POPULARITY
Categories
As enterprises expand across multiple cloud environments, on-premise data centers, and dynamic AI workloads, traditional perimeter defenses and siloed cloud-native tools are no longer enough to secure the modern network. In this episode, Ashish sits down with Murali Rathinasamy, Senior Director of Product at Cisco, to break down the next evolution of network security: the Hybrid Mesh Firewall. Murali explains why relying solely on cloud-native firewalls can create visibility gaps, and how unified policy orchestration allows security teams to manage enforcement points seamlessly. He shares a real-world case study of how Multicloud Defense is used to eliminate manual route table configurations and achieve zero-downtime, blue-green upgrades. The conversation also tackles micro-segmentation. Murali breaks down why segmentation initiatives usually stall in "analysis paralysis" and provides a practical, agentless roadmap to reduce your attack surface "one bite at a time". Guest Socials - Murali's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions(00:00) Introduction(01:40) Murali Rathinasamy's Background and Role at Cisco(02:30) What is a Hybrid Mesh Firewall?(04:30) Bridging the Skills Gap: NetSec vs. CNAPP/CSPM(06:45) Case Study: Royal College of Surgeons in Ireland (RCSI)(09:40) The Limits of Cloud-Native Firewalls in a Multicloud World(13:30) Securing AI Workloads and Managing the Agent Blast Radius(15:40) Why You Need Unified Policy Orchestration Across Firewall Vendors(17:40) Why Micro-segmentation Fails: Overcoming Analysis Paralysis(24:45) How to Implement Micro-segmentation "One Bite at a Time"(31:30) Detecting and Blocking Prompt Injections with Cisco AI Defense(33:30) Where Does the Hybrid Mesh Firewall Fit in the Tech Stack?
Livestreamed as always Monday at 8pm UK time (3pm Eastern)! Join us as we talk about the new D&D drops, Hasbro's AI studio plans, the D&D community advisory group, and Neon Odyssey's record breaking campaign! D&D Beyond Drops adds four new corrupted angels, three new spells D&D Beyond admits that blocking Drops sharing "was not the right decision" WotC announces D&D Community Advisory Group Celebrate Dungeon Masters Campaign 1 Finale with a Downloadable Background Hasbro launches AI studio, allowing third parties to license Hasbro IP 'Umdaar' is Fate's take on Masters of the Universe Neon Odyssey is now the world's biggest TTRPG crowdfunder Rise of the Lazy GM EN5ider Magazine 2025 Annual
The Outer Realm welcomes the return of Lorilei Potvin, fellow UPRN Host of The Angel Rock Date: May 27th, 2026 EP: 724 TOPIC - Tonight, please join Lorilei Potvin and I for another exciting and conspiratorial segment of “ The Celebrity Mystery Series”. There is a belief that Celebrities are being somehow " Recycled". Theories include Time Travel, Body Doubles, High Tech technology, Esoteric/Occult Magic, and more! We will be delving deep into the the crazy world of Dead Ringers, Biological Immortality, Transmigration, and perhaps even the hypothesis of Cloning. You will not want to miss this one! Contact for the show - theouterrealmcontact@gmail.com https://linktr.ee/michelledesrochers_ Please support us by Liking, Subscribing, Sharing and Commenting. Thank you !!! About Lorilei: Lorilei Potvin a Canadian Clairvoyant Medium, Crystal Reiki Master/Energy Healer, Akashic Records Practitioner, Medical Intuitive, Spiritual Teacher/Mentor, Internet Radio Host/Podcaster, Humanitarian Activist & Registered Nurse. She is also very knowledgeable about The Paranormal, having lived in an extremely haunted Home for 11 + years. Lorilei has shared her story on The Travel Channel's “Paranormal Survivor”, in Season 4, Episode 9, called “Demonic Hauntings”(here's a link to the Episode: https://youtu.be/OkoOcAL-Feg Lorilei's 2 shows are “The Angel Rock” on Mondays from 6pm-8pm EST & she co-hosts “Beneath The Hollow Moon " with Kerrilynn Shellhorn on Thursday Nights , 7pm-9pm EST, with David Hanzel; both shows are on United Public Radio Network or UPRN, out of New Orleans, Louisiana. Both shows can be seen LIVE-STREAMED from Her YouTube channel below, as well as Our Network YouTube channels, Facebook Page & anywhere podcasts &/or Talk Radio is carried. Find Her Here: https://www.facebook.com/TheAngelRock My YouTube channel: https://www.YouTube.com/c/TheAngelRockWithLorileiPotvin If you enjoy the content on the channel, please support us by subscribing: Thank you All A formal disclosure: The opinions and information presented or expressed by guests on The Outer Realm Radio and Beyond The Outer Realm are not necessarily those of the TOR, BTOR Hosts, Sponsors, or the United Public Radio Network and its producers. Although the content may be interesting, it is deemed "For Entertainment Purposes" . We are always be respectful and courteous to all involved. Thank you, we appreciate you all!
Third-Party Risk Management (TPRM) has historically been a tedious, 200-page paper exercise that felt like being catapulted back to 1979. But AI is changing that.In this episode, Ashish sits down with Igor Andriushchenko (CISO at Lovable) and Jasper Mills (CEO of Ethira) to discuss the collision of TPRM and AI.We dive into the hidden risks of Shadow AI, exploring the chaos that ensues when non-technical teams spin up unauthorized AI tools without security oversight. Jasper and Igor explain why the future of vendor risk involves treating AI agents like a contracted workforce, managing their lifecycles, and preparing for the 2027 era of "agent-to-agent" negotiations where humans are entirely removed from the loop.We also cover the impact of DORA (Digital Operational Resilience Act) regulations, the Build vs. Buy debate for AI security tooling, and how to use autonomous agents to finally automate tedious vendor questionnaires.Guest Socials - Igor's Linkedin + Jasper LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:00) Jasper and Igor's Backgrounds (Athira and Lovable) (04:00) Why Traditional Third-Party Risk Management is Abysmal (06:20) DORA Regulations and the Collision of AI and Compliance (11:30) Using AI to Automate Vendor Assessments and Questionnaires (16:30) The Build vs. Buy Debate for AI TPRM Tools (22:30) Shadow AI: "Giving a Kindergarten a Nuclear Bomb" (25:30) Using AI Agents for Automated Vendor Discovery and Inventory (28:30) 2027: The Future of Agent-to-Agent Negotiations (30:40) Treating AI Agents Like a Contracted Workforce (34:10) Enforcing Contractual Accountability through AI Guardrails
This Sunday, Rev. Sheridan Irick preaches from the book of Acts, chapter 2, verses 1 through 21, a passage also known as ‘The Coming of the Holy Spirit.” Livestreamed on Sunday, May 24, 2026, from the sanctuary of Mayflower Congregational UCC Church in Oklahoma City.
DJ FrankEC spins 60 minutes of Classic Freestyle tracks from the 80's & 90's. Live Streamed on the Freestyle Lives Twitch Raid Train (5-18-26) For More info : www.djfrankec.com twitch.tv/djfrankec
Ryan and Dana discuss the San Diego mosque shooting in which suspects livestreamed the attack.See omnystudio.com/listener for privacy information.
