POPULARITY
REPLAY (Original Air Date Aug 28, 2023) Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [August 28, 2023] 00:00 - Intro 00:21 - Patrick Laverty Intro 00:55 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 07:20 - Intro Chat 09:11 - Todays Topic: Tips for Having Difficult Conversations 10:00 - Outline for Parents 12:10 - Map Your Terrain 16:22 - Define Your Goal 17:40 - Decide on Your Pretext 20:05 - Imagine Your Rapport Building 21:50 - Identify Potential Influence Building Techniques 28:47 - Run a Quick Manipulation Check 31:31 - Pump Up the Nonverbals 36:30 - Conduct an Authenticity Check 39:21 - Prepare for Likely Contingencies 40:48 - Solidify Gains 43:40 - Next Month: ??? 44:00 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
REPLAY (Original Air Date Sept 25, 2023) Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. Today, Chris and Patrick are joined by Shane McCombs. Shane leads the ILF with more than 25 years of experience in the tech industry, including more than a decade of experience in C-level roles. He led enterprise-wide initiatives within project management, customer relationship management and acquisition, policies and procedures, process improvement, and infrastructure. Shane is also an accomplished public speaker and trainer focused on change management, professionalism, social engineering, and corporate security. In the past, he volunteered for the Autism Hope Alliance and currently donates his time to businesses and non-profits as a trusted advisor. [Sept 25, 2023] 00:00 - Intro 00:22 - Patrick Laverty Intro 01:31 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 06:30 - Shane McCombs Intro 07:33 - Intro Chat 09:07 - Today's Topic: How to Protect Your Kids from Online Dangers 09:51 - ILF Overview 11:19 - Can children protect themselves? 12:26 - Tips for Non-tech Savvy Parents 13:55 - Communication is Key 15:32 - Who is the bad guy? 17:06 - Rules for the Ages 20:47 - How it Happens 23:54 - The Truth of Stranger Danger 25:00 - The Long Con 27:14 - The Importance of Trust 28:28 - The Next Step 29:44 - Stability is Critical 32:27 - Stop. Block. Don't Delete! 33:59 - The Power of Belief 35:09 - ILF Updates - ILF Videos 38:47 - Helping the ILF 43:33 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Our host, Patrick Laverty, has gotten to talk with experts in OSINT and social engineering and heard their stories. But Patrick has never told one of his own. That's what we get here as he explains how he got access to sensitive areas of a bank during a social engineering job. This episode is brought to you by Compass Cyber Guard. To find out more about Cyber Guard's social engineering or pentesting services, contact info@layer8podcast.org
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. Today Chris and Patrick are once again joined by Shelby Dacko. Shelby is a Human Risk Analyst with Social‐Engineer, LLC. Her specialties include vishing, OSINT work, educational material production, and public speaking. Notably, she has made over 20,000 vishing calls in her career. She holds a Certified Ethical Social Engineer (CESE) certification and has spoken for Fortune 500 companies. Coming from a background that includes teaching English, and interpreting American Sign Language, Shelby has always had an interest in communication. That interest led her to the Foundational Application of Social Engineering (FASE) class, which she now co-teaches with Christopher Hadnagy. On her days off, Shelby enjoys volunteering for the Innocent Lives Foundation and painting. [Jan 22, 2024] 00:00 - Intro 00:19 - Patrick Laverty Intro 00:49 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 04:23 - Today's Topic: Telling Stories with Shelby (Part 2) 05:18 - Previously on SE, ETC. 06:43 - Night & Day 07:59 - Finding Our "In" 09:03 - You're Gonna Like the Way You Look 10:54 - We Don't Need No Stinking Badges 12:01 - Attack of the Clones 14:06 - Good Ole' Barb 18:25 - Leisurely Stroll 20:27 - Mission Accomplished! 24:31 - Left to Our Own Devices 29:45 - Being Flexible 31:07 - You Still Need to Plan 33:46 - Debrief BBQ 35:38 - Reposition Ring 40:17 - Wrap Up & Goodbye 42:10 - Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9 - Shelby Dacko - Twitter: @scarylilhuman - LinkedIn: linkedin.com/in/shelbydacko
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. Today Chris and Patrick are joined by Shelby Dacko. Shelby is a Human Risk Analyst with Social‐Engineer, LLC. Her specialties include vishing, OSINT work, educational material production, and public speaking. Notably, she has made over 20,000 vishing calls in her career. She holds a Certified Ethical Social Engineer (CESE) certification and has spoken for Fortune 500 companies. Coming from a background that includes teaching English, and interpreting American Sign Language, Shelby has always had an interest in communication. That interest led her to the Foundational Application of Social Engineering (FASE) class, which she now co-teaches with Christopher Hadnagy. On her days off, Shelby enjoys volunteering for the Innocent Lives Foundation and painting. [Dec 26, 2023] 00:00 - Intro 00:17 - Patrick Laverty Intro 01:09 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 03:56 - Shelby Dacko Intro 04:18 - Today's Topic: Telling Stories with Shelby 04:59 - Something In The Water 07:02 - OSINT in the Jungle 10:11 - Get Out of Jail Free Card 13:19 - Golden Ticket 16:20 - Busted! 19:30 - Droning On and On 23:21 - On-Site OSINT 24:11 - Over the River... 28:02 -...and Through the Woods 30:03 - Killroy Was Here 32:01 - Nobody Watching 34:23 - Teamwork 36:31 - Mind the Gap 38:46 - Game On! 40:29 - Got the Keys 44:13 - Full Circle 45:37 - Part 2??? 46:36 - Next Month 47:02 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9 - Shelby Dacko - Twitter: @scarylilhuman - LinkedIn: linkedin.com/in/shelbydacko
