All Episodes
Secure AF - A Cybersecurity Podcast — 173 episodes
How Defenders Can Secure Enterprise AI Before Attackers Find the Gaps
FalconFlank: When Your EDR Becomes the Attack Surface.
Zimbra RCE Under Active Exploitation – Over 270 Servers Already Compromised
Defcon 2026
Akira Ransomware Uses Safe Mode to Blind EDR: Lessons for Defenders
Windows BlueHammer Flaw Now Actively Exploited by Ransomware Gangs
FortiBleed Attacks: Turning Fortinet Firewalls into Credential Stealers
Arch Linux AUR Compromise – Supply Chain Risks in the Open Source World
Qilin Ransomware Exploiting VPN Zero-Days: What SOCs Need to Do Now
You're Probably Not Hacked, You're Being Tracked
The SOC Brief Turns One 🎂 Insights, Stories & Lessons Learned
Kali365 Phishing-as-a-Service: FBI Warns of New M365 Credential Theft Tool
Incident Response 101: What to Do When You’re Under Attack
First Known AI-Powered Zero-Day Exploit: What SOCs Need to Know 🤖
ShinyHunters Breach of Instructure Canvas LMS 📚✏️: Lessons for SOCs on Third-Party Vendor Risks
Canvas Breach Breakdown: What 9,000+ Outages Teach Us About SaaS Risk
MuddyWater’s Ransomware Decoy: Iranian APTs Hiding Espionage in Plain Sight
Qilin Ransomware’s EDR Killer DLL – How Attackers Are Subverting Defenses
AI’s Inflection Point: From Productivity Tool to Existential Risk
Axios NPM Supply Chain Compromise – Lessons for SOCs on Third-Party Risks
Black Shrantac Ransomware – LOTL Tactics and Double Extortion on the Rise
Think Fast or Get Pwned: How Esports Is Forging Elite Cyber Defenders
Iranian APTs Targeting U.S. PLCs: OT Wake-Up Call for SOCs
Google Chrome Zero-Days Under Active Attack – What SOCs Need to Do Now
Beyond the Network: The Rise of Medical Device Security
Interlock Ransomware Hits Cisco FMC Zero-Day: Lessons for SOCs on Edge Device Security
Chinese Hackers Breach FBI Surveillance Network: Supply-Chain Lessons for SOCs
Ransomware as a Business: Inside Qilin’s Rise
MuddyWater's New BugSleep Malware – Iran's Cyber Retaliation Ramps Up
🚨 The Telus Hack – ShinyHunters Strikes a Telecom Giant 🚨
A.I. as a Multiplier: Introducing Vector Pulse A.I.
Heightened Cyber Threats Amid U.S.-Iran Conflict Escalation
OSINT Essentials – Unlocking Not So Hidden Insights for Your SOC
Talking SOC Shop: How SOCs Show Value to Leadership 📈
Keeping AI Human-Centered in Digital Forensics 🧑💻⚖️
SmarterMail RCE Flaw – Ransomware's New Favorite Door
MSI Mayhem – RATs Hiding in Phishing Installers to Evade Detection 🧠
Love as an Attack Vector 💌
Double Trouble: Microsoft Office and Fortinet FortiCloud Flaws Under Attack 💥
Top Ransomware Threats Dominating Early 2026
📂 Inside the Breaches: Real Insider Threat Case Files
CISA Retires 10 Emergency Directives – Progress for Feds, Wake-Up for the Rest of Us
New Year SOC Reset: New Year, New You(r Security Posture) 🔒
Trusted Access, Malicious Intent: Insider Threats Explained
🔐 Holiday Cyber Threats & What’s Coming Next
End-of-Year Wrap: 2025 Threat Trends and Bold Predictions for 2026 🎆
🎄 Holiday Season Security: Preparing Your SOC for the Festive Chaos
Episode 100: Retrospective AF!
The Reality of Stalking in a Digital Age 🕵️♂️⚠️
Special Episode: Inside Weekly Threat-Intel Briefings with a vCISO 💼
⚠️ React2Shell Zero-Day ⚠️: Chinese Hackers Strike Within Hours
Tis the Season for Cybercrime: How Hackers Target Holidays 🎄
U.S.-Venezuela Tensions: Cyber Risks for American SOCs
When People Think They’ve Been Hacked
FortiWeb Zero-Day: Silent Patch and Firewall Wake-Up Call 🔥
The Halls: 2025 Hacker Gift Guide 🎁💻
Patch Tuesday: Zero-Day Alert and Patching Must-Dos ✅
⚠️ Insider Threats ⚠️: Ransomware Negotiators Gone Rogue
The Art Of The Con (Cyber Edition) 🔐
Atroposia RAT: The Malware That Scans for Its Own Exploits
CAPTCHA Con: Hackers' Evolving ClickFix Malware Trap
RondoDox Botnet Expansion: The Shotgun Approach to IoT Exploitation
Obscura Ransomware: Unmasking a Stealthy New Threat ⚠️
🛡️ Pen Test Potential: How Organizations Are Missing Out on Fortifying the SOC 🛡️
2025 SECCON Debrief
🚨 Ransomware Rising: Variants, Tactics, and Defenses in 2025 🚨
💢 FileFix Fiasco 💢 Steganography's Stealthy StealC Drop
Monitoring the Dark Web for Leaked Data in DFIR
Mastering Incident Response: Essential for SOC Success
DEF CON 33 Debrief
⚠️ Crypto24 ⚠️ Ransomware: Bypassing EDR and Bolstering Defenses
🚨 Gone Vishing: The Recent Surge of Vishing Attacks
🚨 SonicWall Firewall Ransomware Breakdown
Spilling the Tea: What Happens When Apps Launch Without Locking Down Security ☕
🚨⚠️ A Critical ZERO-DAY (CVE-2025-53770)
🚪 Offboarding isn't just HR's job …
Aligned by Design: CISO x Legal in Practice - Episode 92
🚨 Record-Shattering DDoS Attack Alert 🚨
Secure AF SOC Brief #5 - Chrome CVE-2025-6554
Ep 91: The Engineers React to Breach News
Secure AF SOC Brief #4 - False Positives
Secure AF SOC Brief #3 - IOCs
Episode 90: Global Wars - Cyber Strikes Back
Secure AF SOC Brief #2 - SafePay
Episode 89: Meet the Alias SOC - on the Battlefront of Cybersecurity
Secure AF SOC Brief #1 - SOC Life
Episode 88: Two-Time CISO Showdown Champion (and Chad)
Episode 87: Securing Patient Data with HIPAA's New Security Rules
Episode 86: How to make your pen test training not suck
Episode 85: Is SANS the overpriced dinosaur of cybersecurity training?
