
Advertise on podcast: BrakeSec Education Podcast
Rating
4.7from
This podcast has
463 episodes
Language
EnglishExplicit
Yes
Date created
2014/01/17
Latest episode
2025/07/17
Average duration
70 min.
Release period
45 days
Description
A podcast about the world of Cybersecurity, Privacy, Compliance, and Regulatory issues that arise in today's workplace. Co-hosts Bryan Brake, Brian Boettcher, and Amanda Berlin teach concepts that aspiring Information Security professionals need to know, or refresh the memories of seasoned veterans.
Unlock BrakeSec Education Podcast podcast Email contact info,
Listeners & Audience details
Email contact information
Direct podcast contact details

Listeners
Audience numbers & engagement insights

Audience details
Podcast Insights

Social media
Check BrakeSec Education Podcast social media presence
Podcast episodes
Check latest episodes from BrakeSec Education Podcast podcast
Jay Beale discusses his K8s class at BlackHat, Kubernetes developments, and mental health
2025/07/17
Youtube Video at: https://www.youtube.com/watch?v=yHPvGVfPgjI
Jay Beale is a principal security consultant and CEO/CTO for InGuardians. He is the architect of multiple open source projects, including the Peirates attack tool for Kubernetes (in Kali Linux), the Bustakube CTF Kubernetes cluster, and Bastille Linux. Jay created and leads the Kubernetes CTF at DEF CON and previously helped in the Kubernetes project's Security efforts. He's co-written eight books and given many public talks at Black Hat, DEF CON, RSA, CanSecWest, Blue Hat, ToorCon, DerbyCon, WWHF, HushCon and others. He teaches the highly-rated Black Hat class, "Attacking and Protecting Kubernetes, Linux, and Containers." He has served on the review board of the O'Reilly Security Conference, the board of Mitre's CVE-related Open Vulnerability and Assessment Language, and been a member of the HoneyNet project. He's briefed both Congress and the White House.
Questions and topics: (please feel free to update or make comments for clarifications)
* Kubernetes vs. Docker vs. LXC vs. VMs - why did you settle on K8s?
* What's new with k8s? Version 1.33? Do you always implement the latest version in your CTF, or something that is deliberately vulnerable? (https://www.loft.sh/blog/kubernetes-v-1-33-key-features-updates-and-what-you-need-to-know)
* When you are making a CTF, what's your methodology? Threat model then verify? Code review? Github pull requests?
* Story time; Not the first year you've done this(?), have participants ever surprised you finding something you didn't expect?
* If I'm running K8s at my workplace, what should be bare minimum k8s security I should implement? Any security controls that I should implement that might cause performance or are 'nice-to-have' but may run counter to how orgs use k8s that I should be concerned about implementing?
Additional information / pertinent LInks (Would you like to know more?):
https://kubernetes.io/
DEF CON Kubernetes CTF: https://containersecurityctf.com/
Black Hat training: https://www.blackhat.com/us-25/training/schedule/index.html#0-day-unnecessary-attacking-and-protecting-kubernetes-linux-and-containers-45335
https://www.bustakube.com/
https://github.com/inguardians/peirates
Rory McCune's blog: https://raesene.github.io/
https://www.oreilly.com/library/view/production-kubernetes/9781492092292/ - O'Reilly book: Production Kubernetes
Show points of Contact:
Amanda Berlin: https://www.linkedin.com/in/amandaberlin/
Brian Boettcher: https://www.linkedin.com/in/bboettcher96/
Bryan Brake: https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Youtube channel: https://youtube.com/@brakeseced
Twitch Channel: https://twitch.tv/brakesec
Socvel intel threat quiz, Pearson Breached, nintendo bricking stuff, and kevintel.com
2025/05/10
socvel.com/quiz if you want to play along!
Check out the BrakeSecEd Twitch at https://twitch.tv/brakesec
join the Discord: https://bit.ly/brakesecDiscord
Music:
Music provided by Chillhop Music: https://chillhop.ffm.to/creatorcred
"Flex" by Jeremy Blake
Courtesy of Youtube media library
Bronwen Aker - harnessing AI for improving your workflows
2025/04/22
Guest Info:
