Podcasts by 7 Minute Security

7 Minute Security

7 Minute Security is a weekly information security podcast focusing on penetration testing, blue teaming and building a career in security. The podcast also features in-depth interviews with industry leaders who share their insights, tools, tips and tricks for being a successful security engineer.

Further podcasts by Brian Johnson

Podcast on the topic Technologie

All episodes

7 Minute Security
7MS #601: Breaking Up With Active Directory from 2023-12-11T13:13

Today our pal Nate Schmitt (you may remember him from his excellent Dealing with Rejection: A DMARC Discussion Webinar) joins us to tal...

Listen
7 Minute Security
7MS #600: First Impressions of Using AI on Penetration Tests from 2023-12-01T16:13

Hey friends, today I share my experience working with ChatGPT, Ollama.aiPentestGPT and ...

Listen
7 Minute Security
7MS #599: Baby's First Responsible Disclosure from 2023-11-25T21:40

Today we talk about our first experience working through the responsible disclosure process after finding vulnerabilities in a security product. We cannot share a whole lot of details as of righ...

Listen
7 Minute Security
7MS #598: Hacking Billy Madison - Part 4 from 2023-11-17T15:44

Today our good buddy Paul and I keep trying to hack the VulnHub machine based on the movie Listen

7 Minute Security
7MS #595: Choosing the Right XDR Strategy with Matt Warner of Blumira from 2023-10-31T02:12

Today we're joined by Matt Warner of Blumira (remember him from episodes #551 and Listen

7 Minute Security
7MS #594: Using PatchMyPC to Auto-Update Pentest Dropboxes from 2023-10-23T15:47

Today we're talking about how you can use PatchMyPc to keep your home PC and/or pentest dropbox automatically updated with the latest/greatest p...

Listen
7 Minute Security
7MS #593: Hacking Billy Madison - Part 3 from 2023-10-15T16:22

Hey friends, today my Paul and I kept trying to hack the VulnHub machine based on the movie Listen

7 Minute Security
7MS #592: 7 Steps to Recover Your Hacked Facebook Account from 2023-10-06T20:15

Today we're talking about 7 steps you can take to (hopefully) reclaim a hacked Facebook account. The key steps are:

  1. Ask Facebook for help (good luck with that)
  2. Put out an S...

    Listen
7 Minute Security
7MS #591: Tales of Pentest Pwnage - Part 52 from 2023-09-29T16:55

Today we talk about an awesome path to internal network pentest pwnage using downgraded authentication from a domain controller, a tool...

Listen
7 Minute Security
7MS #590: Hacking Billy Madison - Part 2 from 2023-09-22T14:00

Today my Paul and I continued hacking ...

Listen
7 Minute Security
7MS #589: Tales of Pentest Pwnage - Part 51 from 2023-09-15T17:09

In today's tale of pentest pwnage we talk about:

  • The importance of local admin and how access to even one server might...

    Listen
7 Minute Security
7MS #588: Becoming a Sysmon Sensei with Amanda Berlin from 2023-09-08T16:00

Today Amanda Berlin from Blumira teaches us how to unlock the power of Sysmon so we can gain insight int...

Listen
7 Minute Security
7MS #587: Hacking Billy Madison from 2023-09-01T15:42

Today my pal Paul from Project7 and I hack the heck out of Billy Madison a vulnerable virtu...

Listen
7 Minute Security
7MS #586: DIY Pentest Dropbox Tips – Part 8 from 2023-08-25T16:00

Today, sadly, might be the last episode of DIY pentest dropbox tips for a while because I found (well, ChatGPT did actually) the missing link to 100% automate a Kali Linux install! Check  Listen

7 Minute Security
7MS #585: DIY Pentest Dropbox Tips – Part 7 from 2023-08-18T12:00

Hey friends, today I'm super excited to share I found the missing link! Specifically, the missing piece that now allows me to create fully a...

Listen
7 Minute Security
7MS #584: Tales of Pentest Pwnage - Part 50 from 2023-08-11T20:48

In today's tale of pwnage, we'll talk about how domain trusts can be dangerous because they have...well...trust issues.

Listen
7 Minute Security
7MS #583: Cred-Capturing Phishing with Caddy Server from 2023-08-04T15:00

Today we talk about crafting cool cred-capturing phishing campaigns with Caddy server! Here's a quick set of install commands for Ubuntu:

su...

Listen
7 Minute Security
7MS #582: Using Wazuh as a SIEM for Work and Home from 2023-07-31T13:32

Today we had a blast playing with Wazuh as a SIEM you can use for work and/or home. Inspiration for this episode came from ...

Listen
7 Minute Security
7MS #581: Tales of Pentest Pwnage - Part 49 from 2023-07-21T17:44

Oooo, giggidy! Today's tale of pentest pwnage is about pwning vCenter with CVE-2021-44228 - a vulnerability that lets us bypass authentication entirely and do/take what we want from vCenter! Key...

Listen
7 Minute Security
7MS #580: Hacking Tommy Callahan - Part 3 from 2023-07-17T12:20

Today me and my pal Paul from Project7 did a live hacking session and finally got the Callahan A...

Listen
7 Minute Security
7MS #579: Hacking Tommy Callahan - Part 2 from 2023-07-07T15:42

Hey friends, today we're continuing our series on pwning the Tommy Boy VM on VulnHub VM! P.S. did you miss part one? Check it out on...

Listen
7 Minute Security
7MS #578: Interview with Mike Toole of Blumira from 2023-06-30T21:07

Today I'm excited to share a featured interview with our new friend Mike Toole of Blumira. We talk about all things EDR, including:

7 Minute Security
7MS #577: Tales of Pentest Pwnage - Part 48 from 2023-06-16T15:00

Holy schnikes - this episode is actually 7 minutes long! What a concept!

Anyway, today I give you a couple tips that have helped me pwn s...

Listen
7 Minute Security
7MS #575: Annoying Attackers with ADHD - Part 2 from 2023-06-09T17:30

Hey friends! Today we're taking a second look at ADHD - Active Defense Harbinger Distribution - a cool VM full of tools designed to annoy/...

Listen
7 Minute Security
7MS #574: Annoying Attackers with ADHD from 2023-06-02T14:02

Hey friends! Today we're looking at ADHD - Active Defense Harbinger Distribution - a cool VM full of tools designed to annoy/attribute/att...

Listen
7 Minute Security
7MS #573: Securing Your Mental Health - Part 4 from 2023-05-26T14:38

Today we're talking about reducing anxiety by hacking your mental health with these tips:

7 Minute Security
7MS #572: Protecting Your Domain Controllers with LDAP Firewall from 2023-05-19T17:26

Today we look at LDAP Firewall - a cool (and free!) way to defend your domain controllers against Listen

7 Minute Security
7MS #571: Simple Ways to Test Your SIEM - Part 2 from 2023-05-12T13:59

Hey friends! This week I spoke at the Secure360 conference in Minnesota on Simple Ways to Test Your SIEM. T...

Listen
7 Minute Security
7MS #570: How to Build a Vulnerable Pentest Lab - Part 4 from 2023-05-05T16:41

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit safepass.me for mo...

Listen
7 Minute Security
7MS #569: Interview with Jim Simpson of Blumira from 2023-04-28T19:00

Today we're excited to share a featured interview with our new friend Jim Simpson, CEO of Blumira. Jim was in security before it was hip/cool/lucrative, wo...

Listen
7 Minute Security
7MS #568: Lets Play With the 2023 Local Administrator Password Solution! from 2023-04-21T15:46

Hey friends, today we're playing with the new (April 2023) version of Listen

7 Minute Security
7MS #567: How to Build an Intentionally Vulnerable SQL Server from 2023-04-14T22:36

Hey friends, today we're talking about building an intentionally vulnerable SQL server, and here are the key URLs/commands talked about in the e...

Listen
7 Minute Security
7MS #566: Tales of Pentest Pwnage - Part 47 from 2023-03-31T12:07

Ok, I know we say this every time, but it is true this time yet again: this is our favorite tale of pentest pwnage. It involves a path to DA we've never tried before, and introduced us ...

Listen
7 Minute Security
7MS #565: How to Simulate Ransomware with a Monkey from 2023-03-24T16:02

Hey friends, today we talk through how to simulate ransomware (in a test environment!) using Infection Monkey. It's a cool way...

Listen
7 Minute Security
7MS #564: First Impressions of OVHcloud Hosted vCenter from 2023-03-17T14:00

Today we offer you some first impressions of OVHcloud and how we're seriously considering moving...

Listen
7 Minute Security
7MS #563: Cracking and Mapping and Execing with CrackMapExec - Part 2 from 2023-03-10T18:00

Hey friends, today we're covering part 2 of our series all about cracking and mapping and execing with CrackMapExec. Specifically we cover:

# Enumerate where your user has local a...

Listen
7 Minute Security
7MS #562: Cracking and Mapping and Execing with CrackMapExec from 2023-03-03T13:07

Hey friends, today we covered many things cracking and mapping and execing with CrackMapExec. Specifically:

 # ...

Listen
7 Minute Security
7MS #561: Interview with Chris Furner of Blumira from 2023-02-24T18:05

Today I sat down with Chris Furner of Blumira to talk about all things cyber insurance. Many of 7MinSec's clients are renewing their p...

Listen
7 Minute Security
7MS #560: 7MOOCH - Dolphin Rides Are Done Dude from 2023-02-17T13:00

Hey friends, I took a mental health break this week and pre-podcasted this episode of a new series called 7MOOCH7 Minutes of...

Listen
7 Minute Security
7MS: #559: Tales of Pentest Pwnage - Part 46 from 2023-02-10T16:54

Ooooo giggidy! Today's episode is about a pentest pwnage path that is super fun and interesting, and I've now seen 3-4 times in the wild. Here are some notes from the audio/video that will help ...

Listen
7 Minute Security
7MS #558: How to Build a Vulnerable Pentest Lab - Part 2 from 2023-02-07T15:41

Today we continue part 2 of a series we started a few weeks ago all about building a vulnerable pentesting lab. Check...

Listen
7 Minute Security
7MS #557: Better Passive Network Visibility Using Teleseer from 2023-01-27T17:00

Today we're talking about Teleseer, which is an awesome service to give you better network visibility - whether you're on the blue, red or purple team! It al...

Listen
7 Minute Security
7MS #556: How to Build a Vulnerable Pentest Lab from 2023-01-20T17:04

Today's episode is brought to us by our friends at Blumira!

Today we kick off a series all...

Listen
7 Minute Security
7MS #555: Light Pentest eBook 1.1 Release from 2023-01-13T17:01

Today we're releasing version 1.1 of our Light Pentest eBook. Changes discussed in today's episode (and shown live in the accompanying Listen

7 Minute Security
7MS #554: Simple Ways to Test Your SIEM from 2023-01-06T13:00

Today we talk about Simple Ways to Test Your SIEM. Feel free to check out the YouTube version of this presentation, as well as our  Listen

7 Minute Security
7MS #553: The Artificial Intelligence Throat Burn Episode from 2022-12-30T20:23

Hey friends, today's episode is hosted by an AI from Murf.ai because I suffered a throat injury over the holidays and spent Christmas morning in the emergency room...

Listen
7 Minute Security
7MS #552: Tales of Pentest Pwnage - Part 45 from 2022-12-24T01:43

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit safepass....

Listen
7 Minute Security
7MS #551: Interview with Matt Warner of Blumira from 2022-12-16T15:35

Today we welcome our pal Matthew Warner (CTO and co-founder of Blumira) back to the show for a third time (his first appearance was Listen

7 Minute Security
7MS #550: Tales of Pentest Fail - Part 5 from 2022-12-09T15:00

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. ...

Listen
7 Minute Security
7MS #549: Interview with Christopher Fielder and Daniel Thanos of Arctic Wolf from 2022-12-02T20:06

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. ...

Listen
7 Minute Security
7MS #548: Tales of Pentest Pwnage - Part 44 from 2022-11-25T15:00

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit safepass....

Listen
7 Minute Security
7MS #547: Tales of Pentest Pwnage - Part 43 from 2022-11-18T20:02

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. ...

Listen
7 Minute Security
7MS #546: Securing Your Mental Health - Part 3 from 2022-11-11T12:00

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thou...

Listen
7 Minute Security
7MS #545: First Impressions of Snipe-IT from 2022-11-04T13:00

Today’s episode of the 7 Minute Security podcast is brought to you by Blumira, which provides easy-to-use automated detection and response that can be set up in…well..about 7 minute...

Listen
7 Minute Security
7MS #544: Interview with Nato Riley of Blumira from 2022-10-28T19:15

Today’s episode is brought to us by Blumira, which provides easy to use, automated detection and response that can be setup in…well…about 7 minutes! Detect and resolve security thre...

Listen
7 Minute Security
7MS #543: How to Succeed in Business Without Really Crying - Part 12 from 2022-10-21T14:00

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. ...

Listen
7 Minute Security
7MS #542: Eating the Security Dog Food - Part 5 from 2022-10-14T13:00

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thou...

Listen
7 Minute Security
7MS #541: Tales of Blue Team Bliss - Part 2 from 2022-10-07T13:00

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Vis...

Listen
7 Minute Security
7MS #540: Tales of Blue Team Bliss from 2022-09-30T14:18

Today we're excited to kick off a new series all about blue team bliss - in other words, we're talking about pentest stories where the blue team controls kicked our butt a little bit! Topics inc...

Listen
7 Minute Security
7MS #539: Eating the Security Dog Food - Part 4 from 2022-09-23T19:34:17

Today we revisit a series we haven’t touched in a long time all about eating the security dog food. TLDL about this ser...

Listen
7 Minute Security
7MS #538: First Impressions of Airlock Digital from 2022-09-16T13:39:49

Hey friends! Today we're giving you a first impressions episode all about Airlock Digital, an application allowlisting solution. They were kind enou...

Listen
7 Minute Security
7MS #537: Tales of Pentest Pwnage - Part 42 from 2022-09-09T17:03:31

In today's episode we share some tips we've picked up in the last few weeks of pentesting, with hopes it will save you from at least a few rounds of smashing your face into the keyboard. Tips in...

Listen
7 Minute Security
7MS #536: Interview with Amanda Berlin of Blumira from 2022-09-02T20:47:06

Today we're so excited to welcome Amanda Berlin, Lead Incident Detection Engineer at Blumira, back to the show (...

Listen
7 Minute Security
7MS #535: Rage Against the Remediation from 2022-08-27T22:05:41

Today's episode covers three remediation-focused topics that kind of grind my gears and/or get me frustrated with myself. I'm curious for your thoughts on these, so reach out via Listen

7 Minute Security
7MS #534: Tales of Pentest Pwnage - Part 41 from 2022-08-19T16:32:23

Hey friends, today we share the (hopefully) thrilling conclusion of last week's pentest. Here are some key points:

7 Minute Security
7MS #533: Tales of Pentest Pwnage - Part 40 from 2022-08-12T16:37:42

Ok, ok, I know.  I almost always say something like "Today is my favorite tale of pentest pwnage."  And guess what?  Today is my favorite tale of pentest pwnage, and I don't even know h...

Listen
7 Minute Security
7MS #532: Tales of Pentest Pwnage - Part 39 from 2022-08-05T13:21:48

Hey friends, wow...we're up to thirty-nine episodes of pwnage? Should we make a cake when we hit the big 4-0?! Anyway, today's TLDL is this:

If you get a nagging suspici...

