Artwork for Decipher Security Podcast
Technology

Decipher Security Podcast

Decipher

Every week, Dennis Fisher and Lindsey O'Donnell-Welch, the editors of Decipher, bring you exclusive, in-depth conversations with security researchers, CISOs, founders, and security experts to hellp you understand the threat landscape and better protect your organizations.

  • 370 episodes
  • Updated Friday

Episodes370

  • Dec 22, 2021 · 54 min

    Deciphering Die Hard 2: Die Harder

    Zoe Lindsey, Pete Baker, and Dennis Fisher sit down to talk about Die Hard 2, the forgotten member of the Die Hard series, which is not a Christmas movie. It is, however, a movie with a lot of great hacking and social engineering scenes, and Bruce Willis spewing one-liners like a 1950s standup comic. Support the show

  • Dec 21, 2021 · 38 min

    Sherrod DeGrippo

    Sherrod DeGrippo, vice president of threat research and detection at Proofpoint, talks about Emotet's return; how attackers are fine tuning their malware campaigns to be more targeted; and why "your point of view is the most valuable thing that you bring" in cybersecurity. Support the show

  • Dec 17, 2021 · 6 min

    Source Code 12/17

    Welcome to Source Code: Decipher’s behind the scenes look at the weekly news with input from our sources. The Log4j flaw - and its impact on millions of third-party applications and services - dominated this week's security news, with researchers pointing to challenges in deploying fixes and exploitation attempts from nation-state actors. Also this week, Microsoft issued its Patch Tuesday security updates, which included a fix for a flaw that was being exploited in Emotet malware attacks. Support the show

  • Dec 13, 2021 · 25 min

    John Hammond

    John Hammond of Huntress joins Dennis Fisher to discuss the critical Log4j vulnerability, the community response, and the potential long-term effects of the bug. Support the show

  • Dec 10, 2021 · 7 min

    Source Code 12/10

    Welcome to Source Code: Decipher’s behind-the-scenes look at the weekly news with input from our sources. Topping the news this week, Microsoft and Google both announced disruption operations for infrastructure used by attackers. Microsoft said it seized 42 websites that were used by the Nickel threat group, while Google targeted Glupteba botnet servers. Researchers also highlighted new tactics being used by the Emotet malware since its reappearance last month. Support the show

  • Dec 8, 2021 · 39 min

    Wade Baker and Ben Edwards

    Wade Baker and Ben Edwards of the Cyentia Institute join Dennis Fisher to discuss the process of designing and interpreting the data from the Cisco Security Outcomes study, what surprised them from the data, and how organizations can use the study. Support the show

  • Dec 3, 2021 · 7 min

    Source Code 12/3

    Welcome to Source Code: Decipher’s behind the scenes look at the weekly news with input from our sources. Topping the news this week, researchers detailed a ransomware operator that has repeatedly rebranded itself in order to evade detection. Also making headlines is a threat group’s use of a unique RAT, which can communicate directly with other compromised hosts via a peer-to-peer network. Finally, researchers are warning of a new phishing attack technique that leverages a legitimate RTF template functionality. Support the show

  • Nov 23, 2021 · 45 min

    Casey Ellis

    Casey Ellis joins Lindsey O'Donnell-Welch to discuss the evolution, adoption and standardization of vulnerability disclosure programs - both in the U.S. and across the globe. Support the show

  • Nov 19, 2021 · 6 min

    Source Code 11/19

    Welcome to Source Code: Decipher’s behind the scenes look at the weekly news with input from our sources. Topping the headlines this week, the Emotet malware has returned almost a year after law enforcement disrupted its infrastructure. In other news, CISA warned that Iranian threat actors are exploiting known vulnerabilities in Fortinet security appliances and the ProxyShell flaw in Microsoft Exchange servers. Finally, the DHS launched a new talent management system that aims to improve the government's efforts in recruiting top cyber talent. Support the show

  • Nov 16, 2021 · 47 min

    Nick Selby

    Nick Selby joins Dennis Fisher to talk about his long and varied career in security, the challenges that law enforcement faces in investigating cybercrime, and what the future may hold for enterprise security teams. Support the show

  • Nov 12, 2021 · 7 min

    Source Code 11/12

    Welcome to Source Code: Decipher’s behind the scenes look at the weekly news with input from our sources. Topping the headlines this week, Microsoft's Patch Tuesday updates addressed 55 vulnerabilities, including two actively exploited flaws. Siemens also patched a set of 13 vulnerabilities in the TCP/IP network communication stack, which impacts safety-critical devices, such as anesthesia machines and patient monitors used in hospitals. Finally, a newly uncovered hacker-for-hire group for years offered a slew of services, from hacking into corporate email inboxes or social media accounts, to selling victims' sensitive data. Support the show

  • Nov 10, 2021 · 27 min

    Amanda Gorton

    Amanda Gorton, CEO and cofounder of Corellium, joins Dennis Fisher to discuss her path from studying classics to found two security startups, the challenges of building a unique platform, and the opportunity to help address IoT security. Support the show

  • Nov 5, 2021 · 7 min

    Source Code 11/5

    Welcome to Source Code: Decipher’s new behind the scenes look at the weekly news with input from our sources. Topping the headlines this week are two key cybersecurity-related moves by the U.S. government. These include the government blocking exports to NSO Group, Positive Technologies and other companies, and creating a catalog of known, actively exploited vulnerabilities that federal agencies must address. In other news, researchers have uncovered a threat group targeting vulnerable Microsoft Exchange servers with ransomware. A new report also shed light on various network access brokers selling credentials that they claimed belonged to logistics companies. Support the show

  • Oct 29, 2021 · 29 min

    Kristina Balaam

    Kristina Balaam, of Lookout, joins Lindsey O'Donnell-Welch to discuss the ins and outs of reverse engineering malware, as well as how spyware has proliferated and evolved over the past few years. Support the show

  • Oct 21, 2021 · 36 min

    Courtney Nash

    Courtney Nash of Verica joins Dennis Fisher to talk about the new Verica Open Incident Database, which centralizes reports of software outages, security incidents, and near misses, and why studying the way systems fail is so valuable. Support the show

  • Sep 15, 2021 · 53 min

    Re-Deciphering Hackers

    On the 25th anniversary* of the release of Hackers, Zoe Lindsey and Pete Baker join Dennis Fisher to talk about the cultural influence of the movie, the effect it's had on hacker culture, and why it is still so beloved today. *because 2020 never happened Support the show

  • Sep 13, 2021 · 52 min

    Carolina Terrazas

    Carolina Terrazas joins Dennis Fisher to talk about getting into security, the importance of diversity in hiring practices, and why Tom Brady is the worst. Support the show

  • Sep 7, 2021 · 49 min

    Amélie Koran

    Amélie Koran joins Dennis Fisher to talk about her start in computing with a Commodore 64, her early years in the private sector, and her security and policy work in several federal government agencies. Support the show

  • Aug 31, 2021 · 51 min

    Zoe Lindsey

    Dennis Fisher talks with Zoe Lindsey, one of the early Duo Security employees, about her entrance into hacker culture, finding her way in the tech world, and the importance of lifelong learning. Support the show

  • Aug 19, 2021 · 44 min

    Jonathan Mayer

    Jonathan Mayer, assistant professor of computer science at Princeton University, joins Dennis Fisher to discuss the technical and legal challenges of Apple's announced CSAM scanning system. Note: This episode deals with sensitive topics. Support the show