Artwork for Decipher Security Podcast
Technology

Decipher Security Podcast

Decipher

Every week, Dennis Fisher and Lindsey O'Donnell-Welch, the editors of Decipher, bring you exclusive, in-depth conversations with security researchers, CISOs, founders, and security experts to hellp you understand the threat landscape and better protect your organizations.

  • 370 episodes
  • Updated Friday

Episodes370

  • Jul 12, 2023 · 36 min

    Jackie Burns Koven

    Jackie Burns Koven, head of cyber threat intelligence at Chainalysis, talks about the "cat and mouse game" between law enforcement and threat actors in cryptocurrency-related cybercrime. Support the show

  • Jul 7, 2023 · 5 min

    Source Code 7/7

    In this week's Source Code podcast, we discuss the latest tactics from the Charming Kitten APT, a warning from CISA on the TrueBot malware and a recent Interpol investigation into the OPERA1ER cybercriminal group. Support the show

  • Jun 30, 2023 · 5 min

    Source Code 6/30

    This week, Decipher talks to security researchers about how they use crypters to track cybercriminals in a post-Conti world, and a new RAT found being deployed by a subgroup of the Lazarus Group. Support the show

  • Jun 23, 2023 · 7 min

    Source Code 6/23

    In this week's Source Code podcast, we discuss a custom malware tool that targets RDP's client drive mapping feature, a new cyber unit announced by the DoJ, and intelligence-gathering campaigns launched by APT15. Support the show

  • Jun 19, 2023 · 1 hr 1 min

    Matt Johansen

    Matt Johansen joins Dennis Fisher to discuss his path from infosec n00b to senior security roles at White Hat, Bank of America, Reddit, and his new newsletter and podcast venture, Vulnerable U. Support the show

  • Jun 16, 2023 · 6 min

    Source Code 6/16

    During this week's Source Code podcast, Lindsey O'Donnell-Welch with Decipher discusses CISA's directive for federal agencies telling them to secure network devices that are exposed to the public internet, and new details from Mandiant about targeting by a China-linked actor of a flaw in Barracuda ESG appliances. Support the show

  • Jun 9, 2023 · 5 min

    Source Code 6/9

    In this week’s Source Code podcast, we hear from John Hammond with Huntress on the widely exploited MOVEit Transfer bug, and from Aleksandar Milenkoski with SentinelOne about recent social engineering tactics used by the Kimsuky APT group. Support the show

  • Jun 2, 2023 · 6 min

    Source Code 6/2

    In this week's Source Code podcast, Decipher editor Lindsey O'Donnell-Welch discusses several actively-exploited vulnerabilities - including ones impacting Zyxel and MOVEit Transfer - and new tactics used by the BlackCat ransomware group. Support the show

  • May 30, 2023 · 58 min

    Hazel Burton

    Dennis Fisher is joined by Hazel Burton from the Cisco Talos team to talk about the importance of empathy in communications, her non-linear path to infosec, and how her improv comedy training has helped her in her roles. Support the show

  • May 26, 2023 · 6 min

    Source Code 5/26

    Welcome back to Source Code, Decipher’s weekly news wrap podcast with input from our sources. This week, we discuss research showing that APTs are increasingly interested in targeting small and medium-sized businesses; newly discovered operational technology malware called CosmicEnergy; and a new technique used by BlackCat where the ransomware group leverages a malicious Windows kernel driver in attacks. Support the show

  • May 24, 2023 · 34 min

    Megan Stifel Returns

    Megan Stifel, chief strategy officer for the Institute for Security and Technology and executive director of the Ransomware Task Force, talks about the multitude of efforts being made in tackling the ransomware threat landscape. Support the show

  • May 19, 2023 · 6 min

    Source Code 5/19

    In this week’s Source Code news wrap podcast, we discuss the DoJ’s charges against an alleged key Russian ransomware actor, a multi-year campaign against government, aviation, education and telecoms organizations in South and Southeast Asia, and a number of incidents involving the abuse of the serial console on Azure virtual machines. Support the show

  • May 12, 2023 · 7 min

    Source Code 5/12

    In this week's Source Code podcast, we discuss the dismantling operation by the U.S. government of Turla's Snake malware, a leak of MSI data that exposes firmware signing keys and Intel BootGuard keys for several manufacturers, and several takeaways from Proofpoint's new Voice of the CISO report. Support the show

  • May 9, 2023 · 29 min

    Lucia Milica

    Lucia Milica, global resident CISO at Proofpoint, discusses the top takeaways from the 2023 Voice of the CISO report, including how the global recession is impacting security budgets and how boards are increasingly becoming part of the security conversation. Support the show

  • May 5, 2023 · 7 min

    Source Code 5/5

    In this week’s Source Code podcast we discuss ongoing developments by NIST in updating its Cybersecurity Framework, Apple and Google’s draft framework that aims to fight against unwanted Bluetooth trackers and new malware that was discovered stealing Gmail, Outlook and Facebook credentials. Support the show

  • May 3, 2023 · 41 min

    Dawn Cappelli

    Decipher talks to Dawn Cappelli, director of OT-CERT at Dragos, about the challenges of securing operational technology, particularly for organizations with limited budget and resources. Support the show

  • Apr 28, 2023 · 8 min

    Source Code: RSA Conference Edition

    This week at the RSA Conference, software supply-chain security, CISO liabilities and public-private sector partnerships were some of the key topics. Support the show

  • Apr 26, 2023 · 34 min

    Chris Wysopal and Cris Thomas

    Chris Wysopal and Cris Thomas of the L0pht join Dennis Fisher to talk about the 25-year-anniversary of the group's landmark Senate testimony, what's changed since then, and Cris's new book, How the Hackers Known as L0pht Changed the World. Support the show

  • Apr 21, 2023 · 7 min

    Source Code 4/21

    In this week's Source Code news wrap podcast, Decipher editor Lindsey O'Donnell-Welch discusses a malware family called Domino, the increasing use of custom tools by ransomware groups and new findings around the 3CX supply chain attack. Support the show

  • Apr 20, 2023 · 34 min

    Casey Ellis

    Casey Ellis, founder and CTO of Bugcrowd, joins Dennis Fisher to discuss the newly formed Hacking Policy Council, the challenges of influencing security research policy and legislation, and what the council hopes to achieve. Support the show