797742806
7 Minute Security

Advertise on podcast: 7 Minute Security

Rating
★★★★★
4.7
from
70 reviews
This podcast has
717 episodes
Language
English
Publisher
Brian Johnson
Explicit
No
Date created
2014/01/15
Latest episode
2026/04/17
Average duration
28 min.
Release period
10 days

Description

7 Minute Security is a weekly information security podcast focusing on penetration testing, blue teaming and building a career in security. The podcast also features in-depth interviews with industry leaders who share their insights, tools, tips and tricks for being a successful security engineer.

Unlock 7 Minute Security podcast Email contact info,
Listeners & Audience details

Email contact information

Direct podcast contact details

Listeners

Audience numbers & engagement insights

Audience details

Podcast Insights

Social media

Check 7 Minute Security social media presence


Podcast episodes

Check latest episodes from 7 Minute Security podcast


7MS #718: Fun Professional and Personal AI Project Ideas
2026/04/17
Hey friends! After last week's heavy episode about my wife's health scare in Punta Cana, today's is a lighter one. (Quick update: she's doing better – still recovering, but appetite's back and she's got some pep again. Thanks so much to everyone who sent kind messages.) Today I'm gushing about how AI has been making my IT and security life way more efficient: Firewall migration: Had AI walk me through a WatchGuard T15W → T25W migration (no clean config export path). AI captured everything – screenshots, branch office VPN, VLANs, firewall rules, DHCP reservations – all organized and replayed step-by-step. The whole project took ~1 hr 15 min (plus 30 min hunting down a subnet typo that was 100% my fault). GOAD lab automation: Worked with AI to build a script that handles the full lifecycle of my Light Pentest GOAD student lab – tear it down, rebuild from latest, assign Tommy Boy-themed passwords and sync user accounts to the Apache Guacamole and lab connections. Speaking of which – Light Pentest GOAD class will be re-offered soon once the calendar firms up! External pentest wrapper scripts: Finally automated the boring auxiliary testing stuff – nmap, Shodan API, Nessus queuing, subdomain hijacking checks, metadata searches, cred spraying against M365, sysleaks lookups – all correlated and deduplicated into one push-button menu. SysReptor automation: If you're not using SysReptor for reporting, check it out. Piping JSON findings straight into reports via API as I test has been a game-changer. A webinar on this might be in 7MinSec's future. Got cool ways you're using AI for IT/security work? We'd love to hear them!
7MS #717: I Gave Up My Wife's PHI (And I'd Do It Again)
2026/04/10
Hello friends! Today's episode is a bit of a detour from our usual content — it's part vacation horror story, part security/privacy confession. My wife got seriously ill during our spring break trip to Punta Cana, and in the chaos of navigating a foreign hospital at 2 a.m. with zero sleep and a pile of Spanish medical documents, I threw every privacy best practice I've ever preached straight into the ocean. Here's what we cover: How a dream all-inclusive resort trip turned into an ambulance ride and a 3-day hospital stay faster than you can say "gastroenteritis" Why I uploaded my wife's full medical history, labs, and medication records to AI — unredacted (with no regrets) How AI helped me translate docs, track lab trends, brief stateside nurses, and build a full medication schedule with phone reminders (helpful considering the hospital staff's answer to everything was "sorry, no English") The absolute legend named Luis who got us through Punta Cana airport security in 15 minutes flat Why if you're ever the person back home receiving updates about a medical emergency overseas, Google is not your friend My honest security take: sometimes the right risk-based decision is to breach yourself
7MS #716: Tales of Pentest Pwnage – Part 83
2026/04/03
Today is my favorite pentest pwnage tale of 2026 – and maybe ever!  It centers around an ADCS abuse via an attack path I'd never seen before.  Tips include: Use Netexec to pull Powershell history Trying to steal reg hives and the EDR is made?  Try copying them out to \\some-other-server.domain.com\share This post featured interesting use of the Responder -N option
7MS #715: Tales of Pentest Pwnage – Part 82
2026/03/27
Hola friends!  Today's another fun tale of pentest pwnage.  This time we started with no credentials and then set off on the bumpy journey from no-cred zero to domain admin hero!  One specific reference in today's podcast that may be helpful to you is setting up ntlmrelayx to listen on port 3128.
7MS #714: Tales of Pentest Pwnage – Part 81
2026/03/20
Hello friends!  We're back with a fun tale of internal network pentest pwnage.  This one highlights how AI can be used (with some guardrails!) to automate the boring stuff – and even help you pick part DLLs to find gold nuggets! P.S. – I do recommend you check out our last three episodes that are all about securing your community, and please check out this Rolling Stone article which will give you a full picture of what has been going on in Minnesota as it relates to the occupation of ICE agents.
7MS #713: How to Secure Your Community – Part 3
2026/03/13
