7 Minute Security
Episodes
7MS #710: I'm Taking a Break
17 Jan 2026
Contributed by Lukas
Hi friends, I'm going to be taking a break from producing podcast episodes, as well as content over at 7MinSec.club. It's a temporary break, so p...
7MS #709: Second Impressions of Twingate
10 Jan 2026
Contributed by Lukas
Hey friends, in episode #649 I gave you my first impressions of Twingate. It's been a minute, so I thought I'd revisit Twingate (specifically this ...
7MS #708: Tales of Pentest Fail – Part 6
02 Jan 2026
Contributed by Lukas
After sharing a recent story about how a phishing campaign went south, I heard feedback from a lot of you. You either commiserated with my story,...
7MS #707: Our New Pentest Course Has Launched!
26 Dec 2025
Contributed by Lukas
Today we're thrilled to announce the launch of LPLITE:GOAD (Light Pentest Live Interactive Training Experience: Game of Active Directory). The first c...
7MS #706: Tales of Pentest Pwnage – Part 80
19 Dec 2025
Contributed by Lukas
I'm so excited to share today's tale of pentest pwnage, because it brings back to life a coercion technique I thought wouldn't work against Windows 11...
7MS #705: A Phishing Campaign Fail Tale
12 Dec 2025
Contributed by Lukas
This might be obvious, but security is not all domain admin dancing and maximum pwnage. Sometimes, despite my best efforts, a security project does a ...
7MS #704: DIY Pentest Dropbox Tips – Part 12
05 Dec 2025
Contributed by Lukas
Hola friends! My week has very much been about trying to turnaround pentest dropboxes as quickly as possible. In that adventure, I came across two...
7MS #703: Tales of Pentest Pwnage – Part 79
28 Nov 2025
Contributed by Lukas
Happy Thanksgiving week friends! Today we're celebrating a turkey and pie overload by sharing another fun tale of pentest pwnage! It involves using p...
7MS #702: Should You Hire AI to Run Your Next Pentest?
21 Nov 2025
Contributed by Lukas
Hello friends, in today's episode I give an audio summary of a talk I gave this week at the MN GOVIT Symposium called "Should You Hire AI to Run Your ...
7MS #701: What I'm Working on This Week – Part 5
14 Nov 2025
Contributed by Lukas
Hello friends! This week I'm talking about what I'm working on this week, including: Preparing a talk called Should You Hire AI to Run Your Next P...
7MS #700: Pretender
07 Nov 2025
Contributed by Lukas
Today is episode 700 of the 7MinSec podcast! Oh my gosh. My mom didn't think we could do it, but we did. Instead of a big blowout with huge news, give...
7MS #699: Pre-Travel Security Tips
31 Oct 2025
Contributed by Lukas
Today we discuss some pre-travel tips you can use before hopping on a plane to start a work/personal adventure. Tips include: Updating the family DR/...
7MS #698: Baby's First ProjectDiscovery
24 Oct 2025
Contributed by Lukas
Today I give a quick review of the cloud version of ProjectDiscovery (not a sponsor!).
7MS #697: Pwning Ninja Hacker Academy – Part 4
18 Oct 2025
Contributed by Lukas
Today your pal and mine Joe "The Machine" Skeen pwn one of the two Ninja Hacker Academy domains! This pwnage included: Swiping service tickets in...
7MS #696: Baby's First Security Ticketing System
10 Oct 2025
Contributed by Lukas
In today's episode: I got a new podcast doodad I really like JitBit as a security ticketing system (not a sponsor) The Threat Hunting with Veloci...
7MS #695: Tales of Pentest Pwnage - Part 78
03 Oct 2025
Contributed by Lukas
Today's tale of pentest pwnage involves: Using mssqlkaren to dump sensitive goodies out of SCCM Using a specific fork of bloodhound to find machi...
7MS #694: Tales of Pentest Pwnage – Part 77
26 Sep 2025
Contributed by Lukas
Hey friends, today I talk about how fun it was two combine two cool pentest tactics, put them in a blender, and move from local admin to mid-tier syst...
