Layer 8 Podcast artwork

Layer 8 Podcast

121 episodes - English - Latest episode: 2 days ago -

Welcome to the Layer 8 Podcast season 3! This season we’ll have conversations with social engineers and OSINT investigators who will tell their stories. We hope you enjoy them.

Technology
Homepage Google Podcasts Overcast Castro Pocket Casts RSS feed

Episodes

Episode 17: AMA with Snow and TinkerSec

March 19, 2020 17:55 - 1 hour - 111 MB

Warning: Some language used is NSFW or children. For this episode, we break our format. Usually, we have a social engineer or OSINT investigator on to walk us through a great story, a fun engagement or the methodology of an investigation. On this episode, we welcome two extremely accomplished social engineers, Snow and TinkerSec to just chat, answer a few questions, give opinions and recount a lot of fun stories. You can find them on Twitter at @_sn0ww and @TinkerSec.  In this episode, Sn...

AMA with Snow and TinkerSec

March 19, 2020 17:55 - 1 hour - 111 MB

Warning: Some language used is NSFW or children. For this episode, we break our format. Usually, we have a social engineer or OSINT investigator on to walk us through a great story, a fun engagement or the methodology of an investigation. On this episode, we welcome two extremely accomplished social engineers, Snow and TinkerSec to just chat, answer a few questions, give opinions and recount a lot of fun stories. You can find them on Twitter at @_sn0ww and @TinkerSec.  In this episode, Sn...

Episode 16: Julie Clegg - Top 5 Things Not Seen on Hunted

March 16, 2020 11:48 - 25 minutes - 36.7 MB

For this episode, we welcome Julie Clegg, the OSINT expert on the United Kingdom-based television show "Hunted". Julie is also putting together OSINT2020, an event where OSINT investigators can come together and talk about the future of investigations. You can find out more at OSINT2020.com. Julie talks with us about her five favorite events that happened on Hunted but you didn’t get to see on television. She talks about various activities by the hunters and some pranks that the hunters and ...

Episode 15: Cat Murdock - Know Your Name and Bring Snacks

March 09, 2020 12:44 - 42 minutes - 62.5 MB

For this episode, we welcome Cat Murdock, a security consultant and social engineer from Guidepoint Security. You can find Cat on Twitter at CatMurd0ck. While most of our episodes are safe for work, this one has a few words mixed in that you might not want children to hear. Cat takes us through some of her social engineering encounters, explains why snacks and bathroom breaks are important and why the names on paperwork are very important.

Episode 14: Dutch_OSINTGuy - Spot the Jihadi

March 02, 2020 11:32 - 17 minutes - 26.6 MB

For this episode, we welcome Nico Dekins, also known as Dutch OSINT Guy and a co-host of the OSINT Curious podcast. You can find Nico on Twitter at Dutch_OSINTGuy. Law enforcement officials in the Netherlands asked him to confirm whether a potential Jihadi’s threats were credible. They only gave him a first name and minimal other information. Find out how Nico went through his methodology to get the confirmation they needed.

Episode 13: Alethe Denis - Social Engineer Your Own Brain

February 24, 2020 12:35 - 53 minutes - 77.9 MB

For this episode, we welcome Alethe Denis, the founder of Dragonfly Security and the reigning champion of the Defcon social engineering capture the flag competition. This is Alethe’s story of where she came from, how she was always a social engineer from childhood and also how words from Lady Gaga turned her life around. She tells us how we can social engineer ourselves to move in a positive direction.

Episode 12: Keith Cox - The Value of Flexibility During Vishing

February 17, 2020 13:59 - 47 minutes - 61.8 MB

For this episode, we welcome Keith Cox, a social engineer and pentester from Rapid7. Keith takes us through a recent vishing engagement and he tells us how sometimes you can learn from the initial calls you make to drastically change your pretext and how it worked for him. Keith also describes how he got to flip the script a little and help his mentor fine tune his own social engineering skills.

Episode 11: Kirby Plessas - Happy Birthday...or is it?

February 10, 2020 13:33 - 8 minutes - 13.5 MB

For this episode, we welcome Kirby Plessas, host of the OSINT curious podcast. She is the founder and CEO of the Plessas Experts Network, found at plessas.net where you can find online training about how to perform OSINT investigations. Kirby tells us how she was able to track down a hacker, simply because someone wished him happy birthday.

Episode 10: Marina Ciavatta - Just Ask For Feedback

February 03, 2020 12:12 - 47 minutes - 60.7 MB

For this episode, we welcome Marina Ciavatta, the journalist turned social engineer, from Brazil. Marina describes her first physical social engineering engagement where she will tell us how she successfully bypassed biometrics and how people will willingly give you more information if you just ask. You can find Marina on Twitter at: @MarinaCiavatta

Episode 9: Wondersmith Rae - Unraveling an Online Puppy Scam

January 27, 2020 12:00 - 19 minutes - 29.4 MB

For this episode, we welcome Wondersmith Rae, a professional OSINT investigator who tells us the story of an online puppy scam. This is a story where pulling on one thread of information seemed to lead down varying paths and exposing additional interesting areas to investigate. She and @Tokyo_v2 also wrote a blog post on Medium.com about her investigation titled “Anatomy of a Puppy Scam, Part 1, Meet Layla” where you can find even more details. You can find her on twitter at @Wondersmith_Rae

Episode 8: Deveeshree Nayak - Turning a Facebook Feature into a Ticket to Defcon

January 22, 2020 13:35 - 7 minutes - 11.2 MB

For this episode, we welcome Deveeshree Nayak, an educationalist and information security professional where she tells us about how she was able to find weaknesses in Facebook for gathering information on friends of friends, which eventually led to the company inviting her to Defcon. You can find Deveeshree on LinkedIn.

