The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
Index/Engineering & DevTools/Microsoft Threat Intelligence Podcast
Microsoft Threat Intelligence Podcast artwork

Russia’s Forest Blizzard Is Abusing Home + Small Office Routers for Cred Theft

Microsoft Threat Intelligence Podcast · 2026-05-06 · 52 min

0:00--:--

Episode notes

This week on the Microsoft Threat Intelligence Podcast, host⁠ ⁠⁠Sherrod DeGrippo speaks with Danny Adamitis, Distinguished Engineer at Lumen Technologies’ Black Lotus Labs who break down how the Russian state-linked threat actor Forest Blizzard is exploiting home and small office routers to hijack DNS traffic, enabling large-scale surveillance and targeted credential theft. The conversation highlights how this low-cost approach scales globally, why unmanaged routers have become a critical weak point, and how tactics, from brute force to token theft to DNS hijacking continue to evolve. In this episode you’ll learn: How Forest Blizzard exploits home routers to intercept DNS traffic Why unmanaged routers are a major blind spot in modern security How tactics have evolved from brute force to token-based access Some questions we ask: What defines Forest Blizzard and how they operate? How does this impact machine-to-machine or service account security? What are the broader third-party or downstream risks?

More from Microsoft Threat Intelligence Podcast

All episodes →
  • Casey Ellis on How AI Is Reshaping Vulnerability Research and Patching69 / 100
  • Hot Cybercrime Summer:  Smishing, Supply Chains, and Sleuthcon
  • Supply Chain Attacks: Open Source or Open Door?
  • Eviltokens: A Conversation with Huntress on an AI‑Enabled Device Code Phishing Campaign
  • The Cybercrime Shift: From Opportunistic Attacks to Marketplace-Driven Ecosystem
Explore the best B2B Engineering & DevTools podcasts →
All Microsoft Threat Intelligence Podcast episodes →