7MS #693: Pwning Ninja Hacker Academy – Part 3
19 Sep 2025
Contributed by Lukas
This week your pal and mine Joe "The Machine" Skeen kept picking away at pwning Ninja Hacker Academy. To review where we've been in parts 1 and 2: ...
7MS #692: Tales of Pentest Pwnage – Part 76
12 Sep 2025
Contributed by Lukas
Happy Friday! Today's another hot pile of pentest pwnage. To make it easy on myself I'm going to share the whole narrative that I wrote up for someone...
7MS #691: Tales of Pentest Pwnage – Part 75
05 Sep 2025
Contributed by Lukas
Holy schnikes, today might be my favorite tale of pentest pwnage ever. Do I say that almost every episode? yes. Do I mean it? Yes. Here are all the co...
7MS #690: Tales of Pentest Pwnage – Part 74
29 Aug 2025
Contributed by Lukas
Today's tale of pentest pwnage is a classic case of "If your head is buried in the pentest sand, pop it out for a while, touch grass, and re-enumerate...
7MS #689: Pwning Ninja Hacker Academy – Part 2
22 Aug 2025
Contributed by Lukas
Hello friends! Today your friend and mine, Joe "The Machine" Skeen joins me as we keep chipping away at pwning Ninja Hacker Academy! Today's pwna...
7MS #688: Building a Pentest Training Course Is Fun and Frustrating
16 Aug 2025
Contributed by Lukas
Today I talk about a subject I love while also driving me crazy at the same time: building a pentest training course! Specifically, I dissect a fun/fr...
7MS #687: A Peek into the 7MS Mail Bag – Part 5
11 Aug 2025
Contributed by Lukas
Hi friends, we're doing something today we haven't done in a hot minute: take a dip into the 7MinSec mail bag! Today we cover these questions: If I'm...
7MS #686: Our New Pentest Training Course is Almost Ready
01 Aug 2025
Contributed by Lukas
Oh man, I'm so excited I can hardly sleep. Our new three-day (4 hours per day) training is getting closer to general release. I talk about the good/ba...
7MS #685: The Time My Neighbor Almost Got Scammed Out of $13K
25 Jul 2025
Contributed by Lukas
Today's kind of a "story time with your friend Brian" episode: a tale of how my neighbor almost got scammed out of $13k. The story has a lot of red ...
7MS #684: Pwning Ninja Hacker Academy
18 Jul 2025
Contributed by Lukas
Hey friends, today we start pwning Ninja Hacker Academy – cool CTF-style lab that has you start with no cred and try to conquer domain admin on ...
7MS #683: What I'm Working on This Week - Part 4
12 Jul 2025
Contributed by Lukas
This week I'm working on a mixed bag of fun security and marketing things: A pentest I'm stuck on My latest lab CTF obsession: Ninja Hacker Academy ...
7MS #682: Securing Your Family During and After a Disaster – Part 7
04 Jul 2025
Contributed by Lukas
Today's episode is a downer! We talk about things you might want to have buttoned up for when you are eventually not alive anymore: Living will Burie...
7MS #681: Pentesting GOAD – Part 3
27 Jun 2025
Contributed by Lukas
Today Joe "The Machine" Skeen and I pwn the third and final realm in the world of GOAD (Game of Active Directory): essos.local! The way we go about...
7MS #680: Tips for a Better Purple Team Experience
20 Jun 2025
Contributed by Lukas
Today I share some tips on creating a better purple team experience for your customers, including: Setting up communication channels and cadence Givi...
7MS #679: Tales of Pentest Pwnage – Part 73
13 Jun 2025
Contributed by Lukas
In today's tale of pentest pwnage I talk about a cool ADCS ESC3 attack – which I also did live on this week's Tuesday TOOLSday. I also talk about ...
7MS #678: How to Succeed in Business Without Really Crying – Part 22
06 Jun 2025
Contributed by Lukas
Today I share some tips on presenting a wide variety of content to a wide variety of audiences, including: Knowing your audience before you touch P...