Name: Bronwen Aker
Contact Information (N/A): https://br0nw3n.com/
Time Zone(s): Pacific, Central, Eastern
–Copy begins–
Disclaimer: The views, information, or opinions expressed on this program are solely the views of the individuals involved and by no means represent absolute facts. Opinions expressed by the host and guests can change at any time based on new information and experiences, and do not represent views of past, present, or future employers.
Recorded: https://youtube.com/live/guhM8v8Irmo?feature=share
Show Topic Summary: By harnessing AI, we can assist in being proactive in discovering evolving threats, safeguard sensitive data, analyze data, and create smarter defenses. This week, we'll be joined by Bronwen Aker, who will share invaluable insights on creating a local AI tailored to your unique needs. Get ready to embrace innovation, transform your work life, and contribute to a safer digital world with the power of artificial intelligence! (heh, I wrote this with the help of AI…)
Questions and topics: (please feel free to update or make comments for clarifications)
Things that concern Bronwen about AI: (https://br0nw3n.com/2023/12/why-i-am-and-am-not-afraid-of-ai/)
Data Amplification: Generative AI models require vast amounts of data for training, leading to increased data collection and storage. This amplifies the risk of unauthorized access or data breaches, further compromising personal information.
Data Inference: LLMs can deduce sensitive information even when not explicitly provided. They may inadvertently disclose private details by generating contextually relevant content, infringing on individuals' privacy.
Deepfakes and Misinformation: Generative AI can generate convincing deepfake content, such as videos or audio recordings, which can be used maliciously to manipulate public perception or deceive individuals. (Elections, anyone?)
Bias and Discrimination: LLMs may inherit biases present in their training data, perpetuating discrimination and privacy violations when generating content that reflects societal biases.
Surveillance and Profiling: The utilization of LLMs for surveillance purposes, combined with big data analytics, can lead to extensive profiling of individuals, impacting their privacy and civil liberties.
Setting up a local LLM? CPU models vs. gpu models
pros/cons? Benefits?
What can people do if they lack local resources?
Cloud instances? Ec2? Digital Ocean? Use a smaller model?
https://www.theregister.com/2025/04/12/ai_code_suggestions_sabotage_supply_chain/
AI coding assets are hallucinating package names
5.2 percent of package suggestions from commercial models didn't exist, compared to 21.7 percent from open source or openly available models
Attackers can then create malicious packages matching the invented name, some are quite convincing with READMEs, fake github repos, even blog posts
An evolution of typosquatting named "slopsquating" by Seth Michael Larson of Python Software Foundation
Threat actor "_Iain" posted instructions and videos using AI for mass-generated fake packages from creation to exploitation
Additional information / pertinent LInks (Would you like to know more?):
https://www.reddit.com/r/machinelearningnews/s/HDHlwHtK7U
https://br0nw3n.com/2024/06/llms-and-prompt-engineering/ - Prompt Engineering talk
https://br0nw3n.com/wp-content/uploads/LLM-Prompt-Engineering-LayerOne-May-2024.pdf (slides)
Daniel Meissler 'Fabric' - https://github.com/danielmiessler/fabric
https://www.reddit.com/r/LocalLLaMA/comments/16y95hk/a_starter_guide_for_playing_with_your_own_local_ai/
Ollama tutorial (co-founder of ollama - Matt Williams): https://www.youtube.com/@technovangelist
https://mhtntimes.com/articles/altman-please-thanks-chatgpt
https://www.whiterabbitneo.com/ - AI for DevSecOps, Security
https://blogs.nvidia.com/blog/what-is-retrieval-augmented-generation/
https://www.youtube.com/watch?v=OuF3Q7jNAEc - neverending story using an LLM
https://science.nasa.gov/venus/venus-facts
Show points of Contact:
Amanda Berlin: https://www.linkedin.com/in/amandaberlin/
Brian Boettcher: https://www.linkedin.com/in/bboettcher96/
