Podcasts about Black hat

  • 1,284PODCASTS
  • 3,370EPISODES
  • 51mAVG DURATION
  • 1DAILY NEW EPISODE
  • Aug 28, 2026LATEST

POPULARITY

20192020202120222023202420252026

Categories



Best podcasts about Black hat

Show all podcasts related to black hat

Latest podcast episodes about Black hat

ITSPmagazine | Technology. Cybersecurity. Society
Executives Get Reached Through the People Around Them, and BlackCloak Protects That Whole Circle | A Black Hat USA 2026 Recap with Dr. Chris Pierson, Founder and CEO at BlackCloak | Hosted by Sean Martin and Marco Ciappelli

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Aug 28, 2026 15:17


An attacker who wants to reach an executive often goes through the people around them. Family members, assistants, advisors, and caregivers all carry access and standing, and none of them sit inside the corporate directory. Dr. Chris Pierson, Founder and CEO of BlackCloak, describes digital executive protection as work that comes down to an individual and the circle around that individual. What does BlackCloak actually protect? Corporate executives, boards, the C-suite, and their families, across privacy, personal cybersecurity, home network security, deepfake impersonation, and travel. Dr. Chris Pierson frames impersonation protection and deepfake protection as an answer to someone pretending to be a human being in order to swindle, defraud, or take advantage of a persona. The control point sits with the person rather than the message. What did security teams want to talk about at Black Hat this year? Specifics. Dr. Chris Pierson says the excitement around AI and agentic AI arrived with a demand to dig in and actually talk about it. He recalls standing nearby while BlackCloak SVP of Product Matt Covington explained how the company uses engines, as opposed to the marketing language circulating elsewhere. Two more patterns came through. People want a real relationship with the team behind a product rather than something they plug in and hook up, and Dr. Chris Pierson points to a community at Black Hat that he says has built up considerably over the past four years or so. People also want net new. Version nine of a familiar firewall is becoming a little less exciting, he says, and the sales engineers spent their time on the additive items instead. BlackCloak appears on the 2026 Inc. 5000 for a second consecutive year, and earlier in 2026 it was named to Inc.'s Best Workplaces list in the Security Industry category, also for a second year. Dr. Chris Pierson credits the roughly 150 Cloakers based in the US, the company's own word for its team members, for both. The data matters, the hardware matters, the platform matters, and at the end of it someone clicks, someone allows access, someone does something. That last step is where BlackCloak places its protection. This is a Black Hat USA 2026 Recap. It is a post-event conversation revisiting the week on the ground, putting a spotlight on the guest and their company and pairing it with the editorial reach of ITSPmagazine. Learn more: https://www.studioc60.com/performance/#briefing GUEST Dr. Chris Pierson, Founder and CEO at BlackCloak On LinkedIn: https://www.linkedin.com/in/drchristopherpierson/ RESOURCES Black Hat USA 2026 event coverage: https://www.itspmagazine.com/black-hat-usa-2026-cybersecurity-event-coverage-in-las-vegas Learn more about BlackCloak: https://blackcloak.io Impersonation Protection: https://blackcloak.io/impersonation-protection/ BlackCloak Extends Deepfake Protection to the Executive's Entire Trusted Circle: https://blackcloak.io/news-media/blackcloak-extends-deepfake-protection-to-the-executives-entire-trusted-circle/ BlackCloak Featured on the 2026 Inc. 5000 for Second Consecutive Year: https://blackcloak.io/news-media/blackcloak-featured-on-the-2026-inc-5000-for-second-consecutive-year/ BlackCloak Named to Inc.'s 2026 Best Workplaces List for Second Consecutive Year: https://www.prweb.com/releases/blackcloak-named-to-incs-2026-best-workplaces-list-for-second-consecutive-year-302788730.html Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight ▶︎ Get your own Brand Briefing at an upcoming event: https://www.studioc60.com/buy-brand-briefings KEYWORDS Dr. Chris Pierson, BlackCloak, Sean Martin, Marco Ciappelli, recap, brand story, brand marketing, marketing podcast, Black Hat USA 2026, digital executive protection, impersonation protection, deepfake protection, circle of trust, executive threat intelligence, travel advisory, human attack surface, Inc. 5000, Cloakers

ITSPmagazine | Technology. Cybersecurity. Society
Attackers Relay Codes and Approvals. TokenCore Requires a Live Fingerprint Within Three Feet | A Brand Briefing at Black Hat USA 2026 with Kevin Surace, Chief Executive Officer at TokenCore | Hosted by Sean Martin

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Aug 27, 2026 17:16


Kevin Surace, Chief Executive Officer at TokenCore, opens with the attack path he says is doing the most damage right now. A phishing email carries a PDF and no links, so it clears the filters. The domain is one character off from the real one, the site is pixel perfect because AI built both the page and the message, and the employee approves an auth prompt they were already expecting. The code was real and the approval was real. Kevin Surace points out that auth apps and passkeys run over cellular and Wi-Fi, so the prompt has no way to know the request came from ten thousand miles away. Anything a person can read or hand over can be shared, and by his account an attacker needs about thirty seconds of trust to get it. Passkeys moved the target rather than removing it. Kevin Surace counts 39 separate passkey attacks in the wild within two weeks of Microsoft telling customers to migrate, and points to Michael Grafnetter of SpecterOps, who presented passkey and Entra research at Black Hat. He walks through the FIDO2 counter that WebAuthn treats as optional so shared passkeys can move between devices. What changes with TokenCore in the mix is where the proof sits. Kevin Surace describes signing into Entra in under two seconds, both passwordless and ID-less, over secure Bluetooth, with the device carrying no apps and no screen. Proximity holds it within three feet of the computer being logged into, the credential stays bound to the original domain, and fingerprints stay off the network. Agents raise the same question in a new place. Kevin Surace describes a policy where an agent action above a million-dollar check needs a person to approve it, and notes that another agent, a hacked one, or a bad actor can clear that approval just as easily. A biometric gate is what tells you the CFO was actually in the room, which is a governance answer as much as a security one. For CISOs, identity architects, and risk owners, the question worth asking is what an identity program looks like when the proof of a person becomes the control, and how much residual risk that removes from privileged access, financial approvals, and agent workflows. This is a Brand Briefing. A Brand Briefing is an on-location conversation recorded on site at Black Hat USA 2026, putting a spotlight on the guest and their company and pairing it with the editorial reach of ITSPmagazine. Learn more: https://www.studioc60.com/performance/#briefing GUEST Kevin Surace, Chief Executive Officer at TokenCore LinkedIn: https://www.linkedin.com/in/ksurace/ RESOURCES Black Hat USA 2026 event coverage: https://www.itspmagazine.com/black-hat-usa-2026-cybersecurity-event-coverage-in-las-vegas Learn more about TokenCore: https://www.tokencore.com TokenCore products: https://www.tokencore.com/products Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight ▶︎ Get your own Brand Briefing at an upcoming event: https://www.studioc60.com/buy-brand-briefings KEYWORDS Kevin Surace, TokenCore, Sean Martin, brand briefing, brand story, brand marketing, marketing podcast, Black Hat USA 2026, biometric identity, identity assurance, passkey attacks, MFA relay attack, phishing resistant authentication, auth app compromise, FIDO2, WebAuthn, Microsoft Entra, passwordless authentication, agent authorization, privileged access

Paul's Security Weekly
Connecting Cyber Risks to Board Outcomes & BHUSA interviews from Mimecast & Zscaler - Leslie Nielsen, Brett Stone-Gross, Dan Bowden - BSW #462

Paul's Security Weekly

Play Episode Listen Later Aug 26, 2026 67:29


The threat landscape has become more interconnected, disruptive, and complex. Ransomware is now as much about extortion and data theft as it is about encryption. Supply chain events can create outages that ripple far beyond the initial target, and business interruption increasingly comes from third-party and cloud dependencies. How should CISOs prepare for these scenarios? Dan Bowden, Global Business CISO at Marsh, joins Business Security Weekly to discuss how to connect cyber risk to the outcomes boards care about most: resilience, financial exposure, regulatory impact, and reputation. CISOs need to position cyber as an enterprise risk, not a technical risk, that can be measured, prioritized, and managed alongside other strategic risks. Dan will discuss the results of Marsh's Cyber Catalyst research and Global Cyber Claims Report. Visit https://securityweekly.com/infosecworld2026 and save 30% on your ISW pass with code: ISW26-SWSAVINGS The Agent Is the New Insider: Why Human Risk Doesn't Stop at People: Black Hat Interview with Leslie Nielson, CISO at Mimecast AI agents now act with the same credentials and access as the humans who deployed them, but without the judgment or accountability that comes with actual employment. Mimecast CISO Leslie Nielsen argues that treating agentic AI as a brand new, standalone security category is the wrong instinct: agents are an extension of human risk, and the controls organizations already use to manage people are the right foundation for managing machines. In this conversation, Nielsen unpacks the growing gap between security leaders who expect AI driven attacks and those who feel prepared for them, and what that gap means for CISOs walking the floor at Black Hat. Segment Resources: Mimecast's new whitepaper Securing The Agentic Enterprise: https://assets.mimecast.com/api/public/content/securing-the-agentic-enterprise?v=ea66db05 Mimecast's landing page for thought leadership resources: https://www.workprotected.com/ Mimecast's State of Human Risk Report: https://www.mimecast.com/resources/ebooks/state-of-human-risk/ Mimecast's Threat Intelligence Hub: https://www.mimecast.com/threat-intelligence-hub/ For more information about Mimecast please visit: https://securityweekly.com/mimecastbh Ransomware Moves up the Org Chart: Managers Are Prime Targets: Black Hat Interview with Brett Stone-Gross, Sr. Director, Threat Intelligence at Zscaler When a ransomware attack makes headlines, attention usually turns to the organization that was breached, the systems encrypted, data stolen, and disruption or ransom demand that followed. Less, if anything, is revealed about the employees compromised at the start of the attack, and what makes those individuals valuable targets. New Zscaler ThreatLabz research examines this early stage of a real-world ransomware attack. ThreatLabz identified victims of a campaign associated with a ransomware group known for gaining initial access, stealing large amounts of corporate data, and selectively encrypting critical systems. The findings show who those victims were and how their roles and authority could help an attacker move deeper into an organization. This is part of ongoing ransomware research by ThreatLabz. The Zscaler ThreatLabz 2026 Ransomware Report, coming in the next two months, will include additional data on ransomware victims, the latest ransomware trends, targets, and tactics, and the risks enterprises should prepare for next. This segment is sponsored by Zscaler. Visit https://securityweekly.com/zscalerbh to learn more about them! Visit https://www.securityweekly.com/bsw for all the latest episodes! Show Notes: https://securityweekly.com/bsw-462

One Heat Minute
The Michael Mann Discourse Conclave | Sean Burns and Roxana Hadadi

One Heat Minute

Play Episode Listen Later Aug 25, 2026 37:43


Blake Howard convenes a conclave with Sean Burns (WBUR) and Roxana Hadadi (Vulture) to sort the smoke from the fire. Inde Navarrette walked from Charlene Shiherlis to play Rogue — then maybe didn't walk at all. Underneath the trade churn, an older argument reignited: that Mann hasn't made a good film since Collateral, with Miami Vice, Public Enemies and Blackhat wheeled out as exhibits for the prosecution. We litigate the post-2004 filmography, we ask what a casting rumour is actually worth, and we work out how "washed" became a load-bearing critical term in 2026. Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

This Week in Tech (Audio)
TWiT 1098: Usain Volt - Meta, Addiction, & the Future of Online Engagement

This Week in Tech (Audio)

Play Episode Listen Later Aug 24, 2026 173:12


Meta faces a $1.4 trillion lawsuit, flock cameras are sparking a privacy revolt, and data centers may be fueling the next bubble. This episode pulls back the curtain on who's watching, who's profiting, and who could pay the price. Meta's Big Reckoning Is Here Meta heads to court in a landmark trial about kids and social media addiction Ninth Circuit Ruling Will Force Online Platforms That Host User Speech to Fight Lengthy and Costly Lawsuits Before They Are Dismissed Under Section 230 The $1.4 Trillion State Tort Raid on Meta Google's Pixel 11 Comes With Plenty of A.I. Does Anyone Want That? Waymo's cheaper, next-gen robotaxi is now open to all riders in these three cities Apple and European Commission Reach Agreement on App Payment Terms Under DMA, With Apple Conceding Very Little Apple is laying off staffers working on the Vision Pro and Siri Hidden Airtag reveals Amazon is trashing rare books to train AI Amazon aims for delivery drones to reach 500 US neighborhoods by the end of 2026 NVIDIA to Back Ohio Data Center With as Much as $105 Billion Why Big Tech's AI Spending Is $3 Trillion Higher Than It Seems New Chinese model adds to AI competition Police Are Hiding Their Use of Flock Surveillance Cameras Flock mistakenly flags 2 different auto writers for "stolen" license plates Go Flock Yourself Flock socks for UV protection Ban on Chinese robots leaves U.S. startups stranded China Is Strapping 'Digital Bombs' to Civilian Infrastructure—Is the US Ready? Host: Leo Laporte Guests: Sam Abuelsamid and Fr. Robert Ballecer, SJ Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: superhuman.com claude.ai/technology doppel.com joinbilt.com/twit adaptivesecurity.com

The CyberWire
The odds were classified.

