podcast
details
.com
Print
Share
Look for any podcast host, guest or anyone
Search
Showing episodes and shows of
Trimarc Security
Shows
Redefining CyberSecurity
Making Honeypots Useful Again: Identity Security, Deception, and the Art of Detection | A Conversation with Sean Metcalf | Redefining CyberSecurity with Sean Martin
⬥GUEST⬥Sean Metcalf, Identity Security Architect at TrustedSec | On LinkedIn: https://www.linkedin.com/in/seanmmetcalf/⬥HOST⬥Host: Sean Martin, Co-Founder at ITSPmagazine and Host of Redefining CyberSecurity Podcast | On LinkedIn: https://www.linkedin.com/in/imsmartin/ | Website: https://www.seanmartin.com⬥EPISODE NOTES⬥Sean Metcalf, a frequent speaker at conferences like Black Hat, DEF CON, and RSAC, brings a sharp focus to identity security—especially within Microsoft environments like Active Directory and Entra ID. In this episode, he walks through the practical and tactical role of honeypots and deception in d...
2025-07-30
31 min
ITSPmagazine
Making Honeypots Useful Again: Identity Security, Deception, and the Art of Detection | A Conversation with Sean Metcalf | Redefining CyberSecurity with Sean Martin
⬥GUEST⬥Sean Metcalf, Identity Security Architect at TrustedSec | On LinkedIn: https://www.linkedin.com/in/seanmmetcalf/⬥HOST⬥Host: Sean Martin, Co-Founder at ITSPmagazine and Host of Redefining CyberSecurity Podcast | On LinkedIn: https://www.linkedin.com/in/imsmartin/ | Website: https://www.seanmartin.com⬥EPISODE NOTES⬥Sean Metcalf, a frequent speaker at conferences like Black Hat, DEF CON, and RSAC, brings a sharp focus to identity security—especially within Microsoft environments like Active Directory and Entra ID. In this episode, he walks through the practical and tactical role of honeypots and deception in d...
2025-07-30
31 min
Tech Unplugged
Securing Active Directory: Key Review Areas
These YouTube transcripts feature Sean Metcalf from Trimarc Security discussing critical aspects of Active Directory (AD) security. The first source, a DerbyCon talk, outlines common AD security issues, methods for detecting reconnaissance, and techniques for hardening AD components. The second source is a Trimarc webcast focused on performing self-assessments of AD security, highlighting common vulnerabilities and providing PowerShell scripts to identify them. Both emphasize proactive security measures, proper configurations, and the importance of mitigating risks associated with AD
2025-03-19
26 min
Tech Unplugged
Securing Active Directory: Key Review Areas
These YouTube transcripts feature Sean Metcalf from Trimarc Security discussing critical aspects of Active Directory (AD) security. The first source, a DerbyCon talk, outlines common AD security issues, methods for detecting reconnaissance, and techniques for hardening AD components. The second source is a Trimarc webcast focused on performing self-assessments of AD security, highlighting common vulnerabilities and providing PowerShell scripts to identify them. Both emphasize proactive security measures, proper configurations, and the importance of mitigating risks associated with AD. I put these into one podcast where you can listen to Securing your enterprise environment
2025-03-19
26 min
Phillip Wylie Show
Sean Metcalf: Active Directory Security
Summary In this episode of the Phillip Wylie Show, Sean Metcalf, an expert in Active Directory security, discusses his journey into cybersecurity, the evolution of Active Directory and Azure AD, and the common mistakes organizations make in cloud security. He emphasizes the importance of security assessments over penetration testing and shares insights into Trimarc's unique approach to security assessments. Sean also highlights the significance of scripting in security roles and discusses the future of Active Directory in hybrid environments. The episode concludes with information about Trimarc's new product, Trimarc Vision, aimed at enhancing Active Directory s...
2024-11-19
43 min
Phillip Wylie Show
Sean Metcalf: Active Directory Security
Summary In this episode of the Phillip Wylie Show, Sean Metcalf, an expert in Active Directory security, discusses his journey into cybersecurity, the evolution of Active Directory and Azure AD, and the common mistakes organizations make in cloud security. He emphasizes the importance of security assessments over penetration testing and shares insights into Trimarc's unique approach to security assessments. Sean also highlights the significance of scripting in security roles and discusses the future of Active Directory in hybrid environments. The episode concludes with information about Trimarc's new product, Trimarc Vision, aimed at enhancing Active Directory s...