Listen
7 Minute Security
7MS #531: Interview with Christopher Fielder and Eugene Grant of Arctic Wolf from 2022-08-01T12:11:47

Today we're joined by some of our friends at Arctic Wolf - Eugene Grant and Christopher Fielder - to talk about compliance. Now hold on - don't leave yet! I know for many folks, compliance makes...

Listen
7 Minute Security
7MS #530: Tales of Pentest Pwnage - Part 38 from 2022-07-22T21:35:36

Hey friends, we have another fun tale of pwnage for you today. I loved this one because I got to learn some new tools I hadn't used before, such...

Listen
7 Minute Security
7MS #529: Interview with Matthew Warner of Blumira from 2022-07-15T18:35:48

Today we're featuring a great interview with Matthew Warner, CTO and co-founder of Blumira. You might remember Matt from such podcasts as Listen

7 Minute Security
7MS #528: Securing Your Family During and After a Disaster - Part 6 from 2022-07-08T13:03:26

In today's episode, I try to get us thinking about our extended family's emergency/DR plan. Why? Because I recently had a close family member suffer a health scare, and it brought to light some ...

Listen
7 Minute Security
7MS #527: First Impressions of Purple Knight from 2022-07-01T13:00:55

In today's episode we talk about Purple Knight, a free tool to help assess your organization's Active Directory security. I stuck Purple Knight in o...

Listen
7 Minute Security
7MS #526: Tales of Pentest Pwnage - Part 37 from 2022-06-24T13:00:12

Today's another fun tale of pentest pwnage - specifically focused on cracking a hash type I'd never paid much attention to before: Listen

7 Minute Security
7MS #525: First Impressions of InsightIDR - Part 2 from 2022-06-17T13:00:19

Today we're sharing an updates to episode #512 where we ran Rapid7's In...

Listen
7 Minute Security
7MS #524: How to Update VMWare ESXi From the Command Line from 2022-06-10T22:07:39

I'm extra psyched today, because today's episode (which is all about updating your VMWare ESXi version via command line) is complemented by ...

Listen
7 Minute Security
7MS #523: Local Administrator Password Solution - RELOADED! from 2022-06-03T13:25:07

Well friends, it has been a while since we talked about Microsoft's awesome Local Administrator Password Solution - spe...

Listen
7 Minute Security
7MS #522: Pwning Wifi PSKs and PMKIDs with Bettercap - Part 2 from 2022-05-27T13:08:11

Hey friends, a while back in episode #505 we talked about pwning wifi PSKs and PMKIDs with Bettercap. Today I'm ...

Listen
7 Minute Security
7MS #521: Tales of Pentest Pwnage - Part 36 from 2022-05-20T12:16:05

Hey friends! Today's another swell tale of pentest pwnage, and it's probably my favorite one yet (again)! This tale involves Listen

7 Minute Security
7MS #520: How to Succeed in Business Without Really Crying - Part 11 from 2022-05-13T14:40:11

Hey friends, today we're giving another peek behind the curtain of what it's like to run a cybersecurity consultancy. Topics include:

  • Setting the right communication cadence - a...

    Listen
7 Minute Security
7MS #519: Tales of Pentest Pwnage - Part 35 from 2022-05-07T13:16:23

Hey friends, it's another fun tale of pentest pwnage today! This one talks about cool things you can do when you have full rights over an OU in Active Directory. Important links to review:

<...

Listen
7 Minute Security
7MS #518: Interview with Amanda Berlin of Blumira from 2022-04-27T13:52:26

Today we're pumped to share a featured interview with Amanda Berlin, Lead Incident Detection Engineer at Blumira. Y...

Listen
7 Minute Security
7MS #517: DIY Pentest Dropbox Tips - Part 6 from 2022-04-22T15:58:10

Today we're continuing a series we haven't done in a while (click here to see the whole series) all about building and deploying pentest dropboxes for cu...

Listen
7 Minute Security
7MS #516: Tips to Travel More Securely from 2022-04-14T12:54:21

In today's episode I talk about a cool self-defense class I took a while ago which ...

Listen
7 Minute Security
7MS #515: Securing Your Family During and After a Disaster - Part 5 from 2022-04-06T14:00:33

Today we continue the series we started a few years ago called Security Your Family During and After a Disaster (the last part in this series was from Listen

7 Minute Security
7MS #514: Tales of Pentest Pwnage - Part 34 from 2022-03-30T15:27:04

Welcome to another fun tale of pentest pwnage! This one isn't a telling of one single pentest, but a collection of helpful tips and tricks I've been using on a bunch of different tests lately. T...

Listen
7 Minute Security
7MS #513: Interview with Christopher Fielder and Jon Crotty of Arctic Wolf from 2022-03-23T22:45:31

Today we're joined by our friends Christopher Fielder and Jon Crotty from Arctic Wolf to talk about their interesting report on Listen

7 Minute Security
7MS #512: First Impressions of InsightIDR from 2022-03-17T14:24:05

Today I'm sharing some first impressions of the Rapid 7 InsightIDR as kind of a teaser for an eventual new chapter in our Listen

7 Minute Security
7MS #511: How to Succeed in Business Without Really Crying - Part 10 from 2022-03-11T01:39:22

Today we're continuing our series focused on [owning a security consultancy], talking specifically about:

  • How not to give up on warm sales leads, even if they haven't p...

    Listen
7 Minute Security
7MS #510: First Impressions of Tailscale from 2022-03-02T22:06:52

Today we share some first impressions of Tailscale, a service that advertises itself as "Zero config VPN. Installs on any device in minutes, manages firewall r...

Listen
7 Minute Security
7MS #509: Creating Kick-Butt Credential-Capturing Phishing Campaigns - Part 4 from 2022-02-23T19:39:31

Today we revisit our phishing series with a few important updates that help us run our campaigns more smoothly, such as creating a simple but effectiv...

Listen
7 Minute Security
7MS #508: Tales of Pentest Pwnage - Part 33 from 2022-02-18T01:01:13

Hey friends! We have another fun test of pentest pwnage to share with you today, which is kind of tossed in a blender with some first impression...

Listen
7 Minute Security
7MS #507: Interview with Matthew Warner of Blumira from 2022-02-09T19:27:33

Today's featured interview is with Matthew Warner, CTO and co-founder of Blumira. We had a great chat about why out-of-the-box Windows logging isn't super awesome...

Listen
7 Minute Security
7MS #506: Tales of Pentest Pwnage - Part 32 from 2022-02-03T02:19:46

Today's my favorite tale of pentest pwnage (again)! This time we're talking about sAMAccountName spoofing Listen

7 Minute Security
7MS #505: Pwning Wifi PSKs and PMKIDs with Bettercap from 2022-01-28T15:08:57

Hey friends, today I talk about the old school way I used to pwn wifi networks, then a more modern way, and then my new favorite way (spoiler alert: I use Listen

7 Minute Security
7MS #504: Monitoring All Your Cloud Thingies with UptimeRobot from 2022-01-20T17:58:26

Hey friends, today we're talking about how to monitor all your cloud thingies (Web servers, mail servers, etc.) with UptimeRobotAnd I'm sharing...

Listen
7 Minute Security
7MS #503: First Impressions of Brute Ratel from 2022-01-12T18:28:58

Today's episode is all about Brute Ratel, a command and control center that is super cool, quick to setup...

Listen
7 Minute Security
7MS #502: Building a Pentest Lab in Azure from 2022-01-05T18:24:10

Happy new year friends! Today I share the good, bad, ugly, and BROKEN things I've come across while migrating our Light Pentest LITE trainin...

Listen
7 Minute Security
7MS #501: Tales of Pentest Pwnage - Part 31 from 2021-12-29T05:34:33

Today we're closing down 2021 with a tale of pentest pwnage - this time with a path to DA I had never had a chance to abuse before: Active Directory Certificate Services! For the full gory detai...

Listen
7 Minute Security
7MS #500: Interview with John Strand from 2021-12-22T18:22:23

HAPPY 500 EPISODES, FRIENDS! That's right, 7MS turned 5-0-0 today, and so we asked John Strand of Black Hills Information Security to join us an...

Listen
7 Minute Security
7MS #499: Desperately Seeking a Super SIEM for SMBs - Part 6 from 2021-12-16T16:17:53

Today we have some cool updates on this SIEM-focused series we've been doing for a while. Specifically, I want to share that one of these solutions can now detect three early (and important!) wa...

Listen
7 Minute Security
7MS #498: Securing Your Mental Health - Part 2 from 2021-12-13T20:12:01

Hi everybody, today we're continuing a series we started way back in June called Securi...

Listen
7 Minute Security
7MS #497: The Stress and Satisfaction of Offering Live Security Training from 2021-12-02T13:15:36

Hey friends, today I'm giving you a peek behind the curtain of our Light Pentest LITE training to talk about the software/hardware we use to ...

Listen
7 Minute Security
7MS #496: Tales of Pentest Pwnage - Part 30 from 2021-11-24T14:00

Today's tale of pentesting has a bunch of tips to help you maximize your pwnage, including:

7 Minute Security
7MS #495: Desperately Seeking a Super SIEM for SMBs - Part 5 from 2021-11-17T21:00

Today we continue our SIEM/SOC evaluation series with a closer look at one particular managed solution and...

Listen
7 Minute Security
7MS #493: 7MOIST - Part 2 from 2021-11-04T01:30

Hey, remember back in episode #357 where we introduced 7MOIST (7 Minut...

Listen
7 Minute Security
7MS #492: Tales of Pentest Pwnage - Part 29 from 2021-10-28T21:00

Hello friends! We're long overdue for a tale of pentest pwnage, and this one is a humdinger! It's actually kind of three tales in one, focusing on pentesting wins using:

7 Minute Security
7MS #491: Interview with Louis Evans of Arctic Wolf from 2021-10-20T13:00

Today we're joined by Louis Evans of Arctic Wolf to talk about all things cyber insurance, including:

  • History on cyber insurance - who'...

    Listen
7 Minute Security
7MS #490: Desperately Seeking a Super SIEM for SMBs - Part 4 from 2021-10-13T20:18

Hey friends! Today we're going to recap the SIEM/SOC players we've evaluated so far (Arctic WolfElasticListen

7 Minute Security
7MS #489: Ping Castle from 2021-10-06T23:23:39

Today we're talking about Ping Castle (not a sponsor), an awesome tool for enumerating tons of info out of your Active Directory environment and identifyin...

Listen
7 Minute Security
7MS #488: How to Succeed in Business Without Really Crying - Part 10 from 2021-09-29T13:00

Today we continue our series focused on building a security consultancy and talk about:

  • A phishing campaign that went off the rails, and ...

    Listen
7 Minute Security
7MS #487: Light Pentest eBook Announcement! from 2021-09-28T18:38:18

Hey friends! Today I've got some exciting personal/professional news to share: our Light Pentest eBook - which is a practical,...

Listen
7 Minute Security
7MS #486: Interview with Matt Quammen of Blue Team Alpha from 2021-09-22T13:00

Today our good buddy Joe Skeen and I virtually sit down with Matt Quammen of Listen

7 Minute Security
7MS #485: Interview with Christopher Fielder from 2021-09-15T13:00

Today our friend Christopher Fielder from Arctic Wolf is back for an interview four-peat! We had a great chat about making sense of vendor alphabe...

Listen
7 Minute Security
7MS #484: Desperately Seeking a Super SIEM for SMBs - Part 3 from 2021-09-08T20:38:32

Today we're continuing our series called Desperately Seeking a Super SIEM for SMBs - this time with a focus on a new contender in our bake-off: Perch ...

Listen
7 Minute Security
7MS #483: Desperately Seeking a Super SIEM for SMBs - Part 2 from 2021-09-01T22:04:12

Today we continue our series we started recently (part 1 is here about finding a super SIEM for SMBs. Specificall...

Listen
7 Minute Security
7MS #482: Creating Kick-Butt Credential-Capturing Phishing Campaigns - Part 3 from 2021-08-26T21:20:04

Today we're continuing our discussion on phishing campaigns - including a technical "gotcha" that might redirect your phishing emails into a digital black hole if you're not careful!

As I...

Listen
7 Minute Security
7MS #481: Creating Kick-Butt Credential-Capturing Phishing Campaigns - Part 2 from 2021-08-19T18:15:06

Today we're revisiting how to make a kick-butt cred-capturing phishing campaign with GophishAmazon Lightsail...

Listen
7 Minute Security
7MS #480: Desperately Seeking a Super SIEM for SMBs from 2021-08-12T20:17:23

Today we're talking about the SIEM bake-off for SMBs that we've recently embarked on. We're currently evaluating several solutions - either for customer-facing purposes, internal kick-the-tires ...

Listen
7 Minute Security
7MS #479: A Prelude to PwnTown from 2021-08-06T17:43:57

Hey friends, today we're talking about a new security training offering 7MinSec has created called Light Pentest LITE - Live Interactive Trai...

Listen
7 Minute Security
7MS #478: Password Cracking in the Cloud - Part 4 from 2021-07-29T17:23:36

Hey friends, today we're continuing our discussion of password cracking by sharing some methodology that has helped us get a high cred yield, and some tips on taking cracked passwords from multi...

Listen
7 Minute Security
7MS #477: Cobalt Strike for Newbs from 2021-07-21T18:05:06

Today we're talking about Cobalt Strike for newbs - including how to get it up and running, as well as some tools that will help you generate beacons while evading EDR at the same time!

S...

Listen
7 Minute Security
7MS #476: Tales of Pentest Pwnage - Part 28 from 2021-07-16T21:03:27

**STOP!** If you didn't listen to [last week's episode](https://7ms.us/7ms-475-tales-of-internal-network-pentest-pwnage-part-27/) you might want to, since this was a two-part tale of pwnage. Eit...

Listen
7 Minute Security
7MS #475: Tales of Internal Network Pentest Pwnage - Part 27 from 2021-07-08T19:24:25

Yeahhhhhh! Today's another fun tale of pentest pwnage, including:

  • The importance of starting your pentest with an AD account that actually has access to...ya know...stuff

    Listen
7 Minute Security
7MS #474: Password Cracking in the Cloud - Part 3 from 2021-06-30T22:06:19

Hey friends! Today we're dusting off an old mini-series about password cracking in the cloud (check out part 1 and  Listen

7 Minute Security
7MS #473: Interview with Nikhil Mittal from 2021-06-24T17:19:28

Hey everybody! Today Joe and I sat down with Nikhil Mittal of Listen

7 Minute Security
7MS #472: Interview with Christopher Fielder from 2021-06-16T16:07:42

Today our good pal Christopher Fielder from Arctic Wolf is back for an interview three-peat! He joins Joe "The Machine" Skeen (a.k.a. Listen

7 Minute Security
7MS #471: Cyber News - Ransomware Should Run Somewhere Edition from 2021-06-09T23:48:29

Hey everybody, happy June! Our pal Joe is back to cover some great security stories with us, including: Listen

7 Minute Security
7MS #470: First Impressions of Meraki Networking Gear from 2021-06-02T17:50:16

Today we're doing something new - a first impressions episode of Meraki networking gear. Note: this is not a sponsored episo...