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [Nov 27, 2023] 00:00 - Intro 00:19 - Patrick Laverty Intro 00:50 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 04:33 - Intro Chat: QRishing 10:25 - Todays Topic: End of year threats 12:50 - Phishin' in the Amazon 16:29 - The Argument for Password Managers 18:51 - MFA But Not SMS 22:23 - Smishing All Around 25:40 - Training Us to be Victims 27:49 - Don't Answer! 30:43 - Less Generalized 31:52 - It's the Season for Vishing 34:17 - The Gift Card Scams 40:49 - Seasonal Summery 42:37 - Next Month: Storytime 43:21 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [Oct 23, 2023] 00:00 - Intro 00:19 - Patrick Laverty Intro 01:10 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 03:51 - Intro Chat: MGM Breach 11:30 - Todays Topic: Preparing for a Red Team or SE Teaming Job 12:44 - Team Colors 14:10 - Always OSINT 18:43 - Prepping for the Client 20:42 - Cold Open 22:11 - Law Enforcement 25:14 - Planning Goals 30:50 - It's the Little Things 33:46 - The Facade of Security 36:02 - Check the Backups 39:01 - Respect the Badge 41:32 - Using the Right Tools 45:40 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org 47:07 - Next Month: Online Scams Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. Today, Chris and Patrick are joined by Shane McCombs. Shane leads the ILF with more than 25 years of experience in the tech industry, including more than a decade of experience in C-level roles. He led enterprise-wide initiatives within project management, customer relationship management and acquisition, policies and procedures, process improvement, and infrastructure. Shane is also an accomplished public speaker and trainer focused on change management, professionalism, social engineering, and corporate security. In the past, he volunteered for the Autism Hope Alliance and currently donates his time to businesses and non-profits as a trusted advisor. [Sept 25, 2023] 00:00 - Intro 00:22 - Patrick Laverty Intro 01:31 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 06:30 - Shane McCombs Intro 07:33 - Intro Chat 09:07 - Today's Topic: How to Protect Your Kids from Online Dangers 09:51 - ILF Overview 11:19 - Can children protect themselves? 12:26 - Tips for Non-tech Savvy Parents 13:55 - Communication is Key 15:32 - Who is the bad guy? 17:06 - Rules for the Ages 20:47 - How it Happens 23:54 - The Truth of Stranger Danger 25:00 - The Long Con 27:14 - The Importance of Trust 28:28 - The Next Step 29:44 - Stability is Critical 32:27 - Stop. Block. Don't Delete! 33:59 - The Power of Belief 35:09 - ILF Updates - ILF Videos 38:47 - Helping the ILF 43:33 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [August 28, 2023] 00:00 - Intro 00:21 - Patrick Laverty Intro 00:55 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 07:20 - Intro Chat 09:11 - Todays Topic: Tips for Having Difficult Conversations 10:00 - Outline for Parents 12:10 - Map Your Terrain 16:22 - Define Your Goal 17:40 - Decide on Your Pretext 20:05 - Imagine Your Rapport Building 21:50 - Identify Potential Influence Building Techniques 28:47 - Run a Quick Manipulation Check 31:31 - Pump Up the Nonverbals 36:30 - Conduct an Authenticity Check 39:21 - Prepare for Likely Contingencies 40:48 - Solidify Gains 43:40 - Next Month: ??? 44:00 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [July 24, 2023] 00:00 - Intro 00:18 - Patrick Laverty Intro 00:53 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 12:40 - Todays Topic: Social Engineering in Everyday Life 14:09 - A Controversial Definition 18:30 - Purpose in Practice 24:24 - Time for Tea 28:16 – Dealers & Servers 35:00 - The Power of Cookies 36:49 - The Power of Trust 38:21 - Another Principle of Influence 39:03 - The Parent Trap 40:00 - Next Month: ??? 40:17 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The Doctor Is In Series – where we will discuss understandings and developments in the field of psychology. In today's episode, Chris and Abbie are discussing: Deception Detection. While there are many misconceptions about this topic, we are not completely in the dark; we are just not as good as we think. [July 3, 2023] 00:00 - Intro 00:18 - Dr. Abbie Maroño Intro 01:18 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 04:44 - The Topic of the Day: Deception Detection 06:15 - Lying About Lying 09:20 - The Dangers of Being Wrong 11:09 - The "What" is NOT the "Why" 13:41 - The False Narrative of NLP 18:37 - We Love a Myth 21:33 - Mythbusters 24:50 - That's Entertainment! 26:17 - It's Not Deception, It's Stress 31:40 - "We need to talk" 33:11 - Lying in Order 37:23 - Information is Key 38:46 - The Need for a Big-Picture Approach 41:00 - Shameless Plugs 42:27 - Wrap Up 43:21 - Next Month: Learned Helplessness 44:35 - Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online: - Twitter: https://twitter.com/abbiejmarono - LinkedIn: linkedin.com/in/dr-abbie-maroño-phd-35ab2611a - Twitter: https://twitter.com/humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy References: Vrij, A. (2019). Deception and truth detection when analyzing nonverbal and verbal cues. Applied Cognitive Psychology, 33(2), 160-167. Vrij, A., Granhag, P. A., & Porter, S. (2010). Pitfalls and opportunities in nonverbal and verbal lie detection. Psychological science in the public interest, 11(3), 89-121. Vrij, A., Hartwig, M., & Granhag, P. A. (2019). Reading lies: Nonverbal communication and deception. Annual review of psychology, 70, 295-317. DePaulo, B.M. (2004). The many faces of lies. In A.G. Miller (Ed.), The social psychology of good and evil (pp. 303–236). New York: Guilford Press. DePaulo, B.M., Blank, A.L., Swaim, G.W., & Hairfield, J.G. (1992). Expressiveness and expressive control. Personality and Social Psychology Bulletin, 18, 276–285. DePaulo, B.M., Charlton, K., Cooper, H., Lindsay, J. L., & Muhlenbruck, L. (1997). The accuracy–confidence correlation in the detection of deception. Personality and Social Psychology Review, 1, 346–357. Ekman, P. (2001). Telling lies: Clues to deceit in the marketplace, pol[1]itics and marriage. New York: Norton. (Original work published 1985). Ekman, P., & Friesen, W.V. (1969). Nonverbal leakage and clues to deception. Psychiatry, 32, 88–106. Julia Hirschberg, Stefan Benus, Jason M. Brenier, Frank Enos, Sarah Friedman, Sarah Gilman, Cynthia Girand, Martin Graciarena, Andreas Kathol, Laura Michaelis, et al. 2005. Distinguishing deceptive from non-deceptive speech. In In Proceedings of In[1]terspeech 2005 - Eurospeech, pages 1833–1836. Tsikerdekis, M., & Zeadally, S. (2014). Multiple account identity deception detection in social media using nonverbal behavior. IEEE Transactions on Information Forensics and Security, 9(8), 1311-1321. O'Sullivan, M. (2005). Emotional intelligence and deception detection: Why most people can't “read” others, but a few can. Applications of nonverbal communication, 215-253.
