Host Unknown is the unholy alliance of the old, the new and the rockstars of the infosec industry in an internet-based show that tries to care about issues in our industry. It regularly fails. With presenters that have an inflated opinion of their own worth and a production team with a pathological dislike of them (or “meat puppets” as it often refers to them), it is with a combination of luck and utter lack of good judgement that a show is ever produced and released. Host Unknown is availab ...
…
continue reading
This Week In Infosec Podcasts
The show that decrypts the secrets of offensive cybersecurity, one byte at a time. Every week I invite you into the world of ethical hacking by interviewing leading offensive security practitioners. If you are a penetration tester, bug bounty hunter, red teamer, or blue teamer who wants to better understand the modern hacker mindset, whether you are new or experienced, this show is for you.
…
continue reading
7 Minute Security is a weekly information security podcast focusing on penetration testing, blue teaming and building a career in security. The podcast also features in-depth interviews with industry leaders who share their insights, tools, tips and tricks for being a successful security engineer.
…
continue reading
Hacking. Hackers. Disinformation campaigns. Encryption. The Cyber. This stuff gets complicated really fast, but Motherboard spends its time embedded in the infosec world so you don't have to. Host Matthew Gault talks every week to Motherboard reporters about the stories they're breaking and to the industry's most famous hackers and researchers about the biggest news in cybersecurity. Hosted on Acast. See acast.com/privacy for more information.
…
continue reading
I started out wrapping burritos at Chipotle, dreaming of something bigger but not quite sure where to go. Over time, that drive to learn and grow led me into cybersecurity—an industry where the stakes are high and the stories are endlessly fascinating. K.O.’s Launchpad is my way of opening the door for anyone curious about how to break in, level up, and find purpose in a field that’s shaping our digital future. In every episode, we’ll chat with experts, share practical strategies, and explor ...
…
continue reading
There is “no one way” to start and stay in the field of cyber security. Whether you are involved from the military, law enforcement, consulting, or IT services, it doesn’t matter. I have had countless discussions for years with other professionals online, at conferences, or over drinks, which have changed the way I think about cyber security. That is where this podcast comes in. What if I can capture those moments and frank discussions? I want to share the stories from other cyber security l ...
…
continue reading
1
7MS #701: What I'm Working on This Week – Part 5
18:29
18:29
Play later
Play later
Lists
Like
Liked
18:29Hello friends! This week I'm talking about what I'm working on this week, including: Preparing a talk called Should You Hire AI to Run Your Next Pentest for the Minnesota GOVIT Symposium. Playing with Lithnet AD password protection (I will show this live on next week's Tuesday TOOLSday). The Light Pentest logo contest has a winner!…
…
continue reading
1
#71 Metasploit Creator: Why CVEs Won’t Save You in 2025 ft. HD Moore
38:41
38:41
Play later
Play later
Lists
Like
Liked
38:41In this episode of The Hacker’s Cache, Kyser Clark sits down with HD Moore, the legendary creator of Metasploit and CEO of RunZero, to discuss why relying on CVEs is putting organizations at risk in 2025. They unpack the truth about vulnerabilities that never get CVEs, the hidden dangers of SSH exposures, and why attackers are outpacing defenders t…
…
continue reading
Today is episode 700 of the 7MinSec podcast! Oh my gosh. My mom didn't think we could do it, but we did. Instead of a big blowout with huge news, giveaways and special guests, today is a pretty standard issue episode with a (nearly) 7-minute run time! The topic of today's episode is Pretender (which you can download here and read a lot more about h…
…
continue reading
1
#70 From Teen Hacker to Professional Pentester: The Journey of Kyle Hoehn
37:34
37:34
Play later
Play later
Lists
Like
Liked
37:34In this episode of The Hacker’s Cache, Kyser Clark sits down with seasoned penetration tester Kyle Hoehn to unpack the journey from a curious teen experimenting online to a full time professional in offensive security. Kyle shares how early exposure to computer tinkering and real world troubleshooting shaped his path, why foundational IT knowledge …
…
continue reading
Today we discuss some pre-travel tips you can use before hopping on a plane to start a work/personal adventure. Tips include: Updating the family DR/BCP plan Lightening your purse/wallet Validating/testing backups and restores Ensuring your auto coverage is up to snuff
…
continue reading
1
#69 Why He Left a Safe Job to Hack Companies for a Living ft. Jim Schultz
33:13
33:13
Play later
Play later
Lists
Like
Liked
33:13In this episode of The Hacker’s Cache, Kyser Clark sits down with Jim Schultz, an OSCP-certified penetration tester, cybersecurity instructor, and consultant with over 15 years of experience. Jim shares his journey from taking apart his first family computer in the 90s to teaching hundreds of students and returning full-time to the world of ethical…
…
continue reading
Today I give a quick review of the cloud version of ProjectDiscovery (not a sponsor!).