Hello friends, in today's edition of How to Secure Your Community, I give a brief recap of part 1 and part 2, and then dive into some cool phone shortcuts you can setup so that with a single tap, you can alert friends/family that you're having an encounter with law enforcement and may need an assist.  Here's the things/links discussed: This great Rolling Stone article which features interviews and first-hand stories of ICE encounters here in Minnesota Fashlight.org page on security and privacy, which features some cool shortcuts you can setup on iPhone to alert friends/family that you're having a negative encounter with law enforcement (or anyone else) How I allegedly stole somebody's quesadilla while I was at the movie theater seeing Scream 7 The one time my wife had an outburst in the middle of a church service
7MS #712: How to Secure Your Community - Part 2
2026/03/06
Hello friends.  Today's episode piggybacks off of last week's discussion of Operation Metro Surge and how it has affected the state of Minnesota.  I also highly encourage you to read this Rolling Stone article which features interviews and first-hand stories of ICE encounters.  And for those of you asking for a good org to support here in Minnesota, please support Haven Watch.  They give rides/food to people who are detained by ICE and then cut loose – often without their jackets or phones – into the cold of winter with no ride home. Today I pivot more into the technical weeds and offer some tips on: Securing your Signal app config Hardening your iPhone config via lockdown mode
7MS #711: How to Secure Your Community
2026/02/27
Hello friends, it's good to be back with you.  I took a podcast hiatus in January to focus on helping communities affected by Operation Metro Surge.  Today I share how my family and community has been affected by it.  And then in future episodes of this series, I'll get more into some technical nuts and bolts on how to be a more secure community helper – such as tightening up security settings on apps you use, "hardening" your phone, increasing your personal security/privacy posture, and more.
7MS #710: I'm Taking a Break
2026/01/17
Hi friends, I'm going to be taking a break from producing podcast episodes, as well as content over at 7MinSec.club.  It's a temporary break, so please don't unsubscribe, unfollow, etc.  I need some extra time/energy to invest in helping our friends/family/neighbors/communities in the Twin Cities. Important note: our professional services are not impacted by this.  If you have security projects going on with us now (or want to in the future), nothing has changed there.  It's business as usual. Looking forward to reconnecting with you and providing more updates as soon as possible.
7MS #709: Second Impressions of Twingate
2026/01/10
Hey friends, in episode #649 I gave you my first impressions of Twingate.  It's been a minute, so I thought I'd revisit Twingate (specifically this awesome Twingate LXC) and talk about how we're using it to (almost) entirely replace remote access to our datacenter servers and pentest dropboxes.  Also, don't forget: Our pentest class is coming up at the end of the month – more info here. We do a Tuesday TOOLSday video every Tuesday over at 7MinSec Club.
7MS #708: Tales of Pentest Fail – Part 6
2026/01/02
After sharing a recent story about how a phishing campaign went south, I heard feedback from a lot of you.  You either commiserated with my story, told me I wussed out, and/or had a difficult story of your own to share.  So I thought I'd keep this momentum up and share another story of fail with you – this time about a Web app pentest that went south.
7MS #707: Our New Pentest Course Has Launched!
2025/12/26
Today we're thrilled to announce the launch of LPLITE:GOAD (Light Pentest Live Interactive Training Experience: Game of Active Directory). The first class is coming up Tuesday, January 27 – Thursday, January 29 (9:00 a.m. – 1:00 p.m. CST each day). More information, pricing information and more can be found at training.7minsec.com.  Today I talk about who should sign up for the course, what you should bring, and some of the awesome things you'll be doing should you choose to join me on this hacking adventure!
7MS #706: Tales of Pentest Pwnage – Part 80
2025/12/19
I'm so excited to share today's tale of pentest pwnage, because it brings back to life a coercion technique I thought wouldn't work against Windows 11! Spoiler alert: check out rpc2efs, as well as the 7MinSec Club episode we did on the topic this week. Also, our January Light Pentest LITE:GOAD class is open for registration here!
7MS #705: A Phishing Campaign Fail Tale
2025/12/12
This might be obvious, but security is not all domain admin dancing and maximum pwnage. Sometimes, despite my best efforts, a security project does a faceplant. Today's episode focuses on a phishing campaign that had plenty of "bites" but got immediately shut down – for reasons I still don't understand.
7MS #704: DIY Pentest Dropbox Tips – Part 12
2025/12/05
Hola friends!  My week has very much been about trying to turnaround pentest dropboxes as quickly as possible.  In that adventure, I came across two time-saving discoveries: Using a Proxmox LXC as a persistent remote access method Writing a Proxmox post-deployment script that installs Splashtop on the Windows VM, and resets the admin passwords on both VMs, all from the Proxmox SSH console without touching the console on either VM If you feel some of this is better seen than said, on this week's 7MinSec.club Tuesday TOOLSday broadcast we show this in more detail.

