Home Podcasts Behind the Binary by Google Cloud Security
Behind the Binary by Google Cloud Security

Behind the Binary by Google Cloud Security

Josh Stroschein 29 Episodes Sep 16, 2026

Behind the Binary is a podcast about reverse engineering and the people, technology, and tools behind it. Host Josh Stroschein, a reverse engineer on Google's FLARE team, interviews guests about their paths into the field, the challenges they face, and the impact of their work. The show explores the human side of reverse engineering, including motivations and unique perspectives. It is aimed at malware analysts, software developers, security researchers, and anyone curious about how technology is taken apart and secured.

Episodes

EP29 Binary Similarity in the LLM Era with Jonas Wagner and Endre Bangerter of ThreatRay
EP29 Binary Similarity in the LLM Era with Jonas Wagner and Endre Bangerter of ThreatRay Sep 16, 2026 3449 "Throwing more LLM prompts at a packed binary won’t make your analysis faster. But combining code similarity with AI will."In Episode 29 of Behind the Binary, Jonas Wagner and Endre Bangerter of ThreatRay join the podcast to lay out the real-world state of binary similarity in the LLM era. They demystify the current AI hype cycle, explaining why large language models are structurally uns
EP28 macOS Security Internals: Kernel Exploitation, PAC Defenses, and the Rise of macOS Infostealers with Olivia Gallucci
EP28 macOS Security Internals: Kernel Exploitation, PAC Defenses, and the Rise of macOS Infostealers with Olivia Gallucci Aug 26, 2026 3108 In this episode, we're joined by security researcher Olivia Gallucci to explore macOS low-level security, kernel exploitation, and macOS threat trends. We break down how macOS internals differ from Linux—focusing on IOKit, C++ dynamic class resolution, and Vtable hijacking in kernel drivers. Olivia explains the mechanics behind use-after-free (UAF) vulnerabilities, heap shaping, and legacy ke
EP27 The Challenges of Reversing Modern Languages: From C++ to Go and Rust with Jae Young Kim
EP27 The Challenges of Reversing Modern Languages: From C++ to Go and Rust with Jae Young Kim Jul 15, 2026 3382 When malware analysis first emerged, reverse engineers typically operated in a straightforward C landscape — standard Win32 APIs, no massive runtimes, and clear code paths. Today, the landscape has fundamentally shifted. The natural progression to C++ introduced object-oriented hurdles like virtual function tables and standard template library bloat, laying the groundwork for the complexities we s
EP26 When AI Features Create Zero-Click Exploits: The Pixel 9 Chain with Seth Jenkins
EP26 When AI Features Create Zero-Click Exploits: The Pixel 9 Chain with Seth Jenkins Jun 3, 2026 3526 Mobile security boundaries rely on isolating remote, untrusted inputs from highly privileged system components. However, when new automated features are introduced, the available attack surface can shift—sometimes exposing unexpected code paths to remote attackers.In the latest episode of Behind the Binary, we sit down with Seth Jenkins from Google Project Zero to dissect a full two-bug, zero-clic
EP25 The Future of Debugging: A Paradigm Shift with Xusheng Li
EP25 The Future of Debugging: A Paradigm Shift with Xusheng Li May 6, 2026 3431 "TTD is a paradigm shift in the way you interact with the target... Potentially, five years from now, when we talk about debugging, we will just by default go to TTD."In this episode, we are joined by Xusheng Li, a debugger architect and reverse engineering expert, to explore the evolution of Time Travel Debugging (TTD). While traditional debugging has remained largely stagnant for decad
EP24 The Glupteba Takedown: What Happens When Botnet Operators Show Up in Court with Pierre-Marc Bureau
EP24 The Glupteba Takedown: What Happens When Botnet Operators Show Up in Court with Pierre-Marc Bureau Apr 1, 2026 3276 "I thought that we would never hear about these people after they were named. But what was a surprise is that they actually hired a lawyer in New York... and they were like, 'Yeah, we're going to be taking part in this trial."In this episode, we are joined by Pierre-Marc Bureau from Google’s Threat Intelligence Group (GTIG) to unpack the unprecedented takedown of the Glupteba b
EP23 Immutable C2: How EtherHiding and Frontend Attacks are Weaponizing the Blockchain
EP23 Immutable C2: How EtherHiding and Frontend Attacks are Weaponizing the Blockchain Mar 4, 2026 2472 In this episode, we are joined by Robert Wallace, Joseph Dobson, and Blas Kajusner to dissect the new "Hybrid Heist." The panel argues that the era of isolated crypto-theft is over; sophisticated actors are now targeting the Web2 layer—the frontends, the developer workstations, and the cloud infrastructure—to bypass the immutability of the chain itself.We also break down "Ether Hidi
EP22 Jailbreaking, Prompt Injection, and the "Agentic" Flaw in MCP with Kevin Harris
EP22 Jailbreaking, Prompt Injection, and the "Agentic" Flaw in MCP with Kevin Harris Feb 4, 2026 3447 "Skilled adversaries have a 100% success rate against all of the defenses that we know about."In this episode, Kevin Harris defends that claim. We move past the standard "AI Safety" talking points to distinguish between the two attack vectors confusing the industry: Prompt Injection (an application-layer failure) vs. Jailbreaking ("gaslighting" the model via context s
EP21 From HITB Origins to Agentic AI: Web3, Music & The Future of Hacking with Dhillon Kannabhiran
EP21 From HITB Origins to Agentic AI: Web3, Music & The Future of Hacking with Dhillon Kannabhiran Jan 14, 2026 3748 In this episode, Dhillon Kannabhiran shares the gritty origin story of Hack in the Box (HITB), detailing how he dug a $20k financial hole to launch the first event in Malaysia before building it into a global brand.The conversation moves beyond conferences to explore the cutting edge of technology and creativity. Dhillon explains why "agentic" systems (like Xbow) signal the end of hand-b
EP20 Windows Under the Hood: Kernel Design, EDRs, and the Shift to VBS with Pavel Yosifovich
EP20 Windows Under the Hood: Kernel Design, EDRs, and the Shift to VBS with Pavel Yosifovich Dec 10, 2025 4225 In this episode, we get a unique look at the history of Windows through the eyes of one of its leading experts, Pavel Yosifovich. We delve into his fascinating origin story, including the "fluke" that led him to become the author of the legendary Windows Internals series, and why he describes himself as a developer who "hates security."The conversation explores the most signifi
EP19 The Art of Deconstructing Problems: Tools, Tactics, and the ScatterBrain Obfuscator with Nino Isakovic
EP19 The Art of Deconstructing Problems: Tools, Tactics, and the ScatterBrain Obfuscator with Nino Isakovic Nov 19, 2025 6798 In this episode, we’re joined by Nino Isakovic, a long-time low-level security expert, for a thought-provoking conversation that spans the foundational and the cutting-edge. Nino discusses the art of deconstructing problems—sharing insights on how to learn effectively, the building blocks of a robust RE toolkit, and the critical shift required in our analytical approach. We then transition into th
EP18 10,000 DLLs and Too Much Math - Wrapping Up FLARE-On 12 with the FLARE Team
EP18 10,000 DLLs and Too Much Math - Wrapping Up FLARE-On 12 with the FLARE Team Nov 5, 2025 2865 In this episode, we sit down with Nick Harbour, Blas Kojusner, Moritz Raabe, and Sam Kim — members of the FLARE Team and some of this year’s challenge authors — for a deep dive into the design and execution of FLARE-On 12. The team discusses the complexity and intent behind this year's challenges, including how Sam created his grueling final challenge, "10,000," which featured 10,00

Recommended