DTF Cyber Podcast

Cyber Podcast

Damian, Troy, and Fern break down the week’s biggest hacks, breaches, and zero-days with zero corporate filter. Expect strong opinions, dark humor, and actionable intel from three pros who’ve been in the trenches. New episodes drop when the news is too wild to ignore.

  1. 3d ago

    Is Your Employer Spying on You? The Truth About Workplace Monitoring | #DTF051

    Are Flock Safety cameras keeping our neighborhoods safe, or are we sleepwalking into an unchecked private surveillance dragnet? When does legitimate workplace Data Loss Prevention (DLP) cross the line into invasive employee bossware? In Episode 51 of the DTF Cyber Podcast, Damian Chung, Troy Wilkinson, and Fern break down the escalating battle between Security and Privacy. From AI-driven license plate recognition (ALPR) grids and 4th Amendment violations to keystroke logging, SOC alert fatigue, and who watches the administrators holding root access, the crew debates where the boundaries must be drawn. Timestamps: 00:00 - Cold Open: Keystroke Logging vs. Telemetry Visibility 00:51 - Episode 51 Kickoff: Security vs. Privacy Debate 01:46 - Average Fern's Neighborhood Flock Camera Discovery 03:16 - Amber Alerts & The Pro-Surveillance Argument 04:32 - Troy's Lens: NCIC Auditing & Who Watches the Watchers? 06:20 - Crossing State Lines & The 4th Amendment Violation 08:15 - Minority Report Reality: Tracking Intent vs. Actions 09:16 - Workplace Surveillance & European Data Subject Rights 10:59 - How Machine Vision & SIEM Correlation Change the Game 14:40 - Facial Recognition False Positives & Arrest-First Risks 16:45 - The Thanos Ratio: 14,605,000 Defensive Wins vs. 1 Breach 20:38 - Zero Trust Governance, Admin Logs & Immediate Termination 23:45 - Threat Actor Attribution, Obfuscation & False Flags 26:00 - The 1984 Surveillance State & Data Aggregation Hazards 26:53 - Fern's Missing Child Story & Neighborhood Ring Cameras 33:22 - Tiered Access, Admin Tickets & Immediate Termination 46:37 - Mandatory Incident Reporting Regulations & CISA Rules 51:56 - Telemetry Lakes vs. Intrusive HR Bossware 01:05:43 - Outro & Custom DTF Outro Track

    Is Your Employer Spying on You? The Truth About Workplace Monitoring | #DTF051
  2. Aug 17

    50 Episodes of DTF Cyber: What We Learned & Challenge Coin Giveaway! #DTF050

    In this milestone episode, Damian, Troy, and Fern look back on 14 months of podcasting, growing from 1,000 to nearly 7,000 subscribers, and moving into a brand-new studio. We dive deep into the biggest lessons we've learned along the way: how AI has rapidly transformed our workflows and security operations, the unwritten rules of vendor-sponsored CISO dinners, navigating corporate ethics, and what it really takes to break into the cybersecurity industry today. 🪙 EPISODE 50 GIVEAWAY: To thank our listeners for reaching 50 episodes, we are giving away 10 custom, heavy-duty DTF Cyber Challenge Coins! How to enter: * Make sure you are subscribed to the channel. * Like this video. * Leave a comment below letting us know what topic you want us to cover next! ⏱️ Timestamps * 00:00 - Welcome to Episode 50 & The New Studio Setup * 03:04 - The Unreleased "Episode 000" & Pivoting the Show Format * 05:04 - Fern’s Daughter Out-Pacing the Podcast on YouTube * 07:02 - Damian on Communicating Complex Security Concepts * 08:33 - The "Bowling Alley on Fire" AI Guardrails Analogy * 10:03 - Are Companies Really Blocking AI in 2026? * 11:27 - Looking Back at Episode Predictions & The Evolution of AI * 13:05 - Phone Games, Token Limits, and Micro-Transactions in AI * 17:58 - Why Career & Internship Topics Resonate Most with Listeners * 20:25 - Has Technology Changed Too Fast for Old Podcast Episodes? * 23:14 - How Damian, Troy, and Fern Personally Use AI Every Day * 26:47 - Sanitizing Contracts & Redlining Terms with AI * 28:25 - Building Custom Apps, Automated Trading Bots & Agentic Defense * 29:59 - The Process Behind the AI End-Song Music & B-Roll Visuals * 32:00 - Why We Don't Take Sponsors & Keeping the Show Authentic * 35:07 - Why You Don't Need to Be the "Smartest Person in the Room" * 39:32 - The "7-Episode Curse" & Committing to Real, Organic Growth * 41:48 - Shoutout to Andrew (The Ginger Hacker) & Community Initiatives * 45:09 - CISO Dinners: How Vendor Networking Should Work * 49:15 - Marketing Attribution, Account Lists & Behind-the-Scenes Sales Budget * 55:32 - CISO Anxiety, "Speed Dating" Conferences & Ethics Boundaries * 1:00:18 - Protecting Your Reputation as a CISO * 1:02:32 - Cutting Through the Sales Noise & Dealing with Cold Emails * 1:06:07 - How Networking Built Real-World Security Connections * 1:07:19 - Episode 50 Challenge Coin Giveaway Details!

