Helping you navigate the treacherous terrain of InfoSec. Black Hills Information Security specializes in penetration testing, red teaming, and threat hunting.
Talkin’ About Infosec News – 1/31/2024
The post Talkin’ About Infosec News – 1/31/2024 appeared first on Black Hills Information Security.
1/31/2024 • 1 hour, 8 minutes, 57 seconds
Talkin’ About Infosec News – 1/24/2024
The post Talkin’ About Infosec News – 1/24/2024 appeared first on Black Hills Information Security.
1/24/2024 • 1 hour, 1 minute, 51 seconds
Talkin’ About Infosec News – 1/16/2024
The post Talkin’ About Infosec News – 1/16/2024 appeared first on Black Hills Information Security.
1/16/2024 • 57 minutes, 20 seconds
Talkin’ About Infosec News – 1/10/24
The post Talkin’ About Infosec News – 1/10/24 appeared first on Black Hills Information Security.
1/10/2024 • 55 minutes, 58 seconds
Talkin’ About Infosec News – 12/21/2023
The post Talkin’ About Infosec News – 12/21/2023 appeared first on Black Hills Information Security.
12/21/2023 • 1 hour, 6 minutes, 43 seconds
Talkin’ About Infosec News – 12/15/2023
The post Talkin’ About Infosec News – 12/15/2023 appeared first on Black Hills Information Security.
12/15/2023 • 1 hour, 7 minutes, 43 seconds
Talkin’ About Infosec News – 12/06/2023
The post Talkin’ About Infosec News – 12/06/2023 appeared first on Black Hills Information Security.
12/6/2023 • 1 hour, 10 minutes, 13 seconds
Talkin’ About Infosec News – 11/30/2023
The post Talkin’ About Infosec News – 11/30/2023 appeared first on Black Hills Information Security.
11/29/2023 • 1 hour, 2 minutes, 44 seconds
Talkin’ About Infosec News – 11/22/2023
The post Talkin’ About Infosec News – 11/22/2023 appeared first on Black Hills Information Security.
11/22/2023 • 1 hour, 3 minutes, 28 seconds
Talkin’ About Infosec News – 11/13/2023
The post Talkin’ About Infosec News – 11/13/2023 appeared first on Black Hills Information Security.
11/16/2023 • 55 minutes, 24 seconds
Talkin’ About Infosec News – 11/10/2023
The post Talkin’ About Infosec News – 11/10/2023 appeared first on Black Hills Information Security.
11/10/2023 • 59 minutes, 41 seconds
Talkin’ About Infosec News – 11/09/2023
The post Talkin’ About Infosec News – 11/09/2023 appeared first on Black Hills Information Security.
11/9/2023 • 59 minutes, 14 seconds
Talkin’ About Infosec News – 11/4/2023
The post Talkin’ About Infosec News – 11/4/2023 appeared first on Black Hills Information Security.
11/4/2023 • 58 minutes, 29 seconds
Talkin’ About Infosec News – 10/10/23
The post Talkin’ About Infosec News – 10/10/23 appeared first on Black Hills Information Security.
10/10/2023 • 1 hour, 3 minutes, 47 seconds
Talkin’ About Infosec News – 10/9/2023
The post Talkin’ About Infosec News – 10/9/2023 appeared first on Black Hills Information Security.
10/9/2023 • 1 hour, 7 minutes, 41 seconds
Special Segment – Cyber Security Career Advice – 9/28/2023
The post Special Segment – Cyber Security Career Advice – 9/28/2023 appeared first on Black Hills Information Security.
9/28/2023 • 26 minutes, 37 seconds
Talkin’ About Infosec News – 9/25/2023
The post Talkin’ About Infosec News – 9/25/2023 appeared first on Black Hills Information Security.
9/27/2023 • 1 hour, 4 minutes, 25 seconds
Talkin’ About Infosec News – 9/18/2023
The post Talkin’ About Infosec News – 9/18/2023 appeared first on Black Hills Information Security.
9/22/2023 • 1 hour, 2 minutes, 16 seconds
Talkin’ About Infosec News – 9/11/2023
The post Talkin’ About Infosec News – 9/11/2023 appeared first on Black Hills Information Security.
9/13/2023 • 1 hour, 3 minutes, 3 seconds
Talkin’ About Infosec News – 8/28/2023
Brought to you by Antisyphon Training — https://www.antisyphontraining.com
8/30/2023 • 57 minutes, 21 seconds
Talkin’ About Infosec News – 8/21/2023
Brought to you by Antisyphon Training — https://www.antisyphontraining.com
8/28/2023 • 59 minutes, 42 seconds
Talkin’ About Infosec News – 8/14/2023
8/21/2023 • 1 hour, 1 minute, 40 seconds
Talkin’ About Infosec News – 8/7/2023
🔵Join us for the Antisyphon Blue Team Summit! https://www.antisyphontraining.com/training/blue-team/2023/06/blue-team-summit-coming-in-august-2023/ Blue Team Summit Coming in August 2023! – Antisyphon Training
8/15/2023 • 59 minutes, 34 seconds
Talkin’ About Infosec News – 7/31/2023
A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories. Brought to you by: /// 📄 Antisyphon Training August 2023 Blue Team Summit: https://www.antisyphontraining.com/training/blue-team/2023/06/blue-team-summit-coming-in-august-2023/ /// 📄 […]
8/2/2023 • 58 minutes, 21 seconds
Talkin’ About Infosec News – 7/26/2023
7/26/2023 • 54 minutes, 17 seconds
Talkin’ About Infosec News – 7/25/2023
7/25/2023 • 56 minutes, 30 seconds
Talkin’ About Infosec News – 7/21/2023
7/21/2023 • 1 hour, 4 minutes, 41 seconds
Talkin’ About Infosec News – 6/27/2023
6/27/2023 • 57 minutes, 12 seconds
Talkin’ About Infosec News – 6/21/2023
6/21/2023 • 56 minutes, 6 seconds
Talkin’ About Infosec News – 6/15/2023
6/15/2023 • 1 hour, 4 minutes, 52 seconds
Talkin’ About Infosec News – 6/9/2023
6/8/2023 • 57 minutes, 58 seconds
Talkin’ About Infosec News – 5/26/2023
5/26/2023 • 1 hour, 4 minutes, 32 seconds
Talkin’ About Infosec News – 5/17/2023
5/17/2023 • 59 minutes, 45 seconds
Talkin’ About Infosec News – 5/11/2023
5/11/2023 • 54 minutes, 12 seconds
Talkin’ About Infosec News – 5/5/2023
5/5/2023 • 1 hour, 1 minute, 49 seconds
Talkin’ About Infosec News – 4/18/2023
4/19/2023 • 59 minutes, 45 seconds
Talkin’ About Infosec News – 4/11/2023
4/11/2023 • 56 minutes, 59 seconds
Talkin’ About Infosec News – 4/5/2023
4/5/2023 • 1 hour, 1 minute, 1 second
Talkin’ About Infosec News – 4/3/2023
4/3/2023 • 1 hour, 2 minutes, 52 seconds
Talkin’ About Infosec News – 3/16/2023
