David Bombal cover image

David Bombal

Latest episodes

undefined
May 21, 2024 • 44min

#468: You have to look out for these hacks in 2024! (plus get FREE training)

Big thank you to Cisco for sponsoring this video! (And for the FREE Ethical Hacking Training!) // Free Ethical Hacking course // Free Ethical Hacking course: https://skillsforall.com/course/ethic... // Talos Report // 2024 Q1 Trends: https://blog.talosintelligence.com/ta... These are the threats you need to be aware of in 2024 from the Talos Report: * Talos IR also observed a variety of threats in engagements, including data theft extortion, brute-force activ- ity targeting VPNs, and the previously seen commodity loader Gootloader. * Talos IR responded to new variants of Phobos and Akira ransomware for the first time this quarter as well as the previously seen LockBit and Black Basta ransomware operations. * A recent Talos IR engagement suggests that Akira has returned to using encryption as an additional extortion method, now deploying a multipronged attack strategy to target Windows and Linux ma- chines. * Security researchers discovered an MFA bypassing phishing kit called “Tycoon 2FA” that has since become one of the most widespread phishing kits. However, this has yet to appear in any Talos IR engagements. Firewalls getting hacked: ArcaneDoor - New espionage-focused campaign found targeting perimeter network devices: https://blog.talosintelligence.com/ar... AI voice cloning: The use of voice cloning of voice mails to sound authentic. Attackers use voice clones to phone help desk and reset passwords etc. 2FA is a major issue: "Users accepting unauthorized MFA push notifications was the top observed security weakness, accounting for 25 percent of engagements this quarter. The lack of proper MFA implementation closely followed, accounting for 21 percent of engagements, a 44 percent decrease from the previous quarter" // Martin Lee’s SOCIAL // Twitter / X: / mlee_security LinkedIn: / martinlee Talos Blog: http://blogs.cisco.com/tag/trac/ Security Website: https://sec.cloudapps.cisco.com/secur... Cisco Blog: https://blogs.cisco.com/author/martinlee // Book // Cyber Threat Intelligence by Martin Lee: USA: https://amzn.to/4dJ2LQj UK: https://amzn.to/3K3TqVH // Articles MENTIONED // Talos Incident Response Threat Summary for Jan- March 2024: https://blog.talosintelligence.com/co... // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MY STUFF // https://www.amazon.com/shop/davidbombal Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #ai #iphone #android
undefined
May 1, 2024 • 1h 3min

#467: Your VPN won't protect you 😱

Rob Braxman, a public interest hacker and technologist, shares compelling insights on the dangers of mass surveillance and digital manipulation. He discusses how machines are already influencing our lives and warns against relying solely on VPNs for privacy. Braxman highlights the concerning reality that technology, like Neuralink, could turn our world into a Skynet scenario. Through his expertise, he emphasizes the importance of awareness and proactive measures to safeguard personal privacy in an increasingly monitored society.
undefined
May 1, 2024 • 38min

#466: The new AI Cyber Defense you need to know about

Is this the beginning of a new type of firewall that will replace or augment traditional firewalls? Is AI now eating firewalls; and will we still be using them in future? Big thank you to Cisco for sponsoring this video and my trip to McLaren. // Jeetu Patel’s SOCIAL// LinkedIn: / jeetupatel X: / jpatel41 Cisco Newsroom: https://newsroom.cisco.com/c/r/newsro... // Tom Gillis’ SOCIAL // LinkedIn: / tomgillis1 X: https://x.com/_tomgillis Cisco Newsroom: https://newsroom.cisco.com/c/r/newsro... // Craig Connor's SOCIALS // LinkedIn: / craigconnors X: https://x.com/egregious Cisco: https://blogs.cisco.com/author/connorsc // Article REFERENCE // https://venturebeat.com/security/new-... // Book REFERENCE // Learning eBPF by Liz Rice: USA: https://amzn.to/4d2OI7V UK: https://amzn.to/49Kan1R // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #firewall #hacker #cybersecurity
undefined
May 1, 2024 • 58min

