ShadowTalk: Powered by ReliaQuest - podcast cover

ShadowTalk: Powered by ReliaQuest

ReliaQuestreliaquest.com

Want to hear what industry experts really think about the cyber threats they face? ShadowTalk is a weekly cybersecurity podcast, made by practitioners for practitioners, featuring analytical insights on the latest cybersecurity news and threat research.

Threat Intelligence Analyst John Dilgen brings extensive expertise in cyber threat intelligence and incident response, specializing in researching threats impacting ReliaQuest customers. John and his guests provide practical perspectives on the week’s top cybersecurity news and share knowledge and best practices to help businesses mitigate the most pertinent cyber threats. 

 

With over 1,000 customers worldwide and 1,200 teammates across six global operating centers, ReliaQuest delivers security outcomes for the most trusted enterprise brands in the world. Learn more at www.reliaquest.com.

Last refreshed:
Follow this podcast in the Metacast mobile app to refresh it and see new episodes.
Download Metacast podcast app
Podcasts are better in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episodes

Salesforce Attack Fallout, Axios Abuse, and Cloud Ransomware

Resources: https://linktr.ee/ReliaQuestShadowTalk Need the latest information on Salesloft Drift? Join host Kim along with intelligence analyst John & detection engineer Marken as they discuss: Salesloft Drift Tokens Result in Salesforce Data Theft (1:31) Storm-0501 Shifts Ransomware Attacks to Cloud (6:36) APT29 Microsoft 365 Campaign Disrupted (11:26) Axios, Direct Send Abuse Redefine Phishing (14:19) Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research T...

Sep 03, 202523 min

New Silk Typhoon Attacks, the Cybercriminal Recruitment Underworld, and More!

Resources: https://linktr.ee/ReliaQuestShadowTalk Curious about the skills needed for modern cyber attacks? Join host Kim along with intelligence analysts John & Hayden as they discuss: Apple Patches Exploited Zero-Day (1:40) Hackers Abuse Linux Files to Drop Malware (3:50) Silk Typhoon Attacks Cloud Supply Chains (7:21) ReliaQuest Uncovers Cybercriminals' Most Sought After Skills (11:02) Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined...

Aug 27, 202526 min

Warlock Ransomware Hits Telecoms, LLM Data Theft, and ShinyHunters Updates

Resources: https://linktr.ee/ReliaQuestShadowTalk Intrigued by Warlock ransomware's Chinese connection? Join host Kim along with intelligence analysts Joey & John as they discuss: \Warlock Ransomware Attacks Against Telecoms (3:12) New FortiSIEM Flaw Exploited in the Wild (5:19) Man-in-the-Prompt Attack Steals Data from LLMs (8:04) How ReliaQuest Tracks Ransomware Groups and Evolving Cyber Threats (12:36) Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research...

Aug 20, 202525 min

ShinyHunters, Scattered Spider, and Salesforce? Plus, Kimsuky Data Breach!

Resources: https://linktr.ee/ReliaQuestShadowTalk Want to know if ShinyHunters and Scattered Spider are really working together? Join host Kim along with detection engineer Marken as they discuss: WinRAR Zero-Day Exploited in RomCom Attacks (1:44) New EDR Killer Popular with Ransomware Groups (4:30) Data Breach Reveal Kimsuky Inner Workings (11:31) ReliaQuest Uncovers Potential ShinyHunters x Scattered Spider Collaboration (15:00) Kim Bromley: Senior Cyber Threat Intelligence Analyst on the Reli...

Aug 13, 202528 min

Akira’s Zero-Day Chaos + The Rise of DRP Threats

Akira ransomware group is exploiting potential zero-day vulnerabilities, and digital risk protection (DRP) threats are rapidly evolving. Join host Joey, along with intelligence analysts John and Hayden, as they dive into: Akira Ransomware Exploiting a Potential Zero Day Plague Backdoor Emerges as Silent Intruder Evolving Tactics of North Korean Attacker DRP Threats Surge Amid Organizational Growth Resources: https://linktr.ee/ReliaQuestShadowTalk Joseph Keyes: Joseph Keyes is a Cyber Threat Inte...

