CYBR.HAK.CAST

CYBR.SEC.Media

CYBR.HAK.CAST is the official podcast of CYBR.HAK.CON., where cybersecurity professionals, hackers, and thought leaders come together to share their stories, insights, and lessons from the front lines of the infosec world. Hosted by Michael Farnum and Phillip Wylie, the show dives deep into topics shaping the modern cybersecurity landscape - from red teaming and ethical hacking to threat intelligence, blue team tactics, and the human side of security. Each episode brings candid conversations with speakers and experts from CYBR.HAK.CON., offering listeners a behind-the-scenes look at the people and ideas driving the future of cyber defense and hacking culture.

  1. 6d ago

    To Air Gap or Not To Air Gap with Sean Satterlee

    In this episode of CYBR.HAK.CAST, Phil and Michael sit down with medical device security professional and penetration tester Sean Satterlee. Sean shares his path into healthcare security and breaks down the unique challenges of testing and securing connected medical devices. The conversation explores legacy systems, FDA requirements, SBOMs, network segmentation, telemetry, and the growing overlap between medical device security, IoT, and OT. Along the way, the group discusses how cybersecurity failures in healthcare can quickly become real-world operational and patient-safety issues. Do you have a question for the hosts? Reach out to us at media@cscgroupllc.com  Thinks Mentioned: Sean’s CYBR.HAK.CON. 2026 Talk - https://youtu.be/Xkx2LxeurNA?si=k5dKLDOn45Tb0aFHLinkedIn Article - https://www.linkedin.com/pulse/legacy-devices-modern-hospital-sean-satterlee-rs8yc   In this episode: Host: Michael FarnumHost: Phillip WylieGuest: Sean SatterleeDirector: Bill BrennerProducer: Lauren AndrusEditor: Ivan BasconcilloMusic by: Kike GutzKeep up with our Conferences and Events: LinkedInXFacebookInstagramTikTokCYBR.SEC.CON.OT.SEC.CON.CYBR.HAK.CON.Keep up with CYBR.SEC.Media: LinkedInXFacebookInstagramTikTokYouTubeLearn About CYBR.SEC.Careers Non-Profit Efforts CYBR.SEC.CareersSubscribe to the podcast:  AppleSpotifyYouTubeListen to our other shows: CYBR.SEC.CASTCYBR.MindedCYBR.SignalThank you to our Media Partners: BarCode PodcastCyber Distortion PodcastKill Chain RadioThe Phillip Wylie ShowVulnerable U

  2. Jun 17

    There’s No Highway to the Risk Zone with John Kindervag

    Michael and Phil were joined at CYBR.HAK.CON. by John Kindervag, Chief Evangelist at Illumio and the creator of the Zero Trust Framework, for a wide-ranging conversation on risk vs. danger, personal resilience, and the future of AI.  Things mentioned: Rise of the Machines: A Project Zero Trust Story by George Finney - https://www.amazon.com/Rise-Machines-Project-Trust-Story/dp/1394303718Agentic AI + Zero Trust: A Guide for Business Leaders by Josh Woodruff - https://www.amazon.com/Agentic-AI-Zero-Trust-Business/dp/B0FQR3BFS3Right Into the Danger Zone: The False Comfort of Risk Management by John Kindervag - https://www.ft.com/partnercontent/illumio/right-into-the-danger-zone-the-false-comfort-of-risk-management.htmlHOU.SEC.CON. 2024 Keynote - https://youtu.be/TOG7EDH6dRw?si=z5PTdh-sOffRnZ3eDo you have a question for the hosts? Reach out to us at media@cscgroupllc.com  In this episode: Host: Michael FarnumHost: Phillip WylieGuest: John KindervagProduction: Bill BrennerEditing: Lauren AndrusMusic: Kike Gutz Keep up with Our Events:  LinkedInXFacebookInstagramKeep up with CYBR.SEC.Media: LinkedInXFacebookInstagramYouTubeTikTokCheck out our other shows: CYBR.SEC.CASTCYBR.MindedCheck out our Conferences and Events: CYBR.SEC.CON.OT.SEC.CON.CYBR.HAK.CON.Support CYBR.SEC.Careers Non-Profit Efforts CYBR.SEC.CareersSubscribe to the podcast:  AppleSpotifyThank you to our Media Partners: Barcode Podcast Cyber Distortion PodcastKill Chain RadioThe Phillip Wylie Show

