{"version":"https://jsonfeed.org/version/1","title":"OSINT with ShadowDragon & Digital Tools For Modern Investigations","home_page_url":"https://podcast.shadowdragon.io","feed_url":"https://podcast.shadowdragon.io/json","description":"This podcast covers a variety of cyber security topics, with a focus on candor, and zero b.s. Topics may include OSINT, PAI, Tailored Monitoring, Investigations, Offensive Disciplines, AI/ML, Object Recognition, Forensics, Historical Industry Lore, All things considered in Cyber.","_fireside":{"subtitle":"A cyber security podcast series (Q&A) ","pubdate":"2024-04-02T05:00:00.000-04:00","explicit":false,"copyright":"2024 by ShadowDragon, LLC","owner":"Daniel Clemens from ShadowDragon, LLC","image":"https://assets.fireside.fm/file/fireside-images/podcasts/images/c/c94d80a4-45a7-44df-b108-8b5d810b42ac/cover.jpg?v=10"},"items":[{"id":"237ef928-3ab2-4404-99d1-9af365c6e3e9","title":"S03 Special Episode","url":"https://podcast.shadowdragon.io/s03special01","content_text":"","content_html":"","summary":"","date_published":"2024-04-02T05:00:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/237ef928-3ab2-4404-99d1-9af365c6e3e9.mp3","mime_type":"audio/mpeg","size_in_bytes":36851251,"duration_in_seconds":2295}]},{"id":"9f504843-afee-4303-8c9c-851bbf75ddd6","title":"S03 E02: EdgeTheory and Narrative Intelligence","url":"https://podcast.shadowdragon.io/s03e02","content_text":"Hosts:\n\nJoe Stradinger, EdgeTheory CEO\nDaniel Clemens, ShadowDragon CEO\nElliott Anderson, ShadowDragon CTO\nDavid Cook, Director – National Security\n\nDaniel and David traveled to University of Mississippi last month to the inaugural National Center for Narrative Intelligence (NCNI) Summit hosted by EdgeTheory. The guys talk about the Summit, Joe’s path to becoming EdgeTheory’s founder and CEO, and the importance of storytelling and narratives in a dynamic world. \n\nThis time around, we spoke about Narrative Intelligence and how OSINT is similar in finding sources but can sometimes produce different products. Today, the amount of publicly available information (PAI) is expanding every day, which gives people, companies, and governments more information to synthesize and investigate than ever before. ‘Chatter’ online can grow and form narratives at incredible speed and resonance, creating often-times outsized impacts in society, markets, elections, and so much more. \n\nListen in as Daniel queues in on EdgeTheory’s “Intercontinental Ballistic Narratives,” or ICBNs, to ask who is the greatest manipulator of narratives? Joe breaks down the different ways EdgeTheory sees between Russia, China and Iran utilizing ICBNs to subvert Western Nations. As geographic borders fade in today’s online struggle, adversaries ‘spoof’ or manipulate where the origin of their cognitive attacks on populations come from, making it more difficult to quantify risk. \n\nListen for more insight on: \n\n• Advanced Persistent Manipulators (APMs)\n• Joe’s take on AI (hint: “AI is a math trick, it’s a very good math trick, but it’s a math trick“)\n• Utilizing OSINT and Narrative Intelligence to gain decision advantage\n• Navigating a ‘post-truth world’\n\nVisit EdgeTheory’s website to learn more: https://edgetheory.com/\nLearn more about the National Center for Narrative Intelligence here: https://ncni.us/\n\nThis podcast is available in video and audio versions at your favorite podcast outlet, popular video platforms, and the ShadowDragon website. Subscribe to the podcast to stay up to date on the latest. \n\nThank you for listening.Special Guest: Joe Stradinger.","content_html":"

Hosts:

\n\n

Joe Stradinger, EdgeTheory CEO
\nDaniel Clemens, ShadowDragon CEO
\nElliott Anderson, ShadowDragon CTO
\nDavid Cook, Director – National Security

\n\n

Daniel and David traveled to University of Mississippi last month to the inaugural National Center for Narrative Intelligence (NCNI) Summit hosted by EdgeTheory. The guys talk about the Summit, Joe’s path to becoming EdgeTheory’s founder and CEO, and the importance of storytelling and narratives in a dynamic world.

\n\n

This time around, we spoke about Narrative Intelligence and how OSINT is similar in finding sources but can sometimes produce different products. Today, the amount of publicly available information (PAI) is expanding every day, which gives people, companies, and governments more information to synthesize and investigate than ever before. ‘Chatter’ online can grow and form narratives at incredible speed and resonance, creating often-times outsized impacts in society, markets, elections, and so much more.

\n\n

Listen in as Daniel queues in on EdgeTheory’s “Intercontinental Ballistic Narratives,” or ICBNs, to ask who is the greatest manipulator of narratives? Joe breaks down the different ways EdgeTheory sees between Russia, China and Iran utilizing ICBNs to subvert Western Nations. As geographic borders fade in today’s online struggle, adversaries ‘spoof’ or manipulate where the origin of their cognitive attacks on populations come from, making it more difficult to quantify risk.

\n\n

Listen for more insight on:

\n\n

• Advanced Persistent Manipulators (APMs)
\n• Joe’s take on AI (hint: “AI is a math trick, it’s a very good math trick, but it’s a math trick“)
\n• Utilizing OSINT and Narrative Intelligence to gain decision advantage
\n• Navigating a ‘post-truth world’

\n\n

Visit EdgeTheory’s website to learn more: https://edgetheory.com/
\nLearn more about the National Center for Narrative Intelligence here: https://ncni.us/

\n\n

This podcast is available in video and audio versions at your favorite podcast outlet, popular video platforms, and the ShadowDragon website. Subscribe to the podcast to stay up to date on the latest.

\n\n

Thank you for listening.

Special Guest: Joe Stradinger.

","summary":"Daniel, Elliott, and David invite Joe Stradinger, CEO and Founder of EdgeTheory to talk about Narrative Intelligence. ","date_published":"2024-03-22T05:00:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/9f504843-afee-4303-8c9c-851bbf75ddd6.mp3","mime_type":"audio/mpeg","size_in_bytes":58293445,"duration_in_seconds":3642}]},{"id":"1fdfdf21-5120-4cf8-a058-2f7a31e9adab","title":"S03 E01: From Rest to Protecting Your Kids","url":"https://podcast.shadowdragon.io/s03e01","content_text":"About this Episode\n\nHosts:\nDaniel Clemens, ShadowDragon CEO\nElliott Anderson, ShadowDragon CTO\nNico Dekens, ShadowDragon Director of Intelligence and Innovation Collection (aka Dutch_OSINTguy)\nDavid Cook, ShadowDragon Director of National Security\n\nIn this podcast episode, the hosts and guests delve into various topics, from the importance of rest and mindfulness to the challenges of investigative work and the impact of technology on attention spans. Through personal anecdotes and professional experiences, they highlight the need for patience, methodical workflow, and critical thinking in investigative processes, emphasizing the value of asking the right questions rather than seeking immediate answers. They also discuss the evolving nature of technology and its effects on human cognition, cautioning against the pitfalls of constant stimulation and advocating for a balance between productivity and mental well-being. Furthermore, they draw parallels between investigative work and historical societal shifts, reflecting on the tension between industrialism and agrarian workflows and the implications for modern-day practices. Ultimately, the episode offers valuable insights into navigating the complexities of investigative work in an increasingly fast-paced and technology-driven world, emphasizing the importance of rest, reflection, and methodical inquiry.","content_html":"

About this Episode

\n\n

Hosts:
\nDaniel Clemens, ShadowDragon CEO
\nElliott Anderson, ShadowDragon CTO
\nNico Dekens, ShadowDragon Director of Intelligence and Innovation Collection (aka Dutch_OSINTguy)
\nDavid Cook, ShadowDragon Director of National Security

\n\n

In this podcast episode, the hosts and guests delve into various topics, from the importance of rest and mindfulness to the challenges of investigative work and the impact of technology on attention spans. Through personal anecdotes and professional experiences, they highlight the need for patience, methodical workflow, and critical thinking in investigative processes, emphasizing the value of asking the right questions rather than seeking immediate answers. They also discuss the evolving nature of technology and its effects on human cognition, cautioning against the pitfalls of constant stimulation and advocating for a balance between productivity and mental well-being. Furthermore, they draw parallels between investigative work and historical societal shifts, reflecting on the tension between industrialism and agrarian workflows and the implications for modern-day practices. Ultimately, the episode offers valuable insights into navigating the complexities of investigative work in an increasingly fast-paced and technology-driven world, emphasizing the importance of rest, reflection, and methodical inquiry.