…
continue reading
1
#68 Q&A: Why You’ll Fail in Cybersecurity if You Stop Learning
35:51
35:51
Play later
Play later
Lists
Like
Liked
35:51In this episode of The Hacker’s Cache Podcast, Kyser Clark answers real cybersecurity career questions from whether the OSCP or Hack The Box CPTS is better for breaking into pentesting, to how to renew your Security+ the smart way, and why cybersecurity isn’t for those who hate learning. He also exposes the truth behind bootcamps, entry-level job m…
…
continue reading
1
7MS #697: Pwning Ninja Hacker Academy – Part 4
13:22
13:22
Play later
Play later
Lists
Like
Liked
13:22Today your pal and mine Joe "The Machine" Skeen pwn one of the two Ninja Hacker Academy domains! This pwnage included: Swiping service tickets in the name of high-priv users Dumping secrets from wmorkstations Disabling AV Extracting hashes of gMSA accounts We didn't get the second domain pwned, and so I was originally thinking about doing a part 5 …
…
continue reading
1
#67 Living Outside the U.S.? Here’s How to Get Into Cybersecurity Anyway ft. Bhanu Reddy
32:40
32:40
Play later
Play later
Lists
Like
Liked
32:40In this episode of The Hacker’s Cache, Kyser Clark sits down with cybersecurity professional and entrepreneur Bhanu Reddy to talk about how to start a cybersecurity career from anywhere in the world, even if you live outside the U.S. or in a developing country. Bhanu shares his real journey from India to the United States, including how he passed t…
…
continue reading
1
7MS #696: Baby's First Security Ticketing System
27:45
27:45
Play later
Play later
Lists
Like
Liked
27:45In today's episode: I got a new podcast doodad I really like JitBit as a security ticketing system (not a sponsor) The Threat Hunting with Velociraptor 2-day training was great. Highly recommend. I got inspired to take this class after watching the 1-hour primer here.
…
continue reading
1
#66 The #1 Thing That Makes Pentesting Fun (Not Stressful) ft. Trent Miller
37:36
37:36
Play later
Play later
Lists
Like
Liked
37:36In this episode of The Hacker’s Cache, I sit down with penetration tester and security researcher Trent Miller (AzureAD) to talk about the one thing that makes pentesting fun instead of stressful: genuine friendships and community. We discuss how learning from other hackers, sharing experiences, and joining groups like DEF CON DC608 can accelerate …
…
continue reading
By thom langford, javvad malik, andrew agnes
…
continue reading
1
7MS #695: Tales of Pentest Pwnage - Part 78
15:57
15:57
Play later
Play later
Lists
Like
Liked
15:57Today's tale of pentest pwnage involves: Using mssqlkaren to dump sensitive goodies out of SCCM Using a specific fork of bloodhound to find machines I could force password resets on (warning: don't do this in prod…read this!) Don't forget to check out our weekly Tuesday TOOLSday – live every Tuesday at 10 a.m. over at 7MinSec.club!…
…
continue reading
18th September 2014: Home Depot disclosed that its data breach was estimated to impact 56 million unique payment cards. Home Depot disclosed that its data breach was estimated to impact 56 million unique payment cards. https://x.com/todayininfosec/status/1968870469408309285 18th September 2001: The Nimda worm was released. Utilizing 5 different inf…
…
continue reading
1
#65 Why You Can’t Find a Job After Passing OSCP
38:40
38:40
Play later
Play later
Lists
Like
Liked
38:40Struggling to land a cybersecurity job after passing the OSCP? In this episode of The Hacker’s Cache, I break down why the OSCP certification alone isn’t enough to secure a penetration testing role. From the importance of starting in entry-level IT positions and gaining real-world technical experience, to building soft skills, showcasing work ethic…