    50 Episodes of DTF Cyber: What We Learned & Challenge Coin Giveaway! #DTF050
  3. Aug 3

    Extortion WITHOUT Encryption: Why Hackers Skipped Ransomware

    What happens when cybercriminals don't even bother encrypting your files, but still demand $5 million? In Episode 49 of DTF Cyber, Damian, Troy, and Fern sit down with former 3x Financial CISO Brian Rosario to break down a terrifying shift in the threat landscape: Extortion Without Encryption. We analyze recent breach news (like Abbott Laboratories) to reveal how bad actors quietly exfiltrate crown jewel data, bypass traditional backup recovery options, and hold reputational/SEC clocks over your head. Plus, we dive into the risks of "Vibe Coding" with AI, unmonitored OAuth tokens, and how to build a security culture without ego. ---------------------------------------------------------------- 📌 TIMESTAMPS: 00:00 - Cold Open: $5M Ransom, Zero Encrypted Files 00:49 - Guest Intro: 20-Year CISO Veteran Brian Rosario 01:50 - Abbott Labs Incident: The Shift Away From Encryption 03:55 - Why Bad Actors Pre-2020 Pivot To Pure Data Exfiltration 06:32 - Why Cloud Snapshots & Backups Aren't Stopping Extortion 08:28 - Supply Chain Threats: Codebases & Hardcoded Secrets 10:30 - The SolarWinds & NotPetya Effect 11:47 - Email Protection & Siphoning CEO Mailboxes via OAuth 14:35 - "Vibe Coding" & Unmonitored Citizen Developers 18:30 - The Explosive Rise of AI Governance Platforms 20:26 - "Is It Better To Not Know?" The CISO Visibility Dilemma 23:27 - Getting Ego Out of Security Leadership 28:20 - Analyzing the Kill Chain: Vishing, Smishing & DefCon Lessons 36:06 - SEC Disclosures & Data Layer Visibility 42:30 - Data at Rest Encryption: Is AI The Solution?

