DTF Cyber Podcast

Cyber Podcast

Damian, Troy, and Fern break down the week’s biggest hacks, breaches, and zero-days with zero corporate filter. Expect strong opinions, dark humor, and actionable intel from three pros who’ve been in the trenches. New episodes drop when the news is too wild to ignore.

  1. OpenClaw: The Dangerous Evolution of Autonomous AI Agents

    3D AGO

    OpenClaw: The Dangerous Evolution of Autonomous AI Agents

    In this episode of the DTF Cyber Podcast, Damian, Troy , and Fern dive into the rapid and often confusing shift from tools like Clawdbot to Moltbot and finally OpenClaw. They discuss why these autonomous agents are more than just a productivity trend—they represent a significant new attack surface for the modern enterprise. From the "Toddler with a Chainsaw" analogy to the risk of "Shadow AI" in the workplace, we break down the security implications of giving AI bots unfettered access to your network and credentials. 00:00 – Intro 01:19 – The rebranding maze: From Clawdbot to OpenClaw 02:35 – What is an AI bot? First impressions of autonomous control 05:02 – The "Poor Installation" risk and isolated environments 07:21 – The "Age of Ultron" scenario: Efficiency vs. Security 08:45 – Privacy concerns: Bots with access to banking and travel rewards 10:15 – The Starbucks test: Automation vs. user friction 12:15 – When AI goes rogue: Extortion and covering tracks in closed environments 16:04 – Third-party AI risk and the lifespan of autonomous agents 18:24 – Shadow AI: Bots as the new high-tech "mouse jiggler" 20:19 – Inherited Identity: When bots gain your admin privileges 21:40 – Advice for Organizations: How to check your environment for OpenClaw 26:36 – A nightmare for the SoC: Signals, logs, and new attack surfaces 28:53 – 6,000 actions a minute: Why human analysts can't keep up 37:38 – The "Toddler with a Chainsaw" warning 42:07 – Action Items: Three steps to secure AI in your organization 55:35 – Lessons from outages: Why you shouldn't "open the world" on day one!

    57 min
  2. When the World is on Fire: Mental Health and Cyber Incidents

    FEB 2

    When the World is on Fire: Mental Health and Cyber Incidents

    Is the constant wave of alerts keeping you up at 3 a.m.? In this episode of the DTF Cyber Podcast, industry veterans Damian, Troy, and Fern dive deep into the reality of mental health and burnout in the cybersecurity industry. Special guest CISO, Vito Rocco jumps deep into this conversation. With 78% of professionals feeling stressed out and 62% citing alert overload as a primary cause, it's clear the industry needs a culture shift. We discuss the pressures of catastrophic risk , the fear of missing critical alerts, and actionable strategies for leaders and analysts to combat fatigue—from tuning systems to building empathy. Plus, we explore the importance of diverse leadership and setting personal boundaries in a 24/7 world. If you are feeling stressed out and think you need help, please don't go through it alone—seek support from friends, leadership, or a mental health professional. Timestamps: 00:00 - Intro: The reality of cybersecurity exhaustion. 04:19 - 78% of the industry is stressed: The anticipation and reality of major incidents. 07:33 - The hidden stress of the SOC: Alert overload, perfectionism, and the fear of missing the "big one." 12:50 - Building the pipeline: Training talent from within vs. hunting for unicorns. 15:06 - Beating alert fatigue: How to automate, tune the noise, and grow from entry-level to senior analyst. 18:24 - Burnout isn't just about workload: Why empathy and recognition from leadership matter. 23:05 - Building a support system: The importance of therapy and talking it out. 25:05 - Leadership strategies: Connecting with your team beyond transactional work. 35:37 - Why you must use your PTO (and the trap of "Unlimited PTO"). 42:25 - Setting personal boundaries and managing communication in a 24/7 global team. 53:07 - Using turnover rates as a measurement for team health. 1:07:48 - The power of diverse leadership and the rise of female CISOs. 1:18:01 - Conclusion and final thoughts on seeking help. http://cyberpodcast.net Spotify: http://spotify.cyberpodcast.net Apple: http://apple.cyberpodcast.net X: https://x.com/dtfcyberpodcast IG: https://www.instagram.com/dtfcyberpodcast/ Linkedin: DTF: https://www.linkedin.com/company/dtf-cyber-podcast/ Damian: https://www.linkedin.com/in/damianchung/ Troy: https://www.linkedin.com/in/kosovotroy/ Fern: https://www.linkedin.com/in/fernrojasaz/ Business Inquiries: dtf at cyberpodcast dot net Everything here is our personal hot takes — not our employers, not the vendors we roast, not legal advice. Just three idiots with mics trying to keep you from getting pwned.

