ShadowTalk: Powered by ReliaQuest - podcast cover

ShadowTalk: Powered by ReliaQuest

ReliaQuestreliaquest.com

Want to hear what industry experts really think about the cyber threats they face? ShadowTalk is a weekly cybersecurity podcast, made by practitioners for practitioners, featuring analytical insights on the latest cybersecurity news and threat research.

Threat Intelligence Analyst John Dilgen brings extensive expertise in cyber threat intelligence and incident response, specializing in researching threats impacting ReliaQuest customers. John and his guests provide practical perspectives on the week’s top cybersecurity news and share knowledge and best practices to help businesses mitigate the most pertinent cyber threats. 

 

With over 1,000 customers worldwide and 1,200 teammates across six global operating centers, ReliaQuest delivers security outcomes for the most trusted enterprise brands in the world. Learn more at www.reliaquest.com.

Last refreshed:
Follow this podcast in the Metacast mobile app to refresh it and see new episodes.
Download Metacast podcast app
Podcasts are better in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episodes

AI Spies, Unused AWS Buckets, New Lazarus Group Infrastructure

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Kim, and Senior Threat Intelligence Analyst Ivan Righi as they discuss: APT Groups Use AI for Reconnaissance Unused AWS Buckets Pose Supply-Chain Risk New Lazarus Group Infrastructure Uncovered ReliaQuest Research: Attackers Abuse Legitimate Tools Kim Bromley : Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has a...

Feb 05, 202524 min

Attackers Accelerating Attacks, Lumma Infostealer, DeepSeek LLM

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Marken, and Threat Intelligence Analyst Anna as they discuss: ReliaQuest's Research into Attacker Breakout Times Lumma Infostealer Spreading via Fake Reddit Webpages Ransomware Persisting with SSH Tunnelling DeepSeek and the Potential Risks to User Data Chris Morgan : Chris Morgan is a Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team and has been the host of ShadowTalk since 2021. Chris joined ReliaQues...

Jan 29, 202541 min

Ransomware Hits New Heights, FortiGate Data Leaked, Sneaky 2FA Phishing Kit

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Kim, and Detection Researcher Corey Carter as they discuss: ReliaQuest's Q4 Ransomware Report FortiGate Data Leak New Sneaky 2FA Phishing Kit UK Contemplates Ransomware Payment Ban Kim Bromley : Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim brings a wealth of experience in threa...

Jan 22, 202535 min

Guest Episode: Ways Threat Intel Can Prioritize Threats, Vulnerability Chaos, Biden Executive Order

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Kim, along with guest speaker Barri Graham, Beazley Threat Intelligence. Fortinet and Ivanti zero-days under active exploitation Infostealer spread via fake LDAPNightmare exploit Biden administration hasten's executive order The importance of taking a proactive approach within threat intelligence Barri Graham : Experienced Security professional with over 25 years in the field. His 20+ years of military service saw stints as security ...

Jan 15, 202548 min

Espionage Hits US Treasury, OtterCookie Tricks Jobseekers, ReliaQuest Tackles Pure Malware

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Kim, and threat hunter Brian as they discuss: Chinese Espionage Hits US Treasury Department New OtterCookie Variant Used in North Korea Recruitment Scam FireScam Infostealer Imitates Telegram to Steal Your Data ReliaQuest's Response to a Speedy Pure Malware Compromise Kim Bromley : Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law e...

Jan 08, 202528 min

Guest Episode: Are Cyber Predictions Worth It? Clop Strikes, BADBOX Crumbles, US Fights Back Against Chinese Espionage

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Kim, and guest Noah Davis, CISO Ingersoll Rand, as they discuss: 2024 look-back, 2025 forecast. We discuss our expectations for the coming year Clop resurface in new campaign President-elect Trump administration pivot on tackling Chinese espionage The future for AI and automation in shaping the security landscape Noah Davis: Seasoned technologist with over 20 years of experience, excelling in translating complex tech challenges into ...

Dec 18, 202447 min

Termite Ransomware, QR-Code Browser Bypass, CAPTCHA Hijacking

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Kim, ReliaQuest field CISO Rick Holland, and detection researcher Marken as they discuss: Termite Ransomware claiming responsibility for Blue Yonder incident Ransomware impacting Romanian electricity supply Researchers divulge QR code based browser bypass ReliaQuest research into malware distribution through CAPTCHA hijacking Chris Morgan : Chris Morgan is a Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research T...