00:00 – PreShow Banter™ — Tossing Money at Problems00:58 – BHIS – Talkin’ Bout [infosec] News 2023-03-1301:41 – Story # 1: Silicon Valley Bank collapse: Treasury, Fed, and FDIC announce […]
3/16/2023 • 1 hour, 36 seconds
Talkin’ About Infosec News – 3/8/2023 (v2)
THIS IS A TEST
3/8/2023 • 1 hour, 7 minutes, 25 seconds
Talkin’ About Infosec News – 3/8/2023
00:00 – PreShow Banter™ — Lil NAS06:52 – BHIS – Talkin’ Bout [infosec] News 2023-03-0608:13 – Story # 1: LastPass says employee’s home computer was hacked and corporate vault takenhttps://arstechnica.com/information-technology/2023/02/lastpass-hackers-infected-employees-home-computer-and-stole-corporate-vault/28:32 […]
3/8/2023 • 1 hour, 7 minutes, 25 seconds
Talkin’ About Infosec News – 3/3/2023
Story # 1: A Basic iPhone Feature Helps Criminals Steal Your Entire Digital Lifehttps://www.wsj.com/articles/apple-iphone-security-theft-passcode-data-privacya-basic-iphone-feature-helps-criminals-steal-your-digital-life-cbf14b1a Story # 1b: Apple’s iPhone Passcode Problem: Thieves Can Ruin Your Entire Digital Life in Minutes […]
3/3/2023 • 58 minutes, 36 seconds
Talkin’ About Infosec News – 2/22/2023
00:00 – PreShow Banter™ — Pop Tart Pizza04:15 – BHIS – Talkin’ Bout [infosec] News 2023-02-2005:39 – Story # 1: Employee data from a major cybersecurity firm posted for sale […]
2/22/2023 • 1 hour, 6 minutes, 56 seconds
Talkin’ About Infosec News – 2/17/2023
00:00 – PreShow Banter™ — Scalping Valentine’s Day Reservations04:13 – BHIS – Talkin’ Bout [infosec] News 2023-06-2305:52 – Story # 1: 5 Chinese companies and a research institute blacklisted by […]
2/17/2023 • 1 hour, 3 minutes, 54 seconds
Talkin’ About Infosec News – 2/13/2023
00:00 – PreShow Banter™ — We’ve got nothing to say03:07 – BHIS – Talkin’ Bout [infosec] News 2023-06-2305:56 – Story # 1: Cybercrime job ads on the dark web pay […]
2/13/2023 • 1 hour, 1 minute, 15 seconds
Talkin’ About Infosec News – 2/3/2023
00:00 – PreShow Banter™ — Woke Up Like This03:20 – BHIS – Talkin’ Bout [infosec] News 2023-01-3005:04 – Story # 1: GoTo says hackers stole customers’ backups and encryption keyhttps://www.bleepingcomputer.com/news/security/goto-says-hackers-stole-customers-backups-and-encryption-key/09:48 […]
00:00 – BHIS – Talkin’ Bout [infosec] News 2022-11-1402:26 – Story # 1: Hackers Dump Australian Health Records Online After Insurer Refuses to Pay Ransom– https://gizmodo.com/hackers-health-info-online-medibank-pay-onion-dark-web-184976074210:04 – Story # 2: TransUnion […]
11/16/2022 • 57 minutes, 54 seconds
Talkin’ About Infosec News – 11/11/2022
00:00 – PreShow Banter™ — A is for All Team00:33 – BHIS – Talkin’ Bout [infosec] News 2022-11-0703:56 – Story # 1: Musk to cut half of Twitter jobs and […]
11/11/2022 • 54 minutes, 50 seconds
Talkin’ About Infosec News – 11/1/2022
00:00 – PreShow Banter™ — Spook Show00:58 – BHIS – Talkin’ Bout [infosec] News 2022-10-3104:00 – Story # 1: OpenSSL warns of critical security vulnerability with upcoming patch– https://www.zdnet.com/article/openssl-warns-of-critical-security-vulnerability-with-upcoming-patch/04:42 – Story […]
11/1/2022 • 45 minutes, 3 seconds
Talkin’ About Infosec News – 10/17/2022
00:00 – PreShow Banter™ — Best WWHF Ever!00:31 – BHIS – Talkin’ Bout [infosec] News 2022-10-1704:55 – Story # 1: The Verge: Cybersecurity Week 2022– https://www.theverge.com/23365380/cybersecurity-week-series-phishing-encryption-device-security07:02 – Story # 2: Google […]
02:28 – Story # 1: American Airlines Breach Exposes Customer and Staff Information– https://www.infosecurity-magazine.com/news/american-airlines-breach-customer/18:59 – Story # 2: London police arrest, charge teen hacking suspect but won’t confirm GTA 6, Uber […]
10/5/2022 • 58 minutes, 13 seconds
Talkin’ About Infosec News – 9/22/2022
9/22/2022 • 51 minutes, 29 seconds
Talkin’ About Infosec News – 9/13/2022
9/13/2022 • 55 minutes, 57 seconds
Talkin’ About Infosec News – 9/9/2022
9/9/2022 • 1 hour, 1 minute, 13 seconds
Talkin’ About Infosec News – 8/26/2022
ORIGINALLY AIRED ON AUGUST 22, 2022 00:00 – PreShow Banter™ — Ralph’s Birthday00:53 – BHIS – Talkin’ Bout [infosec] News 2022-08-2203:27 – Story # 1: PC store told it can’t […]
8/26/2022 • 1 hour, 2 minutes, 17 seconds
Talkin’ About Infosec News – 8/18/2022
ORIGINALLY AIRED ON AUGUST 15, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — Sneaking Candy03:32 – BHIS – Talkin’ Bout [infosec] News 2022-08-1507:06 – Story # 1: […]
8/18/2022 • 1 hour, 24 seconds
Talkin’ About Infosec News – 7/25/2022
ORIGINALLY AIRED ON JULY 25, 2022 Articles discussed in this episode: 00:00 – BHIS – Talkin’ Bout [infosec] News 2022-07-25 03:59 – Story # 1: DOJ seized ransoms paid by […]
8/2/2022 • 1 hour, 3 minutes, 19 seconds
Talkin’ About Infosec News – 7/18/2022
ORIGINALLY AIRED ON JULY 18, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — Talkin’ Bout Audio 07:23 – BHIS – Talkin’ Bout [infosec] News 2022-07-18 09:28 – […]
7/20/2022 • 1 hour, 6 minutes, 13 seconds
Talkin’ About Infosec News – 7/11/2022
ORIGINALLY AIRED ON JULY 11, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — Cons, China, and Florida Man, oh my! 07:03 – Story # 1: North Korean […]
7/15/2022 • 1 hour, 58 seconds
Talkin’ About Infosec News – 6/27/2022
ORIGINALLY AIRED ON JUNE 27, 2022 Articles discussed in this episode: 02:13 – Story # 1: The #1 Period Tracker on the App Store Will Hand Over Data Without a […]
6/30/2022 • 59 minutes, 17 seconds
Talkin’ About Infosec News – 6/20/2022
ORIGINALLY AIRED ON JUNE 20, 2022 Articles discussed in this episode: 00:00 – BHIS – Talkin’ Bout [infosec] News 2022-06-20 01:31 – Story # 1: Internal TikTok Meetings Shows That […]
6/24/2022 • 46 minutes, 10 seconds
Talkin’ About Infosec News – 6/13/2022