Bryan Brake: https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Youtube channel: https://youtube.com/@brakeseced
Twitch Channel: https://twitch.tv/brakesec
post-bsides SD discussion, EPSS, the answer I should have given, and 'Lord Brake'
2025/04/02
Check out the BrakeSecEd Twitch at https://twitch.tv/brakesec
or Youtube: https://youtube.com/c/BDSPodcast
join the Discord: https://bit.ly/brakesecDiscord
https://arxiv.org/abs/2302.14172 - EPSS whitepaper
https://www.linkedin.com/posts/jayjacobs1_epss-threatintel-vulnerabiltymanagement-activity-7308146548767404032-RubN
https://www.first.org/epss/
https://events.zoom.us/ev/AmoNH3baC7HVqDlDmgUtd2uCmTCMwJXfkR8mG6I5OxzbW01nhRMQ~AoEYQz5ROK4ybE4iX9b0PL-1utz4z0nbyrTjT4lskH_08_zfesR_Q_rNlA - BHIS training with Bronwen Aker on 03 April 2025
Music:
Music provided by Chillhop Music: https://chillhop.ffm.to/creatorcred
"Flex" by Jeremy Blake
Courtesy of Youtube media library
March23: buy browser extensions, attackers don't need exploits, socvel CTI quiz
2025/03/24
Check out the BrakeSecEd Twitch at https://twitch.tv/brakesec
Join the Discord! https://bit.ly/brakesecDiscord
Questions and topics: (please feel free to update or make comments for clarifications)
* https://techoreon.com/http-flaw-in-apple-passwords-left-iphones-vulnerable/
* https://darkmarc.substack.com/p/attackers-dont-need-exploits-when
* https://www.techzine.eu/news/security/129713/the-browser-is-riddled-with-bugs-2025-may-squash-them/
* https://medium.com/@vanvleet/compound-probability-you-dont-need-100-coverage-to-win-a2e650da21a4 (interesting article on quantifying attack risk by your coverage in MITRE)
* https://www.promptfoo.dev/blog/agent-security/
* https://www.socvel.com/quiz/ - 20March2025 edition!
* https://secureannex.com/blog/buying-browser-extensions/ - interesting article about browser extensions
* https://gist.github.com/c0m4r/45e15fc1ec13c544393feafca30e74de?permalink_comment_id=5298117#gistcomment-5298117
* https://www.bleepingcomputer.com/news/security/-particle-chrome-extension-sold-to-new-dev-who-immediately-turns-it-into-adware/
* https://arealsociety.substack.com/p/you-can-just-take-things-cyber-letters?r=99bhj - oh boy, cyber 'letters of marque'
Additional information / pertinent LInks (Would you like to know more?):
* VanVleet detection engineering podcast appearance: https://www.youtube.com/watch?v=5DAQkvOyqME
* https://medium.com/@vanvleet/technique-analysis-and-modeling-ffef1f0a595a
* https://github.com/prodaft/cradle/
* https://blog.talosintelligence.com/css-abuse-for-evasion-and-tracking/
* https://www.gdatasoftware.com/blog/2025/03/38161-analysis-fin7-anubis-backdoor
Show points of Contact:
Amanda Berlin: https://www.linkedin.com/in/amandaberlin/
Brian Boettcher: https://www.linkedin.com/in/bboettcher96/
Bryan Brake: https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Youtube channel: https://youtube.com/@BrakeSecEd
Twitch Channel: https://twitch.tv/brakesec
Music:
Music provided by Chillhop Music: https://chillhop.ffm.to/creatorcred
"Flex" by Jeremy Blake
Courtesy of Youtube media library
steam distributes malware in game form, RDP open from DOGE servers, hacking a supply chain for 50K
2025/02/17
Youtube VOD: https://www.youtube.com/watch?v=zu_smyQGvG4
https://lcamtuf.substack.com/p/how-security-teams-fail
https://cyberintel.substack.com/p/doge-exposes-once-secret-government
https://x.com/SteamDB/status/1889610974484705314 – supply chain issues can crop up anywhere… are you blocking people from steam and popular software downloads online?
https://www.landh.tech/blog/20250211-hack-supply-chain-for-50k/
https://medium.com/@cyberengage.org/rethinking-incident-response-from-picerl-to-dair-7b153a76e044
https://www.youtube.com/watch?v=3HRkKznJoZA https://www.youtube.com/watch?v=rz4Dd1I_fX0
Additional information / pertinent LInks (Would you like to know more?):
https://www.socvel.com/quiz/
https://xphantom.nl/posts/Offensive-Security-Lab/
Show points of Contact:
Amanda Berlin: https://www.linkedin.com/in/amandaberlin/
Brian Boettcher: https://www.linkedin.com/in/bboettcher96/
Bryan Brake: https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Youtube channel: https://youtube.com/@brakeseced