Aug 06, 202529 min

Full CrushFTP Attack Chain, Plus BreachForums is Back!

Resources: https://linktr.ee/ReliaQuestShadowTalk Curious how the latest CrushFTP exploit works? Join host Kim along with intelligence analyst Hayden and threat hunter Leo as they discuss: BreachForums Back, XSS Out (1:28) Warlock Ransomware Hits SharePoint (5:28) Fire Ant Stings ESXi (9:39) ReliaQuest Uncovers CrushFTP Attack Chain (13:35 Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in...

Jul 30, 202528 min

New SharePoint Flaw, How Cybercriminals Use AI

Resources: https://linktr.ee/ReliaQuestShadowTalk Curious about how cybercriminals use AI? Join host Kim along with detection engineer Marken and intelligence analyst Alex as they discuss: New SharePoint Vulnerability (1:34) LameHug AI-Powered Malware (5:55) UK Bans Ransomware Payments (9:44) AI Tactics Behind the Latest Cyber Threats (14:11) Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career...

Jul 23, 202526 min

Do You Really Need IOCs? Plus Zero-Day Exploits, AI Data Leaks, and Phishing for VIPs

Resources: https://linktr.ee/ReliaQuestShadowTalk Ever wondered if IOCs are still relevant in a world of polymorphic malware and zero-day exploits? Join host Kim along with intelligence analyst Joey and threat hunter Tristan as they discuss: North American APT Targets China (1:25) Chatbot Exposes Thousands of Job Applications (4:57) New Phishing Campaign Targets VIPs (7:17) How IOCs are Used in Modern Threat Hunting (10:07) Kim Bromley : Kim Bromley is a Threat Intelligence Analyst on the ReliaQ...

Jul 16, 202524 min

SafePay Ransomware Rises, North Korea Adopts ClickFix

Resources: https://linktr.ee/ReliaQuestShadowTalk Have you heard of SafePay ransomware? Join host Kim along with intelligence analysts Hayden and John as they discuss: SafePay Targets Ingram Micro (1:16) Updates on Iran-Israel (5:43) North Korea Adopts ClickFix & Attacks Web3 (8:24) Insights from ReliaQuest Customer Incidents (13:14) Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in U...

Jul 09, 202524 min

Citrix Bleed 2, Scattered Spider Hits Aviation

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with intelligence analysts Ivan and John as they discuss: Citrix Bleed 2 Scattered Spider Hits Aviation From ClickFix to FileFix Ransomware Threats from Q2 Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim brings a wealth of experience in threat intelligence and ...

Jul 02, 202527 min

Analyzing Iran-Israel Cyber Threats, New Scattered Spider Attack Chain

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with Intelligence Analyst Hayden and Threat Hunter Leo as they discuss: New Scattered Spider Attack Chain Israel and Iran Cyber Threat Deep Dive Top Iran-linked Threat Groups & How to Mitigate Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim brings a wealth ...

Jun 25, 202535 min

Israel-Iran Cyber Warfare, Anubis Ransomware, and More Attacker Trends

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with intelligence analyst Joey and detection engineer Marken as they discuss: Anubis Ransomware Wiper Capability Teamfiltration Pentesting Tool Cyber Implications of Israel-Iran Conflict The Most Up to Date Attacker Trends Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since ...

Jun 18, 202536 min

Black Basta's Enduring Legacy, Qilin Exploits Fortinet Flaws

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with intelligence analysts Alex and John as they discuss: The Enduring Legacy of Black Basta Qilin's Exploitation of Fortinet Flaws Vishing for Salesforce Data Atomic Stealer x ClickFix Campaign Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim brings a wealth of...

Jun 11, 202530 min

Scattered Spider's Evolving Playbook, SentinelOne Outage

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with intelligence analysts Joey and Alex as they discuss: Scattered Spider's Focus on Tech Vendors How APT41 Abuses Google Calendar for C2 The SentinelOne Outage A New Void Blizzard Espionage Campaign Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim brings a wea...