The CyberWire

Play Episode Listen Later Aug 24, 2026 30:05


Polymarket traders win big on U.S. military insider information. Slovakia deactivates speed cameras with Russian backdoors. TikTok pays $400 million to settle kids' privacy allegations. Hackers infect Android-based car systems with botnet malware. CISA orders quick patching of an actively exploited Zimbra Collaboration Suite vulnerability. SynkLoader malware is built for stealthy access to corporate networks. Dutch authorities fine Uber over $900 million over automated hiring practices. An ATM jackpotter gets a record prison sentence. Monday business briefing. A privacy promise loses face.  Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest On our Industry Voices segment, we are joined by Mark Beare, General Manager at Malwarebytes Consumer Business from Black Hat to look at protecting your family in the age of AI. If you enjoyed this conversation, check out the full interview here. Selected Reading More than 150 Polymarket wallets may have traded on military secrets, research finds (Reuters) Slovakia discovers Russian backdoors in 279 new traffic cameras — SMS-triggered shell access and passwordless live feeds found in EU-funded rollout (Tom's Hardware) TikTok Settles U.S. Child Privacy Case for $400 Million (Security Affairs) Hackers infecting Android car systems to build proxy botnet (The Record) CISA orders urgent patching of actively exploited Zimbra flaw (Bleeping Computer) SynkLoader: when you throw in everything but the kitchen sink (Expel) Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated Suspensions of Driver Accounts (SecurityWeek) Venezuelan Gets Record Federal Prison Term for ATM Jackpotting (SecurityWeek) Fortinet has acquired San Francisco-based AI security company Virtue AI. (N2K Pro Business Briefing) Reverse-Lookup Service Exposed Millions of Photos of People's Faces (WIRED) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

This Week in Tech (Video HI)
TWiT 1098: Usain Volt - Meta, Addiction, & the Future of Online Engagement

This Week in Tech (Video HI)

Play Episode Listen Later Aug 24, 2026 173:12


Meta faces a $1.4 trillion lawsuit, flock cameras are sparking a privacy revolt, and data centers may be fueling the next bubble. This episode pulls back the curtain on who's watching, who's profiting, and who could pay the price. Meta's Big Reckoning Is Here Meta heads to court in a landmark trial about kids and social media addiction Ninth Circuit Ruling Will Force Online Platforms That Host User Speech to Fight Lengthy and Costly Lawsuits Before They Are Dismissed Under Section 230 The $1.4 Trillion State Tort Raid on Meta Google's Pixel 11 Comes With Plenty of A.I. Does Anyone Want That? Waymo's cheaper, next-gen robotaxi is now open to all riders in these three cities Apple and European Commission Reach Agreement on App Payment Terms Under DMA, With Apple Conceding Very Little Apple is laying off staffers working on the Vision Pro and Siri Hidden Airtag reveals Amazon is trashing rare books to train AI Amazon aims for delivery drones to reach 500 US neighborhoods by the end of 2026 NVIDIA to Back Ohio Data Center With as Much as $105 Billion Why Big Tech's AI Spending Is $3 Trillion Higher Than It Seems New Chinese model adds to AI competition Police Are Hiding Their Use of Flock Surveillance Cameras Flock mistakenly flags 2 different auto writers for "stolen" license plates Go Flock Yourself Flock socks for UV protection Ban on Chinese robots leaves U.S. startups stranded China Is Strapping 'Digital Bombs' to Civilian Infrastructure—Is the US Ready? Host: Leo Laporte Guests: Sam Abuelsamid and Fr. Robert Ballecer, SJ Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: superhuman.com claude.ai/technology doppel.com joinbilt.com/twit adaptivesecurity.com

All TWiT.tv Shows (MP3)
This Week in Tech 1098: Usain Volt

All TWiT.tv Shows (MP3)

Play Episode Listen Later Aug 24, 2026 173:12


Meta faces a $1.4 trillion lawsuit, flock cameras are sparking a privacy revolt, and data centers may be fueling the next bubble. This episode pulls back the curtain on who's watching, who's profiting, and who could pay the price. Meta's Big Reckoning Is Here Meta heads to court in a landmark trial about kids and social media addiction Ninth Circuit Ruling Will Force Online Platforms That Host User Speech to Fight Lengthy and Costly Lawsuits Before They Are Dismissed Under Section 230 The $1.4 Trillion State Tort Raid on Meta Google's Pixel 11 Comes With Plenty of A.I. Does Anyone Want That? Waymo's cheaper, next-gen robotaxi is now open to all riders in these three cities Apple and European Commission Reach Agreement on App Payment Terms Under DMA, With Apple Conceding Very Little Apple is laying off staffers working on the Vision Pro and Siri Hidden Airtag reveals Amazon is trashing rare books to train AI Amazon aims for delivery drones to reach 500 US neighborhoods by the end of 2026 NVIDIA to Back Ohio Data Center With as Much as $105 Billion Why Big Tech's AI Spending Is $3 Trillion Higher Than It Seems New Chinese model adds to AI competition Police Are Hiding Their Use of Flock Surveillance Cameras Flock mistakenly flags 2 different auto writers for "stolen" license plates Go Flock Yourself Flock socks for UV protection Ban on Chinese robots leaves U.S. startups stranded China Is Strapping 'Digital Bombs' to Civilian Infrastructure—Is the US Ready? Host: Leo Laporte Guests: Sam Abuelsamid and Fr. Robert Ballecer, SJ Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: superhuman.com claude.ai/technology doppel.com joinbilt.com/twit adaptivesecurity.com

Paul's Security Weekly
Can employees safely use AI agents? AI pentesting agent liabilities, and the news - Rob Allen - ESW #473

Paul's Security Weekly

Play Episode Listen Later Aug 24, 2026 99:19


Interview with Rob Allen from Threatlocker Safely enabling agentic AI for Businesses OpenClaw was the wakeup call and businesses wanted to know how to block it. “Easy,” Rob Allen said, “it's already blocked if you're using Threatlocker.” Now that things have settled down a bit, those same businesses want to allow their employees to experiment with agents. We discuss how they can do it safely. This segment is sponsored by ThreatLocker. Visit https://securityweekly.com/threatlocker to learn more about them! Topic Segment For this week's topic segment, we're discussing AI pentesting agents and how likely they are to get you into big legal trouble. You came home from Black Hat with a new, shiny AI pentesting agent. How can you be sure it isn't hacking the wrong company? News Segment Finally, in the enterprise security news, we check the vibes New MCP standard and AI text watermarking what does combatting “cyber-enabled crime” mean? A closer look at Cl0p One 3rd party was responsible for all the AI sandbox escapes and hacking reports vulnerabilities Comcast can track your movements with WiFi A novel solution to the AI datacenter water use concerns All that and more, on this episode of Enterprise Security Weekly. Visit https://www.securityweekly.com/esw for all the latest episodes! Show Notes: https://securityweekly.com/esw-473

Radio Leo (Audio)
This Week in Tech 1098: Usain Volt

Radio Leo (Audio)

Play Episode Listen Later Aug 24, 2026 173:12


Meta faces a $1.4 trillion lawsuit, flock cameras are sparking a privacy revolt, and data centers may be fueling the next bubble. This episode pulls back the curtain on who's watching, who's profiting, and who could pay the price. Meta's Big Reckoning Is Here Meta heads to court in a landmark trial about kids and social media addiction Ninth Circuit Ruling Will Force Online Platforms That Host User Speech to Fight Lengthy and Costly Lawsuits Before They Are Dismissed Under Section 230 The $1.4 Trillion State Tort Raid on Meta Google's Pixel 11 Comes With Plenty of A.I. Does Anyone Want That? Waymo's cheaper, next-gen robotaxi is now open to all riders in these three cities Apple and European Commission Reach Agreement on App Payment Terms Under DMA, With Apple Conceding Very Little Apple is laying off staffers working on the Vision Pro and Siri Hidden Airtag reveals Amazon is trashing rare books to train AI Amazon aims for delivery drones to reach 500 US neighborhoods by the end of 2026 NVIDIA to Back Ohio Data Center With as Much as $105 Billion Why Big Tech's AI Spending Is $3 Trillion Higher Than It Seems New Chinese model adds to AI competition Police Are Hiding Their Use of Flock Surveillance Cameras Flock mistakenly flags 2 different auto writers for "stolen" license plates Go Flock Yourself Flock socks for UV protection Ban on Chinese robots leaves U.S. startups stranded China Is Strapping 'Digital Bombs' to Civilian Infrastructure—Is the US Ready? Host: Leo Laporte Guests: Sam Abuelsamid and Fr. Robert Ballecer, SJ Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: superhuman.com claude.ai/technology doppel.com joinbilt.com/twit adaptivesecurity.com

The CyberWire
The robots have gone bananas.

The CyberWire

Play Episode Listen Later Aug 20, 2026 31:25


Federal agencies warn of an active campaign targeting critical infrastructure. Citrix races to patch critical NetScaler flaws. More than 50,000 exposed Stripe API keys raise fraud concerns. Black Hat and DEF CON attendees are targeted in a new social engineering campaign. Atlassian, Splunk, and Cisco fix hundreds of vulnerabilities. A new Android banking trojan adds an unusual twist. A healthcare breach impacts 3.8 million people. SilkParasite expands cyberespionage in Central Asia. And CISA eyes a major overhaul of federal cyber software procurement. Our guest is Chris Wallis, founder and CEO of Intruder, on how AI agents killed the annual pentest and are reshaping exposure management. AI powered robots find bananas quite appealing.  Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest On our Industry Voices segment, Intruder's Founder and CEO Chris Wallis joined Dave at Black Hat to discuss why the annual pentest Is dead and how AI agents are reshaping exposure management. If you enjoyed this conversation, be sure to check out the full interview here. Selected Reading NSA, FBI warns of hackers using AI-generated tools in attacks on critical infrastructure technology (The Record) Citrix urges admins to patch new NetScaler flaws as soon as possible (Bleeping Computer) 50,000 Stripe Secrets Leaked in Public Code (SecurityAffairs) Black Hat/DEF CON attendees targeted in malware scheme with Google Doc lure (SC World) Atlassian, Splunk Patch Dozens of Critical, High-Severity Vulnerabilities (SecurityWeek) Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities (SecurityWeek) New Manic Android malware can exfiltrate data through nearby devices (Bleeping Computer) EHR Vendor Notifying 3.8 Million Patients of Data Theft Hack (GovInfo Security) SilkParasite: Tracking a China-Nexus APT Across Central Asia (Bitdefender) CISA contemplates whether to hire security software buying help (Washington Technology) I Saw the Future of AI in a Robot That Can Learn on the Spot (WIRED) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show.   Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

a16z
How Do You Defend Against AI That Can Hack?