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [June 26, 2023] 00:00 - Intro 00:19 - Patrick Laverty Intro 00:58 - Practical Application for Social Engineering 02:37 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 04:53 - ILF News 06:32 - Todays Topic: Acting Your Way in Social Engineering 08:32 - Rosa Rowles & Curt Klump Intro 09:52 - Dressing the Part 14:22 - A Background Made for SE 19:46 - Getting Out of Your Own Head 20:46 - Alter Ego 22:32 - Using Real Life as a Tool 25:49 - When Your Alias is Real 29:51 - Breaking Bad 36:02 - Security Isn't Convenient 37:57 - Keeping It Fresh 42:43 - Being Helpful Helps 45:15 - In the Classroom 46:45 - Wrap Up 47:28 - Next Month: Subscribe to Find Out 48:05 - Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [May 22, 2023] 00:00 - Intro 00:18 - Patrick Laverty Intro 00:58 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 08:58 - Todays Topic: Human Hacking Book Discussion 13:52 - From "Tech" to "Storytelling" 18:51 - Experience Not Required 22:02 - The Importance of Knowing Yourself 25:43 - A Foundation in Communication 29:04 - Principles of Influence 31:32 - Leveling the Playing Field 35:35 - Elicitation Breakdown 40:22 - Understanding the Baseline 44:31 - Dress for the Job (You're Pretending to Have) 48:00 - The Forgotten Resources 49:39 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [April 24, 2023] 00:00 - Intro 00:25 - Patrick Laverty Intro 00:59 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 05:34 - Scary Little Human 07:50 - Today's Topic: The SE Framework 09:13 - Origin Story 14:15 - Social Engineering: A Complete Definition 18:03 - A Tool for Communication 19:20 - Influence is NOT Manipulation 24:15 - Code of Ethics 27:38 - Intent is Key 33:36 - Human Buffer Overflow 41:56 - Education for Everyone 43:51 - Updating When Necessary 45:14 - Next Month: Book Club 45:59 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [March 27, 2023] 00:00 - Intro 00:18 - Patrick Laverty Intro 01:01 - Intro Links - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 05:02 - David Sherry Intro 07:25 - Today's Topic: How to Develop a Culture of Top-Down Security 11:42 - The Weakest Link 14:03 - It's All About the "Report" 17:37 - Culture is Everything 20:28 - Zero to Sixty! 23:27 - Make it Personal 25:55 - MVP: Most Valuable People 27:33 - Empowerment through Education 37:11 - The Chicken or the Egg? 39:32 - Book Recommendations - Project Zero Trust - George Finney - Race After Technology - Ruha Benjamin - This Is How They Tell Me the World Ends - Nicole Perlroth - The Indispensables - Patrick K. O'Donnell 43:02 - Find David Sherry Online - Twitter: twitter.com/CISOatPrinceton - LinkedIn: linkedin.com/in/davidsherry - Website: informationsecurity.princeton.edu 44:17 - Next Month: The History of VISHING 44:43 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [Feb 27, 2023] 00:00 - Intro 00:46 - Patrick Laverty Intro 01:40 - Intro Links - Tuxcare – tuxcare.com - Social-Engineer.com - http://www.social-engineer.com/ - Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ - Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ - Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ - Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb - CLUTCH - http://www.pro-rock.com/ - innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 06:11 - Todays Topic: Popular Scams and How They Work 08:21 - Let's Start with Romance Scams 10:10 - How it Starts 15:34 - Preying on Loss 17:01 - What about the IRS scams? 20:52 - Protecting the Grandparents 23:28 - Real Customer Service 27:32 - The Parent Trap 29:51 - Scamming Kids 32:00 - What can we do? 33:43 - The Next Steps 37:01 - The Power of Suggestions 39:27 - Wrap Up & Outro - www.social-engineer.com - www.innocentlivesfoundation.org Find us online - Chris Hadnagy - Twitter: @humanhacker - LinkedIn: linkedin.com/in/christopherhadnagy - Patrick Laverty - Twitter: @plaverty9 - LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [Jan 30, 2023] 00:00 – Intro 00:28 – Patrick Laverty Intro 00:58 – Intro Links Social-Engineer.com- http://www.social-engineer.com/ Managed Voice Phishing- https://www.social-engineer.com/services/vishing-service/ Managed Email Phishing- https://www.social-engineer.com/services/se-phishing-service/ Adversarial Simulations- https://www.social-engineer.com/services/social-engineering-penetration-test/ Social-Engineer channel on SLACK- https://social-engineering-hq.slack.com/ssb CLUTCH- http://www.pro-rock.com/ org- http://www.innocentlivesfoundation.org/ 05:38 – "You never know" 06:51 – Todays Topic: The Role of Empathy in SE 07:02 – Empathy: A Definition 11:09 – 3 Kinds of Empathy 11:23 – Cognitive Empathy 12:21 – Emotional Empathy 13:00 – Empathic Concern 15:52 – The Role of Emotional Distance 16:57 – Learning Empathy 17:49 – What the Studies Show 19:56 – Keeping an Open Mind 21:35 – Letting Your Life Experiences Teach You 23:52 – The Social Media Bubble 25:55 – Expand And Listen 30:13 – Applying Empathy to Social Engineering 31:25 – Being Adversarial 32:45 – Don't Be the Bad Guy 38:33 – The Importance of "Why" 42:51 – Using Empathy to Make the Best Choice 48:07 – Using Empathy to Make the Hard Choice 49:55 – Practice Makes (Not Quite) Perfect 51:17 – Coming Up Next Month 52:08 – Wrap Up & Outro social-engineer.com innocentlivesfoundation.org Find us online Chris Hadnagy Twitter: @humanhacker LinkedIn: com/in/christopherhadnagy Patrick Laverty Twitter: @plaverty9 LinkedIn: com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [Dec 26, 2022] 00:00 – Intro 00:29 – Patrick Laverty Intro 01:18 – Intro Links Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 05:04 – Todays Topic: Dumpster Diving 06:27 – Shelby Dacko Intro 08:38 – Patrick's Pizza Adventure 14:34 – Who is Shelby? 