discord: https://discord.gg/brakesec
Twitch Channel: https://twitch.tv/brakesec
Music: https://chillhop.ffm.to/creatorcred "Flex" by Jeremy Blake
Courtesy of Youtube media library
Tanya Janca Talks secure coding, Semgrep Academy, and community building, and more!
2024/06/01
Check out the BrakeSecEd Twitch at https://twitch.tv/brakesec
Join the Discord! https://discord.gg/brakesec
#youtube VOD (in 1440p): https://www.youtube.com/watch?v=axQWGyd79NM
Questions and topics:
Bsides Vancouver discussion
Semgrep Community and Academy
Building communities
What are 'secure guardrails'
Reducing barriers between security and developers
How to sell security to devs: "hey, if you want to see us less, buy/use this?"
"Security is your barrier, but we have goals that we can't reach without your help."
https://wehackpurple.com/devsecops-worst-practices-artificial-gates/
How are you seeing things like AI being used to help with DevOps or is it just making things more complicated? Not just helping write code, but infrastructure Ops, software inventories, code repo hygiene, etc?
OWASP PNW https://www.appsecpnw.org/
Alice and Bob coming next year!
Additional information / pertinent LInks (Would you like to know more?):
shehackpurple.ca
Semgrep (https://semgrep.dev/)
https://aliceandboblearn.com/
https://academy.semgrep.dev/ (free training)
Netflix 'paved roads': https://netflixtechblog.com/how-we-build-code-at-netflix-c5d9bd727f15
https://en.wikipedia.org/wiki/Nudge_theory
https://www.perforce.com/blog/qac/what-is-linting
https://www.youtube.com/watch?v=FSPTiw8gSEU
https://techhq.com/2024/02/air-canada-refund-for-customer-who-used-chatbot/
Show points of Contact:
Amanda Berlin: @infosystir @hackershealth
Brian Boettcher: @boettcherpwned
Bryan Brake: https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Youtube channel: https://youtube.com/@BrakeSecEd
Twitch Channel: https://twitch.tv/brakesec
Josh Grossman - building Appsec programs, bridging security and developer gaps
2024/04/15
Youtube VOD: https://youtu.be/G3PxZFmDyj4
#appsec, #owasp, #ASVS, #joshGrossman, #informationsecurity, #SBOM, #supplychain, #podcast, #twitch, #brakesec, #securecoding, #Codeanalysis
Questions and topics:
1. The background to the topic, why is it something that interests you?
How do you convince developers to take your course?
2. What do you think the root cause of the gap is?
3. Who is causing the gaps? ('go fast' culture, overzealous security, GRC requirements, basically everyone?)
4. Where do gaps begin? Is it the 'need' to 'move fast'?
5. What can devs do to involve security in their process? Sprint planning? SCA tools?
6. How have you seen this go wrong at organizations?
7. How important is it to have security early in the product development process?
8. What sort of challenges do you think mainstream security people face in AppSec scenarios?
9. How does Product Security differ from Application Security? (what if the product is an application?)
10. What are the key development concepts that security people need to be familiar with to effectively get involved in AppSec/ProdSec?
11.. How do you suggest a security team approach AppSec/ProdSec?
Leadership buy-in
Effective/valuable processes
Tools should achieve a goal
12. SBOM - NTIA is asking for it, How to get dev teams to care.
13. Key takeaways?
Additional information / pertinent LInks (Would you like to know more?):
BlackHat Training: https://www.blackhat.com/us-24/training/schedule/index.html#accelerated-appsec--hacking-your-product-security-programme-for-velocity-and-value-virtual-37218
https://www.walkme.com/blog/leadership-buy-in/
https://www.bouncesecurity.com/
https://www.teamgantt.com/blog/raci-chart-definition-tips-and-example
https://www.cisa.gov/sbom
SCA Tools https://chpk.medium.com/top-10-software-composition-analysis-sca-tools-for-devsecops-85bd3b7512dd
https://semgrep.dev/
https://www.linkedin.com/in/joshcgrossman
https://owasp.org/www-project-application-security-verification-standard/
https://github.com/OWASP/ASVS/tree/master/5.0
https://owasp.org/www-project-cyclonedx/
https://joshcgrossman.com/
PyCon talk about custom security testing: https://www.youtube.com/watch?v=KuNZzDjvMlg