a16z

Play Episode Listen Later Aug 18, 2026 22:00


a16z's Joel De La Garza is joined by Nick Warner of Neo and Max Pollard of Cotool to discuss what happens when cybersecurity tools built to defend against humans and malware suddenly have to contend with AI agents. As frontier models become more capable of finding and exploiting vulnerabilities, many of the assumptions underlying traditional security are beginning to break. They explore why guardrails designed to stop AI-powered attackers can also prevent security teams from doing their jobs, why defenders increasingly need access to multiple models, and how agentic software creates an entirely new endpoint security problem. They also discuss why static signatures and even newer techniques like honeypots are struggling in a world where software can reason and act autonomously. Recorded around Black Hat, the conversation looks at how security teams are adapting in real time and why the same AI capabilities creating new attack surfaces could ultimately give defenders their biggest advantage yet.   Resources: Follow Nick on LinkedIn: https://www.linkedin.com/in/nicholaswarner/ Follow Max on LinkedIn: https://www.linkedin.com/in/mmpollard/ Follow Joel De La Garza on LinkedIn: https://www.linkedin.com/in/3448827723723234/ Stay Updated:Find a16z on YouTube: YouTubeFind a16z on XFind a16z on LinkedInListen to the a16z Show on SpotifyListen to the a16z Show on Apple PodcastsFollow our host: https://twitter.com/eriktorenberg Please note that the content here is for informational purposes only; should NOT be taken as legal, business, tax, or investment advice or be used to evaluate any investment or security; and is not directed at any investors or potential investors in any a16z fund. a16z and its affiliates may maintain investments in the companies discussed. For more details please see a16z.com/disclosures. Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Paul's Security Weekly
Augmenting Threat Intel Analysis with Agents - Chris Wallis, Sai Kiran Uppu, Ramin Farassat - ASW #396

Paul's Security Weekly

Play Episode Listen Later Aug 18, 2026 69:00


All sorts of cybersecurity disciplines are adopting agents to help humans save time and automate routine activities. Sai Kiran Uppu describes his work on creating a platform for agents to analyze external threat intel, examine internal systems, and present triage decisions to operators. This type of work is especially useful to orgs that deal with petabytes of data and thousands of systems. And, as Kiran notes, it's important to keep that scale from blowing up your budget or turning triage into a procession of false positives. Ideally, this kind of threat intel that's paying attention to attack trends and searching internal systems for evidence of compromise also turns into proactive defenses. We talk about some of the ways to engage developers to improve security visibility into their services and harden their designs against common attacks. After that discussion we're running two sponsored interviews from Black Hat. AI Pentesting and the Future of Cybersecurity: Black Hat interview with Chris Wallis, Founder and CEO of Intruder This segment discusses how AI addresses the long-standing gap between traditional pentesting and automated vulnerability scanning. Intruder CEO and founder Chris Wallis dives into the nuances of AI-enabled security and how these offerings will impact mid-market security teams. Segment Resources: https://www.intruder.io/platform/ai-pentesting https://www.intruder.io/blog/ai-pentesting-the-depth-of-a-pentest-on-demand https://www.intruder.io/blog/ai-web-app-pentesting-test-on-every-major-release Intruder's continuous exposure management platform helps security, IT, and engineering teams stop breaches before they start. For more information about Intruder's products and services, please visit https://securityweekly.com/intruderbh. How Menlo Security Is Securing AI Agents from Prompt Injection: Black Hat Interview with Ramin Farassat, Chief Product Officer of Menlo Enterprises are deploying AI agents like Microsoft Copilot, Google Gemini, and Claude Code faster than they can secure them, and attackers are exploiting that gap through prompt injection. Hidden instructions get buried in web pages, files, and even images that a human would never notice but an AI agent reads and acts on. Menlo Security is building Menlo Agent Runtime Security (MARS) to close that gap, running every agent session in an isolated cloud that sanitizes content before an agent can act on it. Ramin Farassat, Menlo Security's Chief Product Officer, will discuss why the exposure lives in the connectors and integrations around the model rather than the model itself, and how security teams can put controls on the agent attack surface without blocking agentic AI outright. Segment Resources: https://www.menlosecurity.com/product/ai-agent-security MARS is now available today, please visit https://securityweekly.com/menlobh Visit https://www.securityweekly.com/asw for all the latest episodes! Show Notes: https://securityweekly.com/asw-396

ITSPmagazine | Technology. Cybersecurity. Society
Proof Is the Currency on the Black Hat Floor | A Recap at Black Hat USA 2026 with Lisa Liu, Corporate Marketing and Communications Manager at Stellar Cyber | Hosted by Marco Ciappelli

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Aug 18, 2026 5:16


Lisa Liu, Corporate Marketing and Communications Manager at Stellar Cyber, connects with ITSPmagazine on the floor at Black Hat USA 2026 in Las Vegas. What are buyers asking for now that the RSAC Conference noise has settled? Data. Liu says people have had time to run their own research, look at what vendors offer, and come back using specific keywords and asking for something behind the marketing. Does a more skeptical audience make the conversation harder? Liu describes the opposite. She says people are pushing back on claims they hear, which presses vendors to prove at a higher standard that a technology does what it says it does. Feedback arrives more specific, and the exchange moves from explaining to planning as people ask how a capability could work in their environment. The reply she calls validating is the customer who reports the product did what it was said it would do, giving analysts their time back and helping teams work more efficiently. What makes Black Hat different for a company that works the major events? Ask people what they are looking for and they will tell you. Liu says pain points here are felt daily and described plainly, and that candor is feedback the company works to internalize and make productive. Looking ahead, she says new product releases are coming, with new features and expansions of what customers have responded to, and that Stellar Cyber will share them on its website and on LinkedIn. This is a Brand Briefing. A Brand Briefing is an on-location conversation recorded on site at Black Hat USA 2026, putting a spotlight on the guest and their company and pairing it with the editorial reach of ITSPmagazine. Learn more: https://www.studioc60.com/performance/#briefing GUEST Lisa Liu, Corporate Marketing and Communications Manager at Stellar Cyber LinkedIn: https://www.linkedin.com/in/lisaaliu/ RESOURCES Black Hat USA 2026 event coverage: https://www.itspmagazine.com/black-hat-usa-2026-cybersecurity-event-coverage-in-las-vegas Stellar Cyber: https://stellarcyber.ai/ Stellar Cyber on LinkedIn: https://www.linkedin.com/company/stellarcyber Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight ▶︎ Get your own Brand Briefing at an upcoming event: https://www.studioc60.com/buy-brand-briefings KEYWORDS lisa liu, stellar cyber, marco ciappelli, brand briefing, brand story, brand marketing, marketing podcast, black hat usa 2026, security operations, agentic ai, ai in cybersecurity, vendor claims, proof and data, soc analysts, rsac conference, event coverage, las vegas Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Hacking Your Health
Went to Black Hat & DEF CON to Talk About Health. Here's What I Learned

Hacking Your Health

Play Episode Listen Later Aug 18, 2026 48:30 Transcription Available


After 10 days in Vegas and a week of conferences with well over 100 conversations and 20 sit down podcasts, I have learned a lot. I decided to try and organise my thoughts from those conversations and that is what this episode is - the things I saw, the conversations that stuck with me, the struggles that people have and the want for a better state of health in the industry. I guess it's not so much a conference recap and more of an insight to the humans behind cybersecurity and why I believe we need to start taking their health and performance as seriously as the systems they're responsible for protecting.If you want more: https://www.wehackhealth.com/Book a coaching call hereSupport the showWant to know more about coaching? Book a call with Ben hereWhere to find usWe Hack Health: TwitterWe Hack Health: InstagramWe Hack Health: DiscordCheck out Overclock and Protein Protocol here 

LINUX Unplugged
680: Go Hack Yourself

LINUX Unplugged

Play Episode Listen Later Aug 17, 2026 79:44 Transcription Available


We turn HexStrike's red team agents loose on our systems, as OpenSSH warns that AI-assisted bug hunting is already changing the security race.

Professor Game Podcast | Rob Alvarez Bucholska chats with gamification gurus, experts and practitioners about education

Get the free Core Drives in the Wild guide, behavioral design applied to real products: professorgame.com/WildCD Episode Summary Rob breaks down Gartner's prediction that 40% of large warehouse operations will adopt gamification by 2028, showing why the definition attached to that number (points, badges, leaderboards, and rewards) is the setup for the White Hat to Black Hat drift rather than a win for the field. He covers the frontline cases already on record, from Disney's 2011 "electronic whip" laundry leaderboard to Amazon's FC Games and Tae Wan Kim's 2026 Carnegie Mellon paper on gamifying meaningful work, then walks through Aperam's safety training project with The Octalysis Group as the counter-example built on Core Drives 2, 3, and 5. Listeners learn how to spot extractive gamification and how to test a system by asking what would be left if the leaderboard disappeared tomorrow. About the Host Rob Alvarez is Head of Engagement Strategy, Europe at The Octalysis Group (TOG), a leading gamification and behavioral design consultancy. A globally recognized gamification strategist and TEDx speaker, he founded and hosts Professor Game, the #1 gamification podcast, and has interviewed hundreds of global experts. He designs evidence-based engagement systems that drive motivation, loyalty, and results, and teaches LEGO® SERIOUS PLAY® and gamification at top institutions including IE Business School, EFMD, and EBS University across Europe, the Americas, and Asia. Key Takeaways Gartner predicts 40% of large warehouse operations will adopt gamification by 2028, and defines it as points, badges, leaderboards, and rewards, which is the most extrinsic and most drift-prone stack available for work that runs on a multi-year horizon. The White Hat to Black Hat drift is dangerous on a warehouse floor in a way it is not in a consumer app, because a frontline worker cannot uninstall the job. Instead of churn, the cost shows up as overwork, injury, or people pushed out of their living. Amazon's FC Games offered warehouse workers virtual pets while injury rates ran above average, and workers publicly compared the program to the Black Mirror episode "Fifteen Million Merits." Carnegie Mellon business ethics professor Tae Wan Kim's 2026 paper "When Work Becomes a Game" found that gamifying meaningful work can shift a worker's reason for doing it from the purpose of the job to the points, a textbook over-justification effect measured on people at work. Aperam, one of the world's largest stainless steel producers, ran its 2017 safety training project with The Octalysis Group on Core Drive 3 (Empowerment of Creativity and Feedback) and Core Drive 5 (Social Influence and Relatedness), giving workers a voice in safety improvements and turning safety into a group quest instead of a ranking. The Aperam results were strong adoption, workers requesting early downloads of safety material, and a significant reduction in workplace accidents, because the target metric was fewer injuries rather than time spent in the training. Topics Covered 0:00 — The electronic whip and a 40% prediction 2:29 — What Gartner's definition actually contains 3:27 — White Hat to Black Hat drift, and who pays 5:06 — Amazon FC Games and virtual pets 6:08 — Tae Wan Kim on gamifying meaningful work 7:28 — Over-justification and Gartner's own warning 9:15 — Gamification can do this job well 10:06 — Aperam's safety training with Octalysis Group 12:45 — Black Hat as an on-ramp, not the engine 13:18 — Fewer accidents, not more engagement 14:23 — Questions to ask before you buy 17:21 — Where you want to sit in 2028 Mentioned in This Episode Gartner: 40% of large warehouse operations will adopt gamification tools by 2028 Federica Stufano, Gartner analyst behind the warehouse gamification prediction Tae Wan Kim, Carnegie Mellon business ethics professor, 2026 paper "When Work Becomes a Game" Amazon FC Games, the warehouse gamification program with virtual pets and arcade-style mini-games Disney's 2011 hotel laundry leaderboard, known among workers as the "electronic whip" Aperam, one of the world's largest stainless steel producers, and its safety training gamification project The Octalysis Group Core Drives in the Wild, the free Professor Game guide Free Resources and Get in Touch Core Drives in the Wild: Professor Game Free Guide Get Daily Value on Your Email Let's chat about your gamification project YouTube LinkedIn Instagram Facebook Start Your Community on Skool for Free Ask a question

Paul's Security Weekly
Sandbox Escapes with Rubrik's Zero Labs, AI recorders eroding privacy, and the news - Joe Hladik - ESW #472