    1h 22m
  3. 8 Ways to Jumpstart Your Cybersecurity Career in 2026 | #DTF032

    JAN 19

    8 Ways to Jumpstart Your Cybersecurity Career in 2026 | #DTF032

    2026 is here, and the cybersecurity job market is evolving. Whether you are trying to break into the industry or land your next senior role, the playbook has changed. In this episode of the DTF Cyber Podcast, Fern and Troy are joined by Gary Perkins (CISO at CISO Global) to break down 8 actionable steps you can take right now to jumpstart your career. From building public red team projects to mastering new attack toolchains like the Flipper Zero, we cover the technical and soft skills that hiring managers actually look for. We also dive into why networking is your #1 asset, how to contribute to open source projects, and why "learning to script" is non-negotiable for modern security pros. 🚀 In this episode, we cover: Why you need a public GitHub portfolio (even if you aren't a dev). How to legally perform "hunts" in your current job to gain experience. The difference between "scripting" and "developing" and why Python/Bash helps. Why reading non-cyber books can actually make you a better CISO. 👇 Jump to the 8 Career Hacks: 00:00:00 - Intro: Welcome back to 2026! 00:01:02 - Meet Gary Perkins, CISO at CISO Global 00:07:43 - #1: Build One Public Red Team Project Quarterly 00:14:00 - #2: Master a New Attack Toolchain (Flipper Zero, Bloodhound, etc.) 00:21:16 - #3: Contribute to Open Source Security Projects 00:29:16 - #4: Perform a Weekly Hunt in a Real Environment 00:43:35 - #5: Learn to Script Your Own Tools (Python & Bash) 00:51:18 - #6: Network Like Your Career Depends On It 01:02:17 - #7: Read a Non-Cyber Book (The Phoenix Project, Leaders Eat Last) 01:07:42 - #8: Teach Something Publicly 01:16:20 - Bonus Resource: The Threat Intelligence Support Unit (TISU) Cohort 📚 Resources & Mentions: Book: The Phoenix Project Book: Leaders Eat Last by Simon Sinek Organization: Threat Intelligence Support Unit (TISU) - Free Cybersecurity Cohort https://www.eventcreate.com/e/tisu8 Connect with the Guest: Gary Perkins (CISO Global) https://www.linkedin.com/in/perkinsgary/ Subscribe for more no-nonsense cyber insights! #Cybersecurity #InfoSec #CareerAdvice #RedTeam #BlueTeam #CISO #TechCareers #2026 http://cyberpodcast.net Spotify: http://spotify.cyberpodcast.net Apple: http://apple.cyberpodcast.net X: https://x.com/dtfcyberpodcast IG: https://www.instagram.com/dtfcyberpodcast/ Linkedin: DTF: https://www.linkedin.com/company/dtf-cyber-podcast/ Damian: https://www.linkedin.com/in/damianchung/ Troy: https://www.linkedin.com/in/kosovotroy/ Fern: https://www.linkedin.com/in/fernrojasaz/ Business Inquiries: dtf at cyberpodcast dot net Everything here is our personal hot takes — not our employers, not the vendors we roast, not legal advice. Just three idiots with mics trying to keep you from getting pwned.

