Detection Dispatch (Alex's Version)

Detection Dispatch (Alex's Version)

Alex Hurtado
Negara Amerika Syarikat
Genre Teknologi
Bahasa EN-US
Episod 5
Terkini 23.09.2026

Detection Dispatch (Alex's Version) is an independent podcast focused on detection engineering and threat hunting. It features a community-first approach and highlights real, active projects that are pushing the boundaries of detection engineering, threat hunting, and related fields.

Episod

  • The Golden Era of Deception feat. Andrew Morris 23.09.2026 41min
    Andrew Morris joins Detection Dispatch to explore what happens when lying to attackers becomes one of the best ways to detect them. From GreyNoise sensors watching the internet at scale to Project Swarm turning real attacker traffic into data detection engineers can actually use, Andrew walks through why deception is having a moment. We get into honeypots, PCAPs, vulnerability exploitation, and what changes when attackers get better at recognizing the systems designed to catch them. We also d...
  • Apple, Please Give Us More Logs feat. Patrick Wardle 16.09.2026 59min
    Patrick Wardle joins Detection Dispatch to explore what happens when the things we trust become the things we stop looking at. From signed and notarized applications hiding malicious dylibs to trusted processes inheriting privileges, Patrick walks through the places where macOS can look completely clean until you look underneath it. We get into dynamic library hijacking, the limitations of process level telemetry, and the detection opportunities hiding inside macOS Endpoint Security. We also ...
  • Bill Gates’ AI Manifesto, Stolen LLMs & AI Honeypots feat. Eli Woodward 10.09.2026 44min
    Eli Woodward joins Detection Dispatch to explore what happens when AI becomes both the thing we're building and the thing we're trying to detect. From a Christmas AWS honeypot experiment that turned into a global network of AI honeypots to millions of captured prompts, Eli walks through what attackers are actually doing with exposed AI infrastructure and what those behaviors reveal about the detection challenges ahead. We get into LLM jacking, stolen compute, malicious prompts, AI agents, and...
  • AI Won’t Fix Your Detections. Your Linux Detection Engineer Will & also Happy Birthday, Linux 🎂 01.09.2026 1j 4min
    Pawel Mazur joins Detection Dispatch to talk about what happens when you stop trusting detections at face value, especially when AI is involved. From generating detection logic with an LLM to actually running the technique with EDR silencers, to bypassing rules, and digging into the telemetry underneath it, Pawel makes the case for a much more skeptical approach to detection engineering. In this episode we get into: • What AI generated detection actually looks like in practice and what happen...
  • The Detection Factory (Loop Engineering in Practice) 26.08.2026 1j 1min
    Tejas Paranjape joins Detection Dispatch to talk about what a detection factory can actually look like in practice and what changes when detection engineering becomes a repeatable, code driven production process rather than a collection of rules living in someone’s head. His Detection Factory breaks the work into specialized stages for writing, tuning, reviewing, testing, and shipping detections, with feedback and context carried through the process. In this episode we get into: • What ...
  • Sysmon for AI Visibility feat. Anton Ovrutksy 13.08.2026 55min
    Anton Ovrutsky from Huntress joins Detection Dispatch to talk about ATEN, his latest open-source project to do what Sysmon did for win event telemetry to AI agents. The idea came from a pretty simple realization: as security practitioners, we’re comfortable saying “we don’t have the telemetry for that”...And there’s a LOT missing. In this episode we get into: The “what the hell did I just give Claude access to?” problem — credentials, packages, skills, and systems pile up fast when you’re jus...
  • There's No D3FEND for AI (So He Built One) feat. Edward Lee 31.07.2026 46min
    Quick count: MITRE ATLAS, OWASP's Top 10s, NIST AML, Cisco's framework, MAESTRO, Databricks' AI security framework..Every org says "go do AI security," startups are popping out to sel lit to you…points you at a pile of frameworks that all describe the same handful of problems in slightly different words, and leaves you to cross-reference them yourself at 11pm. Edward Lee joins Dispatch to talk about AIDEFEND: the open-source knowledge base he built to be the thing MITRE ATT&CK has and AI ...
  • Your Dream Job Offer Might Depend on You Cloning/Running Malicious GitHub Repos feat. Tim Peck 20.07.2026 39min