15:51 – 9 Times 19:20 – The continuing importance of OSINT 20:44 – What are some "typical" goals for a "break-in"? 22:40 – Concerns with 3rd party security 23:08 – Shelby's nighttime find 26:37 – Shelby's Trash Talk 31:02 – All the luck 33:20 – A moment in time 35:37 – Situational Awareness 38:58 – The 4th Step 41:02 – Diversity of thought 42:06 – Cut me some SLACK 44:39 – "It's more about the raccoons" 46:50 – Wrap Up & Outro www.social-engineer.com www.innocentlivesfoundation.org Find us online Chris Hadnagy Twitter: @humanhacker LinkedIn: linkedin.com/in/christopherhadnagy Patrick Laverty Twitter: @plaverty9 LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [Nov 28, 2022] 00:00 – Intro 00:24 – Patrick Laverty Intro 00:43 – Intro Links Social-Engineer.com - http://www.social-engineer.com/ Managed Voice Phishing - https://www.social-engineer.com/services/vishing-service/ Managed Email Phishing - https://www.social-engineer.com/services/se-phishing-service/ Adversarial Simulations - https://www.social-engineer.com/services/social-engineering-penetration-test/ Social-Engineer channel on SLACK - https://social-engineering-hq.slack.com/ssb CLUTCH - http://www.pro-rock.com/ innocentlivesfoundation.org - http://www.innocentlivesfoundation.org/ 03:26 – Todays Topic: How do you become a Social Engineer? 05:16 – The Art of the Conversation 05:36 – The old college try! 07:49 – It's all in the report 11:37 – OSINT: The SE Lifeblood 13:53 – How do you learn this? 16:48 – Don't rely on tools, rely on OSINT 19:14 – The APSE origin story 25:13 – It's really about communication 25:45 – Learning from DISC 29:24 – It's not all bad 30:24 – This isn't 9 to 5 33:50 – Conversation with a purpose 34:57 – Back to the reports 38:27 – APSE and beyond 43:36 – Sorry...Invite Only 45:50 – 'Tis the season 46:41 – Never stop learning 48:27 – Always different, never boring 49:32 – The next generation 51:28 – Coming up next month 52:03 – Wrap Up & Outro www.social-engineer.com www.innocentlivesfoundation.org Find us online Chris Hadnagy Twitter: @humanhacker LinkedIn: linkedin.com/in/christopherhadnagy Patrick Laverty Twitter: @plaverty9 LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [Oct 24th, 2022] 00:00 – Intro 00:17 – Patrick Laverty Intro 00:58 – Intro Links Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 03:28 – This month's dumpster dive: Great Stories 04:01 – Oceans 11 1/2: Ryan Didn't Die 05:14 – Let the testing begin! 06:36 – OSINT & Building a Pretext 10:06 – Never lose focus of your SCOPE 11:52 – Stay with the Pretext! 14:53 – Don't Drink & Shred 18:36 – Always working 19:55 – The Story Continues... 29:14 – You can't prepare for Bad Luck 35:04 – Being an advocate, not an adversary 36:46 – Not quite a clean getaway 38:40 – The value of stories 40:34 – Coming up next month 41:43 – Wrap Up & Outro www.social-engineer.com www.innocentlivesfoundation.org Find us online Chris Hadnagy Twitter: @humanhacker LinkedIn: linkedin.com/in/christopherhadnagy Patrick Laverty Twitter: @plaverty9 LinkedIn: linkedin.com/in/plaverty9
Welcome to the Social-Engineer Podcast: The SE Etc. Series. This series will be hosted by Chris Hadnagy, CEO of Social-Engineer LLC, and The Innocent Lives Foundation, as well as Social-Engineer.Org and The Institute for Social Engineering. Chris will be joined by his co-host Patrick Laverty as they discuss topics pertaining to the world of Social Engineering. [Sept 26, 2022] 00:00 – Intro 00:17 – Patrick Laverty Intro 01:12 – The Origin Story 02:07 – Intro Links Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 04:41 – The importance of knowing past breaches 06:20 – The Twitter Breach (The F.U.D. train) 12:25 – The Twillio Breach 13:02 – The rise of SMISHING 25:00 – “Don't click!” 28:42 – The Cisco Breach 29:19 – MFA Fatigue 36:18 – The role of Social Engineering in these attacks 39:40 – Find us online Chris Hadnagy Twitter: @humanhacker LinkedIn: linkedin.com/in/christopherhadnagy Patrick Laverty Twitter: @plaverty9 LinkedIn: linkedin.com/in/plaverty9 39:59 – Book (and Bees) Recommendations A BEEhavioral Lesson – Christopher Hadnagy 40:45 – Wrap Up & Outro www.social-engineer.com www.innocentlivesfoundation.org
Drew was alone and invited Patrick Laverty on (lucky for you). D & P walked through Patrick's project, draft-analysis.com, to highlight some drafting facts. Is Don Sweeney actually THAT bad at drafting? How often does the first overall pick wind up being the best player available? Take a listen.If you or someone you know has a gambling problem, crisis counseling and referral services can be accessed by calling 1-800-GAMBLER (1-800-426-2537) (IL/IN/MI/NJ/PA/WV/WY), 1-800-NEXT STEP (AZ), 1-800-522-4700 (CO/NH), 888-789-7777/visit http://ccpg.org/chat (CT), 1-800-BETS OFF (IA), 1-877-770-STOP (7867) (LA), 877-8-HOPENY/text HOPENY (467369) (NY), visit OPGR.org (OR), call/text TN REDLINE 1-800-889-9789 (TN), or 1-888-532-3500 (VA).21+ (18+ WY). Physically present in AZ/CO/CT/IL/IN/IA/LA/MI/ /NJ/NY/ PA/TN/VA/WV/WY only. New customers only. Min. $5 deposit required. Eligibility restrictions apply. See http://draftkings.com/sportsbook for details.
