622 episodes

7 Minute Security is a weekly information security podcast focusing on penetration testing, blue teaming and building a career in security. The podcast also features in-depth interviews with industry leaders who share their insights, tools, tips and tricks for being a successful security engineer.

7 Minute Security Brian Johnson

    • Technology
    • 4.7 • 68 Ratings

7 Minute Security is a weekly information security podcast focusing on penetration testing, blue teaming and building a career in security. The podcast also features in-depth interviews with industry leaders who share their insights, tools, tips and tricks for being a successful security engineer.

    7MS #623: Prelude to a Tale of Pentest Pwnage

    7MS #623: Prelude to a Tale of Pentest Pwnage

    Today’s prelude to a tale of pentest pwnage talks about something called “spnless RBCD” (resource-based constrained delegation).  The show notes don't format well here in the podcast notes, so head to 7minsec.com to see the notes in all their glory.

    • 24 min
    7MS #622: Migrating from vCenter to Proxmox - Part 1

    7MS #622: Migrating from vCenter to Proxmox - Part 1

    Sadly, the Broadcom acquisition of VMWare has hit 7MinSec hard – we love running ESXi on our NUCs, but ESXi free is no longer available.  To add insult to injury, our vCenter lab at OVHcloud HQ got a huge price gouge (due to license cost increase; not OVH’s fault).  Now we’re exploring Proxmox as an alternative hypervisor, so we’re using today’s episode to kick off a series about the joys and pains of this migration process.

    • 16 min
    7MS #621: Eating the Security Dog Food - Part 6

    7MS #621: Eating the Security Dog Food - Part 6

    Today we revisit a series about eating the security dog food – in other words, practicing what we preach as security gurus!  Specifically we talk about:
    We’re going to get a third-party assessment on 7MinSec (the business) Tips for secure email backup/storage Limiting the retention of sensitive data you store in cloud places

    • 23 min
    7MS #620: Securing Your Mental Health - Part 5

    7MS #620: Securing Your Mental Health - Part 5

    Today we’re talking about tips to deal with stress and anxiety:
    It sounds basic, but take breaks – and take them in a different place (don’t just stay in the office and do more screen/doom-scrolling) I’ve never gotten to a place in my workload where I go “Ahhh, all caught up!” so I should stop striving to hit that invisible goal. Chiropractic and back massages have done wonders for the tightness in my neck and shoulders For me, video games where you punch and kick things relieves stress as well (including a specific game that’s definitely not for kids!)

    • 22 min
    7MS #619: Tales of Pentest Pwnage – Part 56

    7MS #619: Tales of Pentest Pwnage – Part 56

    We did something crazy today and recorded an episode that was 7 minutes long!  Today we talk about some things that have helped us out in recent pentests:
    When using Farmer to create “trap” files that coerce authentication, I’ve found way better results using Windows Search Connectors (.searchConnector-ms) files This matrix of “can I relay this to that” has been super helpful, especially early in engagements

    • 7 min
    7MS #618: Writing Savage Pentest Reports with Sysreptor

    7MS #618: Writing Savage Pentest Reports with Sysreptor

    Today’s episode is all about writing reports in Sysreptor.  It’s awesome!  Main takeaways:
    The price is free (they have a paid version as well)! You can send findings and artifacts directly to the report server using the reptor Python module Warning: Sysreptor only exports to PDF (no Word version option!) Sysreptor has helped us write reports faster without sacrificing quality

    • 38 min

Customer Reviews

4.7 out of 5
68 Ratings

68 Ratings

mvelasco07 ,

Highly recommend!

Can’t thank Brian and the 7MS team enough for putting out such an incredible podcast. Engaging conversations, actionable tips, and insights into the cybersecurity industry abound!

TooIllOrEase ,

Get to the point

Strange how many podcasts assume listeners already love them and are dying to hear drivel-riffing. No, don't love; found via search for specific topic. Yes, your audio sounds as though recorded with distant mic on camera in a car. Fabulous! Removed!

Nebblkshts ,

Awesome

I thought I knew a few things about being a windows admin until Brian showed me a new world. I was board with where I was now I want to move into security.

Top Podcasts In Technology

Acquired
Ben Gilbert and David Rosenthal
All-In with Chamath, Jason, Sacks & Friedberg
All-In Podcast, LLC
Hard Fork
The New York Times
TED Radio Hour
NPR
Lex Fridman Podcast
Lex Fridman
Darknet Diaries
Jack Rhysider

You Might Also Like

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
Johannes B. Ullrich
CyberWire Daily
N2K Networks
Smashing Security
Graham Cluley & Carole Theriault
Malicious Life
Malicious Life
Hacking Humans
N2K Networks
Cyber Security Headlines
CISO Series