7MS #326: Interview with Ryan Manship and Dave Dobrotka




7 Minute Security show

Summary: <p>Today's episode is brought to you by my friends at Dashlane, a fantastic password manager for you, your family and your business! Head to <a href="https://www.dashlane.com/7ms" rel="nofollow noreferrer noopener" target="_blank">www.dashlane.com/7ms</a> and use the code 7MS for 10% off a year of Dashlane Premium!</p> <p>Today I'm super pumped to be joined by Ryan Manship of <a href="https://redteamsecure.com" rel="nofollow noreferrer noopener" target="_blank">RedTeam Security</a> and Dave Dobrotka of <a href="https://uhg.com" rel="nofollow noreferrer noopener" target="_blank">United HealthGroup</a>. Both these guys lead red teams for a living and had a <em>lot</em> of great insight to share as it relates to:</p> <ul> <li>The definition of "red teaming" and where it overlaps, if at all, with pentesting</li> <li>Successfully running red team campaigns</li> <li>Defending <em>against</em> a red team campaign</li> <li>How to climb unclimbable walls</li> <li>Is antivirus <em>any</em> good at stopping attackers?</li> <li>The importance of 2FA and training your end-users</li> <li>How to fool the "This email originated outside your organization" email banners</li> <li>How to break into red teaming as a career</li> <li>How to successfully break into a casino (or not)</li> </ul><p>Other links and things mentioned in today's show:</p> <ul> <li> <p>RedTeam Security's awesome YouTube video on <a href="https://www.youtube.com/watch?v=pL9q2lOZ1Fw" rel="nofollow noreferrer noopener" target="_blank">breaking into the US power grid</a></p> </li> <li> <p>If you're a red teamer and in the Twin Cities area (or willing to drive a bit), you <em>definitely</em> want to sign up for <a href="https://arcticcon.com" rel="nofollow noreferrer noopener" target="_blank">ArcticCon</a> coming up on October 23-24 at the Optum World Headquarters. Head to the link and sign up - if there are seats left!</p> </li> </ul><p>Once you listen to today's episode, <strong>please</strong> <a href="https://7ms.us/contact" rel="nofollow noreferrer noopener" target="_blank">let me know</a> if you'd like Ryan and Dave to come back for another interview. We were thinking it would be a blast to talk about the details of planning a red team engagement!</p>