Out of the Woods: The Threat Hunting Podcast
Out of the Woods: The Threat Hunting Podcast
Intel 471's podcast with a twist! Join us for the first fully interactive threat hunting podcast where you can hang out with threat hunters from all over the world! Join a rag-tag bunch of threat hunters as they come out of the woods to explore some of the most burning issues related to cyber security. The Out of the Woods podcast is a casual talk covering the topics of threat hunting, security research, and threat intelligence, and some ranting and raving along the way, all over a cocktail or two! The Out of the Woods cyber security podcast is filmed in front of a live studio audience, and by...
Author
Out of the Woods: The Threat Hunting Podcast
Category
Podcast website
Latest episode
Jul 9, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
S4 Ep7: Threat Report - Q2 2026 09.07.2026 39:22
In this episode of Out of the Woods, Scott Poley and Tom Kostura review key findings from the Q2 2026 Threat Hunt Report and discuss what stood out across the quarter. They cover supply chain compromises , growing abuse of Node.js and Bun runtimes , a surge in credential harvesting following the Florida Bleed campaign, and a shrinking window between vulnerability disclosure and exploitation tied t...
S4 Ep6: Built to Blend In 01.07.2026 47:54
Top Headlines: welivesecurity | Gamaredon in 2025: Leveraging tunnels, workers, dead drops, and new alliances: https://www.welivesecurity.com/en/eset-research/gamaredon-2025-leveraging-tunnels-workers-dead-drops-new-alliances/ Adversa AI | AI coding agents vulnerability: GuardFall shell injeciton: https://adversa.ai/blog/opensource-ai-coding-agents-shell-injection-vulnerability/ JFrog Security Res...
S4 Ep5: Forti Shades of Breach 25.06.2026 52:50
Top Headlines: JFrog | From PostCSS Masquerading to Windows RAT: https://research.jfrog.com/post/from-postcss-typosquat-to-windows-rat/ Elastic | Lost in relocation: analysis of a new loader distributing CASTLESTEALER: https://www.elastic.co/security-labs/oxloader-malware-loader-infostealer SOCRadar | Dismantling-FortiBleed: https://socradar.io/wp-content/uploads/2026/06/Dismantling-FortiBleed.pdf...
S4 Ep4: Old Flaws, New Attacks 16.06.2026 45:34
Top Headlines: Trend Micro | Old WinRAR Flaw Fuels Attacks on Ukraine: How Unmanaged Software Keeps the Door Open: https://www.trendmicro.com/en_us/research/26/f/old-winrar-flaw-fuels-attacks-on-ukraine.html The Hacker News | Researchers Build Self-Replicating AI Worm That Operates Entirely on Local, Open-Weight Models: https://thehackernews.com/2026/06/researchers-build-self-replicating-ai.html H...
S4 Ep3: [LIVE] Know Thy Environment: Building Context for Effective Threat Hunting 29.05.2026 1:30:55
Understanding your environment is one of the most overlooked parts of threat hunting, and one of the most important. This live episode focuses on how to profile your environment, work through both existing and newly onboarded datasets, and build a clear picture of what normal actually looks like across your telemetry. The conversation centers on practical approaches. How to think about your data....
S4 Ep2: Ptrace Yourself Before Your Agent Wrecks Yourself 21.05.2026 36:25
Top Headlines: Qualys | CVE-2026-46333: Local Root Privilege Escalation and Credential Disclosure in the Linux Kernel ptrace Path: https://blog.qualys.com/vulnerabilities-threat-research/2026/05/20/cve-2026-46333-lo[…]ion-and-credential-disclosure-in-the-linux-kernel-ptrace-path Microsoft Security Blog | Introducing RAMPART and Clarity: Open source tools to bring safety into Agent development work...
S4 Ep1: When the Chain Bites Back 18.05.2026 56:37
Top Headlines: The Hacker News | Mini Shai-Hulud Worm Compromises TanStack, Mistral AI, Guardrails AI & More Packages: https://thehackernews.com/2026/05/mini-shai-hulud-worm-compromises.html Checkmarx | Update: Ongoing Checkmarx Supply Chain Security Incident: https://checkmarx.com/blog/ongoing-security-updates/ Google Cloud Blog | Adversaries Leverage AI for Vulnerability Exploitation, Augmen...