Listen
7 Minute Security
7MS #469: Interview with Philippe Humeau of CrowdSec from 2021-05-26T23:15:56

Hey friends! Today we're talking with Philippe Humeau, CEO of CrowdSec, which is "an open-source massively multiplayer firewall able to analyze visitor be...

Listen
7 Minute Security
7MS #468: Eating the Security Dog Food - Part 3 from 2021-05-20T20:39:49

Today we continue the series on eating your own security dog food! Specifically, we talk about:

  • Keeping a log and procedure for sanit...

    Listen
7 Minute Security
7MS #467: How to Succeed in Business Without Really Crying - Part 9 from 2021-05-12T18:13:08

Hey everybody! I stayed in a hotel for the first time in over a year and boy oh boy...I hope I didn't get COVID from the bedsheets!

Anyhow, on that journey I thought of some things that I...

Listen
7 Minute Security
7MS #466: Attacking and Defending Azure AD Cloud (CARTP) from 2021-05-05T13:00

Welp, I need another security certification like I needed a bunch to the retinas, but even after all the fun (and pain) of CRTP I couldn't help but sign up ...

Listen
7 Minute Security
7MS #465: Cyber News - The FBI Might Be Getting Into the IR Biz Edition from 2021-04-28T18:33:34

Hey friends!  Today Joe "The Machine" Skeen (a.k.a. Gh0sthax) and I talk about some of our favorite news stories, including:

7 Minute Security
7MS #464: Interview with Christopher Fielder of Arctic Wolf from 2021-04-22T18:04:12

Today our friend Christopher Fielder of Arctic Wolf joins us on the show again (check out his first appearance in Listen

7 Minute Security
7MS #463: DIY Pentest Dropbox Tips - Part 5 from 2021-04-14T15:00

In the last two episodes of this series (#449 and #450 Listen

7 Minute Security
7MS #462: Pentesting with the Hak5 Key Croc from 2021-04-07T15:00

Today we talk through our first engagement using Hak5 Key Croc to steal and exfil data. In the past, my internal monologue when a new Hak5 ...

Listen
7 Minute Security
7MS #461: Tales of Internal Network Pentest Pwnage - Part 26 from 2021-03-31T14:00

OK I probably say this every time, but I'm gonna say it again: this tale of pwnage is my one of my favs - and not because of the tools/tradecraft, but because of why the company needed ...

Listen
7 Minute Security
7MS #460: Why I'm Throwing My UniFi Gear Into the Ocean from 2021-03-24T19:02:13

Hey friends! Warning: this is not a "typical" 7MS episode where we try hard to deliver some level of security value.

Instead, today is a big, fat, crybaby, first...

Listen
7 Minute Security
7MS #459: Cyber News - Microsoft Exchange Makes the World Cry Edition from 2021-03-17T15:00

Happy mid-March! Our good pal Gh0sthax joins us today for another hot dish of cyber news! Stories include:...

Listen
7 Minute Security
7MS #458: Interview with Tanya Janca from 2021-03-11T15:52:31

Today we're super excited to share a featured interview with T...

Listen
7 Minute Security
7MS #457: Tales of Internal Network Pentest Pwnage - Part 25 from 2021-03-04T17:57:14

Hi! This episode of pentest pwnage is a fun one because it was built for speeeeeeeeeeeeeeeed. Here's some of the things we're doing/running w...

Listen
7 Minute Security
7MS #456: Certified Red Team Professional - Part 4 from 2021-02-25T19:49:09

Hello friends!  Today, Joe (Gh0sthax) and I complete our series on CRTP - Certified Red Team Professional - a r...

Listen
7 Minute Security
7MS #455: Tales of Internal Network Pentest Pwnage - Part 24 from 2021-02-19T18:03:17

Hey everybody! Sorry that we're late again with today's episode, but I got COVID shot #2 and it kicked my behind BIG TIME today. But I'm vertical today and back amongst the living and thrill...

Listen
7 Minute Security
7MS #454: Cyber News - Lets Switch to Typewriters Edition from 2021-02-11T19:02:40

Happy almost-mid-February! Today Gh0sthax cooked up some great news stories for us to chew on, including:

7 Minute Security
7MS #453: Interview with Marcello Salvati from 2021-02-04T18:28:33

Today's featured interview is with Marcello Salvati of Black Hills Information Security. Marcello is a.k.a. Listen

7 Minute Security
7MS #452: Enterprise Attacker Emulation and C2 Implant Development from 2021-01-28T21:24:53

Hey everyone! Hope you're having a great week. Today Gh0sthax and I do a brain dump and recap of a cool (and mind-exploding) course we took la...

Listen
7 Minute Security
7MS #451: Deep Freeze from 2021-01-22T17:53:23

Today we talk about a cool product called Deep Freeze, which, as its name implies, can "freeze" your computer in a known/goo...

Listen
7 Minute Security
7MS #450: DIY Pentest Dropbox Tips - part 4 from 2021-01-15T19:36:56

Hey friends! We're continuing our series on pentest dropbox building - specifically playing off Listen

7 Minute Security
7MS #449: DIY Pentest Dropbox Tips - Part 3 from 2021-01-07T21:38:36

Happy new year! This episode continues our series on DIY pentest dropboxes with a focus on automation - specifically as it relates to automatin...

Listen
7 Minute Security
7MS #448: Certified Red Team Professional - Part 3 from 2020-12-30T20:40:46

Today, Gh0sthax and I talk about week 3/4 of the Listen

7 Minute Security
7MS #447: Cyber News - The End of 2020 as We Know It Edition from 2020-12-23T18:18:53

Merry Christmas! Happy holidays! Please enjoy the last cyber news edition of 2020, brought to us by our good pal Listen

7 Minute Security
7MS #446: Certified Red Team Professional - Part 2 from 2020-12-17T17:49:55

Today's episode continues part 1 of our series on the Listen

7 Minute Security
7MS #445: Certified Red Team Professional from 2020-12-09T23:25:18

Welp, I need another certification like I need a hole in the head, but that didn't stop me from signing up for the Certified Red Te...

Listen
7 Minute Security
7MS #444: Interview with Christopher Fielder of Arctic Wolf from 2020-12-02T17:32:07

Happy December! Today I virtually sat down with Christopher Fielder of Arctic Wolf, who started his career in security at 18 (I was just playing a ...

Listen
7 Minute Security
7MS #443: Cyber News - Thankful for Patches Edition from 2020-11-26T18:09:59

Happy Thanksgiving! While the turkey and pie settle in your belly, why not also digest some fantastic security news stories with our pal Gh0sthax?

...

Listen
7 Minute Security
7MS #442: Tales of Internal Network Pentest Pwnage - Part 23 from 2020-11-19T16:29:12

Hey friends, I dare declare this to be my favorite tale of internal pentest pwnage so far. Why? Because the episode features:

  • Great blue team tools alerting our customer to...

    Listen
7 Minute Security
7MS #441: SharpGPOAbuse from 2020-11-15T04:40:36

Hello friends! Sorry to be late with this episode (again) but we've been heads-down in a lot of cool security work, coming up for air when we can! Today's episode features:

7 Minute Security
7MS #440: Tales of Internal Network Pentest Pwnage - Part 22 from 2020-11-08T23:00:20

Hi! Sorry to be so late with this episode, but I'm excited to share with you another fun tale of pentest pwnage! Key points from today's episode include:

7 Minute Security
7MS #439: Cyber News - Ransomware is Definitely Still a Thing Edition from 2020-10-29T01:18:17

Happy October and merry Halloween everybody! We're back with our buddy Joe "the machine" Skeen who is also now a Principal Security Engineer for  Listen

7 Minute Security
7MS #438: PCI Professional Certification (PCIP) - Part 4 from 2020-10-21T20:29:30

Yay - I'm a PCIP now! I welcome ...

Listen
7 Minute Security
7MS #437: Homecoming and Home ioT Security - Part 3 from 2020-10-14T21:22:39

Hello! This episode is a true homecoming in that I actually recorded it from home. Yay!

WARNING!!! WARNING!!! This episode contains a ton of singing. If you don'...

Listen
7 Minute Security
7MS #436: Cleaning Up Your Cloud Clutter from 2020-10-07T21:25:28

Hey, hope you're having a great week! The last few weeks have had somewhat of a homecoming and home cleaning theme. To continue that train of thought,...

Listen
7 Minute Security
7MS #435: Homecoming and Home ioT Security - Part 2 from 2020-10-02T03:55:43

Hi again! It's sort of fun to release two episodes in one week for a change. If you missed part 1 on our ioT security series, check it out Listen

7 Minute Security
7MS #434: Homecoming and Home ioT Security from 2020-10-01T21:14:38

WE'RE HOME! After almost a year after our fire, we're back, baby!

This episode is somewhat of a homecoming that dovetails into an episode about ioT...

Listen
7 Minute Security
7MS #433: Cyber News - Security Skills Gap Edition from 2020-09-23T22:24:08

Hi! Today our pal Joe "The Machine" Skeen (a.k.a. Gh0sthax has prepared some cyber-licious actionable news stories for us to chew on. Today's stories ...

Listen
7 Minute Security
7MS #432: Tales of Internal Network Pentest Pwnage - Part 21 from 2020-09-16T13:50:39

Yay! It's time for another tale of pentest pwnage! Highlights include:

  • Making sure you take multiple rounds of "dumps" to get all the delicious local admin creds.

  • ...

    Listen
7 Minute Security
7MS #431: How to Succeed in Business Without Really Crying - Part 8 from 2020-09-09T15:37:19

Today we're talking business! We've got some exciting news and updates to share with you since we last did a "crying" episode last fall:

  • 7MS hired a VP of sales and marketing:  Listen
7 Minute Security
7MS #430: Interview with Dan DeCloss from 2020-09-02T21:01:10

Today we're thrilled to have our friend and PlexTrac CEO Dan DeCloss back to the program! (P.S. PlexTrac is launching runbooks as a feature - and yo...

Listen
7 Minute Security
7MS #429: Cyber News - Free Bitcoin for Everybody Edition from 2020-08-26T16:57:59

Hola! We're back again with our amigo Joe "The Machine" Skeen (a.k.a. Gh0sthax) who has prepared some awesome and actionable news stories for us to dig...

Listen
7 Minute Security
7MS #428: Tales of Internal Network Pentest Pwnage - Part 20 from 2020-08-19T22:02:08

Welcome to another fun tale of internal pentest pwnage! Today's tale includes these helpful informational tidbits:

  • My understanding is that in order for Listen

7 Minute Security
7MS #427: Interview with Ameesh Divatia from Baffle from 2020-08-12T18:20:29

Today we're thrilled to welcome Ameesh Divatia from Baffle back to the program. We first met Ameesh back in episode 349...

Listen
7 Minute Security
7MS #426: Tales of Internal Pentest Pwnage - Part 19 from 2020-08-07T15:44:25

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands ...

Listen
7 Minute Security
7MS #425: DIY Pentest Dropbox Tips - Part 2 from 2020-07-30T20:42:34

Today's episode is all about creating and deploying your own pentest dropbox! In part 1 I talked about some "gotchas" but this tim...

Listen
7 Minute Security
7MS #424: Cyber News - Everything is Pwned Edition from 2020-07-22T15:29:06

Hello! We're back with our pal Joe "The Machine" Skeen (a.k.a. Gh0sthax) who has prepared some awesome and actionable news stories for us to digest. To...

Listen
7 Minute Security
7MS #423: Tales of Internal Pentest Pwnage - Part 18 from 2020-07-15T14:54:54

This is an especially fun tale of pentest pwnage because it involves D.D.A.D. (Double Domain Admin Dance) and varying T.T.D.A. (Time to Domain Admin). The key takeaways I want to share from thes...

Listen
7 Minute Security
7MS #422: Eating the Security Dog Food - Part 2 from 2020-07-10T19:41:49

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit [safepass.me](Listen

7 Minute Security
7MS #420: Tales of Internal Pentest Pwnage - Part 17 from 2020-06-26T16:39:14

Today's episode is a fun tale of pentest pwnage! Interestingly, to me this pentest had a ton of time-sponging issues on the front end, but the TTDA (Time to Domain Admin) was maybe my fastest ev...

Listen
7 Minute Security
7MS #419: Eating the Security Dog Food from 2020-06-17T16:31:17

Today we're talking about eating the security dog food! What do I mean by that? Well, a lot of security companies I worked for in the past preached to clients about the importance of having a go...

Listen
7 Minute Security
7MS #418: Securing Your Mental Health from 2020-06-11T04:04:33

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit safepass...

Listen
7 Minute Security
7MS #417: Vulnerability Scanning Tips and Tricks from 2020-06-04T21:05:20

Today's episode is all about getting the most value out of your vulnerability scans, including:

  • Why, IMHO you should only do credentialed scans

  • Policy...

    Listen
7 Minute Security
7MS #416: Pi-hole 5.0 from 2020-05-28T03:23:14

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. ...

Listen
7 Minute Security
7MS #415: Cyber News from 2020-05-21T17:49:06

Today's episode kicks off a fun little experiment where my pal Joe Skeen and I cover some of the week's interesting security news stories, how they might affect you, and what you can do to make ...

Listen
7 Minute Security
7MS #414: Tales of Pentest Fail #4 from 2020-05-14T00:12:05

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit safepass...

Listen
7 Minute Security
7MS #413: PCI Professional Certification (PCIP) - Part 3 from 2020-05-07T04:09:34

Hey everybody! I hope you're hanging in there during quarantine and staying healthy. Today is part 3 of our ongoing series all about becoming a Listen

7 Minute Security
7MS #412: Tips for Working Safely and Securely From Home from 2020-05-01T14:54:51

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. ...

Listen
7 Minute Security
7MS #411: More Fun Stay-at-Home Security Projects from 2020-04-24T03:55:07

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit Listen

7 Minute Security
7MS #410: PCI Professional Certification (PCIP) - Part 2 from 2020-04-16T18:27:57

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. Redefining cy...

Listen
7 Minute Security
7MS #409: PCI Professional Certification (PCIP) from 2020-04-09T16:10:06

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit Listen

7 Minute Security
7MS #408: Cell Phone Security for Tweenagers - Part 2 from 2020-04-03T17:29:14

This episode of the 7MS podcast is brought to you by ITProTV. It’s never too late to start a new career in IT or move up the later, and ITProTV has you covered. From CompTIA and Cisco to ECCounc...

Listen
7 Minute Security
7MS #407: Four Fun Stay-at-Home Security Projects from 2020-03-26T21:56:48

In today's episode I share four fun stay-at-home security projects - three with a security focus and one centered around music. Let's gooooooooo!

FoldingAtHome

The Listen

7 Minute Security
7MS #406: Securing Your Family During and After a Disaster - Part 4 from 2020-03-21T23:44:55

This episode of the 7MS podcast is brought to you by ITProTV. It’s never too late to start a new career in IT or move up the later, and ITProTV has you covered. From CompTIA and Cisco to ECCounc...

Listen
7 Minute Security
7MS #405: Tales of Internal Pentest Pwnage - Part 16 from 2020-03-12T21:42:17

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. Redefining cy...

