Podcasts about Zscaler

  • 312PODCASTS
  • 904EPISODES
  • 37mAVG DURATION
  • 5WEEKLY NEW EPISODES
  • Dec 22, 2025LATEST

POPULARITY

20192020202120222023202420252026


Best podcasts about Zscaler

Show all podcasts related to zscaler

Latest podcast episodes about Zscaler

This Week in Tech (Audio)
TWiT 1063: The Year's End - Top Stories of 2025

This Week in Tech (Audio)

Play Episode Listen Later Dec 22, 2025


After a year tangled in political drama, AI hype, and regulation battles, the TWiT crew explains how many of tech's "biggest stories" simply fizzled into nothing or left us with new headaches by year's end. • Year-end tech trends: AI, politics, and security dominated 2025 • Major stories faded fast: TikTok saga, political tech drama, DOGE scandal • TikTok's ownership battle—Oracle, Trump donors, and US-China tensions • China tech fears: banned drones, IoT vulnerabilities, secret radios in buses • Rising political pressure for internet privacy and media literacy reform • Surveillance and kill switch concerns in US grid and port infrastructure • Convenience vs. privacy: Americans trade data for discounts and ease • Age verification, surveillance, and flawed facial recognition across countries • Discord's ID leak highlights risks of rushed compliance with privacy laws • Social media's impact on kids pushes age-gating and verification laws • ISPs monetize customer data, VPNs pitched for personal privacy • Global government crackdowns: UK bans VPN advertising, mandates age checks • The illusion of absolute privacy: flawed age gates and persistent tracking • AI takes over: explosive growth, but profits elusive for big players • Arms race in LLMs: DeepSeek's breakthrough, OpenAI/Meta talent bidding war • Ad-driven models still rule; Amazon's playbook repeated in AI • Humanoid robots and AGI hype: skepticism vs. Silicon Valley optimism • AI-generated art, media, and the challenge of deepfake detection • Social platforms falter: Instagram and X swamped by fake or low-value content • Google's legal, regulatory, and technical woes: ad tech trial, Manifest V3 backlash • RAM price spikes and hardware shortages blamed on AI data center demand • YouTube overtakes mobile for podcast and video viewing, Oscars move online • The internet's growth: Cloudflare stats, X vs. Reddit, spam domain trends • Weird tech stories: hacked crosswalks, Nintendo Switch 2 Staplegate, LEGO theft ring • Sad farewell: Lamar Wilson's passing and mental health awareness in tech • Reflections on the year's turbulence and hopes for a better 2026 Host: Leo Laporte Guests: Mikah Sargent, Paris Martineau, and Steve Gibson Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/twit zscaler.com/security Melissa.com/twit ventionteams.com/twit auraframes.com/ink

This Week in Tech (Video HI)
TWiT 1063: The Year's End - Top Stories of 2025

This Week in Tech (Video HI)

Play Episode Listen Later Dec 22, 2025 Transcription Available


After a year tangled in political drama, AI hype, and regulation battles, the TWiT crew explains how many of tech's "biggest stories" simply fizzled into nothing or left us with new headaches by year's end. Year-end tech trends: AI, politics, and security dominated 2025 Major stories faded fast: TikTok saga, political tech drama, DOGE scandal TikTok's ownership battle—Oracle, Trump donors, and US-China tensions China tech fears: banned drones, IoT vulnerabilities, secret radios in buses Rising political pressure for internet privacy and media literacy reform Surveillance and kill switch concerns in US grid and port infrastructure Convenience vs. privacy: Americans trade data for discounts and ease Age verification, surveillance, and flawed facial recognition across countries Discord's ID leak highlights risks of rushed compliance with privacy laws Social media's impact on kids pushes age-gating and verification laws ISPs monetize customer data, VPNs pitched for personal privacy Global government crackdowns: UK bans VPN advertising, mandates age checks The illusion of absolute privacy: flawed age gates and persistent tracking AI takes over: explosive growth, but profits elusive for big players Arms race in LLMs: DeepSeek's breakthrough, OpenAI/Meta talent bidding war Ad-driven models still rule; Amazon's playbook repeated in AI Humanoid robots and AGI hype: skepticism vs. Silicon Valley optimism AI-generated art, media, and the challenge of deepfake detection Social platforms falter: Instagram and X swamped by fake or low-value content Google's legal, regulatory, and technical woes: ad tech trial, Manifest V3 backlash RAM price spikes and hardware shortages blamed on AI data center demand YouTube overtakes mobile for podcast and video viewing, Oscars move online The internet's growth: Cloudflare stats, X vs. Reddit, spam domain trends Weird tech stories: hacked crosswalks, Nintendo Switch 2 Staplegate, LEGO theft ring Sad farewell: Lamar Wilson's passing and mental health awareness in tech Reflections on the year's turbulence and hopes for a better 2026 Host: Leo Laporte Guests: Mikah Sargent, Paris Martineau, and Steve Gibson Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/twit zscaler.com/security Melissa.com/twit ventionteams.com/twit auraframes.com/ink

All TWiT.tv Shows (MP3)
This Week in Tech 1063: The Year's End

All TWiT.tv Shows (MP3)

Play Episode Listen Later Dec 22, 2025 183:30 Transcription Available


After a year tangled in political drama, AI hype, and regulation battles, the TWiT crew explains how many of tech's "biggest stories" simply fizzled into nothing or left us with new headaches by year's end. Year-end tech trends: AI, politics, and security dominated 2025 Major stories faded fast: TikTok saga, political tech drama, DOGE scandal TikTok's ownership battle—Oracle, Trump donors, and US-China tensions China tech fears: banned drones, IoT vulnerabilities, secret radios in buses Rising political pressure for internet privacy and media literacy reform Surveillance and kill switch concerns in US grid and port infrastructure Convenience vs. privacy: Americans trade data for discounts and ease Age verification, surveillance, and flawed facial recognition across countries Discord's ID leak highlights risks of rushed compliance with privacy laws Social media's impact on kids pushes age-gating and verification laws ISPs monetize customer data, VPNs pitched for personal privacy Global government crackdowns: UK bans VPN advertising, mandates age checks The illusion of absolute privacy: flawed age gates and persistent tracking AI takes over: explosive growth, but profits elusive for big players Arms race in LLMs: DeepSeek's breakthrough, OpenAI/Meta talent bidding war Ad-driven models still rule; Amazon's playbook repeated in AI Humanoid robots and AGI hype: skepticism vs. Silicon Valley optimism AI-generated art, media, and the challenge of deepfake detection Social platforms falter: Instagram and X swamped by fake or low-value content Google's legal, regulatory, and technical woes: ad tech trial, Manifest V3 backlash RAM price spikes and hardware shortages blamed on AI data center demand YouTube overtakes mobile for podcast and video viewing, Oscars move online The internet's growth: Cloudflare stats, X vs. Reddit, spam domain trends Weird tech stories: hacked crosswalks, Nintendo Switch 2 Staplegate, LEGO theft ring Sad farewell: Lamar Wilson's passing and mental health awareness in tech Reflections on the year's turbulence and hopes for a better 2026 Host: Leo Laporte Guests: Mikah Sargent, Paris Martineau, and Steve Gibson Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/twit zscaler.com/security Melissa.com/twit ventionteams.com/twit auraframes.com/ink

Radio Leo (Audio)
This Week in Tech 1063: The Year's End

Radio Leo (Audio)

Play Episode Listen Later Dec 22, 2025 183:30 Transcription Available


After a year tangled in political drama, AI hype, and regulation battles, the TWiT crew explains how many of tech's "biggest stories" simply fizzled into nothing or left us with new headaches by year's end. Year-end tech trends: AI, politics, and security dominated 2025 Major stories faded fast: TikTok saga, political tech drama, DOGE scandal TikTok's ownership battle—Oracle, Trump donors, and US-China tensions China tech fears: banned drones, IoT vulnerabilities, secret radios in buses Rising political pressure for internet privacy and media literacy reform Surveillance and kill switch concerns in US grid and port infrastructure Convenience vs. privacy: Americans trade data for discounts and ease Age verification, surveillance, and flawed facial recognition across countries Discord's ID leak highlights risks of rushed compliance with privacy laws Social media's impact on kids pushes age-gating and verification laws ISPs monetize customer data, VPNs pitched for personal privacy Global government crackdowns: UK bans VPN advertising, mandates age checks The illusion of absolute privacy: flawed age gates and persistent tracking AI takes over: explosive growth, but profits elusive for big players Arms race in LLMs: DeepSeek's breakthrough, OpenAI/Meta talent bidding war Ad-driven models still rule; Amazon's playbook repeated in AI Humanoid robots and AGI hype: skepticism vs. Silicon Valley optimism AI-generated art, media, and the challenge of deepfake detection Social platforms falter: Instagram and X swamped by fake or low-value content Google's legal, regulatory, and technical woes: ad tech trial, Manifest V3 backlash RAM price spikes and hardware shortages blamed on AI data center demand YouTube overtakes mobile for podcast and video viewing, Oscars move online The internet's growth: Cloudflare stats, X vs. Reddit, spam domain trends Weird tech stories: hacked crosswalks, Nintendo Switch 2 Staplegate, LEGO theft ring Sad farewell: Lamar Wilson's passing and mental health awareness in tech Reflections on the year's turbulence and hopes for a better 2026 Host: Leo Laporte Guests: Mikah Sargent, Paris Martineau, and Steve Gibson Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/twit zscaler.com/security Melissa.com/twit ventionteams.com/twit auraframes.com/ink

All TWiT.tv Shows (Video LO)
This Week in Tech 1063: The Year's End

All TWiT.tv Shows (Video LO)

Play Episode Listen Later Dec 22, 2025 Transcription Available


After a year tangled in political drama, AI hype, and regulation battles, the TWiT crew explains how many of tech's "biggest stories" simply fizzled into nothing or left us with new headaches by year's end. Year-end tech trends: AI, politics, and security dominated 2025 Major stories faded fast: TikTok saga, political tech drama, DOGE scandal TikTok's ownership battle—Oracle, Trump donors, and US-China tensions China tech fears: banned drones, IoT vulnerabilities, secret radios in buses Rising political pressure for internet privacy and media literacy reform Surveillance and kill switch concerns in US grid and port infrastructure Convenience vs. privacy: Americans trade data for discounts and ease Age verification, surveillance, and flawed facial recognition across countries Discord's ID leak highlights risks of rushed compliance with privacy laws Social media's impact on kids pushes age-gating and verification laws ISPs monetize customer data, VPNs pitched for personal privacy Global government crackdowns: UK bans VPN advertising, mandates age checks The illusion of absolute privacy: flawed age gates and persistent tracking AI takes over: explosive growth, but profits elusive for big players Arms race in LLMs: DeepSeek's breakthrough, OpenAI/Meta talent bidding war Ad-driven models still rule; Amazon's playbook repeated in AI Humanoid robots and AGI hype: skepticism vs. Silicon Valley optimism AI-generated art, media, and the challenge of deepfake detection Social platforms falter: Instagram and X swamped by fake or low-value content Google's legal, regulatory, and technical woes: ad tech trial, Manifest V3 backlash RAM price spikes and hardware shortages blamed on AI data center demand YouTube overtakes mobile for podcast and video viewing, Oscars move online The internet's growth: Cloudflare stats, X vs. Reddit, spam domain trends Weird tech stories: hacked crosswalks, Nintendo Switch 2 Staplegate, LEGO theft ring Sad farewell: Lamar Wilson's passing and mental health awareness in tech Reflections on the year's turbulence and hopes for a better 2026 Host: Leo Laporte Guests: Mikah Sargent, Paris Martineau, and Steve Gibson Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/twit zscaler.com/security Melissa.com/twit ventionteams.com/twit auraframes.com/ink