Episode 84: New Years Cyber Resolutions Part 2
Episode 83: New Years Cyber Resolutions Part 1
Episode 82: Leaving It All On The Table - The What, How, and Why of Tabletop Exercises
Episode 81: IR Aversion, Part 2
Episode 80: IR Aversion, Part 1
Episode 79: Firewall Follies
Episode 78: S3CCON Debrief
Episode 77: Defcon Debrief 2024
Episode 76: Losing the Cyberwar Through Marketing, Part 2
Episode 75: Losing the Cyberwar Through Marketing, Part 1
Episode 74: Internship Intrigue
Episode 73: Never Been Vished?
Episode 72: Security in Process
Episode 71: When the CISO Speaks Up
Episode 70 - Boeing and Beyond
Episode 69 - AI or BS
Episode 68 - It's Exploit O'Clock
Episode 67 - The CISO Pen Test
Episode 65 - Holistic Security
Episode 64: Rules of Engagement
Episode 63 - Critial Infrastructure: The Final Frontier
Episode 62 - Entering Cyber Sideways
Episode 61 - Pen Test Types
Episode 60 - Integris' Assumed Incident
Episode 59 - Pen Test Gaps
Episode 58 - Solar Winds and Beyond
Episode 57 - Introducing Phillip Wylie
Episode 56 - The Human Incident Response
Episode 55 - The Hacking Business
Episode 54: Your Family Is The Target
Episode 53 - DefCon Debrief 2023
Episode 52 - DEF CON Preview 2023
Episode 51 - Digital Forensics
Episode 50! - Targets of Opportunity
Episode 49 - Pentester vs. Thintester
Episode 48 - Updates and Announcements - Secure AF
Episode 47 - IOT and XIOT Devices and Dangers
Episode 46 - Hacking a Cybersecurity Career
Episode 45 - Code of Honor
Episode 44 - Vendor Due Diligence
Episode 43 - Cyber Training that Doesn't Suck
#42 - SOC It To 'Em
#41 APIs: More Risk Than You Think
#40 Are The Hackers Winning?
#39 IT vs Cybersecurity
#38 Protecting Users From Themselves
#37 Cybersecurity In Action
#36 Mental Health in Cybersecurity
#35 Your Internet Identity
#34 Password Security
#33: Secure The Unexpected
#32 Memory Forensics
#31 Bonus Episode - We Made the List: Inc. 5000's Fastest Growing Companies
#30: DEFCON Debrief 2022
#29: Catch the Biggest Phish
#28: SIEM for Small Business
#27: Why You Need a Cybersecurity Homelab
#26: Password Cracking: An Overview
#25: World Backup Day
#24: The Seven Steps of Digital Forensics
#23: L33T or Lame: A Hacker Tool Review
#22: Using OSINT: A Look at Open Source Intelligence
#21: Conti Leak: A Look Inside
#20: DEF CON 2021: The Alias Experience
#19: How Hackers Choose Who to Attack and Why Small Businesses Should Care
#18: Pissing Off Your Pentesters: A Storytelling Episode
#17: Breaking Into Cybersecurity: How to Get Started in the Industry
#16: Rules of Engagement: Why You Gotta Have 'Em
#15: Port Scanning and Why it Matters
#14: Cyber Security Insurance: What You Need to Know
#13: Phishing: How to Avoid Being the Bait
#12: What You Need to Know About CMMC
#11: Network Monitoring and Tools
#10: Ransomware: What It Is and How to Avoid It
#9: Meet the Alias Security Crew
#8: Special Guest Interview: Chris Boykin of Future Com
#7: Securing Against the Coronavirus and Computer Viruses
#6: Special Guest Interview: Bonus
#5: Deepfakes: The Latest Trust Breaker
#4: The Internet of Things. What Is It?
#3: Don't Worry About the Recent VPN Breaches
#2: Practical Tips for Cyber Security Awareness Month
#1: Our DEFCON 2019 Experience