ORIGINALLY AIRED ON JUNE 13, 2022 Articles discussed in this episode: 00:00 – BHIS – Talkin’ Bout [infosec] News 2022-06-13 02:26 – Story # 1: Roblox Game Pass store used […]
6/22/2022 • 1 hour, 59 seconds
Talkin’ About Infosec News – 6/6/2022
ORIGINALLY AIRED ON JUNE 6, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — Boat Facts 01:38 – BHIS – Talkin’ Bout [infosec] News 2022-06-06 03:51 – Story […]
6/21/2022 • 57 minutes, 33 seconds
Talkin’ About Infosec News – 5/23/2022
ORIGINALLY AIRED ON MAY 23, 2022 Articles discussed in this episode: 00:00 – BHIS – Talkin’ Bout [infosec] News 2022-05-23 02:38 – Story # 1 – National bank trolls hackers […]
6/20/2022 • 56 minutes, 11 seconds
Talkin’ About Infosec News – 5/16/2022
ORIGINALLY AIRED ON MAY 16, 2022 Articles discussed in this episode: 00:56 – Microsoft’s May Patch Tuesday Updates Cause Windows AD Authentication Errors – https://threatpost.com/microsofts-may-patch-tuesday-updates-cause-windows-ad-authentication-errors/179631/ 08:56 – Update rings for […]
6/7/2022 • 56 minutes, 36 seconds
Talkin’ About Infosec News – 5/9/2022
ORIGINALLY AIRED ON MAY 9, 2022 Articles discussed in this episode: 00:00 – Bud Patches Reporting 02:27 – BHIS – Talkin’ Bout [infosec] News 2022-05-09 03:47 – Story # 1 […]
5/31/2022 • 52 minutes, 1 second
Talkin’ About Infosec News – 4/25/2022
ORIGINALLY AIRED ON APRIL 25, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — Broken Twitter Finger 01:38 – ISO – Talkin’ Bout [infosec] News 2022-04-26 03:08 – […]
5/25/2022 • 55 minutes, 25 seconds
Talkin’ About Infosec News – 4/25/2022
ORIGINALLY AIRED ON APRIL 18, 2022 Articles discussed in this episode: 00:00 – BHIS – Talkin’ Bout [infosec] News 2022-04-18 02:05 – Current Activity | CISA | https://www.cisa.gov/uscert/ncas/current-activity 02:58 – […]
4/25/2022 • 56 minutes, 25 seconds
Talkin’ About Infosec News – 4/12/2022
ORIGINALLY AIRED ON APRIL 11, 2022 Articles discussed in this episode: The US Navy had cybersecurity wrong. Expect change. – https://www.c4isrnet.com/digital-show-dailies/navy-league/2022/04/05/us-navy-had-cybersecurity-wrong-expect-change/ Hackers have found a clever new way to steal […]
4/12/2022 • 1 hour, 2 minutes, 41 seconds
Talkin’ About Infosec News – 4/6/2022
ORIGINALLY AIRED ON APRIL 4, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — Blame it on the Intern 06:24 – Spring Time for Java – https://www.darkreading.com/application-security/zero-day-vulnerability-discovered-in-java-spring-framework 09:10 […]
4/6/2022 • 56 minutes, 10 seconds
Talkin’ About Infosec News – 3/31/2022
ORIGINALLY AIRED ON MARCH 28, 2022 Articles discussed in this episode: 01:42 – Suspected Okta hackers arrested by British police – https://www.reuters.com/world/uk/british-police-say-seven-people-arrested-after-okta-hack-2022-03-24/ 11:16 – A Closer Look at the LAPSUS$ […]
3/31/2022 • 59 minutes, 24 seconds
Talkin’ About Infosec News – 3/30/2022
ORIGINALLY AIRED ON MARCH 22, 2022 Articles discussed in this episode: 00:00 – BHIS – 2022-03-22 Special Newscast –Okta and Microsoft — Everything’s not burning down 10:27 – https://github.com/SigmaHQ/sigma/tree/master/rules/cloud/okta 13:29 […]
3/30/2022 • 49 minutes, 23 seconds
Talkin’ About Infosec News – 3/29/2022
ORIGINALLY AIRED ON MARCH 21, 2022 Articles discussed in this episode: 03:27 – Netflix to clamp down on password sharing – https://about.netflix.com/en/news/paying-to-share-netflix-outside-your-household 10:15 – Ransomeware is still a thing 12:31 […]
3/29/2022 • 46 minutes, 21 seconds
Talkin’ About Infosec News – Special Ukraine Edition – 3/10/2022
ORIGINALLY AIRED ON MARCH 7, 2022 Articles discussed in this episode: 00:08:57 – Hacker Group Anonymous and Others Targeting Russian Data – https://www.websiteplanet.com/blog/cyberwarfare-ukraine-anonymous/
3/10/2022 • 1 hour, 3 minutes, 35 seconds
Talkin’ About Infosec News – 3/4/2022
ORIGINALLY AIRED ON FEBRUARY 28, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — Off-Brand Trickx 00:43 – BHIS – Talkin’ Bout [infosec] News 2022-02-28 02:40 – BHIS […]
3/4/2022 • 56 minutes, 26 seconds
Talkin’ About Infosec News – 2/11/2022
ORIGINALLY AIRED ON FEBRUARY 7, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — I’m a Rocket Mail 01:21 – BHIS – Talkin’ Bout [infosec] News 2022-02-07 02:18 […]
2/11/2022 • 51 minutes, 37 seconds
Talkin’ About Infosec News – 2/4/2022
ORIGINALLY AIRED ON JANUARY 31, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — Legions of the Undead 01:26 – BHIS – Talkin’ Bout [infosec] News 2022-01-31 04:06 […]
2/4/2022 • 1 hour, 1 minute, 42 seconds
Talkin’ About Infosec News – 1/27/2022
ORIGINALLY AIRED ON JANUARY 24, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — The Monkey Dance 00:25 – BHIS – Talkin’ Bout [infosec] News 2022-01-24 01:49 – […]
1/27/2022 • 51 minutes, 22 seconds
Talkin’ About Infosec News – 1/21/2022
ORIGINALLY AIRED ON JANUARY 17, 2022 Articles discussed in this episode: 0:00:00 – PreShow Banter™ — Whose Ears Are Buring? 0:01:06 – BHIS – Talkin’ Bout [infosec] News 2022-01-17 0:02:27 […]
1/21/2022 • 1 hour, 4 minutes, 55 seconds
Talkin’ About Infosec News – 1/14/2022
ORIGINALLY AIRED ON JANUARY 10, 2022 Articles discussed in this episode: 01:58 – Story # 1: WordPress Core Vulnerabilities – https://www.searchenginejournal.com/wordpress-core-vulnerabilities/432042/#close 11:32 – Story # 2: Card-stealing code on over […]
1/14/2022 • 57 minutes, 1 second
Talkin’ About Infosec News – 1/7/2022
ORIGINALLY AIRED ON JANUARY 4, 2022 Articles discussed in this episode: 00:00 – PreShow Banter™ — Who’s Job Is It Anyway? 00:20 – BHIS – Talkin’ Bout [infosec] News 2022-01-04 […]
1/7/2022 • 50 minutes, 17 seconds
Webcast: New Wave of Ransomware Attacks: How did this happen?
