
Hosted by Mandiant
Learn about the latest threat and cybersecurity trends on The Defender’s Advantage Podcast! Hear from experts in the field as Host Luke McNamara, from Google Threat Intelligence Group, interviews analysts, researchers and other guests on the frontlines of the latest attacks.
178 episodes · publishes fortnightly · latest 2026-04-27 · ~32 min/episode
Rank
#275
Substance
79.0
/ 100
Breakdown
Scored 2026-07
Updated monthly
Across the index
#275 of 6182
Substance
Top 4%
outscores 96% of the index
The Defender's Advantage Podcast ranks #275 on The B2B Podcast Index with a substance score of 79.0 out of 100, scored across 1 recent episode. It scores highest on guest caliber and specificity & evidence. Charlie Snyder is the operational head of a newly stood-up disruption unit inside one of the most capable threat intelligence groups in the industry; he speaks from first-hand involvement in specific operations, not from advisory distance. His credibility is grounded in what the transcript reveals he has actually executed, not credential-signalling.
Averaged across 1 recently scored episode, with cited evidence.
The episode delivers a few genuinely substantive concepts - the enabler-targeting logic, the four-pillar disruption taxonomy, and the Google Sheets C2 mechanism - but the density is reduced by PR framing around a newly-public team announcement and several mid-interview recaps. Smart defenders will extract real ideas but will also wade through promotional positioning.
“we found hundreds of threat actors using IP ideas, residential proxy networks, specifically everything from you know, apt crime, hacktivism, information operations. Uh, we observed uh, model distillation attacks against our uh, LLMs, uh transiting that infrastructure”
“building up this capability that the threat actor had of you know, essentially uh, maintaining live connections to 70 plus uh, telecommunications companies worldwide likely took quite a bit of effort for the threat actor to build over time”
The enabler-targeting rationale and the tactic of hitting adversary commercial storefronts rather than just C2 infrastructure are modestly fresh angles. Most other framing - intel gain-loss tradeoffs, 'adversaries are bolder now,' sunlight-as-disinfectant - recycles widely circulated industry positions without adding new reasoning.
“by going after one, you can potentially impact a wide array of threat actors who are relying on those enablers”
“sheets is just another mechanism to upload and download arbitrary data. Uh, there's lots of places attackers can misuse uh, products. For C2. It's clearly becoming a common tactic to use the products of popular kind of cloud and all online technologies”
Charlie Snyder is the operational head of a newly stood-up disruption unit inside one of the most capable threat intelligence groups in the industry; he speaks from first-hand involvement in specific operations, not from advisory distance. His credibility is grounded in what the transcript reveals he has actually executed, not credential-signalling.
“I think we are the first team who's primary focus is on disrupting the actor behind that activity”
“This started uh, with a Managed Threat Defense investigation. And what that is is you know we have a product that will, on behalf of Google Cloud customers, monitor their uh, security telemetry”
The episode is reasonably concrete by B2B podcast standards: named threat actors (UNK 2814, IP Idea, Salt Typhoon, Volt Typhoon, Shiny Hunters), a specific C2 mechanism (Google Sheets), a hard victim count (70+ telcos), and named legal instruments (court orders, domain registrar cooperation). It falls short of exceptional because there are no timelines, dollar figures, or hard before/after metrics on disruption impact.
“maintaining live connections to 70 plus uh, telecommunications companies worldwide”
“the attacker would communicate from an attacker owned server to um, the victim, in this case the customer we were investigating to uh, issue commands to the compromise machine and to uh, upload data from uh, the compromise machine to uh, the attacker all through uh, Google Sheets basically”
Luke McNamara asks structurally sound questions - the impact-measurement question and the intel gain-loss framing are the strongest - but he never pushes back on a claim, never asks Charlie to quantify success, and closes with a predictable 'what are you excited about' softball. The interview reads as facilitated storytelling rather than genuine interrogation.
“there's also this dynamic where at times the very act of disruption, of taking down infrastructure, of forcing an actor to retool might mean that we lose some visibility into their operation”
“Where are you kind of excited about in terms of, you know, potential future areas, you know, without getting into specifics, of course”
2026-04-27
First period on the Index - history builds from here.
1 scored on substance · 60 tracked in total.
Add this badge to your site - it links back here and updates automatically as you rank.
<a href="https://index.fame.so/show/the-defender-39-s-advantage-podcast" target="_blank" rel="noopener">
<img src="https://index.fame.so/badge/the-defender-39-s-advantage-podcast/badge.svg" alt="Ranked #35 on The B2B Podcast Index" width="360" height="136" />
</a>Track The Defender's Advantage Podcast's rank
Get an email whenever this show moves up or down the Index. Monthly at most, no spam.
The themes that come up most across this show's episodes.
Podcasts that dig into the same topics.