","summary":"Daniel, Elliott, Nico, and David","date_published":"2024-02-21T06:00:00.000-05:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/1fdfdf21-5120-4cf8-a058-2f7a31e9adab.mp3","mime_type":"audio/mpeg","size_in_bytes":91829450,"duration_in_seconds":2860}]},{"id":"32e4c1c3-8871-4a15-80b5-e5ac606f041a","title":"S02 E05: AI Discussion and Projections","url":"https://podcast.shadowdragon.io/s02e05","content_text":"About this Episode\n\nHosts:\nDaniel Clemens, ShadowDragon CEO\nElliott Anderson, ShadowDragon CTO\nNico Dekens, ShadowDragon Director of Intelligence and Innovation Collection (aka Dutch_OSINTguy)\nDavid Cook, ShadowDragon Director of National Security\n\nIn our last podcast of 2023, the ShadowDragon crew talked about the importance of veterans’ service, disinformation, and gave some of our best predictions for 2024. \n\nOne of ShadowDragon’s newest employees, David Cook, talks about running a non-profit focused on Special Operations Forces (SOF) advocacy: \n\n• The Special Operations Association of America (SOAA.org) is a veteran service organization that advocates for the past, present and future SOF community. \n• David first found SOAA during the Afghanistan withdrawal and has been involved ever since. \n• SOAA, Congress, and several other organizations’ use of open-source information during the withdrawal to help Americans and our Afghan allies. \n• Bringing service to veterans everywhere we go – ShadowDragon included. \n• Launching a SkillBridge partnership to assist active-duty service members transitioning to the civilian world. \n• OSINT use in the Afghanistan withdrawal\n• Injection of false information into crisis situations and how to triage fact from fiction.\n\nAutomation in OSINT, according to Nico, the Dutch OSINT Guy: \n\n• OSINT is an arduous process – automation can be a powerful tool in highlighting what’s important. \n• Utilizing ChatGPT to ‘stress-test’ narratives and large amounts of content to narrow down actor motives. \n• Automated image searches are best used in open-source investigations where the margin for human error is high. \n• Automation allows investigators and analysts to scale with the amount and volume of information and data that is ubiquitous today. \n\nDependency of Large-Language Models (LLMs), and other tech: \n\n• Utilizing LLMs for analysis must be used with caution – there are AI ‘hallucinations’ that return false information. \n• Remember: the models are trained using data from humans, so it still has a margin of error. \n• Investigators and analysts should be aware of AI ‘hallucinations’ within their OSINT tools they use. \n• Small cognitive conditioning happens with the dependency of technology and devices – we’re in for an interesting year with external catalysts (election, emerging LLMs/deepfake tech, etc.).\n\n“2024 is gonna be…crazy”, Daniel Clemens, CEO of ShadowDragon\n\n• People are not going to be able to trust what hear and see at the end of 2024 due to deepfake technology advances, segregation in the digital world manifesting itself in the physical world. \n• Regulation for ‘disinformation’ will not go anywhere, but there will be broad discussion and public discourse surrounding automated information – videos, audio recordings, and images. \n• Disinformation needs to be re-branded and specifically defined in contrast to foreign malign influence operations. \n\nElliott’s OSINT recommendations: \n\n• The popularity of OSINT will spurn regulatory action and we’ll see laws made and legal decisions on OSINT. \n\nDaniel’s OSINT recommendations: \n\n• The value of discernment will be ‘gold’ and being able to deconstruct what information is in front of them will need to be developed and honed. \n• The ‘AI’ buzzword in OSINT will start to collapse – but some capabilities will get better because of automation, especially Geo-Spatial Intelligence (GEOINT), geo-political use-cases, and supply chain risk management. \n\nDavid’s OSINT recommendations: \n\n• More people will find they’ve been utilizing open-source information and creating subsequent intelligence than previously thought, re-valuing OSINT as a sector to the upside, broadening and expanding what OSINT is. \n• OSINT as an intelligence discipline will take share from GEOINT and Signals Intelligence (SIGINT). \n• AI and automation will create an ‘information inequality’ where a premium is placed on the truth. \n\nNico’s OSINT recommendations: \n\n• More and more people will understand that tradecraft in OSINT is so important. \n• Understanding, or the lack of understanding, the tradecraft, will dictate how good or how bad any regulation or legislation will be surrounding OSINT. \n• There will be more charlatans in the OSINT space. \n\nListen to the full podcast for all the guys’ book and podcast recommendations. \n\nThis podcast is available in video and audio versions at your favorite podcast outlet, popular video platforms, and the ShadowDragon website. Subscribe to the podcast to stay up to date on the latest. \n\nThank you for listening. ","content_html":"

About this Episode

\n\n

Hosts:
\nDaniel Clemens, ShadowDragon CEO
\nElliott Anderson, ShadowDragon CTO
\nNico Dekens, ShadowDragon Director of Intelligence and Innovation Collection (aka Dutch_OSINTguy)
\nDavid Cook, ShadowDragon Director of National Security

\n\n

In our last podcast of 2023, the ShadowDragon crew talked about the importance of veterans’ service, disinformation, and gave some of our best predictions for 2024.

\n\n

One of ShadowDragon’s newest employees, David Cook, talks about running a non-profit focused on Special Operations Forces (SOF) advocacy:

\n\n

• The Special Operations Association of America (SOAA.org) is a veteran service organization that advocates for the past, present and future SOF community.
\n• David first found SOAA during the Afghanistan withdrawal and has been involved ever since.
\n• SOAA, Congress, and several other organizations’ use of open-source information during the withdrawal to help Americans and our Afghan allies.
\n• Bringing service to veterans everywhere we go – ShadowDragon included.
\n• Launching a SkillBridge partnership to assist active-duty service members transitioning to the civilian world.
\n• OSINT use in the Afghanistan withdrawal
\n• Injection of false information into crisis situations and how to triage fact from fiction.

\n\n

Automation in OSINT, according to Nico, the Dutch OSINT Guy:

\n\n

• OSINT is an arduous process – automation can be a powerful tool in highlighting what’s important.
\n• Utilizing ChatGPT to ‘stress-test’ narratives and large amounts of content to narrow down actor motives.
\n• Automated image searches are best used in open-source investigations where the margin for human error is high.
\n• Automation allows investigators and analysts to scale with the amount and volume of information and data that is ubiquitous today.

\n\n

Dependency of Large-Language Models (LLMs), and other tech:

\n\n

• Utilizing LLMs for analysis must be used with caution – there are AI ‘hallucinations’ that return false information.
\n• Remember: the models are trained using data from humans, so it still has a margin of error.
\n• Investigators and analysts should be aware of AI ‘hallucinations’ within their OSINT tools they use.
\n• Small cognitive conditioning happens with the dependency of technology and devices – we’re in for an interesting year with external catalysts (election, emerging LLMs/deepfake tech, etc.).

\n\n

“2024 is gonna be…crazy”, Daniel Clemens, CEO of ShadowDragon

\n\n

• People are not going to be able to trust what hear and see at the end of 2024 due to deepfake technology advances, segregation in the digital world manifesting itself in the physical world.
\n• Regulation for ‘disinformation’ will not go anywhere, but there will be broad discussion and public discourse surrounding automated information – videos, audio recordings, and images.
\n• Disinformation needs to be re-branded and specifically defined in contrast to foreign malign influence operations.

\n\n

Elliott’s OSINT recommendations:

\n\n

• The popularity of OSINT will spurn regulatory action and we’ll see laws made and legal decisions on OSINT.

\n\n

Daniel’s OSINT recommendations:

\n\n

• The value of discernment will be ‘gold’ and being able to deconstruct what information is in front of them will need to be developed and honed.
\n• The ‘AI’ buzzword in OSINT will start to collapse – but some capabilities will get better because of automation, especially Geo-Spatial Intelligence (GEOINT), geo-political use-cases, and supply chain risk management.

\n\n

David’s OSINT recommendations:

\n\n

• More people will find they’ve been utilizing open-source information and creating subsequent intelligence than previously thought, re-valuing OSINT as a sector to the upside, broadening and expanding what OSINT is.
\n• OSINT as an intelligence discipline will take share from GEOINT and Signals Intelligence (SIGINT).
\n• AI and automation will create an ‘information inequality’ where a premium is placed on the truth.

