Home
Categories
EXPLORE
True Crime
Comedy
Society & Culture
Business
Sports
Technology
News
About Us
Contact Us
Copyright
© 2024 PodJoint
Podjoint Logo
US
00:00 / 00:00
Sign in

or

Don't have an account?
Sign up
Forgot password
https://is1-ssl.mzstatic.com/image/thumb/Podcasts211/v4/a9/16/3d/a9163d8c-b854-fc04-5d15-e97c988e2a7a/mza_17377144451810740328.jpg/600x600bb.jpg
Detection Engineering Dispatch
Anvilogic
27 episodes
4 days ago
Alex and Scott Rodgers unpack the F5 breach, Mandiant M-Trends highlights like the fall of BEACON, and the leapfrogging of Stolen Creds over Phishing. Expect: The infostealer industrial complexOperation MORPHEUS x BEACON’s quiet exitThe real meaning of “supply chain blast radius” & tight turnaround time reqsWhy screaming might actually save your sanityHit play. Stay unhinged. Detect responsibly. Detection Engineering Dispatch features candid conversations with security teams at top comp...
Show more...
Technology
RSS
All content for Detection Engineering Dispatch is the property of Anvilogic and is served directly from their servers with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
Alex and Scott Rodgers unpack the F5 breach, Mandiant M-Trends highlights like the fall of BEACON, and the leapfrogging of Stolen Creds over Phishing. Expect: The infostealer industrial complexOperation MORPHEUS x BEACON’s quiet exitThe real meaning of “supply chain blast radius” & tight turnaround time reqsWhy screaming might actually save your sanityHit play. Stay unhinged. Detect responsibly. Detection Engineering Dispatch features candid conversations with security teams at top comp...
Show more...
Technology
Episodes (20/27)
Detection Engineering Dispatch
Malware Trends, Credential Soup and Scream Therapy
Alex and Scott Rodgers unpack the F5 breach, Mandiant M-Trends highlights like the fall of BEACON, and the leapfrogging of Stolen Creds over Phishing. Expect: The infostealer industrial complexOperation MORPHEUS x BEACON’s quiet exitThe real meaning of “supply chain blast radius” & tight turnaround time reqsWhy screaming might actually save your sanityHit play. Stay unhinged. Detect responsibly. Detection Engineering Dispatch features candid conversations with security teams at top comp...
Show more...
5 days ago
37 minutes

Detection Engineering Dispatch
What Your EDR Doesn’t See...Kostas Drops Receipts from the Telemetry Trenches
We unpack what modern EDRs actually deliver, where they fall short, and where to validate telemetry before you buy. EDR Telemetry Project co-founder, Kostas walks through the open-source EDR Project, the pros/cons of Sysmon, and how to evolve from alert consumers to detection engineers. And also....EDR Vendors dropping out of the MITRE ATT&CK Evaluations?? Show Note References: https://github.com/tsale/EDR-Telemetry?tab=readme-ov-file#edr-scoreshttps://www.edr-telemetry.com/ Detect...
Show more...
1 week ago
57 minutes

Detection Engineering Dispatch
SIEMs & Data Lakes can be friends...it isn't Either/Or, It’s Yes, And.
On this Detection Dispatch, host Alex Hurtado sits down with Jake Berkowsky CTO at Snowflake to crack open one of the hottest and often misunderstood topics in modern SecOps: the rise of the security data lake x security data lakes as your SIEM. Modern detection architecture isn’t about choosing SIEM or lake, it's about interoperability, orchestration, and strategic flow. We cover federation hype and data silo upkeep fatigue and take a brutally honest look at why standalone SIEMs aren’t cutti...
Show more...
3 weeks ago
52 minutes

Detection Engineering Dispatch
Detection in Flux: Riding the Chaos with Day Johnson
In a world where SOCs are dissolving, job roles are glitching, and where the attack surface blurs between our work <> personal life between Slack & Discord, one thing remains constant: detection never sleeps. On this episode of Dispatch, we’re joined by Day Johnson — detection engineer at Amazon, architect of Cyberwox labs, and voice of clarity for 100K+ across LinkedIn, YouTube, and Twitter. From Datadog to the bleeding edge of cloud defense, Day’s been charting what it means to st...
Show more...
2 months ago
43 minutes

Detection Engineering Dispatch
Detection Dispatch Episode 53: A New Way to UBA feat. Snowflake’s Insider Threat Team
Join Snowflake’s Insider Threat team for a direct discussion on separating everyday behavioral drift from true malicious intent. We examine role changes, privilege creep, and off-hour access, showing how context—identity, project timelines, and data lineage—sharpens detection and reduces noise. The conversation ends with a clear-eyed look at the trade-off between missing an insider and overwhelming analysts with false alerts, offering practical guidance for any modern UBA program. About Detec...
Show more...
3 months ago
56 minutes