#465: Next Gen Hackers protecting our world

A big shoutout to TCM Security for sponsoring this video. Register now to receive a 50% discount on your first month at the TCM Security Academy, potentially making your most significant step toward a career in ethical hacking. Go here: https://davidbombal.wiki/3vQsqWm Farah works at Meta and shares her amazing story of going from studying mass media, to hacking and now working at Meta. Did you know that Facebook and Meta have a bug bounty program that allows you to legally hack them and get paid? Go here: / whitehat // Farah Hawa’s SOCIAL// YouTube: / @farahhawa LinkedIn: / farah-hawa-a012b8162 X: https://x.com/farah_hawaa Instagram: / farah_hawaa // Resources REFERENCE // YouTube videos: 2023 Path to Hacking Success: • 2023 Path to Hacking Success: Top 3 B... Bug Bounty: Get paid to hack PayPal and TikTok // Featuring Nahamsec: • Bug Bounty: Get paid to hack PayPal a... My updated bug bounty resources: • my updated bug bounty resources YouTube channels: thenewboston: / @thenewboston Websites: hackerone: https://www.hackerone.com/ hacker101: https://www.hacker101.com/ Burp Suite on PortSwigger: https://portswigger.net/support/burp-... PortSwigger Web Security Academy: https://portswigger.net/web-security Firefox Source Docs: https://developer.mozilla.org/en-US/ Pentester Land: https://pentester.land/ Infosec: https://infosec-conferences.com/ Vickie Li Blog: https://vickieli.dev/ Subfinder: https://github.com/projectdiscovery/s... Sublist3r: https://github.com/aboul3la/Sublist3r Frida: https://frida.re/ Meta Bug Bounty Program: / whitehat Books: Real World Bug Hunting by Peter Yaworski USA: https://amzn.to/3JmRven UK: https://amzn.to/4d3S5M0 Bug Bounty Bootcamp by Vickie Li USA: https://amzn.to/3xGa4rz UK: https://amzn.to/49PwPa0 // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #facebook #hack #hacking
undefined
Apr 22, 2024 • 1h 40min

#464: Black Hat Bash: Bash Scripting for Hackers and Pentesters (Bonus: GraphQL and Drone hacking)

Big thanks to Brilliant for sponsoring this video! To try everything Brilliant has to offer for free for a full 30 days and 20% discount visit: https://Brilliant.org/DavidBombal I interview Dolev Farhi and Nick Aleks - the authors of Black Hat Bash and Black Hat GraphQL. Why should you learn either of these? Good reasons including $50K bug bounties :) // Books // Black Hat Bash: USA: https://amzn.to/3JebZWJ UK: https://amzn.to/3PXnk1i Black Hat GraphQL: USA: https://amzn.to/43Y3Ork UK: https://amzn.to/3xtle2J Hacking API’s by Corey J Ball: https://amzn.to/3TQnp89 US and https://amzn.to/3vXYQxX UK // Dolev Farhi’s SOCIAL// GitHub: https://github.com/dolevf X: https://x.com/dolevfarhi // Nick Aleks’ SOCIAL // X: https://x.com/nick_aleks LinkedIn: / nick-aleks-2b35389 GitHub: https://github.com/nicholasaleks // Source LINK // https://github.com/nicholasaleks/Damn... // YouTube videos REFERENCE // Free API Hacking course!: • Free API Hacking course! Free Hacking API courses (And how to use AI to help you hack): • Free Hacking API courses (And how to ... // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com Disclaimer: This video is for educational purposes only. Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
undefined
Mar 28, 2024 • 1h 54min

#463: Network Chuck Hacked YouTube! Learn how RIGHT NOW!!

