The 443 - Security Simplified
Get inside the minds of leading white-hat hackers and security researchers. Each week, we’ll educate and entertain you by breaking down and simplifying the latest cybersecurity headlines and trends. Using our special blend of expertise, wit, and cynicism, we’ll turn complex security concepts into easily understood and actionable insights.
Episodes

Monday Feb 12, 2024
Monday Feb 12, 2024
https://youtu.be/VfKlq6DisLY
This week on the podcast, we cover a recent news post about an army of 3 million compromised toothbrushes taking down a Swiss website, causing millions in damages. After that, we discuss the United States DOJ's latest botnet takedown, this time targeting Volt Typhoon. We end the episode by walking through a CISA joint-publication giving guidance on how to defend against Living-of-the-Land (LotL) attacks

Monday Feb 05, 2024
Monday Feb 05, 2024
https://youtu.be/MY4TpiL76gY
This week on the podcast, we cover Apple's recent announcement describing how they will comply with the European Union's new Digital Markets Act and what that means for the iPhone walled garden. Before that, we cover a databreach at Mercedez-Benze thanks to an alternative authentication method. Additionally, we cover the roundup of vulnerabilities in Ivanti's remote Policy Secure and Connect Secure products and how organizations should respond.

Monday Jan 29, 2024
Monday Jan 29, 2024
https://youtu.be/fdAjMPAV6CM
This week on the podcast, we cover two "Blizzard" threat actors targeting governments and private organizations. We also give an update to the SEC's compromised Twitter/X Account, and then end with a discussion of an EU program designed to improve their citizen's privacy while browsing the internet.

Monday Jan 22, 2024
Monday Jan 22, 2024
https://youtu.be/jG3mwjCLpJQ
This week on the podcast, we review a CISA and FBI joint advisory on the Androxgh0st malware. Before that we cover recent Volt Typhoon activity targeting SMB routers exposed on the internet. We end the episode with a fun research blog post about a series of flaws in an Indian insurance provider.

Tuesday Jan 16, 2024
Tuesday Jan 16, 2024
https://youtu.be/3E_Ei9hgNzA
This week on the podcast, we review NIST's new publication that defines a taxonomy for how we talk about Adversarial Machine Learning. Before that, we cover a recent discovery of threat actors retaining access to Google accounts even through a password reset. We round out the episode with an account compromise that lead to a surge in Bitcoin price before finishing with a discussion of Living-off-Trusted Sites (LoTS) attacks that leverage GitHub.

Monday Jan 08, 2024
Monday Jan 08, 2024
https://youtu.be/VK1QoxLP16Y
This week, we cover a password compromise that lead to a mobile telco in Spain losing control of their IP address space. We also give a quick update on the Lapsus$ ringleader's court case before discussing a recently discovered macOS backdoor malware that evades most endpoint protection. We end the episode by covering Microsoft's research into a malware installation method that bypasses many security protections.

Tuesday Dec 19, 2023
Tuesday Dec 19, 2023
https://youtu.be/YZLayuDJyyk
This week on the podcast, we cover a supply chain attack against one of the largest hardware cryptocurrency wallet manufacturers. After that, we discuss the latest Apache Struts vulnerability under active exploit by threat actors. We end the episode with our thoughts on a research blog post about a set of threat actors using an old school attack against modern targets.

Wednesday Dec 13, 2023
Wednesday Dec 13, 2023
https://youtu.be/sbc2U4WYrng
This week on the podcast, we cover a new unauthenticated keystroke injection vulnerability in the Bluetooth implementation on nearly every type of device. After that we discuss Logofail, a suite of vulnerabilities in most UEFI boot implementations that could let threat actors easily hide their tracks. We end by covering a recent CISA advisory on Adobe ColdFusion exploits in the wild.

Monday Dec 04, 2023
Monday Dec 04, 2023
https://youtu.be/BHsow5qnmHw
This week on the podcast we discuss our cybersecurity predictions for 2024. We'll cover each of the 6 predictions for the coming year including the trends behind them and how to protect your organization if they come true!

Monday Nov 27, 2023
Monday Nov 27, 2023
https://youtu.be/Eai8tYnU2I0
This week on the podcast, we look back to our 2023 security predictions and grade ourselves on how well we were able to see the future. We'll go through each of our 6 predictions, explain the trends that fueled them, and then provide either evidence that they came true or discuss reasons why they may not have yet.

443 Podcast Hosts
WatchGuard's CSO, Corey Nachreiner joins Director of Security Operations, Marc Laliberte to form The 443 Podcast. With over 40 years of cybersecurity experience, Marc and Corey dissect the latest cyber threats and explore cutting-edge security technologies. They provide invaluable insights to individuals and organizations alike, and empower them to stay one step ahead of cyber adversaries. Stay ahead of the threat landscape with the 443 Podcast.