This is a special joint webcast from the teams of Black Hills Information Security, Wild West Hackin’ Fest, and Active Countermeasures, presented by John Strand. In this webcast, we cover […]
12/23/2021 • 1 hour, 46 minutes, 54 seconds
Talkin’ About Infosec News – 12/22/2021
ORIGINALLY AIRED ON DECEMBER 20, 2021 Articles discussed in this episode: 00:00 – PreShow Banter™ — Getting Nerdy With It 04:18 – BHIS – Talkin’ Bout [infosec] News 2021-12-20 – […]
12/22/2021 • 57 minutes, 9 seconds
Webcast: Intro to Ransomware and Industrial Control Systems (ICS)
Ransomware attacks have been growing in popularity, especially in critical infrastructure. Due to the importance of critical infrastructure, the need to secure the environments is an impending issue. The technology […]
12/21/2021 • 1 hour, 42 minutes, 36 seconds
Webcast: Hack for Show, Report For Dough: Part 2
At Black Hills Information Security (BHIS), we make our living doing pentesting, but we’ve never once been paid for a pentest. Penetration Testers get paid for their reports. For their […]
12/21/2021 • 1 hour, 59 minutes, 10 seconds
Talkin’ About Infosec News – The Floor is Java – 12/15/2021
ORIGINALLY AIRED ON DECEMBER 13, 2021 00:00 – PreShow Banter™ 09:41 – FEATURE PRESENTATION: The Floor is Java – Log4Shell / Log4J 10:26 – Lets Jump In 11:31 – Oh No… […]
12/15/2021 • 1 hour, 3 minutes, 42 seconds
Talkin’ About Infosec News – 12/09/2021
ORIGINALLY AIRED ON DECEMBER 6, 2021 Articles discussed in this episode: 00:18 – BHIS – Talkin’ Bout [infosec] News 2021-12-06 02:57 – Story # 1: Apple AirTag Car Thefts – […]
12/9/2021 • 58 minutes, 56 seconds
Fixing Content-Security-Policies with Cloudflare Workers
Kent Ickler // Background Over four years ago now, I wrote a blog post on fixing missing Content-Security-Policy by updating configuration on webservers: https://www.blackhillsinfosec.com/fix-missing-content-security-policy-website/. Content-Security-Policies instruct a user’s web browser […]
12/3/2021 • 15 minutes, 39 seconds
Talkin’ About Infosec News – 11/26/2021
ORIGINALLY AIRED ON NOVEMBER 22, 2021 Articles discussed in this episode: Story # 1: Chinese Team Up With Russia To Launch US Cybersecurity Assault – https://hothardware.com/news/chinese-hackers-team-up-with-russian-ransomware-gang Story # 2: The FBI […]
11/26/2021 • 53 minutes, 24 seconds
Talkin’ About Infosec News – 11/17/2021
ORIGINALLY AIRED ON NOVEMBER 15, 2021 Articles discussed in this episode: 00:00 – BHIS – Talkin’ Bout [infosec] News 2021-11-15 02:22 – Story # 1: Robinhood data breach – https://www.bleepingcomputer.com/news/security/robinhood-discloses-data-breach-impacting-7-million-customers/ 07:27 […]
11/17/2021 • 57 minutes, 24 seconds
Talkin’ About Infosec News – 11/12/2021
ORIGINALLY AIRED ON November 08, 2021 Articles discussed in this episode: 00:00 – PreShow Banter™ — God’s Waiting Room 03:08 – BHIS – Talkin’ Bout [infosec] News 2021-11-08 04:50 – […]
11/12/2021 • 43 minutes, 19 seconds
Webcast: How to Share Your Knowledge with Others
Have you ever seen a call for papers for a conference and thought to yourself that you’d like to submit a talk and then immediately thought, oh never mind? Have […]
11/2/2021 • 1 hour, 14 minutes, 6 seconds
Talkin’ About Infosec News – 10/28/2021
ORIGINALLY AIRED ON OCTOBER 25, 2021 Articles discussed in this episode: 01:42 – Story # 1: https://www.bleepingcomputer.com/news/security/fired-it-admin-revenge-hacks-school-by-wiping-data-changing-passwords/ 06:34 – Story # 2: https://krebsonsecurity.com/2021/10/missouri-governor-vows-to-prosecute-st-louis-post-dispatch-for-reporting-security-vulnerability/ 11:50 – Story # 3: https://www.pcgamer.com/hackers-drain-cryptocurrency-accounts-of-thousands-of-coinbase-users/ 23:47 […]
10/28/2021 • 58 minutes, 51 seconds
Talkin’ About Infosec News – 10/19/2021
ORIGINALLY AIRED ON OCTOBER 11, 2021 Articles discussed in this episode: 00:21 – Story # 1: Facebook Aftermath | https://engineering.fb.com/2021/10/05/networking-traffic/outage-details/ 09:17 – Story # 2: Twitch Source Code | https://www.theregister.com/2021/10/06/twitch_data_leak/ […]
10/19/2021 • 50 minutes, 12 seconds
Talkin’ About Infosec News – 10/13/2021
ORIGINALLY AIRED ON OCTOBER 4, 2021 Articles discussed in this episode: 00:57 – Story # 1: Facebook is Burning 22:09 – Story # 2: https://www.bleepingcomputer.com/news/security/voipms-phone-services-disrupted-by-ddos-extortion-attack/ 25:38 – Story # 3: […]
10/13/2021 • 42 minutes, 43 seconds
Talkin’ About Infosec News – 9/29/2021
ORIGINALLY AIRED ON SEPTEMBER 27, 2021 Articles discussed in this episode: 01:20 – Story # 1: https://habr.com/en/post/579714/ 02:14 – Story # 1b: https://therecord.media/researcher-discloses-iphone-lock-screen-bypass-on-ios-15-launch-day/ 02:54 – Story # 1c: https://www.bleepingcomputer.com/news/apple/new-macos-zero-day-bug-lets-attackers-run-commands-remotely/ 04:03 […]
9/29/2021 • 52 minutes, 51 seconds
Webcast: Shellcode Execution with GoLang
In this Black Hills Information Security (BHIS) webcast, we explore using GoLang to author malware with embedded shellcode. GoLang is a Google-authored modern successor language to C/C++. It is multi-platform, […]
9/28/2021 • 1 hour, 3 minutes, 8 seconds
Talkin’ About Infosec News – 9/23/2021
ORIGINALLY AIRED ON SEPTEMBER 20, 2021 Articles discussed in this episode: 00:55 – Story # 1: https://techcrunch.com/2021/09/13/apple-zero-day-nso-pegasus/ 19:45 – Story # 2: https://www.tomshardware.com/news/researchers-find-windows-subsystem-linux-malware 27:45 – Story # 3: https://www.wsj.com/articles/u-s-to-target-crypto-ransomware-payments-with-sanctions-11631885336 41:19 […]
9/23/2021 • 53 minutes
Webcast: The Quest for the Kill Chain Killer Continues
Jordan and Kent have heard from a lot of people that the past Black Hills Information Security (BHIS) webcasts: “Group Policies That Kill Kill Chains” and “Active Directory Best Practices […]
9/22/2021 • 1 hour, 2 minutes, 43 seconds
Talkin’ About Infosec News – 9/17/2021
ORIGINALLY AIRED ON SEPTEMBER 13, 2021 Articles discussed in this episode: 00:00 – BHIS – Talkin’ Bout [infosec] News 2021-09-13 02:59 – Story # 1: https://cyberworkx.in/2021/08/31/authentication-bypass-vulnerability-in-exchange-server/ 04:43 – Story # […]
9/17/2021 • 45 minutes, 8 seconds
Webcast: Getting Started in Blockchain Security and Smart Contract Auditing
Why is blockchain security important? Blockchain usage has exploded since the Bitcoin whitepaper was first published in 2008. Many applications rely on this technology for increased trust and privacy, where […]
9/16/2021 • 1 hour, 50 minutes, 56 seconds
Talkin’ About Infosec News – 9/9/2021
ORIGINALLY AIRED ON SEPTEMBER 7, 2021 Articles discussed in this episode: 02:14 – Story # 1: https://therecord.media/chinese-hackers-behind-july-2021-solarwinds-zero-day-attacks 06:17 – Story # 2: https://www.secureworld.io/industry-news/ciso-lawsuit-solarwinds 08:30 – Story # 3: https://taskandpurpose.com/news/air-force-cybersecurity-nicolas-chaillan/ 10:29 […]
9/9/2021 • 49 minutes, 10 seconds
Talkin’ About Infosec News – 9/3/2021
ORIGINALLY AIRED ON AUGUST 30, 2021 Articles discussed in this episode: 01:38 – Story # 1: https://carbuzz.com/news/tom-cruise-couldnt-stop-thieves-stealing-his-bmw-7-series 14:45 – Story # 2: https://www.vice.com/en/article/jg84yy/data-brokers-netflow-data-team-cymru 23:24 – Story # 3: https://www.reuters.com/technology/exclusive-microsoft-warns-thousands-cloud-customers-exposed-databases-emails-2021-08-26/ 27:37 […]
9/3/2021 • 56 minutes, 57 seconds
Talkin’ About Infosec News – 8/25/2021
ORIGINALLY AIRED ON AUGUST 23, 2021 Articles discussed in this episode: 00:00 – PreShow Banter™ — A Case of the Mondays 04:14 – Talkin’ Bout [InfoSec] News 2021-08-23 05:24 – […]
8/25/2021 • 56 minutes, 40 seconds
Talkin’ About Infosec News – 8/18/2021
ORIGINALLY AIRED ON AUGUST 16, 2021 Articles discussed in this episode: 00:00 – BHIS | Talkin’ Bout News 2021-08-16 01:34 – Story # 1: https://youtu.be/WqD-ATqw3js 05:50 – Story # 2: […]
8/18/2021 • 50 minutes, 53 seconds
Talkin’ About Infosec News – 8/13/2021
Originally Aired on August 10, 2021 Articles discussed in this episode: 00:00 – BHIS | Talkin’ Bout News 2021-08-10 — The Ransomware Intro 03:18 – Story # 1: https://www.eff.org/deeplinks/2021/08/apples-plan-think-different-about-encryption-opens-backdoor-your-private-life 15:58 […]
8/13/2021 • 56 minutes, 53 seconds
Talkin’ About Infosec News – 8/4/2021
Originally Aired on August 2, 2021 Articles discussed in this episode: 00:00 – BHIS | Talkin’ Bout News 2021-08-02 — Gold Foil Hats 05:18 – Story # 1: https://hothardware.com/news/microsoft-printnightmare-hack-grants-windows-admin-privileges 10:40 […]
8/4/2021 • 55 minutes, 41 seconds
Talkin’ About Infosec News – 7/28/2021
Originally Aired on July 26, 2021 Articles discussed in this episode: 00:00 – BHIS | Talkin’ Bout News 2021-07-26 03:54 – Story # 1: https://cyberworkx.in/2021/07/24/new-windows-attack-petitpotam-forces-windows-hosts-to-share-ntlm-hashes/ 18:53 – Story # 2: […]
7/28/2021 • 53 minutes, 27 seconds
Webcast: No SPAN Port? No Tap? No Problem!