Michal's Black Hat course - Accurate and Scalable: Web Application Bug Hunting: https://www.blackhat.com/us-24/training/schedule/index.html#accurate-and-scalable-web-application-bug-hunting-37210
https://www.blackhat.com/us-24/training/schedule/index.html#accurate-and-scalable-web-application-bug-hunting-372101705524544
ASVS website: https://owasp.org/asvs
Lightning talk I did recently about OWASP: https://www.bouncesecurity.com/eventspast#f86548cb37cb2a82728b1762bd1b7aee
Show points of Contact:
Amanda Berlin: @infosystir @hackershealth
Brian Boettcher: @boettcherpwned
Bryan Brake: https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Youtube channel: https://youtube.com/@brakeseced
Twitch Channel: https://twitch.tv/brakesec
Managing messaging with management, becoming a CISO with Mary Gardner from Goldiknox
2024/04/09
Disclaimer: The views, information, or opinions expressed on this program are solely the views of the individuals involved and by no means represent absolute facts. Opinions expressed by the host and guests can change at any time based on new information and experiences and do not represent views of past, present, or future employers.
Recorded: 08 Apr 2024
Youtube VOD: https://www.youtube.com/watch?v=K8qApvsFtqw
Show Topic Summary:
If you want to get in the mind of a board member, I submit to you my discussion with Mary Gardner we did last night on #brakesec #education. Join Mary and I as we discuss the functions of a board, messaging to various levels of leadership and teams, and what it takes to make that leap to being a CISO.
And when you're done, and you need someone to help your org get more mature, contact the team at GoldiKnox.
#cybersecurity #informationsecurity #ciso #leadership #GRC
Questions and topics:
https://hbr.org/2023/05/boards-are-having-the-wrong-conversations-about-cybersecurity
"Just 69% of responding board members see eye-to-eye with their chief information security officers (CISOs). Fewer than half (47%) of members serve on boards that interact with their CISOs regularly, and almost a third of them only see their CISOs at board presentations. "
They obviously have different priorities, so what brings everyone to the table to discuss? Are they even worried about security?
Tactical goals vs. org goals and aligning them
What are boards most worried about these days?
Staying relevant in the face of AI?
What tech will protext them from the newest threats?
GRC is forced security, security is completely optional, Compliance requires some sort of security
Additional information / pertinent LInks (Would you like to know more?):
Research organizations (gartner, forrester, etc)
https://goldiknox.com/
https://www.linkedin.com/pulse/board-needs-help-planning-cybersecurity-start-here-daniel-briley-k7xzc
https://hbr.org/2022/11/is-your-board-prepared-for-new-cybersecurity-regulations
https://www.justice.gov/usao-ndca/pr/former-chief-security-officer-uber-sentenced-three-years-probation-covering-data
Show points of Contact:
Amanda Berlin: @infosystir @hackershealth
Brian Boettcher: @boettcherpwned
Bryan Brake: https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Youtube channel: https://youtube.com/@brakeseced
Twitch Channel: https://twitch.tv/brakesec
Discord: https://discord.gg/brakesec
p2-accidentalCISO, building trust in new places, securing SaaS products
2024/02/13
Full Youtube VOD: https://www.youtube.com/watch?v=uX7odQTBkyQ
Questions and topics:
Let's talk about Mindful Business Podcast
What's the topics you cover?
Topic #1: discuss your experiences when you were a new leader.
What worked? What didn't? What would you have done differently?
Do you emulate your manager's style? What have been your go-to management resources?
What is a good piece of advice that you've been given or that you impart to others that relates to leadership?
Topic #2: building/Operating SaaS products (we can discuss securing them, what functions should be table stakes (data structures, logging, etc)
Topic #3: What are bare minimums for building 'secure' Saas products in your particular field? And how do you balance security with a positive user experience (i. e. getting customers to buy into MFA/OAUTH, OTA updates
