Layer 8 Podcast artwork

Layer 8 Podcast

114 episodes - English - Latest episode: 14 days ago -

Welcome to the Layer 8 Podcast season 3! This season we’ll have conversations with social engineers and OSINT investigators who will tell their stories. We hope you enjoy them.

Technology
Homepage Google Podcasts Overcast Castro Pocket Casts RSS feed

Episodes

Episode 11: Kirby Plessas - Happy Birthday...or is it?

February 10, 2020 13:33 - 8 minutes - 13.5 MB

For this episode, we welcome Kirby Plessas, host of the OSINT curious podcast. She is the founder and CEO of the Plessas Experts Network, found at plessas.net where you can find online training about how to perform OSINT investigations. Kirby tells us how she was able to track down a hacker, simply because someone wished him happy birthday.

Episode 10: Marina Ciavatta - Just Ask For Feedback

February 03, 2020 12:12 - 47 minutes - 60.7 MB

For this episode, we welcome Marina Ciavatta, the journalist turned social engineer, from Brazil. Marina describes her first physical social engineering engagement where she will tell us how she successfully bypassed biometrics and how people will willingly give you more information if you just ask. You can find Marina on Twitter at: @MarinaCiavatta

Episode 9: Wondersmith Rae - Unraveling an Online Puppy Scam

January 27, 2020 12:00 - 19 minutes - 29.4 MB

For this episode, we welcome Wondersmith Rae, a professional OSINT investigator who tells us the story of an online puppy scam. This is a story where pulling on one thread of information seemed to lead down varying paths and exposing additional interesting areas to investigate. She and @Tokyo_v2 also wrote a blog post on Medium.com about her investigation titled “Anatomy of a Puppy Scam, Part 1, Meet Layla” where you can find even more details. You can find her on twitter at @Wondersmith_Rae

Episode 8: Deveeshree Nayak - Turning a Facebook Feature into a Ticket to Defcon

January 22, 2020 13:35 - 7 minutes - 11.2 MB

For this episode, we welcome Deveeshree Nayak, an educationalist and information security professional where she tells us about how she was able to find weaknesses in Facebook for gathering information on friends of friends, which eventually led to the company inviting her to Defcon. You can find Deveeshree on LinkedIn.

Episode 7: Robby Stewart - Sometimes the Client Wins

January 21, 2020 13:48 - 10 minutes - 9.29 MB

For this episode, we welcome Robby Stewart, a social engineer and pentester at Rapid7. Robby tells us about a story that we don’t hear that often from social engineers...failure. He explains why some might consider his test a failure and why some would call it a success. You can find Robby on Twitter at @RizzyRong.

Episode 6: Robby Stewart - How a Social Engineer Uses Trust

January 20, 2020 13:12 - 7 minutes - 7.97 MB

For this episode, we welcome Robby Stewart, a social engineer and pentester at Rapid7. Robby takes us through the first social engineering engagement and the various decisions he needed to make along the way. He also explains how a good social engineer can really take advantage of people’s assumptions and their trust. You can find Robby on twitter at @RizzyRong

Episode 6: Robby Stewart - How a Social Engineer (Ab)uses Trust

January 20, 2020 13:12 - 7 minutes - 7.97 MB

For this episode, we welcome Robby Stewart, a social engineer and pentester at Rapid7. Robby takes us through the first social engineering engagement and the various decisions he needed to make along the way. He also explains how a good social engineer can really take advantage of people’s assumptions and their trust. You can find Robby on twitter at @RizzyRong

Episode 5: Matthias Wilson - Combining OSINT with SE in Germany

January 13, 2020 12:40 - 21 minutes - 18.3 MB

For this episode, we have Matthias Wilson, also known as MwOsint on twitter and owner of the https://keyfindings.blog site. Matthias is in Germany where the default is to trust no one and privacy is the utmost concern. Matthias takes us through how he was able to combine social engineering and OSINT to find out if a given business address was legit, or something a little more shady. 

Episode 5: Matthias Wilson, Combining OSINT with SE in Germany

January 13, 2020 12:40 - 21 minutes - 18.3 MB

For this episode, we have Matthias Wilson, also known as MwOsint on twitter and owner of the https://keyfindings.blog site. Matthias is in Germany where the default is to trust no one and privacy is the utmost concern. Matthias takes us through how he was able to combine social engineering and OSINT to find out if a given business address was legit, or something a little more shady. 

Episode 4: Steve Laura, A Full PSE Walkthrough

January 06, 2020 13:09 - 47 minutes - 42.9 MB

For this episode, we have Steve Laura, a social engineer and pentester for Blue Cross Blue Shield. On this longer episode, he takes through the recon, the initial access, his thought process along the way and how he dealt with employees on the lookout for a pentester trying to get into their building! You can find Steve on twitter at Steven1669.

Episode 4: Steve Laura - A Full PSE Walkthrough

January 06, 2020 13:09 - 47 minutes - 42.9 MB

For this episode, we have Steve Laura, a social engineer and pentester for Blue Cross Blue Shield. On this longer episode, he takes through the recon, the initial access, his thought process along the way and how he dealt with employees on the lookout for a pentester trying to get into their building! You can find Steve on twitter at Steven1669.

Episode 3: Katelyn Bowden - Her First OSINT

December 31, 2019 01:12 - 10 minutes - 19 MB

For this episode, we have Katelyn Bowden, CEO of the BADASS Army, a non-profit organization dedicated to providing support to victims of revenge porn and image abuse. Katelyn tells us about her first experience with OSINT. A personal experience that involved some social engineering to drum up some small town drama and how a machine gun was the one piece of information that got Katelyn the goods. You can find Katelyn on twitter at BadassBowden.

Episode 2: Katelyn Bowden - Taking Down a Criminal

December 31, 2019 01:11 - 11 minutes - 10.1 MB

For this episode, we have Katelyn Bowden, CEO of the BADASS Army, a non-profit organization dedicated to providing support to victims of revenge porn and image abuse. Katelyn tells us about how her organization works and how her experience with a siren, and how one guy’s desire for Funko Pops ended up being his downfall in the world of trading nude images. You can find Katelyn on Twitter at BadassBowden.

Episode 1: Trevor O'Donnal - Rapport Building with Vishing

December 17, 2019 02:00 - 17 minutes - 14.9 MB

For our first episode, we have Trevor O’Donnal from Rapid7. Trevor tells us about a particularly difficult social engineering engagement where he needed to engage staff through phone calls. But it was a small company, everyone knows each other and sits near each other. Let’s hear Trevor tell us how he used good reconnaissance to build rapport and get people talking. You can find Trevor on Twitter at todonnal.

Guests

Phillip Wylie
1 Episode

Twitter Mentions

@wondersmith_rae 3 Episodes
@tinkersec 3 Episodes
@rizzyrong 3 Episodes
@tokyo_v2 2 Episodes
@prof_rege 2 Episodes
@c_3pjoe 2 Episodes
@steven1669 2 Episodes
@mwosint 2 Episodes
@badassbowden 2 Episodes
@sho_luv 2 Episodes
@stefanielahart 2 Episodes
@humanhacker 2 Episodes
@accessosint 2 Episodes
@mangopdf 2 Episodes
@scarylilhuman 2 Episodes
@_sn0ww 2 Episodes
@curtklump 2 Episodes
@mdalin 2 Episodes
@alethedenis 2 Episodes
@wvualphasoldier 1 Episode