\n\n

Nico’s OSINT recommendations:

\n\n

• More and more people will understand that tradecraft in OSINT is so important.
\n• Understanding, or the lack of understanding, the tradecraft, will dictate how good or how bad any regulation or legislation will be surrounding OSINT.
\n• There will be more charlatans in the OSINT space.

\n\n

Listen to the full podcast for all the guys’ book and podcast recommendations.

\n\n

This podcast is available in video and audio versions at your favorite podcast outlet, popular video platforms, and the ShadowDragon website. Subscribe to the podcast to stay up to date on the latest.

\n\n

Thank you for listening.

","summary":"Daniel, Elliott, and Nico invite new panelist David to discuss his work and the current and future landscape of AI.","date_published":"2024-01-22T06:00:00.000-05:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/32e4c1c3-8871-4a15-80b5-e5ac606f041a.mp3","mime_type":"audio/mpeg","size_in_bytes":61027402,"duration_in_seconds":3813}]},{"id":"1e918da7-2c86-45df-b139-ae8f306a18ee","title":"S02 E04: Breaking Down Systems, Breach Data Dumps, A.I., OSINF vs OSINT, and Tech Job Interviews","url":"https://podcast.shadowdragon.io/s02e04","content_text":"About this Episode\n\nHosts:\nDaniel Clemens, ShadowDragon CEO\nElliott Anderson, ShadowDragon CTO\nNico Dekens, ShadowDragon Director of Intelligence and Innovation Collection (aka Dutch_OSINTguy)\n\nThis time around the guys get together and talk about breaking down systems, especially as it relates to online data. You might be surprised to discover how social media algorithms are self-radicalizing people, computer experts are not what they used to be, and artificial intelligence could be headed down a destructive path.\n\nThey visit the past with a look at what open source intelligence was like ten years ago and glimpse what the future might look like with artificial intelligence and Apple Vision Pro goggles. It is all here as three old school open source intelligence investigators once again look at the world through the perspective of analytical intelligence.\n\nReasons we are seeing a recent increase in hacker and breach data activity, likely due to:\n• School summer break gives kids more free time\n• Ukraine war personnel returning to computers from battle lines\n• Hacker message boards feuding and hacking each other\n\nHere is what we are seeing when we interview computer job candidates:\n• Many claim to be an “expert of experts” without the underlying basic knowledge\n• These days people rarely build computers from parts – Apple security may be part of that\n• Programmers throw around the term API and then cannot explain an API\n\nNico gives us a glimpse of the evolution of his OSINT work:\n• Used to manually log into various accounts to make them look active daily\n• Over time the rise of hundreds of viable platforms required scaling account activity\n• Now finds that AI and ML results are outdated, biased, or untrue and does not use them for OSINT\n\nThe guys discuss modern day pros and cons of OSINT data collection:\n• Elliott finds people trust their niche communities and reveal more in those platforms\n• Content is moving from text to photos, moving images, and multiple languages, creating challenges\n• Analysts need to understand various AI programming languages and methodologies to vet the assumptions that produced the results\n• OSINT data collection processed through artificial intelligence is being questioned and invalidated in courts\n\nSocial media continues to influence society in unchecked ways:\n• Social media algorithms have become quicker and more comprehensive in showing content that feeds your interests\n• People are essentially becoming self-radicalized online through constant reinforcement of their beliefs\n• Terrorist groups are getting better at planting seeds pushed by algorithms\n\nThe potential for chaos and societal disruption is increasing:\n• Overloading systems and organizations are old concepts being applied in new ways through technology\n• Immigration policies need to address feelings of displacement, accelerated by slow processes and online radicalization\n• The creation of fake AI-generated content has the potential to push unstable people into violent action\n\nThe guys continue the in-depth discussion, further exploring challenges and scenarios brought on by technology, especially that crossing into the world of OSINT.\n\nThis podcast is available in video and audio versions at your favorite podcast outlet, popular video platforms, and the ShadowDragon website. Subscribe to the podcast to stay up to date on the latest.\n\nThank you for listening.","content_html":"

About this Episode

\n\n

Hosts:

\nDaniel Clemens, ShadowDragon CEO
\nElliott Anderson, ShadowDragon CTO
\nNico Dekens, ShadowDragon Director of Intelligence and Innovation Collection (aka Dutch_OSINTguy)

\n\n

This time around the guys get together and talk about breaking down systems, especially as it relates to online data. You might be surprised to discover how social media algorithms are self-radicalizing people, computer experts are not what they used to be, and artificial intelligence could be headed down a destructive path.

\n\n

They visit the past with a look at what open source intelligence was like ten years ago and glimpse what the future might look like with artificial intelligence and Apple Vision Pro goggles. It is all here as three old school open source intelligence investigators once again look at the world through the perspective of analytical intelligence.

\n\n

Reasons we are seeing a recent increase in hacker and breach data activity, likely due to:
\n• School summer break gives kids more free time
\n• Ukraine war personnel returning to computers from battle lines
\n• Hacker message boards feuding and hacking each other

\n\n

Here is what we are seeing when we interview computer job candidates:
\n• Many claim to be an “expert of experts” without the underlying basic knowledge
\n• These days people rarely build computers from parts – Apple security may be part of that
\n• Programmers throw around the term API and then cannot explain an API

\n\n

Nico gives us a glimpse of the evolution of his OSINT work:
\n• Used to manually log into various accounts to make them look active daily
\n• Over time the rise of hundreds of viable platforms required scaling account activity
\n• Now finds that AI and ML results are outdated, biased, or untrue and does not use them for OSINT

\n\n

The guys discuss modern day pros and cons of OSINT data collection:
\n• Elliott finds people trust their niche communities and reveal more in those platforms
\n• Content is moving from text to photos, moving images, and multiple languages, creating challenges
\n• Analysts need to understand various AI programming languages and methodologies to vet the assumptions that produced the results
\n• OSINT data collection processed through artificial intelligence is being questioned and invalidated in courts

\n\n

Social media continues to influence society in unchecked ways:
\n• Social media algorithms have become quicker and more comprehensive in showing content that feeds your interests
\n• People are essentially becoming self-radicalized online through constant reinforcement of their beliefs
\n• Terrorist groups are getting better at planting seeds pushed by algorithms

\n\n

The potential for chaos and societal disruption is increasing:
\n• Overloading systems and organizations are old concepts being applied in new ways through technology
\n• Immigration policies need to address feelings of displacement, accelerated by slow processes and online radicalization
\n• The creation of fake AI-generated content has the potential to push unstable people into violent action

\n\n

The guys continue the in-depth discussion, further exploring challenges and scenarios brought on by technology, especially that crossing into the world of OSINT.

\n\n

This podcast is available in video and audio versions at your favorite podcast outlet, popular video platforms, and the ShadowDragon website. Subscribe to the podcast to stay up to date on the latest.

\n\n

Thank you for listening.