  3. May 12

    CYBR.HAK.CAST Episode 14: Tim Medin

    On this episode of CYBR.HAK.CAST, Tim Medin joins hosts Michael Farnum and Phillip Wylie to talk about offensive security, the evolution of penetration testing, and why defenders need to stop relying solely on compliance checklists and start thinking like attackers. Along the way, the crew swaps war stories about old-school hacker culture, Dallas conference history, and why cybersecurity still misses the basics despite years of progress. SHOW NOTES: Things Mentioned: Red Siege: https://redsiege.com/Upcoming CYBR.SEC.Community events: https://www.cybrsecmedia.com/conference/CYBR.SEC.Careers: https://www.linkedin.com/company/cybr-sec-careers/about/ fundraisers:Cards for a Cause: https://www.linkedin.com/posts/cybr-sec-careers_cybrseccareers-nonprofit-cybersecurity-activity-7436794892787359744-v4CzEpisode 13 Timestamps: 00:00 – Welcome and CYBR.HAK.CON hype Michael Farnum and Phillip Wylie open the show, joke about football rivalries, and discuss the upcoming CYBR.HAK.CON conference in Dallas. Tim Medin joins the conversation and talks about why Dallas has long needed a larger hacker-focused event. 07:10 – Cybersecurity community and workforce development The hosts discuss the mission behind CYBR.SEC.Careers and their nonprofit work supporting youth and veterans entering cybersecurity through mentorship, education, and community programs. 10:15 – CYBR.HAK.CON speakers, villages, and AI CTFs Phillip and Michael preview the conference lineup, including Jason Haddix, Dustin “Wirefall” Dykes, and Larcy Robertson. They also discuss the AI Village, lockpicking, ham radio activities, and an AI-focused capture-the-flag challenge. 14:45 – Tim Medin’s origin story Tim shares how hacking curiosity started with bypassing school computer restrictions to play Wolfenstein in the early 1990s. He talks through his path from electrical engineering and OT systems into networking, penetration testing, and eventually founding Red Siege. 24:30 – Acuvant, FishNet, and merger chaos The group laughs about the infamous Acuvant/FishNet rivalry and the awkward branding chaos that followed their merger into Optiv. The discussion turns into a nostalgic look at old-school security culture and industry evolution. 34:00 – “Offense for Defense” and the problem with checkbox security Tim explains the philosophy behind his CYBR.HAK.CON talk, focused on teaching defenders how attackers actually operate. He discusses tools like BloodHound and PingCastle and argues that many organizations still miss foundational weaknesses because they focus too heavily on compliance instead of attacker behavior. 44:20 – Why “assume breach” changes penetration testing The conversation shifts into modern penetration testing methodology, including assumed breach scenarios where testers start with stolen credentials or internal access instead of trying to break in from scratch. The hosts explain why this more accurately reflects how real-world attackers operate today. 57:00 – Security culture, budgets, and uncomfortable truths The group discusses how some organizations intentionally avoid testing systems they know are vulnerable because they fear accountability more than compromise. Tim argues that security culture failures often become more dangerous than technical weaknesses. Do you have a questi

  4. Apr 29

    CYBR.HAK.CAST Episode 13: Winn Schwartau

    This episode of CyberHackCast features Winn Schwartau in a wide-ranging, philosophical discussion that moves from the early, experimental days of cybersecurity to today’s hyper-commercialized landscape—and into his current work on “cognitive security.” Schwartau argues that the biggest threat facing defenders isn’t just technical, but cognitive: overwhelming information flows that push humans into “mental DDoS.” He introduces the concept of “critical ignoring” as a prerequisite to critical thinking, framing cybersecurity, biology, and human cognition as interconnected systems governed by OODA loops. The conversation culminates in a provocative question: are we already experiencing a “cognitive Pearl Harbor,” where belief systems – not infrastructure – are the true attack surface? SHOW NOTES: Things Mentioned: Winn's website: https://www.winnschwartau.com/The Cognitive Security Institute: https://www.cognitivesecurityinstitute.org/Upcoming CYBR.SEC.Community events: https://www.cybrsecmedia.com/conference/CYBR.SEC.Careers: https://www.linkedin.com/company/cybr-sec-careers/about/ fundraisers:Cards for a Cause: https://www.linkedin.com/posts/cybr-sec-careers_cybrseccareers-nonprofit-cybersecurity-activity-7436794892787359744-v4CzEpisode 13 Timestamps: 00:00 – 06:00 — Intro + Community updates Hosts (Michael Farnham, Philip Wiley) open with banter and promote CyberHackCon, speakers, and CyberSecCareers nonprofit workforce initiatives. 06:00 – 14:00 — Schwartau’s origin story From fixing TVs as a kid to early work in computing and security in the 1980s. Emphasis on “tabula rasa” era—no rules, everything experimental. 14:00 – 20:00 — Early cybersecurity vs. today Discussion on how innovation has been constrained by VC pressure, commercialization, and loss of “garage-level” experimentation. 20:00 – 28:00 — Transition to cognitive security Schwartau explains his shift from traditional cybersecurity to studying cognition, neurophysics, and system-level survival models. 28:00 – 40:00 — “Critical ignoring” vs. critical thinking Core thesis: humans cannot process all incoming information. Filtering (ignoring) must come before analysis, or we enter cognitive overload (“mental DDoS”). 40:00 – 50:00 — Parallels to SOC operations Hosts connect ideas to alert fatigue and AI-driven SOC tooling—reducing noise to enable meaningful analysis. 50:00 – 60:00 — OODA loops and time-based reality Everything—cyber, biology, cognition—operates in delayed reaction loops. We are always reacting to the past. 60:00 – 70:00 — Cognitive overload and misinformation Exploration of disinformation, narrative formation, and limits of human processing in modern environments. 70:00 – End — “Cognitive Pearl Harbor” Schwartau poses the central question: has a large-scale cognitive attack already occurred? Discussion spans individual, enterprise, and societal levels. Do you have a question for the hosts? Reach out to us at media@cscgroupllc.com  Keep up with CYBR.SEC.CON.: LinkedInX