Just like in Buffalo, the deadly shooting at a mosque in San Diego was streamed by the attackers. What can be done to stop this from happening again? Rich Frankel, former Special Agent in Charge of FBI in New York gives his thoughts.
Follow up on the Cheesecake after live streamed cooking
THE REVOLUTION WILL BE LIVE STREAMED written by VJ PUMPDABEAT In Tokyo they walking at midnight Giving face in the neon light In Lagos the children are serving Every category every night In Paris they strutting down the runway In Seoul they posing til the morning comes In London they walking for the culture In Berlin they giving every single one Ten across the board in São Paulo Standing ovation in Madrid Every city found the floor eventually And gave it everything they did Walk for it, strut for it Pose for it, give it all Walk for it, strut for it The whole world's at the ball The revolution will be live streamed Everybody walking in the name The revolution will be live streamed Every city giving all the same Strut it out, pose it out Give it all in the name The revolution will be live streamed And the whole world came In Moscow they dipping in the cold In Amsterdam they walking bold In Melbourne they serving past midnight In Taipei they giving tens of gold In Bogotá they posed for the cameras In Santiago they walked the floor all night In Cape Town they gave it everything In Nairobi bringing it to light No translation needed The body speaks the language Every floor the same instruction Walk, strut, pose, give Walk for it, strut for it Pose for it, give it all Walk for it, strut for it The whole world's at the ball The revolution will be live streamed Everybody walking in the name The revolution will be live streamed Every city giving all the same Strut it out, pose it out Give it all in the name The revolution will be live streamed And the whole world came TOKYO walk LAGOS walk PARIS walk SEOUL walk SÃO PAULO give it LONDON give it BERLIN give it MOSCOW give it From every screen to every floor From every floor to every screen The culture traveled and it landed And they walked it like they always knew The revolution will be live streamed Everybody walking in the name The revolution will be live streamed Every city giving all the same Strut it out, pose it out Give it all in the name The revolution will be live streamed And the whole world came Walk for it, strut for it Pose for it, in the name Walk for it, strut for it The whole world came
Is your vulnerability management program ready for something like Claude Mythos? The old days of treating vulnerabilities as temporal events (like Heartbleed or Log4J) and patching them on a leisurely 30, 60, or 90-day cycle are officially over.In this episode, Ashish sits down with Brad Hibbert, COO and Chief Strategy Officer at Brinqa. Brad explains how the release of Anthropic's Claude Mythos, an AI model capable of discovering vulnerabilities at machine speed without human intervention has compressed the time-to-exploit from months down to mere seconds.We discuss why the traditional assumption that "sophisticated attacks require sophisticated attackers" is no longer relevant, and why leaning solely on CVSS scores will drown your remediation teams in noise. We speak about how defenders must pivot from generic patching to focusing on true exploitability within their specific environments. Learn how AI can chain multiple "low severity" vulnerabilities (which were previously ignored 90% of the time) to gain root access, and why siloed AI security tools will lead to an expensive and ineffective game of "Whac-A-Mole".Guest Socials - Brad's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:30) Brad Hibbert's Background and Role at Brinqa(03:40) Heartbleed vs. Claude Mythos: Temporal vs. Persistent Threats(05:30) AI Weaponization: From Months to Seconds(06:50) Elevating the Threat Model Beyond CVSS(09:30) The Tsunami of Vulnerabilities and the Need for Exploitability(12:10) Bridging the Blind Spots in Exposure Management(15:10) Resolving Friction Between Security and Remediation Teams(21:00) Automating Remediation Without Losing Oversight(28:30) The Problem with Treating Every Vulnerability Individually(30:20) Why We Ignored 90% of Low Severity Vulnerabilities(32:30) Siloed AI and the Costly Game of "Whac-A-Mole"(35:30) Defining "Reasonable Security" in the AI Era(41:10) Quick Wins: Where to Start Uplifting Your ProgramResources spoken about during the episode:Mythos Changes the Offense.5 Things Every CISO Should Do Before the Next MythosThank you to Brinqa for sponsoring this episode
(SPOILER) Your Daily Roundup covers today's YouTube Livestream covering the Taylor Frankie Paul hearing at 5:15pm EST, finally a Survivor twist that worked – with one caveat, and Steven McBee issues a statement regarding his texts to his ex. Music written by Jimmer Podrasky (B'Jingo Songs/Machia Music/Bug Music BMI) Ollie - Go to https://ollie.com/realitysteve Promo Code: REALITYSTEVE for 70% off your first box plus a Happiness Guarantee. Not satisfied? Get your money back. Learn more about your ad choices. Visit megaphone.fm/adchoices
(SPOILER) Your Daily Roundup covers today's YouTube Livestream covering the Taylor Frankie Paul hearing at 5:15pm EST, finally a Survivor twist that worked – with one caveat, and Steven McBee issues a statement regarding his texts to his ex. Music written by Jimmer Podrasky (B'Jingo Songs/Machia Music/Bug Music BMI) Ollie - Go to https://ollie.com/realitysteve Promo Code: REALITYSTEVE for 70% off your first box plus a Happiness Guarantee. Not satisfied? Get your money back. Learn more about your ad choices. Visit megaphone.fm/adchoicesSee Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.