2024-11-19
43 min
Trimarc Happy Hour
Microsoft Enterprise Access Model
Jake is joined by James Spencer, Jeff McJunkin, and @MySnozzBerries to talk MEAB.
2024-11-09
1h 31
Trimarc Happy Hour
Windows Recall
BetoOnSecurity joins us to talk Windows Recall
2024-11-08
54 min
Trimarc Happy Hour
BlueTeamCon 2024 Recap
We convened a counsel of curmudgeons to recap their experiences at this years BlueTeamCon.
2024-11-05
49 min
Trimarc Happy Hour
Identity Protection
Danny tries to steal Brandon's identity ONE LITTLE TIME and now we gotta do a whole episode on identity protection. Sheesh.
2024-11-05
57 min
Trimarc Happy Hour
Industry Burnout Part II
An evergreen topic, our panel discusses the causes of and mitigations for security burnout.
2024-11-05
54 min
Trimarc Happy Hour
DEF CON 32 Debrief
Brandon gives us take on his first ever trip to DEF CON. Danny is still hung over. Jake just smiles.
2024-11-05
55 min
Trimarc Happy Hour
Security Horror Stories
An all star cast joins the show this week to really lean into the blood and guts that is cyber security.
2024-11-05
57 min
Trimarc Happy Hour
Ray Redacted
There's not a single word we could type here to describe what an episode with Ray Redacted is like. You just need to experience it for yourself.
2024-11-05
53 min
Trimarc Happy Hour
Sober In Cyber
Jen VanAntwerp, creator of the non-profit group Sober In Cyber, joins us to talk about her events at DEF CON and many other hacker conferences around the country.
2024-11-05
49 min
Trimarc Happy Hour
Everything Is Askew
Chaos reigned this week. Nobody had a plan, including the local power grid at Danny's house, but Bill Sempf and John Askew came along for the ride.
2024-11-05
53 min
Trimarc Happy Hour
Nathan McNulty
Our guest today is security solutions architect Nathan McNulty
2024-11-05
1h 06
Trimarc Happy Hour
Jeff McJunkin
Destroying Technical Debt with Jeff McJunkin
2024-11-05
1h 01
Trimarc Happy Hour
Hacks4Pancakes
Technical Director for Incident Response at Dragos Inc. and everyone's favorite hacker Lesley "Hacks4Pancakes" Carhart.
2024-11-05
53 min
Trimarc Happy Hour
LitMoose Attacks Vol. 2
The undisputed Queen of Incident Response returns to Happy Hour.
2024-11-05
58 min
Trimarc Happy Hour
Bill Sempf
(Mis)adventures in AppSec with the great Bill Sempf. For more stuff from Bill, check out his podcast on LinkedIn. https://www.linkedin.com/showcase/application-security-podcast/posts/?feedView=all
2024-11-05
58 min
Trimarc Happy Hour
Backdoors and Breaches
After a year of development, the Trimarc expansion pack for Backdoors and Breaches is out and available to purchase/get a free deck at any conference we attend. Today our game-master Blake Regan guides us through the game-play. https://spearphish-general-store.myshopify.com/collections/backdoors-breaches-incident-response-card-game/products/backdoors-breaches-trimarc-expansion-deck-v1
2024-11-05
1h 08
Trimarc Happy Hour
Wild West Hackin' Fest 2024
Victory snatched from the traditionally very open arms of defeat where Danny is concerned. Video is a little wobbly from lack of internet but we made it work. Interviews live on site from Deadwood, SD.
2024-11-05
56 min
Trimarc Happy Hour
BiaSciLab
Girls Who Hack, DC Next Gen, Election Voting Security. Not a bad resume for someone about to turn just 18 years old. BiaSciLab is part of the latest crop of young hackers blazing new trails in the security industry.
2024-11-05
53 min
Trimarc Happy Hour
Trimarc's Road To DEF CON 32 - Ada Zebra - The DEF CON Hotline
Ada Zebra is the creator and show runner of DEF CON's Hotline. A place you can call when you're feeling anxious, unsafe, or otherwise need a friendly ear.
