Secure AF - A Cybersecurity Podcast cover art

All Episodes

Secure AF - A Cybersecurity Podcast — 173 episodes

#
Title
1

How Defenders Can Secure Enterprise AI Before Attackers Find the Gaps

2

FalconFlank: When Your EDR Becomes the Attack Surface.

3

Zimbra RCE Under Active Exploitation – Over 270 Servers Already Compromised

4

Defcon 2026

5

Akira Ransomware Uses Safe Mode to Blind EDR: Lessons for Defenders

6

Windows BlueHammer Flaw Now Actively Exploited by Ransomware Gangs

7

FortiBleed Attacks: Turning Fortinet Firewalls into Credential Stealers

8

Arch Linux AUR Compromise – Supply Chain Risks in the Open Source World

9

Qilin Ransomware Exploiting VPN Zero-Days: What SOCs Need to Do Now

10

You're Probably Not Hacked, You're Being Tracked

11

The SOC Brief Turns One 🎂 Insights, Stories & Lessons Learned

12

Kali365 Phishing-as-a-Service: FBI Warns of New M365 Credential Theft Tool

13

Incident Response 101: What to Do When You’re Under Attack

14

First Known AI-Powered Zero-Day Exploit: What SOCs Need to Know 🤖

15

ShinyHunters Breach of Instructure Canvas LMS 📚✏️: Lessons for SOCs on Third-Party Vendor Risks

16

Canvas Breach Breakdown: What 9,000+ Outages Teach Us About SaaS Risk

17

MuddyWater’s Ransomware Decoy: Iranian APTs Hiding Espionage in Plain Sight

18

Qilin Ransomware’s EDR Killer DLL – How Attackers Are Subverting Defenses

19

AI’s Inflection Point: From Productivity Tool to Existential Risk

20

Axios NPM Supply Chain Compromise – Lessons for SOCs on Third-Party Risks

21

Black Shrantac Ransomware – LOTL Tactics and Double Extortion on the Rise

22

Think Fast or Get Pwned: How Esports Is Forging Elite Cyber Defenders

23

Iranian APTs Targeting U.S. PLCs: OT Wake-Up Call for SOCs

24

Google Chrome Zero-Days Under Active Attack – What SOCs Need to Do Now

25

Beyond the Network: The Rise of Medical Device Security

26

Interlock Ransomware Hits Cisco FMC Zero-Day: Lessons for SOCs on Edge Device Security

27

Chinese Hackers Breach FBI Surveillance Network: Supply-Chain Lessons for SOCs

28

Ransomware as a Business: Inside Qilin’s Rise

29

MuddyWater's New BugSleep Malware – Iran's Cyber Retaliation Ramps Up

30

🚨 The Telus Hack – ShinyHunters Strikes a Telecom Giant 🚨

31

A.I. as a Multiplier: Introducing Vector Pulse A.I.

32

Heightened Cyber Threats Amid U.S.-Iran Conflict Escalation

33

OSINT Essentials – Unlocking Not So Hidden Insights for Your SOC

34

Talking SOC Shop: How SOCs Show Value to Leadership 📈

35

Keeping AI Human-Centered in Digital Forensics 🧑‍💻⚖️

36

SmarterMail RCE Flaw – Ransomware's New Favorite Door

37

MSI Mayhem – RATs Hiding in Phishing Installers to Evade Detection 🧠

38

Love as an Attack Vector 💌

39

Double Trouble: Microsoft Office and Fortinet FortiCloud Flaws Under Attack 💥

40

Top Ransomware Threats Dominating Early 2026

41

📂 Inside the Breaches: Real Insider Threat Case Files

42

CISA Retires 10 Emergency Directives – Progress for Feds, Wake-Up for the Rest of Us

43

New Year SOC Reset: New Year, New You(r Security Posture) 🔒

44

Trusted Access, Malicious Intent: Insider Threats Explained

45

🔐 Holiday Cyber Threats & What’s Coming Next

46

End-of-Year Wrap: 2025 Threat Trends and Bold Predictions for 2026 🎆

47

🎄 Holiday Season Security: Preparing Your SOC for the Festive Chaos

48

Episode 100: Retrospective AF!