7MS #677: That One Time I Was a Victim of a Supply Chain Attack
30 May 2025
Contributed by Lukas
Hi everybody. Today I take it easy (because my brain is friend from the short week) to tell you about the time I think my HP laptop was compromised at...
7MS #676: Tales of Pentest Pwnage – Part 72
27 May 2025
Contributed by Lukas
Today's fun tale of pentest pwnage discuss an attack path that would, in my opinion, probably be impossible to detect…until it's too late.
7MS #675: Pentesting GOAD – Part 2
16 May 2025
Contributed by Lukas
Hey friends! Today Joe "The Machine" Skeen and I tackled GOAD (Game of Active Directory) again – this time covering: SQL link abuse between two d...
7MS #674: Tales of Pentest Pwnage – Part 71
09 May 2025
Contributed by Lukas
Today's tale of pentest pwnage is another great one! We talk about: The SPNless RBCD attack (covered in more detail in this episode) Importance of...
7MS #673: ProxmoxRox
03 May 2025
Contributed by Lukas
Today we're excited to release ProxmoxRox – a repo of info and scripts to help you quickly spin up Ubuntu and Windows VMs. Also, some important ...
7MS #672: Tales of Pentest Pwnage – Part 70
25 Apr 2025
Contributed by Lukas
Today's a fun tale of pentest pwnage where we leveraged a WinRM service ticket in combination with the shadow credentials attack, then connected to an...
7MS #671: Pentesting GOAD
18 Apr 2025
Contributed by Lukas
Hello! This week Joe "The Machine" Skeen and I kicked off a series all about pentesting GOAD (Game of Active Directory). In part one we covered: C...
7MS #670: Adventures in Self-Hosting Security Services
11 Apr 2025
Contributed by Lukas
Hi friends, today I'm kicking off a series talking about the good/bad/ugly of hosting security services. Today I talk specifically about transfer.zip...
7MS #669: What I'm Working on This Week – Part 3
04 Apr 2025
Contributed by Lukas
Hi friends, in this edition of what I'm working on this week: 3 pulse-pounding pentests that had…problems Something I'm calling the unshadow/reshad...
7MS #668: Tales of Pentest Pwnage – Part 69
28 Mar 2025
Contributed by Lukas
Hola friends! Today's tale of pentest pwnage talks about abusing Exchange and the Azure ADSync account! Links to the discussed things: adconnectdump ...
7MS #667: Pentesting GOAD SCCM - Part 2!
21 Mar 2025
Contributed by Lukas
Hey friends, our good buddy Joe "The Machine" Skeen and I are back this week with part 2 (check out part 1!) tackling GOAD SCCM again! Spoiler al...
7MS #666: Tales of Pentest Pwnage – Part 68
14 Mar 2025
Contributed by Lukas
Today we have a smattering of miscellaneous pentest tips to help you pwn all the stuff! Selective Snaffling with Snaffler The importance of having p...
7MS #665: What I'm Working on This Week - Part 2
07 Mar 2025
Contributed by Lukas
Hello there friends, I'm doing another "what I'm working on this week" episode which includes: BPATTY v1.6 release – big/cool/new content to share ...
7MS #664: What I'm Working on This Week
28 Feb 2025
Contributed by Lukas
In today's episode I talk about what I'm working on this week, including: Playing with Sliver C2 and pairing it with ShellcodePack Talking about N...
7MS #663: Pentesting GOAD SCCM
21 Feb 2025
Contributed by Lukas
Today we live-hack an SCCM server via GOAD SCCM using some attack guidance from Misconfiguration Manager! Attacks include: Unauthenticated PXE a...
7MS #662: Pentesting Potatoes - Part 2
14 Feb 2025
Contributed by Lukas
Hi friends, today we're talking about pentesting potatoes (not really, but this episode is sort of a homage to episode 333 where I went to Boise to do...
7MS #661: Baby's First Hetzner and Ludus – Part 2
08 Feb 2025
Contributed by Lukas
Today we continue our journey from last week where we spun up a Hetzner cloud server and Ludus.cloud SCCM pentesting range! Topics include: Build...