    Extortion WITHOUT Encryption: Why Hackers Skipped Ransomware
  4. Jun 29

    The Top 10 Cybersecurity Metrics Every CISO Should Track

    Are you tracking cybersecurity metrics that actually keep your business secure, or are you just reporting "the weather" to your executive board? In Episode 48 of the DTF Cyber Podcast, Damian Chung, Troy Wilkinson, and Fern sit down with enterprise security operations leader Jason Barnes to look past the vanity metrics and deliver a definitive blueprint on the metrics that actually drive decisions. We break down the operational realities of security telemetry across three critical categories: operational speed, corporate risk liability, and the human element. From navigating the true timeline of Mean Time to Detect (MTTD) to calculating hard-dollar risk through the FAIR model, this episode details exactly how to align engineering data with courtroom and boardroom defensibility. 📌 Key Timestamps: 00:00 - Security Metrics vs. Reporting the Weather 01:53 - Welcoming Special Guest Jason Barnes 02:50 - Ripping Dashboards Apart: Grouping by Category 03:37 - Metric 1: Mean Time to Detect (MTTD) & Attacker Dwell Time 05:26 - Fern’s "Intruder in the Attic" Analogy 08:00 - Addressing Timeline Manipulation in SOC Detection Logic 09:51 - Metric 2: Mean Time to Respond & Remediate (MTTR) 12:41 - Alert Fatigue: The Danger of Acknowledging Without Triaging 15:55 - Metric 3: Patch Cadence & The 72-Hour KEV Mandate 24:14 - Brand Reputation vs. Lost Sales: Calculating True Impact 27:03 - Metric 4: Security Control Coverage & Mapping MITRE ATT&CK 31:16 - The Shelfware Epidemic: Why 80% of Tools are Half-Deployed 32:02 - Metric 5: Supply Chain & Managing Third-Party Risk 38:31 - Metric 6: Cyber Risk, Financial Exposure, & The FAIR Model 45:19 - Metric 7: Phishing Repeat Offenders & Broken Human Firewalls 00:49:09 - Metric 8: Alert-to-Analyst Ratio & Workforce Burnout 00:50:44 - Operationalization Failures: Growth in Alerts From New Tools 00:51:51 - Metric 9: Security Investment ROI & Eliminating Uncertainty 00:53:40 - Guilt by Association: Why Shelfware Kills Long-Term Sales Relationships 00:58:01 - Metric 10: Incident Root-Cause Trends & After Action Reports 01:03:14 - Case Management vs. Using AI to Summarize Root Cause Analysis (RCA) Themes 01:06:04 - Metric 11 (BONUS JASON BARNES LANE): Exploitability & Internal Surface Attack Mapping (CMDB)

    The Top 10 Cybersecurity Metrics Every CISO Should Track
  5. Jun 23

    Is Your Entry-Level Cyber Job Officially Dead? | #DTF047

    The traditional cybersecurity entry-level pipeline is fundamentally changing. In Episode 47 of the DTF Cyber Podcast, Damian, Troy, and Fern break down the rapid evolution of security operations centers and tackle a stark reality: the traditional Tier-1 SOC analyst job is officially dead. With modern baseline metrics proving that AI platforms are automating over 50% of basic alert triage and log parsing, our hosts debate what this means for university programs, upcoming graduates, and mid-career professionals looking to break into the industry. Fern introduces Jevons Paradox to explain the counterintuitive explosion of corporate data ingestion. Meanwhile, Damian and Troy face off on the corporate risk management landscape of "Building vs. Buying" automated security operations tools, the hidden dangers of undocumented enterprise AI sprawl, and why cybersecurity hiring is morphing from a wide-bottom pyramid into a highly specialized diamond. Whether you are a tier-1 analyst trying to stay relevant, a student planning your career map, or an enterprise security leader trying to scale a global team, this episode delivers raw, unscripted strategy on how to reinvent your technical skillset before you get left behind. --- ⏱️ CHAPTER TIMESTAMPS --- 00:00:00 - The University Pipeline Panic: Training for Dead Jobs? 00:01:07 - Welcome to Episode 47: The Level-1 SOC Analyst Job is Dead 00:01:59 - The AI SOC Market Explosion: Tracking 60+ New Automation Vendors 00:03:50 - Troy’s Evolution Analogy: From the Abacus to the Digital Calculator 00:04:17 - The Triage Threshold: Do Students Still Need to Learn Manual Log Parsing? 00:06:08 - Function vs. Job: Redefining Security Operations Metrics 00:09:29 - Road Trip Retrospective: Looking Back at AWS re:Invent 00:10:48 - The Gartner Baseline Metric: 50% of Tier-1 Tasks Automated 00:11:16 - The Anthropic Velocity: Unpacking the 8x Capability Multiplier 00:13:53 - Fern's Analogy Corner: Jevons Paradox & Exponential Data Lakes 00:17:01 - Autonomous Detection Engineering: Will AI Manage Its Own Ingestion? 00:22:12 - CISO Executive Assessment: The Build vs. Buy Infrastructure Dilemma 00:23:27 - Enterprise AI Sprawl: The Risk of Shadow API Keys & Tokens 00:29:07 - The Career Shift: Moving Up to AI Auditing & Agent Orchestration 00:32:18 - The Talent Diamond: Why Cyber Hiring is Changing Shape 00:35:10 - Alternative Entry Points: Vulnerability Management & GRC Realities 00:37:46 - Token Productivity Markers: Tracking Misuse & Side-Hustle Risks 00:41:30 - Damian's Hiring Blueprint: Why Growth Trajectory Beats a Degree 00:52:39 - The Non-Linear Path: Transitioning via Help Desks & IT Admins 00:58:35 - The Art of Interviewing: Damian's 300+ Career SOC Direct Hires 01:01:30 - Producer's Final Verdict: Reinventing Yourself for Judgment Day 01:04:50 - Episode Song - Where the Agents Hunt

