The Shellsharks Podcast-logo

The Shellsharks Podcast

Technology Podcasts

A podcast about infosec, technology and life.


United States


A podcast about infosec, technology and life.








Mastodon & Cyber-success w/ @rebootkid

Positivity abounds in this edition of The Shellsharks Podcast! @rebootkid (Nate) joins me to discuss the great Infosec Mastodon migration, getting into infosec, mentorship, cybersecurity as a practice and management’s role in combatting burnout. Show Notes MastodonStars, Boosts & TootsDiasporaInfosec.ExchangeFediverseDefcon.socialActivityPub rocks!Why I Blog. You Should Too!SQL SlammerWhat Certification or Training Should I Take?Interview w/ Security Engineer, Eva GeorgievaMFA Prompt BombingGetting Into Information SecurityAn Ode to RSSCybersecurity burnout is real


Privacy Chat w/ Dan Frechtling

Boltive CEO and privacy advocate, Dan Frechtling joins me to discuss all things in the world of Internet privacy! Show Notes I Said No to Online Cookies. Websites Tracked Me Anyway.Story of Dan Frechtling & Scott MooreGDPRLGPDCCPACPRASephora Privacy SettlementGlobal Privacy ControlThe American Data Privacy and Protection Act (ADPPA)Advanced Data Protection Control (ADPC)US Privacy StringOSINT Sock PuppetsRuTarget Harvesting Google DataExecutive Order on Protecting Foreign Intel from Surveilling US CitizensIs TikTok safe?Deprecation of third-party cookiesSSO wall of shameGDPR enforcement trackerFuture of Privacy ForumTROPT Defining the Privacy tech Landscape WhitepaperIAPPThree Ways Your Data is Leaking in Advertising and How to Avoid It


Interview w/ Security Engineer, Eva Georgieva

Join myself (@shellsharks) and Eva Georgieva, security engineer and founder of #hackintocybersec as we discuss getting into infosec, cybersecurity education, women in cyber and more! Note: Had some challenges with audio leveling, I apologize for any audio weirdness! Show Notes Uber IncidentEva’s AMA on Reddit#hackintocybersecOLLMOOTryHackMeHack The BoxAcademyTCM Security


Threat Hunting w/ Shahar Vaknin of

Join myself (@shellsharks) and Shahar Vaknin, Axon Team Lead at as we discuss the world of Threat Hunting! Show Notes Hunters.aiLong Tail AnalysisThe DFIR Report2022 CrowdStrike Global Threat ReportRed Canary 2022 Threat Detection ReportTwitter Global CERTs/CSIRTs/ISACs listMISPThreat Hunting w/ PythonThe Cyber Kill ChainshellsharksCIS Critical Security ControlsPractical Threat Hunting TrainingMITRE ATT&CK


Vuln Research & Exploit Dev w/ VoidSec

Join myself (@shellsharks) and VoidSec as we discuss Exploit Development and Vulnerability Research! Show Notes VoidSecThe Shellcoder's HandbookOffensive Security | EXP-401 | AWE | OSEEGoogle Project ZeroPrintDemonVoidSec CVE-2020-1337ZerodiumImmunefiIDA ProBurp Suite Professional010 EditorGhidraBinaryNinjaThe Art of Software Security AssessmentRET2SYSTEMS TrainingZero Day Initiative (ZDI)TrendMicroCorelanCVE North StarsPwn2Ownsecret clubUpdatedSecurity


Zero Trust is not 0 or 1

Join myself (@shellsharks) and Bobby DeSimone, Founder & CEO of Pomerium as we discuss the Pomerium platform, context-aware access control and all things Zero Trust! Show Notes PomeriumLatin meaning of "pomerium"The Enchiridion of Impetus ExemplarJericho ForumThe Open Group Security ForumBeyondCorpNIST SP 800-207: Zero Trust ArchitectureMoving the US Government Toward Zero Trust Cybersecurity PrinciplesQ&A with Zero Trust Architecture Writers from NISTRego Policy LanguageOpen Policy AgentIstio Service MeshOpen Source Pomerium on GitHub2021 Twitter HackOASIS eXtensible Access Control Markup Language (XACML)HashiCorp Sentinel FrameworkAwesome Zero trust


Hacker Profile: Kevin Borders (NSA Red Team to Software Entrepreneur)

A fascinating interview with Kevin Borders, where we discuss his origin story, time spent working on the NSA Red Team, growing a successful online collage business and his current venture, minware! Show Notes TI-85 Graphing CalculatorNumber MunchersDragonRealmsGemstone IIINSA Student ProgramsWeb Tap: detecting covert web trafficUniversity of Michigan PhD in CSEExecutive Order on Improving the Nation's CybersecurityU.S. Cyber CommandChimera: A Declarative Language for Streaming Network Traffic AnalysisNSA SlidesSecuring Network Input via a Trusted Input ProxyTowards Quantification of Network-Based Information Leaks via HTTPSELinuxProject ZeroKevin Borders on QuoraDoes the NSA Have Better Engineers than Facebook or Google?About minwareHalting problemBlackhatDefcon100% PreventionWhat are some computer hacks that hackers know but most people don't?The Most Hated Man on the InternetNSO Group iMessage Zero-Click Exploit, FORCEDENTRYOkta breach 2022NIST SP 800-207: Zero Trust ArchitectureSolarWinds BreachHow to Contribute to Open Source