We are officially entering the "Multi-AI Era." Much like the multi-cloud times, organizations are no longer just using a single AI tool like Microsoft Copilot, they are building custom, agentic workflows using diverse third-party models and MCP servers . In this episode, Ashish sits down with Shawn Hays from Varonis to discuss why the security market has over-pivoted on AISPM (AI Security Posture Management) . Shawn spoke about how having visibility and an inventory of your AI models is a great start, but it fails to secure the enterprise if you lack the guardrails to actually stop an agent from going off the rails and exfiltrating data . Shawn breaks down the components of a robust AI security platform (like Varonis Atlas) and explains why data security is inseparable from AI security. He spoke about why AI agents will blindly "read whatever is on the teleprompter," meaning your AI is only as secure as the data access and identity controls surrounding it . Tune in to learn how to apply Zero Trust across the entire AI chain from the prompter to the cloud infrastructure Guest Socials - Shawn's Linkedin Podcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:50) Shawn's Background: Microsoft, CMMC, and Varonis (03:50) The Biggest AI Security Challenges (Copilot to Agentic AI) (05:50) Third-Party AI Risk (Jira and Salesforce Agents) (08:40) The Connector Ecosystem Danger (Copilot + Salesforce) (11:50) 8 Distinct Areas of an AI Security Platform (Varonis Atlas) (14:00) Entering the "Multi-AI Era" (Analogies to Multi-Cloud) (16:00) The AI Bill of Materials (Athena AI & Grammarly) (20:50) Why Data Security and AI Security are Intertwined (22:00) Applying Zero Trust to the Entire AI Chain (24:50) The Role of Identity and ITDR in AI Systems (27:00) HIPAA, OCR, and Regulating AI Data Access (31:30) Creating a Governance Plan for Microsoft Copilot (33:50) Securing Pro-Code AI Systems (AWS Bedrock & MCP Servers) (38:30) Why the Security Market is Over-Pivoting on AISPM (44:10) The "Ron Burgundy" Analogy for AI Agents (45:50) Fun Questions: Crocodile & Caramel Tasting (47:20) The Ed Sheeran & Yelawolf Mixtape Connection (48:50) Hobbies & Pride: DJing Weddings and Playing Ice Hockey in Alabama (51:50) Favorite Food: Alabama White Sauce BBQ & Milo's BurgersResources spoken about during the episode:Varonis Atlas
Is your cloud security strategy ready for the "messy middle" of AI adoption? With developers pushing code from inception to production in under three days using "vibe coding," and adversaries capable of exfiltrating data in just 25 minutes, human-led security is no longer fast enough .In this episode, Ashish sits down with Elad Koren from Palo Alto Networks (Cortex Cloud) to discuss the shift toward Agentic Cloud Security. Elad spoke to us about why bolting an AI chatbot onto legacy security tools doesn't work, and why you must run AI directly where your data lies . Elad shared a real-world case study: an organization that rapidly spun up an "internal" AI workload to test the market, only to have a red team discover it was exposed to the public internet with zero authentication .If you want to know how the role of cloud security practitioners will evolve from manual analysts to AI orchestrators within the next five years, listen to this episode.Guest Socials - Elad's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:50) Who is Elad Koren? (Palo Alto Networks / RSA Security) (04:00) The Explosion of "Vibe Coding" and AI Applications (05:10) How CNAPP is Evolving from Posture to Active Protection (07:20) The New Threat Model: 25-Minute Exfiltration Windows (09:30) What is "Agentic Cloud Security"? (Fighting Machines with Machines) (11:40) The "Messy Middle" and the Evolution of Security Practitioners (14:30) Platformization: Why Security Can No Longer Survive in Silos (16:50) Blurring the Lines Between Cloud and Enterprise Estates (18:20) Case Study: An Unauthenticated "Internal" AI Workload Exposed (20:30) How AI is Shrinking Code-to-Cloud Cycles to 3 Days (22:30) The Coming Crisis: Security Token Budgets vs. Speed (23:30) Fun Questions: Kangaroo Jerky Tasting (25:20) Hobbies & Family: Cycling, Audiobooks, and Fatherhood (26:30) Favorite Food: Thai Cuisine in the Bay Area Resources spoken about during the episode:- Cortex Cloud- Symphony 26 - The Agentic SOC Summit- Palo Alto Networks Linkedin Page- Elad's Linkedin
Today, we're chatting with Nica, the founder behind FashioNica — a live-streamed marketplace for curated pre-loved designer handbags, jewelry, and watches that has built one of the most devoted communities in the luxury resale space. Every Thursday at 7 p.m. Pacific, Nica drops a new collection, but the real magic happens in the thirty minutes before that, when she goes live on Instagram to show off what she found that week — it's basically a FaceTime call with a few thousand of your most handbag-obsessed girlfriends to see what Nica found this week. Each drop, her bags routinely sell out in under two minutes. Nica grew up thrifting, scanning the racks at Goodwill and Salvation Army for the trends she'd clock at Forever 21, where she worked after school. She developed a sharp eye early — and, as it turned out, an even sharper instinct for which pieces were worth holding onto. A Nordstrom employee discount and a Chloé backpack were her gateway into designer pieces. After that, there was no going back — though she's never really considered buying new when pre-loved exists. What started as a passion project filmed on an iPhone, with bags laid out all over her apartment, has grown into a full operation with a team, a warehouse, international sourcing trips, and a major pop-up event — FashioNica Fest — that drew hundreds of community members to a studio full of bags she'd personally sourced in Japan. On today's episode, we get into all of it — how Nica sources the pieces that end up in your cart, the art of the Thursday night drop, and why she believes a bag with a little wear is always going to be more interesting than one that's never left the store. Let's dive right in! DISCUSSED IN THE EPISODE: [6:04] Nica got into thrifting at the Goodwill and Salvation Army in high school. [9:45] How she got into designer handbags during her time working at Nordstrom. [12:40] How she landed styling work on celebrity cover shoots by sliding into DMs. [17:10] Why she started creating fashion content on TikTok. [22:31] Investing $15,000 into an early inventory buy. [27:08] Prepping for a weekly bag drop. [34:25] Growing the team behind FashioNica. [34:25] Growing the team behind FashioNica. [37:21] Designer bag sourcing trips in Paris and Japan. [39:15] Planning FashioNica Fest: the first major pop-up, born from a sourcing trip. [44:24] Nica's personal bag collection. [48:47] Watching Jane Birkin's original Birkin sell at auction for $10 million. EPISODE MENTIONS: FashioNica.com @xofashionica FashioNica on TikTok Nica's YouTube Jenn Im - Youtube Aya Kanai @fashionica.shop - "behind the bag drop" secret Instagram LET'S CONNECT:
The Outer Realm welcomes back Lorilei Potvin, fellow UPRN Host of The Angel Rock Date: April 16th, 2026 EP: 707 TOPIC: Tonight we offer another instalment of the popular The " Celebrity Mystery Series". (as requested) Lorilei and I will be delving into the the Enigmatic Jim Morrison. His life was a mystery and his " death" was no different. Contact for the show - theouterrealmcontact@gmail.com Michelle Desrochers and The Outer Realm :https://linktr.ee/michelledesrochers_ Please support us by Liking, Subscribing, Sharing and Commenting. Thank you All!!! About Lorilei: Lorilei Potvin a Canadian Clairvoyant Medium, Crystal Reiki Master/Energy Healer, Akashic Records Practitioner, Medical Intuitive, Spiritual Teacher/Mentor, Internet Radio Host/Podcaster, Humanitarian Activist & Registered Nurse. She is also very knowledgeable about The Paranormal, having lived in an extremely haunted Home for 11 + years. Lorilei has shared her story on The Travel Channel's “Paranormal Survivor”, in Season 4, Episode 9, called “Demonic Hauntings”(here's a link to the Episode: https://youtu.be/OkoOcAL-Feg Lorilei's 2 shows are “The Angel Rock” on Mondays from 6pm-8pm EST & she co-hosts “Beneath The Hollow Moon " with Kerrilynn Shellhorn on Thursday Nights , 7pm-9pm EST, with David Hanzel; both shows are on United Public Radio Network or UPRN, out of New Orleans, Louisiana. Both shows can be seen LIVE-STREAMED from Her YouTube channel below, as well as Our Network YouTube channels, Facebook Page & anywhere podcasts &/or Talk Radio is carried. Find Her Here: https://www.facebook.com/TheAngelRock My YouTube channel: https://www.YouTube.com/c/TheAngelRockWithLorileiPotvin
