logo
episode-header-image
Apr 2024
40m 54s

PP008: Dishin’ Up Cloud SLAW (Security L...

Packet Pushers
About this episode
Learning cloud security can be daunting for experienced network engineers, much less complete newbies. That’s why Rich Mogull started “Cloud Security Lab A Week,” aka Cloud SLAW. Every Thursday, he emails subscribers a new hands-on lab, building a full enterprise deployment week-by-week, step-by-step. Rich explains all the details to JJ and Drew including the cost... Read more »
Up next
Yesterday
PP126: Trying (and Failing) the CCIE Security Exam
Today we talk about trying and failing. More specifically, guest Keith Tokash wrote a pair of blogs on Packet Pushers about taking, but not passing, the CCIE Security written exam. Failure’s a hard thing to talk about, particularly in this age where every public utterance on Link ... Show More
54m 28s
Sep 8
PP125: News Roundup—Cyberattack Impacts Pacemakers, OpenAI Publishes Eye-Opening Postmortem, and More
If it feels like everything is on fire, today’s News Roundup will not dispel that feeling. We discuss consumer routers that ship with factory-installed backdoors, US law enforcement agencies shutting down hacking domains, and how a threat actor tied to China is targeting Cisco IO ... Show More
59m 58s
Sep 1
PP124: How Coruna, DarkSword, and Other Exploits Slice Up Apple iPhones
Coruna and DarkSword are exploit frameworks that have successfully targeted Apple iPhones to steal cryptocurrency and harvest data including messages, email, location data, and browsing history. On today’s show we trace the provenance of these exploits (Coruna was originally deve ... Show More
57m 13s
Recommended Episodes
Aug 2024
Threat Modeling in the Cloud with Romina Druta & Daniela Cruzes
<p>What are the threats your cloud application and infrastructure are facing? While at NDC Oslo, Richard chatted with Daniela Cruzes and Romina Druta about their work building threat models for cloud-based applications. Daniela discusses how modeling helps to understand security ... Show More
36m 24s
Feb 2025
Rethinking Cloud Security Strategies
Cloud security is more complex than ever. Organizations move fast, but security teams often struggle to keep up. In this episode of Threat Vector, host David Moulton speaks with Amol Mathur, SVP of Products for Prisma Cloud at Palo Alto Networks, about how platformization is resh ... Show More
35m 28s
Jan 2022
Tech Bytes: Embedding Network Security Into Your Cloud Network (Sponsored)
Today on the Tech Bytes podcast we’re talk network security at scale. That is, in a cloud environment, how can you build security capabilities and features into the network while also being able to keep up with security policies, operations, compliance, and more. Our sponsor is A ... Show More
14m 28s
Jun 2019
The so-called cloud and what it means for cyber security
What is the cloud? Is it secure? How safe is your information when it’s in the cloud? Reformed Hacker Bastien Treptel and Chief Cyber Risk Officer Fergus Brooks talk with David Kaplan from Amazon Web Services about the reliability of cloud security and what the benefits and pitfa ... Show More
20m 25s
Nov 2025
D2DO286: Scaling Kubernetes Across Clouds – Identity, DNS, and Security
If you think managing Kubernetes clusters is hard, what about managing Kubernetes clusters across three different public clouds? We dive into the challenges that arises from running multi-cloud Kubernetes workloads. These challenges include workload identity, DNS query resolution ... Show More
40m 39s
Aug 2024
Essential tools with critical security challenges. [Research Saturday]
Snir Ben Shimol from ZEST Security on their work, "How we hacked a cloud production environment by exploiting Terraform providers." In this blog, ZEST discusses the security risks associated with Terraform providers, particularly those from community sources. The research highlig ... Show More
22m 17s
Jun 2024
PP019: The God Accounts: Cloud IAM
Today we discuss how to secure your all-powerful root accounts on the three major public cloud providers: AWS, Azure, and GCP. Our guests today, Ned Bellavance and Kyler Middleton from the Day Two Cloud podcast (soon to be Day Two DevOps podcast), describe the struggle of securel ... Show More
47m 27s