49

The Reality of Stalking in a Digital Age 🕵️‍♂️⚠️

50

Special Episode: Inside Weekly Threat-Intel Briefings with a vCISO 💼

51

⚠️ React2Shell Zero-Day ⚠️: Chinese Hackers Strike Within Hours

52

Tis the Season for Cybercrime: How Hackers Target Holidays 🎄

53

U.S.-Venezuela Tensions: Cyber Risks for American SOCs

54

When People Think They’ve Been Hacked

55

FortiWeb Zero-Day: Silent Patch and Firewall Wake-Up Call 🔥

56

The Halls: 2025 Hacker Gift Guide 🎁💻

57

Patch Tuesday: Zero-Day Alert and Patching Must-Dos ✅

58

⚠️ Insider Threats ⚠️: Ransomware Negotiators Gone Rogue

59

The Art Of The Con (Cyber Edition) 🔐

60

Atroposia RAT: The Malware That Scans for Its Own Exploits

61

CAPTCHA Con: Hackers' Evolving ClickFix Malware Trap

62

RondoDox Botnet Expansion: The Shotgun Approach to IoT Exploitation

63

Obscura Ransomware: Unmasking a Stealthy New Threat ⚠️

64

🛡️ Pen Test Potential: How Organizations Are Missing Out on Fortifying the SOC 🛡️

65

2025 SECCON Debrief

66

🚨 Ransomware Rising: Variants, Tactics, and Defenses in 2025 🚨

67

💢 FileFix Fiasco 💢 Steganography's Stealthy StealC Drop

68

Monitoring the Dark Web for Leaked Data in DFIR

69

Mastering Incident Response: Essential for SOC Success

70

DEF CON 33 Debrief

71

⚠️ Crypto24 ⚠️ Ransomware: Bypassing EDR and Bolstering Defenses

72

🚨 Gone Vishing: The Recent Surge of Vishing Attacks

73

🚨 SonicWall Firewall Ransomware Breakdown

74

Spilling the Tea: What Happens When Apps Launch Without Locking Down Security ☕

75

🚨⚠️ A Critical ZERO-DAY (CVE-2025-53770)

76

🚪 Offboarding isn't just HR's job …

77

Aligned by Design: CISO x Legal in Practice - Episode 92

78

🚨 Record-Shattering DDoS Attack Alert 🚨

79

Secure AF SOC Brief #5 - Chrome CVE-2025-6554

80

Ep 91: The Engineers React to Breach News

81

Secure AF SOC Brief #4 - False Positives

82

Secure AF SOC Brief #3 - IOCs

83

Episode 90: Global Wars - Cyber Strikes Back

84

Secure AF SOC Brief #2 - SafePay

85

Episode 89: Meet the Alias SOC - on the Battlefront of Cybersecurity

86

Secure AF SOC Brief #1 - SOC Life

87

Episode 88: Two-Time CISO Showdown Champion (and Chad)

88

Episode 87: Securing Patient Data with HIPAA's New Security Rules

89

Episode 86: How to make your pen test training not suck

90

Episode 85: Is SANS the overpriced dinosaur of cybersecurity training?

91

Episode 84: New Years Cyber Resolutions Part 2

92

Episode 83: New Years Cyber Resolutions Part 1

93

Episode 82: Leaving It All On The Table - The What, How, and Why of Tabletop Exercises

94

Episode 81: IR Aversion, Part 2

95

Episode 80: IR Aversion, Part 1

96

Episode 79: Firewall Follies

97

Episode 78: S3CCON Debrief

98

Episode 77: Defcon Debrief 2024

99

Episode 76: Losing the Cyberwar Through Marketing, Part 2

100

Episode 75: Losing the Cyberwar Through Marketing, Part 1

101

Episode 74: Internship Intrigue

102

Episode 73: Never Been Vished?