2024-07-31
56 min
Trimarc Happy Hour
WHAT'S IN THE BAG?!
Shaking some dust off as we return for Season 2, we take a dive into one of the many conference swag bags we get throughout any given year. What's worthwhile and what goes straight into the trash? Find out in this episode of WHAT'S IN THE BAG!?
2024-03-01
57 min
Trimarc Happy Hour
S2Ep4 - Jack Rhysider
Creator and host of the wildly popular hacker podcast Darknet Diaries, Jack Rhysider, joins us for an hour long chat on what it takes to take a small idea and turn it into an empire.
2024-03-01
1h 07
Trimarc Happy Hour
Trimarc and TrustedSec: Joint webcast with Dave Kennedy and Sean Metcalf.
Join Dave Kennedy, CEO of TrustedSec, and Trimarc Founder Sean Metcalf as they talk about the security industry, Trimarc Vision, and spoil 4 movies for everyone in the first 10 minutes. Enjoy! TrimarcVision.com
2023-12-01
1h 09
Trimarc Happy Hour
Ed Miro
Speaker, Writer, Teacher, Ex-Criminal, Ed Miro is exactly the kind of person you bring home to meet and or threaten the parents.
2023-11-10
57 min
Trimarc Happy Hour
Paul Asadoorian: Renaissance Hacker
Before there were thousands of security focused podcasts, including the one you're about to listen to, there was Paul Dot Com. A pioneer of InfoSec content creation, he took a simple idea of just shooting the breeze with his friends and grew it into an empire. To top it all off, he's still a hell of a nice guy.
2023-10-13
55 min
Trimarc Happy Hour
The Magnificent Devon Kerr
Devon Kerr has been around for a very long time. From his beginnings as one of the premier Incident Responders of our industry to becoming founder and mission-owner of Elastic Labs. A custodian of secret histories, we gather round the dumpster fire that is Happy Hour and pump him for as much wisdom as we can.
2023-10-13
59 min
Trimarc Happy Hour
Justin Bollinger and The Wrath of The Twitter CoC
Let this day live in infamy. Listen in real time as Danny gets kicked off Twitter and only realizes it as we go live with our guest, TrustedSec Principal Consultant and Pentester, Justin Bollinger. And to think Justin was worried we wouldn't have anything to talk about.
2023-10-13
59 min
Phillip Wylie Show
Powerlifting and PowerShell: A Discussion with Jake Hildreth
About The Guest: Jake is a cybersecurity professional with a background in system administration. He has a deep understanding of Active Directory security and is currently the Active Directory Security Assessment Service Lead at Trimarc. Jake is also the head developer of the open-source tool Locksmith, which focuses on Active Directory Certificate Services misconfigurations. Summary: Jake shares his hacker origin story, starting from his early days tinkering with computers and discovering the world of IRC. He talks about his transition from a sysadmin role to focusing on security and his journey to becoming...
2023-09-08
41 min
Phillip Wylie Show
A Discussion with Active Directory Security Consultant Brandon Colley
About The Guest: Brandon Colley is a cybersecurity professional who specializes in Active Directory security. He has a background in IT operations and has worked in various roles, including help desk support, desktop support, and server administration. Brandon currently works for Trimarc Security, a well-known Active Directory security company. Summary: In this episode, Brandon discusses his journey from IT operations to his current role in Active Directory security. He shares how he discovered his passion for security and the steps he took to specialize in Active Directory. Brandon also talks about the importance...
2023-08-22
32 min
Trimarc Happy Hour
And On The 5th Day, Steve D3 Said LET THERE BE CONTENT.