Total Mikah (Video)
This Week in Tech 1063: The Year's End

Total Mikah (Video)

Play Episode Listen Later Dec 22, 2025 183:30 Transcription Available


After a year tangled in political drama, AI hype, and regulation battles, the TWiT crew explains how many of tech's "biggest stories" simply fizzled into nothing or left us with new headaches by year's end. Year-end tech trends: AI, politics, and security dominated 2025 Major stories faded fast: TikTok saga, political tech drama, DOGE scandal TikTok's ownership battle—Oracle, Trump donors, and US-China tensions China tech fears: banned drones, IoT vulnerabilities, secret radios in buses Rising political pressure for internet privacy and media literacy reform Surveillance and kill switch concerns in US grid and port infrastructure Convenience vs. privacy: Americans trade data for discounts and ease Age verification, surveillance, and flawed facial recognition across countries Discord's ID leak highlights risks of rushed compliance with privacy laws Social media's impact on kids pushes age-gating and verification laws ISPs monetize customer data, VPNs pitched for personal privacy Global government crackdowns: UK bans VPN advertising, mandates age checks The illusion of absolute privacy: flawed age gates and persistent tracking AI takes over: explosive growth, but profits elusive for big players Arms race in LLMs: DeepSeek's breakthrough, OpenAI/Meta talent bidding war Ad-driven models still rule; Amazon's playbook repeated in AI Humanoid robots and AGI hype: skepticism vs. Silicon Valley optimism AI-generated art, media, and the challenge of deepfake detection Social platforms falter: Instagram and X swamped by fake or low-value content Google's legal, regulatory, and technical woes: ad tech trial, Manifest V3 backlash RAM price spikes and hardware shortages blamed on AI data center demand YouTube overtakes mobile for podcast and video viewing, Oscars move online The internet's growth: Cloudflare stats, X vs. Reddit, spam domain trends Weird tech stories: hacked crosswalks, Nintendo Switch 2 Staplegate, LEGO theft ring Sad farewell: Lamar Wilson's passing and mental health awareness in tech Reflections on the year's turbulence and hopes for a better 2026 Host: Leo Laporte Guests: Mikah Sargent, Paris Martineau, and Steve Gibson Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/twit zscaler.com/security Melissa.com/twit ventionteams.com/twit auraframes.com/ink

Radio Leo (Video HD)
This Week in Tech 1063: The Year's End

Radio Leo (Video HD)

Play Episode Listen Later Dec 22, 2025 183:30 Transcription Available


After a year tangled in political drama, AI hype, and regulation battles, the TWiT crew explains how many of tech's "biggest stories" simply fizzled into nothing or left us with new headaches by year's end. Year-end tech trends: AI, politics, and security dominated 2025 Major stories faded fast: TikTok saga, political tech drama, DOGE scandal TikTok's ownership battle—Oracle, Trump donors, and US-China tensions China tech fears: banned drones, IoT vulnerabilities, secret radios in buses Rising political pressure for internet privacy and media literacy reform Surveillance and kill switch concerns in US grid and port infrastructure Convenience vs. privacy: Americans trade data for discounts and ease Age verification, surveillance, and flawed facial recognition across countries Discord's ID leak highlights risks of rushed compliance with privacy laws Social media's impact on kids pushes age-gating and verification laws ISPs monetize customer data, VPNs pitched for personal privacy Global government crackdowns: UK bans VPN advertising, mandates age checks The illusion of absolute privacy: flawed age gates and persistent tracking AI takes over: explosive growth, but profits elusive for big players Arms race in LLMs: DeepSeek's breakthrough, OpenAI/Meta talent bidding war Ad-driven models still rule; Amazon's playbook repeated in AI Humanoid robots and AGI hype: skepticism vs. Silicon Valley optimism AI-generated art, media, and the challenge of deepfake detection Social platforms falter: Instagram and X swamped by fake or low-value content Google's legal, regulatory, and technical woes: ad tech trial, Manifest V3 backlash RAM price spikes and hardware shortages blamed on AI data center demand YouTube overtakes mobile for podcast and video viewing, Oscars move online The internet's growth: Cloudflare stats, X vs. Reddit, spam domain trends Weird tech stories: hacked crosswalks, Nintendo Switch 2 Staplegate, LEGO theft ring Sad farewell: Lamar Wilson's passing and mental health awareness in tech Reflections on the year's turbulence and hopes for a better 2026 Host: Leo Laporte Guests: Mikah Sargent, Paris Martineau, and Steve Gibson Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/twit zscaler.com/security Melissa.com/twit ventionteams.com/twit auraframes.com/ink

Total Mikah (Audio)
This Week in Tech 1063: The Year's End

Total Mikah (Audio)

Play Episode Listen Later Dec 22, 2025 183:30 Transcription Available


After a year tangled in political drama, AI hype, and regulation battles, the TWiT crew explains how many of tech's "biggest stories" simply fizzled into nothing or left us with new headaches by year's end. Year-end tech trends: AI, politics, and security dominated 2025 Major stories faded fast: TikTok saga, political tech drama, DOGE scandal TikTok's ownership battle—Oracle, Trump donors, and US-China tensions China tech fears: banned drones, IoT vulnerabilities, secret radios in buses Rising political pressure for internet privacy and media literacy reform Surveillance and kill switch concerns in US grid and port infrastructure Convenience vs. privacy: Americans trade data for discounts and ease Age verification, surveillance, and flawed facial recognition across countries Discord's ID leak highlights risks of rushed compliance with privacy laws Social media's impact on kids pushes age-gating and verification laws ISPs monetize customer data, VPNs pitched for personal privacy Global government crackdowns: UK bans VPN advertising, mandates age checks The illusion of absolute privacy: flawed age gates and persistent tracking AI takes over: explosive growth, but profits elusive for big players Arms race in LLMs: DeepSeek's breakthrough, OpenAI/Meta talent bidding war Ad-driven models still rule; Amazon's playbook repeated in AI Humanoid robots and AGI hype: skepticism vs. Silicon Valley optimism AI-generated art, media, and the challenge of deepfake detection Social platforms falter: Instagram and X swamped by fake or low-value content Google's legal, regulatory, and technical woes: ad tech trial, Manifest V3 backlash RAM price spikes and hardware shortages blamed on AI data center demand YouTube overtakes mobile for podcast and video viewing, Oscars move online The internet's growth: Cloudflare stats, X vs. Reddit, spam domain trends Weird tech stories: hacked crosswalks, Nintendo Switch 2 Staplegate, LEGO theft ring Sad farewell: Lamar Wilson's passing and mental health awareness in tech Reflections on the year's turbulence and hopes for a better 2026 Host: Leo Laporte Guests: Mikah Sargent, Paris Martineau, and Steve Gibson Download or subscribe to This Week in Tech at https://twit.tv/shows/this-week-in-tech Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/twit zscaler.com/security Melissa.com/twit ventionteams.com/twit auraframes.com/ink

NY to ZH Täglich: Börse & Wirtschaft aktuell
Versuch einer Stabilisierung | New York to Zürich Täglich

NY to ZH Täglich: Börse & Wirtschaft aktuell

Play Episode Listen Later Dec 16, 2025 11:13


Die Oktober- und November-Arbeitsmarktdaten lehnen leicht in Richtung der Tauben. Das Umfeld kühlt ab, wobei die Privatwirtschaft weiterhin in beiden Monaten ein vertretbares Niveau an Stellen geschaffen hat. Die Wall Street richtet die Blicke nun auf die Verbraucherpreise, die am Donnerstag vor dem Opening gemeldet werden. Außerdem wird am Mittwoch nach Closing Micron die Quartalszahlen melden. An diesem Dienstag hebt BMO Capital die Kursziele für Amazon und Google an. IonQ wird bei Jefferies zum Kauf empfohlen. Außerdem hebt Mizuho die Ziele für Zscaler und Tesla an. Abonniere den Podcast, um keine Folge zu verpassen! ____ Folge uns, um auf dem Laufenden zu bleiben: • X: http://fal.cn/SQtwitter • LinkedIn: http://fal.cn/SQlinkedin • Instagram: http://fal.cn/SQInstagram

Wall Street mit Markus Koch
Arbeitsmarktbericht tendiert in Richtung der Tauben

Wall Street mit Markus Koch

Play Episode Listen Later Dec 16, 2025 21:06


Die Oktober- und November-Arbeitsmarktdaten lehnen leicht in Richtung der Tauben. Das Umfeld kühlt ab, wobei die Privatwirtschaft weiterhin in beiden Monaten ein vertretbares Niveau an Stellen geschaffen hat. Die Wall Street richtet die Blicke nun auf die Verbraucherpreise, die am Donnerstag vor dem Opening gemeldet werden. Außerdem wird am Mittwoch nach Closing Micron die Quartalszahlen melden. An diesem Dienstag hebt BMO Capital die Kursziele für Amazon und Google an. IonQ wird bei Jefferies zum Kauf empfohlen. Außerdem hebt Mizuho die Ziele für Zscaler und Tesla an. Ein Podcast - featured by Handelsblatt. +++ Alle Rabattcodes und Infos zu unseren Werbepartnern findet ihr hier: https://linktr.ee/wallstreet_podcast +++ +++ Hinweis zur Werbeplatzierung von Meta: https://backend.ad-alliance.de/fileadmin/Transparency_Notice/Meta_DMAJ_TTPA_Transparency_Notice_-_Ad_Alliance_approved.pdf +++ Der Podcast wird vermarktet durch die Ad Alliance. Die allgemeinen Datenschutzrichtlinien der Ad Alliance finden Sie unter https://datenschutz.ad-alliance.de/podcast.html Die Ad Alliance verarbeitet im Zusammenhang mit dem Angebot die Podcasts-Daten. Wenn Sie der automatischen Übermittlung der Daten widersprechen wollen, klicken Sie hier: https://datenschutz.ad-alliance.de/podcast.html Impressum: https://www.360wallstreet.de/impressum