7MS #660: Baby's First Hetzner and Ludus
01 Feb 2025
Contributed by Lukas
I had an absolute ball this week spinning up my first Hetzner server, though it was not without some drama (firewall config frustrations and failing...
7MS #659: Eating the Security Dog Food - Part 8
24 Jan 2025
Contributed by Lukas
Today I'm excited about some tools/automation I've been working on to help shore up the 7MinSec security program, including: Using Retype as a docu...
7MS #658: WPA3 Downgrade Attacks
17 Jan 2025
Contributed by Lukas
Hey friends, today we cover: The shiny new 7MinSec Club BPATTY updates A talk-through of the WPA3 downgrade attack, complemented by the YouTube li...
7MS #657: Writing Rad Security Documentation with Retype
10 Jan 2025
Contributed by Lukas
Hello friends! Today we're talking about a neat and quick-to-setup documentation service called Retype. In a nutshell, you can get Retype install...
7MS #656: How to Succeed in Business Without Really Crying - Part 21
03 Jan 2025
Contributed by Lukas
Happy new year friends! Today we talk about business/personal resolutions, including: New year's resolution on the 7MinSec biz side to have a better ...
7MS #655: Happy Hacking Holidays
30 Dec 2024
Contributed by Lukas
Today we're doing a milkshake of several topics: wireless pentest pwnage, automating the boring pentest stuff with cursor.ai, and some closing busine...
7MS #654: Tales of Pentest Pwnage – Part 67
13 Dec 2024
Contributed by Lukas
Today we've got some super cool stuff to cover today! First up, BPATTY v1.4 is out and has a slug of cool things: A whole new section on old-scho...
7MS #653: How to Succeed in Business Without Really Crying – Part 20
06 Dec 2024
Contributed by Lukas
Hey friends, today we're talking about tips to effectively present your technical assessment to a variety of audiences – from lovely IT and security...
7MS #652: Securing Your Mental Health - Part 6
02 Dec 2024
Contributed by Lukas
Today's episode talks about some things that helped me get through a stressful and hospital-visit-filled Thanksgiving week, including: Journaling Med...
7MS #651: Tales of Pentest Pwnage – Part 66
22 Nov 2024
Contributed by Lukas
Hey friends, we've got a short but sweet tale of pentest pwnage for you today. Key lessons learned: Definitely consider BallisKit for your EDR-evas...
7MS #650: Tales of Pentest Pwnage - Part 65
15 Nov 2024
Contributed by Lukas
Oooooo, giggidy! Today is (once again) my favorite tale of pentest pwnage. I learned about a feature of PowerUpSQL that helped me find a "hidden" SQ...
7MS #649: First Impressions of Twingate
08 Nov 2024
Contributed by Lukas
Today we take a look at a zero-trust / ditch-your-VPN solution called Twingate (not a sponsor but we'd like them to be)! It also doubles nicely as...
7MS #648: First Impressions of Level.io
01 Nov 2024
Contributed by Lukas
Hey friends, today I'm sharing my first (and non-sponsored) impressions of Level.io, a cool tool for managing Windows, Mac and Linux endpoints. It fit...
7MS #647: How to Succeed in Business Without Really Crying – Part 19
25 Oct 2024
Contributed by Lukas
Today we're talkin' business – specifically how to make your report delivery meetings calm, cool and collect (both for you and the client!).
7MS #646: Baby's First Incident Response with Velociraptor
18 Oct 2024
Contributed by Lukas
Hey friends, today I'm putting my blue hat on and dipping my toes in incident response by way of playing with Velociraptor, a very cool (and free!) t...
7MS #645: How to Succeed in Business Without Really Crying - Part 18
14 Oct 2024
Contributed by Lukas
Today I do a short travelogue about my trip to Washington, geek out about some cool training I did with Velociraptor, ponder drowning myself in blue ...
7MS #644: Tales of Pentest Pwnage – Part 64
04 Oct 2024
Contributed by Lukas
Hey! I'm speaking in Wanatchee, Washington next week at the NCESD conference about 7 ways to panic a pentester! Today's tale of pentest pwnage i...
