<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" encoding="UTF-8" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns:atom="http://www.w3.org/2005/Atom/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:fireside="http://fireside.fm/modules/rss/fireside">
  <channel>
    <fireside:hostname>web02.fireside.fm</fireside:hostname>
    <fireside:genDate>Fri, 17 Apr 2026 09:55:30 -0500</fireside:genDate>
    <generator>Fireside (https://fireside.fm)</generator>
    <title>Three Buddy Problem - Episodes Tagged with “Sonicwall”</title>
    <link>https://securityconversations.fireside.fm/tags/sonicwall</link>
    <pubDate>Fri, 24 Jan 2025 14:30:00 -0700</pubDate>
    <description>The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware, attribution, cyberwar, ethics, privacy, and the messy realities of securing computers and corporate networks. 
Hosted by three veteran security pros -- journalist Ryan Naraine and malware paleontologists Costin Raiu and Juan Andres Guerrero-Saade -- the weekly show attracts a highly engaged audience of security researchers, corporate defenders, CISOs, and policymakers.
&lt;a href="https://twitter.com/ryanaraine"&gt;Connect with Ryan on Twitter&lt;/a&gt; (Open DMs).
</description>
    <language>en-us</language>
    <itunes:type>episodic</itunes:type>
    <itunes:subtitle>A Security Conversations podcast</itunes:subtitle>
    <itunes:author>Security Conversations</itunes:author>
    <itunes:summary>The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware, attribution, cyberwar, ethics, privacy, and the messy realities of securing computers and corporate networks. 
Hosted by three veteran security pros -- journalist Ryan Naraine and malware paleontologists Costin Raiu and Juan Andres Guerrero-Saade -- the weekly show attracts a highly engaged audience of security researchers, corporate defenders, CISOs, and policymakers.
&lt;a href="https://twitter.com/ryanaraine"&gt;Connect with Ryan on Twitter&lt;/a&gt; (Open DMs).
</itunes:summary>
    <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/5/5f0c01ff-49f1-4c51-a8f8-f14c0d9bc72e/cover.jpg?v=15"/>
    <itunes:explicit>no</itunes:explicit>
    <itunes:keywords>cybersecurity, ciso, infosec, security, hacking, information security, research</itunes:keywords>
    <itunes:owner>
      <itunes:name>Security Conversations</itunes:name>
      <itunes:email>naraine@gmail.com</itunes:email>
    </itunes:owner>
<itunes:category text="Technology"/>
<itunes:category text="News">
  <itunes:category text="Tech News"/>
</itunes:category>
<itunes:category text="Technology"/>
<item>
  <title>Death of the CSRB, zero-days storms at the edge, Juniper router backdoors</title>
  <link>http://securityconversations.fireside.fm/zero-day-storms-death-of-crsb</link>
  <guid isPermaLink="false">a8b5e326-37a9-40ab-b769-f92834d95934</guid>
  <pubDate>Fri, 24 Jan 2025 14:30:00 -0700</pubDate>
  <author>Security Conversations</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/5f0c01ff-49f1-4c51-a8f8-f14c0d9bc72e/a8b5e326-37a9-40ab-b769-f92834d95934.mp3" length="91593748" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>Security Conversations</itunes:author>
  <itunes:subtitle>Three Buddy Problem Episode 31: Dennis Fisher steps in for Ryan Naraine to moderate discussion on a very busy week in cybersecurity. The cast dig into the wave of big research reports, the disbanding of the Cyber Safety Review Board (CSRB), the ongoing flood of exploits targeting security appliances from Ivanti and SonicWall, and the recent Lumen research on Juniper router backdoors. 

Plus, the challenges of coordinating disclosures, the tough realities of intelligence work, and the complex landscape of nation-state attacks -- especially around Chinese threat actors and Western defenses. 

Cast: Dennis Fisher (guest host), Costin Raiu and Juan Andres Guerrero-Saade.