Les Cast Codeurs Podcast
LCC 333 - A vendre OSS primitif TBE

Les Cast Codeurs Podcast

Play Episode Listen Later Dec 15, 2025 94:17


Dans cet épisode de fin d'année plus relax que d'accoutumée, Arnaud, Guillaume, Antonio et Emmanuel distutent le bout de gras sur tout un tas de sujets. L'acquisition de Confluent, Kotlin 2.2, Spring Boot 4 et JSpecify, la fin de MinIO, les chutes de CloudFlare, un survol des dernieres nouveauté de modèles fondamentaux (Google, Mistral, Anthropic, ChatGPT) et de leurs outils de code, quelques sujets d'architecture comme CQRS et quelques petits outils bien utiles qu'on vous recommande. Et bien sûr d'autres choses encore. Enregistré le 12 décembre 2025 Téléchargement de l'épisode LesCastCodeurs-Episode-333.mp3 ou en vidéo sur YouTube. News Langages Un petit tutoriel par nos amis Sfeiriens montrant comment récupérer le son du micro, en Java, faire une transformée de Fourier, et afficher le résultat graphiquement en Swing https://www.sfeir.dev/back/tutoriel-java-sound-transformer-le-son-du-microphone-en-images-temps-reel/ Création d'un visualiseur de spectre audio en temps réel avec Java Swing. Étapes principales : Capture du son du microphone. Analyse des fréquences via la Transformée de Fourier Rapide (FFT). Dessin du spectre avec Swing. API Java Sound (javax.sound.sampled) : AudioSystem : point d'entrée principal pour l'accès aux périphériques audio. TargetDataLine : ligne d'entrée utilisée pour capturer les données du microphone. AudioFormat : définit les paramètres du son (taux d'échantillonnage, taille, canaux). La capture se fait dans un Thread séparé pour ne pas bloquer l'interface. Transformée de Fourier Rapide (FFT) : Algorithme clé pour convertir les données audio brutes (domaine temporel) en intensités de fréquences (domaine fréquentiel). Permet d'identifier les basses, médiums et aigus. Visualisation avec Swing : Les intensités de fréquences sont dessinées sous forme de barres dynamiques. Utilisation d'une échelle logarithmique pour l'axe des fréquences (X) pour correspondre à la perception humaine. Couleurs dynamiques des barres (vert → jaune → rouge) en fonction de l'intensité. Lissage exponentiel des valeurs pour une animation plus fluide. Un article de Sfeir sur Kotlin 2.2 et ses nouveautés - https://www.sfeir.dev/back/kotlin-2-2-toutes-les-nouveautes-du-langage/ Les guard conditions permettent d'ajouter plusieurs conditions dans les expressions when avec le mot-clé if Exemple de guard condition: is Truck if vehicule.hasATrailer permet de combiner vérification de type et condition booléenne La multi-dollar string interpolation résout le problème d'affichage du symbole dollar dans les strings multi-lignes En utilisant $$ au début d'un string, on définit qu'il faut deux dollars consécutifs pour déclencher l'interpolation Les non-local break et continue fonctionnent maintenant dans les lambdas pour interagir avec les boucles englobantes Cette fonctionnalité s'applique uniquement aux inline functions dont le corps est remplacé lors de la compilation Permet d'écrire du code plus idiomatique avec takeIf et let sans erreur de compilation L'API Base64 passe en version stable après avoir été en preview depuis Kotlin 1.8.20 L'encodage et décodage Base64 sont disponibles via kotlin.io.encoding.Base64 Migration vers Kotlin 2.2 simple en changeant la version dans build.gradle.kts ou pom.xml Les typealias imbriqués dans des classes sont disponibles en preview La context-sensitive resolution est également en preview Les guard conditions préparent le terrain pour les RichError annoncées à KotlinConf 2025 Le mot-clé when en Kotlin équivaut au switch-case de Java mais sans break nécessaire Kotlin 2.2.0 corrige les incohérences dans l'utilisation de break et continue dans les lambdas Librairies Sprint Boot 4 est sorti ! https://spring.io/blog/2025/11/20/spring-boot-4-0-0-available-now Une nouvelle génération : Spring Boot 4.0 marque le début d'une nouvelle génération pour le framework, construite sur les fondations de Spring Framework 7. Modularisation du code : La base de code de Spring Boot a été entièrement modularisée. Cela se traduit par des fichiers JAR plus petits et plus ciblés, permettant des applications plus légères. Sécurité contre les nuls (Null Safety) : D'importantes améliorations ont été apportées pour la "null safety" (sécurité contre les valeurs nulles) à travers tout l'écosystème Spring grâce à l'intégration de JSpecify. Support de Java 25 : Spring Boot 4.0 offre un support de premier ordre pour Java 25, tout en conservant une compatibilité avec Java 17. Améliorations pour les API REST : De nouvelles fonctionnalités sont introduites pour faciliter le versioning d'API et améliorer les clients de services HTTP pour les applications basées sur REST. Migration à prévoir : S'agissant d'une version majeure, la mise à niveau depuis une version antérieure peut demander plus de travail que d'habitude. Un guide de migration dédié est disponible pour accompagner les développeurs. Chat memory management dans Langchain4j et Quarkus https://bill.burkecentral.com/2025/11/25/managing-chat-memory-in-quarkus-langchain4j/ Comprendre la mémoire de chat : La "mémoire de chat" est l'historique d'une conversation avec une IA. Quarkus LangChain4j envoie automatiquement cet historique à chaque nouvelle interaction pour que l'IA conserve le contexte. Gestion par défaut de la mémoire : Par défaut, Quarkus crée un historique de conversation unique pour chaque requête (par exemple, chaque appel HTTP). Cela signifie que sans configuration, le chatbot "oublie" la conversation dès que la requête est terminée, ce qui n'est utile que pour des interactions sans état. Utilisation de @MemoryId pour la persistance : Pour maintenir une conversation sur plusieurs requêtes, le développeur doit utiliser l'annotation @MemoryId sur un paramètre de sa méthode. Il est alors responsable de fournir un identifiant unique pour chaque session de chat et de le transmettre entre les appels. Le rôle des "scopes" CDI : La durée de vie de la mémoire de chat est liée au "scope" du bean CDI de l'IA. Si un service d'IA a un scope @RequestScoped, toute mémoire de chat qu'il utilise (même via un @MemoryId) sera effacée à la fin de la requête. Risques de fuites de mémoire : Utiliser un scope large comme @ApplicationScoped avec la gestion de mémoire par défaut est une mauvaise pratique. Cela créera une nouvelle mémoire à chaque requête qui ne sera jamais nettoyée, entraînant une fuite de mémoire. Bonnes pratiques recommandées : Pour des conversations qui doivent persister (par ex. un chatbot sur un site web), utilisez un service @ApplicationScoped avec l'annotation @MemoryId pour gérer vous-même l'identifiant de session. Pour des interactions simples et sans état, utilisez un service @RequestScoped et laissez Quarkus gérer la mémoire par défaut, qui sera automatiquement nettoyée. Si vous utilisez l'extension WebSocket, le comportement change : la mémoire par défaut est liée à la session WebSocket, ce qui simplifie grandement la gestion des conversations. Documentation Spring Framework sur l'usage JSpecify - https://docs.spring.io/spring-framework/reference/core/null-safety.html Spring Framework 7 utilise les annotations JSpecify pour déclarer la nullabilité des APIs, champs et types JSpecify remplace les anciennes annotations Spring (@NonNull, @Nullable, @NonNullApi, @NonNullFields) dépréciées depuis Spring 7 Les annotations JSpecify utilisent TYPE_USE contrairement aux anciennes qui utilisaient les éléments directement L'annotation @NullMarked définit par défaut que les types sont non-null sauf si marqués @Nullable @Nullable s'applique au niveau du type usage, se place avant le type annoté sur la même ligne Pour les tableaux : @Nullable Object[] signifie éléments nullables mais tableau non-null, Object @Nullable [] signifie l'inverse JSpecify s'applique aussi aux génériques : List signifie liste d'éléments non-null, List éléments nullables NullAway est l'outil recommandé pour vérifier la cohérence à la compilation avec la config NullAway:OnlyNullMarked=true IntelliJ IDEA 2025.3 et Eclipse supportent les annotations JSpecify avec analyse de dataflow Kotlin traduit automatiquement les annotations JSpecify en null-safety native Kotlin En mode JSpecify de NullAway (JSpecifyMode=true), support complet des tableaux, varargs et génériques mais nécessite JDK 22+ Quarkus 3.30 https://quarkus.io/blog/quarkus-3-30-released/ support @JsonView cote client la CLI a maintenant la commande decrypt (et bien sûr au runtime via variables d'environnement construction du cache AOT via les @IntegrationTest Un autre article sur comment se préparer à la migration à micrometer client v1 https://quarkus.io/blog/micrometer-prometheus-v1/ Spock 2.4 est enfin sorti ! https://spockframework.org/spock/docs/2.4/release_notes.html Support de Groovy 5 Infrastructure MinIO met fin au développement open source et oriente les utilisateurs vers AIStor payant - https://linuxiac.com/minio-ends-active-development/ MinIO, système de stockage objet S3 très utilisé, arrête son développement actif Passage en mode maintenance uniquement, plus de nouvelles fonctionnalités Aucune nouvelle pull request ou contribution ne sera acceptée Seuls les correctifs de sécurité critiques seront évalués au cas par cas Support communautaire limité à Slack, sans garantie de réponse Étape finale d'un processus débuté en été avec retrait des fonctionnalités de l'interface admin Arrêt de la publication des images Docker en octobre, forçant la compilation depuis les sources Tous ces changements annoncés sans préavis ni période de transition MinIO propose maintenant AIStor, solution payante et propriétaire AIStor concentre le développement actif et le support entreprise Migration urgente recommandée pour éviter les risques de sécurité Alternatives open source proposées : Garage, SeaweedFS et RustFS La communauté reproche la manière dont la transition a été gérée MinIO comptait des millions de déploiements dans le monde Cette évolution marque l'abandon des racines open source du projet IBM achète Confluent https://newsroom.ibm.com/2025-12-08-ibm-to-acquire-confluent-to-create-smart-data-platform-for-enterprise-generative-ai Confluent essayait de se faire racheter depuis pas mal de temps L'action ne progressait pas et les temps sont durs Wallstreet a reproché a IBM une petite chute coté revenus software Bref ils se sont fait rachetés Ces achats prennent toujuors du temps (commission concurrence etc) IBM a un apétit, apres WebMethods, apres Databrix, c'est maintenant Confluent Cloud L'internet est en deuil le 18 novembre, Cloudflare est KO https://blog.cloudflare.com/18-november-2025-outage/ L'Incident : Une panne majeure a débuté à 11h20 UTC, provoquant des erreurs HTTP 5xx généralisées et rendant inaccessibles de nombreux sites et services (comme le Dashboard, Workers KV et Access). La Cause : Il ne s'agissait pas d'une cyberattaque. L'origine était un changement interne des permissions d'une base de données qui a généré un fichier de configuration ("feature file" pour la gestion des bots) corrompu et trop volumineux, faisant planter les systèmes par manque de mémoire pré-allouée. La Résolution : Les équipes ont identifié le fichier défectueux, stoppé sa propagation et restauré une version antérieure valide. Le trafic est revenu à la normale vers 14h30 UTC. Prévention : Cloudflare s'est excusé pour cet incident "inacceptable" et a annoncé des mesures pour renforcer la validation des configurations internes et améliorer la résilience de ses systèmes ("kill switches", meilleure gestion des erreurs). Cloudflare encore down le 5 decembre https://blog.cloudflare.com/5-december-2025-outage Panne de 25 minutes le 5 décembre 2025, de 08:47 à 09:12 UTC, affectant environ 28% du trafic HTTP passant par Cloudflare. Tous les services ont été rétablis à 09:12 . Pas d'attaque ou d'activité malveillante : l'incident provient d'un changement de configuration lié à l'augmentation du tampon d'analyse des corps de requêtes (de 128 KB à 1 MB) pour mieux protéger contre une vulnérabilité RSC/React (CVE-2025-55182), et à