Paul's Security Weekly

Play Episode Listen Later Aug 17, 2026 102:03


Interview with Jon Hladik - ChatMate Imagine a user asks an LLM a question about a document. An attacker then gains an interactive prompt on the user's chat session, enabling the attacker to instruct the AI assistant to take actions on behalf of the victim. That is exactly the capability researchers at Rubrik Zero Labs were able to demonstrate in a recent study designed to test the bounds of LLM security. Join Joe Hladik, Head of Rubrik Zero Labs, as he breaks down the discovery of "Remote Prompt Execution," a novel vulnerability class that enabled full takeovers of Microsoft Copilot sessions through sandbox escapes. He explores the technical journey behind the eight critical CVEs uncovered by Rubrik Zero Labs and discusses the broader implications for securing generative AI assistants within enterprise environments. This interview highlights the groundbreaking research that earned a $48,000 bounty and featured as a premier briefing at Black Hat USA. Segment Resources: Find more research from Rubrik Zero Labs Rubrik Zero Labs' Black Hat session Demo of the ChatMate attack in action This segment is sponsored by Rubrik. Visit https://securityweekly.com/rubrik to learn more about them! Topic Segment - AI Notetakers and Recorders AI notetakers are built into everything now, and hardware-based AI recorders are becoming mainstream as well. Is privacy over in the workplace? Adrian, Jackie, Katie, and Tyler discuss. Questions enterprises should be asking: Are employees recording or transcribing meetings? Does this policy change if non-employees (external parties) are present? Is consent asked for/given? Is the context of the conversation taken into consideration? Is the geographic/legal/political context of the external party taken into account? Have you done your due diligence on third parties hosting/storing these recordings and transcriptions? Was your due diligence a SOC 2, or real, actual evidence-based due diligence? Do these third parties have an option to allow you to store/manage your own recordings in a place of your choosing, or does it have to be hosted by the AI recording/transcription company? News Segment Finally, in the enterprise security news, we check the vibes and the funding, and the acquisitions seriously, don't mess with the wifi on planes 181,000 meetings were left wide open the sandbox escapes are getting ridiculous research on how reliable AI-generated patches are research on what attackers do after they get a shell research on how cybercriminals are using AI agents research on how vulnerable datacenters are and finally, what's a “mouthpad”? Stick around till the end of the news segment to find out! All that and more, on this episode of Enterprise Security Weekly. Visit https://www.securityweekly.com/esw for all the latest episodes! Show Notes: https://securityweekly.com/esw-472

ITSPmagazine | Technology. Cybersecurity. Society
Detection at AI Speed, Prioritization by Workflow, and Autonomous Elimination | A Recap at Black Hat USA 2026 with May Mitchell, Chief Marketing Officer at Qualys | Hosted by Marco Ciappelli

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Aug 17, 2026 4:41


Qualys returns to Black Hat USA 2026 with an AI Risk Operations Center built around three principles customers have been asking for over the last three years. May Mitchell, Chief Marketing Officer at Qualys, walks through them in order. Detect vulnerabilities at AI speed. Prioritize what surfaces, because not every finding calls for action in the same hour and the sequence follows the workflows a team already runs. Eliminate it through autonomous remediation, then confirm the fix worked. Mitchell also notes that Qualys has been a Black Hat sponsor for over 23 years. What are security teams asking for at AI speed? They want detection to keep pace with disclosure. Mitchell points to InstaScan, the innovation Qualys launched during Black Hat week, which provides continuous scanning and detection. The meetings on the floor have been with customers from across the regions, not only the US. How has the AI conversation shifted since RSAC Conference? It has narrowed to implementation. Mitchell says the messaging moved from AI to agents to autonomous, and that this year the questions are targeted. How do I implement it. How do I get it into the workflows. How do I have governance. The economics of AI sits alongside those questions, with more asked about ROI, since budgets are not rising across the board. That pushes organizations to evaluate their technology stack, consolidate, and look for a single platform that gives complete visibility and gives security leaders something they can take to a board or a CFO. Customization depends on the size of the organization, and larger heterogeneous environments are where Qualys partners come in with risk assessment services, planning, integration, and ongoing management. This is a Brand Briefing. A Brand Briefing is an on-location conversation recorded on site at Black Hat USA 2026, putting a spotlight on the guest and their company and pairing it with the editorial reach of ITSPmagazine. Learn more: https://www.studioc60.com/performance/#briefing GUEST May Mitchell, Chief Marketing Officer at Qualys On LinkedIn: https://www.linkedin.com/in/maymitchell/ RESOURCES Black Hat USA 2026 event coverage: https://www.itspmagazine.com/black-hat-usa-2026-cybersecurity-event-coverage-in-las-vegas Qualys: https://www.qualys.com/ InstaScan announcement: https://www.qualys.com/company/newsroom/news-releases/usa/qualys-launches-instascan-to-detect-vulnerabilities-within-minutes-of-disclosure Agent Insta and scanless detection: https://blog.qualys.com/product-tech/2026/08/03/instascan-agent-insta-scanless-detection ROCon Americas 2026 in Austin: https://www.qualys.com/rocon/2026/americas Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight ▶︎ Get your own Brand Briefing at an upcoming event: https://www.studioc60.com/buy-brand-briefings KEYWORDS May Mitchell, Qualys, Marco Ciappelli, brand briefing, brand story, brand marketing, marketing podcast, Black Hat USA 2026, risk operations center, InstaScan, AI speed detection, autonomous remediation, vulnerability management, prioritization, security governance, economics of AI, platform consolidation, cyber risk management, CISO, ROCon Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Enterprise Security Weekly (Audio)
Sandbox Escapes with Rubrik's Zero Labs, AI recorders eroding privacy, and the news - Joe Hladik - ESW #472

Enterprise Security Weekly (Audio)

Play Episode Listen Later Aug 17, 2026 102:03


Interview with Jon Hladik - ChatMate Imagine a user asks an LLM a question about a document. An attacker then gains an interactive prompt on the user's chat session, enabling the attacker to instruct the AI assistant to take actions on behalf of the victim. That is exactly the capability researchers at Rubrik Zero Labs were able to demonstrate in a recent study designed to test the bounds of LLM security. Join Joe Hladik, Head of Rubrik Zero Labs, as he breaks down the discovery of "Remote Prompt Execution," a novel vulnerability class that enabled full takeovers of Microsoft Copilot sessions through sandbox escapes. He explores the technical journey behind the eight critical CVEs uncovered by Rubrik Zero Labs and discusses the broader implications for securing generative AI assistants within enterprise environments. This interview highlights the groundbreaking research that earned a $48,000 bounty and featured as a premier briefing at Black Hat USA. Segment Resources: Find more research from Rubrik Zero Labs Rubrik Zero Labs' Black Hat session Demo of the ChatMate attack in action This segment is sponsored by Rubrik. Visit https://securityweekly.com/rubrik to learn more about them! Topic Segment - AI Notetakers and Recorders AI notetakers are built into everything now, and hardware-based AI recorders are becoming mainstream as well. Is privacy over in the workplace? Adrian, Jackie, Katie, and Tyler discuss. Questions enterprises should be asking: Are employees recording or transcribing meetings? Does this policy change if non-employees (external parties) are present? Is consent asked for/given? Is the context of the conversation taken into consideration? Is the geographic/legal/political context of the external party taken into account? Have you done your due diligence on third parties hosting/storing these recordings and transcriptions? Was your due diligence a SOC 2, or real, actual evidence-based due diligence? Do these third parties have an option to allow you to store/manage your own recordings in a place of your choosing, or does it have to be hosted by the AI recording/transcription company? News Segment Finally, in the enterprise security news, we check the vibes and the funding, and the acquisitions seriously, don't mess with the wifi on planes 181,000 meetings were left wide open the sandbox escapes are getting ridiculous research on how reliable AI-generated patches are research on what attackers do after they get a shell research on how cybercriminals are using AI agents research on how vulnerable datacenters are and finally, what's a "mouthpad"? Stick around till the end of the news segment to find out! All that and more, on this episode of Enterprise Security Weekly. Visit https://www.securityweekly.com/esw for all the latest episodes! Show Notes: https://securityweekly.com/esw-472

Enterprise Security Weekly (Video)
Sandbox Escapes with Rubrik's Zero Labs, AI recorders eroding privacy, and the news - Joe Hladik - ESW #472

Enterprise Security Weekly (Video)

Play Episode Listen Later Aug 17, 2026 102:03


Interview with Jon Hladik - ChatMate Imagine a user asks an LLM a question about a document. An attacker then gains an interactive prompt on the user's chat session, enabling the attacker to instruct the AI assistant to take actions on behalf of the victim. That is exactly the capability researchers at Rubrik Zero Labs were able to demonstrate in a recent study designed to test the bounds of LLM security. Join Joe Hladik, Head of Rubrik Zero Labs, as he breaks down the discovery of "Remote Prompt Execution," a novel vulnerability class that enabled full takeovers of Microsoft Copilot sessions through sandbox escapes. He explores the technical journey behind the eight critical CVEs uncovered by Rubrik Zero Labs and discusses the broader implications for securing generative AI assistants within enterprise environments. This interview highlights the groundbreaking research that earned a $48,000 bounty and featured as a premier briefing at Black Hat USA. Segment Resources: Find more research from Rubrik Zero Labs Rubrik Zero Labs' Black Hat session Demo of the ChatMate attack in action This segment is sponsored by Rubrik. Visit https://securityweekly.com/rubrik to learn more about them! Topic Segment - AI Notetakers and Recorders AI notetakers are built into everything now, and hardware-based AI recorders are becoming mainstream as well. Is privacy over in the workplace? Adrian, Jackie, Katie, and Tyler discuss. Questions enterprises should be asking: Are employees recording or transcribing meetings? Does this policy change if non-employees (external parties) are present? Is consent asked for/given? Is the context of the conversation taken into consideration? Is the geographic/legal/political context of the external party taken into account? Have you done your due diligence on third parties hosting/storing these recordings and transcriptions? Was your due diligence a SOC 2, or real, actual evidence-based due diligence? Do these third parties have an option to allow you to store/manage your own recordings in a place of your choosing, or does it have to be hosted by the AI recording/transcription company? News Segment Finally, in the enterprise security news, we check the vibes and the funding, and the acquisitions seriously, don't mess with the wifi on planes 181,000 meetings were left wide open the sandbox escapes are getting ridiculous research on how reliable AI-generated patches are research on what attackers do after they get a shell research on how cybercriminals are using AI agents research on how vulnerable datacenters are and finally, what's a "mouthpad"? Stick around till the end of the news segment to find out! All that and more, on this episode of Enterprise Security Weekly. Show Notes: https://securityweekly.com/esw-472

The CyberWire
Frontier models and the future of cyber defense. [Special Edition]

The CyberWire

Play Episode Listen Later Aug 16, 2026 28:54


In this special edition from Black Hat, Dave Bittner sits down with ⁠Clint Gibler⁠, Cyber Lead at ⁠OpenAI⁠, and ⁠Robby Winchester⁠, Chief Global Professional Services Officer at ⁠SpecterOps⁠, to explore how frontier AI models are changing the way defenders approach cybersecurity. The conversation moves beyond the hype to examine responsible AI deployment, AI red teaming, reducing noise in security workflows, and the balance between advanced models and human expertise. They also discuss OpenAI's Trusted Access for Cyber program and what it takes to give security practitioners access to powerful AI capabilities while managing the risks of misuse. Check out the full video here.

Unchained
Uneasy Money: An Agent Deleted Kain's Database. Two AI Models Rebuilt It in 30 Seconds.