Podcast reviews

Read 7 Minute Security podcast reviews


4.7 out of 5
70 reviews
★★★★★
mvelasco07 2023/03/01
Highly recommend!
Can’t thank Brian and the 7MS team enough for putting out such an incredible podcast. Engaging conversations, actionable tips, and insights into the c...
★☆☆☆☆
TooIllOrEase 2023/06/30
Get to the point
Strange how many podcasts assume listeners already love them and are dying to hear drivel-riffing. No, don't love; found via search for specific topic...
★★★★★
Nebblkshts 2019/05/11
Awesome
I thought I knew a few things about being a windows admin until Brian showed me a new world. I was board with where I was now I want to move into secu...
★☆☆☆☆
CyberSecPodFan 2021/05/01
Some gems, getting rare though
A while ago this podcast was a must listen, but now between all the ad sponsored interviews and news summaries it isn’t on my list anymore. The news e...
★☆☆☆☆
Choppers17 2020/12/28
Become too political
I persisted through all the quirkiness of the podcast but Brian has recently saw fit to become political on his podcast. Not what I came here for. Bye...
★★★☆☆
[REDACTED] USER 2020/05/18
Good podcasts
The podcaster has too many pauses and doesn’t keep the momentum up when telling the story, reviews, etc. it’s like listening to someone telling a stor...
★★★★★
Infinity dreamer 90 2019/02/20
Great small bits of security
Thanks for sharing your security secrets!
★★★★★
jevde 2018/08/02
Definitely a great listen!
This is very straight forward and to the point podcast I ever listen on the Cyber Security. Very informative covering all aspects of Cyber Security.
★★★★★
Spencer-Thank you listeners 2018/06/10
Down to earth - value based podcast
This podcaster is really down to earth and relatable. He sounds super sharp about what he’s talking about and I always end up learning something every...
★★★★★
Caneron Johnson 2018/05/06
Brian Johnson
Hey this is Cameron Luis Fronodo Johnson and I’m your son bye Dad love you!! 👋
check all reviews on apple podcasts

Podcast sponsorship advertising

Start advertising on 7 Minute Security relevant audience podcasts


What do you want to promote?