ShadowTalk: Powered by ReliaQuest

ShadowTalk: Powered by ReliaQuest

Download on the App Store

ShadowTalk: Powered by ReliaQuest episodes

  • Weekly: Google Releases Supply-Chain Framework, New NATO Agreements, and More!
    ShadowTalk hosts Stefano, Chris, and Kim, bring you the latest in threat intelligence. This week they cover:- Kim dives into Google’s new Supply Chain Attack framework - how will it operate?- Chris discusses South Korea's energy research institute networks being compromised by North Korean threat actors - how did they gain access?- The team talk new NATO agreements that put cybersecurity at the forefrontGet this week’s intelligence summary at: https://resources.digitalshadows.com/digitalshadows/weekly-intelligence-summary-25-june ***Resources from this week’s podcast***Google Supply Chain Attach Framework - https://security.googleblog.com/2021/06/introducing-slsa-end-to-end-framework.html Supply Chain Awareness: https://www.sonatype.com/hubfs/Corporate/Software%20Supply%20Chain/2020/SON_SSSC-Report-2020_final_aug11.pdf South Korea Energy Compromise: https://www.bleepingcomputer.com/news/security/south-koreas-nuclear-research-agency-hacked-using-vpn-flaw/ VPN Attack Study: https://www.helpnetsecurity.com/2021/06/15/vpn-attacks-up/ NATO Agreements: https://www.nytimes.com/2021/06/15/world/europe/biden-putin-cyberweapons.html Intel Requirements Blog: https://www.digitalshadows.com/blog-and-research/lets-talk-about-intel-requirements/ Threat Actors Blog: https://www.digitalshadows.com/blog-and-research/threat-actors-living-off-the-land/Banned From Cybercriminal Forums Blog: https://www.digitalshadows.com/blog-and-research/why-do-users-get-banned-from-cybercriminal-forums/ Also, don’t forget to reach out to - [email protected]
    30 min
  • Special: Pulsedive Founders Dan and Grace Talk Origins, IOCs, and More
    Digital Shadows CISO Rick and Senior Cyber Threat Intel Analyst Sean Nikkel host this edition of ShadowTalk. They're joined by special guests Dan Sherry and Grace Chi, founders of Pulsedive. They discuss:-Dan & Grace's origin stories and how Pulsedive came to be -Grace's LinkedIn “Sides of Cyber” campaign, promoting unknown talents and how they enrich people's lives-IOCs aren't dead - how IOCs can be leveraged as part of a broader program-How to kick the tires on Pulsedive - they even include free API access ***Resources from this special podcast***Find Dan on Twitter: https://twitter.com/netbroom Find Dan on LinkedIn: https://www.linkedin.com/in/netbroom/ Find Grace on Twitter: https://twitter.com/euphoricfall Find Grace on LinkedIn: https://www.linkedin.com/in/graceschi/ Company Homepage: https://pulsedive.com/about/
    43 min
  • Weekly: VPN Vulnerabilities, EA Gets Attacked, Plus Clop Deals With Affiliate Arrests
    ShadowTalk hosts Sean, Ivan, and Charles bring you the latest in threat intelligence. This week they cover:- The team discusses the most recent EA breach - what’s the history of attacks against software/game developers?- Charles dives into the latest on VPN vulnerabilities - why does this problem persist? - Ivan talks about Clop arrests - how big of a player is Clop in the world of cyber crime?- Predictions for the ransomware scene in the future - can we expect more intervention by law enforcement? Get this week’s intelligence summary at: https://resources.digitalshadows.com/digitalshadows/weekly-intelligence-summary-18-june ***Resources from this week’s podcast***EA Breach: https://www.vice.com/en/article/7kvkqb/how-ea-games-was-hacked-slack https://www.vice.com/en/article/wx5xpx/hackers-steal-data-electronic-arts-ea-fifa-source-code VPN Vulnerabilities: https://apnews.com/article/government-and-politics-hacking-technology-business-7350235e07d46ba5afc1238b553ea4b9 Clop arrests: https://krebsonsecurity.com/2021/06/ukrainian-police-nab-six-tied-to-clop-ransomware/#more-55973 Euro 2020 blog - https://www.digitalshadows.com/blog-and-research/cyber-threats-to-the-uefa-euro-2020-championship/ Let’s Talk About Intel Requirements blog - https://www.digitalshadows.com/blog-and-research/lets-talk-about-intel-requirements/ Dark Web Monitoring Blog https://www.digitalshadows.com/blog-and-research/lets-talk-about-intel-requirements/ Also, don’t forget to reach out to - [email protected]
    21 min
  • Special: Anomali’s AJ Nash Talks Origin Story, Building Threat Intel Teams, and More!
    Digital Shadows CISO Rick and Senior Cyber Threat Intel Analyst Sean host this guest edition of ShadowTalk. Anomali's Sr. Director of Cyber Intelligence Strategy, AJ Nash, joined them to discuss:- AJ's origin story with the U.S. Air Force - AJ's lessons from building threat intelligence teams - The need for intelligence leaders to be more strategic and move beyond IOCs and the SOC - AJ's new blog where he proposed the Chief Intelligence Officer (CINO)***Resources from this special podcast***Find AJ on LinkedIn: https://www.linkedin.com/in/nashaj/Rise of the Chief Intelligence Officer (CINO): https://www.anomali.com/blog/rise-of-the-chief-intelligence-officer-cino