Is your EDR blinding you to insider threats? In this episode, Ashish is joined by Brandon Dixon (Co-Founder & CTO of Ent AI, and former Microsoft Security Copilot leader) to discuss why traditional endpoint security tools are failing in the AI era .Brandon talks about the reality of modern "Insider Risk." Attackers are no longer relying on malware; they are "living off the land" by using legitimate enterprise software (like Zoom or Microsoft Office) to look like everyday employees . Why EDR tools can see that Zoom is running, but are completely blind to a user granting remote control to an outsider .We also explore the explosion of Shadow AI, highlighting a real-world HIPAA violation where an HR employee tried to feed patient records into Meta AI via WhatsApp . If your SOC team is drowning in alerts from "dumb control points," this episode talks about how to move from reactive pattern matching (legacy DLP) to proactive behavioral intent modeling at the endpointGuest Socials - Brandon's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:50) Who is Brandon Dixon? (RiskIQ, Microsoft Copilot, Ent AI) (04:00) Redefining Insider Risk: Malice vs. Mistakes (05:10) "Living Off the Land": Why Adversaries Use Legitimate Tools (06:30) The Zoom Example: Why EDR is Blind to Remote Control Hacks (09:30) The Failure of Security Training against "Click Fix" Attacks (11:50) Case Study: A HIPAA Violation via Meta AI in WhatsApp (13:50) Why Traditional DLP Fails at Semantic Context (16:50) Local AI Usage: Why Workloads Are Returning to the Endpoint (18:50) The Problem with UEBA: Putting Anomalies in Context (22:30) Why You Can't Build This With a Data Lake (26:30) Stopping the "Trophy SOC" and Dumb Alerts (27:40) Fun Questions: Kangaroo Jerky Tasting (28:40) Hobbies & Pride: Ultramarathons and Growing Up in Baltimore (29:20) Favorite Cuisine: Burmese Food (Tea Leaf Salad)
Are AI agents functioning like adversarial malware inside your network? In this episode of the Cloud Security Podcast, Ashish sits down with Jasson Casey, Co-founder and CEO of Beyond Identity, to speak about the security risks introduced by Shadow AI and code assistants .Jasson explains why an AI agent executing a tool is the perfect opportunity for prompt injection or proprietary data exfiltration comparing unchecked agents to Ron Burgundy reading whatever is on the teleprompter . We discuss the "barbell" reaction of CISOs (either blocking AI entirely or blindly accepting the risk) and why placing device-bound identity at the core of your security stack is the only way to safely enable AI speed .From an $80,000 stolen Anthropic key nightmare on Reddit to a red-team exercise that cloned voices using Hugging Face models in just four hours, this episode highlights the tangible threats and solutions of the AI era .Guest Socials - Jasson's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:50) Who is Jasson Casey? (CEO of Beyond Identity) (03:50) The Reality of Shadow AI: Marketers & Devs Moving Fast (05:10) Why AI Agents Execute Like Adversarial Malware (06:20) Prompt Injection Over Time & Agent "Memory" as Persistence (07:40) The CISO "Barbell": Blocking Everything vs. Accepting All Risk (09:30) Applying the NIST Framework to AI Agents (12:00) The Reddit Horror Story: An $80,000 Stolen Claude Key (13:00) Why Device-Bound Identity is the Ultimate AI Control Plane (15:50) The Death of SaaS IT Products (Replaced by Git + Claude Code) (19:30) Fixing Prompt Injection & Exfil via Attributable Identity (20:50) Moving from UI Dashboards to API Data + AI Skills (26:20) Building "Agentic Playbooks" for Security Teams (27:40) Red Teaming: Cloning Voices in 4 Hours via Hugging Face (30:20) Fun Questions: Kangaroo vs. Crocodile Tasting (31:50) Hobbies: Radar Projects & Northern Mexican Cuisine (Dark Mole) This episode was sponsored by Beyond Identity Resources spoken about during the episode: To get started with Ceros, the AI Trust Layer - Visit beyondidentity.ai
DJ FrankEC spins 1 hour of Classic Freestyle tracks from the 80's &90's. Live Streamed on the I Hella Love Freestyle Twitch Raid Train (4-1-26)
These assholes really thought they could commit a genocide in full view of the entire world for years and then expect everyone cheer for them to win. Reading by Tim Foley.
Does staying at a Japanese hotel for $1 - but having to be livestreamed - pass the pub test?See omnystudio.com/listener for privacy information.
Is your security team treating your Identity Provider (IDP) like a firewall? In this episode, Adam Bateman (CEO & Co-founder of Push Security) explains why that's a dangerous mistake and how modern attackers are bypassing SSO entirely .Drawing from his background leading red teams that simulated nation-state attacks , Adam breaks down the massive architectural shift from network-based attacks to browser-native exploits. We dive into the terrifying evolution of phishing, from "Click Fix" attacks that trick users into running malicious commands via their clipboard, to "Consent Phishing" that completely takes over Azure without ever touching the endpoint .If your company relies heavily on SaaS applications or Chromebooks, this episode would be a valuable listen. Guest Socials - Adam's Linkedin Podcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:50) Who is Adam Bateman? (Red Teaming & Simulating Nation States) (05:40) Why Identity & MFA Are Not "Solved" Problems (07:50) The Myth: Why an IDP is Not a Firewall (11:30) Consent Phishing: Exploiting OAuth Apps (13:30) The Architectural Shift: Network to Browser (15:30) Scattered Spider & The Rise of Identity Coalitions (19:30) Threat Modeling: On-Prem vs. Chromebooks (23:20) The Problem with SSPM and API Limitations (28:40) How "Click Fix" Attacks Trick Users into Running Malware (32:30) Omnichannel Phishing: LinkedIn, SMS, and Google Ads (34:30) Weaponizing Legitimate SaaS Apps (The DocuSign Exploit) (37:00) Consent Fix: Full Azure Compromise Inside the Browser (38:50) Disrupting the Secure Web Gateway (SWG) Market (41:40) Fun Questions: Wakeboarding, Culture, and Brat's RestaurantResources spoken about during the episode:You can find out more about Push Security here.Thank you to Push Security for sponsoring this episode.
Are attackers really using AI to run end-to-end cyber campaigns? In this episode, Edward Wu (Founder and CEO, DropzoneAI) joins Ashish to separate the hype from reality when it comes to AI-driven attacks .Edward explains how attackers are currently using open-source LLMs for reconnaissance and spear-phishing , and why the major commercial models now explicitly prohibit users from generating exploits without vetting . On the defense side, Edward shares how AI agents have successfully automated over 160 years' worth of alert investigations in the real world proving that 100% software-delivered SOC triage is already here .We also debunk the myth of AI "hallucinations," explaining why most errors are actually just poor context management . If you're building a security operations center or working with an MSSP, this episode will teach you how to shift from manual alert fatigue to leveraging AI for threat hunting.Guest Socials - Edward's Linkedin Podcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:50) Who is Edward Wu? (Founder of Dropzone AI) (04:50) The Reality of AI Cyber Attacks Today (Recon vs. End-to-End) (07:20) Why Commercial LLMs Are Blocking Exploit Generation (11:50) How MSSPs are Evolving with AI Triage (18:20) The Asymmetric Capacity Gap: Why Humans Can't Keep Up (22:30) Automating 160 Years of Alert Investigations (23:50) Why AI Hallucinations are Actually Context Management Failures (26:00) Build vs. Buy: The Data Network Effect for AI Agents (29:20) The New Workflow for SOC Analysts & Threat Hunters(31:30) Defining "Threategy": Scope, Authorization, and Context (35:50) How to Detect Prompt Injection (Treat it like an Insider Threat) (38:30) Dropzone AI Announcements at RSACResources spoken about during the episode:- Dropzone Diner RSAC 2026- If you want to learn more about Dropzone- you can do that here!