We really didn't have a plan going into this episode but when you're hanging with Steve Ragan, the plans make themselves. We ended discussing how to write/create content even if you've never done it before or think your thing isn't worth it. Enjoy! Music by https://www.bensound.com/free-music-for-videos
2023-08-04
59 min
Trimarc Happy Hour
Webcast: Even The Great Wall Ends At The Sea: Pitfalls Of Ever Expanding Security Boundaries
Security boundaries are tricky things. Most are hybrid on-prem & cloud with variables you may not have considered. In this webcast, Scott Blake, Director of Services for Trimarc, discusses the last 20 years of security boundary building and what the next 20 might look like. Music by https://www.bensound.com/free-music-for-videos
2023-08-04
52 min
Trimarc Happy Hour
Road to DEF CON 31-Part V - Russ Rogers
Once upon a time (DEF CON 6 aka 1998) in a land far, far away (Las Vegas), a legend appeared and helped shape the next decade of DEF CON. His name is Russ Rogers aka Speedrussr and he's an amazing story teller. Come get a healthy dose of DEF CON history so potent, you'll get Con Flu just listening to it. Music by https://www.bensound.com/free-music-for-videos
2023-08-04
58 min
Trimarc Happy Hour
Lord of The CTF - ippsec
No hacker in the modern age has done more to help both the uninitiated noob and the seasoned expert learn by doing than the man called ippsec. Those are our words, not his, because he's also more humble than a man of his accomplishment should have to be. Enjoy! https://t.co/55HUMPboLy Music by https://www.bensound.com/free-music-for-videos
2023-08-04
1h 03
Trimarc Happy Hour
Road to DEF CON 31-Part IV- Social Engineering Community
Our old friends Snow and JC stop by for an early evening chat about their SE Community Village at DEF CON. What's it like in "The Booth"? Can you do a cold call in 5 minutes and reach success? When is the SEC party this year? All those answers and more lie within this episode. Music by https://www.bensound.com/free-music-for-videos
2023-08-01
42 min
Trimarc Happy Hour
Road to DEF CON 31-Part III - Packet Hacking Village
The Packet Hacking Village, home of the Wall of Sheep, is the oldest village within DEF CON. Showrunners Riverside and Investigator Chic grace us with some stories about the village, where it started, what to expect this year, and how they see it evolving into the future.
2023-07-31
53 min
Trimarc Happy Hour
Road to DEF CON 31-Part II-The DEF CON Hotline
Ada Zebra is the founder of the DEF CON hotline. The Hotline is there when you need it. Feel unsafe? Someone acting problematic you’d like us to know about? Just need someone to speak w/ cuz you hit an anxious patch? Call the hotline during DC at 725-222-0934
2023-07-31
53 min
Trimarc Happy Hour
Road to DEF CON 31-Part I-Vegas for 1st Timers
No guests today, they all dodged our calls. SO, we talk about what to expect when you're expecting to head to Hacker Summer Camp. Black Hat, BSides LV, and DEF CON are fast approaching. Lets us help prepare you.
2023-07-14
57 min
Trimarc Happy Hour
Wylie Coyote
Teacher, author, podcaster, bear combat expert. His name? Phil Wylie. His mission? To suffer the fools of the Trimarc Happy Hour and remind us that we'll never be as cool as him.
2023-07-14
53 min
Trimarc Happy Hour
July Newsletter In Review
Every month Trimarc ships a monthly newsletter, filled with updates on we're doing as a company and actual, useful news from around the industry. We figured, why just send and forget when we can actually cover all the stuff we spend so much time gathering for everyone. From our events, to our blogs, to general news, it's got something for everyone. Sign up at TrimarcSecurity.com. Enjoy!
2023-07-14
1h 02
Blue Security
Common M365 Misconfigurations
On this week's episode, Adam and Andy talk through Trimarc Security's blog on M365 security misconfigurations. Surprisingly, there are a few that are still being seen through security assessments like missing MFA and legacy authentication. Listen in to hear the top misconfigurations for M365! ------------------------------------------- Youtube Video Link: https://youtu.be/30luEGO-N7E ------------------------------------------- Documentation: https://www.hub.trimarcsecurity.com/post/common-azure-ad-microsoft-365-m365-security-misconfigurations https://learn.microsoft.com/en-us/azure/active-directory/roles/security-emergency-access ---------------------- Contact Us: Website: https://bluesecuritypod.com Twitter: https://twitter.com/bluesecuritypod Linkedin: https://www.linkedin...