S3 Ep63: May the Context Be With You 22.04.2026 50:42
Top Headlines: Elastic Security Labs | Phantom in the vault: Obsidian abused to deliver PhantomPulse RAT: https://www.elastic.co/security-labs/phantom-in-the-vault SentinelOne | Annual Threat Report: A Defender's Guide from the Frontlines: https://www.sentinelone.com/resources/ebooks/assets/threat-intel-program-fy27/tdr-annual-threat-report-25-en?utm_medium=paid-display&utm_source=thehackernew...
S3 Ep62: Q1 2026 - Threat Hunt Report 21.04.2026 1:04:54
In this special episode of Out of the Woods, Scott Poley and Tom Kostura review key findings from the Q1 2026 Threat Hunt Report and discuss what stood out across the quarter. They cover recurring living off the land activity, persistence techniques, valid account abuse, social engineering trends, geopolitical developments and supply chain compromises, with a focus on what those patterns mean for...
S3 Ep61: [LIVE] Guess Who: The Malware Edition 26.03.2026 1:29:55
Can You Identify the Malware Family? Out of the Woods: The Threat Hunting Podcast returns with another live, interactive edition designed to test how you analyze malicious activity. This session will focus on a specific malware family , revealing its behavior in stages as our hosts walk through execution patterns, infrastructure clues, and operational tradecraft. Participants will examine how obse...
S3 Ep60: Honey, I sideloaded Havoc... 05.03.2026 47:53
*[LIVE] Out of the Woods Podcast: Guess Who: The Malware Edition March 25, 2026 | 12:00 - 1:30 PM ET Sign Up: https://www.intel471.com/resources/podcasts/guess-who-the-malware-edition-1 *Threat Hunting Management Workshop: Rethinking Priority March 18, 2026 | 12:00 - 12:30 PM ET Sign Up: https://www.intel471.com/resources/webinars/threat-hunting-management-workshop-rethinking-priority ---------- T...
S3 Ep59: Raiders of the Lost Macro 27.02.2026 1:02:27
Top Headlines: Group-IB | Operation Olalampo : Inside MuddyWater’s Latest Campaign: https://www.group-ib.com/blog/muddywater-operation-olalampo/ Point Wild | Remcos Revisited: Inside the RAT’s Evolving Command-and-Control Techniques: https://www.pointwild.com/threat-intelligence/remcos-revisited-inside-the-rats-evolving-command-and-control-techniques/ Lab 52 | Operation MacroMaze: new APT28 campai...
S3 Ep58: Keep the Classics, Cue the Chaos 19.02.2026 46:08
Top Headlines: The Hacker News | Microsoft Discloses DNS-Based ClickFix Attack Using Nslookup for Malware Staging: https://thehackernews.com/2026/02/microsoft-discloses-dns-based-clickfix.html?m=1 Straiker | SmartLoader Clones Oura Ring MCP to Deploy Supply Chain Attack: https://www.straiker.ai/blog/smartloader-clones-oura-ring-mcp-to-deploy-supply-chain-attack InfoStealers | Hudson Rock Identifie...
S3 Ep57: If you speak it, they will come... 12.02.2026 49:03
*On-Demand - Threat Hunting Workshop: Hunting for Privilege Escalation - Level 2 Watch Now: https://www.intel471.com/resources/webinars/threat-hunting-workshop-hunting-for-privilege-escalation-level-2 ---------- Top Headlines: Socket | Malicious dYdX Packages Published to npm and PyPI After Maintainer Compromise: https://socket.dev/blog/malicious-dydx-packages-published-to-npm-and-pypi Help Net Se...
S3 Ep56: Hunt the Whole Story, Follow the Rabbit 05.02.2026 37:46
*Threat Hunting Workshop: Hunting for Privilege Escalation - Level 2 February 11, 2026 | 12:00 - 1:00 PM ET Sign Up: https://www.intel471.com/resources/webinars/threat-hunting-workshop-hunting-for-privilege-escalation-level-2 Top Headlines: VulnCheck | Metro4Shell: Exploitation of React Native’s Metro Server in the Wild: https://www.vulncheck.com/blog/metro4shell_eitw Notepad | Notepad++ Hijacked...
S3 Ep55: Threat Hunting Year in Review: 2025 Trends and What’s Next 04.02.2026 1:30:52
*Threat Hunting Workshop: Hunting for Privilege Escalation - Level 2 February 11, 2026 | 12:00 - 1:00 PM ET Sign Up: https://www.intel471.com/resources/webinars/threat-hunting-workshop-hunting-for-privilege-escalation-level-2 ---------- Out of the Woods: The Threat Hunting Podcast returned with a live episode focused on the trends threat hunters saw repeatedly throughout 2025 and what those patter...