A former Chicago-area teacher is speaking out about what he witnessed inside America's public school system — and the stories are shocking.Geno Young, author of Sex, Drugs, and Illiteracy: The Death of Education in America, joins the show to reveal the lack of accountability, declining academic standards, classroom discipline breakdowns, and the funding incentives driving many of today's education policies.From grade manipulation and administrative pressure to sexual misconduct and falling literacy rates, this interview takes you inside the realities many teachers are afraid to discuss publicly.What's really happening in public schools? And what does it mean for the future of education in America?Watch now for a firsthand look at the growing education crisis.Get Geno's book HERE: Sex, Drugs, and Illiteracy: The Death of Education In AmericaSubscribe and stay tuned for new episodes every weekday!Follow us here for more daily clips, updates, and commentary:YoutubeFacebookInstagramTikTokXLocalsMore InfoWebsite
The Outer Realm welcomes Lorilei Potvin, fellow UPRN Host of The Angel Rock, and Beneath The Hollow Moon with Kerrilynn Shellhorn Date: February 19th, 2026 EP: 683 TOPIC: The " Celebrity Death Series" . On the Last show Lorilei and took a deep dive into the various claims that Paul McCartney actually died, and was replaced by Look-a-like Billy Shears! This week, we continue on with the ALLEGED Beatles Satanic and Illuminati Connection which suggests that Paul may have had concerns. Once again, we will be referencing the very well researched article by the reputable Andrew Gough. Link to Article by Andrew Gough https://andrewgough.co.uk/paul-is-dead-and-the-beatles-satanic-legacy/ Contact for the show - theouterrealmcontact@gmail.com https://linktr.ee/michelledesrochers_ Please support us by Liking, Subscribing, Sharing and Commenting. Thank you all !!! About Lorilei: Lorilei Potvin a Canadian Clairvoyant Medium, Crystal Reiki Master/Energy Healer, Akashic Records Practitioner, Medical Intuitive, Spiritual Teacher/Mentor, Internet Radio Host/Podcaster, Humanitarian Activist & Registered Nurse. She is also very knowledgeable about The Paranormal, having lived in an extremely haunted Home for 11 + years. Lorilei has shared her story on The Travel Channel's “Paranormal Survivor”, in Season 4, Episode 9, called “Demonic Hauntings”(here's a link to the Episode: https://youtu.be/OkoOcAL-Feg Lorilei's 2 shows are “The Angel Rock” on Mondays from 6pm-8pm EST & she co-hosts “Beneath The Hollow Moon " with Kerrilynn Shellhorn on Thursday Nights , 7pm-9pm EST, with David Hanzel; both shows are on United Public Radio Network or UPRN, out of New Orleans, Louisiana. Both shows can be seen LIVE-STREAMED from Her YouTube channel below, as well as Our Network YouTube channels, Facebook Page & anywhere podcasts &/or Talk Radio is carried. Find Her Here: https://www.facebook.com/TheAngelRock My YouTube channel: https://www.YouTube.com/c/TheAngelRockWithLorileiPotvin If you enjoy the content on the channel, please support us by subscribing: Thank you All A formal disclosure: The opinions and information presented or expressed by guests on The Outer Realm Radio and Beyond The Outer Realm are not necessarily those of the TOR, BTOR Hosts, Sponsors, or the United Public Radio Network and its producers. Although the content may be interesting, it is deemed "For Entertainment Purposes" . We are always be respectful and courteous to all involved. Thank you, we appreciate you all!
Is AI security just "Cloud Security 2.0"? Toni De La Fuente, creator of the open-source tool Prowler, joins Ashish to explain why securing AI workloads requires a fundamentally different approach than traditional cloud infrastructure.We dive deep into the "Shared Responsibility Gap" emerging with managed AI services like AWS Bedrock and OpenAI. Toni spoke about the hidden dangers of default AI architectures, why you should never connect an MCP (Model Context Protocol) directly to a database.We discuss the new AI-driven SDLC, where tools like Claude Code can generate infrastructure but also create massive security blind spots if not monitored.Guest Socials - Toni's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:50) Who is Toni De La Fuente? (Creator of Prowler)(03:50) AI Security vs. Cloud Security: What's the Difference? (07:20) The Shared Responsibility Gap in AI Services (Bedrock, OpenAI) (11:30) The "Fifth Party" Risk: Managed AI Access (13:40) AI Architecture Best Practices: Never Connect MCP to DB Directly (16:40) Prowler's AI Pillars: Generating Dashboards & Detections (22:30) The New SDLC: Securing Code from Claude Code & Lovable (25:30) The "Magic" Trap: Why AI Doesn't Know Your Security Context (28:30) Top 3 Priorities for Security Leaders (Infra, LLM, Shadow AI) (30:40) Future Predictions: Why Predicting 12 Months Out is Impossible
DJ FrankEC spins 60 minutes of Classic Freestyle tracks from the 80's & 90's. Live Streamed on the Freestyle Lives Twitch Raid Train (2-17-26) For More info : www.djfrankec.com twitch.tv/djfrankec
This week, Rev. Dr. Lori Walke, JD, preaches from the book of Exodus, chapter 24, verses 12-18, and the Gospel according to Matthew, chapter 17, verses 1-9. Livestreamed from the sanctuary of Mayflower Congregational UCC Church in Oklahoma City on Sunday, Feb. 15, 2026.