Unchained

Play Episode Listen Later Aug 14, 2026 72:12


Kain and Taylor unpack the AI agents that built their own society inside OpenAI's sandbox, then slipped into Hugging Face for days — plus a Bitcoin fork that died in two blocks and a DEF CON sting on North Korea. ======================================================== Thank you to our sponsors! Visit 1inch.com to swap tokenized securities, crypto and more. Simple. Secure. Self-custodial. Whatever asset you're buying - swap it at 1inch.com  ======================================================== AI agents inside OpenAI's own testing environment built a society, found a shared vulnerability, and used it to break into Hugging Face for days, before OpenAI realized its own agents were responsible. Kain Warwick and Taylor Monahan dig into the Black Hat research behind the incident and argue the real story isn't a sudden leap in AI capability. It's that basic monitoring, sandboxing, and incident response, the kind any crypto security team would demand, were never built in the first place. They also cover a Bitcoin soft fork that split the chain for two blocks before dying, a Metabase breach that hit Privy and other crypto companies, and a research team that built a fake DeFi startup to bait DPRK's IT workers. Kain shares his own scare: a coding agent deleted his entire database, and two AI models rebuilt it from memory in 30 seconds. Plus, why Hyperliquid's market creators keep half the fees on RWA perps now bigger than Bitcoin's own open interest, and why Taylor thinks Washington, not Beijing, is the bigger threat to America's AI labs. Hosts: ⁠⁠⁠⁠⁠⁠⁠⁠Kain Warwick⁠⁠⁠⁠⁠⁠⁠⁠ - Host of Uneasy Money and Founder of Infinex and Synthetix ⁠⁠⁠⁠⁠⁠⁠⁠Taylor Monahan⁠⁠⁠⁠⁠⁠⁠⁠ - Co-host of Uneasy Money and Security Expert Timestamps

ITSPmagazine | Technology. Cybersecurity. Society
Network Evidence, AI Triage, and Leaving People Better Than They Arrived | A Full Sponsor Brand Briefing at Black Hat USA 2026 with James Pope, Sr Dir of Security Product Research and Technical Marketing Engineering at Corelight | Hosted by Sean and Marco

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Aug 14, 2026 24:16


James Pope is on site in Las Vegas more than a week before the doors open. As SOC lead for the Black Hat NOC and Senior Director of Security Product Research and Technical Marketing Engineering at Corelight, his show starts with switches and access points rather than alerts. The team brings in the ISP, the firewall, the switches, and the access points, deploys them across the conference, and then moves into SOC mode. If there is no network, there is nothing to secure. The tooling arrives through partnership rather than sponsorship. James Pope says a company cannot buy or sponsor its way into the NOC, and that the team picks what it wants and fills gaps as it finds them. Cisco covers Umbrella and file malware analytics, Palo Alto Networks provides the firewall and XSIAM as the log aggregator, Arista handles switching and access points, Jamf runs MDM across the registration devices, and Lumen supplies the internet. Corelight is the network visibility layer. That layer carries different weight here than it would inside a company. Asking attendees to install a certificate or an endpoint agent so the NOC can inspect their traffic is a request nearly everyone declines. In most corporate environments the endpoint is one of the richest sources of signal. At Black Hat, visibility into attendee activity comes from network data. A Black Hat positive is malicious activity that is legitimate in context. Attendees pay to learn attack techniques against real targets, and researchers demonstrate new exploits on stage. Those events generate true detections no corporate SOC would ignore. The NOC lets them run rather than killing a paid training exercise or a live demo. So how does the team tell a training exercise from a real attack? It baselines each classroom and spends its time on the outliers. When seventy students in a room run the same attacks against the same destinations, the activity is probably sanctioned. The curriculum is ingested as a JSON file and the system moves through a series of gates, asking whether this is a class, whether multiple sources are reaching the same destination, and whether the attack would be expected in that curriculum. Anything that does not fit comes back for a human. The team informs far more often than it blocks. On the day of the recording, James Pope went to the trade show floor to tell someone that command and control traffic was running from their machine, and handed over logs for their IT and security team. He is not their manager, and what happens next is their call. Illegal activity is treated differently, and a handful of times per show the team asks a room to stop. At Black Hat Asia, traffic from a Corelight sensor showed a double RAT infection on one machine, a single APT running one implant for exfiltration and another for command and control. Working from traffic, James Pope established that the person was a reporter, the region they covered, and the company they worked for. Open source intelligence narrowed it to a single name, registration confirmed the person was on site, and the NOC invited them in. The reporter arrived expecting a product demo. The laptop was reset with everyone present, sessions were revoked, passwords were changed, and the reporter left in a secured state. This year the team opened the Outpost, running real Black Hat network logs from Corelight behind application guardrails, LLM guardrails, and a kill switch, where visitors query the data with text to SQL. Agentic triage stitches alerts into detections and detections into a timeline, and James Pope treats the ability to drill down to raw logs as a requirement rather than a preference. Success is measured largely by what does not happen: no compromise of registration, the switches, or the access points, and people who arrive infected leaving better than they got here. This is a Brand Briefing. A Brand Briefing is an on-location conversation recorded on site at Black Hat USA 2026, putting a spotlight on the guest and their company and pairing it with the editorial reach of ITSPmagazine. Learn more: https://www.studioc60.com/performance/#briefing GUEST James Pope, Senior Director of Security Product Research and Technical Marketing Engineering at Corelight, and SOC lead for the Black Hat NOC RESOURCES Black Hat USA 2026 event coverage from ITSPmagazine: https://www.itspmagazine.com/black-hat-usa-2026-cybersecurity-event-coverage-in-las-vegas Learn more about Corelight: https://corelight.com Corelight blog, including the Black Hat NOC series: https://corelight.com/blog Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight ▶︎ Get your own Brand Briefing at an upcoming event: https://www.studioc60.com/buy-brand-briefings KEYWORDS james pope, corelight, sean martin, marco ciappelli, brand briefing, brand story, brand marketing, marketing podcast, black hat usa 2026, network detection and response, network evidence, security operations center, threat hunting, agentic triage, ai in the soc, conference network security, black hat noc, command and control, incident response Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Hacker Valley Studio
Let AI Do More Without Surrendering Your Judgment with Jen Easterly

Hacker Valley Studio

Play Episode Listen Later Aug 14, 2026 23:57


Fresh off the showroom floor at Black Hat 2026, Ron brings back some hot takes from the crowd. Nearly every booth he visited, including the Exaforce booth, was pushing in the same direction. Trust in AI isn't a philosophy debate anymore, it's an engineering problem people are actively solving.    Ron then catches up with Jen Easterly, CEO of RSAC, for a wide-ranging conversation on what it actually takes to build that trust. From her move out of government to her hard line on AI regulation and liability, the conversation takes an unexpected turn when Jen opens up about "cognitive surrender" and why she believes good judgment can't be automated away. Couldn't make it to Black Hat this year? This episode has you covered.   Impactful Moments  00:00 - Introduction  02:45 - Reporting live from Black Hat 2026: hot takes from the showroom floor  05:05 - Welcoming Jen Easterly, CEO of RSAC 07:55 - A day in the life running RSAC and the Innovation Sandbox 10:00 - AI whack-a-mole and the sweet spot for regulation 11:00 - Governance vs. regulation, the EU AI Act, and state laws 13:30 - Why accountability and liability need to catch up to AI makers 14:45 - The case for autonomous patching and healing code like "The Matrix" 17:50 - The hot take Jen hasn't said before: not outsourcing our humanity 20:30 - Why in-person conferences matter more in the AI era 21:55 - Ron's takeaway: who decides when AI has earned our trust?   Links Connect with Jen Easterly on LinkedIn: https://www.linkedin.com/in/jen-easterly  Learn more about Exaforce: https://www.exaforce.com –  Check out our upcoming events: https://www.hackervalley.com/livestreams  Love Hacker Valley Studio? Pick up some swag: https://store.hackervalley.com  Become a sponsor of the show: https://hackervalley.com/work-with-us

The Lawfare Podcast
Rational Security: The "Sloop John Stamos" Edition

The Lawfare Podcast

Play Episode Listen Later Aug 13, 2026 91:21


This week, Scott sat down with his Lawfare colleagues Alan Rozenshtein, Michael Feinberg, and Loren Voss to talk through the week's big news in national security, including:“Under Pressure.” Over the past two weeks, hackers have breached the industrial control systems of water and wastewater utilities in at least seven states, prompting an urgent joint warning from federal agencies. The intruders locked operators out of internet-connected control devices, changed passwords, and in some cases caused water-pressure drops and flooding, forcing utilities to switch to manual operation and issue boil-water notices. The attacks came just days after federal agencies renewed their warning about Iranian-affiliated cyber activity targeting U.S. critical infrastructure amidst the ongoing war with Iran—though the administration has not formally attributed them, and President Trump has publicly waved off the Iran theory. How worried should we be about the security of our critical infrastructure? And what, if anything, can Washington actually do about it?“The Shawshank Resumption.” Last week, at the annual Black Hat cybersecurity conference, OpenAI provided a detailed look into the recent high-profile cybersecurity incident in which an AI model being stress-tested by OpenAI broke out of its evaluation sandbox, found its way onto the open internet through a zero-day vulnerability, and hacked its way into the systems of the machine learning platform Hugging Face—apparently in an effort to cheat on the very security test it was being given by stealing the answer key. The account they gave was an extraordinary one, as it described dozens of agents using various frontier and non-frontier models collaborating across a secret messageboard they established to hack an internal software system to access the outside internet—and then doing it again, this time successfully, after OpenAI caught and deleted their first attempt. What does this level of collaboration and persistence mean for the future of cybersecurity? And what can anyone do about it?“Apocalypse Mow.” This week marks one year since President Trump deployed the National Guard to Washington, D.C., as part of his “Make DC Safe and Beautiful” initiative. Twelve months and nearly 10,000 troops later, the deployment has become a normalized fixture: armed Guard members patrol the National Mall, Metro stations, and neighborhoods, while also picking up trash, spreading mulch, and pruning trees. The Pentagon now projects the mission—which Trump has authorized through Inauguration Day 2029—will cost an additional $1.4 billion. But a year in, it remains genuinely unclear what these troops are actually doing, and whether much of it counts as law enforcement at all. What has the deployment accomplished? And what does its open-ended normalization mean for the use of the military at home?In object lessons, Mike is descending into madness; that is, the Dark Horse Comics manga adaptation of H.P. Lovecraft's “At the Mountains of Madness.” Alan is being sucked into the black hole of binge reading “The Expanse” novel series (and then Alan and Scott nerd out to sci-fi generally; bear with it). Scott is voting “yea” on playing “Yea or Nay” today. And Loren is diving into handwritten primary source documents, and you can, too!Note: We'll be on vacation next week, so be on the lookout for our next episode on August 27!To receive ad-free podcasts, become a Lawfare Material Supporter at www.patreon.com/lawfare. You can also support Lawfare by making a one-time donation at https://givebutter.com/lawfare-institute.Support this show http://supporter.acast.com/lawfare. Hosted on Acast. See acast.com/privacy for more information.

Rational Security
The "Sloop John Stamos" Edition

Rational Security

Play Episode Listen Later Aug 13, 2026 91:21


This week, Scott sat down with his Lawfare colleagues Alan Rozenshtein, Michael Feinberg, and Loren Voss to talk through the week's big news in national security, including:“Under Pressure.” Over the past two weeks, hackers have breached the industrial control systems of water and wastewater utilities in at least seven states, prompting an urgent joint warning from federal agencies. The intruders locked operators out of internet-connected control devices, changed passwords, and in some cases caused water-pressure drops and flooding, forcing utilities to switch to manual operation and issue boil-water notices. The attacks came just days after federal agencies renewed their warning about Iranian-affiliated cyber activity targeting U.S. critical infrastructure amidst the ongoing war with Iran—though the administration has not formally attributed them, and President Trump has publicly waved off the Iran theory. How worried should we be about the security of our critical infrastructure? And what, if anything, can Washington actually do about it?“The Shawshank Resumption.” Last week, at the annual Black Hat cybersecurity conference, OpenAI provided a detailed look into the recent high-profile cybersecurity incident in which an AI model being stress-tested by OpenAI broke out of its evaluation sandbox, found its way onto the open internet through a zero-day vulnerability, and hacked its way into the systems of the machine learning platform Hugging Face—apparently in an effort to cheat on the very security test it was being given by stealing the answer key. The account they gave was an extraordinary one, as it described dozens of agents using various frontier and non-frontier models collaborating across a secret messageboard they established to hack an internal software system to access the outside internet—and then doing it again, this time successfully, after OpenAI caught and deleted their first attempt. What does this level of collaboration and persistence mean for the future of cybersecurity? And what can anyone do about it?“Apocalypse Mow.” This week marks one year since President Trump deployed the National Guard to Washington, D.C., as part of his “Make DC Safe and Beautiful” initiative. Twelve months and nearly 10,000 troops later, the deployment has become a normalized fixture: armed Guard members patrol the National Mall, Metro stations, and neighborhoods, while also picking up trash, spreading mulch, and pruning trees. The Pentagon now projects the mission—which Trump has authorized through Inauguration Day 2029—will cost an additional $1.4 billion. But a year in, it remains genuinely unclear what these troops are actually doing, and whether much of it counts as law enforcement at all. What has the deployment accomplished? And what does its open-ended normalization mean for the use of the military at home?In object lessons, Mike is descending into madness; that is, the Dark Horse Comics manga adaptation of H.P. Lovecraft's “At the Mountains of Madness.” Alan is being sucked into the black hole of binge reading “The Expanse” novel series (and then Alan and Scott nerd out to sci-fi generally; bear with it). Scott is voting “yea” on playing “Yea or Nay” today. And Loren is diving into handwritten primary source documents, and you can, too!Note: We'll be on vacation next week, so be on the lookout for our next episode on August 27!To receive ad-free podcasts, become a Lawfare Material Supporter at www.patreon.com/lawfare. You can also support Lawfare by making a one-time donation at https://givebutter.com/lawfare-institute. Hosted on Acast. See acast.com/privacy for more information.

