『Purple team dialogues』のカバーアート

Purple team dialogues

Purple team dialogues

著者: Steven Townsley and Richard Gold
無料で聴く

このコンテンツについて

Join Steve Townsley, and Richard Gold, for discussions about information security topics from both the offensive and defensive viewpoints. In this podcast, Steve and Richard dissect reports, review the news, and interrogate data breaches. Always with an eye on what defenders can learn from them.Copyright 2024 All rights reserved.
エピソード
  • 04 - The NSA compromise of EastNets
    2024/06/17

    In 2017 the ShadowBrokers group leaked information stolen from the NSA. Within the leak was evidence that the NSA had compromised a SWIFT bureau in the Middle East called EastNets, probably so that they could gather financial intelligence.

    The leak gives an unprecedented insight into how a sophisticated actor like the NSA operates.

    In this episode, we talk about the operation, as well as the advice the NSA has publicly given on how organisations can improve their security. The advice is from the former head of the NSA's Tailored Access Operations (TAO), their most elite offensive security team, and potentially the folks responsible for the EastNets.

    Link to the ShadowBrokers leak: https://github.com/DonnchaC/shadowbrokers-exploits/tree/master

    Blog explaining the breach: https://medium.com/comae/the-nsa-compromised-swift-network-50ec3000b195

    NSA advice on how to be secure: https://www.youtube.com/watch?v=bDJb8WOJYdA

    続きを読む 一部表示
    57 分
  • 03 - Phineas Fisher takes down Hacking Team
    2024/06/08

    Back in 2015 the offensive security company Hacking Team were compromised by the vigilante hacker Phineas Fisher. Helpfully, Phineas Fisher shared a full description of how they completed the attack, and it's rich in detail for both red and blue teamers. In this episode, we discuss that report.

    To read the original report by Phineas Fisher, see here: https://gitlab.com/brn1337/phineas-fisher-collection/-/blob/master/2015_HackingTeam.txt?ref_type=heads

    続きを読む 一部表示
    37 分
  • 02 - The 2024 Crowdstrike Global Threat Report (part 2)
    2024/06/03

    In this episode we discuss the 2024 CrowdStrike Global Threat Report. We dig into the key themes that CrowdStrike have identified, and explore what lessons there are for defenders. As always, we consider the offensive and the defensive sides.

    The report can be downloaded here: https://www.crowdstrike.com/global-threat-report/

    Steve has a LinkedIn article discussing it here: https://www.linkedin.com/pulse/wheres-information-security-going-2024-review-global-steve-townsley-8iole/

    続きを読む 一部表示
    23 分
まだレビューはありません