Dec 11, 202439 min

BootKitty Unleashed, Word Corruption Campaigns, M&A Cyber Threats

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Kim, and Threat Hunter Brian Kelly as they discuss: BootKitty Linux Bootkit LockBit Arrest in Russia Novel Phishing Campaign Corrupts Word Cyber Threats During M&A Kim Bromley : Kim Bromley is a Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim brings a wealth of experience in t...

Dec 04, 202431 min

Guest Episode: Can Someone Non-Technical Be a CISO? New APT28 & Palo Alto Exploits

Join hosts Chris and Kim, and guest CISO Chris Gunner, as they discuss: APT28 conduct 'Nearest Neighbor' WiFi Attack Windows Reissue Controversial Recall Feature Update on Palo Alto Critical Vulnerability Exploitation Navigating potential obstacles as a new CISO Resources: https://linktr.ee/RQShadowTalk Chris Gunner: Group CISO at a global financial service firm, comprised of federated business units across 20 countries. Chris is responsible for Group-wide cyber strategy as well as advising the ...

Nov 27, 202440 min

Black Friday Retail Risks, T-Mobile Troubles, AI Deceptions

Join hosts Chris and Kim, Field CISO Rick Holland, and Detection Researcher Corey Carter as they discuss: Black Friday: Cyber Threats Facing the Retail Sector T-Mobile Breached Again Attacks Exploiting PAN-OS Zero-Day Fake AI Image Generators Deploy Infostealers Resources: https://linktr.ee/RQShadowTalk Kim Bromley : Kim Bromley is a Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement...

Nov 20, 202433 min

2025 Cyber Threat Predictions, MOVEit Data Breach, Volt Typhoon Rebuilds

Join hosts Chris, Kim and Anna as they discuss: ReliaQuest's Cyber Threat Predictions for 2025 Huge Data Leak Linked to 2023 MOVEit Flaw New Ransomware Partners with RustyStealer Volt Typhoon Rebuilds Dismantled Botnet Resources: https://www.reliaquest.com/blog/report-shows-ransomware-has-grown-41-for-construction-industry/ https://www.reliaquest.com/blog/service-account-abuse/ Chris Morgan : Chris Morgan is a Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team and ha...

Nov 13, 202435 min

Credential Theft, LastPass Social Engineering, Interlock Ransomware

In this episode of ShadowTalk, hosts Chris and Kim are joined by Senior Threat Intelligence Analyst Ivan Righi, to discuss the latest news in cybersecurity and threat research. Topics this week include: ReliaQuest research exploring credential theft and misuse Social engineering campaign targets LastPass users Patch now: Sharepoint vulnerability exploited in the wild New Interlock ransomware group targeting FreeBSD OS Resources: https://www.reliaquest.com/blog/the-credential-abuse-cycle-theft-tr...

Nov 06, 202432 min

Guest Episode: Black Basta's TTP Shift, Diversity, Equity, and Inclusion (DEI) In Cyber Security

In this episode of ShadowTalk, hosts Kim and Chris are joined by guest speaker Eric Knopp, to discuss the latest news in cybersecurity and threat research. Topics this week include: ReliaQuest research identifies Black Basta TTP changes Amazon seize APT29 domains Tango down: Redline & Meta Infostealers taken down by Dutch police The importance of supporting DEI programs in hiring practices Resources: https://www.reliaquest.com/blog/black-basta-social-engineering-technique-microsoft-teams/ ht...

Oct 30, 202444 min

Scattered Spider x RansomHub, Anonymous Sudan Unmasked, APT41 Gamble

In this episode of ShadowTalk, host Kim is joined by Director of Threat Research Brandon Tirado and Threat Hunter Brian Kelly, to discuss the latest news in cybersecurity and threat research. Topics this week include: Scattered Spider x RansomHub: A New Partnership US Authorities Indict Anonymous Sudan Leaders Crypt Ghouls Deploys LockBit on Russian Organizations APT41 Targets Gambling and Gaming Industry in New Financially-Motivated Campaign Resources: https://www.reliaquest.com/resources/resea...

Oct 23, 202430 min

Ransomware in Q3 2024, Cisco Breached, ChatGPT Misuse

In this episode of ShadowTalk, host Chris and Kim are joined by Detection researcher Corey Carter, to discuss the latest news in cybersecurity and threat research. Topics this week include: ReliaQuest reporting on ransomware activity in Q3 2024 OpenAI confirm malicious use of ChatGPT Russian APT29 mass exploiting known vulnerabilities CISCO data reportedly breached by IntelBroker Resources: https://media.defense.gov/2024/Oct/09/2003562611/-1/-1/0/CSA-UPDATE-ON-SVR-CYBER-OPS.PDF https://www.relia...

