Secure AF - A Cybersecurity Podcast
Think like a hacker. Defend like a pro.
Welcome to the Secure AF Cybersecurity Podcast — your tactical edge in the ever-evolving cyber battlefield. Hosted by industry veterans including Donovan Farrow and Jonathan Kimmitt, this podcast dives deep into real-world infosec challenges, red team tactics, blue team strategies, and the latest tools shaping the cybersecurity landscape.
Whether you're a seasoned pentester, a SOC analyst, or just breaking into the field, you'll find actionable insights, expert interviews, and unfiltered discussions with Alias team members and top-tier guests from across the cybersecurity spectrum.
Stay sharp. Stay informed. Stay Secure AF.
Episodes
178 episodes
EP. 61 - Hackers Hacking Hackers: ShinyHunters Turns Cl0p Into the Victim
Podcast Alert! This week on The SOC Brief, we dive into one of the most ironic cybercrime stories of the year. The notorious Cl0p ransomware gang, known for targeting organizations worldwide, reportedly found itself on the receiving end of a br...
EP. 60 - BlueMoon: When the Patch Becomes the Exploit Roadmap
Patches are meant to strengthen security, but they can also give attackers valuable clues. In this episode, we explore how threat actors analyze updates, reverse-engineer fixes, and weaponize vulnerabilities before organizations have time to pa...
Seccon: 2026
SECCON may be over, but the conversations are just getting started. Join us as we recap this year's conference, share key takeaways, favorite moments, and the cybersecurity trends that had everyone talking. Tune in now! 🔐#SECCON #Cyberse...
When Your RMM Becomes the Target – The N-able Zero-Day
When your trusted RMM platform becomes the target, the consequences can ripple across thousands of systems. In this episode, we break down the N-able Zero-Day, examine how attackers exploit vulnerabilities in remote management tools, and...
Operation Security: How to keep your family safe when posting about them.
In a world where our lives are increasingly digital, protecting your family's privacy has never been more important. Join us as we dive into OPSEC (Operational Security), practical online safety tips, and simple strategies to reduce your digita...
How Defenders Can Secure Enterprise AI Before Attackers Find the Gaps
In this episode, we explore the hidden risks of enterprise AI and the strategies organizations can use to close security gaps before attackers exploit them.#EnterpriseAI
FalconFlank: When Your EDR Becomes the Attack Surface.
🎙️ New Episode Alert: FalconFlank: When Your EDR Becomes the Attack SurfaceEDR solutions are designed to protect organizations from modern threats, but what happens when attackers target the very tools meant to stop them? Join us ...
Defcon 2026
A recap of DEFCON 2026 featuring the Latest in cybersecurity, hacking, AI, and digital defense. Don't miss the highlights from one of the world's most influential security conferences.
Akira Ransomware Uses Safe Mode to Blind EDR: Lessons for Defenders
Akira ransomware operators have demonstrated how abusing Windows Safe Mode can effectively disable or bypass endpoint detection and response (EDR) tools, underscoring the need for defenders to harden recovery environments, monitor Safe Mode act...
Windows BlueHammer Flaw Now Actively Exploited by Ransomware Gangs
Ransomware operators are leveraging the BlueHammer privilege escalation flaw to gain SYSTEM-level access and disable security controls. Get the latest insights and response recommendations.
FortiBleed Attacks: Turning Fortinet Firewalls into Credential Stealers
FortiBleed is turning perimeter defenses into attack infrastructure. In this episode, we unpack how adversaries exploit FortiOS vulnerabilities, harvest credentials directly from firewalls, and pivot deeper ...
Arch Linux AUR Compromise – Supply Chain Risks in the Open Source World
This #SOCBrief episode explores a recent Arch Linux AUR supply chain compromise, where malicious community packages were used to steal credentials and gain persistence. It highlights the risks of third-party reposito...
Qilin Ransomware Exploiting VPN Zero-Days: What SOCs Need to Do Now
A single unpatched VPN could be all it takes. Qilin ransomware is actively exploiting VPN zero-days to breach networks and accelerate ransomware deployment. We walk through the tactics, the real risk to your organiza...
You're Probably Not Hacked, You're Being Tracked
You probably haven’t been hacked, you’ve been tracked. This episode breaks down how ad tech, mobile apps, and data brokers create massive behavioral profiles without ever touching your phone’s security. Learn how tracking r...
The SOC Brief Turns One 🎂 Insights, Stories & Lessons Learned
It’s our 1-year anniversary! 🎂 From bite-sized cyber insights to growing a passionate listener base, this episode reflects on the journey, the challenges, and the wins along the way. Expect laughs, lessons, and behind-the-sce...
Kali365 Phishing-as-a-Service: FBI Warns of New M365 Credential Theft Tool
The FBI is warning about Kali365, a new phishing‑as‑a‑service tool designed to steal Microsoft 365 credentials and enable account takeovers at scale. In this episode, we break down how it works, why it’s so effective, and what y...
Incident Response 101: What to Do When You’re Under Attack
What actually happens when a company gets hacked?In this episode, we break down real-world incident response, from initial access and ransomware tactics to forensic investigation and common mistakes that make things worse. If your organ...
First Known AI-Powered Zero-Day Exploit: What SOCs Need to Know 🤖
In this episode of the #SOCBrief, we dive into the first confirmed case of an AI-powered zero-day exploit. With attackers leveraging AI to discover vulnerabilities, generate exploit code, and bypass defenses faster than ever, th...
ShinyHunters Breach of Instructure Canvas LMS 📚✏️: Lessons for SOCs on Third-Party Vendor Risks
In this episode of the #SOCBrief, we break down the ShinyHunters breach of Instructure’s Canvas LMS and what it means for security teams everywhere. From exploiting a lesser-monitored service to exfiltrating millions...
Canvas Breach Breakdown: What 9,000+ Outages Teach Us About SaaS Risk
When the Canvas LMS went down, thousands of institutions came to a halt, right in the middle of finals. In this episode, we break down what really happened, what data may have been exposed, and why this incident is a wake-up cal...
MuddyWater’s Ransomware Decoy: Iranian APTs Hiding Espionage in Plain Sight
MuddyWater is blurring the line between ransomware and espionage... using Chaos ransomware as a decoy to distract defenders while quietly stealing data and maintaining persistence. In this episode, we break down how ...
Qilin Ransomware’s EDR Killer DLL – How Attackers Are Subverting Defenses
Qilin ransomware is deploying a malicious DLL to disable EDR tools before encryption begins. In this #SOCBrief, we break down how the attack works, what to look for, and how defenders can respond.
AI’s Inflection Point: From Productivity Tool to Existential Risk
Artificial intelligence is evolving faster than most organizations, and regulators, are prepared for. In this episode of the #SecureAFPodcast, we sit down with Chris Hood, a veteran technologist and financial industry leader, to...