S3 Ep54: Stop, Collaborate and Secure 23.01.2026 52:54
*[LIVE] Out of the Woods: The Threat Hunting Podcast – Threat Hunting Year in Review: 2025 Trends and What’s Next January 29, 2026 | 12:00 - 1:30 PM ET Sign Up: https://www.intel471.com/resources/podcasts/threat-hunting-year-in-review-2025-trends-and-whats-next *Threat Hunting Workshop: Hunting for Privilege Escalation - Level 2 February 11, 2026 | 12:00 - 1:00 PM ET Sign Up: https://www.intel471....
S3 Ep53: New Year, Old Tricks 08.01.2026 41:06
*[LIVE] Out of the Woods: The Threat Hunting Podcast – Threat Hunting Year in Review: 2025 Trends and What’s Next January 29, 2026 | 12:00 - 1:30 PM ET Sign Up: https://www.intel471.com/resources/podcasts/threat-hunting-year-in-review-2025-trends-and-whats-next Top Headlines: Securonix | Analyzing PHALT#BLYX: How Fake BSODs and Trusted Build Tools Are Used to Construct a Malware Infection: https:/...
S3 Ep52: The Threat Hunting Soapbox 24.12.2025 49:39
Top Headlines: welivesecurity.com | LongNosedGoblin tries to sniff out governmental affairs in Southeast Asia and Japan: https://www.welivesecurity.com/en/eset-research/longnosedgoblin-tries-sniff-out-governmental-affairs-southeast-asia-japan/ Resecurity | DIG AI: Uncensored Darknet AI Assistant at the Service of Criminals and Terrorists: https://www.resecurity.com/blog/article/dig-ai-uncensored-d...
S3 Ep51: Same Break-In, New Front Door 17.12.2025 52:55
Top Headlines: Unit 42 | Exploitation of Critical Vulnerability in React Server Components (Updated December 12): https://unit42.paloaltonetworks.com/cve-2025-55182-react-and-cve-2025-66478-next/ hackread.com | New PyStoreRAT Malware Targets OSINT Researchers Through GitHub: https://hackread.com/pystorerat-rat-malware-github-osint-researchers/?web_view=true Check Point Research | Ink Dragon's Rela...
S3 Ep50: Game of Nodes: Persistence Is Coming 05.12.2025 42:16
Top Headlines: securelist.com | The Tsundere botnet uses the Ethereum blockchain to infect its targets: https://securelist.com/tsundere-node-js-botnet-uses-ethereum-blockchain/117979/ Group-IB | Bloody Wolf: A Blunt Crowbar Threat To Justice: https://www.group-ib.com/blog/bloody-wolf/ welivesecurity.com | MuddyWater: Snakes by the riverbank: https://www.welivesecurity.com/en/eset-research/muddywat...
S3 Ep49: Guess Who: The Adversary Edition - 2 25.11.2025 1:32:04
Can You Identify the Nation-State Actor? ...
S3 Ep48: Familiar Moves, Novel Grooves 05.11.2025 41:22
*[LIVE] Out of the Woods: The Threat Hunting Podcast – Guess Who Edition November 19, 2025 | 12:00 - 1:30 PM ET Sign Up: https://www.intel471.com/resources/podcasts/guess-who-the-adversary-edition-2 ---------- Top Headlines: Secure Annex | SleepyDuck malware invades Cursor through Open VSX: https://secureannex.com/blog/sleepyduck-malware/ Arctic Wolf | UNC6384 Weaponizes ZDI-CAN-25373 Vulnerabilit...
S3 Ep47: Common, but Deadly 22.10.2025 1:01:56
* Threat Hunting Management Workshop: The Business Value of Threat Hunting October 29, 2025 | 12:00 - 12:30 PM ET Sign Up: https://www.intel471.com/resources/webinars/threat-hunting-management-workshop-the-business-value-of-threat-hunting *[LIVE] Out of the Woods: The Threat Hunting Podcast – Guess Who Edition November 19, 2025 | 12:00 - 1:30 PM ET Sign Up: https://www.intel471.com/resources/podca...
S3 Ep46: Here We Go Again... 14.10.2025 41:14
* Threat Hunting Management Workshop: The Business Value of Threat Hunting October 29, 2025 | 12:00 - 12:30 PM ET Sign Up: https://www.intel471.com/resources/webinars/threat-hunting-management-workshop-the-business-value-of-threat-hunting ---------- Top Headlines: Cisco Talos | Velociraptor Leveraged in Ransomware Attacks: https://blog.talosintelligence.com/velociraptor-leveraged-in-ransomware-att...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.