{"podcast":{"title":"ShadowTalk: Powered by ReliaQuest","slug":"shadowtalk-powered-by-reliaquest-61547","podcast_index_feed_id":61547,"rss_url":"https://rss.buzzsprout.com/2154459.rss","website_url":"https://reliaquest.com/shadowtalk/","image_url":"https://storage.buzzsprout.com/wros64kx60j7mheqh9qpjzt1mjy2?.jpg","author":"ReliaQuest","episode_count":480,"summary":"Want to hear what industry experts really think about the cyber threats they face? ShadowTalk is a weekly cybersecurity podcast, made by practitioners for practitioners, featuring analytical insights on the latest cybersecurity news and threat research. Threat Intelligence Analyst John Dilgen brings extensive expertise in cyber threat intelligence and incident response, specializing in researching threats impacting ReliaQuest customers. John and his guests provide practical perspectives on the week’s top cybersecurity news and share knowledge and best practices to help businesses mitigate the most pertinent cyber threats. With over 1,000 customers worldwide and 1,200 teammates across six global operating centers, ReliaQuest delivers security outcomes for the most trusted enterprise brands in the world. Learn more at www.reliaquest.com .","last_synced_at":"2026-07-02T08:20:33.755009+00:00","page_url":"https://stenobird.com/podcast/shadowtalk-powered-by-reliaquest-61547"},"episode":{"title":"Device Code, OAuth, PhaaS: How Session Token Theft is Breaking the Phishing Playbook","slug":"device-code-oauth-phaas-how-session-token-theft-is-breaking-the-phishing-playbook","published_at":"2026-05-27T20:00:00+00:00","page_url":"https://stenobird.com/podcast/shadowtalk-powered-by-reliaquest-61547/device-code-oauth-phaas-how-session-token-theft-is-breaking-the-phishing-playbook","show_page_url":"https://stenobird.com/podcast/shadowtalk-powered-by-reliaquest-61547","url":"https://www.buzzsprout.com/2154459/episodes/19250649-device-code-oauth-phaas-how-session-token-theft-is-breaking-the-phishing-playbook.mp3","audio_url":"https://www.buzzsprout.com/2154459/episodes/19250649-device-code-oauth-phaas-how-session-token-theft-is-breaking-the-phishing-playbook.mp3","summary":"Your user clicked a link, landed on a real Microsoft login page, typed their password, completed MFA, and walked away thinking nothing happened. Somewhere across the internet, an attacker's device just received an authenticated session token. The password is irrelevant. The MFA prompt already fired and passed. With PhaaS platforms now converging on token-theft tradecraft and post-compromise automation executing in seconds, defenders are racing a scripted attacker with a manual playbook. Join ...","meta_description":"Your user clicked a link, landed on a real Microsoft login page, typed their password, completed MFA, and walked away thinking nothing happened. Somewhere…","key_points":[],"chapters":[],"topics":[],"duration_seconds":1762,"processing_state":"not_requested","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/shadowtalk-powered-by-reliaquest-61547/episodes/device-code-oauth-phaas-how-session-token-theft-is-breaking-the-phishing-playbook/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/shadowtalk-powered-by-reliaquest-61547/device-code-oauth-phaas-how-session-token-theft-is-breaking-the-phishing-playbook.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}