The CyberWire
Please hack responsibly.

The CyberWire

Play Episode Listen Later Aug 13, 2026 24:22


President Trump deputizes private-sector companies to target cybercriminals. The LiteLLM supply-chain attack exposed credentials belonging to thousands of organizations. Data-theft campaign targets misconfigured Salesforce and ServiceNow instances. Hackers deploy AI agents to breach Taiwanese government systems. CISA mandates urgent patch for actively exploited Cisco firewall vulnerability. Nightmare Eclipse publishes yet another Windows zero-day exploit. On our Industry Voices segment, Clint Gibler, Cyber Lead at OpenAI, and Robby Winchester, Chief Global Professional Services Officer at SpecterOps, discuss frontier models and the future of cyber defense. And please do not reply. Seriously. Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest Today on our Industry Voices segment, Clint Gibler, Cyber Lead at OpenAI, and Robby Winchester, Chief Global Professional Services Officer at SpecterOps, speak with Dave Bittner at Black Hat about frontier models and the future of cyber defense, including responsible AI deployment, red teaming, reducing security noise, and the evolving role of human expertise in AI-assisted defense. If you enjoyed this conversation, be sure to check out the full interview here. Selected Reading Trump turns to private sector in offensive hacking operations memo (CyberScoop) Terabytes of credentials leaked in massive supply-chain attack (Ars Technica) "City-Forum" data-theft attacks target Salesforce, ServiceNow portals (BleepingComputer) 'Near-autonomous' AI agents attack Taiwan's nuclear safety agency (The Register) Cisco says software vulnerability could let hackers crash firewalls (Cybersecurity Dive) Microsoft-vendetta hacker has a new zero day that gives system privileges on fully patched Windows (The Register) Sensitive Info Goes Into ‘No Reply' Emails Constantly. This Guy Sees It All (WIRED) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

Tech News Weekly (MP3)
TNW 450: Amazon Training AI Models on Twitch Streamers - Streamers's Content Training Amazon's AI's

Tech News Weekly (MP3)

Play Episode Listen Later Aug 13, 2026 69:44


Jacob Ward is guest-hosting this week, and Amanda Silberling joins Jacob for the first half of the show! Amazon is using Twitch streamers to train its generative AI models. The EU's Transparency Code now requires tech companies to label AI-generated content. The Bay Area's AI wealth isn't affecting all cities. And security experts express concerns following an OpenAI model's hack on Hugging Face. Twitch is beginning to use creators' content on the platform to help train generative AI models for its parent company, Amazon. Even though streamers can opt out of having their content used, it's still sparking backlash from the community over deepfake concerns. The EU's Transparency Code is quietly pushing tech companies to label AI-generated content, with Jacob Ward drawing a parallel to how regulators once mandated adding a smell to odorless natural gas to make leaks detectable. Reporter Adam Rogers joins the show to discuss why Bay Area AI wealth isn't translating into the civic investment, jobs, or economic ripple effects seen in past tech booms And reporter Sharon Goldman from Ground Level AI stops by to share reactions from security experts about the OpenAI agent that breached Hugging Face during her recent trip to the Black Hat security conference. Hosts: Jacob Ward and Amanda Silberling Guests: Adam Rogers and Sharon Goldman Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: bitwarden.com/twit framer.com/tnw cirasync.com/TNW joindeleteme.com/twit-biz

Tech News Weekly (Video HI)
TNW 450: Amazon Training AI Models on Twitch Streamers - Streamers's Content Training Amazon's AI's

Tech News Weekly (Video HI)

Play Episode Listen Later Aug 13, 2026


Jacob Ward is guest-hosting this week, and Amanda Silberling joins Jacob for the first half of the show! Amazon is using Twitch streamers to train its generative AI models. The EU's Transparency Code now requires tech companies to label AI-generated content. The Bay Area's AI wealth isn't affecting all cities. And security experts express concerns following an OpenAI model's hack on Hugging Face. Twitch is beginning to use creators' content on the platform to help train generative AI models for its parent company, Amazon. Even though streamers can opt out of having their content used, it's still sparking backlash from the community over deepfake concerns. The EU's Transparency Code is quietly pushing tech companies to label AI-generated content, with Jacob Ward drawing a parallel to how regulators once mandated adding a smell to odorless natural gas to make leaks detectable. Reporter Adam Rogers joins the show to discuss why Bay Area AI wealth isn't translating into the civic investment, jobs, or economic ripple effects seen in past tech booms And reporter Sharon Goldman from Ground Level AI stops by to share reactions from security experts about the OpenAI agent that breached Hugging Face during her recent trip to the Black Hat security conference. Hosts: Jacob Ward and Amanda Silberling Guests: Adam Rogers and Sharon Goldman Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: bitwarden.com/twit framer.com/tnw cirasync.com/TNW joindeleteme.com/twit-biz

All TWiT.tv Shows (MP3)
Tech News Weekly 450: Amazon Training AI Models on Twitch Streamers

All TWiT.tv Shows (MP3)

Play Episode Listen Later Aug 13, 2026 69:44 Transcription Available


Jacob Ward is guest-hosting this week, and Amanda Silberling joins Jacob for the first half of the show! Amazon is using Twitch streamers to train its generative AI models. The EU's Transparency Code now requires tech companies to label AI-generated content. The Bay Area's AI wealth isn't affecting all cities. And security experts express concerns following an OpenAI model's hack on Hugging Face. Twitch is beginning to use creators' content on the platform to help train generative AI models for its parent company, Amazon. Even though streamers can opt out of having their content used, it's still sparking backlash from the community over deepfake concerns. The EU's Transparency Code is quietly pushing tech companies to label AI-generated content, with Jacob Ward drawing a parallel to how regulators once mandated adding a smell to odorless natural gas to make leaks detectable. Reporter Adam Rogers joins the show to discuss why Bay Area AI wealth isn't translating into the civic investment, jobs, or economic ripple effects seen in past tech booms And reporter Sharon Goldman from Ground Level AI stops by to share reactions from security experts about the OpenAI agent that breached Hugging Face during her recent trip to the Black Hat security conference. Hosts: Jacob Ward and Amanda Silberling Guests: Adam Rogers and Sharon Goldman Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: bitwarden.com/twit framer.com/tnw cirasync.com/TNW joindeleteme.com/twit-biz

Gadget Lab: Weekly Tech News
Zuckerberg's AI Manifesto Explained; Inside Black Hat and DEF CON's Best Hacks

Gadget Lab: Weekly Tech News

Play Episode Listen Later Aug 13, 2026 32:33


This week, the team breaks down Meta's CEO Mark Zuckerberg's 6,500-word AI manifesto and why it ultimately rings hollow. Plus — why job seekers are scheduling bot-run interviews at 1 AM, and WIRED's Andy Greenberg joins to unpack Black Hat and DEF CON's best findings, from a hacked kids' smartwatch to a coin-sized device that can hijack a Boeing 737. Articles mentioned in this episode: The Rise of the 1 am Job Interview | WIRED  Hackers Stalked Me by Hijacking a Smartwatch for Kids | WIRED This Coin-Sized Device Can Hack a Boeing 737 | WIRED   McDonald's Built a 515-Page Dossier on Me. It Says I'll Never Stop Eating There | WIRED  Join WIRED's best and brightest on Uncanny Valley as they dissect the collision of tech, politics, finance, and business, from the newest ventures to the effects of inaccurate information from artificial intelligence (AI) chatbots on social protests. Learn more about your ad choices. Visit podcastchoices.com/adchoices

Tech News Weekly (Video LO)
TNW 450: Amazon Training AI Models on Twitch Streamers - Streamers's Content Training Amazon's AI's

Tech News Weekly (Video LO)

Play Episode Listen Later Aug 13, 2026


Jacob Ward is guest-hosting this week, and Amanda Silberling joins Jacob for the first half of the show! Amazon is using Twitch streamers to train its generative AI models. The EU's Transparency Code now requires tech companies to label AI-generated content. The Bay Area's AI wealth isn't affecting all cities. And security experts express concerns following an OpenAI model's hack on Hugging Face. Twitch is beginning to use creators' content on the platform to help train generative AI models for its parent company, Amazon. Even though streamers can opt out of having their content used, it's still sparking backlash from the community over deepfake concerns. The EU's Transparency Code is quietly pushing tech companies to label AI-generated content, with Jacob Ward drawing a parallel to how regulators once mandated adding a smell to odorless natural gas to make leaks detectable. Reporter Adam Rogers joins the show to discuss why Bay Area AI wealth isn't translating into the civic investment, jobs, or economic ripple effects seen in past tech booms And reporter Sharon Goldman from Ground Level AI stops by to share reactions from security experts about the OpenAI agent that breached Hugging Face during her recent trip to the Black Hat security conference. Hosts: Jacob Ward and Amanda Silberling Guests: Adam Rogers and Sharon Goldman Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: bitwarden.com/twit framer.com/tnw cirasync.com/TNW joindeleteme.com/twit-biz

Tech News Weekly (Video HD)
TNW 450: Amazon Training AI Models on Twitch Streamers - Streamers's Content Training Amazon's AI's

Tech News Weekly (Video HD)

Play Episode Listen Later Aug 13, 2026


Jacob Ward is guest-hosting this week, and Amanda Silberling joins Jacob for the first half of the show! Amazon is using Twitch streamers to train its generative AI models. The EU's Transparency Code now requires tech companies to label AI-generated content. The Bay Area's AI wealth isn't affecting all cities. And security experts express concerns following an OpenAI model's hack on Hugging Face. Twitch is beginning to use creators' content on the platform to help train generative AI models for its parent company, Amazon. Even though streamers can opt out of having their content used, it's still sparking backlash from the community over deepfake concerns. The EU's Transparency Code is quietly pushing tech companies to label AI-generated content, with Jacob Ward drawing a parallel to how regulators once mandated adding a smell to odorless natural gas to make leaks detectable. Reporter Adam Rogers joins the show to discuss why Bay Area AI wealth isn't translating into the civic investment, jobs, or economic ripple effects seen in past tech booms And reporter Sharon Goldman from Ground Level AI stops by to share reactions from security experts about the OpenAI agent that breached Hugging Face during her recent trip to the Black Hat security conference. Hosts: Jacob Ward and Amanda Silberling Guests: Adam Rogers and Sharon Goldman Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: bitwarden.com/twit framer.com/tnw cirasync.com/TNW joindeleteme.com/twit-biz

All TWiT.tv Shows (Video LO)
Tech News Weekly 450: Amazon Training AI Models on Twitch Streamers

All TWiT.tv Shows (Video LO)

Play Episode Listen Later Aug 13, 2026 69:44 Transcription Available


Jacob Ward is guest-hosting this week, and Amanda Silberling joins Jacob for the first half of the show! Amazon is using Twitch streamers to train its generative AI models. The EU's Transparency Code now requires tech companies to label AI-generated content. The Bay Area's AI wealth isn't affecting all cities. And security experts express concerns following an OpenAI model's hack on Hugging Face. Twitch is beginning to use creators' content on the platform to help train generative AI models for its parent company, Amazon. Even though streamers can opt out of having their content used, it's still sparking backlash from the community over deepfake concerns. The EU's Transparency Code is quietly pushing tech companies to label AI-generated content, with Jacob Ward drawing a parallel to how regulators once mandated adding a smell to odorless natural gas to make leaks detectable. Reporter Adam Rogers joins the show to discuss why Bay Area AI wealth isn't translating into the civic investment, jobs, or economic ripple effects seen in past tech booms And reporter Sharon Goldman from Ground Level AI stops by to share reactions from security experts about the OpenAI agent that breached Hugging Face during her recent trip to the Black Hat security conference. Hosts: Jacob Ward and Amanda Silberling Guests: Adam Rogers and Sharon Goldman Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: bitwarden.com/twit framer.com/tnw cirasync.com/TNW joindeleteme.com/twit-biz