    Is Your Entry-Level Cyber Job Officially Dead? | #DTF047
  6. Jun 15

    Government RECALLS AI Code?! The Fall of Fable 5 | #DTF046

    The US government just laid down the hammer, officially recalling frontier AI models Fable 5 and Mythos 5. In Episode 46 of the DTF Cyber Podcast, Damian, Troy, and Fern dive into the chaos. Did a sophisticated prompt jailbreak a vulnerability-chaining machine into a zero-day weapon? What does this sudden regulation mean for corporate security teams, supply chain resiliency, and the blue team vs. red team arms race? We also pull back the curtain on Anthropic's quiet 30-day data retention policy changes and discuss why the entry-level SOC analyst job might be gone in a year. Episode Timestamps: 00:00 - Fern can’t log into Anthropic 01:16 - Clearing up miscommunications: Who is blocked? 03:50 - Is this a third-party risk or supply chain resilience issue? 04:30 - The geopolitics of AI: Handcuffing US developers 06:40 - Protecting critical infrastructure from weaponized zero-days 08:45 - The risk of wrappers and pinning a business to a single model 11:22 - CEO Dario Amodei’s ironic stance on government AI agencies 14:55 - Diversifying your enterprise portfolio of AI tools 17:05 - The fine print: 30-day prompt retention and privacy traps 19:15 - RSI: Understanding Recursive Self-Improvement suppression 21:00 - Shadow IT vs. Shadow AI in corporate environments 22:00 - Corporate MSAs: Why SaaS giants don’t negotiate terms 24:56 - AI Discovery & AI Governance: Tokenizing PII traffic 26:50 - Thick clients, APIs, and enforcing MCP gateway controls 29:34 - The CISO WhatsApp groups blow up over the weekend 32:45 - Secure by Design: Is AI a lazy shortcut for secure coding? 36:50 - Skip the fundamentals? Why laziness equals a data breach 39:40 - Behavior Drift: When AI forgets what a high vulnerability is 41:50 - Is AI coming for your job? The death of Tier 1 SOC analysts 46:30 - Going to school to learn a tool vs. learning how to learn 50:17 - Episode Final Predictions: The shift to private, local models

    Government RECALLS AI Code?! The Fall of Fable 5 | #DTF046
  7. May 26

    The 3-Day Patch Trap: Security vs. Operational Chaos | #DTF045

    The patching paradigm has officially broken. CISA is considering a massive shift to a mandatory 3-day patch window for active exploits, but is a 72-hour turnaround an operational shield or a localized denial-of-service attack on your own engineering teams? In Episode 45, Damian, Troy, and Fern dive headfirst into the brutal reality of emergency vulnerability management. They tear down the growing chasm between risk-aware CISOs and resource-strapped IT operations, discuss how advanced AI models like Alibaba's newest frontier tech are accelerating multi-stage exploit chaining, and debate why checking a compliance box doesn't mean your network is actually secure. From fish tank thermometer pivots to modern pit crew optimization, learn how to audit your external attack surface and build a resilient defense-in-depth architecture before the next zero-day drops. 00:01:07 — The 3-Day Patch Deadline Panic 00:02:06 — Breaking Down the CISA KEV Patch Window 00:02:30 — Fern's Story: The System Admin's Weekend Nightmare 00:03:15 — Breaking Down the CISA KEV Prioritization Catalog 00:04:39 — The Shrinking External Attack Surface Reality Window 00:06:49 — IoT Perimeters: The Famous Fish Tank Thermometer Pivot 00:09:37 — Restricting Lateral Threat Movement with Microsegmentation 00:10:25 — Monitoring Hidden Network Risks & Shadow AI Sprawl 00:14:01 — Exploit Chaining: Autonomous AI Defenses & Alibaba's Frontier Model 00:15:40 — CIRCIA Reporting Directives vs. Mitigation Rules 00:22:15 — Troy's CISO Perspective: Change Advisory Boards vs. Absolute Chaos 00:25:46 — The Innovation Gap: Why Automated Testing Trumps Manual Code 00:28:01 — Debate: Does Compliance-First Security Make Us Vulnerable? 00:33:55 — The Great Debate: Staged Deployment Ring-Fencing vs. Total Lockout 00:37:56 — Progressive Update Flows & Automated Patch Verification Staging 00:43:40 — Shifting the Burden: Formal Risk Transfer to the CIO's Office 00:48:32 — Damian's Technical Takeaway for Security Infrastructure Engineers 00:49:45 — Troy's Strategic Insight for Corporate Executive Directors 01:01:14 — Fern's Pit Crew Analogy

