DCP Podcast

Detection: Challenging Paradigms

Have you ever wondered why something is done the way it is, only to find out that this is "just the way it has always been done"? Sometimes it is necessary to challenge the paradigm in which we find ourselves operating to discover a more true understanding of the problem, this change of thinking is referred to as a "paradigm shift". In this podcast, we explore detection and response to define the presuppositions that describe the craft, while also engaging in long form discussion with some of the industry's leading experts to challenge the convention we find ourselves operating within.

Autor

DCP Podcast

Categoría

Technology

Web del podcast

dcppodcast.com

Último episodio

3 de sep. de 2024

¿Dónde escuchar?

Podcasts en la app Replaio Radio Muy pronto

Los podcasts llegarán muy pronto a la app. Instálala ahora y sé el primero en descubrir una forma totalmente nueva de vivir los podcasts

Descárgala en Google Play Instálala gratis Android casi 10 M de descargas · valoración de 4,8 iOS muy pronto

Episodios

Special Episode: Jared Atkinson and Justin Kohler at BHUSA 2024 03.09.2024

Justin Kohler joins Jared in this special episode to talk about the Hybrid Attack Paths feature update to Bloodhound Enterprise and Bloodhound CE. This is a valuable tool for defenders to understand the hygiene of their identity and access management deployment in a Windows-based enterprise. Links: https://github.com/SpecterOps/BloodHound

Episode 37: Steve Luke and Roman Daszczyszak 22.12.2023

The Summiting the Pyramid project by MITRE's Center for Threat Informed Defense (CTID) released in September 2023, allowing for a unified method of "grading" detections for efficacy. Two of the pivotal members of that project join Jared and Luke to talk about how it came to be, and how it can be used to further the detection program of any organization! Project Links: Initial Release...

Episode 36: Chris Thompson 04.12.2023

Chris Thompson (@_Mayyhem on X) joins Jared and Luke on this episode of DCP! Chris has led the charge on offensive research into System Center Configuration Manager (SCCM), and shares his insight into this often overlooked aspect of the threat landscape! Resources: #sccm on the BloodHoundGang slack workspace: https://bloodhoundgang.herokuapp.com/ https://medium.com/@Mayyhem

Episode 35: Luke Jennings 13.11.2023

DCP is back! New intro, new cover, new host! With Jonny stepping away from the podcast, Luke has moved into the co-host position with Jared. On this first episode, we are joined by Luke Jennings of Push Security to talk all things SaaS. Links: https://github.com/pushsecurity/saas-attacks https://pushsecurity.com/blog/saas-attack-techniques/ https://pushsecurity.com/blog/samljacking-a-poisoned-tena...

Episode 34: Ryan Hausknecht (Again) 27.06.2023

In this captivating episode, we delve into the world of Azure security with Ryan Hausknecht, Senior Security Researcher at Microsoft. Learn about his groundbreaking projects, the Azure Threat Research Matrix and the AzDetectSuite, and how they assist researchers and defenders in protecting against various attack techniques. We also discuss the complexities of Azure permissions and access control,...

Episode 33: Casey Smith (Part 2) 22.05.2023

Discover the power of canaries in cybersecurity and learn how to implement them the right way with our special guest, Casey Smith from Thinkst Canary. Casey shares his extensive background in pentesting and defending, as well as the inspiration behind his current projects. This episode is jam-packed with insights on using various security methods, understanding the limitations of InfoSec tools, an...

Episode 32: Casey Smith (Part 1) 09.05.2023

Discover the power of canaries in cybersecurity and learn how to implement them the right way with our special guest, Casey Smith from Thinkst Canary. Casey shares his extensive background in pentesting and defending, as well as the inspiration behind his current projects. This episode is jam-packed with insights on using various security methods, understanding the limitations of InfoSec tools, an...

Episode 31: Maxime Lamothe-Brassard (Part 2) 20.03.2023

Maxime Lamothe-Brassard, co-founder of Lima Charlie stops in to talk with Jared and Jonny, and explain how Lima Charlie identified a problem in the industry and seeks to solve it. This is the second half of a full 1h 30m interview.