7MS #643: DIY Pentest Dropbox Tips – Part 11
27 Sep 2024
Contributed by Lukas
Today we continue where we left off in episode 641, but this time talking about how to automatically deploy and install a Ubuntu-based dropbox! I a...
7MS #642: Interview with Ron Cole of Immersive Labs
23 Sep 2024
Contributed by Lukas
Ron Cole of Immersive Labs joins us to talk pentest war stories, essential skills he learned while serving on a SOC, and the various pentest training ...
7MS #641: DIY Pentest Dropbox Tips – Part 10
13 Sep 2024
Contributed by Lukas
Today we're revisiting the fun world of automating pentest dropboxes using Proxmox, Ansible, Cursor and Level. Plus, a tease about how all this t...
7MS #640: Tales of Pentest Pwnage – Part 63
07 Sep 2024
Contributed by Lukas
This was my favorite pentest tale of pwnage to date! There's a lot to cover in this episode so I'm going to try and bullet out the TLDR version here...
7MS #639: Tales of Pentest Pwnage - Part 62
03 Sep 2024
Contributed by Lukas
Today's tale of pentest pwnage talks about the dark powers of the net.py script from impacket.
7MS #638: Tales of Pentest Pwnage – Part 61
23 Aug 2024
Contributed by Lukas
Today we're talking pentesting – specifically some mini gems that can help you escalate local/domain/SQL privileges: Check the C: drive! If you get...
7MS #637: BPATTY[RELOADED] Release Party
17 Aug 2024
Contributed by Lukas
Hello friends, I'm excited to release BPATTY[RELOADED] into the world at https://bpatty.rocks! – which stands for Brian's Pentesting and Technical ...
7MS #636: A Prelude to BPATTY(RELOADED)
12 Aug 2024
Contributed by Lukas
Artificial hype alert! I'm working on a NEW version of BPATTY (Brian's Pentesting and Technical Tips for You), but it is delayed because of a weird ...
7MS #635: Eating the Security Dog Food - Part 7
03 Aug 2024
Contributed by Lukas
Today we're talking about eating the security dog food – specifically: Satisfying critical security control #1 Using the Atlassian family of too...
7MS #634: Tales of Pentest Pwnage - Part 60
26 Jul 2024
Contributed by Lukas
Hi, today's tale of pentest pwnage covers a few wins and one loss: A cool opportunity to drop Farmer "crops" to a domain admin's desktop folder via...
7MS #633: How to Create a Security Knowledgebase with Docusaurus
19 Jul 2024
Contributed by Lukas
Hey friends, we're doing a little departure from our normal topics and focusing on how to create a security knowledgebase (is that one word or two?) u...
7MS #632: Tales of Pentest Pwnage – Part 59
12 Jul 2024
Contributed by Lukas
Today's tale of pentest pwnage includes some fun stuff, including: SharpGPOAbuse helps abuse vulnerable GPOs! Try submitting a harmless POC firs...
7MS #631: Tales of Pentest Pwnage – Part 58
07 Jul 2024
Contributed by Lukas
Hi friends, today's a tale full of test tips and tools to help you in your adventures in pentesting! SCCM Exploitation SCCM Exploitation: The First C...
7MS #630: Epic Road Trip Served with Security Sprinkles
01 Jul 2024
Contributed by Lukas
Today I recap a two week persona/biz road trip and talk about the security stuff that got sprinkled into it, including: Family members who don't care...
7MS #629: Interview with Stu Musil of Ambient Consulting
24 Jun 2024
Contributed by Lukas
Today we have a fun featured interview with my new friend Stu Musil of Ambient Consulting I had a great time talking with Stu about bashing come com...
7MS #628: How to Succeed in Business Without Really Crying – Part 17
14 Jun 2024
Contributed by Lukas
Hey friends, today we talk about some not-so-glamorous but ever-so-important stuff related to running a cybersecurity consultancy, including: Taking ...