* Ryan Naraine is on work travel.</itunes:subtitle>
  <itunes:duration>1:48:59</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/5/5f0c01ff-49f1-4c51-a8f8-f14c0d9bc72e/episodes/a/a8b5e326-37a9-40ab-b769-f92834d95934/cover.jpg?v=1"/>
  <description>Three Buddy Problem - Episode 31: Dennis Fisher steps in for Ryan Naraine to moderate discussion on a very busy week in cybersecurity. The cast dig into the wave of big research reports, the disbanding of the Cyber Safety Review Board (CSRB), the ongoing flood of exploits targeting security appliances from Ivanti and SonicWall, and the recent Lumen research on Juniper router backdoors. 
Plus, the challenges of coordinating disclosures, the tough realities of intelligence work, and the complex landscape of nation-state attacks -- especially around Chinese threat actors and Western defenses. 
Cast: Juan Andres Guerrero-Saade (https://twitter.com/juanandres_gs), Costin Raiu (https://twitter.com/craiu) and Dennis Fisher.
Ryan Naraine (https://twitter.com/ryanaraine) in on work travel. 
</description>
  <itunes:keywords>CSRB, CISA, FBI, Ivanti, SonicWall, network appliances, end-of-life devices, APTs, IOCs, YARA, Black Lotus Labs</itunes:keywords>
  <content:encoded>
    <![CDATA[<p><strong>Three Buddy Problem - Episode 31</strong>: Dennis Fisher steps in for Ryan Naraine to moderate discussion on a very busy week in cybersecurity. The cast dig into the wave of big research reports, the disbanding of the Cyber Safety Review Board (CSRB), the ongoing flood of exploits targeting security appliances from Ivanti and SonicWall, and the recent Lumen research on Juniper router backdoors. </p>

<p>Plus, the challenges of coordinating disclosures, the tough realities of intelligence work, and the complex landscape of nation-state attacks -- especially around Chinese threat actors and Western defenses. </p>

<p><strong>Cast:</strong> <a href="https://twitter.com/juanandres_gs" rel="nofollow">Juan Andres Guerrero-Saade</a>, <a href="https://twitter.com/craiu" rel="nofollow">Costin Raiu</a> and Dennis Fisher.</p>

<ul>
<li><a href="https://twitter.com/ryanaraine" rel="nofollow">Ryan Naraine</a> in on work travel.</li>
</ul><p>Links:</p><ul><li><a title="Transcript (unedited, AI-generated)" rel="nofollow" href="https://docs.google.com/document/d/1qT2olnStWy4-0PWd6KdBNHAG20hJxe83zyGqXO7_B9Y/edit?tab=t.0#heading=h.ywmge3vqzj3r">Transcript (unedited, AI-generated)</a></li><li><a title="DHS Disbands Cyber Safety Review Board, Ending One of CISA’s Few Bright Spots" rel="nofollow" href="https://www.securityweek.com/dhs-disbands-cyber-safety-review-board-ending-one-of-cisas-few-bright-spots/">DHS Disbands Cyber Safety Review Board, Ending One of CISA’s Few Bright Spots</a></li><li><a title="CSRB report on Microsoft Exchange Online Intrusion" rel="nofollow" href="https://www.cisa.gov/sites/default/files/2024-04/CSRB_Review_of_the_Summer_2023_MEO_Intrusion_Final_508c.pdf">CSRB report on Microsoft Exchange Online Intrusion</a></li><li><a title="Senator Ron Wyden on CSRB disbandment" rel="nofollow" href="https://bsky.app/profile/wyden.senate.gov/post/3lgbvtdltic2h">Senator Ron Wyden on CSRB disbandment</a></li><li><a title="CISA CSRB: good riddance" rel="nofollow" href="https://cybersect.substack.com/p/cisa-csrb-good-riddance">CISA CSRB: good riddance</a></li><li><a title="Threat Actors Chained Vulnerabilities in Ivanti Cloud Service Applications" rel="nofollow" href="https://www.cisa.gov/news-events/cybersecurity-advisories/aa25-022a">Threat Actors Chained Vulnerabilities in Ivanti Cloud Service Applications</a></li><li><a title="SonicWall confirms new 0day exploited in the wild" rel="nofollow" href="https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0002">SonicWall confirms new 0day exploited in the wild</a></li><li><a title="The J-Magic Show: Magic Packets and Where to Find Them" rel="nofollow" href="https://blog.lumen.com/the-j-magic-show-magic-packets-and-where-to-find-them/">The J-Magic Show: Magic Packets and Where to Find Them</a></li></ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p><strong>Three Buddy Problem - Episode 31</strong>: Dennis Fisher steps in for Ryan Naraine to moderate discussion on a very busy week in cybersecurity. The cast dig into the wave of big research reports, the disbanding of the Cyber Safety Review Board (CSRB), the ongoing flood of exploits targeting security appliances from Ivanti and SonicWall, and the recent Lumen research on Juniper router backdoors. </p>