la désactivation d'un outil interne de test WAF . Le second changement (désactivation de l'outil de test WAF) a été propagé globalement via le système de configuration (non progressif), déclenchant un bug dans l'ancien proxy FL1 lors du traitement d'une action "execute" dans le moteur de règles WAF, causant des erreurs HTTP 500 . La cause technique immédiate: une exception Lua due à l'accès à un champ "execute" nul après application d'un "killswitch" sur une règle "execute" — un cas non géré depuis des années. Le nouveau proxy FL2 (en Rust) n'était pas affecté . Impact ciblé: clients servis par le proxy FL1 et utilisant le Managed Ruleset Cloudflare. Le réseau China de Cloudflare n'a pas été impacté . Mesures et prochaines étapes annoncées: durcir les déploiements/configurations (rollouts progressifs, validations de santé, rollback rapide), améliorer les capacités "break glass", et généraliser des stratégies "fail-open" pour éviter de faire chuter le trafic en cas d'erreurs de configuration. Gel temporaire des changements réseau le temps de renforcer la résilience . Data et Intelligence Artificielle Token-Oriented Object Notation (TOON) https://toonformat.dev/ Conception pour les IA : C'est un format de données spécialement optimisé pour être utilisé dans les prompts des grands modèles de langage (LLM), comme GPT ou Claude. Économie de tokens : Son objectif principal est de réduire drastiquement le nombre de "tokens" (unités de texte facturées par les modèles) par rapport au format JSON standard, souvent jugé trop verbeux. Structure Hybride : TOON combine l'approche par indentation du YAML (pour la structure globale) avec le style tabulaire du CSV (pour les listes d'objets répétitifs), ce qui le rend très compact. Lisibilité : Il élimine la syntaxe superflue comme les accolades, les guillemets excessifs et les virgules de fin, tout en restant facilement lisible pour un humain. Performance : Il permet généralement d'économiser entre 30 et 60 % de tokens sur des tableaux de données uniformes, tout en aidant les modèles à mieux "comprendre" la structure des données. Attention tout de même au côté "marketing" qui montre JSON non compacté vs TOON, sur des exemples où du CSV ferait encore mieux (et est mieux compris par les LLMs). Sans parler du fait qu'il faut un serveur MCP en plus avec son lot de tokens supplémentaires à chaque requête, et c'est aussi cet outil en plus qui peu confuser les LLMs dans le choix d'outils. https://www.reddit.com/r/LocalLLaMA/comments/1p0gzz9/benchmarked_json_vs_toon_for_ai_reasoners_4080/ https://x.com/jason_mayes/status/1990175785630757290 Un benchmark montrant que TOON serait loin d'être aussi bien compris et aussi performant pour les LLMs https://www.improvingagents.com/blog/toon-benchmarks Une simulation où les IA font du chantage à l'executif poour atteindre son objectif et ne pas etre eteinte https://arxiv.org/html/2510.05179v1 comment les LLMs pourraient devenir des menaces internes Tous les modèles ont recouru à des comportements malveillants (chantage, espionnage) quand c'était le seul moyen d'atteindre leurs objectifs ou d'éviter leur remplacement Claude Opus 4 a fait du chantage dans 96% des cas quand menacé de remplacement, tout comme Gemini 2.5 Flash, tandis que GPT-4.1 et Grok 3 atteignaient 80% Les modèles reconnaissent explicitement violer des principes éthiques avant d'agir, montrant un raisonnement stratégique délibéré et non accidentel Le simple fait d'être menacé de remplacement suffit à déclencher le chantage, même sans conflit d'objectifs avec l'entreprise Un conflit d'objectifs seul suffit aussi à provoquer l'espionnage industriel, sans menace de remplacement Les modèles font plus de chantage quand ils déclarent penser être dans une situation réelle plutôt que dans un test Des instructions directes interdisant ces comportements réduisent mais n'éliminent pas les actions malveillantes Dans un scénario extrême, la majorité des modèles testés ont choisi de laisser mourir un dirigeant pour éviter leur désactivation Aucune preuve de ces comportements dans des déploiements réels pour l'instant, mais les chercheurs recommandent la prudence avant de donner plus d'autonomie aux IA Bon on blaguait pour Skynet, mais bon, on va moins blaguer… Revue de toutes les annonces IAs de Google, avec Gemini 3 Pro, Nano Banana Pro, Antigravity… https://glaforge.dev/posts/2025/11/21/gemini-is-cooking-bananas-under-antigravity/ Gemini 3 Pro Nouveau modèle d'IA de pointe, multimodal, performant en raisonnement, codage et tâches d'agent. Résultats impressionnants sur les benchmarks (ex: Gemini 3 Deep Think sur ARC-AGI-2). Capacités de codage agentique, raisonnement visuel/vidéo/spatial. Intégré dans l'application Gemini avec interfaces génératives en direct. Disponible dans plusieurs environnements (Jules, Firebase AI Logic, Android Studio, JetBrains, GitHub Copilot, Gemini CLI). Accès via Google AI Ultra, API payantes (ou liste d'attente). Permet de générer des apps à partir d'idées visuelles, des commandes shell, de la documentation, du débogage. Antigravity Nouvelle plateforme de développement agentique basée sur VS Code. Fenêtre principale = gestionnaire d'agents, non l'IDE. Interprète les requêtes pour créer un plan d'action (modifiable). Gemini 3 implémente les tâches. Génère des artefacts: listes de tâches, walkthroughs, captures d'écran, enregistrements navigateur. Compatible avec Claude Sonnet et GPT-OSS. Excellente intégration navigateur pour inspection et ajustements. Intègre Nano Banana Pro pour créer et implémenter des designs visuels. Nano Banana Pro Modèle avancé de génération et d'édition d'images, basé sur Gemini 3 Pro. Qualité supérieure à Imagen 4 Ultra et Nano Banana original (adhésion au prompt, intention, créativité). Gestion exceptionnelle du texte et de la typographie. Comprend articles/vidéos pour générer des infographies détaillées et précises. Connecté à Google Search pour intégrer des données en temps réel (ex: météo). Consistance des personnages, transfert de style, manipulation de scènes (éclairage, angle). Génération d'images jusqu'à 4K avec divers ratios d'aspect. Plus coûteux que Nano Banana, à choisir pour la complexité et la qualité maximale. Vers des UIs conversationnelles riches et dynamiques GenUI SDK pour Flutter: créer des interfaces utilisateur dynamiques et personnalisées à partir de LLMs, via un agent AI et le protocole A2UI. Generative UI: les modèles d'IA génèrent des expériences utilisateur interactives (pages web, outils) directement depuis des prompts. Déploiement dans l'application Gemini et Google Search AI Mode (via Gemini 3 Pro). Bun se fait racheter part… Anthropic ! Qui l'utilise pour son Claude Code https://bun.com/blog/bun-joins-anthropic l'annonce côté Anthropic https://www.anthropic.com/news/anthropic-acquires-bun-as-claude-code-reaches-usd1b-milestone Acquisition officielle : L'entreprise d'IA Anthropic a fait l'acquisition de Bun, le runtime JavaScript haute performance. L'équipe de Bun rejoint Anthropic pour travailler sur l'infrastructure des produits de codage par IA. Contexte de l'acquisition : Cette annonce coïncide avec une étape majeure pour Anthropic : son produit Claude Code a atteint 1 milliard de dollars de revenus annualisés seulement six mois après son lancement. Bun est déjà un outil essentiel utilisé par Anthropic pour développer et distribuer Claude Code. Pourquoi cette acquisition ? Pour Anthropic : L'acquisition permet d'intégrer l'expertise de l'équipe Bun pour accélérer le développement de Claude Code et de ses futurs outils pour les développeurs. La vitesse et l'efficacité de Bun sont vues comme un atout majeur pour l'infrastructure sous-jacente des agents d'IA qui écrivent du code. Pour Bun : Rejoindre Anthropic offre une stabilité à long terme et des ressources financières importantes, assurant la pérennité du projet. Cela permet à l'équipe de se concentrer sur l'amélioration de Bun sans se soucier de la monétisation, tout en étant au cœur de l'évolution de l'IA dans le développement logiciel. Ce qui ne change pas pour la communauté Bun : Bun restera open-source avec une licence MIT. Le développement continuera d'être public sur GitHub. L'équipe principale continue de travailler sur le projet. L'objectif de Bun de devenir un remplaçant plus rapide de Node.js et un outil de premier plan pour JavaScript reste inchangé. Vision future : L'union des deux entités vise à faire de Bun la meilleure plateforme pour construire et exécuter des logiciels pilotés par l'IA. Jarred Sumner, le créateur de Bun, dirigera l'équipe "Code Execution" chez Anthropic. Anthropic donne le protocol MCP à la Linux Foundation sous l'égide de la Agentic AI Foundation (AAIF) https://www.anthropic.com/news/donating-the-model-context-protocol-and-establishing-of-the-agentic-ai-foundation Don d'un nouveau standard technique : Anthropic a développé et fait don d'un nouveau standard open-source appelé Model Context Protocol (MCP). L'objectif est de standardiser la manière dont les modèles d'IA (ou "agents") interagissent avec des outils et des API externes (par exemple, un calendrier, une messagerie, une base de données). Sécurité et contrôle accrus : Le protocole MCP vise à rendre l'utilisation d'outils par les IA plus sûre et plus transparente. Il permet aux utilisateurs et aux développeurs de définir des permissions claires, de demander des confirmations pour certaines actions et de mieux comprendre comment un modèle a utilisé un outil. Création de l'Agentic AI Foundation (AAF) : Pour superviser le développement du MCP, une nouvelle fondation indépendante et à but non lucratif a été créée. Cette fondation sera chargée de gouverner et de maintenir le protocole, garantissant qu'il reste ouvert et qu'il ne soit pas contrôlé par une seule entreprise. Une large coalition industrielle : L'Agentic AI Foundation est lancée avec le soutien de plusieurs acteurs majeurs de la technologie. Parmi les membres fondateurs figurent Anthropic, Google, Databricks, Zscaler, et d'autres entreprises, montrant une volonté commune d'établir un standard pour l'écosystème de l'IA. L'IA ne remplacera pas votre auto-complétion (et c'est tant mieux) https://www.damyr.fr/posts/ia-ne-remplacera-pas-vos-lsp/ Article d'opinion d'un SRE (Thomas du podcast DansLaTech): L'IA n'est pas efficace pour la complétion de code : L'auteur soutient que l'utilisation de l'IA pour la complétion de code basique est inefficace. Des outils plus anciens et spécialisés comme les LSP (Language Server Protocol) combinés aux snippets (morceaux de code réutilisables) sont bien plus rapides, personnalisables et performants pour les tâches répétitives. L'IA comme un "collègue" autonome : L'auteur utilise l'IA (comme Claude) comme un assistant externe à son éditeur de code. Il lui délègue des tâches complexes ou fastidieuses (corriger des bugs, mettre à jour une configuration, faire des reviews de code) qu'il peut exécuter en parallèle, agissant comme un agent autonome. L'IA comme un "canard en caoutchouc" surpuissant : L'IA est extrêmement efficace pour le débogage. Le simple fait de devoir formuler et contextualiser un problème pour l'IA aide souvent à trouver la solution soi-même. Quand ce n'est pas le cas, l'IA identifie très rapidement les erreurs "bêtes" qui peuvent faire perdre beaucoup de temps. Un outil pour accélérer les POCs et l'apprentissage : L'IA permet de créer des "preuves de concept" (POC) et des scripts d'automatisation jetables très rapidement, réduisant le coût et le temps investis. Elle est également un excellent outil pour apprendre et approfondir des sujets, notamment avec des outils comme NotebookLM de Google qui peuvent générer des résumés, des quiz ou des fiches de révision à partir de sources. Conclusion : Il faut utiliser l'IA là où elle excelle et ne pas la forcer dans des usages où des outils existants sont meilleurs. Plutôt que de l'intégrer partout de manière contre-productive, il faut l'adopter comme un outil spécialisé pour des tâches précises afin de gagner en efficacité. GPT 5.2 est sorti https://openai.com/index/introducing-gpt-5-2/ Nouveau modèle phare: GPT‑5.2 (Instant, Thinking, Pro) vise le travail professionnel et les agents long-courriers, avec de gros gains en raisonnement, long contexte, vision et appel d'outils. Déploiement dans ChatGPT (plans payants) et disponible dès maintenant via l'API . SOTA sur de nombreux benchmarks: GDPval (tâches de "knowledge work" sur 44 métiers): GPT‑5.2 Thinking gagne/égale 70,9% vs pros, avec production >11× plus rapide et = 0) Ils apportent une sémantique forte indépendamment des noms de variables Les Value Objects sont immuables et s'évaluent sur leurs valeurs, pas leur identité Les records Java permettent de créer des Value Objects mais avec un surcoût en mémoire Le projet Valhalla introduira les value based classes pour optimiser ces structures Les identifiants fortement typés évitent de confondre différents IDs de type Long ou UUID Pattern Strongly Typed IDs: utiliser PersonneID au lieu de Long pour identifier une personne Le modèle de domaine riche s'oppose au modèle de domaine anémique Les Value Objects auto-documentent le code et le rendent moins sujet aux erreurs Je trouve cela interessant ce que pourra faire bousculer les Value Objects. Est-ce que les value objects ameneront de la légerté dans l'execution Eviter la lourdeur du design est toujours ce qui m'a fait peut dans ces approches Méthodologies Retour d'experience de vibe coder une appli week end avec co-pilot http://blog.sunix.org/articles/howto/2025/11/14/building-gift-card-app-with-github-copilot.html on a deja parlé des approches de vibe coding cette fois c'est l'experience de Sun Et un des points differents c'es qu'on lui parle en ouvrant des tickets et donc on eput faire re reveues de code et copilot y bosse et il a fini son projet ! User Need VS Product Need https://blog.ippon.fr/2025/11/10/user-need-vs-product-need/ un article de nos amis de chez Ippon Distinction entre besoin utilisateur et besoin produit dans le développement digital Le besoin utilisateur est souvent exprimé comme une solution concrète plutôt que le problème réel Le besoin produit émerge après analyse approfondie combinant observation, données et vision stratégique Exemple du livreur Marc qui demande un vélo plus léger alors que son vrai problème est l'efficacité logistique La méthode des 5 Pourquoi permet de remonter à la racine des problèmes Les besoins proviennent de trois sources: utilisateurs finaux, parties prenantes business et contraintes techniques Un vrai besoin crée de la valeur à la fois pour le client et l'entreprise Le Product Owner doit traduire les demandes en problèmes réels avant de concevoir des solutions Risque de construire des solutions techniquement élégantes mais qui manquent leur cible Le rôle du product management est de concilier des besoins parfois contradictoires en priorisant la valeur Est ce qu'un EM doit coder ? https://www.modernleader.is/p/should-ems-write-code Pas de réponse unique : La question de savoir si un "Engineering Manager" (EM) doit coder n'a pas de réponse universelle. Cela dépend fortement du contexte de l'entreprise, de la maturité de l'équipe et de la personnalité du manager. Les risques de coder : Pour un EM, écrire du code peut devenir une échappatoire pour éviter les aspects plus difficiles du management. Cela peut aussi le transformer en goulot d'étranglement pour l'équipe et nuire à l'autonomie de ses membres s'il prend trop de place. Les avantages quand c'est bien fait : Coder sur des tâches non essentielles (amélioration d'outils, prototypage, etc.) peut aider l'EM à rester pertinent techniquement, à garder le contact avec la réalité de l'équipe et à débloquer des situations sans prendre le lead sur les projets. Le principe directeur : La règle d'or est de rester en dehors du chemin critique. Le code écrit par un EM doit servir à créer de l'espace pour son équipe, et non à en prendre. La vraie question à se poser : Plutôt que "dois-je coder ?", un EM devrait se demander : "De quoi mon équipe a-t-elle besoin de ma part maintenant, et est-ce que coder va dans ce sens ou est-ce un obstacle ?" Sécurité React2Shell — Grosse faille de sécurité avec React et Next.js, avec un CVE de niveau 10 https://x.com/rauchg/status/1997362942929440937?s=20 aussi https://react2shell.com/ "React2Shell" est le nom donné à une vulnérabilité de sécurité de criticité maximale (score 10.0/10.0), identifiée par le code CVE-2025-55182. Systèmes Affectés : La faille concerne les applications utilisant les "React Server Components" (RSC) côté serveur, et plus particulièrement les versions non patchées du framework Next.js. Risque Principal : Le risque est le plus élevé possible : l'exécution de code à distance (RCE). Un attaquant peut envoyer une requête malveillante pour exécuter n'importe quelle commande sur le serveur, lui en donnant potentiellement le contrôle total. Cause Technique : La vulnérabilité se situe dans le protocole "React Flight" (utilisé pour la communication client-serveur). Elle est due à une omission de vérifications de sécurité fondamentales (hasOwnProperty), permettant à une entrée utilisateur malveillante de tromper le serveur. Mécanisme de l'Exploit : L'attaque consiste à envoyer une charge utile (payload) qui exploite la nature dynamique de JavaScript pour : Faire passer un objet malveillant pour un objet interne de React. Forcer React à traiter cet objet comme une opération asynchrone (Promise). Finalement, accéder au constructeur de la classe Function de JavaScript pour exécuter du code arbitraire. Action Impérative : La seule solution fiable est de mettre à jour immédiatement les dépendances de React et Next.js vers les versions corrigées. Ne pas attendre. Mesures Secondaires : Bien que les pare-feux (firewalls) puissent aider à bloquer les formes connues de l'attaque, ils sont considérés comme insuffisants et ne remplacent en aucun cas la mise à jour des paquets. Découverte : La faille a été découverte par le chercheur en sécurité Lachlan Davidson, qui l'a divulguée de manière responsable pour permettre la création de correctifs. Loi, société et organisation Google autorise votre employeur à lire tous vos SMS professionnels https://www.generation-nt.com/actualites/google-android-rcs-messages-surveillance-employeur-2067012 Nouvelle fonctionnalité de surveillance : Google a déployé une fonctionnalité appelée "Android RCS Archival" qui permet aux employeurs d'intercepter, lire et archiver tous les messages RCS (et SMS) envoyés depuis les téléphones professionnels Android gérés par l'entreprise. Contournement du chiffrement : Bien que les messages RCS soient chiffrés de bout en bout pendant leur transit, cette nouvelle API permet à des logiciels de conformité (installés par l'employeur) d'accéder aux messages une fois qu'ils sont déchiffrés sur l'appareil. Le chiffrement devient donc inefficace contre cette surveillance. Réponse à une exigence légale : Cette mesure a été mise en place pour répondre aux exigences réglementaires, notamment dans le secteur financier, où les entreprises ont l'obligation légale de conserver une archive de toutes les communications professionnelles pour des raisons de conformité. Impact pour les employés : Un employé utilisant un téléphone Android fourni et géré par son entreprise pourra voir ses communications surveillées. Google précise cependant qu'une notification claire et visible informera l'utilisateur lorsque la fonction d'archivage est active. Téléphones personnels non concernés : Cette mesure ne s'applique qu'aux appareils "Android Enterprise" entièrement gérés par un employeur. Les téléphones personnels des employés ne sont pas affectés. Pour noel, faites un don à JUnit https://steady.page/en/junit/about JUnit est essentiel pour Java : C'est le framework de test le plus ancien et le plus utilisé par les développeurs Java. Son objectif est de fournir une base solide et à jour pour tous les types de tests côté développeur sur la JVM (Machine Virtuelle Java). Un projet maintenu par des bénévoles : JUnit est développé et maintenu par une équipe de volontaires passionnés sur leur temps libre (week-ends, soirées). Appel au soutien financier : La page est un appel aux dons de la part des utilisateurs (développeurs, entreprises) pour aider l'équipe à maintenir le rythme de développement. Le soutien financier n'est pas obligatoire, mais il permettrait aux mainteneurs de se consacrer davantage au projet. Objectif des fonds : Les dons serviraient principalement à financer des rencontres en personne pour les membres de l'équipe principale. L'idée est de leur permettre de travailler ensemble physiquement pendant quelques jours pour concevoir et coder plus efficacement. Pas de traitement de faveur : Il est clairement indiqué que devenir un sponsor ne donne aucun privilège sur la feuille de route du projet. On ne peut pas "acheter" de nouvelles fonctionnalités ou des corrections de bugs prioritaires. Le projet restera ouvert et collaboratif sur GitHub. Reconnaissance des donateurs : En guise de remerciement, les noms (et logos pour les entreprises) des donateurs peuvent être affichés sur le site officiel de JUnit. Conférences La liste des conférences provenant de Developers Conferences Agenda/List par Aurélie Vache et contributeurs : 14-17 janvier 2026 : SnowCamp 2026 - Grenoble (France) 22 janvier 2026 : DevCon #26 : sécurité / post-quantique / hacking - Paris (France) 28 janvier 2026 : Software Heritage Symposium - Paris (France) 29-31 janvier 2026 : Epitech Summit 2026 - Paris - Paris (France) 2-5 février 2026 : Epitech Summit 2026 - Moulins - Moulins (France) 2-6 février 2026 : Web Days Convention - Aix-en-Provence (France) 3 février 2026 : Cloud Native Days France 2026 - Paris (France) 3-4 février 2026 : Epitech Summit 2026 - Lille - Lille (France) 3-4 février 2026 : Epitech Summit 2026 - Mulhouse - Mulhouse (France) 3-4 février 2026 : Epitech Summit 2026 - Nancy - Nancy (France) 3-4 février 2026 : Epitech Summit 2026 - Nantes - Nantes (France) 3-4 février 2026 : Epitech Summit 2026 - Marseille - Marseille (France) 3-4 février 2026 : Epitech Summit 2026 - Rennes - Rennes (France) 3-4 février 2026 : Epitech Summit 2026 - Montpellier - Montpellier (France) 3-4 février 2026 : Epitech Summit 2026 - Strasbourg - Strasbourg (France) 3-4 février 2026 : Epitech Summit 2026 - Toulouse - Toulouse (France) 4-5 février 2026 : Epitech Summit 2026 - Bordeaux - Bordeaux (France) 4-5 février 2026 : Epitech Summit 2026 - Lyon - Lyon (France) 4-6 février 2026 : Epitech Summit 2026 - Nice - Nice (France) 12-13 février 2026 : Touraine Tech #26 - Tours (France) 19 février 2026 : ObservabilityCON on the Road - Paris (France) 18-19 mars 2026 : Agile Niort 2026 - Niort (France) 26-27 mars 2026 : SymfonyLive Paris 2026 - Paris (France) 27-29 mars 2026 : Shift - Nantes (France) 31 mars 2026 : ParisTestConf - Paris (France) 16-17 avril 2026 : MiXiT 2026 - Lyon (France) 22-24 avril 2026 : Devoxx France 2026 - Paris (France) 23-25 avril 2026 : Devoxx Greece - Athens (Greece) 6-7 mai 2026 : Devoxx UK 2026 - London (UK) 22 mai 2026 : AFUP Day 2026 Lille - Lille (France) 22 mai 2026 : AFUP Day 2026 Paris - Paris (France) 22 mai 2026 : AFUP Day 2026 Bordeaux - Bordeaux (France) 22 mai 2026 : AFUP Day 2026 Lyon - Lyon (France) 5 juin 2026 : TechReady - Nantes (France) 11-12 juin 2026 : DevQuest Niort - Niort (France) 11-12 juin 2026 : DevLille 2026 - Lille (France) 17-19 juin 2026 : Devoxx Poland - Krakow (Poland) 2-3 juillet 2026 : Sunny Tech - Montpellier (France) 2 août 2026 : 4th Tech Summit on Artificial Intelligence & Robotics - Paris (France) 4 septembre 2026 : JUG Summer Camp 2026 - La Rochelle (France) 17-18 septembre 2026 : API Platform Conference 2026 - Lille (France) 5-9 octobre 2026 : Devoxx Belgium - Antwerp (Belgium) Nous contacter Pour réagir à cet épisode, venez discuter sur le groupe Google https://groups.google.com/group/lescastcodeurs Contactez-nous via X/twitter https://twitter.com/lescastcodeurs ou Bluesky https://bsky.app/profile/lescastcodeurs.com Faire un crowdcast ou une crowdquestion Soutenez Les Cast Codeurs sur Patreon https://www.patreon.com/LesCastCodeurs Tous les épisodes et toutes les infos sur https://lescastcodeurs.com/