Jun 04, 202528 min

SPECIAL: How Russian Market Fuels Credential-Based Attacks

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with intelligence analysts Joey and Alex as they discuss: Factors Driving Russian Market's Popularity Attackers' Favorite Infostealers Infostealer Attack Paths Main Types and Exclusivity of Stolen Logs Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim brings a we...

May 28, 202544 min

The Threat Evolution: SAP Exploits, SEO Poisoning, and SkitNet Malware

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Joey along with intelligence analysts John and Hayden as they discuss: ReliaQuest's investigation into hijacked routers and SEO poisoning fueling payroll heists Nation-state actors leveraging the SAP NetWeaver vulnerability en masse A new "Defendnot" tool that tricks Windows Defender into disabling itself Ransomware groups using a stealthy post-exploitation malware Joseph Keyes: Cyber Threat Intelligence Analyst at ReliaQuest, specializ...

May 21, 202529 min

Will US Politics Reshape Russian Cyber Threats?

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with intelligence analysts Joey and Hayden as they discuss: ReliaQuest's Forecast for How US Policy will Impact Russia-linked Cyber Threats Infostealers Spread by Fake AI Video Generators Kickidler Abuse by Ransomware Groups FBI Takedown of Huge Botnet Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement...

May 14, 202528 min

Scattered Spider Strikes Again, Hunt for North Korean Insiders Heats Up

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with intelligence analyst John and threat hunter Tristan as they discuss: Scattered Spider Attacks UK Retail Orgs Bring Your Own Installer SentinelOne Bypass Hunting for North Korean Insiders Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim brings a wealth of ex...

May 07, 202528 min

Demystifying CVE-2025-31324, The New Critical SAP NetWeaver Flaw

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with detection engineer Marken and intelligence analyst Alex as they discuss: ReliaQuest's Discovery of Critical SAP NetWeaver Vulnerability AI Upgrade for Darcula Phishing Kit DragonForce's New Cartel Business Model Maximum Severity Commvault flaw Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, an...

Apr 30, 202525 min

BreachForums Down: Hacktivist Attack or FBI Crackdown?

Resources: https://linktr.ee/ReliaQuestShadowTalk Join host Kim along with intelligence analysts Joey and John as they discuss: BreachForums Down: Dark Storm Team Takes Credit A Potential New Vulnerability in SAP NetWeaver Exploit User Targets Salesforce Data ReliaQuest Research: Understanding Chinese Espionage Strategies Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcemen...

Apr 23, 202524 min

Hijacked and Hidden: ReliaQuest Identifies New Backdoor and Persistence Technique

Resources: https://linktr.ee/RQShadowTalk Join host Kim along with intelligence analysts Ivan and Hayden as they discuss: How ReliaQuest Identified a New Backdoor and Persistence Technique Our Latest Ransomware Quarterly Report How Attackers Maintained Access to Patched FortiGate VPNs What Oracle Said Next About That Breach Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcem...

Apr 16, 202527 min

Fast Flux DNS Challenges, Evolving Adversary Tactics, and Proactive Defense Strategies

Resources: https://linktr.ee/RQShadowTalk Join host Kim along with intelligence analyst Joey and threat hunter Leo as they discuss: Ivanti Patches Exploited Vulnerability Fast Flux DNS Evasion Warning Ransomware Scene Shifts ReliaQuest's Approach to Threat Hunting Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim brings a wealth of...

Apr 09, 202534 min

From Oracle to AI: Everything You Need to Know About Emerging Cyber Threats

Resources: https://linktr.ee/RQShadowTalk Join host Kim along with intelligence analyst Hayden and threat detection engineer Marken as they discuss: Oracle Data Breach Latest Updates BlackLock Ransomware Exposed Active Exploitation of ChatGPT Flaw Up to the Minute Attacker Techniques Kim Bromley: Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Ki...