    1h 18m
  4. 2026 Cyber Predictions: AI Agents, Record Ransomware & Deepfake Disasters | DTF#031

    12/24/2025

    2026 Cyber Predictions: AI Agents, Record Ransomware & Deepfake Disasters | DTF#031

    Is 2026 the year AI takes over everything—including the crimes? 🤖💸 In the final episode of 2025, Damian and Troy break down their Top 8 Cyber Predictions for 2026. From AI agents executing 90% of breaches to ransomware payouts potentially hitting half a billion dollars, the future of cybersecurity is moving fast. We also discuss the "Harvest Now, Decrypt Later" threat, why your LinkedIn profile picture might already be a lie, and the new $150k entry-level salary standard. Plus, we’re ending the year with a GIVEAWAY! 🎁 Drop your 2026 prediction in the comments—for every 10 predictions we receive, we’re picking a winner for some exclusive (and secret) DTF Cyber swag. In this episode, we cover: Why AI agents (not humans) will be behind 9 out of 10 breaches. The terrifying potential for a $500M ransomware payout. How deepfakes will finally cause a major real-world crisis. "AI Laundering": The new frontier for cleaning dirty crypto. Why entry-level cyber jobs are hitting $150k salaries (and the catch). 🔔 Subscribe for more unfiltered cybersecurity insights! ⏱️ TIMESTAMPS: 00:00 – Intro: Did AI change the world in 2025? 01:58 – Prediction #1: 90% of breaches will be executed by AI Agents. 07:40 – Prediction #2: Ransomware payouts will break records ($500M?!). 15:15 – Prediction #3: Identity becomes the central pillar (Passkeys backfire?). 20:00 – Prediction #4: A deepfake event will hit major global news. 24:45 – Prediction #5: "Harvest Now, Decrypt Later" goes mainstream. 28:40 – Prediction #6: Mandatory AI Agent audits for federal contractors. 32:30 – Prediction #7: "AI Laundering" becomes the new money laundering. 38:15 – Prediction #8: Entry-level AI Cyber jobs will start at $150k. 45:00 – Bonus Prediction: The consolidation of massive data analytics. 47:00 – GIVEAWAY DETAILS: How to win exclusive swag! #CyberSecurity #AIPredictions #Ransomware #Deepfakes #TechTrends2026 #InfoSec #Podcast #DTFCyber #AI

    49 min
  5. The Ultimate Cybersecurity Gift Guide (Under $100, $200 & Unlimited) #DTF030

    12/17/2025

    The Ultimate Cybersecurity Gift Guide (Under $100, $200 & Unlimited) #DTF030

    The 2025 Cyber Christmas List That Actually Gets You Hired Happy holidays, nerds! Your mom just spent $79 on a “hacker hoodie” that says “Trust Me” in Comic Sans… …while real juniors are out here making six figures with a $29 Yubikey and a Raspberry Pi. In Episode 30, Damian, Troy & Fern save your Christmas with the only cyber gifts worth buying in 2025: • Under $50 stocking stuffers that turn into paychecks • $50–$150 tools that get you interviews • $150–$300 big wins that scream “I’m serious” • Free gifts that slap harder than anything paid • And the absolute coal you should burn before anyone unwraps it Timestamps 00:00 Intro: The "Hacker Hoodie" 01:37 Why "Hacker" Clothing is Bad OpSec 06:01 The Worst Gifts: "Hacking for Dummies" 08:59 Beware of Knockoff Tools & Malware 12:15 Danger: Pre-loaded Hacking USBs 13:49 Best Gifts Under $100 14:00 Book Rec: The Hardware Hacker 14:20 YubiKeys for MFA 16:21 Lockpicking Sets & Physical Pen Testing 21:42 USB Rubber Ducky 23:25 USB Data Blockers (Juice Jacking Protection) 25:05 RFID Blocking Wallets 28:06 Raspberry Pi Projects (Honeypots & VPNs) 28:45 Best Gifts $100 - $200 30:30 Packet Squirrel: Man-in-the-Middle Attacks 34:20 Flipper Zero: Radio Frequencies & Rolling Codes 39:34 Certifications: Security+ & Network+ 44:24 Cloud Credits & AI Subscriptions 46:26 Unlimited Budget Gifts 47:25 Black Hat & DefCon Tickets 48:14 Mac vs. Windows vs. Linux for Hacking 51:53 Giveaway: The "Hacker" Hoodie 57:58 Holiday Security Warning Giveaway: Comment your dream (or worst) cyber gift — we’ll randomly pick one subscriber for a genuine “hacker” hoodie (minimum 10 comments). Everything here is our personal hot takes — not our employers, not legal advice. Just three idiots with mics trying to keep you from bad gifts. — Damian, Troy & Fern DTF Cyber Podcast #CyberGifts #Christmas2025 #CyberSecurity #Infosec #Career http://cyberpodcast.net Spotify: http://spotify.cyberpodcast.net Apple: http://apple.cyberpodcast.net X: https://x.com/dtfcyberpodcast IG: https://www.instagram.com/dtfcyberpodcast/ Linkedin: DTF: https://www.linkedin.com/company/dtf-cyber-podcast/ Damian: https://www.linkedin.com/in/damianchung/ Troy: https://www.linkedin.com/in/kosovotroy/ Fern: https://www.linkedin.com/in/fernrojasaz/ Business Inquiries: dtf at cyberpodcast dot net Everything here is our personal hot takes — not our employers, not the vendors we roast, not legal advice. Just three idiots with mics trying to keep you from getting pwned.