Drew was alone and invited Patrick Laverty on (lucky for you). D & P walked through Patrick's project, draft-analysis.com, to highlight some drafting facts. Is Don Sweeney actually THAT bad at drafting? How often does the first overall pick wind up being the best player available? Take a listen. If you or someone you know has a gambling problem, crisis counseling and referral services can be accessed by calling 1-800-GAMBLER (1-800-426-2537) (IL/IN/MI/NJ/PA/WV/WY), 1-800-NEXT STEP (AZ), 1-800-522-4700 (CO/NH), 888-789-7777/visit http://ccpg.org/chat (CT), 1-800-BETS OFF (IA), 1-877-770-STOP (7867) (LA), 877-8-HOPENY/text HOPENY (467369) (NY), visit OPGR.org (OR), call/text TN REDLINE 1-800-889-9789 (TN), or 1-888-532-3500 (VA). 21+ (18+ WY). Physically present in AZ/CO/CT/IL/IN/IA/LA/MI/ /NJ/NY/ PA/TN/VA/WV/WY only. New customers only. Min. $5 deposit required. Eligibility restrictions apply. See http://draftkings.com/sportsbook for details. Learn more about your ad choices. Visit megaphone.fm/adchoices
Drew was alone and invited Patrick Laverty on (lucky for you). D & P walked through Patrick's project, draft-analysis.com, to highlight some drafting facts. Is Don Sweeney actually THAT bad at drafting? How often does the first overall pick wind up being the best player available? Take a listen. If you or someone you know has a gambling problem, crisis counseling and referral services can be accessed by calling 1-800-GAMBLER (1-800-426-2537) (IL/IN/MI/NJ/PA/WV/WY), 1-800-NEXT STEP (AZ), 1-800-522-4700 (CO/NH), 888-789-7777/visit http://ccpg.org/chat (CT), 1-800-BETS OFF (IA), 1-877-770-STOP (7867) (LA), 877-8-HOPENY/text HOPENY (467369) (NY), visit OPGR.org (OR), call/text TN REDLINE 1-800-889-9789 (TN), or 1-888-532-3500 (VA). 21+ (18+ WY). Physically present in AZ/CO/CT/IL/IN/IA/LA/MI/ /NJ/NY/ PA/TN/VA/WV/WY only. New customers only. Min. $5 deposit required. Eligibility restrictions apply. See http://draftkings.com/sportsbook for details. Learn more about your ad choices. Visit megaphone.fm/adchoices
Improving security without impeding the war fighter's mission is the topic of discussion between our host Dr. Shawn Murray, and today's guest, Patrick Laverty. Today's remarkably candid conversation reveals some high points and exciting deficiencies experienced by our two interlocutors. We hope you enjoyed this show and some insight into what is usually a closed conversation on mission-critical security for the warfighter. Visit our sponsors: BlockFrame Inc. IEEE Digital Privacy Murray Security Services
Drew tossed a link into the Twitter void and got some frequent listeners and guests to give their takes on the Pavel Zacha trade, the Bruins' free agent signings, the Bergeron and Krejci saga, and red hot takes for the 2022-23 NHL season (Patrick's was pretty cold). If you or someone you know has a gambling problem, crisis counseling and referral services can be accessed by calling 1-800-GAMBLER (1-800-426-2537) (IL/IN/MI/NJ/PA/WV/WY), 1-800-NEXT STEP (AZ), 1-800-522-4700 (CO/NH), 888-789-7777/visit http://ccpg.org/chat (CT), 1-800-BETS OFF (IA), 1-877-770-STOP (7867) (LA), 877-8-HOPENY/text HOPENY (467369) (NY), visit OPGR.org (OR), call/text TN REDLINE 1-800-889-9789 (TN), or 1-888-532-3500 (VA). 21+ (18+ WY). Physically present in AZ/CO/CT/IL/IN/IA/LA/MI/ /NJ/NY/ PA/TN/VA/WV/WY only. New customers only. Min. $5 deposit required. Eligibility restrictions apply. See http://draftkings.com/sportsbook for details.