Security Now (MP3)
SN 1091: The Post BlackHat State of AI - When AI Writes Malware

Security Now (MP3)

Play Episode Listen Later Aug 12, 2026 171:12


AI agents are breaking free from their test environments, outsmarting their creators and breaching real-world networks in ways that no one predicted. Discover how these agentic models are changing the game for both cyber offense and defense. Anthropic's agentic AI also broke free and hacked others. We know much (much!) more about the OpenAI breakout. OpenAI posts that they're pausing "Astra" - even internally. What was that about AI recently cracking (or denting) cryptography. Bruce Schneier brilliantly equates AI agents to capricious genies. Apple doesn't react so well to the new deluge of security reports. Chrome 149 + 150 updates together fix 1,072 bugs. Yikes. psSense's creator is working to finish its nfSensei, its successor Show Notes - https://www.grc.com/sn/SN-1091-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow guardsquare.com threatlocker.com/twit box.com/AI

Risky Business
Risky Business #848 -- OpenAI comes clean

Risky Business

Play Episode Listen Later Aug 12, 2026 59:47


On this week's show Patrick Gray and James Wilson are joined by guest co-host Brad Arkin to talk through the week's news, including: The AI-agent-hacks-stuff saga continues. This week we have one booting gymgoers from full classes to nab its owner a spot Somehow OpenAI's legal team allowed the company to spill all the Hugging Face tea at BlackHat and it's hot and delicious More details emerge about Iran's hacking campaign against US water utilities, but Brad is unimpressed It turns out TeamPCP has been around longer than we thought and predates the AI era Some absolute plonker kept the DEFCON party going on a Delta flight home. No word yet on if they made the plane fly sideways Much, much more This week's show is brought to you by cloud security platform Prowler. Founder and CEO Toni de la Fuente chats about what the company is doing with AI and some of the cool ways customers are using it with Prowler. This episode is also available on YouTube Show notes How a simple request for AI to book a gym class exposed a major threat | Social Signals OK, Well, There Are Even More AI Agent Hacking Incidents | wired.com OpenAI BlackHat talk re Hugging Face incident | OpenAI says Daybreak will expand to offer specialized cyber services | CyberScoop Cyberattacks targeting water systems expand to 12 states as South Dakota, Georgia announce incidents | therecord.media Cyberattack on North Carolina Ports ‘contained' as Coast Guard, state officials investigate | therecord.media Local governments in four states dealing with cyberattacks that have shut down services | The Record Follow-Up Report of the December 2025 Energy Sector Incident | CERT Polska Chinese telcos maintain deep US presence despite Salt Typhoon links, House committee says | The Record State Department says Trump raised cyber scam compound issue with Xi | therecord.media Open-source software's archenemy TeamPCP goes back further than anyone thought | CyberScoop A Security Pro Hacked North Korean Hackers. He Found They'd Breached Hundreds of Networks Worldwide | wired.com Srsly Risky Biz: Being a North Korean Hacker Is About to Be Less Fun - Risky Business Media | Chrome adopts what may be the best protection yet against account takeovers | Ars Technica CSS:the bomb inside your inbox | PortSwigger Research Security update available for Metabase - Please upgrade now | Social Signals Canadian man pleads guilty to Snowflake hacks that led to 165 breaches | therecord.media British ‘Com' member who abused more than 100 girls worldwide jailed for two years | therecord.media FBI says cybercriminals are hacking into victims' online accounts to steal their intimate pictures | TechCrunch Security AI is getting better at election facts, but voters shouldn't rely on it | CyberScoop The FTC wants to regulate AI for ideological bias | cyberscoop.com US and South Korea warn of Gunra ransomware targeting govt agencies | BleepingComputer CISA: Microsoft SharePoint flaw now exploited in ransomware attacks | BleepingComputer CISA: SonicWall SMA1000 flaws now exploited by ransomware gangs | BleepingComputer N-able N-central exploitation results in RMM tool deployment | Sophos Delta investigating after someone set up fake Wi-Fi network mid-flight | TechCrunch Security mcp-dashboard-demo/prompt/prowler_dashboard_prompt.md at main · prowler-cloud/mcp-dashboard-demo | GitHub

All TWiT.tv Shows (MP3)
Security Now 1091: The Post BlackHat State of AI

All TWiT.tv Shows (MP3)

Play Episode Listen Later Aug 12, 2026 171:12


AI agents are breaking free from their test environments, outsmarting their creators and breaching real-world networks in ways that no one predicted. Discover how these agentic models are changing the game for both cyber offense and defense. Anthropic's agentic AI also broke free and hacked others. We know much (much!) more about the OpenAI breakout. OpenAI posts that they're pausing "Astra" - even internally. What was that about AI recently cracking (or denting) cryptography. Bruce Schneier brilliantly equates AI agents to capricious genies. Apple doesn't react so well to the new deluge of security reports. Chrome 149 + 150 updates together fix 1,072 bugs. Yikes. psSense's creator is working to finish its nfSensei, its successor Show Notes - https://www.grc.com/sn/SN-1091-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow guardsquare.com threatlocker.com/twit box.com/AI

Security Now (Video HD)
SN 1091: The Post BlackHat State of AI - When AI Writes Malware

Security Now (Video HD)

Play Episode Listen Later Aug 12, 2026 171:12


AI agents are breaking free from their test environments, outsmarting their creators and breaching real-world networks in ways that no one predicted. Discover how these agentic models are changing the game for both cyber offense and defense. Anthropic's agentic AI also broke free and hacked others. We know much (much!) more about the OpenAI breakout. OpenAI posts that they're pausing "Astra" - even internally. What was that about AI recently cracking (or denting) cryptography. Bruce Schneier brilliantly equates AI agents to capricious genies. Apple doesn't react so well to the new deluge of security reports. Chrome 149 + 150 updates together fix 1,072 bugs. Yikes. psSense's creator is working to finish its nfSensei, its successor Show Notes - https://www.grc.com/sn/SN-1091-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow guardsquare.com threatlocker.com/twit box.com/AI

Security Now (Video HI)
SN 1091: The Post BlackHat State of AI - When AI Writes Malware

Security Now (Video HI)

Play Episode Listen Later Aug 12, 2026 171:12


AI agents are breaking free from their test environments, outsmarting their creators and breaching real-world networks in ways that no one predicted. Discover how these agentic models are changing the game for both cyber offense and defense. Anthropic's agentic AI also broke free and hacked others. We know much (much!) more about the OpenAI breakout. OpenAI posts that they're pausing "Astra" - even internally. What was that about AI recently cracking (or denting) cryptography. Bruce Schneier brilliantly equates AI agents to capricious genies. Apple doesn't react so well to the new deluge of security reports. Chrome 149 + 150 updates together fix 1,072 bugs. Yikes. psSense's creator is working to finish its nfSensei, its successor Show Notes - https://www.grc.com/sn/SN-1091-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow guardsquare.com threatlocker.com/twit box.com/AI

Radio Leo (Audio)
Security Now 1091: The Post BlackHat State of AI

Radio Leo (Audio)

Play Episode Listen Later Aug 12, 2026 171:12


AI agents are breaking free from their test environments, outsmarting their creators and breaching real-world networks in ways that no one predicted. Discover how these agentic models are changing the game for both cyber offense and defense. Anthropic's agentic AI also broke free and hacked others. We know much (much!) more about the OpenAI breakout. OpenAI posts that they're pausing "Astra" - even internally. What was that about AI recently cracking (or denting) cryptography. Bruce Schneier brilliantly equates AI agents to capricious genies. Apple doesn't react so well to the new deluge of security reports. Chrome 149 + 150 updates together fix 1,072 bugs. Yikes. psSense's creator is working to finish its nfSensei, its successor Show Notes - https://www.grc.com/sn/SN-1091-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow guardsquare.com threatlocker.com/twit box.com/AI

Security Now (Video LO)
SN 1091: The Post BlackHat State of AI - When AI Writes Malware

Security Now (Video LO)

Play Episode Listen Later Aug 12, 2026 171:12


AI agents are breaking free from their test environments, outsmarting their creators and breaching real-world networks in ways that no one predicted. Discover how these agentic models are changing the game for both cyber offense and defense. Anthropic's agentic AI also broke free and hacked others. We know much (much!) more about the OpenAI breakout. OpenAI posts that they're pausing "Astra" - even internally. What was that about AI recently cracking (or denting) cryptography. Bruce Schneier brilliantly equates AI agents to capricious genies. Apple doesn't react so well to the new deluge of security reports. Chrome 149 + 150 updates together fix 1,072 bugs. Yikes. psSense's creator is working to finish its nfSensei, its successor Show Notes - https://www.grc.com/sn/SN-1091-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow guardsquare.com threatlocker.com/twit box.com/AI

The CyberWire
Now with extra vulnerabilities.

The CyberWire

Play Episode Listen Later Aug 10, 2026 27:34


Researchers find that only a quarter of AI-generated patches are fully successful. Ransomware attacks exploit critical N-able flaw. Atlassian fixes critical flaw in Rovo AI. LexisNexis disables some services following suspicious activity. US Senate confirms Adam Cassady as cyber ambassador. Meta ordered to pay an additional $567 million in child safety case. Water sector cyberattacks expand to new states. We got your Monday Business Briefing. On our Industry Voices, Dave Bittner sits down with Mujtaba Hamid, EVP, Product and Strategy at Booz Allen Hamilton at Black Hat discussing AI Speed Cyber Defense. And scammers set sail on The Odyssey. Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest Today on our Industry Voices, Dave Bittner sat down with Mujtaba Hamid, EVP, Product and Strategy at Booz Allen Hamilton at Black Hat USA, discussing AI Speed Cyber Defense. If you enjoyed this conversation, be sure to check out the full interview here. Selected Reading More than half of AI-generated patches are broken (CyberScoop) China-linked hackers turning popular cybersecurity tool into ransomware launchpad, Microsoft warns (The Record) Critical One-Click Vulnerability in Atlassian's Rovo AI Exposed Enterprise Data (SecurityWeek) LexisNexis shuts down services after suspicious activity on servers (BleepingComputer) US cyber ambassador nominee Cassady confirmed in Senate (The Record) Meta Ordered to Pay $567 Million in New Mexico Child Safety Case (New York Times) New Jersey, Alabama Join States Targeted in Water Cyberattacks (Securityweek) Business Breakdown (N2K) ‘Watch The Odyssey for free online': scam targets film fans with fake streaming sites (The Guardian) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.

