The Cyber Threat Perspective

← The Cyber Threat Perspective11 sept · 31 min

[Replay] Episode 178: Internal Security Controls That Actually Frustrate Attackers

[Replay] Episode 178: Internal Security Controls That Actually Frustrate Attackers11 sept31 min

Replay of Episode 178, originally published April 22, 2026. We are re-running this one because it is the question we get asked most on internal pen test debriefs: of everything on the list, what actually slows an attacker down? Spencer and Tyler answer it from the attacker side, using what has and has not stopped them on real engagements. What's covered: - Application control done right, including where ThreatLocker and WDAC actually block a payload and where they get bypassed - MFA...