Listen
7 Minute Security
7MS #403: 7MOOMAMA - Juice Shop Song + Backdoors and Breaches Jingle from 2020-03-09T15:42:23

Today's slightly off-topic episode kicks off a new tag called 7MOOMAMA. That stands for 7 Minutes of Only Listen

7 Minute Security
7MS #402: Interview with Matt Duench of Arctic Wolf from 2020-02-26T18:55:23

Today I'm joined by Matt Duench (LinkedIn / Listen

7 Minute Security
7MS #401: Tales of Internal Pentest Pwnage - Part 15 from 2020-02-21T00:20:23

It’s episode 401 and we’re having fun, right? Some things we cover today:

  • The Webinar version of the DIY Pwnagotchi evening will be offered Listen

7 Minute Security
7MS #400: Tales of Internal Pentest Pwnage - Part 14 from 2020-02-14T15:10:19

Wow, happy 400th episode everybody! Also, happy SIXTH birthday to the 7MS podcast!

Today I've got a really fun tale of internal network pentest pwnage to share with you, as well ...

Listen
7 Minute Security
7MS #399: Baby's First Password Cracking Rig from 2020-02-07T20:40:56

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. Redefining cy...

Listen
7 Minute Security
7MS #398: Securing Your Network with Raspberry Pi Sensors from 2020-01-30T21:25:07

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. Redefining cy...

Listen
7 Minute Security
7MS #397: OPSEC Tips for Security Consultants from 2020-01-23T01:21:38

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. Redefining cy...

Listen
7 Minute Security
7MS #396: Tales of Internal Pentest Pwnage - Part 13 from 2020-01-15T19:42:08

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. Redefining cy...

Listen
7 Minute Security
7MS #395: Tales of Internal Pentest Pwnage - Part 12 from 2020-01-09T01:56:11

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. Redefining cy...

Listen
7 Minute Security
7MS #394: DIY Pwnagotchi from 2020-01-03T19:01:39

This podcast is sponsored by Arctic Wolf, whose Concierge Security teams Monitor, Detect and Respond to Cyber threats 24/7 for thousands of customers around the world. Arctic Wolf. Redefining cy...

Listen
7 Minute Security
7MS #393: Interview with Peter Kim from 2019-12-26T20:43:04

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit Listen

7 Minute Security
7MS #392: LAPS Reloaded from 2019-12-19T16:51:42

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move up the ladder, and ITProTV has you covered - from CompTIA and Cisco to EC-Council and VMWare...

Listen
7 Minute Security
7MS #391: Securing Your Family During and After a Disaster - Part 3 from 2019-12-12T03:05:50

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move up the ladder, and ITProTV has you covered - from CompTIA and Cisco to EC-Council and VMWare...

Listen
7 Minute Security
7MS #390: Tales of Internal Network Pentest Pwnage - Part 11 from 2019-12-06T21:25:18

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move up the ladder, and ITProTV has you covered - from CompTIA and Cisco to EC-Council and VMWare...

Listen
7 Minute Security
7MS #389: Securing Your Family During and After a Disaster - Part 2 from 2019-11-21T21:37:40

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit Listen

7 Minute Security
7MS #388: Securing Your Family During and After a Disaster - Part 1 from 2019-11-15T13:57:45

In today's episode I talk about how my family's house and two vehicles were recently destroyed in a fire. The Johnson family is all ok - no injuries, thank God. However, this has turned our worl...

Listen
7 Minute Security
7MS #387: How to Succeed in Business Without Really Crying - Part 7 from 2019-11-11T00:33:40

Today's episode features a few important changes to the tools and s...

Listen
7 Minute Security
7MS #386: Interview with Ryan Manship and Dave Dobrotka - Part 4 from 2019-11-01T17:34:03

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit Listen

7 Minute Security
7MS #385: A Peek into the 7MS Mail Bag from 2019-10-22T17:23:06

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move u...

Listen
7 Minute Security
7MS #384: Creating Kick-Butt Credential-Capturing Phishing Campaigns from 2019-10-12T04:09:20

In this episode I talk about some things I learned about making your own kick-butt cred-capturing phishing campaign and how to do so on the (relatively) quick and (relatively) cheap! Th...

Listen
7 Minute Security
7MS #383: Tales of Internal Network Pentest Pwnage - Part 10 from 2019-10-01T18:23:46

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit Listen

7 Minute Security
7MS #382: Tales of Internal Network Pentest Pwnage - Part 9 from 2019-09-24T16:30:56

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move u...

Listen
7 Minute Security
7MS #381: DIY $500 Pentesting Lab Deployment Tips from 2019-09-18T03:58:10

For Windows VMs

  • Take a snapshot right after the OS is installed, as (I believe) the countdown timer for Windows evaluation mode starts upon first "real" boot.
  • ...

    Listen
7 Minute Security
7MS #380: Tales of Internal Network Pentest Pwnage - Part 8 from 2019-09-05T02:21:13

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move u...

Listen
7 Minute Security
7MS #379: Tales of Internal Network Pentest Pwnage - Part 7 from 2019-08-30T01:29:42

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit Listen

7 Minute Security
7MS #378: Interview with Zane West of Proficio from 2019-08-22T17:32:16

In today's episode, I sit down with Zane West of Listen

7 Minute Security
7MS #377: DIY Pentest Dropbox Tips from 2019-08-16T19:09:20

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move u...

Listen
7 Minute Security
7MS #376: Tales of SQL Injection Pwnage from 2019-08-12T03:54:38

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move u...

Listen
7 Minute Security
7MS #375: Tales of Pentest Fail #3 from 2019-08-02T19:02:18

I swear this program isn't turning into the Dr. Phil show, but I have to say that sharing tales of fail is extremely therapeutic for me, and based on your comments, it sounds like many of you fe...

Listen
7 Minute Security
7MS #374: Tales of Internal Pentest Pwnage - Part 6 from 2019-07-24T21:51

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit Listen

7 Minute Security
7MS #373: Tales of Pentest Fail #2 from 2019-07-19T18:11:49

SafePass.me is the only enterprise solution to protect organizations against credential stuffing and password spraying attacks. Visit Listen

7 Minute Security
7MS #372: Tales of Internal Pentest Pwnage - Part 5 from 2019-07-15T22:51:08

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move up...

Listen
7 Minute Security
7MS #371: Tales of Internal Pentest Pwnage - Part 4 from 2019-07-12T22:12:48

Today's episode is brought to you by ITProTV. It’s never too late to start a new career in IT or move up...

Listen
7 Minute Security
7MS #370: Happy Secure 4th! from 2019-07-03T15:59:20

Hey folks, happy secure 4th o' July!

In today's seven minute episode (Wha? Gasp! Yep...it's seven minutes!) I kick back a bit, give you some updates and tease/prepare you for some cool fu...

Listen
7 Minute Security
7MS #369: Cracking Hashes with NPK from 2019-06-28T18:23:14

Today's episode is brought to you by my friends at safepass.me. Safepass.me is the most efficient and cost...

Listen
7 Minute Security
7MS #368: Tales of Pentest Fail from 2019-06-24T13:24:45

This episode of the 7 Minute Security Podcast is brought to you by Authentic8, creators of Silo. Silo allows its users to conduct online investigations to collect information off the web securel...

Listen
7 Minute Security
7MS #367: DIY Two-Hour Risk Assessment from 2019-06-17T00:27:48

This episode is brought to you by ITProTV. Visit https://www.itpro.tv/7minsec for over 65 hours of ...

Listen
7 Minute Security
7MS #366: Tales of Internal Pentest Pwnage - Part 3 from 2019-06-16T23:56:30

This episode is brought to you by ITProTV. Visit https://www.itpro.tv/7minsec for over 65 hours of ...

Listen
7 Minute Security
7MS #365: Interview with Ryan Manship and Dave Dobrotka - Part 3 from 2019-05-30T15:47:17

This episode of the 7 Minute Security Podcast is brought to you by Authentic8, creators of Silo. Silo allows its users to conduct online investigations to collect information off the web securel...

Listen
7 Minute Security
7MS #364: Tales of External Pentest Pwnage from 2019-05-23T04:07:52

This episode of the 7 Minute Security Podcast is brought to you by Authentic8, creators of Silo. Silo allows its users to conduct online investigations to collect information off the web securel...

Listen
7 Minute Security
7MS #363: Interview with Ryan Manship and Dave Dobrotka - Part 2 from 2019-05-15T17:54:43

This episode is brought to you by ITProTV. Visit https://www.itpro.tv/7minsec for over 65 hours of ...

Listen
7 Minute Security
7MS #362: My Dear Friend Impostor Syndrome from 2019-05-09T02:42:55

This episode is brought to you by ITProTV. Visit https://www.itpro.tv/7minsec for over 65 hours of ...

Listen
7 Minute Security
7MS #361: Logging Made Easy from 2019-05-03T17:41:44

Today we're talking about Logging Made Easy, a project that, as its name implies...makes Windows e...

Listen
7 Minute Security
7MS #360: Active Directory Security 101 - Part 2 from 2019-04-25T00:12:47

This episode of the 7 Minute Security podcast is brought to you by Netwrix. Netwrix Auditor empowers IT pros to detect, investigate and resolve critical issues before they stifle business activi...

Listen
7 Minute Security
7MS #359: Windows 10 Security Baselining from 2019-04-19T12:53:13

This episode is brought to you by ITProTV. Visit https://www.itpro.tv/7minsec for over 65 hours of ...

Listen
7 Minute Security
7MS #358: 4 Ways to Write a Better Pentest Report from 2019-04-16T19:26:25

This episode is brought to you by ITProTV. Visit https://www.itpro.tv/7minsec for over 65 hours of ...

Listen
7 Minute Security
7MS #357: 7 Minutes of IT and Security Tips from 2019-04-11T21:30:36

Today I'm launching an ongoing series called 7MOIST. It stands for:

7 Minute Security
7MS #356: Faster Hard Drive Forensics with CyLR and CDQR from 2019-04-03T19:12:15

This episode is brought to you by ITProTV. Visit https://www.itpro.tv/7minsec for over 65 hours of ...

Listen
7 Minute Security
7MS #355: Mousejacking! from 2019-03-27T22:09:15

This episode is brought to you by Netwrix Auditor, which empowers IT pros to detect, inves...

Listen
7 Minute Security
7MS #354: Tales of Internal Pentest Pwnage - Part 2 from 2019-03-25T20:38:51

Today's episode is the thrilling, exciting, heart-pounding conclusion of Listen

7 Minute Security
7MS #353: Tales of Internal Pentest Pwnage - Part 1 from 2019-03-22T18:31:49

Buckle up! This is one of my favorite episodes.

Today I'm kicking off a two-part series that walks you through a narrative of a recent internal pentest I worked on. I was able to get to D...

Listen
7 Minute Security
7MS #352: Recap of Rad Red Team Training from 2019-03-14T17:23:16

I recently had the awesome opportunity to take the awesome Real World Red Team course put on by ...

Listen
7 Minute Security
7MS #351: Turn Windows Logging up to 11 from 2019-03-06T21:03:58

Today's episode is brought to you by NoteCast. Try it free for 60 days (no credit card required) and ente...

Listen
7 Minute Security
7MS #350: Interview with Lewie Wilkinson of Pondurance from 2019-02-20T23:04:30

Today's featured interview is with Lewie Wilkinson, senior integration engineer at Pondurance. Pondurance...

Listen
7 Minute Security
7MS #349: Interview with Ameesh Divatia of Baffle from 2019-02-14T13:26:03

Today's featured interview is with Ameesh Divatia, cofounder and CEO at Listen

7 Minute Security
7MS #348: Cell Phone Security for Tweenagers from 2019-02-06T19:36:13

Today's episode is brought to you by my friends at safepass.me. Safepass.me is the most efficient and cost-...

Listen
7 Minute Security
7MS #347: Happy 5th Birthday to 7MS from 2019-01-31T19:54:23

Today's episode is brought to you by my friends at safepass.me. Safepass.me is the most efficient and cost-...

Listen
7 Minute Security
7MS #346: Baby's First Red Team Engagement from 2019-01-24T04:49:32

WARNING: Today's episode is a bit of an experiment, and I hope you'll hang in there with me for it.

I had the opportunity to do a week-long red team engagement, and so I recorded...

Listen
7 Minute Security
7MS #345: Interview with Amber Boone from 2019-01-16T19:40:25

Coming up on Tuesday, January 22 I'll be doing a Webinar with Netwrix called Listen

7 Minute Security
7MS #344: Announcing the 7MS User Group from 2019-01-09T20:35:47

I'd like to coordially invite you to the first-ever 7MS User Group meeting, coming up Monday, January 14th at 6 p.m.! You can attend physically, virtually or both! All the info ...

Listen
7 Minute Security
7MS #343: Interview with Dan DeCloss from 2019-01-02T15:41:53

Psssst! Wanna come to the first ever 7MS User Group meeting? It's coming up on January 14th. You can join in person or virtually! Head Listen

7 Minute Security
7MS #342: Interview with Matt McCullough from 2018-12-27T00:08:50

Matt McCullough (a.k.a. Matty McFly on Slack) joined me in the studio to talk about his wild and crazy pat...

Listen
7 Minute Security
7MS #341: How to Fix Unquoted Service Paths from 2018-12-19T18:53:20

Today's episode is brought to you by my friends at safepass.me. Safepass.me is the most efficient and cost-...

Listen
7 Minute Security
7MS #340: Forensics 101 Reloaded and The CryptoLocker Music Video from 2018-12-13T16:34:45

Last week I had the fun privilege of speaking twice at the Minnesota Goverment IT Symposium on the f...

Listen
7 Minute Security
7MS #339: A Pulse-Pounding Impromptu Physical Pentest from 2018-12-06T17:35:19

On a recent security assessment I was thrown for a loop and given the opportunity to do a two-part physical pentest/SE exercise - with about 5 minutes notice(!). Yes, it had me pooping my pants,...

Listen
7 Minute Security
7MS #338: SIEMple Tests for Your SIEM Solution from 2018-11-28T15:45:45

Today's episode talks about some SIEMple tests you can run on your SIEM (OMg see what I did there? I took the word simple and made it SIEMple. Genius stuff, right? And there's ...

Listen
7 Minute Security
7MS #337: Happy Secure Thanksgiving from 2018-11-21T19:42:05

Happy Thanksgiving! In this episode I:

  • Share some things I'm thankful for - like you!
  • Talk about a fun episode I'm working on that has some SIEMple tests you can u...

    Listen
7 Minute Security
7MS #336: How to Succeed in Business Without Really Crying - Part 6 from 2018-11-14T20:01:43

Welcome to part 6 of our miniseries all about the ups, downs, trials and tribulations of being a small, one-person security start up. In this episode I detail out all the software/services I use...

Listen
7 Minute Security
7MS #335: Cool Stuff I Just Learned From Red Teamers from 2018-11-08T14:23:34

Today I'm excited to brain-dump a bunch of cool stuff I learned at a red team conference called ArcticCon t...

Listen
7 Minute Security
7MS #334: IT Security Horrors That Keep You Up at Night from 2018-11-01T19:17:59

This week I got to celebrate Halloween with my friends at Netwrix by co-hosting a Webinar c...

Listen
7 Minute Security
7MS #333: Pentesting Potatoes from 2018-10-26T02:52:53

This week I was in lovely Boise, Idaho doing some security assessment work. While I was there I got to hang out with Paul Wilch and some of the Listen

7 Minute Security
7MS #332: Low Hanging Hacker Fruit from 2018-10-17T14:14:11

In this episode I'm releasing a new document aimed to help organizations eliminate low hanging hacker fruit from the environment. The document contains (relatively) cheap and (relatively) easy t...