","summary":"This time Daniel, Elliott, and Nico get together and talk about breaking down systems, especially as it relates to online data.\r\n\r\nThis episode discusses:\r\n• Increases in hacker and breach data activity\r\n• What OSINT work was like ten years ago versus today\r\n• Modern day pros and cons of OSINT data collection\r\n• Pitfalls of artificial intelligence and machine learning\r\n• Interviewing computer job candidates\r\n• Potential for Increased societal disruptions\r\n\r\nThe guys continue the discussion, further exploring challenges and scenarios brought on by technology, especially that crossing into the world of OSINT.\r\n\r\nJoin us regularly for discussions about news stories, current events, and technology updates from the perspective of old school open source intelligence investigators.\r\n\r\nThis podcast is available in video and audio versions at your favorite podcast outlet, popular video platforms, and the ShadowDragon website. Be sure to subscribe. Thank you for listening.","date_published":"2023-07-17T16:15:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/1e918da7-2c86-45df-b139-ae8f306a18ee.mp3","mime_type":"audio/mpeg","size_in_bytes":49903542,"duration_in_seconds":4900}]},{"id":"426e5c84-88ed-4a4e-828b-db6a9a96f572","title":"S02 E03: Silicon Valley Bank, Protests, Terrorists, Hacker Forums, Deep Fakes & Donald Trump","url":"https://podcast.shadowdragon.io/s02e03","content_text":"About this Episode\n\nHosts: Daniel Clemens, ShadowDragon CEO\nNico Dekens (aka Dutch_OSINTguy), ShadowDragon Director of Intelligence and Collection \n\nThis time it’s a one-on-one conversation as Daniel and Nico cover the latest news in and outside the OSINT world. Their intel perspective on the news is fascinating, but the discussions between the headlines make this episode even more compelling. \n\nListen in as the guys discuss the increasing importance of incident response, crisis management, and operational security, while throwing in advice on protesting, voting, personal security awareness, and more that will add clarity in an ever-changing digital world.\n\nSilicon Valley Bank\n• Learn what went wrong in 60 seconds\n• Keyword monitoring detected early what other banks were at risk (i.e., Credit Suisse)\n• Disruptors started pushing false messages about US and EU bank failures\n• Getting messages, true or false, out to one or two key influencers can topple a company quickly\n• OSINT data could help drive aggressive investment strategies\n\nExtinction Rebellion (XR)\n• Protest group was infiltrated by Dutch law enforcement\n• Group feels abused being investigated by the same technique used on terrorists\n• Amnesty International calls the working method of the police and judiciary \"particularly problematic\"\n• Police have an obligation to maintain public order and prevent civil unrest\n\nUpdate: Stabbing Incidents and Alerts in Europe\n• There have been more stabbing incidents and lone wolf attacks since we discussed the rising trend in a recent episode\n• U.S. defense employee was stabbed in the United Kingdom near her GCHQ office\n• Intel agencies issued alerts for increased risk to Vienna prayer houses from Islamic State jihadis\n• Brussels metro stations are on high alert; U.S. embassy issued an alert for stabbing threat\n\nTerrorist Threat Response\n• Islamic terrorists may go silent for a while, but they are playing a long game and will return\n• Include native foreign language and dialects for OSINT search queries\n• Individuals need to increase situational awareness and safety protocols\n\nBreached.vc Hacker Forum Owner Arrested\n• Young man arrested and labeled “kingpin” of hacker info sharing stie\n• Suspect Conor Brian Fitzpatrick of Peekskill, NY looks like every hacker kid of the last 25 years\n• Profile does not fit old school hardcore criminal type\n• Hacker surprisingly made basic mistakes with operational security (opsec) \n• Unless law enforcement has a replacement in place, the forum will re-emerge elsewhere\n\nDonald Trump Announced Pending Arrest\n• More social media responses are from the left than the right\n• Messages are so extreme there is an indication they may be generated by bots\n• People on the right are not responding or mobilizing as they did with January 6th events\n• The realistic deep fake photos have had a limited effectiveness\n\nDeep Fake Tools Are Getting Better\n• The quality of fakes is getting so good they are making into mainstream media\n• Nico likes tools from Open AI, Midjourney, and HuggingFace.co\n• With text to image get very specific with visual details, but also perspective, camera angle, lens, etc.\n• People are creating AI-generated text and visual content without proper attribution\n\nJoin us again for more fun discussions about social media, open source intelligence, law enforcement, media manipulation, and the world at large. Look for upcoming guest appearances by other intelligence professionals.\n\nThis podcast is available in video and audio versions at your favorite podcast outlet, popular video platforms, and the ShadowDragon website. Be sure to subscribe to the podcast.\n\nThank you for listening.","content_html":"

About this Episode

\n\n

Hosts: Daniel Clemens, ShadowDragon CEO
\nNico Dekens (aka Dutch_OSINTguy), ShadowDragon Director of Intelligence and Collection

\n\n

This time it’s a one-on-one conversation as Daniel and Nico cover the latest news in and outside the OSINT world. Their intel perspective on the news is fascinating, but the discussions between the headlines make this episode even more compelling.

\n\n

Listen in as the guys discuss the increasing importance of incident response, crisis management, and operational security, while throwing in advice on protesting, voting, personal security awareness, and more that will add clarity in an ever-changing digital world.

\n\n

Silicon Valley Bank
\n• Learn what went wrong in 60 seconds
\n• Keyword monitoring detected early what other banks were at risk (i.e., Credit Suisse)
\n• Disruptors started pushing false messages about US and EU bank failures
\n• Getting messages, true or false, out to one or two key influencers can topple a company quickly
\n• OSINT data could help drive aggressive investment strategies

\n\n

Extinction Rebellion (XR)
\n• Protest group was infiltrated by Dutch law enforcement
\n• Group feels abused being investigated by the same technique used on terrorists
\n• Amnesty International calls the working method of the police and judiciary "particularly problematic"
\n• Police have an obligation to maintain public order and prevent civil unrest

\n\n

Update: Stabbing Incidents and Alerts in Europe
\n• There have been more stabbing incidents and lone wolf attacks since we discussed the rising trend in a recent episode
\n• U.S. defense employee was stabbed in the United Kingdom near her GCHQ office
\n• Intel agencies issued alerts for increased risk to Vienna prayer houses from Islamic State jihadis
\n• Brussels metro stations are on high alert; U.S. embassy issued an alert for stabbing threat

\n\n

Terrorist Threat Response
\n• Islamic terrorists may go silent for a while, but they are playing a long game and will return
\n• Include native foreign language and dialects for OSINT search queries
\n• Individuals need to increase situational awareness and safety protocols

\n\n

Breached.vc Hacker Forum Owner Arrested
\n• Young man arrested and labeled “kingpin” of hacker info sharing stie
\n• Suspect Conor Brian Fitzpatrick of Peekskill, NY looks like every hacker kid of the last 25 years
\n• Profile does not fit old school hardcore criminal type
\n• Hacker surprisingly made basic mistakes with operational security (opsec)
\n• Unless law enforcement has a replacement in place, the forum will re-emerge elsewhere

\n\n

Donald Trump Announced Pending Arrest
\n• More social media responses are from the left than the right
\n• Messages are so extreme there is an indication they may be generated by bots
\n• People on the right are not responding or mobilizing as they did with January 6th events
\n• The realistic deep fake photos have had a limited effectiveness

\n\n

Deep Fake Tools Are Getting Better
\n• The quality of fakes is getting so good they are making into mainstream media
\n• Nico likes tools from Open AI, Midjourney, and HuggingFace.co
\n• With text to image get very specific with visual details, but also perspective, camera angle, lens, etc.
\n• People are creating AI-generated text and visual content without proper attribution

\n\n

Join us again for more fun discussions about social media, open source intelligence, law enforcement, media manipulation, and the world at large. Look for upcoming guest appearances by other intelligence professionals.

\n\n

This podcast is available in video and audio versions at your favorite podcast outlet, popular video platforms, and the ShadowDragon website. Be sure to subscribe to the podcast.

\n\n

Thank you for listening.