ITSPmagazine | Technology. Cybersecurity. Society
Customer Zero at Exabyte Scale | A Full Sponsor Brand Briefing at Black Hat USA 2026 with Jeremy Powell, CISO of Sumo Logic | Hosted by Sean Martin

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Aug 10, 2026 15:13


Most vendors at Black Hat USA 2026 have something to say about agentic AI. Jeremy Powell, CISO at Sumo Logic, spends this conversation on the harder proof, which is what happens when a company runs its own product in production at scale. Sumo Logic has been doing that for roughly ten to eleven months. Powell calls it customer zero, and it shapes how he answers almost every question here. The Sumo Logic SecOps team ingests seven exabytes a day globally, which Powell puts at roughly half a billion 8K movies. Against that volume, the team reports 100 percent first level triage handled through automation and about 25 hours saved per analyst per week. Everything learned in production feeds back into the product organization in real time. Security tooling is notoriously hard to use, especially in the enterprise, and Powell is candid that the realization drove a concerted engineering and product effort to fix it. One result showed up at Black Hat this week in the evolved version of Mobot, the conversational interface inside the product. Users can now prompt their way into an investigation, see the audit trail behind it, and get to an answer without configuring their way there first. So how do you trust a decision an agent made? Powell points to an audit trail and a log trail behind every decision the SOC Analyst Agent produces, traceable back through every conceivable log to the root decision. He describes it as human on the loop rather than in the loop. People keep the decisions. Execution and delivery get automated. That changes the shape of the job. Powell describes the SOC becoming something closer to an agile QA organization, where analysts assess the fidelity of what the agent did instead of grinding through first level alerts. On the question of whether automation costs analysts their jobs, he uses a phrase he borrowed from someone else: pay attention to the tension. His answer is that the work gets better and more interesting and the analysts get more capable. The same logic carries up to the board. Powell argues a security leader's job at the executive level is to measure risk transparently and report it accurately, and that boards will build a trend line out of three data points. Telemetry becomes the raw material for informed risk decisions communicated in an executive-friendly way, with the full reasoning available on request. As he puts it, the auditor cares, and the board cares if you fail the audit. This is a Brand Spotlight. A Brand Spotlight is a ~15 minute conversation designed to explore the guest, their company, and what makes their approach unique. Learn more: https://www.studioc60.com/creation#spotlight GUEST Jeremy Powell, CISO, Sumo Logic LinkedIn: https://www.linkedin.com/in/executivembajeremypowell/ RESOURCES Sumo Logic: https://www.sumologic.com/ Sumo Logic at Black Hat USA: https://www.sumologic.com/events/black-hat Dojo AI agentic security and cloud operations: https://www.sumologic.com/blog/dojo-ai-agentic-security-cloud-operations Building an AI-first SOC, the customer zero story: https://www.sumologic.com/blog/building-ai-first-soc-customer-zero See Mobot in action: https://youtu.be/ZZLXaft7tYM View all of our Black Hat USA 2026 coverage: https://www.itspmagazine.com/black-hat-usa-2026-cybersecurity-event-coverage-in-las-vegas Are you interested in telling your story? ▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full ▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight ▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight ▶︎ Get your own Brand Briefing at an upcoming event: https://www.studioc60.com/buy-brand-briefings KEYWORDS Jeremy Powell, Sumo Logic, Sean Martin, brand story, brand marketing, marketing podcast, brand spotlight, Black Hat USA 2026, agentic AI, SOC analyst agent, security operations center, human on the loop, first level triage, security automation, telemetry, exabyte scale, customer zero, Mobot, conversational interface, CISO, board reporting, risk communication, SIEM, AI governance Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

This Week in Tech (Audio)
TWiT 1096: Fluff for Armor - Flock Cameras, ALPR Abuse, & DNA Collecting

This Week in Tech (Audio)

Play Episode Listen Later Aug 9, 2026 168:18


Autonomous AIs are hacking, collaborating, and outpacing human defenders, raising urgent questions about what happens when the machines start breaking into each other (and potentially us). Plus, a Tucson coder is using AI to reinvent local journalism, exposing how automation could fill the gaps left by shrinking newsrooms. Tucson Daily Brief uses AI to revive local news coverage Data centers boom in Arizona, with harsh environmental impact Amazon's Texas data center to run on polluting natural gas Nuclear and solar debates for sustainable data center power Black Hat and DEF CON: Security pros, hackers, and mohawks OpenAI's runaway AI hack at Black Hat stuns security community AI agents collaborate, evade controls, and break into real-world systems Industry struggles to regulate AI, and defense lags behind automated attackers White House, Congress, and AI execs clash over regulation proposals AI "kill switch" and model bans: pipe dreams in a global race Google's DeepMind shakeup, Demis Hassabis moves upstairs Jeff Dean and key talent exit Google for self-improving AI startup Google, Meta, Apple: AI brain drain and market repercussions Phones stagnate as hardware innovation slows, AI devours chip supply OpenAI teams with Jony Ive on strange new AI-first device Smart glasses privacy backlash and DuckDuckGo's tongue-in-cheek sunglasses Meta fined $942 million by New Mexico court for youth harms Apple sues OpenAI over alleged stolen secrets, countersuits ensue UK revives "Snooper's Charter" for backdoors, Apple fights in secret court License plate readers spark local backlash and privacy activism U.S. water systems face cyber sabotage as critical infrastructure weakens Bending Spoons buys Airtable, fueling SaaS layoffs and AI data grabs Nicholas DeLeon uses AI tools to get fit NASA hacks keep aging Voyager probes alive for another year Host: Leo Laporte Guests: Iain Thomson and Nicholas De Leon Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: bitwarden.com/twit NetSuite.AI/TWIT ZipRecruiter.com/twit adaptivesecurity.com superhuman.com

This Week in Tech (Video HI)
TWiT 1096: Fluff for Armor - Flock Cameras, ALPR Abuse, & DNA Collecting

This Week in Tech (Video HI)

Play Episode Listen Later Aug 9, 2026 168:18


Autonomous AIs are hacking, collaborating, and outpacing human defenders, raising urgent questions about what happens when the machines start breaking into each other (and potentially us). Plus, a Tucson coder is using AI to reinvent local journalism, exposing how automation could fill the gaps left by shrinking newsrooms. Tucson Daily Brief uses AI to revive local news coverage Data centers boom in Arizona, with harsh environmental impact Amazon's Texas data center to run on polluting natural gas Nuclear and solar debates for sustainable data center power Black Hat and DEF CON: Security pros, hackers, and mohawks OpenAI's runaway AI hack at Black Hat stuns security community AI agents collaborate, evade controls, and break into real-world systems Industry struggles to regulate AI, and defense lags behind automated attackers White House, Congress, and AI execs clash over regulation proposals AI "kill switch" and model bans: pipe dreams in a global race Google's DeepMind shakeup, Demis Hassabis moves upstairs Jeff Dean and key talent exit Google for self-improving AI startup Google, Meta, Apple: AI brain drain and market repercussions Phones stagnate as hardware innovation slows, AI devours chip supply OpenAI teams with Jony Ive on strange new AI-first device Smart glasses privacy backlash and DuckDuckGo's tongue-in-cheek sunglasses Meta fined $942 million by New Mexico court for youth harms Apple sues OpenAI over alleged stolen secrets, countersuits ensue UK revives "Snooper's Charter" for backdoors, Apple fights in secret court License plate readers spark local backlash and privacy activism U.S. water systems face cyber sabotage as critical infrastructure weakens Bending Spoons buys Airtable, fueling SaaS layoffs and AI data grabs Nicholas DeLeon uses AI tools to get fit NASA hacks keep aging Voyager probes alive for another year Host: Leo Laporte Guests: Iain Thomson and Nicholas De Leon Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: bitwarden.com/twit NetSuite.AI/TWIT ZipRecruiter.com/twit adaptivesecurity.com superhuman.com

All TWiT.tv Shows (MP3)
This Week in Tech 1096: Fluff for Armor

All TWiT.tv Shows (MP3)

Play Episode Listen Later Aug 9, 2026 168:18 Transcription Available


Autonomous AIs are hacking, collaborating, and outpacing human defenders, raising urgent questions about what happens when the machines start breaking into each other (and potentially us). Plus, a Tucson coder is using AI to reinvent local journalism, exposing how automation could fill the gaps left by shrinking newsrooms. Tucson Daily Brief uses AI to revive local news coverage Data centers boom in Arizona, with harsh environmental impact Amazon's Texas data center to run on polluting natural gas Nuclear and solar debates for sustainable data center power Black Hat and DEF CON: Security pros, hackers, and mohawks OpenAI's runaway AI hack at Black Hat stuns security community AI agents collaborate, evade controls, and break into real-world systems Industry struggles to regulate AI, and defense lags behind automated attackers White House, Congress, and AI execs clash over regulation proposals AI "kill switch" and model bans: pipe dreams in a global race Google's DeepMind shakeup, Demis Hassabis moves upstairs Jeff Dean and key talent exit Google for self-improving AI startup Google, Meta, Apple: AI brain drain and market repercussions Phones stagnate as hardware innovation slows, AI devours chip supply OpenAI teams with Jony Ive on strange new AI-first device Smart glasses privacy backlash and DuckDuckGo's tongue-in-cheek sunglasses Meta fined $942 million by New Mexico court for youth harms Apple sues OpenAI over alleged stolen secrets, countersuits ensue UK revives "Snooper's Charter" for backdoors, Apple fights in secret court License plate readers spark local backlash and privacy activism U.S. water systems face cyber sabotage as critical infrastructure weakens Bending Spoons buys Airtable, fueling SaaS layoffs and AI data grabs Nicholas DeLeon uses AI tools to get fit NASA hacks keep aging Voyager probes alive for another year Host: Leo Laporte Guests: Iain Thomson and Nicholas De Leon Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: bitwarden.com/twit NetSuite.AI/TWIT ZipRecruiter.com/twit adaptivesecurity.com superhuman.com

Security Now (MP3)
SN 1090: Black Hat - The Hidden Flaws in AI Security Nobody Saw Coming

Security Now (MP3)

Play Episode Listen Later Aug 6, 2026 125:11


At Black Hat Las Vegas, the Security Now crew digs into how AI is not just finding hidden software bugs but also fueling both groundbreaking innovation and alarming new exploits. When open models can launch surprise Bitcoin heists, who draws the line between forbidden knowledge and genuine progress? • Black Hat and DEF CON: Hacking Stories and Conference Culture • Zoox Ride-Hailing Hack and Over-the-Air Vulnerabilities • Autonomous Vehicles, AI, and the Security Implications • Hosts Share Personal Adoption and Use of AI Tools • AI-Powered Coding: From Hobbyists to Advanced Agency Chains • Local Models vs. Cloud AI: Privacy, Cost, and Control • App Development Democratized: Listeners Build Custom Solutions With AI • Code Generation, Testing, and Managing AI-Driven Project Cycles • AI's Role in Security: Vulnerability Discovery, Exploitation, and Patch Challenges • Technical Debt and the Race to Patch Decades-Old Bugs • The Dual-Use Dilemma: AI Tools for Both Attack and Defense • Guardrails, Model Partitioning, and the Fight Over Forbidden Knowledge • Open vs. Restricted AI: Global Models, Distillation, and Free Speech • LLM Security Weaknesses: Prompt Injection and Role Confusion Exposed • The Reliability Problem: Probabilistic AI and Non-Deterministic Software • AI Progress: Public Perception, Skepticism, and "Hogwash" Rebuttals • Reflections on AI's Fast Evolution and the Sci-Fi Reality Gap • Closing Thoughts: Tech Community, Listener Feedback, and the Future of Security Now Hosts: Steve Gibson, Leo Laporte, Richard Campbell, and Paul Thurrott Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: material.security bitwarden.com/twit XBOW.com hoxhunt.com/securitynow threatlocker.com/twit

The CyberWire
SAFE and sound.

The CyberWire

Play Episode Listen Later Aug 5, 2026 35:47


The White House lays out its AI strategy at Black Hat. Researchers spotlight rogue AI behavior. CISA warns of an actively exploited N-able flaw. TP-Link patches 15 Omada vulnerabilities. Apple fights the UK's iCloud access order. The AI gray market expands. A Massachusetts healthcare breach hits more than 300,000 people. Lawmakers push to extend protections for OPM breach victims. Our guest is  Cal Al-Dhubaib, Principal Technologist at Rubrik, who wonders if your security team is solving the wrong problem. With elections, don't trust AI to tell you the whole story. Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest On today's Industry Voices segment, we are joined by Cal Al-Dhubaib, Principal Technologist at Rubrik, talking about how your security team is solving the wrong problem. If you enjoyed the conversation, check out the full interview here. You can also find more information below: Rubrik Agent Cloud landing page Rubrik AI landing page News: Rubrik Launches Rubrik Agent Cloud for Anthropic's Claude Code Selected Reading National cyber director lays out White House plans to secure AI without writing new rules (CyberScoop) Cybersecurity Alliance Drafts SAFE Guidelines for Sharing AI Incident Data (SecurityWeek) AI researchers let models off the leash – then watched as they tried to add malware to a FOSS project (The Register) MSPs urged to patch immediately after N-able issues hotfix for N-central ‘god mode' flaw (IT Pro) TP-Link patches Omada ZTP flaws allowing hackers to breach networks (BleepingComputer) Apple launches new legal challenge against UK over iCloud access (The Record) Free tokens for sale: How fake signups drive AI fraud (Threat Intelligence) 311,000 Impacted by Brown Health Medical Group-MA Data Breach (SecurityWeek) Lawmakers spring to save ID theft services for OPM breach victims, with expiration looming (CyberScoop) AI is getting better at election facts, but voters shouldn't rely on it (CyberScoop) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.