Drew tossed a link into the Twitter void and got some frequent listeners and guests to give their takes on the Pavel Zacha trade, the Bruins' free agent signings, the Bergeron and Krejci saga, and red hot takes for the 2022-23 NHL season (Patrick's was pretty cold). If you or someone you know has a gambling problem, crisis counseling and referral services can be accessed by calling 1-800-GAMBLER (1-800-426-2537) (IL/IN/MI/NJ/PA/WV/WY), 1-800-NEXT STEP (AZ), 1-800-522-4700 (CO/NH), 888-789-7777/visit http://ccpg.org/chat (CT), 1-800-BETS OFF (IA), 1-877-770-STOP (7867) (LA), 877-8-HOPENY/text HOPENY (467369) (NY), visit OPGR.org (OR), call/text TN REDLINE 1-800-889-9789 (TN), or 1-888-532-3500 (VA). 21+ (18+ WY). Physically present in AZ/CO/CT/IL/IN/IA/LA/MI/ /NJ/NY/ PA/TN/VA/WV/WY only. New customers only. Min. $5 deposit required. Eligibility restrictions apply. See http://draftkings.com/sportsbook for details. Learn more about your ad choices. Visit megaphone.fm/adchoices
Drew tossed a link into the Twitter void and got some frequent listeners and guests to give their takes on the Pavel Zacha trade, the Bruins' free agent signings, the Bergeron and Krejci saga, and red hot takes for the 2022-23 NHL season (Patrick's was pretty cold). If you or someone you know has a gambling problem, crisis counseling and referral services can be accessed by calling 1-800-GAMBLER (1-800-426-2537) (IL/IN/MI/NJ/PA/WV/WY), 1-800-NEXT STEP (AZ), 1-800-522-4700 (CO/NH), 888-789-7777/visit http://ccpg.org/chat (CT), 1-800-BETS OFF (IA), 1-877-770-STOP (7867) (LA), 877-8-HOPENY/text HOPENY (467369) (NY), visit OPGR.org (OR), call/text TN REDLINE 1-800-889-9789 (TN), or 1-888-532-3500 (VA). 21+ (18+ WY). Physically present in AZ/CO/CT/IL/IN/IA/LA/MI/ /NJ/NY/ PA/TN/VA/WV/WY only. New customers only. Min. $5 deposit required. Eligibility restrictions apply. See http://draftkings.com/sportsbook for details. Learn more about your ad choices. Visit megaphone.fm/adchoices
Parce que… c'est l'épisode 0x151! Préambule Shameless plug COVID-19 17 mai 2022 - ISACA Section de Montréal - Les entreprises face au risque algorithmique 7 au 9 juin 2022 - FIC 2022 11 au 15 août 2022 - DEFCON 30 15 au 17 novembre 2022 European Cyber Week novembre 2022 Connected Week Angers Notes À venir Collaborateurs Nicolas-Loïc Fortin Vanessa Deschênes Patrick Laverty-Lavoie Crédits Montage audio par Intrasecure inc Locaux virtuels par Zoom
This month, Chris Hadnagy and Ryan MacDougall are joined by Patrick Laverty. Patrick is the Senior Team Lead at Social Engineer, LLC, working with an incredible team of professional social engineers. He was previously a senior penetration tester at Rapid7 and a member of the CSIRT at Akamai. He is a co-organizer of the Layer 8 Conference and is the host of the Layer 8 Podcast on social engineering and OSINT. He lives in Rhode Island with his daughter, dog and two cats. [April 18, 2022] 00:00 – Intro 00:50 – Patrick Laverty intro https://layer8conference.com 02:19 – Intro Links Social-Engineer.com Managed Voice Phishing Managed Email Phishing Adversarial Simulations Social-Engineer channel on SLACK CLUTCH innocentlivesfoundation.org 04:38 – Security Awareness in the world today 05:25 – Malicious Domain Registrations 06:58 – Protecting yourself from false domains 11:24 – CISA Alert / Shields Up 12:36 – Lowering Reporting Thresholds 13:33 – Empowering Security Information Officers 16:50 – Tabletop Exercises 19:20 – Planning for Continuity 21:09 – Beyond the Financial Effects of Ransomware 24:29 – Trying to protect the Healthcare Sector 25:27 – Backup & Recovery Process 28:38 – The source of Ransomware 30:03 – Planning for a Ransomware attack 31:51 – Why your site will be attacked 33:41 – 3 Actionable Tips 35:30 – Book Recommendations Thinking, Fast and Slow– Daniel Kahneman How to Win Friends & Influence People– Dale Carnegie Delivered from Distraction – John Ratey Fixed – Amy Herman Going Pro – Dr Tony Kern 38:20 – Wrap Up 39:18 – Outro www.social-engineer.com www.innocentlivesfoundation.org
Chris and Drew were joined by Patrick Laverty and @SpokedZ to talk some Boston Pride as they watch the Isobel Cup Final (victory lap begins in Episode 54)The quad discusses the Lindholm trade, his impact thus far, and have a lengthy debate about the term of his contract.If you or someone you know has a gambling problem, crisis counseling and referral services can be accessed by calling 1-800-GAMBLER (1-800-426-2537) (IL/IN/MI/NJ/PA/WV/WY), 1-800-NEXT STEP (AZ), 1-800-522-4700 (CO/NH), 888-789-7777/visit http://ccpg.org/chat (CT), 1-800-BETS OFF (IA), 1-877-770-STOP (7867) (LA), 877-8-HOPENY/text HOPENY (467369) (NY), visit OPGR.org (OR), call/text TN REDLINE 1-800-889-9789 (TN), or 1-888-532-3500 (VA).21+ (18+ NH/WY). Physically present in AZ/CO/CT/IL/IN/IA/LA/MI/NH/NJ/NY/OR/ PA/TN/VA/WV/WY only. Min. $5 deposit required. Eligibility restrictions apply. See http://draftkings.com/sportsbook for details.
Chris and Drew were joined by Patrick Laverty and @SpokedZ to talk some Boston Pride as they watch the Isobel Cup Final (victory lap begins in Episode 54) The quad discusses the Lindholm trade, his impact thus far, and have a lengthy debate about the term of his contract. If you or someone you know has a gambling problem, crisis counseling and referral services can be accessed by calling 1-800-GAMBLER (1-800-426-2537) (IL/IN/MI/NJ/PA/WV/WY), 1-800-NEXT STEP (AZ), 1-800-522-4700 (CO/NH), 888-789-7777/visit http://ccpg.org/chat (CT), 1-800-BETS OFF (IA), 1-877-770-STOP (7867) (LA), 877-8-HOPENY/text HOPENY (467369) (NY), visit OPGR.org (OR), call/text TN REDLINE 1-800-889-9789 (TN), or 1-888-532-3500 (VA). 21+ (18+ NH/WY). Physically present in AZ/CO/CT/IL/IN/IA/LA/MI/NH/NJ/NY/OR/ PA/TN/VA/WV/WY only. Min. $5 deposit required. Eligibility restrictions apply. See http://draftkings.com/sportsbook for details.
