Security Explained

Security Explained

By Chris Grayson, Drew Porter, Logan LambTechnologyEducationGovernment
Download on the App Store

Security Explained episodes

  • Security In The News May 2022

    We cover 3 security related news events as well as 1 space related news event in this weeks episode. 
    From ransomware to NASA sending nudes into space, get your download of news that sparked our interest in this episode. 

    42 min
  • Radio Security & Ukraine

    Join us as we discuss the black magic of radio communications! What is a radio? Why do phones have so many of them? After covering the basics of radio  we delve into radio security (confidentiality/availability/integrity) and its implications with the war in Ukraine.

    1 hr 4 min
  • Privacy Rights and Legislation (CCPA & GDPR)

    How inclined are you to use tobacco? What were your salaries at your previous jobs? Your family and friends may not know, but data brokers sure do!

    Join us as we discuss CCPA and GDPR, two foundational privacy laws which lay the groundwork for taking back our privacy. We discuss actions citizens of California and EU can take to exercise the rights afforded to them under their respective laws.

    Later in the conversation we discuss privacy as a human right, the impact of surveillance capitalism on our everyday actions, and possible ways of unwinding the assimilation of your private data into large machine learning models.

    Links from the show:
    https://www.wired.com/story/verizon-user-privacy-settings/
    https://www.oag.ca.gov/privacy/ccpa
    https://gdpr.eu/

    53 min
  • Oofta - The Okta Breach

    It's been a bit over a week since some troublesome photos were posted to Twitter that appeared to show a breach of Okta's administrative portal. In the days since there have been a number of statements from Okta that leave us... disappointed to say the least. When you're such a critical part of modern digital infrastructure (and a security product to boot) one would hope that a breach and the remediation process would be handled with diligence and care. That doesn't seem to be the case here.

    Join us as we talk about Oofta, our new tag line for the Okta breach.

    - Okta "We Made a Mistake" - https://www.bleepingcomputer.com/news/security/okta-we-made-a-mistake-delaying-the-lapsus-hack-disclosure/
    - Okta Breach FAQ - https://support.okta.com/help/s/article/Frequently-Asked-Questions-Regarding-January-2022-Compromise?language=en_US
    - Mandiant Forensic Report for Okta Breach - https://twitter.com/BillDemirkapi/status/1508527487655067660
    - KrebsOnSecurity A Closer Look at the LAPSUS Group - https://krebsonsecurity.com/2022/03/a-closer-look-at-the-lapsus-data-extortion-group/

    58 min
  • Electronic Warfare

    It's been a few weeks since the start of the Russian invasion of Ukraine. Throughout the war we have seen repeated examples of what it means to be engaged in a 21st century war. In this episode we dive in to some of the electronic warfare that we've observed so far coming from both sides of the conflict. It's no exaggeration to say that there have been a number of surprises in a short amount of time.

    Links from the show:

    - Generations of Warfare - https://en.wikipedia.org/wiki/Generations_of_warfare
    - Network Battalion 65 Twitter - https://twitter.com/xxnb65
    - Live UA Map - https://liveuamap.com/

    1 hr
  • Crypto Market Hacks w/ Royal Rivera

    Today we have the pleasure of speaking with Royal Rivera, CCO of HaasOnline. We discuss some of the major hacks and current cases in the Crypto space. 
    HAAS Online
    https://www.haasonline.com/

    4.5 Billion of Stolen Crypto 
    https://www.justice.gov/opa/pr/two-arrested-alleged-conspiracy-launder-45-billion-stolen-cryptocurrency


    Open Seas Social Engineering Hack
    https://threatpost.com/nft-investors-lose-1-7m-in-opensea-phishing-attack/178558/

    Bitfinex Exchange Hack in Hong Kong
    https://fortune.com/2016/08/03/bitcoin-stolen-bitfinex-hack-hong-kong/

    SOL Wormhole Hack
    https://www.cnbc.com/2022/02/02/320-million-stolen-from-wormhole-bridge-linking-solana-and-ethereum.html

    Crypto CEOs testify before lawmakers on digital assets — 12/8/21
    https://www.youtube.com/watch?v=F_kZELcynKQ

    Rap video from 4.5 Billion Dollars Defendent (NSFW, and terrible)
    https://www.youtube.com/watch?v=7jlSHGAem6g

    1 hr 3 min
  • Lockpicking, Covert Entry, & TOOOL w/ Deviant Ollam

    Today we have Covert Entry expert Deviant Ollam to talk about physical security, how he got into the industry, his stories from in the field as a Red Teamer, and how he is looking to change a phrase that many have adopted in the industry. 

    https://deviating.net/

     

    YouTube:

    https://www.youtube.com/user/DeviantOllam 

     

    Twitter:

    https://twitter.com/deviantollam

     

    Instagram:

    https://instagram.com/deviantollam

     

    GitHub:

    https://github.com/deviantollam

     

    Trainings:

    https://www.redteamalliance.com/RTCG.html

    46 min
  • A Journey in Infosec w/ Samy Kamkar

    Hello and welcome back!

    It's been a bit of a hiatus for us here at Security Explained, but we're BACK in action and kicking things off with a casual conversation with our good friend Samy Kamkar.

    Samy has been a staple in the infosec community for years and even has a worm named after him (the Samy Worm!). He's got a list of wild projects longer than most resumes and has recently been part of an acquisition in his role at OpenPath.

    Join us for a fun conversation with one of the sharpest hackers you're likely to meet!

    Samy Kamkar
    https://samy.pl
    https://www.openpath.com/
    https://twitter.com/samykamkar

    57 min
  • Log4j Holiday Special!

    We're currently on an extended break between seasons 3 and 4 but LO AND BEHOLD the Internet has given us an early Christmas (non)gift .

    Log4j has been all over the news recently as one of the most impactful vulnerabilities disclosed in recent memory. From AWS to GCP, Cloudflare to DigitalOcean, the Log4shell vulnerability is forcing all manners of security teams to stay up late patching their systems.

    Join us in this impromptu dive into what is arguably the most impactful vulnerability of the last decade!

    51 min
  • Security Research v I - IPv666, Ubuntu Phones, and OpenBTS OH MY!

    In this final episode of our third season we take the time to chat about a topic near and dear to our hearts - security research! We each picked one of our favorite projects to discuss, ranging from enumerating IPv6 addresses on the Internet to hacking the fledgling Ubuntu mobile phone to Drew's mischievous habits spinning up his own cellular base stations. We've mentioned security research time and again on the show, but this is the first time that we're diving into specific research that has played a significant role in our respective lives and careers.

    Thank you so much for joining us on our journey thus far and we can't wait to come back in season 4 with even better tips and tricks!

    1 hr

About Security Explained

From the publisher's feed

Welcome to Security Explained, where we strive to make the complex realm of cyber security better understood by everyone. Join our three hackers / hosts Christopher Grayson, Drew Porter, and Logan…

More shows like Security Explained

The Spear by Modern War Institute at West Point

The Spear

618 Listeners

The Weekend Warriors Home Improvement Show by PARR

The Weekend Warriors Home Improvement Show

8 Listeners