We’ve been having a problem with people that want to play with Security Onion or RITA at home. If a home router does not have a mirror port it can […]
7/23/2021 • 1 hour, 5 minutes, 49 seconds
Talkin’ About Infosec News – 7/21/2021
Originally Aired on July 19, 2021 Articles discussed in this episode: 00:00 – BHIS | Talkin’ Bout News 2021-07-19 02:18 – Story # 1: https://github.com/fail2ban/fail2ban/security/advisories/GHSA-m985-3f3v-cwmm 13:15 – Story # 2: […]
7/21/2021 • 54 minutes, 5 seconds
Talkin’ About Infosec News – 7/12/2021
Originally Aired on July 12, 2021 Articles discussed in this episode: 00:00 – BHIS | Talkin’ Bout News 2021-07-12 01:56 – Story # 1: https://www.bleepingcomputer.com/news/security/biden-asks-putin-to-crack-down-on-russian-based-ransomware-gangs/ 03:09 – Russia’s R.A.R.E. Program […]
7/16/2021 • 53 minutes, 9 seconds
Webcast: How to Build a Phishing Engagement – Coding TTP’s
Building a phishing engagement is hard. While the concept is straightforward, real-world execution is tricky. Being successful takes enormous amounts of up-front setup and knowledge in quickly evolving phishing tactics. […]
7/14/2021 • 1 hour, 4 minutes, 55 seconds
The Birth of PreShowBanterCon-A-Thon 2021!™
Join the BHIS Community Discord: https://discord.gg/bhis Music By Beau: https://www.nobandwidth.io 00:00 – 2021-04-01 – PreShow Banter™ — Intro Sec Con & The Birth of PreShowBanterCon-A-Thon 2021!™ 05:29 – You’re So […]
7/13/2021 • 20 minutes, 35 seconds
Talkin’ About Infosec News – 7/6/2021
Originally Aired on July 6, 2021 Articles discussed in this episode: 00:00 – BHIS | Talkin’ Bout News 2021-07-06 02:32 – Story # 1 – CISA self-assessment audit tool – […]
7/12/2021 • 56 minutes, 19 seconds
Talkin’ About Infosec News – 6/28/2021
Originally Aired on June 28, 2021 Articles discussed in this episode: 00:00 – PreShow Banter™ — Way West Recap06:38 – Story 1 : https://www.bleepingcomputer.com/news/security/wd-my-book-nas-devices-are-being-remotely-wiped-clean-worldwide/12:58 – Story 2 : https://www.vice.com/en/article/bvzd8v/hackers-use-fake-call-center-to-trick-victims-into-installing-ransomware19:41 – […]
6/30/2021 • 1 hour, 12 seconds
Talkin’ About Infosec News – 6/1/2021
Originally Aired on June 1, 2021 Articles discussed in this episode: 00:00 – PreShow Banter™ — Fishing Attacks 02:40 – Story 1: https://m1racles.com/ 05:33 – Story 2: https://arstechnica.com/gadgets/2021/05/vulnerability-in-vmware-product-has-severity-rating-of-9-8-out-of-10/ 11:26 – […]
6/4/2021 • 33 minutes, 7 seconds
Webcast: Getting Started in Pentesting The Cloud: Azure
In this Black Hills Information Security (BHIS) webcast, you will learn tools and techniques for performing penetration tests against Microsoft Azure environments. Increasingly, more organizations are migrating resources to being […]
6/3/2021 • 1 hour, 7 minutes, 3 seconds
Backdoors & Breaches LIVE – 5/19/2021
Join our Incident Master Ean Meyer as we play another round of Backdoors & Breaches (B&B) session using our new Tabletop Simulator (TTS) version! If you have STEAM / TABLETOP […]
5/28/2021 • 1 hour, 11 minutes, 17 seconds
Webcast: Your Free and Open Source EDR Options!