Chris and Drew were joined by Patrick Laverty and @SpokedZ to talk some Boston Pride as they watch the Isobel Cup Final (victory lap begins in Episode 54) The quad discusses the Lindholm trade, his impact thus far, and have a lengthy debate about the term of his contract. If you or someone you know has a gambling problem, crisis counseling and referral services can be accessed by calling 1-800-GAMBLER (1-800-426-2537) (IL/IN/MI/NJ/PA/WV/WY), 1-800-NEXT STEP (AZ), 1-800-522-4700 (CO/NH), 888-789-7777/visit http://ccpg.org/chat (CT), 1-800-BETS OFF (IA), 1-877-770-STOP (7867) (LA), 877-8-HOPENY/text HOPENY (467369) (NY), visit OPGR.org (OR), call/text TN REDLINE 1-800-889-9789 (TN), or 1-888-532-3500 (VA). 21+ (18+ NH/WY). Physically present in AZ/CO/CT/IL/IN/IA/LA/MI/NH/NJ/NY/OR/ PA/TN/VA/WV/WY only. Min. $5 deposit required. Eligibility restrictions apply. See http://draftkings.com/sportsbook for details. Learn more about your ad choices. Visit megaphone.fm/adchoices
Parce que… c'est l'épisode 0x119! Préambule Shameless plug 4 au 6 avril 2022 - Québec Numérique - SéQCure 2022 4 au 8 avril 2022 - Québec Numérique - Semaine numériqc Programmation SNQC 2022 Notes À venir Collaborateurs Nicolas-Loïc Fortin Vanessa Deschênes Patrick Laverty-Lavoie Crédits Montage audio par Intrasecure inc Locaux virtuels par Zoom
Cam, Chris and Drew have the legendary listener and close Twitter friend Patrick Laverty on the podcast to talk beer league hockey, Rhode Island, Patrick's history as a Bruins fan, and more.
Cam, Chris and Drew have the legendary listener and close Twitter friend Patrick Laverty on the podcast to talk beer league hockey, Rhode Island, Patrick's history as a Bruins fan, and more. Learn more about your ad choices. Visit megaphone.fm/adchoices
Cam, Chris and Drew have the legendary listener and close Twitter friend Patrick Laverty on the podcast to talk beer league hockey, Rhode Island, Patrick's history as a Bruins fan, and more.
Patrick Laverty shares his story how he went from a sports medicine professional to pentester and social engineer.Patrick is not only a pentester and social engineer, he is a podcast host, conference founder and coordinator._______________________GuestPatrick LavertyOn Linkedin | https://www.linkedin.com/in/plaverty9/On Twitter | https://twitter.com/plaverty9 ___________________________________HostPhillip WylieOn ITSPmagazine | https://www.itspmagazine.com/itspmagazine-podcast-radio-hosts/phillip-wylie___________________________________ResourcesLayer 8 Con: https://layer8conference.com/Layer 8 Podcast: https://layer8conference.com/the-layer-8-podcast/______________________This Episode's SponsorsBugcrowd
Patrick Laverty shares his story how he went from a sports medicine professional to pentester and social engineer.Patrick is not only a pentester and social engineer, he is a podcast host, conference founder and coordinator._______________________GuestPatrick LavertyOn Linkedin
The main organizers of the Collegiate SECTF include Temple University's CARE Lab of Professor Aunshul Rege, Rachel Bleiman and Katorah Williams, plus Patrick Laverty from Layer 8 Conference. In this episode, the team discusses the origins of the SECTF, how it works, who can compete, as well as the impressions of the competition by graduate students Rachel and Katorah. If you are a college student and would like to compete in this tournament, this is a can't miss episode!
Cam and Chris are joined by recurring guest Nick Lanciani (@lanci53) to discuss the state of a banged up Bruins blueline, debate the hottest NHL players, and push the #BruinsChuckNorris campaign (created by B&B listener Patrick Laverty (@plaverty24)).
Cam and Chris are joined by recurring guest Nick Lanciani (@lanci53) to discuss the state of a banged up Bruins blueline, debate the hottest NHL players, and push the #BruinsChuckNorris campaign (created by B&B listener Patrick Laverty (@plaverty24)). Learn more about your ad choices. Visit megaphone.fm/adchoices
Cam and Chris are joined by recurring guest Nick Lanciani (@lanci53) to discuss the state of a banged up Bruins blueline, debate the hottest NHL players, and push the #BruinsChuckNorris campaign (created by B&B listener Patrick Laverty (@plaverty24)).
Patrick Laverty created and co-organizes the Layer 8 Conference with Lea Snyder. This year will be the 3rd annual conference that solely focuses on social engineering and OSINT topics. Ori Zigindere is an offensive security professional with a background in software engineering. He works with a wide range of companies in all major industries to help them improve their security posture against day to day threats. Patrick and Ori join us today to talk about the Layer8 Conference, and WorkshopCon! To sign up for the Layer8 Conference, please visit: https://layer8conference.com/ Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://wiki.securityweekly.com/PSWEpisode648
Patrick Laverty created and co-organizes the Layer 8 Conference with Lea Snyder. This year will be the 3rd annual conference that solely focuses on social engineering and OSINT topics. Ori Zigindere is an offensive security professional with a background in software engineering. He works with a wide range of companies in all major industries to help them improve their security posture against day to day threats. Patrick and Ori join us today to talk about the Layer8 Conference, and WorkshopCon! To sign up for the Layer8 Conference, please visit: https://layer8conference.com/ Visit https://www.securityweekly.com/psw for all the latest episodes! Show Notes: https://wiki.securityweekly.com/PSWEpisode648
This week, we welcome Steven Bay, Director of Security Operations at Security On-Demand, to talk about Insider Threats! In our second segment, we welcome Patrick Laverty, Conference Organizer at Layer8 Conference, and Ori Zigindere, Co-Founder of WorkshopCon, to discuss all things Layer8 Conference and WorkshopCon! In the Security News, Zoom releases 5.0 update with security and privacy improvements, Zero-click, zero-day flaws in iOS Mail 'exploited to hijack' VIP smartphones, NSA shares list of vulnerabilities commonly exploited to plant web shells, Legions of cybersecurity volunteers rally to protect hospitals during COVID-19 crisis, & the Top 10 In-Demand Cybersecurity Jobs in the Age of Coronavirus! Show Notes: https://wiki.securityweekly.com/PSWEpisode648 To sign up for the Layer8 Conference, please visit: https://layer8conference.com/ To watch our interview with Steven Bay on Enterprise Security Weekly #170, visit: https://youtu.be/nbnSSiVUSSw Visit https://www.securityweekly.com/psw for all the latest episodes! Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter! Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