2023-07-10
26 min
Trimarc Happy Hour
Wrath Of The Demo Gods
Danny is off...somewhere...so it's up to Dev, Jim, and Brandon to hold down the fort and have a nice, quite, afternoon on stream. OR Brandon can tempt the Demo Gods wrath and do some live stunting. I wonder which they chose. Note: This is def more a visual episode, visit Youtube.com/@TrimarcSecurity for the full video and all its awkward pauses. Music by https://www.bensound.com/free-music-for-videos
2023-07-06
1h 01
Trimarc Happy Hour
Put Your Raccoon Hands In The Air
The delightful and effervescent Stacy Dunn (https://twitter.com/myraccoonhands) hangs out with us on a Friday as we talk about the more human and creative elements in tech and information security. We talked about so much positive stuff, we didn't even get to talking about burnout. That's next time. Hooray. Music by https://www.bensound.com/free-music-for-videos
2023-07-06
59 min
Trimarc Happy Hour
Saint Vincent
One of the most fun conversations we've had on the show, https://twitter.com/iamv1nc3nt joins us to talk about small business pentesting and the pitfalls that come along with it. Also, Danny dances to music nobody can hear. Which pretty much sums up his entire life. Music by https://www.bensound.com/free-music-for-videos
2023-07-06
59 min
Trimarc Happy Hour
Webcast: Ask Me Anything - Active Directory & Azure AD Part II
Our first AD and Azure AD webcast was such a hit, we couldn't wait to do a Part II. Enjoy!02:13What aspects of active directory are blind spots with Windows Event Logging?09:50Is there a script to detect what accounts are vulnerable to kerberroasting?14:08Is the recommendation to enable SMB signing realistic for a large organization?21:10How do you handle multiple vulnerabilities during a Trimarc Assessment?29:26Is it time to migrate off of On Prem AD and move solely into Azure AD?36:23How do you measure risk within Azure AD?44:00What is the value of implementing Read Only Domain Controllers...
2023-07-06
1h 02
Trimarc Happy Hour
Buggin' out w/ Casey John Ellis
Founder of Bugcrowd.com and one of Australia's favorite native sons, Casey John Ellis hangs out on Happy Hour to talk all things bugs. Software, not the legion of lethal things that the Land of Oz holds within its borders. Music by https://www.bensound.com/free-music-for-videos
2023-06-22
1h 03
Trimarc Happy Hour
Webcast: Saving The Marriage-AD & vSphere Happily Ever After
The nature of virtual security as it stands today is that rather than decreasing tech debt and staying on the bleeding edge of secure virtualization, too often enterprises are just trying to outrun the bugs of old standards. Virtualization security today is where Active Directory security was a decade ago, making easy mistakes AD had long ago already improved upon in their development lifecycle. This webinar will provide practical solutions to help security professionals and CTOs protect their virtual infrastructure against potential threats.Intro00:09:50VMWare is secure out-of-box00:24:09None of the traditional security practices apply00:28:57Offloading of virtual security00:33:24Story...
2023-06-22
1h 07
Trimarc Happy Hour
Call Your Locksmith
Come for the public shaming of Danny picking the absolute wrong intro song for the crowd, stay for a chat about a new open source tool, Locksmith. A tiny tool to identify and remediate common misconfigurations in Active Directory Certificate Services.Github.com/Trimarc Music by https://www.bensound.com/free-music-for-videos
2023-05-31
1h 02
Trimarc Happy Hour
The Dark Operator
There's absolutely nothing to be typed in this description box that will be an adequate intro for Carlos Perez. The man is a legend and one of the sweetest humans we've ever had the pleasure of speaking to. We cover a lot of ground in this episode, just dive in. darkoperator.comMusic by https://www.bensound.com/free-music-for-videos
2023-05-31
1h 33
Trimarc Happy Hour
BSides Charm CTF Redux
In this episode we revisit the Trimarc Crypto Challenge, an online CTF created by Trimarc and played by everyone at BSides Charm 2023. Joining us are players Luker, TVicory, and Xamaracer. All Trimarc Challenges are available for play on Challenge.TrimarcSecurity.com Music by https://www.bensound.com/free-music-for-videos
2023-05-11
55 min
Trimarc Happy Hour
SCCM is coming for you.