Oct 16, 202430 min

Healthcare Cyber Threat, Salt Typhoon Compromises US Telecoms, Gorilla Botnet DDoS Campaigns

In this episode of ShadowTalk, host Chris and Kim are joined by detection researcher, Marken, to discuss the latest news in cybersecurity and threat research. Topics this week include: Cyber Threats Facing the Health Care and Social Assistance Sector Salt Typhoon Compromises US-based Telecoms Companies Microsoft and US DoJ Takedown Star Blizzard Infrastructure Gorilla Botnet Conducts Large-Scale DDoS Campaign Resources: https://www.reliaquest.com/blog/threats-health-care-social-assistance-landsc...

Oct 09, 202434 min

Guest Episode: Importance of Cyber Insurance, Embargo Ransomware Target Cloud, Influence Ops Target US Election

In this episode of ShadowTalk, host Chris and Kim are joined by guest Samantha Billy, AON U.S Broking Growth Leader, to discuss the latest news in cybersecurity and threat research. Topics this week include: The Critical Role of Cyber Insurance in Mitigating Cyber Risk Embargo Ransomware Targeting Cloud Iranian Threat Actors Conducting Influence Ops Against US Elections National Crime Agency Tease Lockbit Update Resources: https://www.reliaquest.com/blog/2024-us-election-top-cyber-threats-organi...

Oct 03, 202436 min

Telegram's Pivot, Kaspersky's Surprise, Remediating Data Exfiltration Attacks

In this episode of ShadowTalk, host Chris and Kim, along with Threat Hunter Brian, discuss the latest news in cybersecurity and threat research. Topics this week include: Telegram Pivot 180: Agree to Share IP and Phone Data on Legal Requests Kaspersky Auto-Replace Software with UltraAV Antivirus Dell Investigate Two Data Breaches ReliaQuest Data Exfiltration Case Study

Sep 25, 202430 min

Fortinet Breach, Malware Locks Users in "Kiosk" Mode, Insider Threat Case Studies

In this episode of ShadowTalk, host Chris, along with Corey and Anna, discuss the latest news in cyber security and threat research. Topics this week include: Threat actors express difficulty in retrieving stolen Fortinet data Amadey malware's novel approach: Users locked in Kiosk Mode Aftermath of incident affecting Transport for London (TFL) ReliaQuest Response to Insider Threat Cases Resources: https://www.reliaquest.com/blog/common-infostealers/...

Sep 18, 202433 min

GRU Orchestrate Sabotage and Assassination, Sextortion Scams, Inc. Ransom's Novel Attack

In this episode of ShadowTalk, host Chris Morgan, along with Marken Teder, discuss the latest news in cyber security and threat research. Topics this week include: Russia's Military Intelligence target CNI, identified using "Non-Lethal Acoustic Weapons" New Sextortion scam targets spouses Privacy concerns with smart automobiles ReliaQuest research into "Inc Ransom" Data Extortion Attack Resources: https://www.reliaquest.com/blog/inc-ransom-attack-analysis/...

Sep 11, 202437 min

Guest Episode: Building Security Teams, Ransomware and Lawsuits, Top Attacker Techniques

In this episode of ShadowTalk, hosts Chris and Kim, along with guest CISO Rob F, discuss the latest news in cyber security and threat research. Topics this week include: City of Columbus Ohio sue security researcher following ransomware breach Dutch Data Protection Authority fine AI/Facial recognition company Building security teams and improving your cyber maturity ReliaQuest research into top attacker techniques Resources: https://www.reliaquest.com/blog/top-cyber-attacker-techniques/...

Sep 04, 202444 min

Telegram CEO Arrested, Volt Typhoon, Cybercriminal Forum Insights

In this episode of ShadowTalk, hosts Chris and Kim, along with Director of Threat Research Brandon Tirado and Threat Intelligence Analyst Anna, discuss the latest news in cyber security and threat research. Telegram CEO arrested in France over alleged criminal use of the platform Return of Volt Typhoon: China APT exploiting Versa high-severity bug Cybercriminals discuss exploiting physical security gaps to target SMEs

Aug 29, 202436 min

NPD Breach Latest, Election Disinformation, Service Account Abuse

In this episode of ShadowTalk, host Kim, along with Corey and Gjergji, discusses the latest news in cyber security and threat research. Topics this week include: Data breach at NPD affecting millions resulted from exposed credentials Iran-linked APT groups abuse OpenAI to create US-election propaganda ReliaQuest Research: Service Account Abuse Resources: https://www.reliaquest.com/blog/exploring-impacket-abuse/ https://www.reliaquest.com/blog/service-account-abuse/...