…
continue reading
1
7MS #694: Tales of Pentest Pwnage – Part 77
33:11
33:11
Play later
Play later
Lists
Like
Liked
33:11Hey friends, today I talk about how fun it was two combine two cool pentest tactics, put them in a blender, and move from local admin to mid-tier system admin access (with full control over hundreds of systems)! The Tuesday TOOLSday video we did over at 7minsec.club will help bring this to life as well.…
…
continue reading
1
#64 Job Interview Secrets From the Other Side of the Table ft. Vladimir Ichkov
37:09
37:09
Play later
Play later
Lists
Like
Liked
37:09Senior penetration tester Vladimir Ichkov shares what really matters in cybersecurity job interviews from the perspective of both a candidate and an interviewer. We discuss the role of soft skills, confidence, and humor in landing a pentesting job, common red flags that turn interviewers away, and how technical experience as a system administrator …
…
continue reading
1
7MS #693: Pwning Ninja Hacker Academy – Part 3
28:44
28:44
Play later
Play later
Lists
Like
Liked
28:44This week your pal and mine Joe "The Machine" Skeen kept picking away at pwning Ninja Hacker Academy. To review where we've been in parts 1 and 2: We found a SQL injection on a box called SQL, got a privileged Sliver beacon on it, and dumped mimikatz info From that dump, we used the SQL box hash to do a BloodHound run, which revealed that we had ex…
…
continue reading
1
#63 Q&A: Outwork 1,000 Applicants to Break Into Cybersecurity
35:17
35:17
Play later
Play later
Lists
Like
Liked
35:17Breaking into cybersecurity isn’t about being “good enough.” It’s about outworking the 1,000 other applicants fighting for the same job. In this episode of The Hacker’s Cache podcast, I share the raw truth about competing in today’s cybersecurity job market, why certifications and hands-on projects matter more than ever, and how to stand out when e…
…
continue reading
1
7MS #692: Tales of Pentest Pwnage – Part 76
32:45
32:45
Play later
Play later
Lists
Like
Liked
32:45Happy Friday! Today's another hot pile of pentest pwnage. To make it easy on myself I'm going to share the whole narrative that I wrote up for someone else: I was on a pentest where a DA account would sweep the networks every few minutes over SMB and hit my box. But SMB signing was on literally everywhere. The fine folks here recommended I try rela…
…
continue reading
1
#62 Is InfoSec Slowing Down? Threat Models Explained ft. Carl Vincent (vyrus)
39:49
39:49
Play later
Play later
Lists
Like
Liked
39:49In this episode of The Hacker’s Cache, Kyser Clark sits down with Carl Vincent, better known as Vyrus, to unpack the shifting realities of cybersecurity. Carl shares straight talk on the Silver Bullet ecosystem that fraud actors rely on, why today’s cybercrime is more about account access than shell popping, and how blue teams can actually turn cri…
…
continue reading
1
7MS #691: Tales of Pentest Pwnage – Part 75
31:39
31:39
Play later
Play later
Lists
Like
Liked
31:39Holy schnikes, today might be my favorite tale of pentest pwnage ever. Do I say that almost every episode? yes. Do I mean it? Yes. Here are all the commands/links to supplement today's episode: Got an SA account to a SQL server through Snaffler-ing With that SA account, I learned how to coerce Web auth from within a SQL shell – read more about that…
…
continue reading
1
From Leading NASA Teams to CrowdStrike APT Detection: Kyle Mendoza's Story
1:35:26
1:35:26
Play later
Play later
Lists
Like
Liked
1:35:26In this episode of K.O.'s Launchpad, we share the story of a professional who turned ambition into achievement. Kyle Mendoza serves today as a Senior Threat Intelligence Analyst at CrowdStrike, but his journey began with an intentional plan: study relentlessly, build the right network, and create a pathway into one of cybersecurity’s most selective…
