DiscoverSecurity Weekly Podcast Network (Video)
Security Weekly Podcast Network (Video)
Claim Ownership

Security Weekly Podcast Network (Video)

Author: Security Weekly Productions

Subscribed: 976Played: 52,668
Share

Description

Welcome to the Security Weekly Podcast Network, your all-in-one source for the latest in cybersecurity! This feed features a diverse lineup of shows, including Application Security Weekly, Business Security Weekly, Paul's Security Weekly, Enterprise Security Weekly, and Security Weekly News. Whether you're a cybersecurity professional, business leader, or tech enthusiast, we cover all angles of the cybersecurity landscape.

Tune in for in-depth panel discussions, expert guest interviews, and breaking news on the latest hacking techniques, vulnerabilities, and industry trends. Stay informed and secure with the most trusted voices in cybersecurity!
4952 Episodes
Reverse
In the security news this week: Build your own router, or just buy one What to patch first But maybe don't buy D-Link AI nearly starts a war Flock cameras lose their keys The AI slowdown won't save bad security Opus at home, just slower Black Hat says fundamentals still work Hacker gadgets, and my top pick Gyazo screenshots Fake job interviews, real malware VINCE gets a new home Munich university gets disconnected LinkedIn fights the scraping machine SolarWinds hard-codes another bad idea Fake LastPass kills 145 security tools Colorado water gets its settings changed AI CEOs sell apocalypse and bonds The AI safety cult gets audited Ransomware recovery takes weeks, not hours TeamPCP's supply-chain tour continues Zuckoff hunts smart glasses Show Notes: https://securityweekly.com/psw-945
As businesses race to embrace AI, security leaders are struggling to modernize cyber hygiene and prevent over-privileged agents from causing unintended harm. How do you balance the benefits of AI with the Risks of AI? Evan McHenry, Chief Information Security Officer at Robinhood Markets, joins Business Security Weekly to discuss how to practically implement and secure AI in the enterprise. Evan will share his lessons learned over the last 18 months, including how to communicate with the Board, why you should own Enterprise Architecture and embrace IT, and why you don't have time to argue with your CFO. If you're struggling to balance the benefits of AI with the Risks of AI, this interview is for you. In the leadership and communications segment, Security spending is growing — except for the typical CISO, What Leaders Need to Know About AI and Psychological Safety, The Cyber Gap, and more! Show Notes: https://securityweekly.com/bsw-466
WWIII,Security Debt, JFK, CISA, SUSE, OpenAI, Google, DORA, Aaran Leyland, and More on the Security Weekly News. Show Notes: https://securityweekly.com/swn-618
Prompt injection demonstrates one of the major challenges in securing LLMs and agents -- how do you ensure an agent ignores attackers and only does what you instructed it to do. The flaw highlights how LLMs mix inputs, context, and outputs without any strict boundaries between them. Julie Brunias joins us to talk through examples of injections, why their consequences can go beyond information leaks, and why trying to mitigate them with other LLMs is insufficient. Segment resources: https://llmgateway.io/open-source https://www.wiz.io/blog/off-guard-breaking-litellm-from-authentication-bypass-to-cloud-compromise Show Notes: https://securityweekly.com/asw-401
Interview with Rob Sadowski from Cohesity Global Cyber Resilience Report: Cyber Recovery Plans Weren't Designed for this Moment Cyber recovery plans weren't designed for this moment. Most were built around assumptions that made sense when they were written: incidents could be understood, dependencies mapped, recovery could follow a predictable sequence, and decision-makers would have enough information to act. In practice, major cyber incidents unravel those assumptions. AI and autonomous agents are creating new paths to compromise, while cloud and SaaS expansion increases the systems, services, and dependencies involved in recovery. Vulnerabilities are discovered and weaponized faster than ever, and AI is accelerating that cycle. As incidents unfold, scope expands, dependencies appear only when they break, and recovery plans no longer match reality. With assumptions under greater strain, confidence is beginning to erode. This year, the percentage of survey respondents reporting complete confidence in their cyber resilience strategy fell. To understand how recovery unfolds today, Cohesity commissioned Vanson Bourne to survey 3,200 IT and security decision-makers at organizations with 1,000 or more employees across 11 countries. This report examines where recovery becomes more difficult than expected, the obstacles organizations encounter, how they define and test a Minimum Viable Company (MVC), and how AI is reshaping cyber threats and cyber resilience. https://www.cohesity.com/dm/global-cyber-resilience-report/ This segment is sponsored by Cohesity. Visit https://securityweekly.com/cohesity to learn more about them! Topic: When should we use AI for writing and when should we avoid it? I've had an essay in draft form for a month now, trying to get my feelings across on why AI writing drives me so crazy. I struggled to put it into words. Fortunately, Charity Majors figured out how to put it into words and I think she nailed not just how I feel about AI, but the reasons why I feel so strongly about it. She uses a scale to help explain this, with "personal" at one end and "functional" at the other. https://charity.wtf/p/confessions-of-an-unrepentant-slop When I ask AI to create a company profile for me, 10 minutes before I meet with them, I don't need poetry - just facts. But when I read something that is supposedly someone's opinions and analysis on a topic, and it's clearly 100% AI-generated, I angrily dismiss it. I love that this writeup isn't just an "I hate slop" rant - it actually quantifies why a personal touch matters and how to gauge when it is necessary and when outsourcing the task to AI is totally fine. In both cases, Charity notes that quality matters. My most recent complaints come from cases where things are not only clearly written by AI, but where quality went out the window and they're unrecognizable as a human-readable language. And yes, I brought an example: https://dispatch.cybersecurityhq.com/p/escalation-voided-on-construct-failure-timing-condition-placed-under-review Weekly Enterprise News Finally, in the enterprise security news, We check the vibes, funding, and acquisitions Tenable now has Mythos built-in??? We check in on how vulnerability remediation is going Microsoft is creating a code of conduct for AI OpenAI just got called to the principal's office Booz Allen created new cybersecurity AI benchmarks 50% of CISOs see Mythos as a sign to resign??? Ayman read the latest Anthropic AI misuse report MIT explains the 12 possible AI outcomes (very ominous) a 9-year old decided to promote his YouTube account… with his dad's corporate card All that and more, on this episode of Enterprise Security Weekly. Show Notes: https://securityweekly.com/esw-477
loading
Comments