There has been a huge explosion of different free and open-source options for EDR in the security space. Which is nice because the commercial offerings are stupid expensive. In this […]
5/19/2021 • 1 hour, 21 minutes, 50 seconds
Talkin’ About Infosec News – 5/10/2021
Originally Aired on May 10, 2021 Articles discussed in this episode: https://whyy.org/segments/the-greatest-hoax-on-earth/ https://www.fbi.gov/news/pressrel/press-releases/fbi-statement-on-network-disruption-at-colonial-pipeline https://arstechnica.com/gadgets/2021/05/peloton-takes-3-months-to-fix-flaw-that-exposed-users-private-information/ https://threatpost.com/critical-cisco-sd-wan-hyperflex-bugs/165923/ https://www.macrumors.com/2021/05/10/hacked-airtag-links-to-custom-url-lost-mode/ https://jalopnik.com/security-researchers-hack-a-tesla-from-a-drone-1846833249
5/14/2021 • 57 minutes
Webcast: Ok, Let’s Talk About Ransomware
This is a joint emergency webcast from the teams of Black Hills Information Security, Wild West Hackin’ Fest, and Active Countermeasures, presented by John Strand. There have been a couple […]
5/12/2021 • 1 hour, 31 minutes, 46 seconds
Talkin’ About Infosec News – 5/5/2021
Originally Aired on May 5, 2021 Articles discussed in this episode:
5/7/2021 • 30 minutes, 2 seconds
Talkin’ About Infosec News – 5/3/2021
Originally Aired on May 3, 2021 Articles discussed in this episode:
5/5/2021 • 54 minutes, 32 seconds
Backdoors & Breaches LIVE – 4/28/2021
Join our Incident Master BanjoCrashland as we play another round of Backdoors & Breaches (B&B) session using our new Tabletop Simulator (TTS) version! If you have STEAM / TABLETOP SIMULATOR […]
4/30/2021 • 45 minutes, 48 seconds
Talkin’ About Infosec News – 4/26/2021
Originally Aired on April 26, 2021 Articles discussed in this episode: https://usdaynews.com/celebrities/celebrity-death/dan-kaminsky-death-cause/ https://signal.org/blog/cellebrite-vulnerabilities/ https://arstechnica.com/gadgets/2021/04/hackers-backdoor-corporate-password-manager-and-steal-customer-data/ https://youtu.be/G0gOAvpGoJg
4/28/2021 • 51 minutes, 52 seconds
Talkin’ About Infosec News – 4/19/2021
Originally Aired on April 19, 2021 Articles discussed in this episode:
4/21/2021 • 52 minutes, 53 seconds
Talkin’ About Infosec News – 4/12/2021
Originally Aired on April 12, 2021 Articles discussed in this episode:
4/14/2021 • 38 minutes, 37 seconds
Talkin’ About Infosec News – 4/7/2021
Originally Aired on April 7, 2021 Articles discussed in this episode: https://www.scmagazine.com/home/security-news/phishing/array-of-recent-phishing-schemes-use-personalized-job-lures-voice-manipulation/ https://www.coindesk.com/hackers-mined-crypto-on-githubs-servers-report https://www.securityweek.com/white-hats-earn-440000-hacking-microsoft-products-first-day-pwn2own-2021 https://www.infosecurity-magazine.com/news/consulting-firm-data-breach/ https://github.com/Neo23x0/Raccine https://github.com/ralphte/build_a_phish https://support.microsoft.com/en-us/windows/protect-your-pc-from-ransomware-08ed68a7-939f-726c-7e84-a72ba92c01c3 https://www.infosecurity-magazine.com/news/florida-school-district-40m-ransom/
4/8/2021 • 56 minutes, 54 seconds
Talkin’ About Infosec News – 4/5/2021
Originally Aired on April 5, 2021 Articles discussed in this episode:
4/6/2021 • 56 minutes, 53 seconds
Talkin’ About Infosec News – 3/29/2021
Originally Aired on March 29, 2021 Articles discussed in this episode:
3/31/2021 • 49 minutes, 47 seconds
Talkin’ About Infosec News – 3/24/2021
Originally Aired on March 24, 2021 Articles discussed in this episode:
3/29/2021 • 37 minutes, 39 seconds
Webcast: OPSEC Fundamentals for Remote Red Teams
During remote red team exercises, it can be difficult to keep from leaking information to the target organization’s security team. Every interaction with the target’s website, every email sent, and […]
3/25/2021 • 1 hour, 41 minutes, 6 seconds
Talkin’ About Infosec News – 3/22/2021
Originally Aired on March 22, 2021 Articles discussed in this episode:
3/23/2021 • 41 minutes, 22 seconds
Talkin’ About Infosec News – 3/17/2021
Originally Aired on March 17, 2021 Articles discussed in this episode: https://www.bloomberg.com/news/articles/2021-03-09/hackers-expose-tesla-jails-in-breach-of-150-000-security-cams https://media.cert.europa.eu/static/SecurityAdvisories/2021/CERT-EU-SA2021-014.pdf https://security.googleblog.com/2021/03/introducing-sigstore-easy-code-signing.html https://krebsonsecurity.com/2021/03/weleakinfo-leaked-customer-payment-info/ https://twitter.com/PythonResponder/status/1372023079719817218?s=20
3/19/2021 • 48 minutes, 10 seconds
Backdoors & Breaches LIVE – 3/10/2021
The Livestream of our first Backdoors & Breaches (B&B) session using our new Tabletop Simulator (TTS) version of the game was a success! If you have STEAM / TABLETOP SIMULATOR […]
3/18/2021 • 46 minutes, 18 seconds
Webcast: Sacred Cash Cow Tipping 2021
It is another year for the Sacred Cash Cow Tipping Webcast. For those of you who are new to our email list within the past year, this is a webcast […]
3/10/2021 • 1 hour, 29 minutes, 51 seconds
Talkin’ About Infosec News – 3/8/2021
Originally Aired on March 8, 2021
3/9/2021 • 36 minutes
Talkin’ About Infosec News – 3/3/2021
Originally Aired on March 3, 2021 Articles discussed in this episode: https://www.msn.com/en-us/money/other/microsoft-these-exchange-server-zero-day-flaws-are-being-used-by-hackers-so-update-now/ar-BB1ec0In
3/5/2021 • 35 minutes, 35 seconds
Talkin’ About Infosec News – 3/1/2021
Originally Aired on March 1, 2021 Articles discussed in this episode:
3/3/2021 • 51 minutes, 1 second
Talkin’ About Infosec News – 2/24/2021
Originally Aired on February 24, 2021 Articles discussed in this episode:
2/26/2021 • 43 minutes, 6 seconds
Talkin’ About Infosec News – 2/22/2021
Originally Aired on February 22, 2021 Articles discussed in this episode:
2/23/2021 • 34 minutes, 20 seconds
Talkin’ About Infosec News – 2/17/2021
Originally Aired on February 17, 2021 Articles discussed in this episode:
2/18/2021 • 43 minutes, 38 seconds
Talkin’ About Infosec News – 2/8/2021
Originally Aired on February 8, 2021 Articles discussed in this episode:
2/9/2021 • 45 minutes, 17 seconds
Talkin’ About Infosec News – 2/1/2021
Originally Aired on February 1, 2021 Articles discussed in this episode:
2/2/2021 • 1 hour, 2 minutes, 18 seconds
Talkin’ About Infosec News – 1/25/2021
ORIGINALLY AIRED ON JANUARY 25, 2021
1/26/2021 • 31 minutes, 16 seconds
Talkin’ About Infosec News – 1/20/2021
ORIGINALLY AIRED ON JANUARY 20, 2021 Articles discussed in this episode:
1/22/2021 • 41 minutes, 1 second
Webcast: Move Aside Script Kiddies – Malware Execution in the Age of Advanced Defenses
A few short years ago, penetration testers did not have to work too hard for their malware command channels to execute. Fast forward to today in the age of Endpoint […]
1/18/2021 • 1 hour, 5 minutes, 10 seconds
Talkin’ About Infosec News – 1/13/2021
Originally aired on January 13, 2021 Articles discussed in this episode:
1/14/2021 • 29 minutes, 30 seconds
Webcast: Discussing Implications of the SolarWinds Breach(es)
This blog was written in conjunction with Wild West Hackin’ Fest. Does the news on SUNBURST and SUPERNOVA have you feeling like you’re flapping in the (Solar)Wind? Join John Strand, […]
12/31/2020 • 1 hour, 16 minutes, 1 second
Talkin’ About Infosec News – 12/21/2020
Originally aired on December 21, 2020 Articles discussed in this episode: https://citizenlab.ca/2020/12/the-great-ipwn-journalists-hacked-with-suspected-nso-group-imessage-zero-click-exploit/ https://theintercept.com/2020/12/17/russia-hack-austin-texas/
12/22/2020 • 52 minutes, 46 seconds
Talkin’ About Infosec News – 12/14/2020
Originally aired on December 14, 2020 Articles discussed in this episode:
12/16/2020 • 43 minutes, 4 seconds
Talkin’ About Infosec News – 12/11/2020
Originally aired on December 11, 2020 Articles discussed in this episode:
12/15/2020 • 49 minutes, 59 seconds
Webcast: Getting Started with Burp Suite & Webapp Pentesting
Are you responsible for the security of webapps? Are you curious about how penetration testers are able to find vulnerabilities in them? Burp Suite is the preferred tool for many […]
12/7/2020 • 1 hour, 28 minutes, 1 second
Webcast: Pretty Little Python Secrets – Episode 2 – Python Development & Packaging as Beautiful as a Poem
Have you ever tried packaging a Python library/app in order to upload it to the Python Package repository (Pypi)? Not so straight forward is it? There’s a gazillion files you […]
12/4/2020 • 1 hour, 15 minutes, 27 seconds
Talkin’ About Infosec News – 11/30/2020
Originally aired on November 30, 2020 Articles discussed in this episode:
12/1/2020 • 24 minutes, 23 seconds
Talkin’ About Infosec News – 11/19/2020
Originally aired on November 19, 2020 Articles discussed in this episode:
11/25/2020 • 17 minutes, 48 seconds
Talkin’ About Infosec News – 11/11/2020
Originally aired on November 11, 2020 Articles discussed in this episode:
11/13/2020 • 44 minutes, 35 seconds
Talkin’ About Infosec News – 11/09/2020
Originally aired on 11/09/2020 Articles discussed in this episode:
11/12/2020 • 32 minutes, 22 seconds
Talkin’ About Infosec News – 10/26/2020
Originally aired on October 26, 2020.