","summary":"This time it’s a one-on-one conversation as Daniel and Nico cover the latest news in and outside the OSINT world with a fascinating intel perspective. In between the lines catch discussions about the increasing importance of incident response, crisis management, and operational security, while picking up advice on protesting, voting, personal security awareness, and more that will add clarity in an ever-changing digital world.","date_published":"2023-04-12T18:45:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/426e5c84-88ed-4a4e-828b-db6a9a96f572.mp3","mime_type":"audio/mpeg","size_in_bytes":35128389,"duration_in_seconds":2927}]},{"id":"0c3a0aac-d2e6-43c9-8c9f-127c91d34bed","title":"S02 E02: Chinese Spy Balloon, Outing Spies, Islamic Attacks, & Human Trafficking As Seen Thru OSINT","url":"https://podcast.shadowdragon.io/s02e02","content_text":"About this Episode\n\nHosts: Daniel Clemens, ShadowDragon CEO\nElliott Anderson, ShadowDragon CTO\nNico Dekens, ShadowDragon Director of Intelligence and Innovation Collection (aka Dutch_OSINTguy)\n\nThe guys are on top of the latest espionage and OSINT news around the world. From lone wolf activity to coordinated attacks, they examine recent events from an intelligence perspective, discussing new methodology and emerging patterns.\n\nIn a world where it isn’t always easy to know what’s real and what to dismiss as disinformation, we look at data to tell the true story.\n\nIslamic Terrorism:\n• An uprise of lone wolf attacks by the Islamic State have been observed in in Europe. Different than the terrorist cells we saw around 2015, but similar methods for achieving maximum damage with a knife.\n• There is more activity than the last five years so there's clearly something going on. We hope to get more insight on if these were orchestrated or coordinated attacks.\n• Islamic State simply wants to show they are still present and can do whatever they want when they want. That scares people and also makes some people choose sides.\n\nTyranny Against Farmers:\n• Farmers in Europe are rising up against strict limits on emissions and nitrogen and have been aggressively protesting, blocking roads and going to politicians’ homes to make their point.\n• Farmers seek to work out a long-term plan with the government, but so far it hasn't been going that well. It takes time to make big changes. The US took 12 years to switch consumers from analog to digital TV.\n• Reminiscent of how the United States was started with overburdensome government interference impacting those without appropriate representation.\n\nIrregular Warfare/Asymmetric Warfare:\n• It is all about disrupting society through pinching. Russian election influence didn’t just pick one side, they picked both sides.\n• It took a long time for many to realize the ability of the internet to interfere with geopolitics. The vast majority will never spot the manipulation.\n• Irregular warfare uses hacker math to find two or three low-risk vulnerabilities that can affect one super critical vulnerability. Smaller groups can exploit weaknesses and tilt the scales in their favor.\n\nData Dumps:\n• Super spies that successfully worked covertly for many years are being exposed with data dumps. Also revealing their families disrupts their daily lives for maximum damage.\n• Foreign policy connections and illegal surveillance on Russian citizens are being exposed through a Snowden type of leak. What we're seeing with data dumps is similar to the Berlin Wall coming down. We believe WWIII has started.\n• We are now seeing ransomware groups incorporate public relations and openly post job openings with benefits.\n\nData Collection:\n• People don't question the tech they use like they should.\n• Vulnerability is on the rise with smart devices and household appliances transmitting usage data across the web and basic apps requesting access to phone data for no good reason.\n• In China, TikTok users that had anti-government pictures on their phone suddenly found those pictures deleted from their camera roll. We should rename TikTok to DickTok.\n\nSplintered Social Media:\n• People are being pulled out of their comfort zone on certain platforms. It is hard for them to adjust to new restrictions. Splintering mostly affected right-leaning groups. Now we see the same pattern with the left.\n• Social aspects of the internet started in a very raw state with IRC type things and Yahoo chats. After that it became more polished like Instagram. Parents have stayed but kids have moved on.\n• Every 7-10 years there is a generational change in social media platforms. The new wave of social media is a little more personal. To some extent it started with Snapchat and now with Be Real.\n\nState of OSINT:\n• For a few years we saw a mass exodus from platforms like YouTube, Twitter, and Facebook. New groups rose but most have died off.\n• In smaller ecosystems users tend to trust each other and act more extremely. Bad actors can do a lot more damage in these small groups.\n• This is great for OSINT investigation and attribution. We can target them easier in a smaller space and get better results.\n\nHuman Trafficking:\n• Sex workers tend to advertise online, which can lead to a trove of open source intelligence.\n• We see handlers slip up on operational security when they get into new platforms.\n• Even with faces blurred, connections can be made through identifying the same phone number, lingerie, hotel décor, bedspread, carpet, and power outlets.\n\nCatching Spies:\n• Spies are being outed at a high rate through open source intelligence, similar to that used in the Ukraine war. Spies in Russia, Brazil, Sweden, U.S., Germany, Sweden, the Netherlands, and more have recently been exposed.\n• Searching for those 35-65 is ideal. Younger people have more knowledge of online intelligence and older people have little or no online presence.\n• At-home spy hunters are now finding people and “unlocking achievements” like a video game.\n\nChinese Spy Balloon:\n• Hobbyists were tracking and identifying the Chinese spy balloon starting in the Western United States.\n• A low-cost RTL USB stick and antenna has democratized the radio spectrum, enabling anyone to access the signals. People use the Flight Aware app to monitor local air traffic.\n• Databases like ADS-B exchange will also give you free access to their global coverage for planes and boats. There are also weather balloon tracking apps.\n\nUsing Data To Tell The Story:\n• News today can cause anxiety from not knowing what is the real truth or what is behind it.\n• Figuring out what is going on is a rush. It lowers the anxiety level and lets you be at peace with whatever is the conclusion.\n• With OSINT investigations, data tells the unbiased story.\n\nShadowDragon is excited to have Nico Dekens officially join the team. For those interested in improving their open source investigative techniques and methodology, ShadowDragon now offers a special 5-day OSINT training class that is not advertised on the website. Contact us for details.\n\nThank you for joining us. You can look forward to more interesting news and information from the OSINT perspective in new episodes coming soon.","content_html":"

About this Episode

\n\n

Hosts: Daniel Clemens, ShadowDragon CEO
\nElliott Anderson, ShadowDragon CTO
\nNico Dekens, ShadowDragon Director of Intelligence and Innovation Collection (aka Dutch_OSINTguy)

\n\n

The guys are on top of the latest espionage and OSINT news around the world. From lone wolf activity to coordinated attacks, they examine recent events from an intelligence perspective, discussing new methodology and emerging patterns.

\n\n

In a world where it isn’t always easy to know what’s real and what to dismiss as disinformation, we look at data to tell the true story.

\n\n

Islamic Terrorism:
\n• An uprise of lone wolf attacks by the Islamic State have been observed in in Europe. Different than the terrorist cells we saw around 2015, but similar methods for achieving maximum damage with a knife.
\n• There is more activity than the last five years so there's clearly something going on. We hope to get more insight on if these were orchestrated or coordinated attacks.
\n• Islamic State simply wants to show they are still present and can do whatever they want when they want. That scares people and also makes some people choose sides.

\n\n

Tyranny Against Farmers:
\n• Farmers in Europe are rising up against strict limits on emissions and nitrogen and have been aggressively protesting, blocking roads and going to politicians’ homes to make their point.
\n• Farmers seek to work out a long-term plan with the government, but so far it hasn't been going that well. It takes time to make big changes. The US took 12 years to switch consumers from analog to digital TV.
\n• Reminiscent of how the United States was started with overburdensome government interference impacting those without appropriate representation.

\n\n

Irregular Warfare/Asymmetric Warfare:
\n• It is all about disrupting society through pinching. Russian election influence didn’t just pick one side, they picked both sides.
\n• It took a long time for many to realize the ability of the internet to interfere with geopolitics. The vast majority will never spot the manipulation.
\n• Irregular warfare uses hacker math to find two or three low-risk vulnerabilities that can affect one super critical vulnerability. Smaller groups can exploit weaknesses and tilt the scales in their favor.

\n\n

Data Dumps:
\n• Super spies that successfully worked covertly for many years are being exposed with data dumps. Also revealing their families disrupts their daily lives for maximum damage.
\n• Foreign policy connections and illegal surveillance on Russian citizens are being exposed through a Snowden type of leak. What we're seeing with data dumps is similar to the Berlin Wall coming down. We believe WWIII has started.
\n• We are now seeing ransomware groups incorporate public relations and openly post job openings with benefits.

\n\n

Data Collection:
\n• People don't question the tech they use like they should.
\n• Vulnerability is on the rise with smart devices and household appliances transmitting usage data across the web and basic apps requesting access to phone data for no good reason.
\n• In China, TikTok users that had anti-government pictures on their phone suddenly found those pictures deleted from their camera roll. We should rename TikTok to DickTok.

\n\n

Splintered Social Media:
\n• People are being pulled out of their comfort zone on certain platforms. It is hard for them to adjust to new restrictions. Splintering mostly affected right-leaning groups. Now we see the same pattern with the left.
\n• Social aspects of the internet started in a very raw state with IRC type things and Yahoo chats. After that it became more polished like Instagram. Parents have stayed but kids have moved on.
\n• Every 7-10 years there is a generational change in social media platforms. The new wave of social media is a little more personal. To some extent it started with Snapchat and now with Be Real.

\n\n

State of OSINT:
\n• For a few years we saw a mass exodus from platforms like YouTube, Twitter, and Facebook. New groups rose but most have died off.
\n• In smaller ecosystems users tend to trust each other and act more extremely. Bad actors can do a lot more damage in these small groups.
\n• This is great for OSINT investigation and attribution. We can target them easier in a smaller space and get better results.

\n\n

Human Trafficking:
\n• Sex workers tend to advertise online, which can lead to a trove of open source intelligence.
\n• We see handlers slip up on operational security when they get into new platforms.
\n• Even with faces blurred, connections can be made through identifying the same phone number, lingerie, hotel décor, bedspread, carpet, and power outlets.