Once we accept that all technology is broken and it's coming for us, we can make peace with our eminent demise and start to fight back. In this episode, Security Consultant and Pentester at Optiv, Garrett Foster talks SCCM and how it could be used as a means to compromise your environment...and probably steal your amazon packages from your porch. We bet it doesn't put it shopping carts back in the corral. https://twitter.com/garrfoster
2023-05-05
58 min
Trimarc Happy Hour
Insecurities In Security
Friend of the show Beto joins for a conversation about Admin Insecurities and then we move into more conversation about security careers and advice. Music by https://www.bensound.com/free-music-for-videos
2023-04-15
58 min
Trimarc Happy Hour
Sneaky Active Directory Persistence
An extra special treat this week as the usual crew is joined by Trimarc Offensive Lead and Security Weekly host Tyler Robinson. Also in attendance, superstar Trimarc consultant Jim Sykora. We talk about the sneaky AD persistence tricks that Sean Metcalf has spoken about for the past decade and how they're still relevant in 2023.Music by https://www.bensound.com/free-music-for-videos
2023-04-15
55 min
Trimarc Happy Hour
IntelligenceX
IntelligenceX is a subscription based intel service. Recently, they voluntarily reported one of their users to the FBI along with that users data. Did they do it in good faith or did they get insulted online and try to settle a score? We're gonna talk about it.Music by https://www.bensound.com/free-music-for-videos
2023-04-15
58 min
Trimarc Happy Hour
Dragon Siege
It's Danny's turn to be off radar so Brandon takes lead with the guys from Red Siege hanging out for commentary . Red team stories, blue team stories, attacker trade-craft. We have a little something for everyone. Enjoy!Music by https://www.bensound.com/free-music-for-videos
2023-04-15
54 min
Trimarc Happy Hour
Employment Blues
Dev was out doing something shady this week so it's just Danny, Brandon, and Jake talking how best to weather these uncertain times when it comes to your career. We gave some tips for staying safe, staying sane, and staying ahead of the layoff curve.Music by https://www.bensound.com/free-music-for-videos
2023-04-15
58 min
Trimarc Happy Hour
Hacking Demystified - Episode 3 - Brandon from Red Siege
We wrap up this first series on taking the WTF out of hacking with our friend Brandon from Red Siege.Music by https://www.bensound.com/free-music-for-videos
2023-04-15
45 min
Trimarc Happy Hour
Hacking Demystified - Episode 2 - Dave Kennedy
We continue our series on demystifying the ancient art of writing scripts and watching them fail helplessly. Joining us is founder/CEO of Trusted Sec and Binary Defense, Dave Kennedy.Music by https://www.bensound.com/free-music-for-videos
2023-04-15
1h 04
Trimarc Happy Hour
LitMoose Attack!
We don't set a time limit whenever LitMoose pays us a visit. She's forgotten more about incident response than most will ever know. Listen as we discuss everything from NSM best practices to why your grandmother has smarter password policies than some enterprises. Enjoy!Music by https://www.bensound.com/free-music-for-videos
2023-03-29
1h 07
Trimarc Happy Hour
Accidental CISO
From anonymous advice account to a blossoming consulting brand, AC gets into the finer details of making a go of the infosec industry as an entrepreneur.Music by https://www.bensound.com/free-music-for-videos
2023-03-14
59 min
Trimarc Happy Hour
Hacking Demystified - Episode 1
If we left our understanding of hacking up to Hollywood and news pundits, you'd swear every hacker graduated from Hogwarts School of Cyber Spells. Skills impossible to grasp as Muggles. In the first part of this series, we take the mystery out of hacking and lay a baseline for what it really takes to hack the planet. More MAN pages, less finger snapping.Music by https://www.bensound.com/free-music-for-videos
2023-01-29
39 min
Trimarc Happy Hour
Trimarc Live at Shmoocon 2023 - Part 2 - Whitney Merrill
Part 2 of our Shmoocast finds us chatting with Privacy Expert Whitney Merrill, Security Weekly heartthrob Tyler Robinson, and Trimarc Consultant Thomas Hutchison.Music by https://www.bensound.com/free-music-for-videos
2023-01-28
44 min
Trimarc Happy Hour
Trimarc Live at Shmoocon 2023 - Part 1 - Bill Pollock