    52 min
  • Weekly: Chinese Cyber Espionage, GitHub Takedowns, and EURO 2020 Predictions
    ShadowTalk hosts Stefano, Adam, Chris, and newcomer, Rory, bring you the latest in threat intelligence. This week they cover:-Adam takes us through the latest cyber espionage campaigns attributed to Chinese-state-sponsored APT groups-Rory discusses a sophisticated law enforcement campaign targeting criminal syndicates all over the world-Chris dives into the new GitHub policies - what led to these new guidelines?-The team talks about updates on the Colonial Pipeline incident - what’s the latest?-Plus, the group makes EURO 2020 predictionsGet this week’s intelligence summary at: https://resources.digitalshadows.com/digitalshadows/weekly-intelligence-summary-11-june ***Resources from this week’s podcast***SharpPanda/Chinese APT - https://research.checkpoint.com/2021/chinese-apt-group-targets-southeast-asian-government-with-previously-unknown-backdoorLaw Enforcement Op - https://www.bleepingcomputer.com/news/security/fbi-and-afp-created-a-fake-encrypted-chat-platform-to-catch-criminals/ GitHub Takedown Policy: https://www.bleepingcomputer.com/news/security/githubs-new-policies-allow-removal-of-poc-exploits-used-in-attacks Colonial Updates: https://www.theverge.com/2021/6/5/22520297/compromised-password-reportedly-allowed-hackers-colonial-pipeline-cyberattack https://www.justice.gov/opa/pr/department-justice-seizes-23-million-cryptocurrency-paid-ransomware-extortionists-darkside Crypto Blog: https://www.digitalshadows.com/blog-and-research/cryptocurrency-attacks-to-be-aware-of-2021/ Extortion Blog: https://www.digitalshadows.com/blog-and-research/the-business-of-extortion-how-ransomware-makes-money/ Cyber Threats to EURO 2020: https://www.digitalshadows.com/blog-and-research/cyber-threats-to-the-uefa-euro-2020-championship/ Also, don’t forget to reach out to - [email protected]
    57 min
  • Weekly: Nobelium Attacks, VMWare Exploits, and the Biden Administration’s Letter on Ransomware
    ShadowTalk hosts Sean, Alec, Charles, and Digital Shadows CISO, Rick Holland, bring you the latest in threat intelligence. This week they cover:- Alec dives into Nobelium - who are they and what happened in the latest attack?- Charles takes us through VMWare exploits - how does it compare to earlier vulnerabilities?- Rick discusses the Biden Administration’s open letter to business leaders on the state of ransomware - Plus, check out our latest content including thoughts on the 2021 Verizon DBIRGet this week’s intelligence summary at: https://resources.digitalshadows.com/digitalshadows/weekly-intelligence-summary-04-june ***Resources from this week’s podcast***Nobelium: https://www.techrepublic.com/article/solarwinds-hackers-resurface-to-attack-government-agencies-and-think-tanks/ VMWare: https://arstechnica.com/gadgets/2021/05/vulnerability-in-vmware-product-has-severity-rating-of-9-8-out-of-10/ https://www.vmware.com/security/advisories/VMSA-2021-0010.html President’s Note on Ransomware Threats: https://www.documentcloud.org/documents/20796934-memo-what-we-urge-you-to-do-to-protect-against-the-threat-of-ransomwareCyber Attacks: The Problem with Attribution and Response Blog: https://www.digitalshadows.com/blog-and-research/cyber-attacks-the-challenge-of-attribution-and-response/ Verizon DBIR Perspective Blog: https://www.digitalshadows.com/blog-and-research/the-top-three-cybercrime-takeaways-from-the-2021-verizon-dbir/ Ransomware and Law Firms Blog: https://www.digitalshadows.com/blog-and-research/ransomware-and-the-legal-services-sector/ Jeff Stone Podcast: https://resources.digitalshadows.com/threat-intelligence-podcast-shadowtalk/special-jeff-stone-discusses-his-origin-story-interviewing-cybercriminals-and-more Also, don’t forget to reach out to - [email protected]
    24 min
  • Special: The State of the APAC Cyber Threat Landscape
