About the show

The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware, attribution, cyberwar, ethics, privacy, and the messy realities of securing computers and corporate networks.

Hosted by three veteran security pros -- journalist Ryan Naraine and malware paleontologists Costin Raiu and Juan Andres Guerrero-Saade -- the weekly show attracts a highly engaged audience of security researchers, corporate defenders, CISOs, and policymakers.

Connect with Ryan on Twitter (Open DMs).

Three Buddy Problem on social media

Episodes

  • Ryan Huber, Security Architect, Slack

    May 8th, 2018  |  1 hr 4 mins

    Slack security architect Ryan Huber talks about the gargantuan task of defending an organization with 8 million daily active users, burnout, and fatigue in security teams and a range of issues around bug bounties and penetration testing.

  • Ivan Arce, CTO at Quarkslab

    May 4th, 2018  |  1 hr 15 secs

    Chief Technology Officer at Quarkslab Ivan Arce tells stories about the birth of penetration testing platforms, the concentration of hacking talent in Argentina, and his focus on security problems in the Android ecosystem.

  • Sinan Eren, Founder and CEO, Fyde

    May 2nd, 2018  |  44 mins 18 secs

    Founder and CEO of Fyde (@FydeApp) Sinan Eren discusses the “iOS-ification” of platforms and the security ramifications, the dangers of running AV software, the iOS vs. Android security argument, and his new venture to address mobile phishing attacks.

  • Stephen Ridley, Founder and CTO, Senrio

    April 30th, 2018  |  49 mins 58 secs

    Founder and CTO at Senrio Stephen Ridley talks about the abysmal state of IoT security, his recent exploitation of an IP camera, and router to exfiltrate corporate data and his experience as a minority in the security industry.

  • Mischel Kwon, Founder and CEO, MKA Cyber

    April 26th, 2018  |  39 mins 2 secs
    analytics, entrepreneur, internet-scans, threat-intel

    Founder and CEO at MKACyber Mischel Kwon joins the podcast to address the state of the SOC (Security Operations Center) and how businesses should deal with issues around excessive alerts, incident response times, and outdated metrics.

  • Rick Holland, CISO and VP of Strategy, Digital Shadows

    April 24th, 2018  |  35 mins 34 secs
    patching, pentesting, red-teaming, threat-modeling

    CISO and VP of Strategy at Digital Shadows Rick Holland discusses his path in the information security industry, advancements in the threat intel space, and his passion for good bar-b-que.

  • Thomas Ptacek, Founder, Latacora

    April 23rd, 2018  |  48 mins 38 secs
    careers, cisos, decision making, skills shortage

    Latacora Security founder Thomas Ptacek joins the podcast to weigh in on the cybersecurity skills shortage, his approach to recruiting and hiring, and what needs to be done to address diversity in the industry.

  • Zane Lackey, Chief Security Officer, Signal Sciences

    April 16th, 2018  |  41 mins 40 secs
    patching, pentesting, red-teaming, threat-modeling

    Co-founder and Chief Security Officer at Signal Sciences Zane Lackey riffs on DevOps, the almost impossible task of defending organizations from intruders, bug bounties versus penetration testing, and the pros and cons of launching a company with venture capital investment.

  • Haroon Meer, CEO, Thinkst Applied Research

    April 12th, 2018  |  1 hr 26 secs
    patching, pentesting, red-teaming, threat-modeling

    Thinkst founder Haroon Meer talks about building a security company from scratch without VC funding, using Canaries to pinpoint signs of intruder activity, advancements in security research, and the state of the bug bounty market.

  • David (int eighty), Dual Core

    April 11th, 2018  |  39 mins 34 secs
    patching, pentesting, red-teaming, threat-modeling

    Red teamer and security researcher by day, nerdcore rapper by night, ‘int eighty’ joins the podcast to talk about his work breaking into computer systems, common security mistakes that people make, and his double life as a musician in Dual Core.

  • Dennis Fisher, Editor-in-Chief, Decipher

    April 5th, 2018  |  43 mins
    patching, pentesting, red-teaming, threat-modeling

    Veteran cybersecurity writer Dennis Fisher joins the podcast to talk about his new journalism venture at decipher.sc, his preference for long-form writing, and the trends worth following in the security space.

  • Tim Maurer, Scholar, Carnegie Endowment for International Peace

    March 5th, 2018  |  32 mins 31 secs
    apt, ics-scada, targeted-attacks, threat-intel

    Tim Maurer, a scholar at the Carnegie Endowment for International Peace, talks about nation state-backed hacking activity and the dangers of breaking trust in the global financial system.