    The 3-Day Patch Trap: Security vs. Operational Chaos | #DTF045
  8. May 18

    The True Cost of AI Hidden Token Costs and Cloud Charges| #DTF044

    Are you caught between a bedrock and a hard place with your organization's cloud budget? In Episode 44 of the DTF Cyber Podcast, Damian, Troy, and Fern break down the massive, unexpected financial and operational risks of enterprise AI deployments. From unmonitored AI agents creating a 100,000 "recursive loop" bill overnight to non-technical employees "vibe coding" insecure software with hardcoded secrets, the team looks past the AI hype to expose the real logistics of Day 2 operations. They also dive into the invisible data lake "IO tax," the legal pitfalls of building side projects on corporate tenants, and recent procurement data from Tropic revealing an automatic 20% to 30% "AI tax" on SaaS contract renewals. Don't let runaway token costs erode your profit margins. Hit that subscribe button, leave a thumbs up, and learn how to implement the hard engineering and financial guardrails your business needs today! TIMESTAMPS 00:00:10 - Recursive Loops & The $100,000 Bill Surprise 00:01:14 - Job Security vs. Downsizing Human Capital 00:03:03 - Vibe Coding & Bursting Credit Card Limits 00:07:42 - Model Right-Sizing: Avoiding Over-Compute 00:09:50 - The Invisible Data Lake Tax 00:10:48 - Evaluating Hidden AI Compute Fees in SaaS 00:13:29 - Token Bloat and the Field of Haystacks 00:17:28 - The Cascading Effects of Pay-Per-Use Metering 00:19:19 - The Rise of "Shadow Developers" 00:23:18 - Side Projects & Corporate Intellectual Property Traps 00:25:04 - Implementing Shadow AI Discovery & Security Tools 00:32:18 - The Startup Compliance Dilemma (The Lack of SOC 2) 00:33:21 - Secure Coding Vulnerabilities & AI Hardcoded Secrets 00:41:21 - Tropic's Procurement Insights: Navigating the SaaS AI Tax 00:51:01 - Engaging Finance in AI Strategy & Enforcing Guardrails http://cyberpodcast.net Spotify: http://spotify.cyberpodcast.net Apple: http://apple.cyberpodcast.net X: https://x.com/dtfcyberpodcast IG: https://www.instagram.com/dtfcyberpodcast/ Linkedin: DTF: https://www.linkedin.com/company/dtf-cyber-podcast/ Damian: https://www.linkedin.com/in/damianchung/ Troy: https://www.linkedin.com/in/kosovotroy/ Fern: https://www.linkedin.com/in/fernrojasaz/ Business Inquiries: dtf at cyberpodcast dot net Everything here is our personal hot takes — not our employers, not the vendors we roast, not legal advice. Just three idiots with mics trying to keep you from getting pwned.

    The True Cost of AI Hidden Token Costs and Cloud Charges| #DTF044

Ratings & Reviews

5
out of 5
2 Ratings

About

Damian, Troy, and Fern break down the week’s biggest hacks, breaches, and zero-days with zero corporate filter. Expect strong opinions, dark humor, and actionable intel from three pros who’ve been in the trenches. New episodes drop when the news is too wild to ignore.