  5. Apr 14

    CYBR.HAK.CAST Episode 12: Fergus Hay of The Hacking Games

    In this episode of CYBR.HAK.CAST, hosts Phil Wylie and Michael Farnum sit down with Fergus Hay, CEO and co-founder of The Hacking Games, to explore how the cybersecurity industry is overlooking a massive pool of untapped talent: young gamers. Hay shares how his journey began not from a technical background but from concern as a parent, after learning that many cybercriminals are recruited from gaming communities. The conversation dives into the need to reframe hacking as a creative, problem-solving mindset rather than purely criminal behavior, the strong overlap between gamers and hackers, and why traditional cybersecurity training fails to connect with Gen Z. Together, they discuss how engaging kids within gaming environments — rather than restricting them — can help guide them toward ethical hacking and ultimately strengthen the future cybersecurity workforce. SHOW NOTES: Things Mentioned: The Hacking Games: https://www.thehackinggames.com/Upcoming CYBR.SEC.Community events: https://www.cybrsecmedia.com/conference/CYBR.SEC.Careers: https://www.linkedin.com/company/cybr-sec-careers/about/ fundraisers:Cards for a Cause: https://www.linkedin.com/posts/cybr-sec-careers_cybrseccareers-nonprofit-cybersecurity-activity-7436794892787359744-v4CzCYBR CLAY SHOOT: https://www.linkedin.com/posts/cybr-sec-careers_cybrclayshoot-cybersecurity-cybercareers-activity-7435353518951084033-1iw9Proceeds support CYBR.SEC.Careers mission is to build a strong, diverse workforce by providing career exposure, access to education and certifications, and mentorship for students and veterans pursuing careers in cybersecurity.Episode 12 Timestamps: 0:00 – 1:25 Intro, conference chatter, Zero Trust World recap, RSA mentions 1:25 – 3:30 Guest intro: Fergus Hay + early discussion about hacker culture and community 3:30 – 5:00 CYBR.HAK.CON promotion (lineup, CFPs, community focus) 5:00 – 7:30 Fergus origin story + founding of The Hacking Games Not technical backgroundParental motivationDiscovery: kids are being groomed via gaming platforms7:30 – 9:30 Parenting + real-world exposure Controlled gaming environments still vulnerableGrooming realityQuestion: regulate vs guide kids9:30 – 12:00 Reframing hacking Media failure“Hacker = criminal” narrative problemHacking as a mindset, not a crime12:00 – 14:00 Gamers = hackers pipeline Pattern recognitionNeurodiversityAlan Turing + Enigma analogy14:00 – 16:00 Gaming as a training ground 3.2B gamers93% of Gen Z gaming“Gaming is a live laboratory”16:00 – 18:30 The Hacking Games model Gen Z teaching Gen ZAuthenticity over corporate trainingYouth-led cybersecuri

About

CYBR.HAK.CAST is the official podcast of CYBR.HAK.CON., where cybersecurity professionals, hackers, and thought leaders come together to share their stories, insights, and lessons from the front lines of the infosec world. Hosted by Michael Farnum and Phillip Wylie, the show dives deep into topics shaping the modern cybersecurity landscape - from red teaming and ethical hacking to threat intelligence, blue team tactics, and the human side of security. Each episode brings candid conversations with speakers and experts from CYBR.HAK.CON., offering listeners a behind-the-scenes look at the people and ideas driving the future of cyber defense and hacking culture.