7MS #627: Migrating from vCenter to Proxmox – Part 2
10 Jun 2024
Contributed by Lukas
Hey friends, today we continue our series all about migrating from VMWare to the world Proxmox! Specifically: Getting my first Proxmox-based NUCs o...
7MS #626: Web Pentesting Pastiche
31 May 2024
Contributed by Lukas
Hey friends, today we've got a security milkshake episode about Web app pentesting. Specifically we talk about: Burp Suite Enterprise Caido – a li...
7MS #625: A Peek into the 7MS Mail Bag - Part 4
24 May 2024
Contributed by Lukas
Road trip time! I've been traveling this week doing some fun security projects, and thought all this highway time would be a perfect opportunity to ta...
7MS #624: Tales of Pentest Pwnage – Part 57
17 May 2024
Contributed by Lukas
Today's tale of pentest pwnage is all about my new favorite attack called SPN-less RBCD. We did a teaser episode last week that actually ended up be...
7MS #623: Prelude to a Tale of Pentest Pwnage
10 May 2024
Contributed by Lukas
Today's prelude to a tale of pentest pwnage talks about something called "spnless RBCD" (resource-based constrained delegation). The show notes don'...
7MS #622: Migrating from vCenter to Proxmox - Part 1
05 May 2024
Contributed by Lukas
Sadly, the Broadcom acquisition of VMWare has hit 7MinSec hard – we love running ESXi on our NUCs, but ESXi free is no longer available. To ad...
7MS #621: Eating the Security Dog Food - Part 6
26 Apr 2024
Contributed by Lukas
Today we revisit a series about eating the security dog food – in other words, practicing what we preach as security gurus! Specifically we talk a...
7MS #620: Securing Your Mental Health - Part 5
21 Apr 2024
Contributed by Lukas
Today we're talking about tips to deal with stress and anxiety: It sounds basic, but take breaks – and take them in a different place (don't just...
7MS #619: Tales of Pentest Pwnage – Part 56
14 Apr 2024
Contributed by Lukas
We did something crazy today and recorded an episode that was 7 minutes long! Today we talk about some things that have helped us out in recent pe...
7MS #618: Writing Savage Pentest Reports with Sysreptor
05 Apr 2024
Contributed by Lukas
Today's episode is all about writing reports in Sysreptor. It's awesome! Main takeaways: The price is free (they have a paid version as well)! Y...
7MS #617: Tales of Pentest Pwnage – Part 55
29 Mar 2024
Contributed by Lukas
Hey friends, today we've got a tale of pentest pwnage that covers: Passwords – make sure to look for patterns such as keyboard walks, as well as pe...
7MS #616: Interview with Andrew Morris of GreyNoise
22 Mar 2024
Contributed by Lukas
Hey friends, today we have a super fun interview with Andrew Morris of GreyNoise to share. Andrew chatted with us about: Young Andrew's early adv...
7MS #615: Tales of Pentest Pwnage – Part 54
19 Mar 2024
Contributed by Lukas
Hey friends, sorry I'm so late with this (er, last) week's episode but I'm back! Today is more of a prep for tales of pentest pwnage, but topics c...
7MS #614: How to Succeed in Business Without Really Crying - Part 16
08 Mar 2024
Contributed by Lukas
How much fun I had attending and speaking at Netwrix Connect Being a sales guy in conference situations without being an annoying sales guy in con...
7MS #613: Tales of Pentest Pwnage – Part 53
01 Mar 2024
Contributed by Lukas
Today's tale of pentest covers: Farming for credentials (don't forget to understand trusted zones to make this happen properly!) Snaffling for ju...
7MS #612: Pentestatonix - Part 2
25 Feb 2024
Contributed by Lukas
Hello friends, we're still deep in the podcast trenches this quarter and wanted to share some nuggets of cool stuff we've been learning along the way:...
7MS #611: Pentestatonix
19 Feb 2024
Contributed by Lukas
Hey friends, sorry for the late episode but I've been deep in the trenches of pentest adventures. I'll do a more formal tale of pentest pwnage when ...