Listen
7 Minute Security
7MS #331: How to Become a Packtpub Author - Part 3 from 2018-10-10T13:34:30

It's done! It's done!! It's DONE!!!

That's right mom, my PacktPub course called Listen

7 Minute Security
7MS #330: Interview with Nathan Hunstad of Code42 from 2018-10-03T18:20:48

In today's episode, I'm excited to be joined in the studio by Nathan Hunstad, Director of Secu...

Listen
7 Minute Security
7MS #329: Active Directory Security 101 from 2018-09-27T16:52:51

Today's episode is brought to you by my friends at Netwrix. Their amazing Netwrix Auditor tool gives you visibility into what’s happening both on your local network and cloud-based IT systems an...

Listen
7 Minute Security
7MS #328: How to Succeed in Business Without Really Crying - Part 5 from 2018-09-19T21:50:11

This episode is a cavalcade of fun! Why?

First, I've got a big announcement: I've accepted a new position.

"What?!" exclaimed my mom. "I thought you were president of 7MS,...

Listen
7 Minute Security
7MS #327: Interview with John Strand from 2018-09-13T03:24:11

Today's episode is brought to you by my friends at Netwrix. Their amazing Netwrix Auditor tool gives you visibility into what’s happening both on your local network and cloud-based IT systems an...

Listen
7 Minute Security
7MS #326: Interview with Ryan Manship and Dave Dobrotka from 2018-09-06T04:54:44

Today's episode is brought to you by my friends at Dashlane, a fantastic password manager for you, your family and your business! Head to Listen

7 Minute Security
7MS #325: Integrating Pwned Passwords with Active Directory - Part 2 from 2018-08-30T12:35:21

Today's episode is a follow-up to #304 where we talked...

Listen
7 Minute Security
7MS #324: How to Succeed in Business Without Really Crying - Part 4 from 2018-08-23T14:21:41

It's been a while so I thought I'd update you on how things are going on the business front. Here are the bi...

Listen
7 Minute Security
7MS #323: 7 Ways to Not Get Hacked from 2018-08-16T21:05:58

I'm putting together a general security awareness session aimed at helping individuals and businesses not get hacked. To play off the lucky number 7, I'm trying to broil this list down ...

Listen
7 Minute Security
7MS #322: My First Live Radio Interview from 2018-08-09T14:53:08

I had an exhilarating and terrifying experience this week doing my first ever live radio interview!

As a quick bit of background, this interview was part of the 7MS radio marketing campai...

Listen
7 Minute Security
7MS #321: Interview with Joe Klein - Part 2 from 2018-08-01T19:09:40

Today's episode is brought to you by ITProTV. Visit itpro.tv/7ms and use code ...

Listen
7 Minute Security
7MS #320: Interview with Lane Roush of Arctic Wolf from 2018-07-25T14:24:33

Today's episode is brought to you by ITProTV. Visit itpro.tv/7ms and use code ...

Listen
7 Minute Security
7MS #319: Sniper and Firewalls Full of FUD from 2018-07-20T00:17:57

Today's episode is brought to you by ITProTV. Visit itpro.tv/7ms and use code ...

Listen
7 Minute Security
7MS #318: Interview with Bjorn Kimminich of OWASP Juice Shop from 2018-07-11T13:01:39

Today's episode is brought to you by ITProTV. Visit itpro.tv/7ms and use code ...

Listen
7 Minute Security
7MS #317: Interview with Justin McCarthy of StrongDM from 2018-07-05T16:58:17

Today's interview features Justin McCarthy, CTO and cofounder of StrongDM, which offers both commercia...

Listen
7 Minute Security
7MS #316: How to Succeed in Business Without Really Crying - Part 3 from 2018-06-28T02:44:56

In this episode I wanted to give you some cool/fun updates as it relates to 7MS the business! Specifically:

  • A new member of the 7MS team (kinda!)
  • The weird and varied proje...

    Listen
7 Minute Security
7MS #315: Creating a Personal DR Plan - Part 2 from 2018-06-21T04:55:10

As a continuation of last week's episode I'm now making a bit of progress i...

Listen
7 Minute Security
7MS #314: Creating a Personal DR Plan from 2018-06-13T22:29:46

You probably create DR plans for your business (or help other companies build them), but have you thought about creating one for yourself? Yeah, I know it's grim to think about "What will my lov...

Listen
7 Minute Security
7MS #313: Push-Button Domain Admin Access from 2018-06-07T22:00:34

As I was preparing for my Secure 360 talk a month or so ago, I stumbled upon Listen

7 Minute Security
7MS #312: OFF-TOPIC - Boxing a Cat from 2018-05-30T21:18:32

It has been a heck of a week (in a good way), and I'm taking a break from security so you can help me untangle a mystery that's been wrapped around my brain for years. I need you to help me figu...

Listen
7 Minute Security
7MS #311: How to Build a Cuckoo Sandbox from 2018-05-24T13:04:11

This week I dove into building a Cuckoo Sandbox for malware analysis. There are certainly a ton Listen

7 Minute Security
7MS #310: Secure the Radio Commercials from 2018-05-18T18:37:31

Last week I was in the recording studio to record three 7MS commercials aimed at churches. The goal was to educate them on some security topics and close with a "hook" to contact 7MS for help se...

Listen
7 Minute Security
7MS #309: Password Cracking in the Cloud - Part 2 from 2018-05-09T12:42:50

Cracking passwords in the cloud is super fun (listen to last week's episode to learn how to build your own cracking box on the cheap at Listen

7 Minute Security
7MS #308: Password Cracking in the Cloud from 2018-05-02T13:11:16

I had an absolute ball this week trying to figure out how to crack passwords effectively, and on the cheap, and in the cloud. Today's episode goes into much more detail, and em...

Listen
7 Minute Security
7MS #307: Writing Security-Focused Radio Commercials from 2018-04-25T12:51:39

Hey, so this week I am without my main machine - thus no jingle or "jungle boogie" intro music. Feels weird. Feels real weird.

Anyway, ya know how I teased last week that 7MS cou...

Listen
7 Minute Security
7MS #306: A Peek into the 7MS Mail Bag - Part 2 from 2018-04-19T14:52:46

We've dug into some pretty technical topics the last few weeks so we're gonna take it easy today. Below are some FAQs and updates I'll cover on today's show:

FAQs

7 Minute Security
7MS #305: Evaluating Endpoint Protection Solutions - Part 2 from 2018-04-12T20:13:25

Today is part two of evaluating endpoint solutions, where I primarily focus on Caldera which is...

Listen
7 Minute Security
7MS #304: Integrating Pwned Passwords with Active Directory from 2018-04-05T14:20:46

I've been super pumped about Troy Hunt's Listen

7 Minute Security
7MS #303: Evaluating Endpoint Protection Solutions from 2018-03-29T02:20:05

I'm working on a fun project right now where I'm evaluating endpoint protection solutions for a client. They're faced with a choice of either refreshing endpoints to the latest gen of their curr...

Listen
7 Minute Security
7MS #302: Bunnies and Bloodhounds from 2018-03-22T20:58:09

I've had a fun week with a mixed bag of security related stuff happening, so I thought I'd throw it all in a big stew and cook it up for today's episode. Here are the highlights:

Bash bu...

Listen

7 Minute Security
7MS #301: CredDefense from 2018-03-15T04:16:18

Intro

CredDefense is a freakin' sweet tool from the fine folks at Listen

7 Minute Security
7MS #300: Windows System Forensics 101 - Part 2 from 2018-03-09T03:42:50

In today's continuation of last week's episode I'm continuing a discussion...

Listen
7 Minute Security
7MS #299: Windows System Forensics 101 from 2018-02-28T23:45:29

I had the privilege of creating a Windows System Forensics 101 course/presentation for a customer. The good/bad news is there is so much good information out there, it's hard to boil th...

Listen
7 Minute Security
7MS #297: How to Succeed in Business Without Really Crying from 2018-02-08T03:59:41

Intro

Here's some of the "juice" that has helped 7MS have a successful start:

Support system

Ok so I think if you're going to have a successful business, you need an awe...

Listen
7 Minute Security
7MS #295: Interview with Kevin Keane from 2018-01-25T03:57:13

Today I'm excited to be joined by my friend and advisor Kevin Keane (Twitter / Listen

7 Minute Security
7MS #294: GDPR Me ASAP from 2018-01-18T03:53:01

GDPR in a nutshell

GDPR, in a nutshell, is a set of legal regulations focused on the privacy of personal information for EU citizens - no matter where they are. Entities that store and/...

Listen
7 Minute Security
7MS #293: How to Become a Packtpub Author - Part 2 from 2018-01-04T00:13:22

Back in episode 280 I talked about how I started working with Listen

7 Minute Security
7MS #292: OFF-TOPIC - How I Nearly Killed My Sister with a Snowball from 2017-12-28T06:55:44

Hey folks, I had originally planned to cover the CredDefense toolkit...

Listen
7 Minute Security
7MS #291: The Quest for Critical Security Controls - Part 4 from 2017-12-21T02:10:04

Did I mention I love the Critical Security Controls? I do. And here's an absolute diamond I found this week:

This site (Listen

7 Minute Security
7MS #290: Interview with Joe Klein from 2017-12-14T03:21:28

My pal and former coworker Joe Klein joins me in the virtual studio to discuss:

7 Minute Security
7MS #289: I'm Dipping My Toes in Windows Forensics from 2017-12-07T03:30:16

Two weird things happening in this episode:

  • I'm not in the car, and thus not endangering myself and others while podcasting and driving!

  • My o...

    Listen
7 Minute Security
7MS #288: I'm BURPing a Lot from 2017-12-01T04:23:01

Sorry the podcast is late this week - but it's all for good reasons! I'm busy as a bee doing a ton of pentesting so I have a smattering of random security stuff to share with you:

Mac Hi...

Listen

7 Minute Security
7MS #287: Introducing 7 Minute Security LLC from 2017-11-22T20:26:34

Well, after over-teasing this last week, I'm excited to announce that I've started my own company! 7 Minute Security, LLC gives me an outlet to do all my favorite infosec stuff, such as:

Listen
7 Minute Security
7MS #286: The Quest for Critical Security Controls - Part 3 from 2017-11-16T22:30:14

We're continuing to hammer on the CSCs again this week. Here's some rad resources that can get your CSC efforts in the right direction:

7 Minute Security
7MS #285: The Quest for Critical Security Controls - Part 2 from 2017-11-09T05:07:15

Nothing to do with security, but I've heard this song way too much this week.

<...

Listen
7 Minute Security
7MS #284: The Quest for Critical Security Controls from 2017-11-02T03:50:23

For a long time I've been electronically in love with the Critical Security Controls. Not f...

Listen
7 Minute Security
7MS #283: OFF-TOPIC - I Love Cops and COPS from 2017-10-27T21:34:53

My plans for this week's podcast went hush-hush, kablooie, bye-bye, see ya, adios.

So, I'm pinch-hitting and going off-topic and talking about...of all things...cops. Now wait! Wait wait!...

Listen
7 Minute Security
7MS #282: A Peek into the 7MS Mail Bag from 2017-10-19T03:14:32

I'm gonna level with you: it's been a heck of a week. So I thought I'd try something a little different (and desperate?) and use this episode to answer some FAQs that come in via email and Twitt...

Listen
7 Minute Security
7MS #281: Baby's First Banking Infosec Conference from 2017-10-11T19:25:51

I went to my first ever banking-focused infosec conference a few weeks ago (Listen

7 Minute Security
7MS #280: How to Become a Packtpub Author from 2017-10-05T02:57:10

I'm excited to announce I'm going to be a PacktPub author! I'm going to work with them to create a course ...

Listen
7 Minute Security
7MS #279: Patching Solutions Bake-Off - Part 4 from 2017-09-28T04:10:51

Intro

The patching solutions review concludes this week with Ivanti'...

Listen
7 Minute Security
7MS #278: Interview with Rob Sell from 2017-09-21T04:47:12

Intro

We're breaking ground with this episode, folks! For the first time in 7MS history, we've got a guest on the show (finally, right?!).

Listen

7 Minute Security
7MS #277: Patching Solutions Bake-Off - Part 3 from 2017-09-14T02:19:51

ManageEngine Desktop Central

Overall, I have to bluntly say that I really enjoyed playing with ManageEngine's solution. It's got a crap-ton of features built into it - above an...

Listen
7 Minute Security
7MS #276: The CryptoLocker song from 2017-09-06T13:54:31

This is it! The worldwide Internet debut of an original infosec-themed song called CryptoLocker'd, and as the name implies, it's about a CryptoLocker incident. Here's the quick back sto...

Listen
7 Minute Security
7MS #275: Patching Solutions Bake-Off - Part 2 from 2017-08-30T19:52:25

This episode continues our series on comparing popular patching solutions, such as:

  • Ninite
  • ManageEngine
  • Ivanti
  • PDQ

Ninite

This week...

Listen
7 Minute Security
7MS #274: Speaking at ILTACON - Part 4 from 2017-08-23T22:40:12

I'm back from Vegas! My talk went really well and I'm excited to tell you about it in today's episode. First, some conference/trip highlights:

During the ILTACON conference I attended a g...

Listen
7 Minute Security
7MS #273: Speaking at ILTACON - Part 3 from 2017-08-17T03:23:43

I ran out of time in episode #272 to tell you about why preparing to be a speaker for ILTACON was way more stressful that preparing for Listen

7 Minute Security
7MS #272: Speaking at ILTACON - Part 2 from 2017-08-17T03:07:02

This is part 2 of a series focusing on public speaking - specifically for the ILTACON conference...

Listen
7 Minute Security
7MS #271: Patching Solutions Bake-Off - Part 1 from 2017-08-10T02:43:56

Seems like every business I meet with needs some sort of help in the patching department. Maybe they've got the Microsoft OS side of the house under control, but the third-party stuff i...

Listen
7 Minute Security
7MS #270: IDS on a Budget - Part 4 from 2017-08-03T04:27:42

I spent a bunch of time with Security Onion the last couple week's and have been lovin' it! I ran the i...

Listen
7 Minute Security
7MS #269: Documentation from 2017-07-27T21:09:29

Documentation is super boring, right? Yet it's critical to getting your client/audience excited about making their security better!

In this episode I talk about my mixed feelings towards ...

Listen
7 Minute Security
7MS #268: IDS on a Budget - Part 3 from 2017-07-19T12:50:50

Been having a blast working with the beta branch of the Sweet Security project a...

Listen
7 Minute Security
7MS #267: Backup Disasters from 2017-07-18T22:00:36

Today's episode is a horror story about how I recently lost 5+ years of CrashPlan backups due to what I'm ...

Listen
7 Minute Security
7MS #266: IDS on a Budget - Part 2 from 2017-07-13T18:51:44

This week I've continued to play with the awesome Sweet Security IDS solution you...

Listen
7 Minute Security
7MS 265: IDS on a Budget - Part 1 from 2017-07-05T20:04:37

I've been wanting to get a Bro IDS installed for a long time now - and for several reasons:

  1. <...