What an honor to talk to such a legend in the hacker community. We pumped Bill for all the information about publishing that we could get in an hour including not only how to start writing that book you've wanted to write but also how to get it to No Starch's front door. To find more about publishing with No Starch visit: https://nostarch.com/writeforusMusic by https://www.bensound.com/free-music-for-videos
2023-01-28
29 min
Trimarc Happy Hour
Security Horror Stories w/ Amanda Berlin
Joining the Trimarc team to talk bloody disgusting security nightmares is Amanda Berlin, Lead Incident Detection Engineer at Blumira. blumira.com
2023-01-28
48 min
Trimarc Happy Hour
Trimarc Security - Ask Us Anything
You asked, we answered. Covering questions given by our Twitter followers and questions asked live in Twitch Chat.10:13 - Origin Stories23:43 - Can you ever fully untangle horrible GPO's?42:20 - Why is bad that Domain Admins is a member of all machines Local Admin group?Music by https://www.bensound.com/free-music-for-videos
2023-01-28
56 min
Blue Security
Active Directory Security Tips
This week, Adam and Andy talk about some tips on securing Active Directory. This was inspired by a session led by Trimarc Security at The Experts Conference. ------------------------------------------- Youtube Video Link: https://youtu.be/7HQZQh-UzmQ ------------------------------------------- Documentation: https://www.trimarcsecurity.com/ https://www.quest.com/the-experts-conference/ https://www.hub.trimarcsecurity.com/post/ten-ways-to-improve-ad-security-quickly ------------------------------------------- Contact Us: Website: http://bluesecuritypod.com Twitter: https://twitter.com/bluesecuritypod Linkedin: https://www.linkedin.com/company/bluesecpod Youtube...
2022-10-03
28 min
Security Weekly Podcast Network (Audio)
ESW #288 - Paddy Harrington, Sean Metcalf
Enterprise browsers are a new addition into the endpoint security market. Combining enhanced features not in the existing browsers, with centralized reporting and controls, they're promising to bring a better experience to the users and a more secure delivery of applications to the companies who use them. What's real, what's "vision", and what makes them different than all the other solutions that promise to "secure the browsing experience". In the Enterprise Security News for this week: Funding rounds are back!, Bitwarden rasies $100M for password management Cymulate raises $70M, and a ton more Series A, S...
2022-09-16
2h 08
Enterprise Security Weekly (Audio)
ESW #288 - Paddy Harrington, Sean Metcalf
Enterprise browsers are a new addition into the endpoint security market. Combining enhanced features not in the existing browsers, with centralized reporting and controls, they're promising to bring a better experience to the users and a more secure delivery of applications to the companies who use them. What's real, what's "vision", and what makes them different than all the other solutions that promise to "secure the browsing experience". In the Enterprise Security News for this week: Funding rounds are back!, Bitwarden rasies $100M for password management Cymulate raises $70M, and a ton more Series A, S...
2022-09-16
2h 08
Enterprise Security Weekly (Video)
Microsoft Identity Security Issues - Sean Metcalf - ESW #288
Attackers have been targeting Active Directory for years and more recently set their sights on Azure AD & Microsoft Office 365. There are ways to tighten up these platforms beyond the default configuration and greatly improve the security posture. Segment Resources: Trimarc Webcast on how to quickly level up Active Directory security: https://www.hub.trimarcsecurity.com/post/webcast-top-10-ways-to-improve-active-directory-security-quickly Performing your own Active Directory Security Review - article and PowerShell tool: https://www.hub.trimarcsecurity.com/post/securing-active-directory-performing-an-active-directory-security-review Trimarc Content Hub: https://hub.trimarcsecurity.com Visit https://www.s...
2022-09-16
46 min
Paul's Security Weekly (Audio)
PSW #735 - Sean Metcalf & Jay Beale
This week, we start the show off with an interview Sean Metcalf, the Founder & CTO of Trimarc, where we talk "Active Directory, Azure AD, & Okta Oh My!" An interview featuring featuring Jay Beale, the CEO of InGuardians, about Kubernetes & Container security! Finally, in the Security News for this week: Ransomeware that was a breeze, getting an eyeful while charging your electric vehicle, scanning for secrets, find my iphone is useful, WTF Apple moments and why I run Linux, Wyze is not very wise, stopping teen hackers, and ranking endpoint detection! All that and more, on this episode of Paul's...