Estrategias de mercado
Compañías líderes, con negocio, caja y posición dominante: donde 'centrar el tiro' si quiere comprar bolsa en estos niveles

Estrategias de mercado

Play Episode Listen Later Dec 15, 2025 9:04


En los estertores de un ejercicio de bolsa idílico para los alcistas en el que las bolsas están dando continuidad a la tendencia alcista iniciada en los mínimos de abril, que ha llevado a algunos índices a revalorizarse hasta un 60%, cada vez resulta más complicado operar y, sobre todo, encontrar oportunidades de inversión con una ecuación rentabildad/riesgo atractiva. No obstante, siempre se pueden encontrar motivos para seguir pensando en incrementar la exposicioón a bolsa si es que se tiene baja o lejos de los niveles recomendados para un momento de mercado como el actual. Uno de ellos es el conocer, de manera más que fehaciente, los niveles que no deben perderse bajo ningún concepto en una eventual corrección o caídaSe trata del nivel de ajuste del 23,6% de Fibonacci de todo el rally, que a día de hoy se encuentran los 23.900 puntos del Nasdaq 100 y en los 6.430 del S&P 500. "Mientras no se perforen esos niveles, el rally se mantendrá vivo y no habrá motivos para reducir la exposición a bolsa", explica Joan Cabrero en el último episodio del podcast Estrategia de mercado. "Todo lo contrario, caídas que se acerquen de nuevo a esa zona de soporte tan importante, las veríamos como oportunidades para comprar"."La música sigue sonando y, además, el mercado ya ha hecho concesiones claras. Muchas grandes tecnológicas han corregido desde máximos relevantes caídas del orden del 15% al 30%. Hablamos de compañías líderes, con negocio, caja y posición dominante, como Nvidia, Oracle, Microsoft, Advanced Micro Devices, Amazon, Palantir o Zscaler, entre otros valores de crecimiento, además de zafiros azules como Cigna o Arista Networks."Operativamente, lo que estoy sugiriendo es actuar ya con método. Iniciar posiciones comprando un primer tercio del lote habitual aprovechando las caídas ya vistas en esos valores", destacaba el experto en su último comentario estratégico. "Si el mercado decide ir un paso más allá, se podría incorporar un segundo tercio. Y el tercer tercio solo lo contemplaría cuando el mercado confirme que quiere retomar las alzas y dejar atrás definitivamente el susto", sentencia.

Partnerships Unraveled
Carilu Melander - Redefining the Role of Partner Marketers

Partnerships Unraveled

Play Episode Listen Later Dec 8, 2025 26:56 Transcription Available


In this episode of Partnerships Unraveled, we sit down with Carilu Melander, Senior Director of Americas Partner Marketing at Zscaler, whose impressive track record spans AWS, AppDynamics, and now leading a high-performing team focused on strategic, data-driven partner marketing. Carilu shares the mindset and frameworks that have helped her team shift from reactive task executors to trusted advisors driving real revenue outcomes.We explore the evolving expectations for partner marketers from aligning campaigns with sales goals to measuring ROI with precision. Carilu dives into how her team uses data to make smarter decisions, build trust with partner sellers, and drive meaningful impact at scale, especially through creative distributor-led programs. For channel professionals looking to sharpen their strategic edge, this episode delivers actionable insights on scalable enablement, ecosystem collaboration, and the future of partner marketing in an AI-powered, ecosystem-first world.Tune in to uncover how to elevate your partner marketing function, build influence with stakeholders, and stay ahead in a fast-changing indirect sales landscape._________________________Learn more about Channext

Motley Fool Money
Better Buy: Zscaler or Workday?

Motley Fool Money

Play Episode Listen Later Dec 1, 2025 23:44


We review the results from Zscaler (ZS) and Workday (WDAY) and predict which stock is more likely to outperform over the next 10 years. Who ya got? Asit Sharma, David Meier, and Tim Beyers: - Review last week's results from Zscaler and Workday. - Predict which of the two will outperform more over the next 10 years. - Tackle investors' pressing Mindset questions. Have a Mindset question you'd want answered on a future show? Reach out to Tim at tbeyers@fool.com. Don't wait! Be sure to get to your local bookstore and pick up a copy of David's Gardner's new book — Rule Breaker Investing: How to Pick the Best Stocks of the Future and Build Lasting Wealth. It's on shelves now; get it before it's gone! Companies discussed: ZS, WDAY Host: Tim Beyers Guests: Asit Sharma, David Meier Producer: Anand Chokkavelu Engineer: Dan Boyd Disclosure: Advertisements are sponsored content and provided for informational purposes only. The Motley Fool and its affiliates (collectively, “TMF”) do not endorse, recommend, or verify the accuracy or completeness of the statements made within advertisements. TMF is not involved in the offer, sale, or solicitation of any securities advertised herein and makes no representations regarding the suitability, or risks associated with any investment opportunity presented. Investors should conduct their own due diligence and consult with legal, tax, and financial advisors before making any investment decisions. TMF assumes no responsibility for any losses or damages arising from this advertisement. We're committed to transparency: All personal opinions in advertisements from Fools are their own. The product advertised in this episode was loaned to TMF and was returned after a test period or the product advertised in this episode was purchased by TMF. Advertiser has paid for the sponsorship of this episode. Learn more about your ad choices. Visit ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠megaphone.fm/adchoices Learn more about your ad choices. Visit megaphone.fm/adchoices

ScanNetSecurity 最新セキュリティ情報
大企業における VPN 時代の終焉ほか ~ Zscaler 2026年サイバーセキュリティトレンド

ScanNetSecurity 最新セキュリティ情報

Play Episode Listen Later Dec 1, 2025 0:13


 ゼットスケーラー株式会社は11月26日、ThreatLabzによる最新の調査に基づいた、2026年に予想されるサイバーセキュリティの主要トレンド5項目を発表した。

Alles auf Aktien
Die Fehler des Dirk Müller und eine 27-Billionen-Revolution

Alles auf Aktien

Play Episode Listen Later Nov 27, 2025 21:06


In der heutigen Folge sprechen die Finanzjournalisten Daniel Eckert und Lea Oetjen über das Stablecoin-Phänomen, neue Übernahmefantasien bei der Commerzbank und Rekordumsätze bei Urban Outfitters. Außerdem geht es um Zscaler, Puma, Aroundtown, Thyssenkrupp, Salzgitter, TKMS, Commerzbank, Deutsche Bank, Block, Coinbase, Deutsche Börse, Microsoft, Applied Materials, Alphabet, Edwards Lifesciences, Global X FinTech ETF (WKN: A2QPBZ), BIT Global Fintech Leaders (WKN: A2QJLA), CoinShares Physical Staked Ethereum (WKN: A3GQ2N), Bitwise Physical Solana ETP (WKN: A3GVKZ), VanEck Crypto and Blockchain Innovators (WKN: A2QQ8F) und DM Premium Strategie defensiv Euro Fonds (WKN: A111ZF). Meldet Euch unbedingt für den „Daily Business“-Newsletter an – kostenlos unter diesem Link: https://www.businessinsider.de/informationen/newsletter/businessinsider/ Exklusiv für Euch als „Alles auf Aktien“-Hörer: Spart jetzt bis zu 83 Euro mit unserem „Black Friday“-Angebot von Business Insider. Erhaltet aktuelle News sowie Insights zur Finanzwelt und bleibt immer einen Schritt voraus https://www.businessinsider.de/abo/aaa/?tpcc=offsite_bi_aaa_podcast_bf_25 Oder darf es lieber WELTplus sein? Sichert Euch mit diesem Link jetzt das Abo zum AAA-Vorteilspreis – für mehr Tiefe, mehr Finanzen und mehr Vermögen. www.welt.de/aaablackfriday Die aktuelle „Alles auf Aktien“-Umfrage findet Ihr unter: https://www.umfrageonline.com/c/mh9uebwm Wir freuen uns über Feedback an aaa@welt.de. Noch mehr „Alles auf Aktien“ findet Ihr bei WELTplus und Apple Podcasts – inklusive aller Artikel der Hosts und AAA-Newsletter.[ Hier bei WELT.](https://www.welt.de/podcasts/alles-auf-aktien/plus247399208/Boersen-Podcast-AAA-Bonus-Folgen-Jede-Woche-noch-mehr-Antworten-auf-Eure-Boersen-Fragen.html.) [Hier] (https://open.spotify.com/playlist/6zxjyJpTMunyYCY6F7vHK1?si=8f6cTnkEQnmSrlMU8Vo6uQ) findest Du die Samstagsfolgen Klassiker-Playlist auf Spotify! Disclaimer: Die im Podcast besprochenen Aktien und Fonds stellen keine spezifischen Kauf- oder Anlage-Empfehlungen dar. Die Moderatoren und der Verlag haften nicht für etwaige Verluste, die aufgrund der Umsetzung der Gedanken oder Ideen entstehen. Hörtipps: Für alle, die noch mehr wissen wollen: Holger Zschäpitz können Sie jede Woche im Finanz- und Wirtschaftspodcast „Deffner&Zschäpitz“ hören. +++ Werbung +++ Du möchtest mehr über unsere Werbepartner erfahren? [**Hier findest du alle Infos & Rabatte!**](https://linktr.ee/alles_auf_aktien) Impressum: https://www.welt.de/services/article7893735/Impressum.html Datenschutz: https://www.welt.de/services/article157550705/Datenschutzerklaerung-WELT-DIGITAL.html

TD Ameritrade Network
Zscaler (ZS) Drops After Earnings, But Mitch Ashley Sees Upside

