Join Patterson Cake, Director of Incident Response at Black Hills Infosec, as he guides through his “rapid endpoint investigations” workflow for the “other” (not Windows) Operating System…*Nix (Linux/Mac).
We’ll learn how to select, acquire, and analyze Linux and Mac investigative artifacts, using Velociraptor offline collector, CatScale, and UAC scripts.
Windows gets a lot of attention and rightfully so!
However, Linux and Mac are part of every enterprise ecosystem and represent a critical attack surface. You need a simple, effective, repeatable plan for investigating these endpoints.
Turn Ideas into Code with GitHub Copilot with Carrie Roberts
Épisode 13
vendredi 8 mai 2026 • Durée 01:09:36
What if you could build tools, automate tasks, and write real code without ever having called yourself a developer?
Join us for a free one-hour training session with instructor Carrie Roberts, Developer and InfoSec Engineer, as she teaches you how GitHub Copilot is changing what it means to "know how to code" and show you how to put it to work in your browser right now, with no setup required.
You'll learn how to use Copilot to generate, debug, and refactor code through hands-on demos, including how to assign tasks directly from GitHub without ever opening an editor, so you can start building things that actually work faster than you ever thought possible.
In this bold, no-nonsense talk, instructor Doc Blackburn will reveal the Absolute Truths of Cybersecurity, hard realities that challenge everything you think you know about “being secure.”
Join us for a free one-hour training session to learn why security isn’t a product, why prevention is a fantasy, why encryption fixes almost nothing, and why your biggest risk might be you.
You'll learn to see your role differently — not as a gatekeeper, but as a mission-enabler, risk translator, and resilience builder.
This Anti-Cast isn’t about firewalls or frameworks. It’s a total reset on how we view cybersecurity. Chapters
(00:00) - Intro - The Absolute Truths of Cybersecurity with Doc Blackburn
(03:40) - Vera's Origin Story
(08:19) - Learning Security?
(10:08) - Security isn’t what you do!
(11:17) - 14 Truths of Cybersecurity
(12:59) - Truth #1: There is no such thing as security, only varying degrees of insecurity.
(15:26) - Truth #2: The network doesn't exist to be secured.
(21:29) - Truth #3: When security gets in the way of the mission – Security is wrong, not the mission
(22:54) - Truth #4: Prevention is ideal – Detection is a must. Detection without response is useless
(28:43) - Truth #5: Security must always be driven by business need
(31:04) - Truth #6: Security is a cost center, not a profit center
(34:04) - Truth #7: Security is a process… not a product
(35:58) - Truth #8: You cannot process encrypted data… EVER
in the #🔴live-chat channel
How to Write SOC Tickets That Build Trust and Drive Action w/ Dan Rearden
Can AI really help secure the cloud, or is it quietly making things worse?
Join Antisyphon instructor and security researcher Andrew Krug for a free one-hour Anti-cast on what really happens when AI collides with cloud security.
Andrew will cut through the hype and look at how LLMs affect IAM, monitoring, governance, and real-world risk.
Learn where AI helps, where it hallucinates, and how to defend cloud environments without panic.
Expect practical insights, grounded strategy, and a bit of cosmic humor. Bring your towel. Don’t panic.
Chapters
(00:00) - Intro
(02:44) - Our trip through the galaxy
(03:38) - What kind of literature is the Hitchikerʼs Guide to the Galaxy?
(04:29) - Don't Panic
(05:18) - The Agentic Revolution
(05:56) - Cast of Characters
(07:44) - The State of AI in the Enterprise - Deloitte
(10:53) - How do teams build agents?
(12:11) - What are teams using agents for?
(13:17) - Why build on Bedrock + AWS
(14:17) - Are we learning? Or not learning?
(15:58) - Are you the fixed point in a shifting universe?
(17:01) - TL;DR the majority of these are the same threats we have been dealing with
(18:16) - Prompt Injection is the new SQL Injection
(19:13) - Sandbox Escape
(20:20) - Shared Structure: General Software & AI Supply Chains
(23:03) - The Bad News
(24:29) - Threate Vector Coverage
(25:24) - The Expanding Universe of Secrets
(28:15) - Hope is not a strategy! But a strategy can give us hope.
in the #🔴live-chat channel
How to Detect Malicious Remote Workers w/ James McQuiggan
Épisode 9
mardi 17 mars 2026 • Durée 59:47
Summary Could a nation-state threat actor get hired and stay invisible to your SOC?
Join us for a free one-hour training session with James McQuiggan, CISSP and Advisory CISO, as he teaches you the full lifecycle of North Korea’s AI-enabled IT worker operation, from AI-generated identities and U.S.-based laptop farms to the data theft and extortion that follow once they’re inside.
You’ll learn a practical detection and hunting playbook covering behavioral anomalies, identity red flags, and post-hire SOC indicators that catch what background checks miss.
If your SOC isn’t hunting for threats that were hired legitimately, this Antisyphon Anti-cast will change that.
Chapters
(00:00) - Intro – How to Detect Malicious Remote Workers - James McQuiggan
(01:17) - DPRK Solution – Did you Hire a North Korean?
(02:35) - But Really, Did We Just Hire a North Korean?
(04:31) - How comfortable are you to spot deepfakes?