…
continue reading
1
#61 How to Level Up Fast in Your First Cybersecurity Role ft. Ryan Daub
34:47
34:47
Play later
Play later
Lists
Like
Liked
34:47In this episode of The Hacker’s Cache, returning guest Ryan Daub shares his journey from IT support to offensive security and reveals practical advice on how to level up fast in your first cybersecurity role. We cover the importance of mastering fundamentals, documenting your work, learning from failures, and asking questions without fear. Ryan als…
…
continue reading
The notes go here. I really can't go and look for them right now. This week in InfoSec is a sticky pickle Rant of the Week will have you guessing at who it could possibly be, again… Billy Big Balls is why british men need to take their passport to the bathroom these days Industry News is the latest and greatest security news stories from around the…
…
continue reading
1
7MS #690: Tales of Pentest Pwnage – Part 74
21:13
21:13
Play later
Play later
Lists
Like
Liked
21:13Today's tale of pentest pwnage is a classic case of "If your head is buried in the pentest sand, pop it out for a while, touch grass, and re-enumerate what you've already enumerated, because that can lead to absolute GOLD!"
…
continue reading
1
From Surf Shop Sales to Enterprise Sales Executive: Forrest Bowden's Journey
1:18:38
1:18:38
Play later
Play later
Lists
Like
Liked
1:18:38In this episode of K.O.’s Launchpad, we highlight a career defined by persistence, resilience, and growth. The spotlight this week is on Forrest Bowden, who has spent nearly a decade in cybersecurity sales, rising from SDR to Enterprise Rep. Forrest shares what it takes to thrive in one of the toughest and most fast-paced roles in the industry, hel…
…
continue reading
1
#60 Shellcode Evasion in 2025: What Still Works (and What Doesn’t) ft. Robert O’Connor
39:55
39:55
Play later
Play later
Lists
Like
Liked
39:55In this episode of The Hacker’s Cache, Kyser Clark sits down with Red Team Consultant Robert O’Connor to unpack the realities of shellcode evasion in 2025. They dive into how antivirus and EDR solutions actually detect malicious payloads, the rise of fileless malware, and why network-level detection is still overlooked. Robert shares his hands-on e…
…
continue reading
1
#59 Q&A: You Can’t Choose Wrong in Cybersecurity
24:19
24:19
Play later
Play later
Lists
Like
Liked
24:19In this Q&A episode of The Hacker’s Cache, Kyser Clark tackles some of the biggest questions aspiring and active cybersecurity professionals ask. From whether you should stack network pentesting certs like CPTS, OSCP, and PNPT or mix in web certifications like OSWA and CBBH, to why you really can’t choose wrong in cybersecurity as long as you keep …
…
continue reading
1
7MS #689: Pwning Ninja Hacker Academy – Part 2
15:40
15:40
Play later
Play later
Lists
Like
Liked
15:40Hello friends! Today your friend and mine, Joe "The Machine" Skeen joins me as we keep chipping away at pwning Ninja Hacker Academy! Today's pwnage includes: "Upgrading" our Sliver C2 connection to a full system shell using PrintSpoofer! Abusing nanodump to do an lsass minidump….and find our first cred. Analyzing BloodHound data to find (and own) e…
…
continue reading
1
Floral Designs, Firewalls, and Finding Her Place in Tech: Mindy’s Cyber Story
1:29:24
1:29:24
Play later
Play later
Lists
Like
Liked
1:29:24In this episode of K.O.’s Launchpad, we dive into the remarkable story of a lifelong learner who turned curiosity into a thriving career. Mindy has done it all. From early jobs in horticulture and mechanics to earning her computer science degree at Georgia Tech and leading in cybersecurity at some of the world’s top companies. Her story is a master…