Aug 21, 202436 min

Unusual Espionage, Vicious Vulnerabilities, Popular Exfiltration Tools and Malware Loaders

In this episode of ShadowTalk, host Kim, along with Marken and Brian, discusses the latest news in cyber security and threat research. Topics this week include: Unusual Espionage: China-linked threat groups target Russian government, IT organizations Vicious Vulnerabilities: New vulnerability in all Windows systems with IPv6, Sonos Speaker flaws allow eavesdropping ReliaQuest Research: Data Exfiltration Tools and Malware Loaders Resources: https://www.reliaquest.com/blog/exfiltration-tools https...

Aug 14, 202432 min

Special: LIVE from BlackHat 2024, Unauthorized RMM Useage, DEF CON 32 Preview

In this episode of ShadowTalk, host Rick Holland is joined by ReliaQuest Lead Threat Hunter Colin Ferris LIVE on the BlackHat show floor in Las Vegas to discuss: Takeaways from BlackHat CISO Summit ReliaQuest presentation on Remote Monitoring & Management (RMM) tools Things to look forward to at DEF CON 32

Aug 08, 202427 min

Deepfakes-The New Frontier in Deception, Ransomware Roundup, Threats Bypassing Your EDR

In this episode of ShadowTalk, hosts Chris and Kim, along with Ivan Righi, discuss the latest news in cyber security and threat research. Topics this week include: Rise of the Deepfakes: Threat actors target Ferrari, Fake North Korean IT worker fake's job interview Developments in ransomware: Stormous v3, VSXI, Black Basta develop custom malware ReliaQuest Research: Beyond the Endpoint: Threats Bypassing your Endpoint Detection and Response (EDR) solutions Resources: https://www.reliaquest.com/b...

Jul 31, 202432 min

CrowdStrike Global IT Outage, Finance & Insurance Threats

In this episode of ShadowTalk, hosts Chris and Kim, along with ReliaQuest CISO Rick Holland, and Detection Researcher Corey Carter, discuss the latest news in cyber security and threat research. Topics this week include: CrowdStrike Global IT Outage breaks records in impacting 8.5 million devices (1:22) The importance of accountability and trust when working with third party vendors ReliaQuest research into threats facing Financial & Insurance (18:46) Resources: https://www.reliaquest.com/bl...

Jul 24, 202427 min

Guest Episode: Ransomware in Q2 2024, Disney/AT&T Breach

In this episode of ShadowTalk, hosts Chris and Kim, along with guest CISO Craig McEwen, discuss the latest news in cyber security and threat research. Topics this week include: ReliaQuest Research: Ransomware in Q2 2024 Weekly roundup: Threat actors weaponizing exploits within 22 minutes, Disney/AT&T breaches Linking security strategy to expenditure Supporting cyber apprenticeships and investing in people Resources: https://www.reliaquest.com/blog/q2-2024-ransomware/ https://app.galabid.com/...

Jul 17, 202449 min

GenAI Powers Cybercrime, Cobalt Strike Takedown, Record-breaking DDoS Attack

In this episode of ShadowTalk, hosts Chris and Kim, along with Brian, discuss the latest news in cyber security and threat research. The influence of Generative Artificial Intelligence (GenAI) on cybercrime Tango down: Law enforcement takedown over 600 Cobalt Strike servers Record breaking DDoS attack disclosed by researchers Rockyou2024: 9.9 Billion stolen passwords posted onto BreachForums Resource: AI-powered Cybercrime Report...

Jul 11, 202428 min

Weekly: TeamViewer Supply Chain Attack, MOVEit Horrors, Medusa Ransomware Case Study

In this episode of ShadowTalk, hosts Chris and Kim, along with Marken, discuss the latest news in cyber security and threat research. Topics this week include: TeamViewer compromised by APT29 in supply chain attack MOVEit in the headlines again, critical severity vulnerability disclosed Popular Content Delivery Network (CDN) providers compromised in supply chain attacks ReliaQuest research in a case study attributed to the Medusa ransomware group Resources: https://www.reliaquest.com/blog/medusa...

Jul 03, 202437 min
Hosted on Buzzsprout
For the best experience, listen in Metacast app for iOS or Android