Certified Vulnerable: How Certificates Can Be Exploited

Certified Vulnerable: How Certificates Can Be Exploited

A discussion with ITAL members Eric Brown and Scott Rysdahl with Micah Kryzer. Micah is a pentester by day but also works alongside the ITAL team. In this episode the crew overviews certificates, a big topic that transcends any one vendor or environment. Certificates are like an electronic passport meant to uniquely identify a person, computer or application on a network. This specific family of vulnerabilities discussed affects the Microsoft Active Directory certificate services, which is Mi...

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(98)

Decode Your Team: The Kolbe Index, Conative Strengths and Hiring Smarter

Decode Your Team: The Kolbe Index, Conative Strengths and Hiring Smarter

What if the way you solve problems has nothing to do with how smart you are or how you feel, and everything to do with instinct? In this episode of The Audit, Joshua Schmidt, Eric Brown, and Nick Mell...

10 Elo 44min

Lock Picking Secrets: Key Cloning, AI Coding and Safe Cracking

Lock Picking Secrets: Key Cloning, AI Coding and Safe Cracking

Can a $35 padlock from a hardware store really keep anyone out? In this episode of The Audit, Joshua Schmidt, Eric Brown, and Nick Mellem sit down with Eric Osterberg of Grey Duck Locks for a live loc...

27 Heinä 46min

Live Cyber News: AI Ransomware, Identity Gaps and Quantum Countdown

Live Cyber News: AI Ransomware, Identity Gaps and Quantum Countdown

What happens when a ransomware attack takes less effort than ordering takeout? In this live news episode of The Audit, Joshua Schmidt, Eric Brown, and Nick Mellem sit down with Tabitha Senty of IT Aud...

18 Heinä 42min

Next-Level AI: VibeOps, Agentic Employees and Rouge Bots

Next-Level AI: VibeOps, Agentic Employees and Rouge Bots

What if you didn't have to write a single line of code to automate your entire network — or manage AI agents the way you'd manage employees? In this episode of The Audit, Joshua Schmidt, Eric Brown, a...

29 Kesä 48min

Cyber News: Bug Bounty Fail, Open-Source Malware & Facebook SMB Phishing

Cyber News: Bug Bounty Fail, Open-Source Malware & Facebook SMB Phishing

An underground forum post breaks down how hackers scan, exploit, and cash out on vulnerabilities — and it reads like a step-by-step guide. Meanwhile, Microsoft is catching heat for stonewalling a rese...

15 Kesä 36min

AI vs. Law Enforcement: Deepfakes, Doxing & Deception

AI vs. Law Enforcement: Deepfakes, Doxing & Deception

What happens when a deepfake video becomes probable cause? Law enforcement agencies are already grappling with AI-generated evidence, doxing attacks on officers, and a training gap that's growing wide...

1 Kesä 46min

Cyber News: Iranian Hacker, Quantum Ransomware and Rogue AI

Cyber News: Iranian Hacker, Quantum Ransomware and Rogue AI

What would you do if ransomware told you not only that your data was gone — but that it was encrypted with a quantum-safe algorithm and you have 72 hours to pay? That's not a hypothetical anymore. In...

18 Touko 42min

Inside Email Security: Phishing, Hackers, and Harmony Checkpoint

Inside Email Security: Phishing, Hackers, and Harmony Checkpoint

Most organizations think they're protected. They're not. Microsoft Defender sounds solid on paper — but in the real world, it's letting phishing, malware, and business email compromise walk right thro...

4 Touko 32min