Topic #4: Do many SaaS products get over-integrated? Is the need for integration override best practices in security?
Additional information / pertinent LInks (Would you like to know more?):
Twitter/Mastodon:
https://twitter.com/AccidentalCISO
https://infosec.exchange/@accidentalciso
The Mindful Business Security Show:
https://www.mindfulsmbshow.com/
https://twitter.com/mindfulsmbshow
Show points of Contact:
Amanda Berlin: @infosystir @hackershealth
Brian Boettcher: @boettcherpwned
Bryan Brake: https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Youtube channel: https://youtube.com/@brakeseced
Twitch Channel: https://twitch.tv/brakesec
AccidentalCISO on BrakeSecEd, talking Leadership, SaaS development, and Appsec
2024/02/02
Disclaimer: The views, information, or opinions expressed on this program are solely the views of the individuals involved and by no means represent absolute facts. Opinions expressed by the host and guests can change at any time based on new information, and do not represent views of past, present, or future employers.
Recorded: 28 Jan 2024
Youtube VOD: https://youtube.com/live/uX7odQTBkyQ
Questions and topics:
Let's talk about Mindful Business Podcast
What's the topics you cover?
Topic #1: discuss your experiences when you were a new leader.
What worked? What didn't? What would you have done differently?
Do you emulate your manager's style? What have been your go-to management resources?
What is a good piece of advice that you've been given or that you impart to others that relates to leadership?
Topic #2: building/Operating SaaS products (we can discuss securing them, what functions should be table stakes (data structures, logging, etc)
Topic #3: What are bare minimums for building 'secure' Saas products in your particular field? And how do you balance security with a positive user experience (i. e. getting customers to buy into MFA/OAUTH, OTA updates
Topic #4: Do many SaaS products get over-integrated? Is the need for integration override best practices in security?
Additional information / pertinent LInks (Would you like to know more?):
Twitter/Mastodon:
https://twitter.com/AccidentalCISO
https://infosec.exchange/@accidentalciso
The Mindful Business Security Show:
https://www.mindfulsmbshow.com/
https://twitter.com/mindfulsmbshow
Show points of Contact:
Amanda Berlin: @infosystir @hackershealth
Brian Boettcher: @boettcherpwned
Bryan Brake: https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Youtube channel: https://youtube.com/@brakeseced
Twitch Channel: https://twitch.tv/brakesec
1st show of 2024! Our 10th Anniversary...
2024/01/09
It's our 10th anniversary and the first show of our 2024 season!
Amanda was on "7 minute security"
https://7minsec.com/projects/podcast
Check out the complete VOD at https://youtu.be/vbmEtkxhAMg
Explicit language warning
www.brakeingsecurity.com
https://twitch.tv/brakesec
https://bit.ly/brakesecyt
Brakesec Call to Action 2023
2023/12/18
Youtube Video: https://youtu.be/IUDPlQaQg8M
https://forms.gle/rf145MoN7cskwMjf8
is the link to the survey. Your information (should you choose to identify yourself) will not be shared outside of the BrakeSec Team.
Thank all of you for listening and for your input.
RSS feed for the audio podcast is at https://www.brakeingsecurity.com/rss
website: https://www.brakeingsecurity.com
How to get more headcount, BLUFFs Vulnerability, and Ranty Clause debuts!
2023/12/04
Show Topic Summary:
Ms. Berlin proposes a question of how to gather more headcount with metrics, we discuss the BLUFFS bluetooth vulnerability, and "Ranty Claus" talks about CISA's remarks of putting the onus on device product makers to remove choice for customers and implement secure defaults.
#youtube VOD: https://www.youtube.com/watch?v=emcAzTx9z0c
Questions and topics:
https://cyberscoop.com/cisa-goldstein-secure-by-design/
https://hackaday.com/2023/12/02/update-on-the-bluffs-bluetooth-vulnerability/
Additional information / pertinent LInks (Would you like to know more?):
https://cyberscoop.com/jen-easterly-secure-by-design/
https://www.cisa.gov/resources-tools/resources/stop-passing-buck-cybersecurity