    The job market is shitty right now, and threat actors are exploiting exactly that. Developers are a hot target, and it cuts both ways: they'll come at you as a fake recruiter sending a "coding test" straight off GitHub, or as a fake candidate using a stolen identity to get hired and work the inside. Cloning and running a malicious repo is now just part of the interview process. Doing a human CAPTCHA to prove the person on the other end isn't AI is no longer optional. Tim Peck (Director of Res...
  • Red Team Wrote a Book on Evading You. Literally. feat. Dennis Chow & Michael LaSalvia 15.07.2026 1j 4min
    Dennis Chow (Detection Engineering Director, back for round two) and Michael LaSalvia (red team lead) join Dispatch to talk about their new book, Evasion Engineering: Building Custom Red Team Tools for the Modern Defenses, and what happens when a blue teamer and a red teamer decide to write the playbook together instead of against each other. In this episode we get into: Why off-the-shelf adversary emulation repos are dying, and why building your own evasive tooling, not just running someone ...
  • What Headless Actually Means feat. Maxime Lamothe-Brassard Founder of LimaCharlie 07.07.2026 47min
    The definition of headless is taking shape. More software is shipping with an MCP. Teams are starting to require it in procurement. Your CLI and Claude Code can now talk directly to the tools you already run. LimaCharlie was one of the first platforms in the SOC to build everything through the command line....long before the post-Claude boom. Maxime Lamothe-Brassard (their founder) joins Dispatch to explore what going headless actually means for security operations. In this episode we get int...
  • Words are Cheap. Sense Making is Not..feat. Diego Perez 04.06.2026 1j 8min
    What happens when a philosopher walks into a SOC? Apparently, he builds one from the ground up, spends a decade making sense of detection engineering across financial services, global IR teams, and now Canva. Diego Perez is a detection engineer who studied philosophy, taught himself security at 2am with a newborn in the other room, and has been quietly writing some of the sharpest unsloppy takes on the internet about what detection engineering actually is versus what we pretend it is. ...
  • DE on Mac Finally Has a Champion. Her name is Olivia Gallucci. 30.05.2026 37min
    macOS detection engineering has had a documentation problem for years. Everyone told Olivia Gallucci she was locking herself into a platform nobody cared about. Then infostealers showed up, enterprise Mac fleets exploded, and suddenly her work was the most in-demand research nobody knew existed. Olivia is a security engineer at Datadog living inside macOS internals...from Apple Silicon boot chain to ESF event families to IOKit abuse....and she is single-handedly dragging macOS DE into the lig...
  • GRC, the Passenger Princess of the SOC? feat. Ayoub Fandi 13.05.2026 51min
    GRC has been called the passenger princess of security for too long. In this episode, Alex sits down with Ayoub Fandi, GRC engineer and author of the GRC Engineer newsletter, to make the case that GRC and detection engineering are solving solving the same problems and somehow still not working together. This episode covers: Why GRC plays PvE while everyone else in security plays PvP and why that actually makes them your best allyHow auditors certify 100% coverage from less than 1% of your env...
  • A DE's Guide to Staying in the Loop feat. Your Favorite Detection Engineering Instructor Hayden Covington 06.05.2026 48min
    Detection Dispatch (Alex's Version) episode two brings on the person who treats detection engineering like an actual craft....not a vendor feature list, not a MITRE bingo card, not a vibe coded rule you ship and forget. Hayden teaches detection engineering at Antisyphony Training and runs the SOC at Black Hills Information Security, which means he's not theorizing. He's got the reps, the scars, and even a home SIEM with documentation. This is the episode for practitioners who are watching Cla...
  • Axios, Mythos, and a Lethal Trifecta Walk Into a SOC  feat. John Hammond 28.04.2026 35min
    Detection Dispatch (Alex's Version) premieres with John Hammond...Huntress senior researcher, former DoD red team, the guy 2M+ people watch break attacks down in real time for the red-meets-blue conversation the week forced into existence. Alex came up blue. John came up red. They meet in the middle on the three stories eating the industry alive. In this episode we cover: Axios: one patient social engineer, a fake founder Slack workspace, and an NPM maintainer who never stood a chance.&...

Popular di

Podcast ini turut muncul dalam senarai podcast negara-negara ini.