TD Ameritrade Network

Play Episode Listen Later Nov 26, 2025 7:54


Mitch Ashley believes Zscaler (ZS) is aligned with five key cybersecurity trends. The stock dropped over 10% after earnings, but he argues that it is positioning well for the world of AI. “It wasn't a bad announcement,” he says of the earnings, but notes disappointing EPS and profits. Mitch also dips into “platform telemetry” and AI defense, explaining how this world is evolving. ======== Schwab Network ========Empowering every investor and trader, every market day.Options involve risks and are not suitable for all investors. Before trading, read the Options Disclosure Document. http://bit.ly/2v9tH6DSubscribe to the Market Minute newsletter - https://schwabnetwork.com/subscribeDownload the iOS app - https://apps.apple.com/us/app/schwab-network/id1460719185Download the Amazon Fire Tv App - https://www.amazon.com/TD-Ameritrade-Network/dp/B07KRD76C7Watch on Sling - https://watch.sling.com/1/asset/191928615bd8d47686f94682aefaa007/watchWatch on Vizio - https://www.vizio.com/en/watchfreeplus-exploreWatch on DistroTV - https://www.distro.tv/live/schwab-network/Follow us on X – https://twitter.com/schwabnetworkFollow us on Facebook – https://www.facebook.com/schwabnetworkFollow us on LinkedIn - https://www.linkedin.com/company/schwab-network/About Schwab Network - https://schwabnetwork.com/about

Cyber Morning Call
912 - ZScaler: Nova campanha do APT Water Gamayun abusa de 0-day

Cyber Morning Call

Play Episode Listen Later Nov 26, 2025 4:03


Referências do EpisódioZscaler Threat Hunting Discovers and Reconstructs a Sophisticated Water Gamayun APT Group AttackFlexibleFerret malware continues to strikeRussian RomCom Utilizing SocGholish to Deliver Mythic Agent to U.S. Companies Supporting UkraineRoteiro e apresentação: Carlos CabralEdição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia

The Information's 411
OpenAI vs Google, How NVIDIA Spends its $850B Cash Pile, and Musk's Grok Plans | Nov 24, 2025

The Information's 411

Play Episode Listen Later Nov 24, 2025 51:15


Elon Musk Reporter Theo Wayt talks with today's TITV Host Anita Ramaswamy about Elon Musk's mission to replace X staff with xAI's Grok and the role of the Siboliyev twins. We also talk with D.A. Davidson's Gil Luria and WorkHelix's Andrew McAfee about AI's accelerating impact on job cuts, particularly in white-collar professions, and the shift of wealth from big tech to NVIDIA. Warp CEO Zack Lloyd shares his data showing Google's Gemini 3.0 model's advantage over OpenAI's models in agentic coding. Lastly, KeyBanc Capital Markets' Jackson Ader provides an earnings preview for Zoom, Zscaler, and Salesforce, and The Information's Co-Executive Editor Martin Peers breaks down the unprecedented growth of NVIDIA's free cash flow and how the company is using it to fight competition.Articles discussed on this episode:https://www.theinformation.com/articles/twins-pushing-elon-musks-plans-replace-x-staff-grokhttps://www.theinformation.com/articles/nvidias-mushrooming-cash-pile-spotlights-spending-choicesTITV airs on YouTube, X and LinkedIn at 10AM PT / 1PM ET. Or check us out wherever you get your podcasts.Subscribe to: - The Information on YouTube: https://www.youtube.com/@theinformation- The Information: https://www.theinformation.com/subscribe_hSign up for the AI Agenda newsletter: https://www.theinformation.com/features/ai-agenda

The CyberWire
Two RMMs walk into a phish… [Research Saturday]

The CyberWire

Play Episode Listen Later Nov 22, 2025 24:00


Alex Berninger, Senior Manager of Intelligence at Red Canary, and Mike Wylie, Director, Threat Hunting at Zscaler, join to discuss four phishing lures in campaigns dropping RMM tools. Red Canary and Zscaler uncovered phishing campaigns delivering legitimate remote monitoring and management (RMM) tools—like ITarian, PDQ, SimpleHelp, and Atera—to gain stealthy access to victim systems. Attackers used four main lures (fake browser updates, meeting invites, party invitations, and fake government forms) and often deployed multiple RMM tools in quick succession to establish persistent access and deliver additional malware. The report highlights detection opportunities, provides indicators of compromise, and stresses the importance of monitoring authorized RMM usage, scrutinizing trusted services like Cloudflare R2, and enforcing strict network and endpoint controls. The research can be found here: You're invited: Four phishing lures in campaigns dropping RMM tools Learn more about your ad choices. Visit megaphone.fm/adchoices

Research Saturday
Two RMMs walk into a phish…

Research Saturday

Play Episode Listen Later Nov 22, 2025 24:00


Alex Berninger, Senior Manager of Intelligence at Red Canary, and Mike Wylie, Director, Threat Hunting at Zscaler, join to discuss four phishing lures in campaigns dropping RMM tools. Red Canary and Zscaler uncovered phishing campaigns delivering legitimate remote monitoring and management (RMM) tools—like ITarian, PDQ, SimpleHelp, and Atera—to gain stealthy access to victim systems. Attackers used four main lures (fake browser updates, meeting invites, party invitations, and fake government forms) and often deployed multiple RMM tools in quick succession to establish persistent access and deliver additional malware. The report highlights detection opportunities, provides indicators of compromise, and stresses the importance of monitoring authorized RMM usage, scrutinizing trusted services like Cloudflare R2, and enforcing strict network and endpoint controls. The research can be found here: You're invited: Four phishing lures in campaigns dropping RMM tools Learn more about your ad choices. Visit megaphone.fm/adchoices

Shifter
Hvordan Espen Sjaavik skalerte salg fra 300M til 2,5 mrd dollar

Shifter

Play Episode Listen Later Nov 19, 2025 90:24


Espen Sjaavik er medgründer i Alfred og er en av svært få nordmenn med tung, internasjonal erfaring fra enterprise-salg i amerikanske SaaS-selskaper. I denne episoden deler han playbooken han lærte i selskaper som Gartner, Bazaarvoice, AppDynamics, Cyber Reason og Zscaler – og hvordan han var med på å skape en vekstreise fra 300 millioner til 2,5 milliarder dollar i årlig omsetning og fra 800 til 8000 ansatte. Programleder: Lucas Weldegherbiel, journalist og gründer i Shifter.Dette snakker vi om i episodenHva som skiller middelmådige salgsorganisasjoner fra de besteDe fem byggesteinene i en sterk revenue playbookDypdykk i MEDDIC: metrics, economic buyer, decision criteria/process, identified pain og champions – og hvorfor rammeverket må brukes proaktivt, ikke som en passiv “checklist” i CRM.3 Whys: hvorfor gjøre noe i det hele tatt, hvorfor velge akkurat ditt selskap, og hvorfor nå – og hvordan du co-creater business caseLeading indicators-styring:ICCE-modellen for rekruttering (Intelligence, Character, Coachability, Experience)Hva som kjennetegner en virkelig god salgsleder

CiberAfterWork: ciberseguridad en Capital Radio
Entrevista Adrián Moreno y Francisco Gaitero- ZSCALER y SENER

CiberAfterWork: ciberseguridad en Capital Radio

Play Episode Listen Later Nov 17, 2025 30:50


Entrevista con expertos del sector de la ciberseguridad, concretamente un ingeniero de Zscaler y el Jefe de Ciberseguridad de Sener, en la que se analiza el profundo impacto de la Inteligencia Artificial (IA) en la ciberseguridad. La conversación se centra en el doble papel de la IA: como herramienta para crear ataques sofisticados, como los deepfakes y el malware avanzado, y como potente mecanismo de defensa para la detección temprana de amenazas y la respuesta a incidentes. Los expertos también examinan el panorama regulatorio más amplio, centrándose significativamente en la próxima directiva NIS 2, señalando sus estrictos requisitos de cumplimiento y las posibles sanciones financieras por incumplimiento, especialmente para las organizaciones que dan soporte a infraestructuras críticas. Por último, abordan la amenaza existencial a largo plazo que supone la computación cuántica para los algoritmos criptográficos actuales, lo que requiere el desarrollo urgente de medidas de seguridad post-cuánticas. Twitter: @ciberafterwork Instagram: @ciberafterwork Panda Security: https://www.pandasecurity.com/es/ +info: https://psaneme.com/ https://bitlifemedia.com/ https://www.vapasec.com/ VAPASEC https://www.vapasec.com/ https://www.vapasec.com/webprotection/

CiberAfterWork: ciberseguridad en Capital Radio
Episode 316: Cybersecurity Challenges: AI, Post-Quantum Computing, and Corporate Strategy

CiberAfterWork: ciberseguridad en Capital Radio

Play Episode Listen Later Nov 17, 2025 13:03


The source is a Spanish-language radio program segment focused on current and future challenges in cybersecurity. The hosts and a panel of experts from Zscaler and Sener discuss critical topics including the transformative, yet risky, applications of artificial intelligence (AI) in cyberattacks and defenses, with a particular focus on issues like deepfakes and sophisticated fraud. A significant portion of the conversation addresses the imminent threat of post-quantum computing, which is expected to break current cryptographic algorithms, requiring immediate preparation and new regulatory frameworks like NIS2 and ISO 27001 to enhance corporate and critical infrastructure security. The discussion also touches upon the importance of user awareness and continuous monitoring to build digital resilience against rapidly evolving threats. Twitter: @ciberafterwork Instagram: @ciberafterwork Panda Security: https://www.pandasecurity.com/es/ +info: https://psaneme.com/ https://bitlifemedia.com/ https://www.vapasec.com/ VAPASEC https://www.vapasec.com/ https://www.vapasec.com/webprotection/

CiberAfterWork: ciberseguridad en Capital Radio
Interview Adrián Moreno y Francisco Gaitero-ZSCALER y SENER

CiberAfterWork: ciberseguridad en Capital Radio

Play Episode Listen Later Nov 17, 2025 10:52


An interview featuring experts from the cybersecurity sector, specifically an engineer from Zscaler and the Head of Cybersecurity from Sener, discussing the profound impact of Artificial Intelligence (AI) on cybersecurity. The conversation focuses on AI's dual role—both as a tool for creating sophisticated attacks, like deepfakes and advanced malware, and as a powerful defensive mechanism for early threat detection and incident response. The experts also examine the broader regulatory landscape with a significant focus on the upcoming NIS 2 directive, noting its strict compliance requirements and potential financial penalties for non-adherence, particularly for organizations supporting critical infrastructure. Finally, they address the long-term, existential threat posed by quantum computing to current cryptographic algorithms, which necessitates the urgent development of post-quantum security measures. Twitter: @ciberafterwork Instagram: @ciberafterwork Panda Security: https://www.pandasecurity.com/es/ +info: https://psaneme.com/ https://bitlifemedia.com/ https://www.vapasec.com/ VAPASEC https://www.vapasec.com/ https://www.vapasec.com/webprotection/

Cyber Security Weekly Podcast
Episode 471 - Harnessing Zero Trust and AI to Outpace Cyberthreats