11/11/2020 • 35 minutes, 10 seconds
Talkin’ About Infosec News – 10/21/2020
Originally aired on October 21, 2020.
11/2/2020 • 26 minutes, 16 seconds
Webcast: The SOC Age Or, A Young SOC Analyst’s Illustrated Primer
Many people get started in security as a Security Operations Center (SOC) analyst. In this Black Hills Information Security (BHIS) webcast we discuss the core skills that a SOC analyst […]
10/26/2020 • 1 hour, 16 minutes, 3 seconds
Webcast: Infosec Mentoring | How to Find and Be a Mentor & Mentee
They say it “takes a village” to help raise a child… well, it also takes a village to help raise an infosec professional. With so many technologies, techniques, and tools […]
10/19/2020 • 1 hour, 26 minutes, 8 seconds
Webcast: When Worlds Collide: OSS Hunting & Adversarial Simulation
Worlds collide as Black Hills Information Security (BHIS) brings together legendary developers in open source software (OSS) hunting and adversarial emulation projects for a discussion on the current state of […]
9/9/2020 • 1 hour, 38 minutes, 5 seconds
Webcast: How to Present: Secrets of a Retired SANS Instructor
John Strand // Ok, that was a bit of a dramatic title. But, it works. In this Black Hills Information Security (BHIS) webcast, John covers the tips and tricks on […]
9/4/2020 • 1 hour, 42 minutes, 30 seconds
Webcast: Pretty Little Python Secrets – Episode 1 – Installing Python Tools and Libraries the Right Way
Have you ever installed a Python tool / library only to then find out other Python based tools you’ve installed previously are now completely broken? Running Kali? Ever try installing […]
8/24/2020 • 1 hour, 19 minutes, 2 seconds
Webcast: What to Expect When You’re Expecting a Penetration Test
CJ and Bryan will share the knowledge they’ve accumulated, by helping 1,000’s of organizations determine what they need and don’t need when it comes to penetration tests and security assessments, […]
8/21/2020 • 1 hour, 26 minutes, 45 seconds
Webcast: Atomic Purple Team Framework and Life Cycle
Jordan Drysdale & Kent Ickler // Jordan and Kent are back again to continue strengthening organizations’ information security human capital (That’s all you folks!). Organization Leadership and Security Practitioners can […]
7/30/2020 • 59 minutes, 29 seconds
Webcast: What About Ransomware?
This is a joint webcast between Black Hills Information Security and the Wild West Hackin’ Fest conference. We hate ransomware. Like a lot. This is because we feel this is […]
7/13/2020 • 1 hour, 31 minutes, 39 seconds
Webcast: Modern Webapp Pentesting: How to Attack a JWT
So much information about testing webapps for security problems is old. Don’t get me wrong, the old stuff still works way more often than we’d like, but there’s more to […]
6/29/2020 • 55 minutes, 48 seconds
Webcast: IPv6: How to Securely Start Deploying
Joff Thyer has dove into everything that is IPv6 and has so much to share about it. He gets really technical but in a way you’ll be able to understand. […]
6/24/2020 • 59 minutes, 13 seconds
Webcast: Durable vs. Ephemeral Threat Intel
In this Black Hills Information Security webcast John breakdowns why he hates threat intelligence… Again… But, he breaks down some of the cool new projects that are focusing on durable […]
6/22/2020 • 0
Webcast: A Blue Team’s Perspective on Red Team Hack Tools
Kent and Jordan are back to continue their journey to make the world a better place. This time around, they will be reviewing a series of tools commonly used on […]
6/8/2020 • 1 hour, 52 seconds
Webcast: How to Hunt for Jobs like a Hacker
Job hunting? Looking for a career change? Still in college and want to know how to get started now in your career? If you answered yes to any of these […]
6/3/2020 • 1 hour, 29 minutes, 59 seconds
Webcast: Kerberos & Attacks 101
Join the BHIS Discord discussion server: https://discord.gg/aHHh3u5 We’re really excited to have a close member of our BHIS extended family, Tim Medin from Red Siege InfoSec, here for a webcast […]
5/26/2020 • 1 hour, 41 seconds
Webcast: Free Tools! How to Use Developer Tools and Javascript in Webapp Pentests
I like webapps, don’t you? Webapps have got to be the best way to learn about security. Why? Because they’re self-contained and so very transparent. You don’t need a big […]
5/6/2020 • 46 minutes, 2 seconds
Webcast: How to Build a Home Lab
This is a joint webcast from Black Hills Information Security and Active Countermeasures. How many of us have tried some new configuration option, utility, or hardware on a production environment, […]
4/27/2020 • 1 hour, 14 minutes, 54 seconds
Webcast: Pandemic Paradigm Shift: Remote Working is the New Normal
What does it mean to work from home across your corporate VPN? What exactly is VPN? Is your home office prepared? How can you improve and better secure your home […]
4/1/2020 • 58 minutes, 24 seconds
Webcast: How (we) Run a Virtual Conference and How You Can, Too
The team at Black Hills Information Security and Wild West Hackin’ Fest had to pivot from doing an in-person information security conference in San Diego to a 100% virtual conference […]
3/25/2020 • 1 hour, 7 minutes, 50 seconds
Webcast: Think You’re Compromised? What Do We Do Next?
In this webcast, we will cover what we can do if we think there is a breach on our network. We will cover live forensics, cool PowerShell scripts, network, and […]
3/11/2020 • 1 hour, 2 minutes, 58 seconds
Webcast: Enterprise Recon For Purple Teams
Do you know what your attackers know? There’s a good chance you know, but you might not be aware of just how much information can be found historically and in […]
2/19/2020 • 1 hour, 1 minute, 36 seconds
Webcast: Linux Command Line Dojo with Hal Pomeranz
In this webcast, we have our friend Hal Pomeranz sharing his massive knowledge on Linux. If you’re new to Linux, or if you know it and just want to hear […]
2/17/2020 • 1 hour
Webcast: Introducing Competitive Backdoors & Breaches and More!
