-tu-fortinet-hard-coded-password-raises-new-backdoor-eavesdropping-fears/
http://www.csoonline.com/article/3021774/security/trend-micro-flaw-could-have-allowed-attacker-to-steal-all-passwords.html

Jan 3, 2016 • 43min
Defensive Security Podcast Episode 144
http://www.welivesecurity.com/2016/01/03/blackenergy-sshbeardoor-details-2015-attacks-ukrainian-news-media-electric-industry/
http://blog.cryptographyengineering.com/2015/12/on-juniper-backdoor.html
http://www.databreaches.net/191-million-voters-personal-info-exposed-by-misconfigured-database/
http://darkmatters.norsecorp.com/2015/12/28/the-cybersecurity-information-sharing-act-cisa-passed/

Jan 3, 2016 • 1h 22min
Defensive Security Podcast Episode 143
This is our 2015 holiday episode with the Brakeing Down Security and PVC Security podcasts.

Dec 13, 2015 • 43min
Defensive Security Podcast Episode 142
https://www.fireeye.com/blog/threat-research/2015/12/fin1-targets-boot-record.html
http://www.csoonline.com/article/3012443/security/how-the-nsa-uses-behavior-analytics-to-detect-threats.html#tk.rss_all
http://www.databreachtoday.com/wyndham-agrees-to-settle-ftc-breach-case-a-8737
https://technet.microsoft.com/en-us/library/security/ms15-127.aspx
https://www.reddit.com/r/sysadmin/comments/3wa8rl/early_warning_system_for_cryptowall_crypto_canary/

Dec 6, 2015 • 47min
Defensive Security Podcast Episode 141
http://www.zdnet.com/article/vtech-hack-gets-worse-kids-photos-chat-logs-also-stolen/
http://krebsonsecurity.com/2015/12/dhs-giving-firms-free-penetration-tests/
http://www.csoonline.com/article/3011580/data-protection/insurance-companies-will-crack-down-on-cyber-security-in-2016-report.html
http://www.forbes.com/sites/joannabelbey/2015/11/30/7-tips-from-the-fbi-to-prepare-your-firm-for-a-cyber-attack/