Examples of companies forcing changes https://www.bleepingcomputer.com/news/microsoft/microsoft-will-roll-out-mfa-enforcing-policies-for-admin-portal-access/
https://github.com/aya-rs/aya - eBPF implementation in Rust
https://ossfortress.io/
https://www.darkreading.com/endpoint-security/critical-logofail-bugs-secure-boot-bypass-millions-pcs
Show points of Contact:
Amanda Berlin: @infosystir @hackershealth
Brian Boettcher: @boettcherpwned
Bryan Brake: @bryanbrake on Mastodon.social, https://linkedin.com/in/brakeb
Brakesec Website: https://www.brakeingsecurity.com
Twitter: @brakesec
Youtube channel: https://youtube.com/c/BDSPodcast
Twitch Channel: https://twitch.tv/brakesec
25Oct - okta breached (again), Energy company hit by supply chain attack, and you can help hire the best people
2023/10/26
Subscribe on Twitch using Amazon Prime and watch us live: https://twitch.tv/brakesec
Check out our VODs on Youtube: https://www.youtube.com/@BrakeSecEd
Join the BrakeSecEd discord: https://discord.gg/brakesec
News:
https://www.darkreading.com/remote-workforce/1password-latest-victim-okta-customer-service-breach
https://www.documentcloud.org/documents/24075435-bhi-notice
https://www.bleepingcomputer.com/news/security/us-energy-firm-shares-how-akira-ransomware-hacked-its-systems/
https://www.bleepingcomputer.com/news/security/ransomware-isnt-going-away-the-problem-is-only-getting-worse/
https://www.shacknews.com/article/137505/ransomware-group-capcom-2020-arrested
https://www.bleepingcomputer.com/news/security/flipper-zero-can-now-spam-android-windows-users-with-bluetooth-alerts/
https://www.nasdaq.com/articles/three-cybersecurity-sectors-that-resist-economic-downturns
Podcast reviews
Read BrakeSec Education Podcast podcast reviews
obacker19 2021/04/07
Empowering, insightful and actionable! 🙌
Whether you’re well established as an innovator in infosec, or just getting started in the industry - this is a must-listen podcast for you! Bryan and...
The name iz already taken 2021/07/20
Spelling
Braking*
bb7151 2019/02/27
Good team!
Topics are practical and varied. I also appreciate the fact that they are all involved in the security community which adds weight to their discussion...
Insert_Nick_Here 2021/01/20
Err
Bryan has an annoying habit of making things up when he's unsure of himself...
The Drewsk 2018/10/05
Great Security Pod
Great security podcast even for non-security IT folks. Give it a listen!
Bob5454!! 2018/08/31
Important for Cyber Security
Great information and insight. They actually test some of the issues discussed which is great. This is a great way to stay up to date.
Evanx111252481 2018/08/18
My go to InfoSec podcast
Bryan and the gang do an amazing job with Braking Down Security. Their Slack channel is a wealth of talent and information. I learn something new each...
pr0c 2018/08/09
My Go To Infosec podcast
The hosts are easy to listen too and every episode is filled with entertainment. The information is invaluable and the guest speakers are awesome. Alw...
Amish_G 2018/04/27
Best InfoSec Podcast
I look forward to this podcast each week. The information and the humor are balanced perfectly. Keep up the good work.
CoTeddyBear 2018/03/13
Great podcast with incredibly useful information
One of my favorite podcast on computer security. I love the real world examples and how to mitigate the threats. I learn something new every episode. ...
Podcast sponsorship advertising
Start advertising on BrakeSec Education Podcast relevant audience podcasts
You may also like to advertise on these Podcasts

53363
House of the Mermaid Dragon
RHAP Productions

4.7149110
The Boardroom Podcast
Scott Bass

4.8153303
One Percent Better
Joe Ferraro

4.7223294
The Freemasons Podcast
George Mudry

4.86123
The 98%
Alexa Morden

4.97381
Letters From A Hopeful Creative
This is a podcast for small business owners ready to feel encouraged, inspired, and less alone in your entrepreneurial journey

42249
Late To The Party With Grace Campbell
Grace Campbell

4.25817
Never Talk To Strangers
Stranger

4.8201166
The Osbournes Podcast
Osbourne Digital Media

4.8108572
Coach Glass Podcast
Jason Glass