(05:46) - Who is James R. McQuiggan
(07:42) - Webcast Agenda
(09:36) - Overview - North Korea Situation
(11:56) - DRPK Education
(14:31) - The Ultimate Inside Threat – DPRK Job Opps
(17:47) - Investigations – Crowdstrike / Okta / Unit 42
(19:14) - How Identities Are Built – AI Images
(21:05) - GenAI Resumes
(23:39) - Stateside Assistance
(25:23) - Face Swap / Voice Cloning & Webcams ➜ LIVE Deepfakes
(25:49) - AI Face Swap Demo
(29:55) - Video Camera Real time Video Deepfake Face Swap Interview
in the #🔴live-chat channel
Preparing IR for AI Incidents with Gerard Johansen
Épisode 8
jeudi 5 mars 2026 • Durée 01:10:40
Is your Incident Response plan AI ready?
Join us for a free one-hour training session with incident management expert and instructor Gerard Johansen, where he'll teach how to adapt your Incident Response plan to AI-related risks and threats.
You’ll learn how AI incidents actually happen and how to respond to them.
Gerard will also cover what to include in your incident response plan so you’re prepared as your organization adopts AI.
Join AI researchers Brian Fehrman and Derek Banks for a free one-hour training session that breaks down the OWASP Top 10 AI-LLM risks clearly and practically.
You’ll learn in this Antisyphon Anti-cast how LLM security issues show up in real systems, how attackers test them, and what to focus on to secure AI applications with a practical, security-first mindset.
Chapters
(00:00) - Intro
(01:09) - Webcast Agenda
(02:21) - Workshop: Hacking AI-LLM Applications
(02:49) - Training: Attacking, Defending, and Leveraging AI-LLM Systems
(03:11) - BHIS AI Security Assessments
(03:24) - AI Security Ops Podcast
(03:56) - LLM Security Introduction
(05:57) - Foundation Model Training
(09:35) - Chatbot
(14:58) - AI Agents
(17:56) - LLM Safety Versus Security
(23:54) - OWASP Top 10 for LLM Applications
(24:33) - – Prompt Injection
(29:11) - – Sensitive Information Disclosure
(32:46) - – Supply Chain
(37:02) - – Data and Model Poisoning
(40:18) - – Improper Output Handling
(41:51) - – Exessive Agency
(43:47) - – System Prompt Leakage
(45:17) - – Vector and Embedding Weaknesses
(46:49) - – Misinformation
(49:45) - – Unbounded Consumption
(52:10) - Red Team Methodology
(53:06) - Threat Modeling an LLM App
(54:41) - Defense-in-Depth for LLM Apps
(55:49) - Red Team Tools & Frameworks
(56:31) - Key Takeaways
Adapting to Active Directory Security Enhancements with Eric Kuehn
Épisode 6
lundi 23 février 2026 • Durée 01:01:01
Summary Are your go-to Active Directory attacks quietly failing without you noticing?
Join Eric Kuehn, Principal Security Consultant at Secure Ideas, for a free one-hour training session that takes a deep dive into the security enhancements Microsoft has introduced to Active Directory over the past few years and how they are reshaping the way penetration testers and defenders operate.
You’ll learn how long-reliable attack paths now break, how successful attacks may leave new and unexpected traces, and what these changes mean for staying stealthy during an engagement.
Eric will teach you the latest AD hardening features, the new detection opportunities they create, and the practical changes testers and defenders can make to improve their tradecraft right away.
Chapters
(00:00) - Intro
(01:29) - I am Eric Kuehn
(05:43) - “Recent” Change Timeline
(09:14) - 2026 And Beyond
(13:34) - NTLM Finally Going Away
(19:28) - Kerberos PAC Signatures
(23:23) - What Does It Mean to Us?
(25:18) - Certificate-Based Authentication
(29:46) - Non-Security Events for PAC and Certificate Issues
How to Strengthen M365 Exchange Online Configurations with Kevin Klingbile
Épisode 5
jeudi 5 février 2026 • Durée 01:06:04
Summary When was the last time you reviewed the security of your mail flow rules?
Join instructor Kevin Klingbile to learn how attackers exploit weak mail flow rules and how to stop them.
Kevin will teach you through real-world examples of rule bypasses, show you how to spot risky configurations, and teach practical steps to secure your email environment.
In this free one-hour Antisyphon Anti-cast, you'll strengthen your defenses and make sure your mail flow rules aren’t the next easy target.
(00:00) - Intro – How to Strengthen M365 Exchange Online Configurations with Kevin Klingbile
(01:12) - Excahnge Online
(03:47) - Exchange Mail Flow Rules
(04:20) - Rule Requirements - Conditions
(08:36) - Rule Settings
(12:15) - Rule Flow
(18:34) - Creating “Good” Rules
(25:22) - Rule Example - Conditions vs Description
(28:29) - Rule Function - Message Sent to Organization
(29:39) - Reply to email chain and...
(30:56) - Microsoft’s Solution! (Sort of)
(32:10) - Mail Rule vs Disclaimer
(32:20) - Modify Original Rule
(33:03) - New message “Bypassing” Subject Rule
(35:03) - Common Rule Issues
(41:44) - Phishing Products
(42:39) - X-Header Bypass Examples
(42:53) - X-Header Example - 2
in the #🔴live-chat channel
Podcasts Similaires Basées sur le Contenu
Découvrez des podcasts liées à Antisyphon Training Anticasts. Explorez des podcasts avec des thèmes, sujets, et formats similaires. Ces similarités sont calculées grâce à des données tangibles, pas d'extrapolations !