Backdoors & Breaches kind of took off. In case you don’t know, Backdoors & Breaches is an Incident Response Card Game to help people better understand the various attacks and defenses used […]
2/12/2020 • 1 hour, 3 minutes, 17 seconds
Webcast: Getting Started in Cyber Deception
Ever wanted to get started in cyber deception? Ever wanted to do it for free? In this BHIS webcast, we will cover some basic, legal, and easy tools/techniques to get […]
2/10/2020 • 59 minutes, 21 seconds
Podcast: Passwords: You Are the Weakest Link
Why are companies still recommending an 8-character password minimum? Passwords are some of the easiest targets for attackers, yet companies still allow weak passwords in their environment. Multiple service providers recommend […]
1/17/2020 • 1 hour, 14 seconds
Webcast: Sacred Cash Cow Tipping 2020
Want to learn how attackers bypass endpoint products? Slides for this webcast can be found here: https://www.blackhillsinfosec.com/wp-content/uploads/2020/09/SLIDES_SacredCashCowTipping2020.pdf 3:41 – Alternate Interpreters 9:19 – Carbon Black Config Issue 15:07 – Cisco […]
1/14/2020 • 1 hour, 33 seconds
Webcast: Let’s Talk About ELK Baby, Let’s Talk About You and AD
BHIS’ Defensery Driven Duo Delivers Another Delectable Transmission! We know you are worried about your networks. After hours of discussion, we’ve come to the realization that some of our dedicated […]
1/7/2020 • 58 minutes, 11 seconds
Webcast: Passwords: You Are the Weakest Link
Why are companies still recommending an 8-character password minimum? Passwords are some of the easiest targets for attackers, yet companies still allow weak passwords in their environment. Multiple service providers recommend […]
12/16/2019 • 1 hour, 14 seconds
Podcast: Attack Tactics 6! Return of the Blue Team
Download slides: https://www.activecountermeasures.com/presentations In this webcast we walk through the step-by-step defenses to stop the attackers in every step of the way we showed in Attack Tactics Part 5!!! Originally recorded […]
5/30/2019 • 56 minutes, 10 seconds
Podcast: Weaponizing Corporate Intel. This Time, It’s Personal!
Beau Bullock & Mike Felch// Strategically targeting a corporation requires deep knowledge of their technologies and employees. Successfully compromising an organization can depend on the quality of reconnaissance a tester […]
5/11/2019 • 56 minutes, 34 seconds
BHIS PODCAST: Tracking attackers. Why attribution matters and how to do it.
In this BHIS podcast, originally recorded as a live webcast, we cover some new techniques and tactics on how to track attackers via various honey tokens. We cover how to […]
3/18/2019 • 54 minutes, 43 seconds
BHIS PODCAST: Endpoint Security Got You Down? No PowerShell? No Problem.
Do your PowerShell scripts keep getting caught? Tired of dealing with EDRs & Windows Defender every time you need to pop a box? In this one-hour podcast, originally recorded as […]
3/6/2019 • 54 minutes, 28 seconds
BHIS Podcast: Blockchain and You! InfoSec Edition
Take a good look at Bitcoin right now… these are the unlucky ones. These are the unfortunate souls who jumped on another overinflated balloon. But, does this Bitcoin crash completely […]
2/27/2019 • 57 minutes, 10 seconds
PODCAST: Sacred Cash Cow Tipping 2019
Yet again it is time for another edition of Sacred Cash Cow Tipping! Or, “Why do these endpoint security bypass techniques still work? Why?” The goal of this is to […]
1/15/2019 • 46 minutes, 3 seconds
PODCAST: RDP Logging Bypass and Azure Active Directory Recon
For this podcast we cover a couple of different topics. First, we talk about how to password spray in a non-attributable sort of way. Beau found a way to obfuscate […]
12/28/2018 • 53 minutes, 46 seconds
PODCAST: BHIS Sorta Top Used Tools of 2018
In this webcast we cover some of the core tools we use all the time at Black Hills Information Security. However, there’s a twist. We don’t talk about Nessus, Nmap, […]
12/17/2018 • 50 minutes, 49 seconds
PODCAST: Raising Hacker Kids
Yes.. Ethical Hacker Kids. The holidays are coming up! Here John & Jordan cover the different games, tools and gifts we can give kids that help teach them the trade. […]
12/4/2018 • 46 minutes, 17 seconds
PODCAST: Blue Team-Apalooza
Over the past few months, we have discovered a couple trends that organizations seem to be missing. No silver bullets, just some general vulnerability issues we are seeing again and […]
11/15/2018 • 48 minutes, 33 seconds
PODCAST: Creating & Keeping a Malware Zoo
Join John as he covers what he and the BHIS Systems team have been working on lately – creating a C2/Implant/Malware test bed. Testing our C2/malware solutions is important because […]
10/9/2018 • 41 minutes, 3 seconds
PODCAST: John Strand’s 5 Year Plan into InfoSec Part 2
John Strand shares some of his own journey into information security and also his ideas and tips for those wanting to get into the industry from the start, or those […]
9/24/2018 • 49 minutes, 38 seconds
PODCAST: Beacon Analysis
Join special guest Chris Brenton, COO of Active Countermeasures, as he discusses the anatomy of beacons and why you need to be looking for them during a threat hunt. He […]
9/17/2018 • 48 minutes, 58 seconds
PODCAST: What Is a Red Team, Anyway?
Dakota Nelson // Dakota talks about the pentester pyramid of pain and the different types of tests available from an information security firm. See his slides here: https://blackhillsinformationsecurity.shootproof.com/gallery/7404264/ Extra links & […]
9/10/2018 • 36 minutes, 49 seconds
PODCAST: From Active Countermeasures – Attack Tactics 4
Join John Strand as he continues his Attack Tactic series this time with the defense ideas for the attacks mentioned in episode 3 (see more here) To see the entire […]
8/28/2018 • 52 minutes, 37 seconds
PODCAST: Active Directory Best Practices that Frustrate Pentesters
// Jordan Drysdale and Kent Ickler talk about Best Practices for setting up Active Directory. Bre joins as fake Sierra to host and ask questions from the audience since real […]
8/13/2018 • 1 hour, 1 minute, 2 seconds
PODCAST: Security Policy: Fact Fiction or Implement the Marquis de Management
CJ Cox talks about the highs, lows, hows and why’s of security policy. // Show Notes Why are we doing this? Do you hate your audience? GDPR was bad enough. […]
7/30/2018 • 50 minutes, 30 seconds
PODCAST: Highly Caffeinated InfoSec
Join Beau Bullock and Mike Felch as they talk about ways to learn more, network and wake up your inner hacker. See the full episode here and look at the slides […]
7/16/2018 • 51 minutes, 18 seconds
PODCAST: Attack Tactics Part 3: No Active Directory? No Problem!
John Strand talks about how BHIS pen tests companies who use the cloud. Want to know how you can defend against attacks in your cloud infrastructure? Keep your eyes peeled for […]
7/16/2018 • 49 minutes, 14 seconds
PODCAST: Lee Kagan & Beau Bullock talk C2
Special guest Lee Kagan from RedBlack Security talks about his script, his previous guest posts and the future of C2 with Beau Bullock and Sierra. Check out these links: How […]
7/12/2018 • 44 minutes, 33 seconds
PODCAST: Hacker Tools, Compliments of Microsoft
Sally Vandeven & David Fletcher // This is the podcast version of Sally & David’s webcast. For the whole webcast see our webcast post. Links that are mentioned in this […]
7/2/2018 • 51 minutes, 27 seconds
PODCAST: Testing G Suites with MailSniper
Matt Toussain goes through how Mailsniper can be the penetration tester’s best friend. If you haven’t been using this tool in your tests you might start now! Check out the […]
6/20/2018 • 46 minutes, 55 seconds
PODCAST: Attack Tactics Part 2
John talked about how we’d attack, here’s how you can defend against those attacks. Grab the slides here: https://blackhillsinformationsecurity.shootproof.com/gallery/6843799/
6/13/2018 • 1 hour, 1 minute, 23 seconds
PODCAST: Attack Tactics Part 1
This is the audio only version of John’s webcast about how we would attack your company during a pentest. Grab his slides here: https://blackhillsinformationsecurity.shootproof.com/gallery/6843799/