Apr 03, 202534 min

Guest Episode: Navigating Cyber Storms with Expert Insights on Incident Response

Resources: https://linktr.ee/RQShadowTalk Join host Kim along with intelligence analyst Joey and special guest Rachel Ratcliff as they discuss: The latest Insights on the Alleged Oracle Data Breach A Critical Vulnerability in Next.js Middleware The Importance of Incident Response when Tackling Today's Cyber Threats Rachel Ratcliff: Engagement Management Leader for Aon Cyber Solutions and Stroz Friedberg Digital Forensics and Incident Response where she sits on the Executive Committee and oversee...

Mar 26, 202539 min

When Old Meets New: The Rise of VPN Exploits and Brute-Force Tools

Resources: https://linktr.ee/RQShadowTalk Join host Kim along with intelligence analysts Ivan and John as they discuss: ReliaQuest's Research: Devastating Paths to VPN Exploitation SuperBlack Ransomware Exploits Fortinet Flaws BRUTED Framework Automates Black Basta Attacks ClickFix Campaign Hooks Hospitality Sector Kim Bromley : Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and...

Mar 19, 202527 min

Webcam Warfare, Supply Chains Under Siege, Insider Threats, and More!

Resources: https://linktr.ee/RQShadowTalk Join host Kim, and intelligence analysts Joey and Anna as they discuss: ReliaQuest's Research: Cyber Threats to Hospitality and Recreation Silk Typhoon Expands to Supply-Chain Attacks Insider's Kill Switch Cripples Ex-Employer Akira Ransomware Uses Webcam to Compromise Network Kim Bromley : Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, ...

Mar 12, 202525 min

Hooked and Hacked: Phishing Frenzy, Ransomware Recap, Zero-Day Fallout

Resources: https://linktr.ee/RQShadowTalk Join host Kim and Detection Researcher Marken Teder as they discuss: ReliaQuest's Research: Blink and They're In The Latest Ransomware Developments 244 Million Passwords Added to 'Have I Been Pwned' VMware Zero-Days Actively Exploited Kim Bromley : Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enforcement, and has acted as host since 2024. Kim bring...

Mar 05, 202532 min

SPECIAL: 'From Data to Defense' - Insights from ReliaQuest's Annual Cyber-Threat Report

Resources: https://linktr.ee/RQShadowTalk Join host Kim and cyber threat intelligence analysts Joey Keyes and Hayden Evans as they discuss insights from ReliaQuest's 2025 Annual Cyber-Threat Report: The Top Successful Initial Access Techniques How Attackers Achieve Breakout in 48 Minutes Key Recommendations to Outpace Attackers Kim Bromley : Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team. She joined ReliaQuest in June 2020 following a 10-year career in UK law enf...

Feb 26, 202543 min

BlackLock Ransomware, 8Base Seized, Storm-2372 Phishing

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Kim as they discuss: Storm-2372 Device Code Phishing Campaign China Linked Espionage Tools Used Alongside Ransomware 8Base Leak Site Seized in Law Enforcement Operation ReliaQuest Research on the Worlds Fastest Rising Ransomware Group: BlackLock Chris Morgan : Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team and has been the host of ShadowTalk since 2021. Chris joined ReliaQuest in August 2020, previous...

Feb 19, 202528 min

Brute Force Campaign, Ransomware Insider Recruiting, Manufacturing Threats

Resources: https://linktr.ee/RQShadowTalk Join hosts Chris and Kim, and Detection researcher Corey Carter as they discuss: Large Scale Brute Force Campaign Targeting Edge Devices Critical Microsoft RCE Vulnerability Exploited Ransomware Criminals Attempt to Recruit Insiders ReliaQuest Research: Manufacturing Sector Report Chris Morgan : Senior Cyber Threat Intelligence Analyst on the ReliaQuest Threat Research Team and has been the host of ShadowTalk since 2021. Chris joined ReliaQuest in August...

Feb 12, 202531 min
Hosted on Buzzsprout
For the best experience, listen in Metacast app for iOS or Android