…
continue reading
1
#58 Why Attention Is the Real Currency in Cybersecurity ft. Tadi
38:41
38:41
Play later
Play later
Lists
Like
Liked
38:41In this episode of The Hacker’s Cache, I sit down with penetration tester Tadi Kandango to unpack why attention is the real currency in cybersecurity. We talk about how he broke into pentesting without a degree, the role certifications actually play, and why sharing your work publicly can open more doors than quietly grinding in the background. Whe…
…
continue reading
1
#57 The AI Security Threat No One Sees Coming ft. Dino Dunn
38:40
38:40
Play later
Play later
Lists
Like
Liked
38:40In this episode of The Hacker’s Cache, Kyser Clark sits down with Dino Dunn, an AI security professional and cybersecurity instructor, to uncover the hidden risks most organizations overlook when adopting large language models and AI tools. From overlooked governance issues to the dangers of Retrieval Augmented Generation (RAG) and even how comprom…
…
continue reading
1
7MS #688: Building a Pentest Training Course Is Fun and Frustrating
22:13
22:13
Play later
Play later
Lists
Like
Liked
22:13Today I talk about a subject I love while also driving me crazy at the same time: building a pentest training course! Specifically, I dissect a fun/frustrating GPO attack that I need to build very carefully so that every student can pwn it while also not breaking the domain for everybody else. I also talk about how three different flavors of AI fai…
…
continue reading
1
40+ Certs and 5 Degrees Later: Elyson De La Cruz’s Rise to Cyber Leadership
2:09:51
2:09:51
Play later
Play later
Lists
Like
Liked
2:09:51In this episode of K.O.’s Launchpad, we showcase a remarkable career built on expertise, vision, and leadership. This week’s guest, Elyson De La Cruz, serves as the Chief Information Security Officer at Imagine Believe Realize, where he safeguards sensitive technology programs that impact missions across the globe. He has over two decades of experi…
…
continue reading
1
#56 Beyond Certs: The Skills That Actually Matter in Pentesting ft. Nick Aures
37:11
37:11
Play later
Play later
Lists
Like
Liked
37:11In this episode of The Hacker’s Cache, senior penetration tester and red teamer Nick Aures shares the skills and habits that matter most in pentesting beyond certifications. We discuss real-world experiences from breaking into the field to finding critical vulnerabilities in companies like Tesla, USAA, and Asana. Nick reveals why strong communicati…
…
continue reading
1
7MS #687: A Peek into the 7MS Mail Bag – Part 5
57:26
57:26
Play later
Play later
Lists
Like
Liked
57:26Hi friends, we're doing something today we haven't done in a hot minute: take a dip into the 7MinSec mail bag! Today we cover these questions: If I'm starting a solo business venture as a security consultancy, is it a good idea to join forces with other solo security business owners and form a consortium of sorts? Have you ever had anything go cata…
…
continue reading
1
From Jumping Out of Helicopters to Cisco Cyber Leader: Rob Gresham's Journey
1:39:38
1:39:38
Play later
Play later
Lists
Like
Liked
1:39:38In this episode of K.O.’s Launchpad, we highlight an extraordinary journey of discipline, expertise, and service. The focus of this week’s episode is Rob Gresham, a Principal Engineer in Cisco’s Security Business Group, whose 25+ year career spans digital forensics, threat intelligence, and SOC team development. From military service to industry le…
…
continue reading
1
#55 Do Cybersecurity Certifications Really Get You Hired in 2025?