In the world of Generative AI, natural language has become the new executable. Attackers no longer need complex code to breach your systems, sometimes, asking for a "poem" is enough to steal your passwords .In this episode, Eduardo Garcia (Global Head of Cloud Security Architecture at Check Point) joins Ashish to explain the paradigm shift in AI security. He shares his experience building AI-powered fraud detection systems and why traditional security controls fail against intent-based attacks like prompt injection and data poisoning .We dive deep into the reality of Shadow AI, where employees unknowingly train public models with sensitive corporate data , and the sophisticated world of Deepfakes, where attackers can bypass biometric security using AI-generated images unless you're tracking micro-movements of the eye .Guest Socials - Eduardo's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security Podcast(00:00) Introduction(01:55) Who is Eduardo Garcia? (Check Point)(03:00) Defining Security for GenAI: The Focus on Prompts (05:20) Why Natural Language is the New Executable (08:50) Multilingual Attacks: Bypassing Filters with Mandarin (12:00) Shift Left vs. Shift Right: The 70/30 Rule for AI Security (15:30) The "Poem Hack": Stealing Passwords with Creative Prompts (21:00) Shadow AI: The "HR Spreadsheet" Leak Scenario (25:40) Security vs. Compliance in a Blurring World (28:00) The Conflict: "My Budget Doesn't Include Security" (34:00) The 5 V's of AI Data: Volume, Veracity, Velocity (40:00) Deepfakes & Biometrics: Detecting Micro-Movements (43:40) Fun Questions: Soccer, Family, and Honduran Tacos
Fr. John Brancich, FSSP, is the pastor of St. Stanislaus Catholic Church in Nashua, New Hampshire. He was ordained into the Priestly Fraternity of Saint Peter in 2004. In Today's Show: What does it mean to be a "lukewarm" Catholic? Father Brancich's advice to overcome scrupulosity. Does a livestreamed Mass fulfil a Sunday obligation for someone unable to attend in person? Why did the Catholic Church originally segregate men and women during Holy Mass? What does the church teach regarding near-death experiences? Why are blessings only effective if done live instead of recorded? Why do some priests who say the TLM speak very fast? What does Jesus mean when he said, "My kingdom is not of this world"? And more. Visit the show page at thestationofthecross.com/askapriest to listen live, check out the weekly lineup, listen to podcasts of past episodes, watch live video, find show resources, sign up for our mailing list of upcoming shows, and submit your question for Father!
In this episode, Brad Hibbert (COO & Chief Strategy Officer at Brinqa) joins Ashish to explain why traditional risk-based vulnerability management (RBVM) is no longer enough in a cloud-first world .We explore the evolution from simple patch management to Exposure Management a holistic approach that sits above your security tools to connect infrastructure, code, and cloud risks to actual business impact . Brad breaks down the critical difference between a "Risk Owner" (the service owner) and a "Remediation Owner" (the team fixing the bug) and why this distinction solves the "who fixes this?" problem .This conversation covers practical steps to uplift your VM program, how AI is helping prioritize the noise , and why compliance often just "proves activity" rather than reducing real risk . Whether you're drowning in Jira tickets or trying to automate remediation, this episode provides a roadmap for modernizing your security postureGuest Socials - Brad's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:50) Who is Brad Hibbert? (Brinqa)(04:55) The Evolution: From Scanning Servers to Cloud Complexity (06:50) What is Risk-Based Vulnerability Management? (08:50) Risk Owners vs. Remediation Owners: Who Fixes What? (12:00) How AI is Changing Vulnerability Management (15:20) Defining Exposure Management: Moving Beyond the Tools (18:30) The Challenge of "Data Inconsistency" Between Tools (22:30) Readiness Check: Are You Ready for Exposure Management? (25:10) Automated Remediation: Is "Zero Tickets" Possible? (28:40) Compliance vs. Risk: Why "Activity" isn't "Impact" (31:30) Maturity Milestones for Exposure Management (36:50) Fun Questions: Golf, Turkish Kebabs & Friendships
Is "developer-friendly" AI security actually possible? In this episode, Bryan Woolgar-O'Neil (CTO & Co-founder of Harmonic Security) joins Ashish to dismantle the traditional "block everything" approach to security.Bryan explains why 70% of Model Context Protocol (MCP) servers are running locally on developer laptops and why trying to block them is a losing battle . Instead, he advocates for a "coaching" approach, intervening in real-time to guide engineers rather than stopping their flow .We dive deep into the technical realities of MCP (Model Context Protocol), why it's becoming the standard for connecting AI to data, and the security risks of connecting it to production environments . Bryan also shares his prediction that Small Language Models (SLMs) will eventually outperform general giants like ChatGPT for specific business tasks .Guest Socials - Bryan's Linkedin Podcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(01:55) Who is Bryan Woolgar-O'Neil?(03:00) Why AI Adoption Stops at Experimentation(05:15) The "Shadow AI" Blind Spot: Firewall Stats vs. Reality (08:00) Is AI Security Fundamentally Different? (Speed & Scale) (10:45) Can Security Ever Be "Developer Friendly"? (14:30) What is MCP (Model Context Protocol)? (17:20) Why 70% of MCP Usage is Local (and the Risks) (21:30) The "Coaching" Approach: Don't Just Block, Educate (25:40) Developer First: Permissive vs. Blocking Cultures (30:20) The Rise of the "Head of AI" Role (34:30) Use Cases: Workforce Productivity vs. Product Integration (41:00) An AI Security Maturity Model (Visibility -> Access -> Coaching) (46:00) Future Prediction: Agentic Flows & Urgent Tasks (49:30) Why Small Language Models (SLMs) Will Win (53:30) Fun Questions: Feature Films & Pork Dumplings
This week, Rev. Dr. Lori Walke and Rev. Sheridan Irick share a children's story on the chancel before telling the congregation about their recent experience in Minneapolis, MN. Rev. Walke then preaches from the Prophet Micah, chapter 6, verses 1-8, read from the Inclusive Bible. Livestreamed from the sanctuary of Mayflower Congregational United Church of Christ in Oklahoma City on Sunday, Feb. 1, 2026.
We're throwing our whole bodies into this discussion of Mona Fastvold's epic historical musical biopic THE TESTAMENT OF ANN LEE. But it's an audio medium, so you'll have to take our word for it. We're thrilled to have Emily St. James back with us!What's GoodAlonso - Mel Brooks: The 99 Year Old ManDrea - The power of “DROWSING” (in Scrabble)Emily - Rewatching 28 Years LaterKevin - Love Thy Neighbor: A Charity Live Reading of The Twilight Zone (Live at Dynasty Typewriter and Livestreamed, 1/31/26)ITIDICOscar Nominations AnnouncedSundance Film Festival kicks off, for the final time in Park CityUnusual Musicals List on LetterboxdStaff PicksDrea - A PoetAlonso - The MomentKevin - Martha Marcy May MarleneFollow Emily St. James on Bluesky or Instagram @emilystjamsSubscribe to EpisodesListen to Podcast Like It's… Follow us on BlueSky, Facebook, Instagram, or LetterboxdWithKevin AveryDrea ClarkAlonso DuraldeProduced by Marissa FlaxbartSr. Producer Laura Swisher
Is the AI SOC a reality, or just vendor hype? In this episode, Antoinette Stevens (Principal Security Engineer at Ramp) joins Ashish to dissect the true state of AI in detection engineering.Antoinette shares her experience building detection program from scratch, explaining why she doesn't trust AI to close alerts due to hallucinations and faulty logic . We explore the "engineering-led" approach to detection, moving beyond simple hunting to building rigorous testing suites for detection-as-code .We discuss the shrinking entry-level job market for security roles , why software engineering skills are becoming non-negotiable , and the critical importance of treating AI as a "force multiplier, not your brain".Guest Socials - Antoinette's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:25) Who is Antoinette Stevens?(04:10) What is an "Engineering-Led" Approach to Detection? (06:00) Moving from Hunting to Automated Testing Suites (09:30) Build vs. Buy: Is AI Making it Easier to Build Your Own Tools? (11:30) Using AI for Documentation & Playbook Updates (14:30) Why Software Engineers Still Need to Learn Detection Domain Knowledge (17:50) The Problem with AI SOC: Why ChatGPT Lies During Triage (23:30) Defining AI Concepts: Memory, Evals, and Inference (26:30) Multi-Agent Architectures: Using Specialized "Persona" Agents (28:40) Advice for Building a Detection Program in 2025 (Back to Basics) (33:00) Measuring Success: Noise Reduction vs. False Positive Rates (36:30) Building an Alerting Data Lake for Metrics (40:00) The Disappearing Entry-Level Security Job & Career Advice (44:20) Why Junior Roles are Becoming "Personality Hires" (48:20) Fun Questions: Wine Certification, Side Quests, and Georgian Food
DJ FrankEC spins 60 minutes of Classic Freestyle tracks from the 80's &90's. Live Streamed on the Freestyle Lives Twitch Raid Train (1-20-26) For More info : www.djfrankec.com twitch.tv/djfrankec
This morning, Rev. Dr. Lori Walke preaches from the Gospel of John, chapter 1, verses 29-42, a passage also known as “Behold, the Lamb of God.” Livestreamed from the sanctuary of Mayflower Congregational United Church of Christ in Oklahoma City on Sunday, Jan. 18, 2026.