    Listen
7 Minute Security
7MS #264: Hacking Wordpress from 2017-06-29T04:32:57

I was pleasantly surprised to see a Wordpress site fall into a pentest scope this past week. One helpful tool to get familiar with when attacking Wordpress sites is Listen

7 Minute Security
7MS #263: Make Nessus Reporting Fun Again! from 2017-06-25T22:46:01

Tell me I can't be the only one who regularly wants to combine a bunch of small Nessus scans files into a big fat Nessus scan file, and then make pretty pictures/graphs/summaries that the custom...

Listen
7 Minute Security
7MS #262: Speaking at ILTACON from 2017-06-14T22:49:13

Through kind of a weird series of events, I have an opportunity to speak at ILTACON this summer ...

Listen
7 Minute Security
7MS #261: Blind Network Security Assessments from 2017-06-07T22:24:53

This week I had the fun opportunity to do a "blind" network security assessment - where basically we had to step into a network we'd never seen before and make some security posture recommendati...

Listen
7 Minute Security
7MS #260: PwnPro 101 - Part 2 from 2017-06-02T22:00:37

I'm continuing to love the our PwnPro and had a chance to use it o...

Listen
7 Minute Security
7MS #259: OFF-TOPIC - Home Robbery Attribution from 2017-05-25T02:15:30

Warning! Warning! This is an off-topic episode!

I try really hard to create valuable weekly content about IT/security. However, sometimes a virtual grenade goes ...

Listen
7 Minute Security
7MS #258: Speaking at Secure360 - Part 2 from 2017-05-18T19:45:29

Intro

I mentioned last week that I was speaking at the Listen

7 Minute Security
7MS #257: Speaking at Secure360 from 2017-05-11T15:00:22

The nervous butterflies are chewing up my organs this week. Why? Because I'm speaking at Secure360 next Listen

7 Minute Security
7MS #256: AlienVault Certified System Engineer - Part 2 from 2017-05-04T01:29:03

So a few weeks ago I did an episode about the Listen

7 Minute Security
7MS #255: PwnPro 101 from 2017-04-27T02:22:47

I'm kicking the tires on the PwnPro which is an all-in-one wired, wireless and ...

Listen
7 Minute Security
7MS #254: Bash Bunny from 2017-04-20T01:45:03

I've been working with the Bash Bunny for the past few weeks in preparation for a prese...

Listen
7 Minute Security
7MS #253: Desperately Seeking Service Accounts from 2017-04-13T14:17:41

Find the show notes here!

Listen
7 Minute Security
7MS #252: LAPS - Local Administrator Password Solution from 2017-04-06T03:27:58

Show notes are here.

Listen
7 Minute Security
7MS #251: Blackholing Malvertising with Pi-Hole from 2017-03-30T00:17:12

Show notes are here

Listen
7 Minute Security
7MS #250: The PBS Telethon Episode! from 2017-03-23T15:52:24

Show notes for today's episode can be found here!

Listen
7 Minute Security
7MS #249: AlienVault Certified Security Engineer - Part 1 from 2017-03-16T19:21:48

Show notes are here.

Listen
7 Minute Security
7MS #248: How to Hack the 10 O'clock News from 2017-03-09T15:32:01

Show notes are here.

Listen
7 Minute Security
7MS #247: Webapp Pentest Tool Bake-Off - Part 4 from 2017-03-02T04:11:57

Show notes are here.

Listen
7 Minute Security
7MS #246: Webapp Pentest Tool Bake-Off - Part 3 from 2017-02-23T03:53:34

Site notes are here. Enjoy.

Listen
7 Minute Security
7MS #245: Webapp Pentest Tool Bake-Off - Part 2 from 2017-02-17T19:31:30

Show notes are here.

Listen
7 Minute Security
7MS #244: Webapp Pentest Tool Bake-Off - Part 1 from 2017-02-09T04:50:34

Show notes are here

Listen
7 Minute Security
7MS #243: ZOMG Logo Design Contest! from 2017-02-02T16:25:34

Here are today's show notes!

Listen
7 Minute Security
7MS #242: Bye Bye Dream Job - Part 4 from 2017-01-26T04:13:51

We've reached the end of this series, and I come into this final chapter bearing good news: I have a job! So in today's episode, I just wanted to kick back and share some cool things I'...

Listen
7 Minute Security
7MS #241: Bye Bye Dream Job - Part 3 from 2017-01-19T04:59:38

Show notes are here

Listen
7 Minute Security
7MS #240: Bye Bye Dream Job - Part 2 from 2017-01-12T04:29:24

Show notes are here.

Listen
7 Minute Security
7MS #215: Installing Ubiquiti EdgeRouter X and AP - Part 1 from 2016-07-21T04:05:19

Here you can provide a detailed description about your podcast. You may wish to include: topics that will be discussed, your episode schedule, who hosts the show, any guests that have or will ap...

Listen
7 Minute Security
7MS #171: OFF-TOPIC - Easter Music from 2016-03-24T02:00

Show notes (actually, MUSIC notes in this case) can be found here: https://7ms.us/7m...

Listen
7 Minute Security
7MS #165: DIY Podcast from 2016-03-10T02:54:27

Show notes for today's episode are right here: https://7ms.us/7ms-165-diy-podcast/

Listen
7 Minute Security
7MS #164: Pentesting in a Vacuum - Part 2 from 2016-03-07T23:45:46

Check out the show notes for today's episode here: https://7ms.us/7ms-164-pe...

Listen
7 Minute Security
7MS #162: OFF-TOPIC - Deadpool from 2016-03-02T21:04:42

Show notes for today's episode are here: https://7ms.us/7ms-162-off-topic-deadpool/...

Listen
7 Minute Security
7MS #158: Pentesting in a Vacuum from 2016-02-22T22:06:56

Today's swell show notes are at: https://7ms.us/7ms-158-pentesting-in-a-vacuum/...

Listen
7 Minute Security
7MS #155: Million Dollar Pentest Idea, Notepad Tricks and LL Bean Jackets for Dogs from 2016-02-16T03:40:22

Here are the show notes for today: ...

Listen
7 Minute Security
7MS #153: OFF-TOPIC - Ex Machina (and special musical guest) from 2016-02-10T15:31:59

Today's episode is a movie review of Ex Machina (how the FRICK do you pronounce that?) and closes out with special musical guest, Sweet Surrender!

Listen
7 Minute Security
7MS #152: Review of the Almond 2015 Wireless Router from 2016-02-08T20:28:05

This is a mini-review of the Almond 2015 router by Securifi. This is NOT a paid advertisement or endorsement. I just happen to REALLY like this little router.

Listen
7 Minute Security
7MS #151: Friday Infosec News and Links Roundup from 2016-02-05T16:58:06

Here are some of my favorite stories and links for this week!

Training opportunities
7 Minute Security
7MS #150: OFF-TOPIC-Bone Tomahawk / Goodnight Mommy / Comedy Loves Misery from 2016-02-03T14:38:52

Preview16 wordsIn today's off-topic episode I review the following movies:

7 Minute Security
7MS #149: Securing Your Life - Part 3 from 2016-02-01T23:26:58

This episode continues the series on securing your life - making sure all the security stuff related to your life is in order. Today we're particularly focusing on preparing to travel. What if (...

Listen
7 Minute Security
7MS #148: OFF-TOPIC - Apple Watch Review from 2016-01-28T04:16:48

Yep, there are tons of people/blogs/magazines/children/pets who have provided reviews of the Apple Watch. This is mine.

Listen
7 Minute Security
7MS #147: DIY Hosted Mutillidae from 2016-01-26T03:57:58

In this episode I talk about how to build a cheap hosted Mutillidae server to safely hack away on while keeping other Internet prowlers out. Here are the basic commands to run to lock down the D...

Listen
7 Minute Security
7MS #146: Friday Infosec News and Links Roundup from 2016-01-23T03:22:23

Here are some of my favorite stories and links for this week!

  • If you missed last week's BURN IT ALL! Webcast, it's now online as a Listen
7 Minute Security
7MS #145: OFF-TOPIC - Sicario and The Walk from 2016-01-21T02:42:16

In today's off-topic episode I review two movies: Sicario and The Walk.

Listen
7 Minute Security
7MS #144: Shoulder-Surfing with Seasoned Pentesters from 2016-01-18T21:51:08

I recently had the opportunity to shoulder-surf with some seasoned Webapp pentesters, and wanted to share what I learned about their tools, techniques and methodologies.

Listen
7 Minute Security
7MS #143: Friday Infosec News and Links Roundup from 2016-01-15T13:36:50

Here are some of my fav' stories and links for this week!

* Bur...

Listen
7 Minute Security
7MS #142: OFF-TOPIC - Media Servers and Making a Murderer from 2016-01-13T22:33:08

This off-topic episode covers:

* Media servers - I'm a newb in this area and could use your help in setting up a config that actually works!

* Making a Murderer - this is a fantast...

Listen
7 Minute Security
7MS #141: Happy (Belated) New Year! from 2016-01-11T21:34:36

Happy (belated) new year! This episode is more of a "What am I listening to, a PBS telethon?!" kind of thing, and I'm sorry for that. But I want to cover:

* Scheduling changes for 2016 - ...

Listen
7 Minute Security
7MS #140: OFF-TOPIC - Video Games I'm Currently Playing from 2016-01-08T22:52:12

This episode talks about some cool video games I've been playing lately:

* Metal Gear Solid Phantom Pain (Xbox 360)

* Rise of the Tomb Raider (Xbox 360)

* Luminocity (iPhone...

Listen
7 Minute Security
7MS #139: Securing Your Life - Part 2 from 2016-01-08T22:51:26

Back in episode #93 I talked about securing your life - in other words, asking yourself "What would happen if I was dead right now? Do I have adequate insurance? Are my finances in order? How ab...

Listen
7 Minute Security
7MS #138: OFF-TOPIC - The Hateful Eight from 2016-01-07T01:29:15

Looks like I'm one of the few people in the world who did NOT love this movie. I found it painful slow and claustrophobic. #diappointed.

Listen
7 Minute Security
7MS #137: OFFTOPIC-Welcome to Leith from 2016-01-06T02:43:19

This off-topic episode talks about one of the most gripping and disturbing documentaries I've ever seen. Welcome to Leith, in a nutshell, asks the question: What would you do if a white supremac...

Listen
7 Minute Security
7MS #136: Python for Newbs from 2016-01-05T02:53:26

One skill that's been kind of a hinderance in my IT/security career is I have exactly zero experience in programming/coding. Zero. Zip. Nil. Nada. Nothing..

But I'm tryi...

Listen
7 Minute Security
7MS #135: I Got a New Job - Part 4 from 2016-01-04T01:20:28

This is a four-part series about my transition to a new job! The topics are as follows:

* Part 1: When it may be time to look for a new job (or not)

* Part 2: How to stand out duri...

Listen
7 Minute Security
7MS #134: I Got a New Job - Part 3 from 2016-01-01T16:33:22

This is a four-part series about my transition to a new job! The topics are as follows:

Part 1: When it may be time to look for a new job (or not)

Part 2: How to stand out during p...

Listen
7 Minute Security
7MS #133: I Got a New Job - Part 2 from 2016-01-01T16:32:16

This is a four-part series about my transition to a new job! The topics are as follows:

Part 1: When it may be time to look for a new job (or not)

Part 2: How to stand out during p...

Listen
7 Minute Security
7MS #132: I Got a New Job - Part 1 from 2016-01-01T16:26:55

This is a four-part series about my transition to a new job! The topics are as follows:

Part 1: When it may be time to look for a new job (or not)

Part 2: How to stand out during p...

Listen
7 Minute Security
7MS #131: How to Attempt a Two Week Pentest in Two Days from 2015-12-30T04:30:54

The title says it all. I had two days to pentest a network that probably would've taken two or more people two weeks or more. I laughed. I cried. I had fun.

Listen
7 Minute Security
7MS #130: Sqlmap and Sqlninja FTW from 2015-12-29T00:27:24

This episode talks about some fun I had using sqlmap, and how using it in conjunction with Sqlninja makes me happy to be alive.

Listen
7 Minute Security
7MS #129: Embarrassing Stories from 2015-12-27T21:34:41

In this episode I talk about face-planting in my office at the first job I had out of college.

Listen
7 Minute Security
7MS #128: Transparency is King from 2015-12-27T05:22:08

In this episode, I talk about a restaurant infosec assessment I did, and how the recommendations coming out of that assessment didn't fit the standard "mold." I also talk about how being transpa...

Listen
7 Minute Security
7MS #127: Intro to HIPAA Assessments from 2015-12-27T05:10:19

This episode covers a few HIPAA tidbits I picked up while preparing for - and executing - a HIPAA security assessment.

Listen
7 Minute Security
7MS #126: Get Your Name Out There from 2015-12-24T19:50:30

This episode isn't about infosec exactly, but it talks about how using public resources like LinkedIn, Twitter and blogs to boost your "brand" (though I hate that word) and help you get more con...

Listen
7 Minute Security
7MS #125: Securing Your Life-Part 2 from 2015-12-23T18:13:16

Way back in episode #93, I talked about things you can do to secure your life (mortgage review, adequate insurance, estate planning, investments, etc.).

This episode continues that train ...

Listen
7 Minute Security
7MS #124: Sprinkles from 2015-12-23T02:31:11

This episode is 90% a rant about how annoying carry-on luggage and air travel can be, and a 10% sprinkling of security sauce mixed in. Hence: sprinkles.

Listen
7 Minute Security
7MS #123: Doing a Redo Assessment from 2015-12-22T03:12:16

This episode talks about my experience in doing a "redo" security assessment, during which I struggled with the following questions: what's the best way to efficiently correct the erroneous info...

Listen
7 Minute Security
7MS #122: OFFTOPIC-An Apology to Elephants from 2015-12-20T16:40:22

Preview76 wordsThis episode is about a documentary called An Apology to Elephants. It's all...

Listen
7 Minute Security
7MS #121: Migrating from Tumblr to Ghost-Part 2 from 2015-12-19T16:38:59

Part 2 concludes my journey in moving 7ms.us from Tumblr to a Digital Ocean droplet running Ghost. Here are the key resources mentioned during the podcast:

7 Minute Security
7MS #120: THE PURGE! from 2015-12-18T21:58:38

Announcing the 7MS PURGE! I've got a back log of episodes banked and I want to get caught up for the new year. So I'm going to release one (or maybe more) episodes per day between now and 2016. ...

Listen
7 Minute Security
7MS #119: Migrating from Tumblr to Ghost-Part 1 from 2015-12-17T14:16:41

In this episode I talk about my adventures in moving my brianjohnson.tv Tumblr content over to a Digital Ocean hosted droplet running Ghost.

I think you'll want to check this episode out,...

Listen
7 Minute Security
7MS #118: Should Phishing be Fair? from 2015-12-15T15:38:33

This episode discusses an important and rhetorical (to me) infosec question: Should phishing campaigns be "fair?"

Listen
7 Minute Security
7MS #117: OFFTOPIC-Alive Inside from 2015-12-10T18:13:42

Today I talk about one of the most moving films I've ever seen - a documentary called Alive Inside.

Listen
7 Minute Security
7MS #116: Tips for a Succesful Vulnerability Scan from 2015-12-08T22:31:39

In this episode I complain about getting stuck in NY for two days, and also how to efficiently scan for vulnerabilities when your time is crunched.