Episode 7: Robby Stewart - Sometimes the Client Wins

January 21, 2020 13:48 - 10 minutes - 9.29 MB

For this episode, we welcome Robby Stewart, a social engineer and pentester at Rapid7. Robby tells us about a story that we don’t hear that often from social engineers...failure. He explains why some might consider his test a failure and why some would call it a success. You can find Robby on Twitter at @RizzyRong.

Episode 6: Robby Stewart - How a Social Engineer Uses Trust

January 20, 2020 13:12 - 7 minutes - 7.97 MB

For this episode, we welcome Robby Stewart, a social engineer and pentester at Rapid7. Robby takes us through the first social engineering engagement and the various decisions he needed to make along the way. He also explains how a good social engineer can really take advantage of people’s assumptions and their trust. You can find Robby on twitter at @RizzyRong

Episode 6: Robby Stewart - How a Social Engineer (Ab)uses Trust

January 20, 2020 13:12 - 7 minutes - 7.97 MB

For this episode, we welcome Robby Stewart, a social engineer and pentester at Rapid7. Robby takes us through the first social engineering engagement and the various decisions he needed to make along the way. He also explains how a good social engineer can really take advantage of people’s assumptions and their trust. You can find Robby on twitter at @RizzyRong

Episode 5: Matthias Wilson, Combining OSINT with SE in Germany

January 13, 2020 12:40 - 21 minutes - 18.3 MB

For this episode, we have Matthias Wilson, also known as MwOsint on twitter and owner of the https://keyfindings.blog site. Matthias is in Germany where the default is to trust no one and privacy is the utmost concern. Matthias takes us through how he was able to combine social engineering and OSINT to find out if a given business address was legit, or something a little more shady. 

Episode 5: Matthias Wilson - Combining OSINT with SE in Germany

January 13, 2020 12:40 - 21 minutes - 18.3 MB

For this episode, we have Matthias Wilson, also known as MwOsint on twitter and owner of the https://keyfindings.blog site. Matthias is in Germany where the default is to trust no one and privacy is the utmost concern. Matthias takes us through how he was able to combine social engineering and OSINT to find out if a given business address was legit, or something a little more shady. 

Episode 4: Steve Laura - A Full PSE Walkthrough

January 06, 2020 13:09 - 47 minutes - 42.9 MB

For this episode, we have Steve Laura, a social engineer and pentester for Blue Cross Blue Shield. On this longer episode, he takes through the recon, the initial access, his thought process along the way and how he dealt with employees on the lookout for a pentester trying to get into their building! You can find Steve on twitter at Steven1669.

Episode 4: Steve Laura, A Full PSE Walkthrough

January 06, 2020 13:09 - 47 minutes - 42.9 MB

For this episode, we have Steve Laura, a social engineer and pentester for Blue Cross Blue Shield. On this longer episode, he takes through the recon, the initial access, his thought process along the way and how he dealt with employees on the lookout for a pentester trying to get into their building! You can find Steve on twitter at Steven1669.

Episode 3: Katelyn Bowden - Her First OSINT

December 31, 2019 01:12 - 10 minutes - 19 MB

For this episode, we have Katelyn Bowden, CEO of the BADASS Army, a non-profit organization dedicated to providing support to victims of revenge porn and image abuse. Katelyn tells us about her first experience with OSINT. A personal experience that involved some social engineering to drum up some small town drama and how a machine gun was the one piece of information that got Katelyn the goods. You can find Katelyn on twitter at BadassBowden.

Episode 2: Katelyn Bowden - Taking Down a Criminal

December 31, 2019 01:11 - 11 minutes - 10.1 MB

For this episode, we have Katelyn Bowden, CEO of the BADASS Army, a non-profit organization dedicated to providing support to victims of revenge porn and image abuse. Katelyn tells us about how her organization works and how her experience with a siren, and how one guy’s desire for Funko Pops ended up being his downfall in the world of trading nude images. You can find Katelyn on Twitter at BadassBowden.

Episode 1: Trevor O'Donnal - Rapport Building with Vishing

December 17, 2019 02:00 - 17 minutes - 14.9 MB

For our first episode, we have Trevor O’Donnal from Rapid7. Trevor tells us about a particularly difficult social engineering engagement where he needed to engage staff through phone calls. But it was a small company, everyone knows each other and sits near each other. Let’s hear Trevor tell us how he used good reconnaissance to build rapport and get people talking. You can find Trevor on Twitter at todonnal.

Guests

Phillip Wylie
1 Episode

Twitter Mentions

@wondersmith_rae 3 Episodes
@tinkersec 3 Episodes
@rizzyrong 3 Episodes
@tokyo_v2 2 Episodes
@prof_rege 2 Episodes
@c_3pjoe 2 Episodes
@steven1669 2 Episodes
@mwosint 2 Episodes
@badassbowden 2 Episodes
@sho_luv 2 Episodes
@stefanielahart 2 Episodes
@humanhacker 2 Episodes
@accessosint 2 Episodes
@mangopdf 2 Episodes
@scarylilhuman 2 Episodes
@_sn0ww 2 Episodes
@curtklump 2 Episodes
@mdalin 2 Episodes
@alethedenis 2 Episodes
@bexmarkwick 1 Episode