Detection Engineering Dispatch
Detection Dispatch Episode 52: Prompted to Fail: When LLMs Go Rogue
LLMs are rewriting the rules of app security—and not always in a good way. In this episode Alex sits down with Scott Rogers, a seasoned data scientist at ANvilogic to unpack why LLMs are the new wild west of application risk—and how old-school OWASP principles are making a serious comeback. We cover: Real-world prompt injection failures (yes, including Air Canada’s rogue chatbot)How RAG systems can accidentally leak sensitive dataWhy GenAI risk ≠ traditional appsec—but it rhymesHow classic to...
Show more...
4 months ago
37 minutes

Detection Engineering Dispatch
Detection Dispatch Episode 51: 5 Bitter Pills to Swallow RE: Agentic AI w/ Oliver Rochford
Everyone’s talking about agentic AI—but what are we actually building? In this episode, Oliver Rochford and Alex unpack five bitter pills security teams need to swallow about the current state of “agents.” Most aren’t autonomous, many are mislabeled, and flashy wrappers can’t hide weak detections or bad data. We dig into the hype, the gaps, and what real operational maturity looks like. If you're duct-taping GPT-4 to your SOC and hoping for magic, this one’s for you. Connect with Oliver on...
Show more...
5 months ago
59 minutes

Detection Engineering Dispatch
Detection Dispatch Episode 50: 5 Signs You're Overengineering your Detection Logic w/ John Dempsey
Is your detection logic doing too much? In this special episode, Alex sits down with Johnathan Dempsey to unpack the 5 signs your rules are too complex — and why that might be hurting more than helping. From alert overload to unreadable logic, learn how to simplify without sacrificing fidelity. If your detections look like a math thesis, this one’s for you. Stay in the loop! Connect with us: Join Dispatch Community: https://www.anvilogic.com/workshopWebsite: https://www.anvilogic.com/Linked...
Show more...
5 months ago
33 minutes

Detection Engineering Dispatch
Detection Dispatch Episode 49: Hack my S3 with Kennedy Torkura
We teamed up with Kennedy Torkura, CTO & Co-founder at Mitigant to test common S3 breach techniques—SSRF pivots, credential abuse, and more—against live cloud infrastructure using Anvilogic’s open-source AWS Detection Packs and threat scenarios. We cover: Which techniques slipped through detectionHow behavioral detections held upThe hygiene checklist every detection engineer should be usingBuckets were breached. Lessons were learned. Detections were challenged.And now, you get the inside...
Show more...
6 months ago
41 minutes

Detection Engineering Dispatch
The AI Series: Inside URL Guardian—An LLM Built for Detection
Mike Hart returns to walk through URL Guardian, our new LLM for malicious URL detection. Now live on HuggingFace, it’s built to spot suspicious patterns and reduce false positives—without the regex headaches. Check out the Hugging Face here: https://huggingface.co/Anvilogic/URLGuardian Stay in the loop! Connect with us: Join Dispatch Community: https://www.anvilogic.com/workshopWebsite: https://www.anvilogic.com/LinkedIn: https://www.linkedin.com/company/anvilogic YouTube: https://www.yo...
Show more...
6 months ago
43 minutes

Detection Engineering Dispatch
The UEBA Illusion: Why Traditional UEBA Falls Short
Alex sits down with Kevin Gonzalez to pull back the curtain on User and Entity Behavior Analytics (UEBA), and expose the gap between its promises and real-world pitfalls. Hear his stories from the trenches of deploying UEBA multiple times at different organizations, and his blueprint for how teams should align UEBA with real attacker behaviors. Read his blog about his experience: https://www.anvilogic.com/learn/bg-ue... If you want to join our sessions live, join our community here: http...
Show more...
6 months ago
43 minutes

Detection Engineering Dispatch
Episode 46: Machine Learning-Powered Threat Hunting ft. Sydney Marrone
Our last drop for International Women's Month featuring Sydney Marrone—Principal Threat Hunter at Splunk and co-author of PEAK Threat Hunting—to explore how ML-driven techniques are transforming detection strategies. Tune in to hear Sydney and Alex break down real-world applications of advanced analytics to surface threats hidden in HTTP datasets. Check out the HEARTH community on their github here: https://github.com/THORCollective/HEARTH If you want to join our sessions live, join ou...
Show more...
7 months ago
30 minutes

Detection Engineering Dispatch
Episode 45: DECEIVE to Defend: AI-Powered Deception feat. Edna Jonsson
This International Women’s Month, we’re celebrating leaders and supporters driving the future of threat hunting and detection engineering. Next up in our series is Edna Jonsson, a cybersecurity engineer and forever student of the trade, introducing DECEIVE—Splunk’s new DECeption with Evaluative Integrated Validation Engine. DECEIVE brings AI-powered honeypots directly into the hands of security teams, opening new possibilities for proactive threat intelligence and modern detection strategies....
Show more...
7 months ago
22 minutes