\n\n

Catching Spies:
\n• Spies are being outed at a high rate through open source intelligence, similar to that used in the Ukraine war. Spies in Russia, Brazil, Sweden, U.S., Germany, Sweden, the Netherlands, and more have recently been exposed.
\n• Searching for those 35-65 is ideal. Younger people have more knowledge of online intelligence and older people have little or no online presence.
\n• At-home spy hunters are now finding people and “unlocking achievements” like a video game.

\n\n

Chinese Spy Balloon:
\n• Hobbyists were tracking and identifying the Chinese spy balloon starting in the Western United States.
\n• A low-cost RTL USB stick and antenna has democratized the radio spectrum, enabling anyone to access the signals. People use the Flight Aware app to monitor local air traffic.
\n• Databases like ADS-B exchange will also give you free access to their global coverage for planes and boats. There are also weather balloon tracking apps.

\n\n

Using Data To Tell The Story:
\n• News today can cause anxiety from not knowing what is the real truth or what is behind it.
\n• Figuring out what is going on is a rush. It lowers the anxiety level and lets you be at peace with whatever is the conclusion.
\n• With OSINT investigations, data tells the unbiased story.

\n\n

ShadowDragon is excited to have Nico Dekens officially join the team. For those interested in improving their open source investigative techniques and methodology, ShadowDragon now offers a special 5-day OSINT training class that is not advertised on the website. Contact us for details.

\n\n

Thank you for joining us. You can look forward to more interesting news and information from the OSINT perspective in new episodes coming soon.

","summary":"The guys are on top of the latest espionage and OSINT news around the world. From lone wolf activity to coordinated attacks, they examine recent events from an intelligence perspective, discussing new methodology and emerging patterns.\r\n\r\nIn a world where it isn’t always easy to know what’s real and what to dismiss as disinformation, we look at data to tell the true story.\r\n\r\nThis episode we cover:\r\n• Chinese Spy Balloon\r\n• Hunting for Human Traffickers\r\n• Exposing Spies\r\n• The Current State of OSINT and More\r\n\r\nJoin us for looking at the news through data and more thought-provoking conversations with experts from within the OSINT world. Video versions of the podcasts can be found on YouTube, Vimeo, Rumble, and the ShadowDragon website.","date_published":"2023-03-02T17:00:00.000-05:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/0c3a0aac-d2e6-43c9-8c9f-127c91d34bed.mp3","mime_type":"audio/mpeg","size_in_bytes":62381955,"duration_in_seconds":5108}]},{"id":"199ee2ed-3d70-47bc-b169-8f4f5292f2b1","title":"S02 E01: What We’ve Learned In The Last Year About Social Media, OSINT, and Russia","url":"https://podcast.shadowdragon.io/s02e01","content_text":"About This Episode\n\nHosts: Daniel Clemens, ShadowDragon CEO; Elliott Anderson, ShadowDragon CTO\nGuest: Nico Dekens, Dutch_OSINTguy\n\nAfter an extended layoff, the team returns with Dutch OSINT guy Nico Dekens to discuss changes and lessons learned during that time in the world of OSINT. They cover everything from the evolution of the internet landscape to the latest trends in counter social media and the use of technology in cybercrime and modern warfare.\n\nThe guys get right into a no holds barred conversation including methodology, tactics, and the current state of affairs.\n\nOn social media:\n• For many, the newest social media is like a new drug\n• Social media gave everyone a voice, but no one is actually listening\n• More free speech alternatives will rise over the next 24 to 36 months\n• Twitter model has always been broken, but remains a great source for breaking news\n• Segmentation of social audiences will see more disinformation with less accountability\n\nThe war in Ukraine revealed:\n• Russia was only a regional power, never a global power.\n• Disinformation was defeated with even quicker counter disinformation\n• OSINT can be an effective weapon against asymmetrical warfare\n• Truth beats lies. War is cognitive. Input validation is important.\n\nOSINT investigation tips:\n• Honest intelligence from people with smart phones replaces spy craft\n• Use the connector of a group to get to the hidden individual\n• “Pinch” bad guys with a curiosity or provocative action to reveal themselves\n• Food reviews, dating sites, sports sites, and gaming forums are valuable resources.\n• Google is good but it is not the internet. Use varied sources.\n\nWhat the near future holds:\n• Energy prices are contributing to inflation and a weak economy, signaling ongoing instability\n• Unsophisticated criminals with easy access to phishing tools may increase cybercrime\n• The power of drones to be used a weapon is much higher than people realize\n• Organizations give low priority to cyber investigations, acting tactically instead of strategically\n• OSINT provides more pieces for putting the puzzles together.\n\nNico Dekens teaches OSINT methodology, critical thinking, proper intelligence analysis, and how to interpret large datasets.\n\nFor tools to help you apply some of the “pinch” techniques mentioned in the podcast, check out Spotter by ShadowDragon. You can also find other great cyber investigative tools and training from ShadowDragon.\n\nJoin us for more thought-provoking episodes and conversations with experts from within the OSINT world.Special Guest: Nico \"Dutch Osint Guy\".","content_html":"

About This Episode

\n\n

Hosts: Daniel Clemens, ShadowDragon CEO; Elliott Anderson, ShadowDragon CTO
\nGuest: Nico Dekens, Dutch_OSINTguy

\n\n

After an extended layoff, the team returns with Dutch OSINT guy Nico Dekens to discuss changes and lessons learned during that time in the world of OSINT. They cover everything from the evolution of the internet landscape to the latest trends in counter social media and the use of technology in cybercrime and modern warfare.

\n\n

The guys get right into a no holds barred conversation including methodology, tactics, and the current state of affairs.

\n\n

On social media:
\n• For many, the newest social media is like a new drug
\n• Social media gave everyone a voice, but no one is actually listening
\n• More free speech alternatives will rise over the next 24 to 36 months
\n• Twitter model has always been broken, but remains a great source for breaking news
\n• Segmentation of social audiences will see more disinformation with less accountability

\n\n

The war in Ukraine revealed:
\n• Russia was only a regional power, never a global power.
\n• Disinformation was defeated with even quicker counter disinformation
\n• OSINT can be an effective weapon against asymmetrical warfare
\n• Truth beats lies. War is cognitive. Input validation is important.

\n\n

OSINT investigation tips:
\n• Honest intelligence from people with smart phones replaces spy craft
\n• Use the connector of a group to get to the hidden individual
\n• “Pinch” bad guys with a curiosity or provocative action to reveal themselves
\n• Food reviews, dating sites, sports sites, and gaming forums are valuable resources.
\n• Google is good but it is not the internet. Use varied sources.

\n\n

What the near future holds:
\n• Energy prices are contributing to inflation and a weak economy, signaling ongoing instability
\n• Unsophisticated criminals with easy access to phishing tools may increase cybercrime
\n• The power of drones to be used a weapon is much higher than people realize
\n• Organizations give low priority to cyber investigations, acting tactically instead of strategically
\n• OSINT provides more pieces for putting the puzzles together.

\n\n

Nico Dekens teaches OSINT methodology, critical thinking, proper intelligence analysis, and how to interpret large datasets.

\n\n

For tools to help you apply some of the “pinch” techniques mentioned in the podcast, check out Spotter by ShadowDragon. You can also find other great cyber investigative tools and training from ShadowDragon.

\n\n

Join us for more thought-provoking episodes and conversations with experts from within the OSINT world.

Special Guest: Nico "Dutch Osint Guy".

","summary":"After an extended layoff, Daniel Clemens and Elliott Anderson of ShadowDragon connect with Dutch OSINT guy Nico Dekens to discuss changes and lessons learned during that time in the world of OSINT. The team gets right into it with discussions about:\r\n\r\n• Shifts in the social media landscape\r\n• Information uncovered by the war in Ukraine\r\n• Next level OSINT investigative tips\r\n• The road ahead as seen through OSINT\r\n\r\nJoin us for more thought-provoking episodes and conversations with experts from within the OSINT world.","date_published":"2022-12-08T02:00:00.000-05:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/199ee2ed-3d70-47bc-b169-8f4f5292f2b1.mp3","mime_type":"audio/mpeg","size_in_bytes":52385799,"duration_in_seconds":4293}]},{"id":"1fb9c794-1200-4f40-891b-b4704a8597da","title":"S01 E08: Exploring OSINT, War Stories & OSINT with (Nico Dekens) Dutch_OSINTguy","url":"https://podcast.shadowdragon.io/s01e08","content_text":"Nico shares his origin story along with war stories old, and new. \n Topics the following:\n * Leadership seems to want visualization, analyst don't care. Discussions evolve about how heat maps/crap maps may or may not be relevant. \n * Geographical visualization helps with different types of investigations. \n * Mapping Tactical Data is useful, timelines are helpful with pruning as well as mapping money laundering while other types of data fall short. Special Guest: Nico \"Dutch Osint Guy\".","content_html":"

Nico shares his origin story along with war stories old, and new.
\n Topics the following:
\n * Leadership seems to want visualization, analyst don't care. Discussions evolve about how heat maps/crap maps may or may not be relevant.
\n * Geographical visualization helps with different types of investigations.
\n * Mapping Tactical Data is useful, timelines are helpful with pruning as well as mapping money laundering while other types of data fall short.