This week, we welcome Steven Bay, Director of Security Operations at Security On-Demand, to talk about Insider Threats! In our second segment, we welcome Patrick Laverty, Conference Organizer at Layer8 Conference, and Ori Zigindere, Co-Founder of WorkshopCon, to discuss all things Layer8 Conference and WorkshopCon! In the Security News, Zoom releases 5.0 update with security and privacy improvements, Zero-click, zero-day flaws in iOS Mail 'exploited to hijack' VIP smartphones, NSA shares list of vulnerabilities commonly exploited to plant web shells, Legions of cybersecurity volunteers rally to protect hospitals during COVID-19 crisis, & the Top 10 In-Demand Cybersecurity Jobs in the Age of Coronavirus! Show Notes: https://wiki.securityweekly.com/PSWEpisode648 To sign up for the Layer8 Conference, please visit: https://layer8conference.com/ To watch our interview with Steven Bay on Enterprise Security Weekly #170, visit: https://youtu.be/nbnSSiVUSSw Visit https://www.securityweekly.com/psw for all the latest episodes! Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter! Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
Patrick is a pentester for Rapid7, has done SIRT work for Akamai and was a web application developer at Brown University. He joins Paul and the crew this week for an interview! Full Show Notes: https://wiki.securityweekly.com/Episode551 Subscribe to our YouTube channel: https://www.youtube.com/securityweekly Visit our website: http://securityweekly.com Follow us on Twitter: https://www.twitter.comsecurityweekly
Patrick is a pentester for Rapid7, has done SIRT work for Akamai and was a web application developer at Brown University. He joins Paul and the crew this week for an interview! Full Show Notes: https://wiki.securityweekly.com/Episode551 Subscribe to our YouTube channel: https://www.youtube.com/securityweekly Visit our website: http://securityweekly.com Follow us on Twitter: https://www.twitter.comsecurityweekly
This week, Patrick Laverty of Rapid7 joins us for an interview! Dick Wilkins of Phoenix Technologies joins us for our second feature interview! In the news, we have updates from Flash, Pwn2Own, VMware, and more on this episode of Paul's Security Weekly! Full Show Notes: https://wiki.securityweekly.com/Episode551 Visit https://www.securityweekly.com/psw for all the latest episodes!
This week, Patrick Laverty of Rapid7 joins us for an interview! Dick Wilkins of Phoenix Technologies joins us for our second feature interview! In the news, we have updates from Flash, Pwn2Own, VMware, and more on this episode of Paul's Security Weekly! Full Show Notes: https://wiki.securityweekly.com/Episode551 Visit https://www.securityweekly.com/psw for all the latest episodes!
Kurt Baumgartner of Kaspersky Labs joins us to talk about Red October, a research paper that he co-authored, along with the other areas that he works on at Kaspersky. It's time for another Drunken Security News. Much of the gang was on the road this week so Patrick Laverty sat in with Paul and Engineer Steve for the show, plus Jack's epic beard called in via Skype from lovely Maryland. First, Paul admitted it was a stretch to bring this into a security context but he wanted to talk about an article that he found in The Economist (via Bruce Schneier) about one theory that if the US would simply be nicer to terrorists, release them from Guantanamo Bay, Cuba and stop hunting them down around the world, that they would in turn be nicer to us. Also, fewer would pop up around the world. The thinking is that jailing and killing them turns others into terrorists. So here's the leap. Can the same be said for black hat hackers? If law enforcement agencies stop prosecuting the hackers, will they be nicer and will there be fewer of them? I think we all came to the same conclusion. "Nah." Paul also found an Adam Shostack article about how attention to the tiniest details can be important to the largest degree. The example given was the vulnerability to the Death Star in the original Star Wars movie was so small and the chances of it being exploited were so remote that the Empire overlooked it, Grand Moff Tarkin even showing his arrogance shortly before his own demise. The same can be said for our systems. It might be a tiny hole and maybe you think that no one would look for it and even if they do, what are the chances they both find it and exploit it? In some cases, it can have quite dire consequences. The Empire overlooked a small vulnerability that they shouldn't have. Are you doing the same with your systems? Did we happen to mention that Security BSides Boston is May 18 at Microsoft NERD in Cambridge, MA and Security BSides Rhode Island is June 14th and 15th in Providence, RI. Good seats and good conference swag are still available. We all hope to see you there! The Onion's Twitter account was breached by the Syrian Electronic Army and they handled it a way that only The Onion can, making light of both themselves and the SEA. Additionally, possibly for the first time ever, The Onion published a non-parody post about exactly how the breach occurred. Additionally, the National Republican Congressional Committee (NRCC) web site got spam hacked/defaced with Viagra ads. The only thing we were wondering is, are we sure it was hacked and not just a convenient online pharmacy for their members? A new whitepaper was released from MIT talking about "Honeywords". The problem being solved here is creating a way for server admins to know sooner when a passwords file has been breached on a server. In addition to the correct password, this new system would add a bunch of fake passwords as well. When the attacker starts trying usernames and passwords, if they use one of the fake passwords, the server admin would be notified that someone is doing that and it is very likely that the passwords file has been breached. It's an interesting concept to ponder. Jack had an article from Dennis Fisher at Threatpost, asking the question about what's the point of blaming various people for cyberespionage if we don't have a plan to do something about it. The NSA also has its own 643 page document telling its members how to use Google to find things like Excel documents in Russian that contain the word "login". Wait, I feel like I've heard of this somewhere before. Oh yeah, that's right. Johnny Long was talking about Google Hacking at least as far back as 2007. It's just interesting some times to see things that the media gets wind of and without the slightest bit of checking, thinks something is "new".