26:07
26:07
Play later
Play later
Lists
Like
Liked
26:07Are cybersecurity certifications still worth it in 2025? Or are they just expensive pieces of paper with no real impact on your job prospects? In this solo episode, Kyser Clark cuts through the noise and tackles the growing wave of anti-certification advice circulating online. He shares what he's actually seeing in the job market, why certification…
…
continue reading
1
7MS #686: Our New Pentest Training Course is Almost Ready
23:30
23:30
Play later
Play later
Lists
Like
Liked
23:30Oh man, I'm so excited I can hardly sleep. Our new three-day (4 hours per day) training is getting closer to general release. I talk about the good/bad/ugly of putting together an attack-sensitive lab that students can abuse (but hopefully not break!), and the technical/curriculum-writing challenges that go along with it.…
…
continue reading
1
#54 Offensive Security for Blue Teamers: Why Red Team Knowledge Changes Everything ft. Josh Ragland
37:51
37:51
Play later
Play later
Lists
Like
Liked
37:51In this episode of The Hacker’s Cache, returning guest Josh Ragland shares how offensive security skills give blue teamers a serious edge. From building a hash-cracking rig to diving deep into C programming and assembly, Josh explains how understanding the attacker’s mindset can drastically cut triage time and help defenders spot threats others mis…
…
continue reading
1
7MS #685: The Time My Neighbor Almost Got Scammed Out of $13K
22:56
22:56
Play later
Play later
Lists
Like
Liked
22:56Today's kind of a "story time with your friend Brian" episode: a tale of how my neighbor almost got scammed out of $13k. The story has a lot of red flags we can all keep in mind to keep ourselves (as well as kids/friends/parents/etc.) safer from these types of shenanigans.
…
continue reading
1
Driving Security at Scale: Dave Abbott’s Path to Cyber Leadership
1:30:29
1:30:29
Play later
Play later
Lists
Like
Liked
1:30:29In this episode of K.O.'s Launchpad, we feature an inspiring journey of technical mastery, strategic thinking, and continuous growth. The highlight of this week's episode is Dave Abbott, a Cisco Security Engineering Leader who covers the company’s largest cybersecurity partners. Dave’s work at the intersection of cloud and networking security has l…
…
continue reading
1
#53 The Dark Side of Influence: When Winning Feels Like Losing ft. Alethe Denis
39:24
39:24
Play later
Play later
Lists
Like
Liked
39:24In this episode of The Hacker’s Cache, Kyser Clark interviews legendary social engineer Alethe Denis to explore the ethical limits of influence in red team engagements. From her DEF CON Black Badge victory to her groundbreaking work at Bishop Fox, Alethe shares hard-earned insights on emotional manipulation, deepfakes, social engineering strategy, …
…
continue reading
Hey friends, today we start pwning Ninja Hacker Academy – cool CTF-style lab that has you start with no cred and try to conquer domain admin on two domains!
…
continue reading
8th July 2008: Several DNS vendors released patches to mitigate an attack method discovered by Dan Kaminsky which could be used to cause DNS cache poisoning. Kaminsky had discovered the vulnerability 6 months prior and reported it to vendors privately so they could address it. RIP, Dan. https://x.com/todayininfosec/status/1942695691270193211 10th J…
…
continue reading
1
From Building Defenders to Commanding Cyber Labs: Ismael Valenzuela’s Journey
1:27:45
1:27:45
Play later
Play later
Lists
Like
Liked
1:27:45In this episode of K.O.'s Launchpad, we share an inspiring journey of dedication, technical excellence, and global influence. The highlight of this week's episode is Ismael Valenzuela, Vice President of Labs at Arctic Wolf and one of the world’s leading voices in cybersecurity. With over 24 years of experience, Ismael has advised governments, criti…
…
continue reading
1
7MS #683: What I'm Working on This Week - Part 4
30:50
30:50
Play later
Play later
Lists
Like
Liked
30:50This week I'm working on a mixed bag of fun security and marketing things: A pentest I'm stuck on My latest lab CTF obsession: Ninja Hacker Academy A cool "about 7MinSec" marketing video that was recorded in a pro studio!
…
continue reading
1
From Pro Wrestler to Pentester: Phillip Wylie’s Wild Path
1:12:53
1:12:53
Play later
Play later
Lists
Like
Liked
1:12:53In this episode of K.O.'s Launchpad, we share an amazing journey of curiosity, dedication, and mastery. The highlight of this week's episode is Phillip Wylie, a respected offensive security professional and ethical hacker with over 21 years in cybersecurity. From system administrator to pentester, conference speaker, author, and educator, Phillip s…
…
continue reading