Know Your Adversary | runZero with Special Guest HD Moore (Ep. 12)

Know Your Adversary | runZero with Special Guest HD Moore (Ep. 12)

Source: YouTube · SpecterOps · published Jun 30, 2026 · 38:07

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

HD Moore, CEO of Run Zero, discusses how combining network topology mapping with identity attack path analysis reveals the true extent of organizational exposure, especially as AI lowers the barrier to exploitation 15:35-15:48.

Key Takeaways:
• Run Zero performs unauthenticated network discovery, safely identifying assets and mapping network topologies (Layer 2/3) from one-sided scans to reveal hidden exposures 1:50-2:33.
• Run Zero Hound is an open-source tool that ingests data from various scanners (Nmap, Nessus, etc.) and outputs a BloodHound-compatible graph, bridging the gap between network and identity layers 4:28-4:58.
• OT environments are often critically exposed; scanning internet-facing protocol gateways revealed 6,611 public devices providing access to over 102,000 sensitive backend devices 8:51-9:19.
• AI effectively democratizes advanced offensive capabilities, meaning organizations can no longer rely on patching alone and must return to fundamental defense-in-depth and blast radius reduction 15:35-16:27.
• Security tools themselves (vulnerability scanners, firewalls, backup software) often create significant risk by inadvertently leaking privileged credentials during routine operations 26:22-27:29.

Understanding interconnections—whether cross-platform identity dependencies or hidden network paths—is now more critical than focusing on individual vulnerabilities. Run Zero offers a free tier (RunZero.com/try) for users to explore these network mappings 32:12-32:47.

Sources:

  • 1:50-2:33 Overview of Run Zero's unauthenticated network discovery and topology mapping
  • 4:28-4:58 Introduction of Run Zero Hound and its multi-source data ingestion
  • 8:51-9:19 OT gateway scanning results showing massive hidden backend exposure
  • 15:35-16:27 Impact of AI on offensive security and the need for defense-in-depth
  • 26:22-27:29 How security tools inadvertently leak credentials and create risk
  • 32:12-32:47 How to get started with Run Zero's free tier

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

[music] [music] >> Welcome to the Know Your Adversary podcast. My name is Justin Kohler. >> And I'm Jared Atkinson. >> And today we're joined by HD Moore, uh CEO of Run Zero and has a huge background in cybersecurity. Thanks for joining us, HD. Uh to kick us off, could you uh just give a background on like you have a awesome story. >> Would you mind just giving everybody a view of like where all of the things you've done? >> It's basically survivor bias, right? So I got into security really early on like IRC, warez trading, 90s stuff, and then got into a DOD contract really early on in my career to write exploits for military, which is fun. Then lots of startups, and then during that period started Metasploit, worked with Metasploit community, and built that project up, and about 15 years …