Special Guest: Nico "Dutch Osint Guy".

","summary":"We explore the topic of OSINT, War Stories, and the value of heat map visualization with Nico Dekens (aka Dutch_Osintguy). ","date_published":"2020-09-25T02:00:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/1fb9c794-1200-4f40-891b-b4704a8597da.mp3","mime_type":"audio/mpeg","size_in_bytes":96802770,"duration_in_seconds":4828}]},{"id":"49e11625-41a8-436b-bd0b-158f0dcc7f5c","title":"S01 E07: Charl van der Walt on red team vs blue team, history, threat intelligence, infosec rockstars, and striving for excellence. ","url":"https://podcast.shadowdragon.io/s01e07","content_text":"Red team versus blue team. All should become a purple team!! Searching for a way around the rockstar mentality all too common within the infosec industry, as the proposal to build a team of teams is announced. Deception technology mixed with an actual true cost analysis of threat intelligence lending questionable returns. The roller coaster of topics reaches a pinnacle with a reflection on being allocentric within the security industry versus viewing security solely through the lens of industry growth.\n\nTopics include:\n\n\nCharl shares his history, growth, and maturity within the industry.\nRed team vs. blue team, and how everyone should be a purple team.\nDeception technology, honeypots, forensics, and storytelling with data.\nGetting around the rockstar mentality within infosec, and teamwork produces a higher ROI.\nDemystifying the value of threat intelligence.\n\n\nNotable Quotes:\n\n\n\"Think about what you do as something that matters and approach it in that way and the rest will follow.\" - Charl van der Walt\n\n\nSpecial shout outs to:\n\n\nHaroon Meer from Thinkst \nRoelof Temmingh from Vortimo. \nSpecial Guest: Charl van der Walt.","content_html":"

Red team versus blue team. All should become a purple team!! Searching for a way around the rockstar mentality all too common within the infosec industry, as the proposal to build a team of teams is announced. Deception technology mixed with an actual true cost analysis of threat intelligence lending questionable returns. The roller coaster of topics reaches a pinnacle with a reflection on being allocentric within the security industry versus viewing security solely through the lens of industry growth.

\n\n

Topics include:

\n\n\n\n

Notable Quotes:

\n\n
\n

"Think about what you do as something that matters and approach it in that way and the rest will follow." - Charl van der Walt

\n
\n\n

Special shout outs to:

\n\n

Special Guest: Charl van der Walt.

","summary":"Red team versus blue team. All should become a purple team!! Searching for a way around the rockstar mentality all too common within the infosec industry, as the proposal to build a team of teams is announced. Deception technology mixed with an actual true cost analysis of threat intelligence lending questionable returns. The roller coaster of topics reaches a pinnacle with a reflection on being allocentric within the security industry versus viewing security solely through the lens of industry growth.","date_published":"2020-06-18T11:30:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/49e11625-41a8-436b-bd0b-158f0dcc7f5c.mp3","mime_type":"audio/mpeg","size_in_bytes":77291456,"duration_in_seconds":4826}]},{"id":"e2adb3c2-4f4e-43cb-9a40-2fb0a5d7dcc0","title":"S01 E06: Blake Butler Interview - Intel CTF, Hacking Back, Actor Engagement & Synthetic Identities in the Cognitive Warfare Landscape","url":"https://podcast.shadowdragon.io/s01e06","content_text":"Actor engagement, and physical security intersect when active shooter situations or heightened security threats are targeted against executives or physical locations. Naturally, the topic of hack-back arises but this takes us down the rabbit trails of the roles synthetic identities play in the cognitive landscape, actor engagement and experiences found only in the trenches. Blake Butler from Paypal joins us in exploring very specific topics that are not discussed enough. \n\nTopics include:\n\n\nUsing OSINT, and Targeting in Active Shooter or physical security situations. \nHack back or Long Term Investigations \nActor engagement is a must for gleaning better intelligence. This isn't hack back, but to non-technical folks it sounds like hackback. Clarification is needed.\nCognitive Warfare landscape coupled with Synthetic Identities. \nSpecial Guest: Blake Butler.Links:Intel CTF Video SnippetHacking Back VideoVideo of EpisodeShadowDragon OIMonitorShadowDragon Spotter","content_html":"

Actor engagement, and physical security intersect when active shooter situations or heightened security threats are targeted against executives or physical locations. Naturally, the topic of hack-back arises but this takes us down the rabbit trails of the roles synthetic identities play in the cognitive landscape, actor engagement and experiences found only in the trenches. Blake Butler from Paypal joins us in exploring very specific topics that are not discussed enough.

\n\n

Topics include:

\n\n

Special Guest: Blake Butler.

Links:

","summary":"The topic of hack-back takes us down the rabbit trails of the roles synthetic identities play in the cognitive landscape, actor engagement and experiences found only in the trenches.","date_published":"2020-04-29T12:00:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/e2adb3c2-4f4e-43cb-9a40-2fb0a5d7dcc0.mp3","mime_type":"audio/mpeg","size_in_bytes":77120253,"duration_in_seconds":4773}]},{"id":"362c10b8-4805-4169-a9d1-fb7a85765daf","title":"S01 E05: Matt Devost Interview -Disinformation Attacks Against Institutions of Trust, Turing Assessments for Datasets, Exploration of Red Teaming Innovation","url":"https://podcast.shadowdragon.io/s01e05","content_text":"Risk management strategies that work are hard to find in such a noisy infosec buzzword filled industry. Our guest Matt Devost, offers perspective on subjects which will be helpful for beginners, advisors or CISO's.\n\nWe cover some of the following items:\n\n\nAI & Turing Integrity Assessments\nRisk Management strategies that work. \nHistorical reference points to the beginnings of the threat intelligence industry. \nSimilarities between an evolving TI landscape, and red teaming over the last 20 years. \nWhere bad threat intelligence can take you. \nInsider threats are always constant. \nContext and discussion on disinformation.\n\n\n\n\"Here are the threat actors that likely to target you, here are the goals that they are trying to achieve, here are the attack surfaces that presented themselves, here is the outcome we could achieve, here is the mitigation strategy. Metrics and measurement matter, but strategic outcomes must be pursued. Risk management should always focus on time to detection.\".... (Paraphrased from Matt Devost)\n\n\nMatt Devost was one of the first white hat hackers to bridge the gap between the top-secret / national security circles and the hacker world. He was one of the few to have a masters degree in political science with a focus on national security, while also having the skills to attack and defend. He has been renowned as one of the few that had a world of \"first's\" within the industry. Matt was one of the first pulled into the United States Presidential commission on critical infrastructure protection in the 90s. The Presidential commission had a significant focus on cyber risks associated with the United States' critical infrastructure. Something that affects most of our careers in one way or another today. Special Guest: Matt Devost.","content_html":"

Risk management strategies that work are hard to find in such a noisy infosec buzzword filled industry. Our guest Matt Devost, offers perspective on subjects which will be helpful for beginners, advisors or CISO's.

\n\n

We cover some of the following items:

\n\n\n\n
\n

"Here are the threat actors that likely to target you, here are the goals that they are trying to achieve, here are the attack surfaces that presented themselves, here is the outcome we could achieve, here is the mitigation strategy. Metrics and measurement matter, but strategic outcomes must be pursued. Risk management should always focus on time to detection.".... (Paraphrased from Matt Devost)

\n
\n\n

Matt Devost was one of the first white hat hackers to bridge the gap between the top-secret / national security circles and the hacker world. He was one of the few to have a masters degree in political science with a focus on national security, while also having the skills to attack and defend. He has been renowned as one of the few that had a world of "first's" within the industry. Matt was one of the first pulled into the United States Presidential commission on critical infrastructure protection in the 90s. The Presidential commission had a significant focus on cyber risks associated with the United States' critical infrastructure. Something that affects most of our careers in one way or another today.