<p>Plus, the challenges of coordinating disclosures, the tough realities of intelligence work, and the complex landscape of nation-state attacks -- especially around Chinese threat actors and Western defenses. </p>

<p><strong>Cast:</strong> <a href="https://twitter.com/juanandres_gs" rel="nofollow">Juan Andres Guerrero-Saade</a>, <a href="https://twitter.com/craiu" rel="nofollow">Costin Raiu</a> and Dennis Fisher.</p>

<ul>
<li><a href="https://twitter.com/ryanaraine" rel="nofollow">Ryan Naraine</a> in on work travel.</li>
</ul><p>Links:</p><ul><li><a title="Transcript (unedited, AI-generated)" rel="nofollow" href="https://docs.google.com/document/d/1qT2olnStWy4-0PWd6KdBNHAG20hJxe83zyGqXO7_B9Y/edit?tab=t.0#heading=h.ywmge3vqzj3r">Transcript (unedited, AI-generated)</a></li><li><a title="DHS Disbands Cyber Safety Review Board, Ending One of CISA’s Few Bright Spots" rel="nofollow" href="https://www.securityweek.com/dhs-disbands-cyber-safety-review-board-ending-one-of-cisas-few-bright-spots/">DHS Disbands Cyber Safety Review Board, Ending One of CISA’s Few Bright Spots</a></li><li><a title="CSRB report on Microsoft Exchange Online Intrusion" rel="nofollow" href="https://www.cisa.gov/sites/default/files/2024-04/CSRB_Review_of_the_Summer_2023_MEO_Intrusion_Final_508c.pdf">CSRB report on Microsoft Exchange Online Intrusion</a></li><li><a title="Senator Ron Wyden on CSRB disbandment" rel="nofollow" href="https://bsky.app/profile/wyden.senate.gov/post/3lgbvtdltic2h">Senator Ron Wyden on CSRB disbandment</a></li><li><a title="CISA CSRB: good riddance" rel="nofollow" href="https://cybersect.substack.com/p/cisa-csrb-good-riddance">CISA CSRB: good riddance</a></li><li><a title="Threat Actors Chained Vulnerabilities in Ivanti Cloud Service Applications" rel="nofollow" href="https://www.cisa.gov/news-events/cybersecurity-advisories/aa25-022a">Threat Actors Chained Vulnerabilities in Ivanti Cloud Service Applications</a></li><li><a title="SonicWall confirms new 0day exploited in the wild" rel="nofollow" href="https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0002">SonicWall confirms new 0day exploited in the wild</a></li><li><a title="The J-Magic Show: Magic Packets and Where to Find Them" rel="nofollow" href="https://blog.lumen.com/the-j-magic-show-magic-packets-and-where-to-find-them/">The J-Magic Show: Magic Packets and Where to Find Them</a></li></ul>]]>
  </itunes:summary>
</item>
  </channel>
</rss>