Listen
7 Minute Security
7MS #115: OFFTOPIC-Love and Mercy from 2015-12-04T13:19:58

We're going off-topic today and talking about the new(ish) movie about Brian Wilson's life called Love and Mercy.

Listen
7 Minute Security
7MS #114: PCI Pentesting 101-Part 3 from 2015-12-02T04:01:36

Part 3 on my series about PCI pentesting. Yeah. That.

Listen
7 Minute Security
7MS #113: Big Bag of Random Security Stuff from 2015-11-27T20:39:42

Yep, this episode is EXACTLY what the title implies.

Listen
7 Minute Security
7MS #112: This is Sparta! from 2015-11-25T15:16:54

This episode is about one of my favorite enumeration tools called Sparta - it's built right into Kali 2. And maybe it was in Kali 1 and I totally missed it. But whatevs. I'm happy to have found ...

Listen
7 Minute Security
7MS #111: Hacking WPA Enterprise-Part 2 from 2015-11-20T14:21:43

The thrilling (?) conclusion of my experience hacking WPA Enterprise.

Listen
7 Minute Security
7MS #110: Hacking WPA Enterprise-Part 1 from 2015-11-17T23:14:25

This episode is about my experience hacking WPA enterprise. Huge mega tiger uppercut thanks to this site for giving me the fixes I needed to get this working on Kali2! Listen

7 Minute Security
7MS #109: OFFTOPIC-It Follows and Backcountry from 2015-11-13T09:37

Movie reviews of It Follows and Backcountry.

Listen
7 Minute Security
7MS #108: I'm Going to PWAPT!-Part 2 from 2015-11-11T02:10:59

Here's part 2 (of probably several to come) about my experience with PWAPT (Practical Webapp Pentesting) training last week!

Listen
7 Minute Security
7MS #107: I'm Going to PWAPT! from 2015-11-03T17:16:43

Hey I'm going to PWAPT this week (Listen

7 Minute Security
7MS #106: A Day in the Life of an Information Security Analyst from 2015-10-30T01:12:40

A listener wrote in asking some questions about "a day in the life of" a security analyst, so here's my best stab at it!

Listen
7 Minute Security
7MS #105: OFFTOPIC-Big Bag of Random Sauce from 2015-10-28T04:19:27

Today's totally random episode covers:

1. How bad does this podcast's logo suck?

2. Does this podcast need a theme song?

3. Some interesting training I'm taking next week. Listen

7 Minute Security
7MS #104: LANTurtle First Impressions from 2015-10-22T12:06:39

Hey I just got a LANTurtle and....these are my first impressions!

Listen
7 Minute Security
7MS #103: OFFTOPIC-I Was in a Movie Once from 2015-10-20T20:03:23

This is an off-topic episode about the time I was in the holiday comedy super-smash laugh-fest, Jingle All the Way.

Listen
7 Minute Security
7MS #102: Recon-ng! from 2015-10-15T19:18:17

I'm a big fan of Recon-ng and you should be too! Check it out - and learn more about Tim Tomes, its creator - at www.lanmaster53.com. And here's the video I mentioned in the podcast - my first l...

Listen
7 Minute Security
7MS #101: OFFTOPIC-I Am Chris Farley from 2015-10-14T01:52:53

The new(ish) Chris Farley documentary is fantastic - see it!

Listen
7 Minute Security
7MS #100: Assessment Curses Can Be Blessings from 2015-10-09T03:12:53

Ever had an assessment that you thought would be the death of you? I had one recently, but after sticking it out, it turned out to be a blessing in disguise.

Listen
7 Minute Security
7MS #99: How to Deliver Bad News in a Good Way from 2015-10-02T13:56:44

Today's episode gives you some tips on how to deliver bad news in an assessment in a positive way. I think that last sentence was a grammatical nightmare.

Listen
7 Minute Security
7MS #98: Intro to PCI Scoping from 2015-09-30T01:50

So far I've focused on the technical aspects of PCI, but I'm trying to get familiar with the overall scoping questions that my tenacious QSA friends ask when they start a gap analysis. This epis...

Listen
7 Minute Security
7MS #97: OFFTOPIC-Limbo from 2015-09-25T03:33:03

We're going off topic today and talking about video games! LIMBO for the Xbox!

Listen
7 Minute Security
7MS #96: How to Make Enemies During a Security Assessment from 2015-09-23T01:48:24

Yep, we're talking about how to make ENEMIES during a security assessment today (and maybe turn them into friends).

Listen
7 Minute Security
7MS #95: How to Make Friends During a Security Assessment from 2015-09-17T18:50:24

When you start a security assessment with a company, not everybody's gonna be glad to see you. The IT dept and other employees may have tense shoulders, thinking that this is an Office Space sit...

Listen
7 Minute Security
7MS #94: Learn How to Burp - Part 1 from 2015-09-15T21:33:38

I've been looking for better ways to learn Burp Suite and I struck gold! Check out my recommendations in today's episode!

Listen
7 Minute Security
7MS #93: Securing Your Life from 2015-09-11T01:37

So yeah, this is kind of off-topic, but have you thought about security in the sense of "What kinds of security things should I be doing before I'm dead?" Today's episode explores that.

Listen
7 Minute Security
7MS #92: You're Not Ready for Big Boy Security Pants from 2015-09-09T15:29:32

Sometimes I get in situations where clients want their WHOLE security program reviewed, but in reality, they are still in the baby steps phase. What's the right thing to do when, for lack of a b...

Listen
7 Minute Security
7MS #91: Umbrella from 2015-09-03T10:49

Today's episode is about Umbrella, a product from OpenDNS that p...

Listen
7 Minute Security
7MS #90: OFFTOPIC-Citizenfour from 2015-09-01T10:44

We're going offtopic today and talking about the Citizen Four documentary, which centers around the Edward Snowden story.

Listen
7 Minute Security
7MS #89: AppSpider from 2015-08-27T10:42

Today we're talking about a new (to me) Web site/app scanning tool called AppSpider by Rapid7. Again, this isn't a commercial or paid advertisement. I just like sharing things that I like and us...

Listen
7 Minute Security
7MS #88: Glasswire from 2015-08-25T10:40

This episode's about a cool security app called GlassWire, which is (kind of) a firewall on steroids. I love it! Oh, and this is not an endorsement or a commercial :-)

Listen
7 Minute Security
7MS #87: Presenting the Right Findings to the Right Audience from 2015-08-20T22:53

Today I talk about challenge I run into when I'm delivering to a mixed audience of C-level folks and IT people. How do you keep things high level enough so everybody "gets it" but also go level ...

Listen
7 Minute Security
7MS #86: OSWP-The Final Chapter! from 2015-08-18T16:31

This episode concludes the gripping, thrilling, exciting, awesome-ing, death-defying, unsettling, rattling series on OSWP (Offensive Security Wireless Professional). Specifically, I talk (as muc...

Listen
7 Minute Security
7MS #85: What is The Penetration Testers Framework (PTF)? from 2015-08-14T14:42

Need an easy way to create a modular/mobile kit of pentest tools to take with you from machine to machine? And ALSO be able to update all those modules in one command? Then check out the Listen

7 Minute Security
7MS #84: DIY Pwn Pad from 2015-08-12T08:42

Hey have you heard of Pwn Pads? They're an awesome...

Listen
7 Minute Security
7MS #83: Wifi Pineapple First Impressions from 2015-08-06T12:26

in this episode I talk about my first hands-on experience with a Wifi Pineapple, and why you'll probably want one too.

Listen
7 Minute Security
7MS #82: OSWP-Part 3 from 2015-08-04T11:44

The OSWP series is coming to a close. One final episode today and then the four-quel episode will be all about the test!

Listen
7 Minute Security
7MS #81: OSWP-Part 2 from 2015-07-30T11:42

A continuation of our thrilling, exciting, mind-blowing series on OSWP (Offensive Security Wireless Professional)!

Listen
7 Minute Security
7MS #80: OSWP-Part 1 from 2015-07-28T11:40

This episode kicks off a multi-part series all about the OSWP (Offensive Security Wireless Professional) certification.

Listen
7 Minute Security
7MS #79.5: UPDATE(!) on My Love-Hate Relationship with Nessus from 2015-07-27T02:37

In episode #79 I shared some gripes about Nessus. Those gripes were quickly answered by Tenable staff/support so I wanted to pass relevant updates on to you!

Listen
7 Minute Security
7MS #79: My Love-Hate Relationship with Nessus from 2015-07-23T11:36

In this episode I talk about one of my favorite vulnerability scanners, Nessus, and why I want to simultaneously hug it and punch it in the neck.

Listen
7 Minute Security
7MS #78: It's All About Segmentation from 2015-07-21T11:32

In this episode I advocate for proper network segmentation, as doing it (well and right!) can seriously reduce your risks!

Listen
7 Minute Security
7MS #77: OFFTOPIC-Rickrolling Your Coworkers for Fun and Profit from 2015-07-16T13:06

This week i used my Wifi Pineapple to scare and amuse my coworkers and lure them into a Rickroll trap. All the gory details in today's episode!

Listen
7 Minute Security
7MS #76: Lessons Learned from LastPass from 2015-07-14T13:05

I know this is a bit late, but I wanted to talk a little about the LastPass breach and why I'll still remain a customer.

Listen
7 Minute Security
7MS #75: OFFTOPIC-My Son's Piano Recital from 2015-07-09T20:54:15

I wanted to share (what I think is) an amusing anecdote about my son's first piano recital, which was topped off by a kid playing the song "Lucky." Many LOLs commenced for me.

Listen
7 Minute Security
7MS #74: How to Become a More Organized Information Security Professional from 2015-07-08T02:37:45

In this episode I share some strategies and apps that may help you stay more organized as you go about your infosec work!

Listen
7 Minute Security
7MS #73: PCI Pentesting 101 – Part 2 (audio) from 2015-06-30T15:14:48

This episode is the exciting continuation of a recent pentest I did, in which I got some serious pwnage, including cracking the domain admin password! 7MS #73: PCI Pentesting 101 – Part 2 (audio...

Listen
7 Minute Security
7MS #72: PCI Pentesting 101 (audio) from 2015-06-25T07:00:05

I’m pumped to talk about an about an awesome, free little tool that made my Internet connection feel like new again. 7MS #72: PCI Pentesting 101 (audio) Listen

7 Minute Security
7MS #71: OFFTOPIC-Mad Max (audio) from 2015-06-23T07:00:49

We’re going totally off topic today and doing a movie review of Mad Max! 7MS #71: OFFTOPIC-Mad Max (audio)Listen

7 Minute Security
7MS #70: Get the Most out of Your DNS! (audio) from 2015-06-18T07:00:49

I’m pumped to talk about an about an awesome, free little tool that made my Internet connection feel like new again. 7MS #70: Get the Most out of Your DNS! (audio)Listen

7 Minute Security
7MS #69: I’m Not Responsible for Your Information Insecurity (audio) from 2015-06-16T07:00:18

Are you too hard on yourself? Do you think the success of your client’s infosec program lives and dies with you? Listen to this episode. You might feel better. 7MS #69: I’m Not Responsible for Y...

Listen
7 Minute Security
7MS #68: Is Training and Awareness Worth It or Worthless (audio) from 2015-06-11T07:00:14

This episode is about something that got my undies in a bunch – I heard a security expert imply that training and awareness might be worthless! 7MS #68: Is Training and Awareness Worth It or Wor...

Listen
7 Minute Security
7MS #67: Wifi Sniffing is Fun-Part 2 (audio) from 2015-06-09T20:00:09

This is a follow-up to episode #64, in which I did some fun wireless sniffing and tried to find sensitive data within it! In the episode I talk about the network “map” of my sniffing setup. It l...

Listen
7 Minute Security
7MS #66: I’m Excited to Go Phishing – Part 2 (audio) from 2015-06-04T13:45

This is a follow-up to episode #63, discussing the results of a fun phishing campaign I recently completed. 7MS #66: I’m Excited to Go Phishing – Part 2 (audio)Listen

7 Minute Security
7MS #65: OFFTOPIC-Still Alice (audio) from 2015-06-03T07:00:49

Warning, this episode is off topic and has NOTHING to do with infosec! Nope! Instead, it’s a review of the movie Still Alice. Yep. That happened. 7MS #65: OFFTOPIC-Still Alice (audio)...</p>

                        <a href=Listen

7 Minute Security
7MS #64: Wifi Sniffing is Fun-Part 1 (audio) from 2015-05-28T11:00:24

I got a fun project involving wireless sniffing, followed up by scraping through packets looking for credit card data! Here’s part 1, which talks about about software/hardware you might need to ...

Listen
7 Minute Security
7MS #63: I’m Excited to Go Phishing (audio) from 2015-05-21T07:00:07

This week I’ll be launching a phishing campaign against an organization that has been well trained to defend against such malicious attacks and links! Will this organization break my company’s 1...

Listen
7 Minute Security
7MS #62: You Should Run LAPS (audio) from 2015-05-19T07:10:58

I’m excited about this! Microsoft has released a tool called Local Administrator Password Solution to help administrators manage local admin credentials for domain-joined machines. Check out thi...

Listen
7 Minute Security
7MS #61: Why Local Admin Rights Suck (audio) from 2015-05-14T07:00:11

Users running as local admins on their machine are a big risk! This episode discusses some reasons why, and also here is the link to the Avecto study I mention regarding how many Microsoft vulne...

Listen
7 Minute Security
7MS #60: How Not to Suck at Customer Service (audio) from 2015-05-12T07:00:32

This episode was inspired by two awesome customer service experiences I had in the past week. It got me thinking: how can we as infosec professionals suck less with our customer service approach...

Listen
7 Minute Security
7MS #59: Traveling with a Red Giant – Part 2 (audio) from 2015-05-07T17:39:46

A few episodes back I talked about Red Giant, a cool service that provides you with a pre-paid debit card that can be controlled/locked with your phone. I finally got my card working, and this e...

Listen
7 Minute Security
7MS #58: What Should We Do First? (audio) from 2015-05-05T07:00

At the end of just about every assessment I deliver, the client asks “What should we do first?” They (understandably) want to know a “top 5″ list of things they should change right away to impro...

Listen
7 Minute Security
7MS #57: How to Review a Firewall (audio) from 2015-04-30T07:00:59

In this episode I talk about a few different ways to approach firewall reviews/audits. This document was very helpful in getting my template started. Also check out Nipper if you’re looking for ...

Listen
7 Minute Security
7MS #56: OFFTOPIC – Catching Up and Blowing Noses (audio) from 2015-04-28T07:00:12

A few offtopic things: What you can expect as far as a podcast release schedule going forward Two suspicious charges that showed up on my credit card while out of town! 7MS #56: OFFTOPIC – Catch...

Listen
7 Minute Security
7MS #55: OFFTOPIC – What’s in Brian’s Murse? (video) from 2015-04-22T07:00:25

Ok I don’t really have a murse, but I wanted to do a short video(!) podcast to show you some sorta-security-related gadgets that I’ve been nerding out on the last few weeks. 7MS #55: OFFTOPIC – ...

Listen
7 Minute Security
7MS #54: Traveling with a Red Giant (audio) from 2015-04-16T07:00:54

If you’re concerned about your credit/debit card security, you might want to give Red Giant a try. It’s a service that provides a debit card you can unlock *only* when buying something. It’s coo...

