

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec
Jerry Bell and Andrew Kalat
Defensive Security is a weekly information security podcast which reviews recent high profile cyber security breaches, data breaches, malware infections and intrusions to identify lessons that we can learn and apply to the organizations we protect.
Episodes
Mentioned books

May 4, 2020 • 28min
Defensive Security Podcast Episode 251
https://www.securityweek.com/recent-salt-vulnerabilities-exploited-hack-lineageos-ghost-digicert-servers
https://www.zdnet.com/article/ransomware-mentioned-in-1000-sec-filings-over-the-past-year/

May 3, 2020 • 44min
Defensive Security Podcast Episode 250
https://www.zdnet.com/article/dhs-cisa-companies-are-getting-hacked-even-after-patching-pulse-secure-vpns/
https://www.bankinfosecurity.com/attackers-increasingly-using-web-shells-to-create-backdoors-a-14179
https://www.bleepingcomputer.com/news/security/doppelpaymer-ransomware-hits-los-angeles-county-city-leaks-files/

Apr 5, 2020 • 57min
Defensive Security Podcast Episode 249
https://www.tomsguide.com/news/zoom-security-privacy-woes
https://www.bankinfosecurity.com/blogs/learn-from-how-others-get-breached-equifax-edition-p-2870
https://www.zdnet.com/article/microsoft-how-one-emotet-infection-took-out-this-organizations-entire-network/
https://www.microsoft.com/security/blog/wp-content/uploads/2020/04/Case-study_Full-Operational-Shutdown.pdf

Mar 28, 2020 • 57min
Defensive Security Podcast Episode 248
Be well, be safe, take care of yourselves, and take care of others (from an appropriate distance).
https://www.businessinsider.com/coronavirus-apple-secrecy-work-from-home-difficult-2020-3
https://www.csoonline.com/article/3531963/8-key-security-considerations-for-protecting-remote-workers.html
https://www.zdnet.com/article/microsoft-99-9-of-compromised-accounts-did-not-use-multi-factor-authentication/

Mar 22, 2020 • 42min
Defensive Security Podcast Episode 247
https://www.securityweek.com/state-sponsored-cyberspies-use-sophisticated-server-firewall-bypass-technique
https://www.zdnet.com/article/ransomware-victims-thought-their-backups-were-safe-they-were-wrong/
https://www.sec.gov/files/OCIE%20Cybersecurity%20and%20Resiliency%20Observations.pdf

Feb 23, 2020 • 42min
Defensive Security Podcast Episode 246
https://www.darkreading.com/risk/cybercriminals-swap-phishing-for-credential-abuse-vuln-exploits/d/d-id/1337019
https://www.businessinsider.com/phishing-scams-getting-more-sophisticated-what-to-look-out-for-2020-2#hackers-will-start-by-targeting-low-level-employees-then-moving-laterally-to-compromise-executives-accounts-1
https://krebsonsecurity.com/2020/02/hackers-were-inside-citrix-for-five-months/
https://www.clearskysec.com/wp-content/uploads/2020/02/ClearSky-Fox-Kitten-Campaign.pdf

Feb 9, 2020 • 34min
Defensive Security Podcast Episode 245
https://www.bankinfosecurity.com/judge-rules-insurer-must-pay-for-ransomware-damage-a-13673
https://www.zdnet.com/google-amp/article/new-york-state-wants-to-ban-government-agencies-from-paying-ransomware-demands/
https://www.bankinfosecurity.com/nist-drafts-guidelines-for-coping-ransomware-a-13679
https://arstechnica.com/information-technology/2020/01/dozens-of-companies-have-data-dumped-online-by-ransomware-ring-seeking-leverage/
https://www.bankinfosecurity.com/doppelpaymer-ransomware-threatens-to-dump-victims-data-a-13683

Jan 21, 2020 • 41min
Defensive Security Podcast Episode 244
https://www.securityweek.com/attacker-installs-backdoor-blocks-others-exploiting-citrix-adc-vulnerability
https://www.securityweek.com/court-approves-equifax-data-breach-settlement
https://www.infosecurity-magazine.com/news/equifax-breach-settlement-could/
https://www.natlawreview.com/article/ico-issues-fine-against-national-retailer-security-failings

Jan 13, 2020 • 35min
Defensive Security Podcast Episode 243
https://www.irishtimes.com/news/crime-and-law/courts/high-court/firm-being-blackmailed-by-hackers-for-6m-obtains-irish-court-injunction-1.4128069
https://inews.co.uk/inews-lifestyle/travel/travelex-hack-cyber-attack-ransomware-sodinokibi-travel-money-uk-firm-data-breach-explained-1358454
https://securityaffairs.co/wordpress/96046/hacking/microsoft-rdp-brute-force-study.html
https://www.zdnet.com/article/company-shuts-down-because-of-ransomware-leaves-300-without-jobs-just-before-holidays/

Dec 21, 2019 • 29min
Defensive Security Podcast Episode 242
https://www.wwltv.com/article/news/crime/city-government-in-recovery-mode-after-cyberattack/289-514a376e-16de-4b43-9756-a30baefe4c28
https://arstechnica.com/information-technology/2019/11/hackers-paradise-louisianas-ransomware-disaster-far-from-over/
https://www.csoonline.com/article/3488816/how-a-nuclear-plant-got-hacked.html