    ShadowTalk hosts Stefano, Adam, and Xue bring you the latest in threat intelligence for the APAC region. They cover:- Xue take us through how the APAC threat landscape has changed in the last 18 months- What are the prominent ransomware and APT groups and what are they up to?- The team discusses how cybersec institutions are using new regulations to offset some traditional challenges- Adam talks about the Tokyo 2020 threat landscape and how it's been shaped by the event postponement due to COVID-19***Resources from this week’s podcast***State of APAC: https://www.paloaltonetworks.com/blog/2020/03/policy-asia-pacific/ https://techwireasia.com/2019/10/cybersecurity-customer-experience-trust-asia-apac/ https://techwireasia.com/2021/03/apac-is-in-need-for-more-cybersecurity-experts/ https://www.zdnet.com/article/colonial-pipeline-attack-used-to-justify-australias-critical-infrastructure-bill/ https://www.zdnet.com/article/security-crucial-as-5g-connects-more-industries-devices/ https://www.zdnet.com/article/apac-firms-face-growing-cyberattacks-take-more-than-a-week-to-remediate/ Covid-19 and APAC Cyber Security: https://www.computerweekly.com/news/252494801/APAC-firms-grapple-with-cyber-security-amid-pandemicAlso, don’t forget to reach out to - [email protected]
    52 min
  • Weekly: Drug Kingpin Taken Down by Cheese and Ransomware Makes a Comeback
    ShadowTalk hosts Stefano, Adam, Kim, and Dylan bring you the latest in threat intelligence. This week they cover:- Dylan discusses how cheese was the downfall of a drug dealer in the UK and how a cybercriminal messaging forum contributed- Kim talks ransomware - how ransom demands stole the spotlight from supply-chain attacks- Avaddon victims refuse to pay ransom demands - what happened?- Adam dives into politically motivated ransomware Get this week’s intelligence summary at: https://resources.digitalshadows.com/digitalshadows/weekly-intelligence-summary-28-may ***Resources from this week’s podcast***Stilton Incident: https://en.wikipedia.org/wiki/Geronimo_Stilton https://www.theguardian.com/food/2021/may/24/feeling-blue-drug-dealers-love-of-stilton-leads-to-his-arrest Politically Motivated Ransomware: https://assets.sentinelone.com/sentinellabs/evol-agrius MTNOW: https://blog.malwarebytes.com/cybercrime/malware/2021/05/bizarro-a-banking-trojan-full-of-nasty-tricks/ MTTPOTW: https://attack.mitre.org/techniques/T1568/002/ FUNNIES: https://www.runnersworld.com/runners-stories/a32433537/strava-art/ Cybercriminal Forum Death Blog: https://www.digitalshadows.com/blog-and-research/how-cybercriminal-platforms-meet-their-end/ Intelligence Cycle Blog: https://www.digitalshadows.com/blog-and-research/how-the-intelligence-cycle-can-help-defend-against-ransomware-attack/ What We’re Reading Blog: https://www.digitalshadows.com/blog-and-research/what-were-reading-this-month-may-2021/ Also, don’t forget to reach out to - [email protected]
    46 min
  • Special: Jeff Stone Discusses His Origin Story, Interviewing Cybercriminals, and More!
    Digital Shadows CISO Rick hosts this edition of ShadowTalk. He’s joined by special guest and friend Jeff Stone, Editor at CyberScoop News. They discuss: - Jeff's origin story - Parallels between journalism and threat intelligence - How journalists validate sources - Why "It's better to be right than first"- The go-to defense lawyer for Russian and Eastern European cybercriminals- The nuance around interviewing cybercriminals***Resources from this special podcast*** Find Jeff on Twitter: https://twitter.com/jeffstone500 CyberScoop:https://www.cyberscoop.com/ https://twitter.com/CyberScoopNews CyberScoop CyberTalks Virtual Summit https://www.cyberscoop.com/events/cybertalks/ "How Arkady Bukh, a New York-based immigrant from the former Soviet bloc, emerged as the go-to defense lawyer for the cybercrime underworld."https://www.cyberscoop.com/story/arkady-bukh-man-in-the-middle/
    46 min

About ShadowTalk: Powered by ReliaQuest

From the publisher's feed

Want to hear what industry experts really think about the cyber threats they face? ShadowTalk is a weekly cybersecurity podcast, made by practitioners for practitioners, featuring analytical…

More shows like ShadowTalk: Powered by ReliaQuest

Hacked by Hacked

Hacked

193 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,011 Listeners

WSJ Tech News Briefing by The Wall Street Journal

WSJ Tech News Briefing

1,644 Listeners

Risky Business by Risky Business Media

Risky Business

374 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

650 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,027 Listeners

Click Here by Recorded Future News

Click Here

418 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,061 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

179 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

191 Listeners

True Spies: Espionage | Investigation | Crime | Murder | Detective | Politics by SPYSCAPE

True Spies: Espionage | Investigation | Crime | Murder | Detective | Politics

1,943 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

137 Listeners

Cyber Hack by BBC World Service

Cyber Hack

1,594 Listeners

Risky Bulletin by Risky Business Media

Risky Bulletin

46 Listeners

The Economics Show by Financial Times

The Economics Show

139 Listeners