Detection Engineering Dispatch
Episode 44: HEARTH | the community-driven threat hunting project ft. Lauren Proehl
Tune in with us for a discussion on HEARTH—a community-driven threat hunting GitHub repository that you’re going to want to fork as well as the importance of community intel-sharing. This episode is about community, innovation, and the women leading the way in threat hunting. Happy International Womens Month! Check out the HEARTH community on their github here: https://github.com/THORCollective/HEARTH If you want to join our sessions live, join our community here: https://www.anvilog...
Show more...
7 months ago
29 minutes

Detection Engineering Dispatch
Episode 43: Building Thorough Detections via Detection Modeling
In this episode, host Alex Hurtado welcomes back Andrew VanVleet, who breaks down a comprehensive approach to technique analysis using Detection Data Models (DDMs). Andrew walks through a 10-step process for analyzing Kerberoasting (T1558.003), identifying four distinct attack procedures and their detection strategies. Learn how to map telemetry to detection opportunities, recognize security blind spots, and develop multi-layered strategies that make successful attacks nearly impossible. ...
Show more...
8 months ago
39 minutes

Detection Engineering Dispatch
Episode 42: Understanding Detection Engineering and Why Teams Struggle With It
In this episode of Detection Dispatch, host Alex Hurtado welcomes Jimmel Peters (JP), a seasoned cyber threat detection engineer from a major media company, to unpack the million-dollar question: why are so many security teams still scratching their heads over detection engineering, even though everyone's talking about it? JP breaks it down for us, walking through how the field has evolved from a "nice-to-have" into an absolute necessity. He shares his take on why behavioral analysis is the n...
Show more...
8 months ago
21 minutes

Detection Engineering Dispatch
Episode 41: 12 Emerging Threats and How to Defend Against Them
In this episode of Detection Dispatch, host Alex Hurtado welcomes Lee Archinal from Intel 471 to dive deep into 12 significant emerging threats observed in late 2024. From Dark Casino's financial sector targeting to the devastating healthcare attacks by Phobos ransomware, discover the latest threat actor behaviors and practical detection strategies. Learn how to leverage Intel 471's hunting packages across major EDR platforms and understand the critical intersection between threat hunting and...
Show more...
9 months ago
42 minutes

Detection Engineering Dispatch
Episode 40: Habits of High-Performing Detection Engineers feat. Zack 'techy' Allen
In this episode, host Alex Hurtado welcomes Zack Allen, the creator of Detection Engineering Weekly and Sr. Director of Security Detection & Research, to explore the traits of high-performing detection engineers. Discover why having "T-shaped" skills (deep knowledge in one area while maintaining broader understanding across domains) trumps being a pure specialist, and learn how psychological safety and blameless culture drive team success. Zack shares insights on emerging trends like Dete...
Show more...
9 months ago
41 minutes

Detection Engineering Dispatch
Episode 39: Top 10 KQL Queries Every Detection Engineer Should Know
In this episode, Alex sits down with Sergio Albea, an accomplished Threat Hunter, Researcher, User Behavior Analyst, and Senior Cloud Security Engineer/Architect, to share a must-have resource for detection engineers: the Top 10 KQL Queries of 2024. From detecting DLL hijacking and MFA fatigue to uncovering anonymous file access in OneDrive and SharePoint, we’ll walk through each query and the data feeds/sources required for detection and discuss their practical uses. Whether you’re new to K...
Show more...
10 months ago
40 minutes

Detection Engineering Dispatch
Episode 38: How LLMs Can Outsmart TYPOSQUATTING Attacks
In this episode, Alex sits down with the brilliant Mike Hart, a data scientist whose mission is to outsmart the sneaky world of typosquatting attacks. Just in time for the holiday shopping frenzy, we explore how his open-source project leverages LLMs to safeguard users from clicking on malicious look-alike links. With online holiday shopping being a prime target for this attack vector, the risks of not double-checking URLs are bigger than ever. Organizations, especially those operating in hyb...
Show more...
10 months ago
36 minutes

Detection Engineering Dispatch
Alex and Scott Rodgers unpack the F5 breach, Mandiant M-Trends highlights like the fall of BEACON, and the leapfrogging of Stolen Creds over Phishing. Expect: The infostealer industrial complexOperation MORPHEUS x BEACON’s quiet exitThe real meaning of “supply chain blast radius” & tight turnaround time reqsWhy screaming might actually save your sanityHit play. Stay unhinged. Detect responsibly. Detection Engineering Dispatch features candid conversations with security teams at top comp...