Network Chuck hacked the YouTube algorithm and has one of the best tech YouTube channels! We can all learn so much from him and his journey. From selling toilets to millions of YouTube subscribers. Learn from one of the best! A big shoutout to Network Chuck Coffee and The Network Chuck Academy for sponsoring this video: https://store.networkchuck.com/ and https://academy.networkchuck.com/ Thanks for the coffee Chuck! // Network Chuck’s SOCIAL// YouTube: / @networkchuck LinkedIn: / chuckkeith X: https://x.com/networkchuck Instagram: / networkchuck Twitch: / networkchuck // Video REFERENCE // Network Chuck Livestream: How I make videos: • how i make videos // Resources REFERENCE // YouTube channels: Jorge Almazan: / jorgealmazan CBT Nuggets: / @cbtnuggets Gary Vee: / @garyvee Fireship: / @fireship Ali Abdaal: / @aliabdaal John Hammond: / @_johnhammond Jeff Geerling: / @jeffgeerling Lawrence Systems: / @lawrencesystems Jeremy’s IT Lab: / @jeremysitlab Mr Beast: / @mrbeast Books: *The 4-Hour workweek by Timothy Ferriss: Amazon: https://amzn.to/3xdl7rO Amazon UK: https://amzn.to/3IQ7Wjo Feel Good Productivity by Ali Abdaal: Amazon: https://amzn.to/3Pwjfkm Amazon UK: https://amzn.to/3VAIBBg Steal like an artist by Austin Kleon: Amazon: https://amzn.to/3VsLap0 Amazon UK: https://amzn.to/3PvQzYN UK Atomic Habits by James Clear: Amazon: https://amzn.to/3vmhjnE Amazon UK: https://amzn.to/4aomD8P Building a second brain by Tiago Forte: Amazon: https://amzn.to/49YJ2Ka Amazon UK: https://amzn.to/4cuzbxi The ruthless elimination of hurry by John Mark Comer: Amazon: https://amzn.to/4aqYsa6 Amazon UK: https://amzn.to/3VwBc66 It doesn’t have to be crazy at work by Jason Fried and David Heinemeier: Amazon: https://amzn.to/4a2gFuN Amazon UK: https://amzn.to/3VMhgwr // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only.
undefined
Mar 22, 2024 • 34min

#462: AI just replaced us with Devin... seriously? Dr Chuck!

In this discussion, Dr. Chuck, an expert on software engineering and AI, shares insights on whether AI can truly replace programmers, focusing on the recent Devin AI claims. He emphasizes the hype surrounding tech innovations and the evolving roles of programmers, especially in India. The conversation covers the limitations of AI in solving complex problems and the essential human creativity needed in programming. Dr. Chuck advocates for mastering programming fundamentals, advocating for deeper understanding over surface-level skills.
undefined
Mar 19, 2024 • 55min

#461: Hackers remotely hack millions of cars!

Sam and his friends hack Scooters, Routers, Domain Providers and lots of cars: Ferrari, Porsche. BMW, Rolls Royce, Kia and many more! Get Proton VPN for free: https://davidbombal.wiki/protonvpn3 Big thanks to Proton for Sponsoring the video! // Sam’s SOCIAL// X: https://x.com/samwcyo Website: https://samcurry.net/ Blog: https://samcurry.net/blog/ Car hacking: https://samcurry.net/web-hackers-vs-t... // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #cybersecurity #hack #hacking
undefined
13 snips
Mar 18, 2024 • 27min

#460: You sure your WiFi is secure?

The podcast explores the progression of WiFi security protocols, from WEP to WPA3. It discusses the importance of encryption, vulnerabilities of older methods, and benefits of WPA3. The podcast also delves into WiFi frequency bands, evolution of WiFi technology from 6E to potential versions like WiFi 7 and 8, and the impact of client devices on network performance.
undefined
16 snips
Mar 18, 2024 • 40min

#459: Flipper Zero vs "Proper" Hacking Tools

Discussion on using Flipper Zero for hacking, comparison with other tools like HackRFOne, RTL-SDR, and LimeSDR. Importance of logic skills, impact of SDR hacking in cybersecurity, exploring radio signals, and upcoming classes on satellite hacking. Delving into SDR devices, antennas, intercepting signals from vehicles and airplanes. Training individuals from governments on cybersecurity, sharing knowledge on advanced hacking techniques, and security issues in satellite communication.

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app