Listen
7 Minute Security
7MS #53: Are You Ready to Get Robbed? (audio) from 2015-04-14T07:00:26

Business DR plans are a hugely important – and often overlooked – piece of the infosec puzzle. But what about at home? If you got run over by a bus tomorrow, would you have good plans in place t...

Listen
7 Minute Security
7MS #52: OFFTOPIC – My Son is Really Loyal (audio) from 2015-04-09T07:00:13

It’s another off-topic episode today. This one’s about how my eight-year-old son is fiercely loyal, and wants to settle a 25-year-old score for me. 7MS #52: OFFTOPIC – My Son is Really Loyal (au...

Listen
7 Minute Security
7MS #51: CEH vs. OSCP (audio) from 2015-04-07T07:00:12

A few people have written in asking whether to pursue the CEH or OSCP (or both). This episode discusses my experience with each cert and hopefully points you in the right direction on which one ...

Listen
7 Minute Security
7MS #50: OSCP – The Final Chapter – part 2! (audio) from 2015-04-02T07:00:11

At last, the epic conclusion of the maddening, redeeming OSCP journey. 7MS #50: OSCP – The Final Chapter – part 2! (audio)Listen

7 Minute Security
7MS #49: OSCP – The Final Chapter – part 1! (audio) from 2015-03-31T07:00:08

We’ve arrived at the exciting two-part finale to my bloody battle with the OSCP! 7MS #49: OSCP – the final chapter – part 1! (audio)Listen

7 Minute Security
7MS #48: So I Gave My Eight Year Old a Computer (audio) from 2015-03-21T07:00:48

Is it a good idea to give young kids a computer to play with? Maybe. Maybe not. Tune in to today’s episode and weigh in! 7MS #48: So I Gave My Eight Year Old a Computer (audio)Listen

7 Minute Security
7MS #47: Logging and Alerting RELOADED (audio) from 2015-03-17T07:00:38

Hey, you should log the stuff going on in your network. This episode talks about that (again). And I reference some AD-related settings that may not be enabled in your environment…stuff you migh...

Listen
7 Minute Security
7MS #46: So You Want to be a Hacker? (audio) from 2015-03-14T07:00:58

So you want to be a hacker? Cool. In this episode I toss myself under the bus and share why I used to have a really dumb perspective on what that meant, and how my view of hackers – and hacking ...

Listen
7 Minute Security
7MS #45: OFFTOPIC – Why I Stopped Pirating Software (audio) from 2015-03-10T07:00:56

Warning, this is an off topic episode! I used to pirate software. There. I admitted it. But it’s funny how a letter from the Comcast legal dept. will change your mind and let you see piracy in a...

Listen
7 Minute Security
7MS #44: OFFTOPIC – Annoying People at the YMCA (audio) from 2015-03-07T07:00:24

Warning, this is an off topic episode! Did you know it’s fun to stay at the YMCA? Did you also know it’s fun to annoy annoying people at the YMCA? Listen to this episode to find out why. 7MS #44...

Listen
7 Minute Security
7MS #43: Why Web Site Vulnerability Scanners Can Ruin Your Day (audio) from 2015-02-28T07:00:49

Did you know that Web site vulnerability scanners can destroy your customer sites? If not, listen to this. 7MS #43: Why Web Site Vulnerability Scanners Can Ruin Your Day (audio) Listen

7 Minute Security
7MS #42: Vulnerability Scans vs. Pentests (audio) from 2015-02-14T01:50

I think everybody throws around the terms “vulnerability scans” and “pentests” and they mean completely different things from one person to the next. In this episode I try to clarify the differe...

Listen
7 Minute Security
7MS #41: OSCP – Part 7 (audio) from 2015-02-06T19:00

Tried of talking about OSCP yet? Me neither! 7MS #41: OSCP – Part 7 (audio)Listen

7 Minute Security
7MS #40: OSCP – Part 6 (audio) from 2015-01-31T01:00

PART SIX of a mind-bending series all about OSCP! 7MS #40: OSCP – Part 6 (audio)Listen

7 Minute Security
7MS #39: Infosec on the Disney Boat (audio) from 2015-01-24T01:00

I took a Disney cruise with my family recently, and one particular aspect of the trip gave me the Big Brother heebie-jeebies. 7MS #39: Infosec on the Disney Boat (audio)Listen

7 Minute Security
7MS #38: OFFTOPIC – Health and Infosec (audio) from 2015-01-17T01:00

Every once in a while I thought it would be fun to go slightly off topic and talk about other stuff I’m interested in. This episode kind of has a tech twist though. I talk about how I use my iPh...

Listen
7 Minute Security
7MS #37: Keimpx (audio) from 2015-01-10T01:00

Ever wanted to pass hashes a whole network at a time? Check out this episode, where I talk about one of my fav new tools called Keipmx. 7MS #37: Keimpx (audio)Listen

7 Minute Security
7MS #36: OSCP – Part 5 (audio) from 2015-01-03T01:00

More talk about OSCP goodness. Download: 7MS #36: OSCP – Part 5 (audio)...

Listen
7 Minute Security
7MS #35: OSCP – Part 4 (audio) from 2014-12-27T07:00:36

This is the 4th thrilling installment in our exciting series about the awesome, challenging, rage-inducing, but ultimately rewarding training and certification called OSCP. Download: 7MS #35: OS...

Listen
7 Minute Security
7MS #34: The Hacker Playbook (audio) from 2014-11-14T07:00:12

I found a great bit of reading that walks you through the “plays” of hacking – enumeration, exploitation, post-exploitation, etc. It’s a great (and affordable) book called The Hacker Playbook. C...

Listen
7 Minute Security
7MS #33: ProXPN (audio) from 2014-11-07T07:00:58

This episode’s all about a cool product called ProXPN that I use to encrypt/anonymize my traffic for various reasons. Not a sponsored episode or anything like that, but I am a fan of this servic...

Listen
7 Minute Security
7MS #32: OSCP – part 3 (audio) from 2014-11-01T07:00:31

Been a while since I shared an update on OSCP progress. It’s going good but…slow. However, I do have one (maybe obvious) tip to share that I hope will save you a ton of time. Download: 7MS #32: ...

Listen
7 Minute Security
7MS #31: Network Detective (audio) from 2014-10-25T07:00:14

Network Detective is a tool we’ve been using as kind of an addendum to our full security assessment. It gives some nice, plain-English Excel spreadsheets and Word docs that report on AD health a...

Listen
7 Minute Security
7MS #30: Managing Privileged Accounts (audio) from 2014-10-18T07:00:06

Most organizations I talk to have no idea where their privileged accounts are used across the network. I recently saw a demo of a solution called CyberArk, which seems to address that problem. D...

Listen
7 Minute Security
7MS #29: Follow Up Then (audio) from 2014-10-11T07:00:44

This isn’t necessarily related to security, but it’s about one of my favorite tools to keep my todos organized: FollowUp Then! Download: 7MS #29: Follow Up Then (audio) Listen

7 Minute Security
7MS #28: Infosec for Kids? (audio) from 2014-09-27T07:00:58

This is more of a random, wondering aloud type of episode as I think about raising my kids with infosec in mind. Specifically, what’s life going to be like for them growing up in an Internet-soa...

Listen
7 Minute Security
7MS #27: Backing Up with CrashPlan (audio) from 2014-09-20T07:00:33

Hey, when it comes to backups…uh…you should have them! This is a NON-endorsed/sponsored episode about my personal favorite backup service called CrashPlan. Download: 7MS #27: Backing Up with Cra...

Listen
7 Minute Security
7MS #26: The Importance of Training and Awareness (audio) from 2014-09-13T07:00:14

Training and awareness – specifically as it relates to infosec – is something companies can’t spend enough $ on. But from my experience, not enough of them are making this a front-burner priorit...

Listen
7 Minute Security
7MS #25: Writing Better Pentest Reports (audio) from 2014-08-23T07:00:16

This episode talks about some pointers, tools and tips towards writing better pentest reports. Download: 7MS #25: Writing Better Pentest Reports (audio)Listen

7 Minute Security
7MS #24: Why Wireless Scares Me (audio) from 2014-08-16T07:00:03

This episode is all about why you should (probably not) use wireless hotspots, and keeping yourself safe in general when surfing the Web. Download: 7MS #24: Why Wireless Scares Me (audio) Listen

7 Minute Security
7MS #23: OSCP – part 2 (audio) from 2014-08-09T07:00:31

In this episode I talk more about my adventures with OSCP and Offensive Security! . Download: 7MS #23: OSCP – part 2 (audio) Show notes: I recommend documenting ALL the exercises in the PDF. My ...

Listen
7 Minute Security
7MS #22: Phishing with Black Squirrel (audio) from 2014-07-27T23:17:21

In this episode I talk about using Black Squirrel to launch phishing campaigns! Download: 7MS #22: Phishing with Black Squirrel (audio) Show notes: Security Weekly is an excellent podcast/resour...

Listen
7 Minute Security
7MS #21: OSCP – part 1 (audio) from 2014-07-20T12:25:11

In this episode I talk about my venture into Offensive Security! . Download: 7MS #21: OSCP – part 1 (audio) Show notes: It’s official – I have a death wish and have started the OSCP training. Th...

Listen
7 Minute Security
7MS #20: Moving from GoDaddy to DNSimple (audio) from 2014-07-15T13:56:40

In this episode I talk about why I’m pulling my domains from GoDaddy, and making DNSimple their new home. Download: 7MS #20: Moving from GoDaddy to DNSimple (audio) Show notes: The service I’m t...

Listen
7 Minute Security
7MS #19: Kioptrix! (audio) from 2014-07-05T07:00:49

In this episode I talk about a deliciously vulnerable series of VMs called Kioptrix, and how you can use them to sharpen your pentesting skills. Download: 7MS #19: Kioptrix! (audio) Show notes: ...

Listen
7 Minute Security
7MS #18: Wireless Security 101 (audio) from 2014-06-22T17:56:09

In this episode I talk about some wireless security basics that we’re not seeing when out on assessments. Download: 7MS #18: Wireless Security 101 (audio) Show notes: WEP encryption is very, ver...

Listen
7 Minute Security
7MS #17: How to Pass the Certified Ethical Hacker Exam (audio) from 2014-06-14T07:00:22

In this episode I share my experience with EC-Council’s Certified Ethical Hacker training and exam. Download: 7MS #17: How to Pass the Certified Ethical Hacker Exam (audio) Show notes: Here’s in...

Listen
7 Minute Security
7MS #16: PwnPad Initial Impressions – part 2! (audio) from 2014-05-31T07:00:26

In this episode I talk about my first-hand experience using the PwnPad for wireless pentesting. Download: 7MS #16: PwnPad Initial Impressions – Part 2 Show notes: In a nutshell: PwnPad is a grea...

Listen
7 Minute Security
7MS #15: PwnPad Initial Impressions (audio) from 2014-05-24T07:00:41

In this episode I talk about my initial impressions of using the PwnPad for wireless pentesting. Download: 7MS #15: PwnPad Initial Impressions Show notes: Carrying around a Nexus 7 instead of a ...

Listen
7 Minute Security
7MS #14: H8 4 Win8 (audio) from 2014-05-10T07:00:56

In this episode I talk about two (sort of) security related tips that I’ve learned by using Windows 8 wrong. Download: 7MS #14: H8 4 Win8 (audio) Show notes: Windows Defender doesn’t seem to aut...

Listen
7 Minute Security
7MS #13: How to Get Pwned by HP (audio) from 2014-05-03T07:00:59

In this episode I talk about how I had to sent my HP laptop in for repair and, to my surprise, it (allegedly) came back with a bonus: malware! Download: 7MS #13: How to Get Pwned by HP (audio) S...

Listen
7 Minute Security
7MS #12: Why My Domains Have Gan to Gandi (audio) from 2014-04-28T07:00:18

In this episode I talk about an account takeover article that freaked me out, and why it changed a few things about how I handle my important online accounts. Download: 7MS #12: Why My Domains H...

Listen
7 Minute Security
7MS #11: Overtraining your iPhone Touch ID (video) from 2014-04-12T07:00:15

In this episode I totally throw my subscribers for a loop and do a VIDEO podcast about overtraining your Touch ID on your iPhone. Download: 7MS #11: Overtraining your iPhone Touch ID (video) Sho...

Listen
7 Minute Security
7MS #10: Information Security for the Whole Family – part 2 (audio) from 2014-04-05T07:00:04

In this episode I talk more about some infosec-y things I’m doing on the home front to nurture a security culture (if you will) with my wife and kids. Download: Episode 10: Information Security ...

Listen
7 Minute Security
7MS #9: Information Security for the Whole Family (audio) from 2014-03-29T07:00:41

In this episode I talk about how being an infosec guy has ruined my family’s life (well, not really) Download: Episode 9: Information Security for the Whole Family (audio) Show notes: To keep pe...

Listen
7 Minute Security
7MS #8: CISSP – Is That the Cert for Me? (audio) from 2014-03-22T07:00:55

In this episode I talk about my experience prepping for the CISSP exam. Download: Episode 8: CISSP – Is That the Cert for Me? (audio) Show notes: I used this book as my primary study tool. It co...

Listen
7 Minute Security
7MS #7: External Vulnerabilities that Byte (audio) from 2014-03-15T07:00:15

Episode lucky #7!!! In this episode I talk about external network vulnerabilities that we see in many of our assessments – some of which are pretty easy to clear up. Download: Episode 7: Externa...

Listen
7 Minute Security
7MS #6: Fun Firewall Rules – part 2 (audio) from 2014-03-08T07:00:33

In this episode I continue talking about some basic firewall rules that many organizations don’t have in place. Download: Episode 6: Fun Firewall Rules – part 2 (audio) Show notes: Limit outboun...

Listen
7 Minute Security
7MS #5: Fun Firewall Rules – part 1 (audio) from 2014-03-01T07:00:44

In this episode I talk about some basic firewall rules that many organizations don’t have in place. Download: Episode 5: Fun Firewall Rules – part 1 (audio) Show notes: Block outbound port TCP 2...

Listen
7 Minute Security
7MS #4: Patch Strategies: Part Deux (audio) from 2014-02-22T07:00:37

In this episode I continue talking about some dos and donts of patch strategies – this time talking about enterprise level gear. Download: Episode 4: Patch Strategies: Part Deux (audio) Show not...

Listen
7 Minute Security
7MS #3: Patch Strategies: Part 1 (audio) from 2014-02-13T14:47:40

In this episode I talk about some trends (and problems) we’re seeing on the patching front – specifically OS and third-party apps. Download: Episode 3: Patch Strategies: Part 1 (audio) Show note...

Listen
7 Minute Security
7MS #2: The Importance of Logging and Alerting! (audio) from 2014-02-01T18:50:56

In this episode I talk about how a client of ours learned a hard lesson: that the lack of logging/alerting makes for a pretty miserable investigation after they were breached. Download: Episode ...

Listen
7 Minute Security
7MS #1: Epic Introduction! (audio) from 2014-02-01T16:17:42

In this episode, I talk about the inspiration behind the 7MS podcast and my vision for it going forward. (Admittedly, my ulterior motive is to use this intro episode to figure out how in the hec...

Listen