”Extra Decentralized” (A discussion on Web3 and SLSA)

Join myself (@shellsharks) and my good friend Mike (@QWORDsmith) as we discuss supply chain security via the SLSA framework, Web3 and more! Show Notes Preshow MITRE ATT&CKOWASP Docker Top 10OWASP Kubernetes Top 10 Main Show SLSAProvenanceSoftware Attestationsin-totoOpenSSF YouTube ChannelSLSA CommunitySLSA Githubslsa.devOWASP Software Component Verification StandardPocketNFTs, explains2021 Gamestop short squeezer/wallstreetbetsGameStop NFT MarketplaceImmortal GameReddit NFT MarketplaceBored Ape Yacht ClubRoaring 20'sCRYPTOCVESNVDMitreMoxie Marlinspike on NFTs and Web3Web3Web5Bitcoin51% attacksPoly Network cryptocurrency hackWeb 3 is going just greatLattice-based cryptography Postshow Chinese Housewife Wikipedia MisinformationTwitter verification


Ransomware as a Podcast (RaaP)

Join myself (@shellsharks) and Greg Edwards, CEO of CryptoStopper, as we discuss ransomware, existential cyber threats, the OST debate and more! Show Notes Main Show Greg EdwardsCryptoStopperWannaCry ransomwareJigsaw ransomwareColonial Pipeline hackLambdaLockerSolarwinds Supply Chain Compromise18 CIS Critical Security ControlsRansomware as a Service (RaaS)Ransomware Payments via CryptoOST DebateShadow Brokers


Take a Fika

Join myself (@shellsharks) and Thomas Peterson as we dive into his experience with Offensive Security’s challenging OSWE certification, discuss where we get our inspiration for blogging and more! Show Notes Main Show tpetersonkth.github.ioOffensive Security - OSWEDEF CON YouTube channelHackTheBoxOffensive Security - OSCPThomas's OSWE Review 2022Shellsharks Desk setupeLearnSecurity - PTPIKEAOG Shellsharks LookCaptains Log Postshow Swedish Fika


Suburban Turtle

Listen in on a fun conversation between myself (@shellsharks) and my friend/guest Kyle as we discuss everything from our monitor setups to OSINT leveraged in the Ukraine-Russia conflict to vendor APT Naming and more! !! Explicit Language Alert !! Show Notes Preshow Desk Setup 2021 postMac Tools postLeetcodeElite "PewPew" map Main Show Ukraine Humanitarian FundGoogle (allegedly) un-blurring Russian satellite imageryTracking Russian soldiers using stolen iPhonesDestructive WipersNamed Vulnerabilities ListCrowdStrike APT Adversary UniverseMandiant APT NamingDragos Threat Activity Group NamesChollimaOffensive Security CoursesOffSec WEB-300/AWAE/OSWECertifications are not like Pokemon CardsShellsharks Podcast on BurnoutMy Reddit AMAThought LeaderCISSPDoD 8570Metasploit Default Credential CVE


Security Friendliness Engineering

Join myself (@shellsharks) and Scott Contini (from as we discuss cryptography, AppSec, Log4J and more! Show Notes Main Show https://littlemaninmyhead.wordpress.com Postshow


Analyzing the OWASP Top 10 2021

Join myself (@shellsharks) and my good friend Mike (@QWORDsmith) as we discuss the new OWASP Top 10 for 2021. Note on this episode: My audio was incredibly quiet during the recording so when editing I had to pump up the volume which introduced a fair bit of static. I apologize and hope the episode is bearable despite that static! Show Notes Preshow https://simplenote.comhttps://www.notion.sohttps://obsidian.mdhttps://code.visualstudio.com Main Show


Blogging & WGU

Join myself (@shellsharks) and @cradersec as we discuss blogging, Western Governors University (WGU), home labs and more! Show Notes Preshow Main Show https://cradersecurity.com Postshow


Burnout & Motivation

Kyle (@cyberspacekyle) and Masie (@masiehabibi) join me (@shellsharks) once more to chat motivation and burnout in infosec and in life. We also have a fiery fitness challenge throw-down! I hope you enjoy this relatively short but lively episode! Preshow Main Show https://shellsharks.com


Pentesting Chat (and Beer Chat)

Join myself (@shellsharks) and my guest Sukrit (@sukritdua) as we chat pentesting, training, craft beer and more! Note: I apologize in advance as Sukrit’s audio was a little spotty. Enjoy! Show Notes Preshow Main Show https://www.kali.orghttps://www.hackerone.comhttps://www.bugcrowd.com Postshow https://untappd.comhttps://foursquare.comhttp://www.hill-high.com


Colonial Pipeline Hack & More!

This week on The Shellsharks Podcast, @masiehabibi joins me (@shellsharks) to talk Clubhouse, ransomware, the Colonial Pipeline hack, Google I/O, iOS vs Android and more! Podcast Pre-chat https://www.joinclubhouse.com Colonial Pipeline Hack & Ransomware Discussion Google I/O vs Apple Events & iOS vs Android


Getting Into Infosec (Part I)

Join myself (@shellsharks), Kyle (@cyberspacekyle) and Masie (@masiehabibi) as we discuss Getting Into Information Security, what industry certifications are best to get for those new to the field and more! https://www.oldoxbrewery.com



Introducing The Shellsharks Podcast! Join me (@shellsharks) in this new show about all things Infosec, Technology and Life-in-general. For more on Shellsharks, check out the site!