103

Episode 72: Security in Process

104

Episode 71: When the CISO Speaks Up

105

Episode 70 - Boeing and Beyond

106

Episode 69 - AI or BS

107

Episode 68 - It's Exploit O'Clock

108

Episode 67 - The CISO Pen Test

109

Episode 65 - Holistic Security

110

Episode 64: Rules of Engagement

111

Episode 63 - Critial Infrastructure: The Final Frontier

112

Episode 62 - Entering Cyber Sideways

113

Episode 61 - Pen Test Types

114

Episode 60 - Integris' Assumed Incident

115

Episode 59 - Pen Test Gaps

116

Episode 58 - Solar Winds and Beyond

117

Episode 57 - Introducing Phillip Wylie

118

Episode 56 - The Human Incident Response

119

Episode 55 - The Hacking Business

120

Episode 54: Your Family Is The Target

121

Episode 53 - DefCon Debrief 2023

122

Episode 52 - DEF CON Preview 2023

123

Episode 51 - Digital Forensics

124

Episode 50! - Targets of Opportunity

125

Episode 49 - Pentester vs. Thintester

126

Episode 48 - Updates and Announcements - Secure AF

127

Episode 47 - IOT and XIOT Devices and Dangers

128

Episode 46 - Hacking a Cybersecurity Career

129

Episode 45 - Code of Honor

130

Episode 44 - Vendor Due Diligence

131

Episode 43 - Cyber Training that Doesn't Suck

132

#42 - SOC It To 'Em

133

#41 APIs: More Risk Than You Think

134

#40 Are The Hackers Winning?

135

#39 IT vs Cybersecurity

136

#38 Protecting Users From Themselves

137

#37 Cybersecurity In Action

138

#36 Mental Health in Cybersecurity

139

#35 Your Internet Identity

140

#34 Password Security

141

#33: Secure The Unexpected

142

#32 Memory Forensics

143

#31 Bonus Episode - We Made the List: Inc. 5000's Fastest Growing Companies

144

#30: DEFCON Debrief 2022

145

#29: Catch the Biggest Phish

146

#28: SIEM for Small Business

147

#27: Why You Need a Cybersecurity Homelab

148

#26: Password Cracking: An Overview

149

#25: World Backup Day

150

#24: The Seven Steps of Digital Forensics

151

#23: L33T or Lame: A Hacker Tool Review

152

#22: Using OSINT: A Look at Open Source Intelligence

153

#21: Conti Leak: A Look Inside

154

#20: DEF CON 2021: The Alias Experience

155

#19: How Hackers Choose Who to Attack and Why Small Businesses Should Care

156

#18: Pissing Off Your Pentesters: A Storytelling Episode

157

#17: Breaking Into Cybersecurity: How to Get Started in the Industry

158

#16: Rules of Engagement: Why You Gotta Have 'Em

159

#15: Port Scanning and Why it Matters

160

#14: Cyber Security Insurance: What You Need to Know

161

#13: Phishing: How to Avoid Being the Bait

162

#12: What You Need to Know About CMMC

163

#11: Network Monitoring and Tools

164

#10: Ransomware: What It Is and How to Avoid It

165

#9: Meet the Alias Security Crew

166

#8: Special Guest Interview: Chris Boykin of Future Com

167

#7: Securing Against the Coronavirus and Computer Viruses

168

#6: Special Guest Interview: Bonus

169

#5: Deepfakes: The Latest Trust Breaker

170

#4: The Internet of Things. What Is It?

171

#3: Don't Worry About the Recent VPN Breaches

172

#2: Practical Tips for Cyber Security Awareness Month

173

#1: Our DEFCON 2019 Experience