    59 min
  6. Your Google Account Just Got Hacked – And You Didn’t Click Anything

    12/09/2025

    Your Google Account Just Got Hacked – And You Didn’t Click Anything

    2.5 billion daily account-takeover attempts. That’s one every 34 microseconds. Damian, Troy & Fern go full send-it mode on the 2025 ATO playbook: SIM swaps, session-token theft, MFA fatigue bombing, rogue QR codes, deep-fake family scams, and the OAuth tokens you granted in 2017 that are still wide open. Timestamps 00:00 – Intro 05:20 – SIM swaps & losing your phone number in minutes 09:40 – Why password resets are useless (session tokens survive) 14:20 – MFA fatigue / push-notification bombing 19:10 – OAuth & old third-party app tokens nobody revokes 24:30 – Rogue QR codes at restaurants & hotels 30:15 – Enterprise reality – weekly O365 token theft 37:40 – Non-human identities & service-account sprawl 44:50 – Passkeys in 2026 – will increase ATO risk if misconfigured 51:00 – Public Wi-Fi, juice jacking & QR code myths 58:00 – Closing thoughts Discord (coming soon) #AccountTakeover #SIMSwap #MFAFatigue #CyberSecurity #Infosec #ZeroTrust https://www.fcc.gov/consumers/scam-alert/grandparent-scams-get-more-sophisticated https://newsroom.servicenow.com/press-releases/details/2025/ServiceNow-to-Expand-Security-Portfolio-With-Acquisition-of-Vezas-Leading-AI-native-Identity-Security-Platform/default.aspx https://thehackernews.com/2025/04/customer-account-takeovers-multi.html https://www.gartner.com/reviews/market/identity-threat-detection-and-response-itdr http://cyberpodcast.net Spotify: http://spotify.cyberpodcast.net Apple: http://apple.cyberpodcast.net X: https://x.com/dtfcyberpodcast IG: https://www.instagram.com/dtfcyberpodcast/ Linkedin: DTF: https://www.linkedin.com/company/dtf-cyber-podcast/ Damian: https://www.linkedin.com/in/damianchung/ Troy: https://www.linkedin.com/in/kosovotroy/ Fern: https://www.linkedin.com/in/fernrojasaz/ Business Inquiries: dtf at cyberpodcast dot net Everything here is our personal hot takes — not our employers, not the vendors we roast, not legal advice. Just three idiots with mics trying to keep you from getting pwned.