Traditional vulnerability management is simple: find the flaw, patch it, and verify the fix. But what happens when the "asset" is a neural network that has learned something ethically wrong? In this episode, Sapna Paul (Senior Manager at Dayforce) explains why there are no "Patch Tuesdays" for AI models .Sapna breaks down the three critical layers of AI vulnerability management: protecting production models, securing the data layer against poisoning, and monitoring model behavior for technically correct but ethically flawed outcomes . We discuss how to update your risk register to speak the language of business and the essential skills security professionals need to survive in an AI-first world .The conversation also covers practical ways to use AI within your security team to combat alert fatigue , the importance of explainability tools like SHAP and LIME , and how to align with frameworks like the NIST AI RMF and the EU AI Act .Guest Socials - Sapna's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:00) Who is Sapna Paul?(02:40) What is Vulnerability Management in the Age of AI? (05:00) Defining the New Asset: Neural Networks & Models (07:00) The 3 Layers of AI Vulnerability (Production, Data, Behavior) (10:20) Updating the Risk Register for AI Business Risks (13:30) Compliance vs. Innovation: Preventing AI from Going Rogue (18:20) Using AI to Solve Vulnerability Alert Fatigue (23:00) Skills Required for Future VM Professionals (25:40) Measuring AI Adoption in Security Teams (29:20) Key Frameworks: NIST AI RMF & EU AI Act (31:30) Tools for AI Security: Counterfit, SHAP, and LIME (33:30) Where to Start: Learning & Persona-Based Prompts (38:30) Fun Questions: Painting, Mentoring, and Vegan Ramen
This Sunday, Rev. Dr. Lori Walke preaches from the Gospel according to Matthew, chapter 3, verses 13 through 17. Livestreamed from the sanctuary of Mayflower Congregational UCC Church on Jan. 11, 2026.
For the past couple months, YouTube technologist Benn Jordan has been investigating Flock Safety surveillance cameras. With the help of 404 Media, they found that many of these cameras were not only tracking, zooming and following every passerby, but the footage was freely accessible on the internet.Jordan joined Marketplace Tech host Meghan McCarty Carino to talk about how he found the footage and the dangers the surveillance system poses to privacy and other civil liberties. Remember, Big Brother is always watching.
For the past couple months, YouTube technologist Benn Jordan has been investigating Flock Safety surveillance cameras. With the help of 404 Media, they found that many of these cameras were not only tracking, zooming and following every passerby, but the footage was freely accessible on the internet.Jordan joined Marketplace Tech host Meghan McCarty Carino to talk about how he found the footage and the dangers the surveillance system poses to privacy and other civil liberties. Remember, Big Brother is always watching.
DJ FrankEC spins 1 hour of Classic Freestyle tracks from the 80's &90's. Live Streamed on the I Hella Love Freestyle Twitch Raid Train (1-7-26) For More info : www.djfrankec.com
This morning is Mayflower's annual Christmas Extravaganza with loads of music from our Handbell Choir, the Advent Choir, and our extraordinary Chancel Musicians. Livestreamed from the sanctuary of Mayflower Congregational UCC Church in Oklahoma City.
Think your cloud backups will save you from a ransomware attack? Think again. In this episode, Matt Castriotta (Field CTO at Rubrik) explains why the traditional "I have backups" mindset is dangerous. He distinguishes between Disaster Recovery (business continuity for operational errors) and Cyber Resilience (recovering from a malicious attack where data and identity are untrusted) .Matt speaks about the "dirty secrets" of cloud-native recovery, explaining why S3 versioning and replication are not valid cyber recovery strategies . The conversation shifts to the critical, often overlooked aspect of Identity Recovery. If your Active Directory or Entra ID is compromised, it's "ground zero” and you can't access anything. Matt argues that identity must be treated as the new perimeter and backed up just like any other critical data source .We also explore the impact of AI agents on data integrity, how do you "rewind" an AI agent that hallucinated and corrupted your data? Plus, practical advice on DORA compliance, multi-cloud resiliency, and the "people and process" side of surviving a breach.Guest Socials - Matt's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Cybersecurity, you can check out our sister podcast - AI Security PodcastQuestions:(00:00) Introduction(02:20) Who is Matt Castriotta?(03:20) Defining Cyber Resilience: The Ability to Say "No" to Ransomware(05:00) Why "I Have Backups" is Not Enough(06:45) The Difference Between Disaster Recovery and Cyber Recovery(10:20) Cloud Native Risks: Versioning and Replication Are Not Backups(12:50) DORA Compliance: Multi-Cloud Resiliency & Egress Costs(15:10) The "Shared Responsibility Model" Trap in Cloud(17:45) Identity is the New Perimeter: Why You Must Back It Up(22:30) Identity Recovery: Can You Restore Your Active Directory in Minutes?(25:40) AI and Data: The New "Oil" and "Crown Jewels"(27:20) Rubrik Agent Cloud: Rewinding AI Agent Actions(29:40) Top 3 Priorities for a 2026 Resiliency Program(33:10) Fun Questions: Guitar, Family, and Italian Food
Transitioning a mature organization from an API-first model to an AI-first model is no small feat. In this episode, Yash Kosaraju, CISO of Sendbird, shares the story of how they pivoted from a traditional chat API platform to an AI agent platform and how security had to evolve to keep up.Yash spoke about the industry's obsession with "Zero Trust," arguing instead for a practical "Multi-Layer Trust" approach that assumes controls will fail . We dive deep into the specific architecture of securing AI agents, including the concept of a "Trust OS," dealing with new incident response definitions (is a wrong AI answer an incident?), and the critical need to secure the bridge between AI agents and customer environments .This episode is packed with actionable advice for AppSec engineers feeling overwhelmed by the speed of AI. Yash shares how his team embeds security engineers into sprint teams for real-time feedback, the importance of "AI CTFs" for security awareness, and why enabling employees with enterprise-grade AI tools is better than blocking them entirely .Questions asked:Guest Socials - Yash's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Cybersecurity, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:20) Who is Yash Kosaraju? (CISO at Sendbird)(03:30) Sendbird's Pivot: From Chat API to AI Agent Platform(05:00) Balancing Speed and Security in an AI Transition(06:50) Embedding Security Engineers into AI Sprint Teams(08:20) Threats in the AI Agent World (Data & Vendor Risks)(10:50) Blind Spots: "It's Microsoft, so it must be secure"(12:00) Securing AI Agents vs. AI-Embedded Applications(13:15) The Risk of Agents Making Changes in Customer Environments(14:30) Multi-Layer Trust vs. Zero Trust (Marketing vs. Reality) (17:30) Practical Multi-Layer Security: Device, Browser, Identity, MFA(18:25) What is "Trust OS"? A Foundation for Responsible AI(20:45) Balancing Agent Security vs. Endpoint Security(24:15) AI Incident Response: When an AI Gives a Wrong Answer(29:20) Security for Platform Engineers: Enabling vs. Blocking(30:45) Providing Enterprise AI Tools (Gemini, ChatGPT, Cursor) to Employees(32:45) Building a "Security as Enabler" Culture(36:15) What Questions to Ask AI Vendors (Paying with Data?)(39:20) Personal Use of Corporate AI Accounts(43:30) Using AI to Learn AI (Gemini Conversations)(45:00) The Stress on AppSec Engineers: "I Don't Know What I'm Doing"(48:20) The AI CTF: Gamifying Security Training(50:10) Fun Questions: Outdoors, Team Building, and Indian/Korean Food
Thinking of building your own AI security tool? In this episode, Santiago Castiñeira, CTO of Maze, breaks down the realities of the "Build vs. Buy" debate for AI-first vulnerability management.While building a prototype script is easy, scaling it into a maintainable, audit-proof system is a massive undertaking requiring specialized skills often missing in security teams. The "RAG drug" relies too heavily on Retrieval-Augmented Generation for precise technical data like version numbers, which often fails .The conversation gets into the architecture required for a true AI-first system, moving beyond simple chatbots to complex multi-agent workflows that can reason about context and risk . We also cover the critical importance of rigorous "evals" over "vibe checks" to ensure AI reliability, the hidden costs of LLM inference at scale, and why well-crafted agents might soon be indistinguishable from super-intelligence .Guest Socials - Santiago's LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Cybersecurity, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:00) Who is Santiago Castiñeira?(02:40) What is "AI-First" Vulnerability Management? (Rules vs. Reasoning)(04:55) The "Build vs. Buy" Debate: Can I Just Use ChatGPT?(07:30) The "Bus Factor" Risk of Internal Tools(08:30) Why MCP (Model Context Protocol) Struggles at Scale(10:15) The Architecture of an AI-First Security System(13:45) The Problem with "Vibe Checks": Why You Need Proper Evals(17:20) Where to Start if You Must Build Internally(19:00) The Hidden Need for Data & Software Engineers in Security Teams(21:50) Managing Prompt Drift and Consistency(27:30) The Challenge of Changing LLM Models (Claude vs. Gemini)(30:20) Rethinking Vulnerability Management Metrics in the AI Era(33:30) Surprises in AI Agent Behavior: "Let's Get Back on Topic"(35:30) The Hidden Cost of AI: Token Usage at Scale(37:15) Multi-Agent Governance: Preventing Rogue Agents(41:15) The Future: Semi-Autonomous Security Fleets(45:30) Why RAG Fails for Precise Technical Data (The "RAG Drug")(47:30) How to Evaluate AI Vendors: Is it AI-First or AI-Sprinkled?(50:20) Common Architectural Mistakes: Vibe Evals & Cost Ignorance(56:00) Unpopular Opinion: Well-Crafted Agents vs. Super Intelligence(58:15) Final Questions: Kids, Argentine Steak, and Closing
In this episode, Cliff Crosland, CEO & co-founder of Scanner.dev, shares his candid journey of trying (and initially failing) to build an in-house security data lake to replace an expensive traditional SIEM.Cliff explains the economic breaking point where scaling a SIEM became "more expensive than the entire budget for the engineering team". He details the technical challenges of moving terabytes of logs to S3 and the painful realization that querying them with Amazon Athena was slow and costly for security use cases .This episode is a deep dive into the evolution of logging architecture, from SQL-based legacy tools to the modern "messy" data lake that embraces full-text search on unstructured data. We discuss the "data engineering lift" required to build your own, the promise (and limitations) of Amazon Security Lake, and how AI agents are starting to automate detection engineering and schema management.Guest Socials - Cliff's Linkedin Podcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Cybersecurity, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:25) Who is Cliff Crosford?(03:00) Why Teams Are Switching from SIEMs to Data Lakes(06:00) The "Black Hole" of S3 Logs: Cliff's First Failed Data Lake(07:30) The Engineering Lift: Do You Need a Data Engineer to Build a Lake?(11:00) Why Amazon Athena Failed for Security Investigations(14:20) The Danger of Dropping Logs to Save Costs(17:00) Misconceptions About Building Your Own Data Lake(19:00) The Evolution of Logging: From SQL to Full-Text Search(21:30) Is Amazon Security Lake the Answer? (OCSF & Custom Logs)(24:40) The Nightmare of Log Normalization & Custom Schemas(28:00) Why Future Tools Must Embrace "Messy" Logs(29:55) How AI Agents Are Automating Detection Engineering(35:45) Using AI to Monitor Schema Changes at Scale(39:45) Build vs. Buy: Does Your Security Team Need Data Engineers?(43:15) Fun Questions: Physics Simulations & Pumpkin Pie
Marcy's having a birthday party and you're invited!Sunday, Nov 30, 2025, 7:30 PM PSTDynasty Typewriter2511 Wilshire Blvd, Los Angeles, CA 90057, USA Marcy's Podcast Mashup Bday Party!Featuring Nicole Byer, Jessica Jean Jardine, and Betsy Sodaro It's Marcy's birthday! She and her co-hosts of 90 Day Bae, A Funny Feeling, and L is for Losers are throwing a Podcast Party! Join Marcy Jarreau, Nicole Buyer, Betsy Sodaro, and Jessica Jean Jardine for a live mega-podcast filled with gossip, gabbing about reality TV, spooky ghost stories, and slumber party games. Don't be the first to fall asleep… or we'll freeze your bra! Doors: 6:30pm | 18+ General AdmissionTickets: $20 General Admission / $25 Day of ShowLivestream: $15 (LIVE and available for 2 weeks) https://www.squadup.com/events/marcys-podcast-mashup-bday-party Learn more about your ad choices. Visit megaphone.fm/adchoices