Exploiting Trust (Part 1)
Easy Prey21 Jan

Exploiting Trust (Part 1)

Most security failures don't start with a dramatic breach or a mysterious hacker sitting in a dark room. They usually start quietly. Someone assumes a system is locked down. Someone trusts that a door shouldn't open, or that a machine "just works," or that no one would ever think to look there. Over time, those small assumptions stack up, and that's where things tend to go wrong.

Today's guest is FC Barker, a renowned ethical hacker, social engineer, and global keynote speaker with more than three decades of experience legally breaking into organizations to expose their blind spots. Formerly the head of offensive cybersecurity research at Raytheon and now co-founder of cybersecurity firm Cygenta, FC is also the author of How I Robbed Banks, a book packed with true stories from the field.

In this conversation, FC shares what he's learned from decades of breaking into places he was hired to protect. The stories range from funny to unsettling, but they all point to the same pattern: technology usually isn't the weakest link. People are. From outdated systems that can't be replaced to everyday workplace habits that quietly invite risk, this episode offers a grounded look at how intrusions really happen and what actually makes environments safer.

Show Notes:
  • [03:06] FC grew up before cybersecurity existed and learned computers when manuals were thicker than the machines themselves.
  • [05:27] How early internet culture shifted from curiosity-driven exploration to the rise of malicious actors.
  • [07:15] Why inviting external testers to break into your systems was once an unthinkable idea and how that changed.
  • [09:35] The danger of internal blind spots and why external validation is often more valuable than internal confidence.
  • [10:46] Unexpected discoveries during penetration tests, including systems no one remembered were even running.
  • [12:23] Choosing unusual, esoteric security projects and why unconventional systems often hide the biggest risks.
  • [12:50] A real-world operation that involved reverse-engineering hardware to shut down power infrastructure in seconds.
  • [16:29] One of the easiest break-ins ever happens accidentally, proving how fragile some systems really are.
  • [17:21] The most common technical failure seen across organizations: poor network segmentation.
  • [18:36] How a routine internal scan accidentally knocked an entire country's banking connection offline.
  • [20:04] A bank unknowingly runs its internal network on an IP range owned by the U.S. Department of Defense.
  • [21:43] A mysterious daily network outage turns out to be caused by a single employee's music collection.
  • [23:07] Plugging into a forgotten network switch triggers a fire during a government penetration test.
  • [25:15] Why penetration testers are often blamed first even when nothing has been touched yet.
  • [26:25] Discovering malicious insider code planted by coordinated nation-state actors.
  • [29:41] Why some outdated systems must remain untouched and why "just update everything" isn't realistic.
  • [33:15] Implanting covert hardware inside everyday office devices to gain persistent network access.
  • [35:01] How avoiding people altogether is often the most effective form of social engineering.
  • [37:10] Why attackers move from the top floors down and how authority bias works without a single word spoken.
  • [38:35] Clothing, context, and small visual cues that instantly make people assume you belong.
  • [42:26] A penetration test derailed by an unexpected office costume day—and why randomness can be a defense.
  • [44:33] A simple exercise anyone can use to start thinking like an attacker by examining their own home.

Thanks for joining us on Easy Prey. Be sure to subscribe to our podcast on iTunes and leave a nice review.

Links and Resources:

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(329)

Job Recruiter Scams

Job Recruiter Scams

Job hunting is hard enough without having to stop and ask whether the recruiter in your inbox is even real. My guest today, Jay Jones, ran into that problem firsthand after being laid off in December ...

24 Juni 35min

Bail Bonds Scams

Bail Bonds Scams

Getting a call that someone you love has been arrested is scary enough. Getting that call from someone who sounds official, knows just enough to seem credible, and says you have to send money right aw...

17 Juni 36min

Confessions of a Fraudster

Confessions of a Fraudster

Technology keeps changing, but many of the most effective scams still come down to something very human: trust. My guest today is Tony Sales, co-founder of We Fight Fincrime and Underworld TV. Tony ha...

10 Juni 54min

Personal Safety

Personal Safety

Scams and safety threats don't always announce themselves. Sometimes they start quietly, with a moment of distraction, a strange feeling you ignore, or a situation that shifts just enough to test whet...

3 Juni 43min

Data For Sale

Data For Sale

Everyday conveniences ask for tiny pieces of information all the time like a phone number at checkout, a zip code at the register, an email address for a receipt, or a loyalty account for a small disc...

27 Maj 43min

Exploiting Psychology

Exploiting Psychology

Scams are often explained as a failure of judgment, but the truth is far more human. People are not fooled because they are foolish. They are manipulated at the exact moment emotion overrides logic, w...

20 Maj 45min

Investment Traps

Investment Traps

Investment losses can be confusing because they do not always tell the whole story. Sometimes money is lost because the market has changed. Other times, an investor was sold something they did not und...

13 Maj 47min

Elder Exploitation

Elder Exploitation

Aging parents often rely on the people closest to them for help, but what happens when that help becomes a way to take control? For Charles Wallace, the warning signs started small. His mother's fridg...

6 Maj 39min

Populärt inom Politik & nyheter

svenska-fall
motiv
p3-krim
aftonbladet-krim
de-fyras-gang
spar
tv4-nyheterna-story
rss-expressen-dok
flashback-forever
aftonbladet-daily
rss-sanning-konsekvens
svd-dokumentara-berattelser-2
rss-vad-fan-hande
svd-ledarredaktionen
kungligt
rss-flodet
rss-krimreportrarna
rss-frandfors-horna
olyckan-inifran
grans