Episode 30: Maxime Lamothe-Brassard (Part 1) 06.03.2023

Maxime Lamothe-Brassard, co-founder of Lima Charlie stops in to talk with Jared and Jonny, and explain how Lima Charlie identified a problem in the industry and seeks to solve it. This is the first half of a full 1h 30m interview.

Episode 29: Olaf Hartong (pt. 2) 21.02.2023

Two years and 28 episodes later, our first guest: Olaf Hartong of FalconForce rejoins Jared and Jonny in the studio. Olaf, as well as Jared, Jonny, and Luke will all be Blackhat instructors this year - and our collective opinions on Threat Hunting and Detection Engineering have evolved enough over the years to warrant further discussion. We hope you join us!

Episode 28: Hosts 27.01.2023

In our first episode of the new year, Jared, Jonny, and Luke discuss the plans for the year, the new DCP: Live project, and some of Jared's latest detection wisdom.

Episode 27: Roberto Rodriguez 07.11.2022

Roberto Rodriguez (Microsoft Security Intelligence) joins us to talk Threat Hunting and detection. Roberto is a former coworker of Jonny, Jared, and Luke - so it's bound to be a good time!

Episode 26: Jamie Williams (Pt. 2) 16.08.2022

We couldn't get enough of our conversation with Jamie Williams, so we brought him back! We re-ATT&CK the Mitre Evaluation topic and much more.    Episode Guide

Episode 25: Mehmet Ergene 01.08.2022

In Episode 25 - Mehmet (@Cyb3rMonk on Twitter) chats with Jared and Jonny about several topics, including Process Mining! Episode Guide

Episode 24: Jamie Williams 30.05.2022

Jamie Williams of MITRE stops in to chat about the ATT&CK Framework and the MITRE Evals! Episode Guide: 

Episode 23: Gabriel Basset 09.05.2022

Gabriel Basset is in the house to talk detection! Episode Guide

Episode 22: Nasreddine Bencherchali 11.04.2022

Nasreddine Bencherchali joins us all the way from Algeria to discuss the Detection Engineering process. Episode Guide

Episode 21: Anton Ovrutsky 21.03.2022

Anton stops in to talk to the DCP crew about lateral movement, and other detection topics! Episode Guide

Episode 20: Andy Robbins 07.03.2022

Andry Robbins stops by to talk with Jared and Jonny, to continue the discussion of detection vs. prevention in the infosec realm - and the accountability that comes with it. Episode Guide (featuring new episode transcripts!)

Episode 19: Robby Winchester 14.02.2022

In Episode 9, Robby Winchester of SpecterOps stops by to talk on Jared's favorite topic - Detectionomics (trademark pending). This was our second in-person episode and was a blast to make, we hope you enjoy! Episode Guide

Episode 18: Ryan Hausknecht 03.02.2022

In the first ever in-person episode of Detection: Challenging Paradigms, Ryan stops by to talk to Jared and Jonny about Azure security, abstraction, and research.  Episode Guide

Episode 17: Steve Miller 18.01.2022

In Episode 7, Steve Miller stops in to talk with Jared and Jonny about a variety of detection topics! Episode Guide

Episode 16: Tweet Extravaganza 15.11.2021

In this episode, Jared and Jonny take some hot tweets from the infosec Twitterverse and talk about them. Episode Guide

Episode 15: Mathieu Saulnier 26.10.2021

In this episode, Jared and Jonny talk to Mathieu about detection and response! Episode Guide

Episode 14: Cedric Owens and Justin Bui 11.10.2021

In this episode, Jared and Jonny talk to Cedric and Justin about MacOS detection, red teaming, and more! Episode Guide

Escucha el podcast Detection: Challenging Paradigms en Replaio

Radio y podcasts en una sola app - gratis y sin registro. Instálala hoy y no te pierdas el estreno

Descárgala en Google Play

Replaio no es editor de podcasts; los nombres de los programas, las portadas y el audio pertenecen a sus autores y se distribuyen a través de canales RSS públicos