Three Buddy Problem
4.9(63)

Three Buddy Problem

by Security Conversations

232 episodesLatest 3 days agoEN-US
The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware, attribution, cyberwar, ethics, privacy, and the messy realities of securing computers and corporate networks. Hosted by three veteran security pros -- journalist Ryan Naraine and malware paleontologists Costin Raiu and Juan Andres Guerrero-Saade -- the weekly show attracts a highly engaged audience of security researchers, corporate defenders, CISOs, and policymakers. Connect with Ryan on Twitter (Open DMs).

Hosts

  • Ryan Naraine
  • Costin Raiu
  • Juan Andrés Guerrero-Saade

© 2026 The Naraine Group

Recent reviews on Apple Podcasts (5)
  • So much potential

    Podcast host needs to do a better job of keeping the conversation on track. Constantly lets “JAGS” go off on 30+ min rants that have nothing to do with the conversation at hand. Every episode has a significant chunk taken up by JAGS spewing pseudo intellectual BS trying to sound super deep and thoughtful. Annoying as hell.

    Yeahyeahblahblah ·

  • Insightful

    Smart takes and more accurate understanding than most cybersec podcasts. Good personalities.

    Laughedoutloud ·

  • Oo

    A bold new take on cybersecurity podcasts: unfiltered, authentic, and refreshingly real.

    \x4A\x4D ·

  • 1X

    The only podcast I listen to at 1x. Thoughtful, insightful, occasionally profane, always erudite.

    mjg5772 ·

  • Security and more

    Excellent, well articulated, thought provoking conversations. It has quickly made it onto my “must listen” list.

    Chris Mc.38 ·

View all reviews on Apple Podcasts

Episodes (232)

  1. Hugging Face Just Got Hit by the First Fully Autonomous AI Attack

    Jul 18, 20262h 7m

    ( Presented by Thinkst Canary : Most Companies find out way too late that they’ve been breached. Thinkst Canary changes this. Deploy Canaries and Canarytokens in minutes and then forget about them. Attackers tip their ha

  2. Microsoft's Secret Weapon: The GDID That Caught 'Scattered Spider' Teen

    Jul 4, 20261h 36m

    ( Presented by Thinkst Canary : Most Companies find out way too late that they’ve been breached. Thinkst Canary changes this. Deploy Canaries and Canarytokens in minutes and then forget about them. Attackers tip their ha

  3. US Gov Takes the Wheel: Who Gets to Use the Best AI?

    Jun 29, 20261h 53m

    ( Presented by Thinkst Canary : Most Companies find out way too late that they’ve been breached. Thinkst Canary changes this. Deploy Canaries and Canarytokens in minutes and then forget about them. Attackers tip their ha

  4. Katie Moussouris on the Anthropic Export-Control Mess

    Jun 19, 20261h 38m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem - Episode 102 : Softwar

  5. Mythos, Fable, and Anthropic's Big Trust Problem

    Jun 12, 20261h 59m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem - Episode 101 : We disc

  6. Fast16, Fanny, and Stuxnet: Cyber Paleontology Redux

    Jun 5, 20262h 24m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem - Episode 100 : We cove

  7. Microsoft Threatens Vuln Researchers; Shadow Brokers Revisited

    May 30, 20261h 59m

    ( Presented by Ent.ai : Ent delivers intent-aware security that protects every action, adapts to every workflow, and works for every user. Enterprise threat detection, reimagined. ) Three Buddy Problem - Episode 99 : Mic

  8. Aaron Portnoy on Pwn2Own, the End of Easy Bugs, and AI-Fueled Offense

    May 27, 202640m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem x Ekoparty Miami : Aaro

  9. Perri Adams on Proof Engines, LLMs, and the New Era of Verifiable Code

    May 26, 202640m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem x Ekoparty Miami : Perr

  10. Find 50,000 Bugs, Fix Zero: Gabriel Bernadett-Shapiro on the AI Vuln Trap

    May 26, 202649m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem x Ekoparty Miami : Sent

  11. Federico Kirschbaum on XBOW, AI Hackers, and the Future of Pen Testing

    May 25, 202658m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem x Ekoparty Miami : Fede

  12. Jordan Wiens on AI, Offense vs. Defense, and the Dying CTF Pipeline

    May 24, 202644m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem x Ekoparty Miami : Jord

  13. The AI-powered 10x patch tsunami has arrived. Now what?

    May 15, 20261h 50m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem - Episode 98 : We dive

  14. The disappointing death of big-game APT reporting

    May 10, 20262h 2m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem - Episode 97 : We discu

  15. Cracking the Fast16 sabotage malware mystery

    May 1, 20261h 47m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem - Episode 96 : We're jo

  16. Mark Dowd on AI hacking, exploit chains, zero-day sales

    Apr 24, 20262h 2m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem - Episode 95 : Vigilant

  17. The Angry Spark APT Mystery: A Year-Long Backdoor, One Victim, Zero Attribution

    Apr 18, 20262h 35m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem - Episode 94 : We discu

  18. The Claude Mythos, Project Glasswing Shockwave

    Apr 10, 20262h 34m

    ( Presented by TLPBLACK : A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals. ) Three Buddy Problem - Episode 93 : We discu

  19. LLMs writing exploits, engineers losing skills, and a case for the generative OS

    Apr 3, 20262h 19m

    ( Presented by TLPBLACK : High-fidelity threat intelligence and research tools for modern security teams. From curated Passive DNS and real-time C2 monitoring to actionable IOC feeds and daily malware samples, we help de

  20. Jeremy Banon: Personal Exec Compromise as Corporate Incident

    Apr 1, 202636m

    ( Presented by TLPBLACK : High-fidelity threat intelligence and research tools for modern security teams. From curated Passive DNS and real-time C2 monitoring to actionable IOC feeds and daily malware samples, we help de

  21. Google's Cyber Disruption Unit; Coruna is Triangulation, US Bans Foreign-Made Routers

    Mar 28, 20262h 32m

    ( Presented by TLPBLACK : High-fidelity threat intelligence and research tools for modern security teams. From curated Passive DNS and real-time C2 monitoring to actionable IOC feeds and daily malware samples, we help de

  22. The greatest APT hunter of all time, Apple's exploit kit problem, Microsoft FedRAMP mess

    Mar 20, 20262h 27m

    ( Presented by Thinkst Canary : Most Companies find out way too late that they’ve been breached. Thinkst Canary changes this. Deploy Canaries and Canarytokens in minutes and then forget about them. Attackers tip their ha

  23. Handala wiper attacks, APT28 implant devs are back, Signal's verification problems

    Mar 14, 20261h 44m

    ( Presented by TLPBLACK : High-fidelity threat intelligence and research tools for modern security teams. From curated Passive DNS and real-time C2 monitoring to actionable IOC feeds and daily malware samples, we help de

  24. Trenchant, Peter Williams, and the proliferation of a Shadow Brokers-level iOS exploit framework

    Mar 6, 20261h 59m

    ( Presented by Thinkst Canary : Most Companies find out way too late that they’ve been breached. Thinkst Canary changes this. Deploy Canaries and Canarytokens in minutes and then forget about them. Attackers tip their ha

  25. Matthias Frielingsdorf on the mysterious Coruna iOS exploit kit discovery

    Mar 5, 202639m

    ( Presented by TLPBLACK : High-fidelity threat intelligence and research tools for modern security teams. From curated Passive DNS and real-time C2 monitoring to actionable IOC feeds and daily malware samples, we help de