Special Guest: Matt Devost.

","summary":"Risk management strategies that work are hard to find in such a noisy infosec buzzword filled industry. Our guest Matt Devost, offers perspective on subjects which will be helpful for beginners, advisors or CISO's.","date_published":"2020-04-20T04:00:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/362c10b8-4805-4169-a9d1-fb7a85765daf.mp3","mime_type":"audio/mpeg","size_in_bytes":65131255,"duration_in_seconds":4053}]},{"id":"bba56d7f-4657-420f-a880-ffab594b32aa","title":"S01 E04: Covid19 Conversation and Observations","url":"https://podcast.shadowdragon.io/s01e04","content_text":"In our podcast, we aren’t always the experts in all of the topics at hand, but we know where to get experts and have candid conversations.\n\nStandard Disclaimer\nThe intent is to explore information around this topic. This episode is long, and we will get a bibliography put together. In no way should the questions fan the flame of conspiracies, fear or panic. The information discussed are opinions and dialogue. Please verify the information or theories shared on your own time. The doctor Interviewed had requested to not publish his identity in this piece. We respect that and hope you will as well. ","content_html":"

In our podcast, we aren’t always the experts in all of the topics at hand, but we know where to get experts and have candid conversations.

\n\n

Standard Disclaimer
\nThe intent is to explore information around this topic. This episode is long, and we will get a bibliography put together. In no way should the questions fan the flame of conspiracies, fear or panic. The information discussed are opinions and dialogue. Please verify the information or theories shared on your own time. The doctor Interviewed had requested to not publish his identity in this piece. We respect that and hope you will as well.

","summary":"We have been monitoring COVID19 and observed that we need to dig in deeper with experts in the field. In this episode we explore that dialogue.","date_published":"2020-04-14T13:00:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/bba56d7f-4657-420f-a880-ffab594b32aa.mp3","mime_type":"audio/mp3","size_in_bytes":83744967,"duration_in_seconds":4187}]},{"id":"cda25ee0-9a2b-422f-b856-5de91f091aee","title":"S01 E03: Incident Response, Long Time Investigations Need Story Telling & Innovation in Event Query Languages. ","url":"https://podcast.shadowdragon.io/s01e03","content_text":"The hack of old Zack Payton describes his role in pushing the boundaries of incident response, threat hunting and scaling up SOC teams and MSSPs with the innovations Westward.AI is pushing. Mr. Payton spent years providing in the trench incident response, reversing, exploit development and so much more. \n\nSpecial mentions to the following:\n\n@insanitybit\ngrapl project: https://github.com/insanitybit/grapl\n\n@rw_access Ross Wolf designer of EQL\nhttps://github.com/endgameinc/eql \n\n@Cyb3rWard0g Roberto Rodriguez Inventor of Mordor, HELK, and OSSEM\nhttps://github.com/hunters-forge/mordor \nhttps://github.com/hunters-forge/OSSEM\nhttps://github.com/Cyb3rWard0g/HELK\n\n@john_threat - making memory thievesSpecial Guest: Zack Payton.","content_html":"

The hack of old Zack Payton describes his role in pushing the boundaries of incident response, threat hunting and scaling up SOC teams and MSSPs with the innovations Westward.AI is pushing. Mr. Payton spent years providing in the trench incident response, reversing, exploit development and so much more.

\n\n

Special mentions to the following:

\n\n

@insanitybit
\ngrapl project: https://github.com/insanitybit/grapl

\n\n

@rw_access Ross Wolf designer of EQL
\nhttps://github.com/endgameinc/eql

\n\n

@Cyb3rWard0g Roberto Rodriguez Inventor of Mordor, HELK, and OSSEM
\nhttps://github.com/hunters-forge/mordor
\nhttps://github.com/hunters-forge/OSSEM
\nhttps://github.com/Cyb3rWard0g/HELK

\n\n

@john_threat - making memory thieves

Special Guest: Zack Payton.

","summary":"Daniel Clemens, Brian Dykstra, and Zack Payton grok over story telling of investigations and the need for deeper innovation in EQL. \r\nInnovations in Event Query Language Implementations, AI, from Zack Payton at Westward.AI. ","date_published":"2020-04-13T05:00:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/cda25ee0-9a2b-422f-b856-5de91f091aee.mp3","mime_type":"audio/mpeg","size_in_bytes":77706075,"duration_in_seconds":4838}]},{"id":"5545f2ea-e871-4a90-9e6d-3ea3c978fc8a","title":"S01 E02: Cyber Cyber Bang Bang - Attacks Exploiting Risks within the Physical and Cyber Universe. Poor Security can get someone killed. ","url":"https://podcast.shadowdragon.io/s01e02","content_text":"Truly Advanced Persistent attacks where physical exploitation and even death are rarely discussed. We cover some of this along with security within the Healthcare and Government space. \n\nSecurity Within Healthcare and government is always hard. Tensions between information security and the business make this harder. Hospitals hit in fall of 2019 had a taste of exploitation. Similarly, state governments have had issues with cartel related attackers. CISO's that enable assessment, and security design around systems that cannot be fully hardened can kill two birds with one stone. \n\nWeighing authority versus influence, FDA approved equipment, 0day discovery within applications. \nDesigning security around systems is a must when unpatchable vulnerabilities exist. ","content_html":"

Truly Advanced Persistent attacks where physical exploitation and even death are rarely discussed. We cover some of this along with security within the Healthcare and Government space.

\n\n

Security Within Healthcare and government is always hard. Tensions between information security and the business make this harder. Hospitals hit in fall of 2019 had a taste of exploitation. Similarly, state governments have had issues with cartel related attackers. CISO's that enable assessment, and security design around systems that cannot be fully hardened can kill two birds with one stone.

\n\n

Weighing authority versus influence, FDA approved equipment, 0day discovery within applications.
\nDesigning security around systems is a must when unpatchable vulnerabilities exist.

","summary":"It isn't all about Cyber! Truly Advanced Persistent Attacks Exploiting Risks within the Physical and Cyber Universe. Threats to DMV Security, Confidential Informant Management. Risks within Healthcare. \r\n\r\n","date_published":"2020-04-06T05:00:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/5545f2ea-e871-4a90-9e6d-3ea3c978fc8a.mp3","mime_type":"audio/mpeg","size_in_bytes":40049288,"duration_in_seconds":2445}]},{"id":"07295bb3-d95f-4b0f-9101-1ec2b4eba08c","title":"S01 E01: You offer forensics and you don't have a CSI room? ","url":"https://podcast.shadowdragon.io/s01e01","content_text":"*A variety of topics are covered in this episode. *\n\n\nCandor on the Infosec industry.\nVC Trends & Startup trends. \nTools vs. Process. \nBrian Dykstra, shares some of the high's and low's after doing forensics for the last 24 years. \nIf you don't have a CSI room while doing forensics, you are totally lame. \nHotness with getting 500g/sec on forensic image acquisition. \nEvaluating Sandbox technologies in use. What is hot or not. ThreatGrid, Joe's Sandbox, or bare metal. \n\n\nDan's Inbox review:\n\n\nCasemanagement vs. Target centric analysis. \nAlternatives to Maltego, pros/cons. Tools mentioned Kaseware, Kivutech, Datawalk, i2, etc. \nVc's falling into \"Platform\" trap, versus understanding data sales market. \n","content_html":"

*A variety of topics are covered in this episode. *

\n\n\n\n

Dan's Inbox review:

\n\n","summary":"ShadowDragon Founder Daniel Clemens talks to Atlantic Data Forensics' Brian Dykstra about the highs and lows of the industry, myths and truths, and more. \r\n #OSINT #InfoSec #DigitalInvestigation","date_published":"2020-04-02T14:00:00.000-04:00","attachments":[{"url":"https://aphid.fireside.fm/d/1437767933/c94d80a4-45a7-44df-b108-8b5d810b42ac/07295bb3-d95f-4b0f-9101-1ec2b4eba08c.mp3","mime_type":"audio/mpeg","size_in_bytes":38052429,"duration_in_seconds":2322}]}]}