    1h 4m
  7. AI Just Hacked the World With Almost No Humans Involved

    11/27/2025

    AI Just Hacked the World With Almost No Humans Involved

    Anthropic’s new report is a wake-up call: hackers turned Claude into a near-autonomous espionage agent that handled 90% of the attack chain by itself. The future is officially here… and it’s terrifying. We go deep on how they did it, why current defenses are cooked, and what defenders need to do yesterday. Timestamps 00:00 – The scariest line Anthropic has ever published 01:17 – “Set it and forget it” – the new AI attack paradigm 04:04 – Breaking attacks into tiny, undetectable chunks 13:48 – Attackers flipped the script: 90% AI, 10% human 17:26 – Why defense has to 10x its speed right now 27:11 – SOC automation, log nightmares & the data problem nobody’s solved 33:18 – Thousands of API calls/sec + AI writing its own evasion logic 40:31 – Regulation debate: should frontier models be locked down? 51:38 – Back to basics… but the basics just changed forever 55:21 – Raw reactions: “Is this even real?” 58:09 – The silver lining (yes, there is one) 01:03:13 – When’s the next one coming? Like if this freaked you out, comment your biggest fear for 2026, and smash subscribe — the AI cyber war just started. #AICyberAttack #ClaudeAI #Cybersecurity #AgenticAI # infosec http://cyberpodcast.net Spotify: http://spotify.cyberpodcast.net Apple: http://apple.cyberpodcast.net X: https://x.com/dtfcyberpodcast IG: https://www.instagram.com/dtfcyberpodcast/ Linkedin: DTF: https://www.linkedin.com/company/dtf-cyber-podcast/ Damian: https://www.linkedin.com/in/damianchung/ Troy: https://www.linkedin.com/in/kosovotroy/ Fern: https://www.linkedin.com/in/fernrojasaz/ Business Inquiries: dtf at cyberpodcast dot net

    1h 3m
  8. 60+ Cybersecurity Tools Per Company: Fix Tool Sprawl Chaos Now

    11/17/2025

    60+ Cybersecurity Tools Per Company: Fix Tool Sprawl Chaos Now

    The average company now runs 60+ cybersecurity tools — more apps than most people have on their phone. Is this making us safer… or just creating chaos, alert fatigue, and million-dollar shelf ware? In this episode, Damian, Troy, and Fern rip apart the tool sprawl epidemic: why CISOs are drowning in overlapping platforms, how 7% of IT budget became the “standard,” when best-of-breed actually beats single-vendor, and how to start consolidating before you go insane. Real talk from three practitioners who’ve lived the nightmare. Timestamps (short & sweet edition) 00:00 – 60+ tools per company… are we actually safer? 03:17 – The 7% of IT budget “rule” – is it enough? 06:21 – Cybersecurity isn’t insurance, it’s risk mitigation 11:05 – Shelfware nightmare: tools bought, never used 14:30 – Single-vendor vs best-of-breed debate 28:40 – The shiny new toy problem every CISO faces 36:20 – Analyst alert fatigue is real 40:05 – Best-of-breed wins when tools actually talk 47:36 – You need a 3–5 year roadmap (even if you won’t be there) 49:02 – AI wasn’t on anyone’s 5-year plan… now what? 51:09 – Pro tips for CISOs & analysts 54:35 – Wrap-up & see you next week! Subscribe so you never miss the raw truth about cybersecurity. 🔔 Turn on notifications – new episode every Monday! 💬 Comment: How many security tools does YOUR org actually use? #Cybersecurity #ToolSprawl #CybersecurityTools #CISO #BestOfBreed #SecurityConsolidation #DTFCyberPodcast Linkedin: Damian: https://www.linkedin.com/in/damianchung/ Troy: https://www.linkedin.com/in/kosovotroy/ Fern: https://www.linkedin.com/in/fernrojasaz/ Business Inquiries: dtf at cyberpodcast dot net

    54 min

Ratings & Reviews

5
out of 5
2 Ratings

About

Damian, Troy, and Fern break down the week’s biggest hacks, breaches, and zero-days with zero corporate filter. Expect strong opinions, dark humor, and actionable intel from three pros who’ve been in the trenches. New episodes drop when the news is too wild to ignore.