2022-04-07
3h 25
Let's Talk About (Secur)IT
The Intriguing World of Red Teaming: Offensive Security with Tyler Robinson
Tyler Robinson is an offensive red team expert, keynote speaker, Managing Director of Offensive Security & Research at Trimarc, and the Founder of Dark Element. He is a cybersecurity expert who shares his experiences from phone freaking to administering malicious food drives. Philip and Tyler discuss his career, his views on cybersecurity trainings, and how he hacks in his personal life. You can find Tyler on LinkedIn and on the Security Weekly podcast.
2022-02-15
58 min
Enterprise Security Weekly (Audio)
The Easy Button - ESW #212
This week in the Enterprise security News, Two data security companies merge, Veracode's products are now available in the AWS Marketplace, Zscaler launches a program for organizations dealing with the SolarWinds attack, SolarWinds is being sued in a class action lawsuit, funding announcements from Weaveworks, iBoss and Venafi. Chris Brown, Senior Director of Data Security at Imperva joins us to discuss the state of data security, Sean Metcalf, Founder and CTO at Trimarc Security and Tyler Robinson, Security Weekly host and Offensive Security Director at Trimarc Security will discuss the Solar Winds attack! Show Notes: h...
2021-01-08
1h 28
Paul's Security Weekly (Audio)
Balance of Power - PSW #642
This week, we welcome back Sean Metcalf, Founder and CTO at Trimarc, to discuss Azure AD & Office 365 Security, including a breakdown of Microsoft's security offerings and recommendations for cloud migrations for Active Directory! In the second segment, we welcome Mark Cooper, President and Founder of PKI Solutions, to talk about how SHAKEN/STIR and PKI will end the global robocall problem! In the Security News, Shark Tank Star Corcoran Loses $400K in Email Scam, Backdoor malware is being spread through fake security certificate alerts, Venezuela Power outage knocked out part of the internet connectivity, Experts warn of mass scans...
2020-03-08
3h 31
BrakeSec Education Podcast
2019-016-Conference announcement, and password spray defense
Agenda: Announce the conference CFP: up soon CFW: up soon Campers: Friday night/Saturday night Like "toorcamp", but if it sucks, you can drive home… :D Limiting tickets, looking for sponsors To support the conference and future initiatives: "Infosec Education Foundation" 501c3 non-profit (we are working on the charity part) www.infoseccampout.com Password spraying https://github.com/dafthack/DomainPasswordSpray Stories: https...
2019-04-29
46 min
DEF CON 24 [Video and Slides] Speeches from the Hacker Convention
Sean Metcalf - Beyond the MCSE: Red Teaming Active Directory
Materials: https://media.defcon.org/DEF CON 24/DEF CON 24 presentations/DEFCON-24-Sean-Metcalf-Beyond-The-MCSE-Red-Teaming-Active-Directory-UPDATED.pdf Beyond the MCSE: Red Teaming Active Directory Sean Metcalf Founder & Security Principal, Trimarc Active Directory (AD) is leveraged by 95% of the Fortune 1000 companies for its directory, authentication, and management capabilities, so why do red teams barely scratch the surface when it comes to leveraging the data it contains? This talk skips over the standard intro to Active Directory fluff and dives right into the compelling offensive information useful to a Red Teamer, such as quickly identifying target systems and accounts. AD...
2016-09-26
00 min
DEF CON 24 [Audio] Speeches from the Hacker Convention
Sean Metcalf - Beyond the MCSE: Red Teaming Active Directory
Materials: https://media.defcon.org/DEF CON 24/DEF CON 24 presentations/DEFCON-24-Sean-Metcalf-Beyond-The-MCSE-Red-Teaming-Active-Directory-UPDATED.pdf Beyond the MCSE: Red Teaming Active Directory Sean Metcalf Founder & Security Principal, Trimarc Active Directory (AD) is leveraged by 95% of the Fortune 1000 companies for its directory, authentication, and management capabilities, so why do red teams barely scratch the surface when it comes to leveraging the data it contains? This talk skips over the standard intro to Active Directory fluff and dives right into the compelling offensive information useful to a Red Teamer, such as quickly identifying target systems and accounts. AD...
2016-09-26
00 min