Breaking Into Banks and Bypassing Modern Security with Greg Hatcher and John Stigerwalt

Breaking Into Banks and Bypassing Modern Security with Greg Hatcher and John Stigerwalt

Three banks in four days isn't just a bragging right for penetration testers. It's a wake-up call showing that expensive security tools and alarm systems often fail when tested by skilled operators who understand both human behavior and technical vulnerabilities.

Greg Hatcher and John Stigerwalt, co-founders of White Knight Labs, talk about their latest physical penetration tests on financial institutions, manufacturing facilities protecting COVID-19 vaccine production, and why their new Server 2025 course had to rewrite most common Active Directory tools. They share stories of armed guards, police gun draws, poison ivy reconnaissance, and a bag of chips that saved them from serious trouble. The conversation reveals why EDR alone won't stop ransomware, how offline backups remain the exception rather than the rule, and what security controls actually work when attackers bring custom tooling.

Impactful Moments:

00:00 - Intro 01:00 - New training courses launched 03:00 - Server 2025 breaks standard tools 05:00 - COVID facility physical penetration 07:00 - Armed guards change the game 10:00 - Police draw guns on operators 13:00 - Bag of chips saves the day 15:00 - Nighttime versus daytime physical tests 18:00 - VIP home security assessments 20:00 - 2026 threat predictions 22:00 - Why EDR doesn't stop ransomware 27:00 - Low cost ransomware simulation ROI 29:00 - Three banks in four days 32:00 - Deepfake as the new EDR

Links:

Connect with our guests – Greg Hatcher: https://www.linkedin.com/in/gregoryhatcher2/ John Stigerwalt: https://www.linkedin.com/in/john-stigerwalt-90a9b4110/ Learn more about White Knight Labs: https://www.whiteknightlabs.com

Check out our upcoming events: https://www.hackervalley.com/livestreams Join our creative mastermind and stand out as a cybersecurity professional: https://www.patreon.com/hackervalleystudio Love Hacker Valley Studio? Pick up some swag: https://store.hackervalley.com Continue the conversation by joining our Discord: https://hackervalley.com/discord Become a sponsor of the show to amplify your brand: https://hackervalley.com/work-with-us/

Avsnitt(404)

Episode 28 - Talking Tech: Speaking For SANS with Jennifer Santiago

Episode 28 - Talking Tech: Speaking For SANS with Jennifer Santiago

While progressing through a career in Cybersecurity (Or Technology), there will be opportunities to present research at conferences and events. In this episode, Ron and Chris chat with Jennifer Santiago - Director of Content Development and Speaker Management at SANS Institute. Jennifer shares insight on selecting conference topics and how to make an impact while giving a presentation at SANS.   SANS CTI Summit is right around the corner and would love to meet. Sign up with the following link:http://www.sans.org/u/XJ4 Use the code "CTIPOD20" to get 20% off.

7 Jan 202024min

Episode 27 - Mark Metry Podcasting with Purpose

Episode 27 - Mark Metry Podcasting with Purpose

Upgrading the human is critical to cybersecurity and life. In this episode, host of Humans 2.0 - Mark Metry joins Ron and Chris to discuss the evolution of technology and purpose.

13 Dec 201935min

Episode 26 - Exploring the Financial Playbook with Kimberly Hodgdon

Episode 26 - Exploring the Financial Playbook with Kimberly Hodgdon

Information Security / Cybersecurity can be an extremely lucrative path. In this episode, Chris and Ron explore the financial playbook with Kimberly Hodgdon - Stock Plan Manager @ Netflix

12 Dec 201926min

Episode 25 - Underrepresented

Episode 25 - Underrepresented

In this webcast/podcast series simply called "Underrepresented"—a series recorded and produced in conjunction with our good friends, Sean Martin and Marco Ciappelli —we want to merge conversations and actions. In this first episode, we get to speak with someone well outside of the InfoSec industry, Chris’ dad, Doug Cochran. Doug is joined by someone that does amazing things for the greater community and helping those less fortunate to get a voice and to be heard - co-founder of the ICMCP, Larry Whiteside Jr.

10 Dec 201958min

Episode 24 - Decoding LinkedIn with Brynne Tillman

Episode 24 - Decoding LinkedIn with Brynne Tillman

Your most reputable source of marketing is YOU! With Today's tools like LinkedIn this becomes a realistic task and something that every professional should take advantage of. During this episode, Brynne Tillman gives invaluable insight for enhancing presence on LinkedIn.

3 Dec 201938min

Episode 23 - Operating in High Performance Environments with Markus De Shon

Episode 23 - Operating in High Performance Environments with Markus De Shon

Ever met someone with a Nuclear Physics and Cybersecurity background? If not, meet Markus De Shon - Detection Engineering Lead @ Netflix. In this episode, Markus shares experience moving from one industry to another and operating in high performance environments

19 Nov 20191h 29min

Episode 22 - Road To The DevGuild Conference with Ody Lupescu

Episode 22 - Road To The DevGuild Conference with Ody Lupescu

In this episode, Ody Lupescu joins Chris and Ron to discus building Security Programs and Onboarding Third Party Vendors Looking for more content and interaction from industry experts? Join Hacker Valley Studio at the DevGuild Conference Nov 14 with promo code hackervalley15

12 Nov 201938min

Episode 21 - Changing the AppSec Game with Tanya Janca

Episode 21 - Changing the AppSec Game with Tanya Janca

Notice something new? What better to way unveil the new podcast name Hacker Valley Studio with an amazing guest - Tanya Janca. Tanya has made a huge impact to Application Security and to many other infosec domains. I'd highly recommend staying in touch with Tanya and following her work.   Tanya Janca: https://twitter.com/shehackspurple https://dev.to/shehackspurple https://medium.com/@shehackspurple    https://www.youtube.com/shehackspurple    https://www.twitch.tv/shehackspurple https://www.linkedin.com/in/tanya-janca   Security Sidekick: https://securitysidekick.dev https://twitter.com/SecSidekick https://www.youtube.com/channel/UC3KyuI83jt0l14q8xyffC2A   WoSEC (Women of Security) https://twitter.com/WoSECtweets  #SecurityWin  https://twitter.com/shehackspurple/status/1183483366592503808

22 Okt 201951min

Populärt inom Utbildning

rss-bara-en-till-om-missbruk-medberoende-2
historiepodden-se
det-skaver
alska-oss
nu-blir-det-historia
johannes-hansen-podcast
sektledare
allt-du-velat-veta
roda-vita-rosen
harrisons-dramatiska-historia
not-fanny-anymore
rss-sjalsligt-avkladd
sa-in-i-sjalen
polisutbildningspodden
vi-gar-till-historien
rss-npf-podden
rss-relationsrevolutionen
rss-basta-livet
psykologsnack
rss-max-tant-med-max-villman