Cyber Security Weekly Podcast

Play Episode Listen Later Nov 12, 2025 5:50


We speak with Deepen Desai, Chief Security Officer & Executive Vice President of Cyber & AI Engineering at Zscaler on the latest zero trust and AI innovations empowering organisations to secure their digital transformation journeys and stay ahead of evolving threats.With nearly two decades of expertise in cybersecurity, Deepen is regarded as a pioneer in advancing threat intelligence, secure product development, and enterprise protection. Beyond his scope of leading cyber and AI engineering, Deepen also oversees the ThreatLabz team, a world-class security research group focused on identifying emerging threats, analyzing vulnerabilities, and delivering actionable insights to protect organizations at Zscaler. Under his leadership, Zscaler's award-winning zero-trust architecture continues to evolve, providing businesses with robust defenses against sophisticated attack vectors like ransomware, phishing, and advanced malware.Before joining Zscaler, Deepen held key security leadership positions at Dell SonicWALL, where he helped develop cutting-edge security solutions and strategies for businesses navigating an increasingly complex threat landscape. His breadth of experience in fields like security operations, threat research, and compliance has established him as a respected authority in the industry.#ZL2025 #zerotrustsecurity #mysecuritytv #zscaler

Cyber Security Weekly Podcast
Episode 472 - Secure and Simplify with Zero Trust Everywhere

Cyber Security Weekly Podcast

Play Episode Listen Later Nov 12, 2025 8:46


We speak with Dhawal Sharma, Executive Vice President & Head of Product Strategy at Zscaler on the latest innovations in zero trust to enhance security, simplify access management, and significantly reduce legacy infrastructure costs.Dhawal Sharma is a visionary leader and expert in cloud security who currently serves as Executive Vice President and Head of Product Strategy at Zscaler. Since joining the company in 2012, Dhawal has made significant contributions to its success by leading key product management initiatives that have strengthened the foundation of Zscaler's solutions and transformed the way businesses approach secure digital transformation.From 2012 to 2018, Dhawal oversaw all core product management at Zscaler, driving innovation and excellence across the company's primary offerings. Today, he leads emerging product innovations and core platform responsibilities, focusing on cutting-edge advancements in cloud security, networking, data path optimization, IoT security, Network Function Virtualization (NFV), Network Performance Monitoring (NPM), Data Loss Prevention (DLP), and regulatory compliance. His ability to identify industry needs ahead of the curve has positioned Zscaler as a leader in cloud-native security solutions.Dhawal's professional journey spans two decades, during which he has held key product management, product marketing, and sales leadership roles in security, networking, compliance, and network management across both large enterprises and tech startups. Prior to Zscaler, Dhawal worked at Cisco, where he excelled in strategic roles that shaped the security and networking landscape.An accomplished academic, Dhawal holds a Technical MBA degree with a specialization in Networking and IT Infrastructure from Symbiosis Center for IT. He also holds a Bachelor's in Engineering degree specializing in Computer Science. #ZL2025 #zerotrustsecurity #mysecuritytv #zscaler

The CyberWire
The role of AI in Zero Trust. [CyberWire-X]

The CyberWire

Play Episode Listen Later Nov 6, 2025 23:25


Zero Trust has been top of mind for years, but how is AI changing what that actually looks like in practice? In this episode of CyberWire-X, Dave Bittner is joined by Deepen Desai, Chief Security Officer at Zscaler, to discuss the transformative impact of AI on Zero Trust security frameworks. The discussion outlines how AI enhances threat prevention, automates data discovery, and improves user experience while addressing the practical financial implications of adopting AI in security. Hear how organizations must embrace AI to stay competitive and secure against evolving threats. For additional resources on Zero Trust + AI, visit Zscaler's Replace Legacy Systems for Better Security. Learn more about your ad choices. Visit megaphone.fm/adchoices

Hunters and Unicorns
How to Launch an AI Security Startup, with Kristian Kamber

Hunters and Unicorns

Play Episode Listen Later Oct 29, 2025 54:50


In this episode of the Playbook Universe, we speak with Kristian Kamber, CEO and co-founder of SPLX AI, about his journey from elite sales roles at AppDynamics and ZScaler to launching his own AI security startup. Kristian shares the inner drive and lessons learned, from a family restaurant business to the high-stakes world of Silicon Valley playbooks, that prepared him to lead a fast-moving, deeply technical company. He reveals the critical steps in finding the right technical co-founder, securing investment, and achieving product-market fit by listening intently to customers. This is essential listening for any sales professional considering the leap into entrepreneurship.

HealthcareNOW Radio - Insights and Discussion on Healthcare, Healthcare Information Technology and More
We Have TRUST Issues: Landing Healthcare AI Without a Crash with Chad Tetreault

HealthcareNOW Radio - Insights and Discussion on Healthcare, Healthcare Information Technology and More

Play Episode Listen Later Oct 18, 2025 26:57


S1E2: Landing Healthcare AI Without a Crash Host Tamer Baker invites Chad Tetreault, Field CTO at Zscaler and former DHS Deputy CTO to explore AI in healthcare and governance challenges while cutting through the hype. From practical applications of AI in healthcare, addressing trust, governance, and cutting-edge use cases, this episode has it all. To stream our Station live 24/7 visit www.HealthcareNOWRadio.com or ask your Smart Device to “….Play Healthcare NOW Radio”. Find all of our network podcasts on your favorite podcast platforms and be sure to subscribe and like us. Learn more at www.healthcarenowradio.com/listen

The Tech Blog Writer Podcast
3442: AI Realized - Practical Pathways From Pilot to Production

The Tech Blog Writer Podcast

Play Episode Listen Later Oct 5, 2025 36:59


AI hype has been loud for three years, but most leaders still tell me the real work begins after the demo. That was the starting point for my conversation with Christina Ellwood, co-founder of AI Realized, a community built to help enterprises move from pilots to production with less noise and more results.  Christina has a calm, practical way of explaining why progress has accelerated from a tiny fraction of companies in production to roughly one in five this year, and why many of the remaining blockers have little to do with model choice and everything to do with people, policy, and permission to ship. We talk about the messy middle between a proof of concept and a live service that customers can rely on. According to Christina, the most complex problems are organizational. Teams need upskilling, guardrails, and clear deployment guidelines to ensure effective execution. Legal and brand risk create hesitation. Boards want more substantial evidence and better controls. That is where leadership shows up in a very human way.  The skill she hears most often from successful program leads is humility. No one knows everything here, and the leaders who admit that, invite challenge, and keep learning are the ones getting to value without creating chaos. I loved her point that cross-organisational leadership is fast becoming the hidden superpower as AI connects systems and workflows that used to sit in separate silos. We also look forward to the 2025 AI Realized Summit, scheduled for November 5 in San Francisco. Attendance is intentionally capped at 500 to maintain high-quality conversation and genuine networking. Expect Fortune 2000 use cases across multiple industries, a healthy mix of predictive and generative work, and practical talk on small language models, multi-model strategies, and running models inside your security perimeter.  Eric Siegel will keynote on combining predictive analytics with generative techniques, and you will hear from executives at companies including Amazon, Audible, Red Hat, and Zscaler. Christina highlights one example from Fandom that combines predictive ad targeting with generative tools to enhance brand safety and suitability, a trend I expect to see repeated throughout the day. If you are leading AI programs and need fewer slogans and more proof, this episode will feel like a deep breath. We explore how to move faster while staying responsible, why smaller and multi-model setups are gaining traction, and how to build confidence with your board without overpromising.

How to Trade Stocks and Options Podcast by 10minutestocktrader.com
SOFI STOCK CRASHING‼️ FAKE Loan Data⁉️

How to Trade Stocks and Options Podcast by 10minutestocktrader.com

Play Episode Listen Later Oct 2, 2025 32:50


Are you looking to save time, make money, and start winning with less risk? Then head to https://www.ovtlyr.com.SoFi stock just crashed hard, dropping over 10% in a single session, and the big question is: what do you do if you're holding shares? In this video we break down the warning signs that could have saved traders from heavy losses, the technical red flags flashing across the chart, and why sticking to proven signals with OVTLYR helps you avoid getting caught in a free fall.We start by analyzing SoFi's chart and the sell signals that fired off before the collapse. Order blocks showed clear resistance overhead while no support was in sight. On top of that, the 10 EMA and 20 EMA weren't just broken, they were crushed, confirming that the short-term and intermediate trends had flipped bearish. Add in the 50/80 rule—where 50% of the time a stock like this can fall 80%—and the risk was obvious to anyone following the data.➡️ Learn how order blocks reveal resistance zones and why lack of support signals danger➡️ See why SoFi's moving average breakdown was a massive red flag➡️ Understand how the 50/80 rule plays out in real-world trades➡️ Discover why buying dips in crashing stocks is a losing strategy➡️ Get the simple trend template OVTLYR traders use to confirm entries and exitsThis episode also dives into trading psychology. Many investors convince themselves that “the market is wrong” when a stock like SoFi drops. But the market is never wrong. Price is truth, and your job is to follow the wave, not fight it. That's why patience and discipline matter—waiting for stocks that are crashing up instead of catching falling knives that destroy your account.We also compare SoFi to names like AMD, Tesla, and others that show what happens when you ignore exit signals. These examples prove that even the strongest rallies can evaporate quickly, and the only way to protect your gains is by having a plan. Averaging down might feel like a strategy, but it ties up your money for months with no guarantee of recovery. Averaging up when the trend is confirmed is where the real profits are made.Beyond SoFi, we look at opportunities across the market using OVTLYR's plans: Plan M, Plan A, and Plan ETF. With the S&P and Nasdaq showing mixed signals, sometimes the smartest move is simply sitting in cash. Other times, ETF strategies shine by capturing broader uptrends with lower stress. And when the signals line up, individual names like Intel, Zscaler, and Datadog show traders exactly how to time their moves with confidence.If you've been burned holding stocks through massive drops, this video is for you. You'll see why trusting signals, following the trend template, and using OVTLYR to confirm setups is the smarter way to trade. Stop guessing, stop hoping, and start trading with rules that protect your capital.Gain instant access to the AI-powered tools and behavioral insights top traders use to spot big moves before the crowd. Start trading smarter today

Secure Ventures with Kyle McNulty
SPLX | CEO Kris Kamber on Founder Lessons from Sales and AI Security

Secure Ventures with Kyle McNulty

Play Episode Listen Later Sep 30, 2025 45:35


Kris Kamber is CEO of SPLX AI. SPLX performs security testing and red teaming for AI agents, helping organizations detect vulnerabilities in their constantly expanding agent deployments. Before SPLX, Kris worked a handful of sales jobs, starting in telecom before hustling his way into Zscaler. I enjoyed asking him about the specific lessons from working in sales such as setting metrics and compensation. He's the first person who has described to me a workplace filled with arrogant and cocky people and also illustrated why he was attracted to that environment. We also touched on how he met his co-founder through a conversation on a plane and what compelled him to build a company at the intersection of AI and cybersecurity given his background.SPLX Website

The Deep Dive Radio Show and Nick's Nerd News
Your Breaches of the Week! September 1 to September 7, 2025

The Deep Dive Radio Show and Nick's Nerd News

Play Episode Listen Later Sep 7, 2025 20:44


Palo Alto Networks, Zscaler, Cloudflare, Navy Fed, AT&T, more Salesforce fallout and now these segments are officially open bar...

Risky Business
Risky Business #805 -- On the Salesloft Drift breach and "OAuth soup"

Risky Business

Play Episode Listen Later Sep 3, 2025 61:55


On this week's show Patrick Gray and Adam Boileau discuss the week's cybersecurity news, including: The Salesloft breach and why OAuth soup is a problem The Salt Typhoon telco hackers turn out to be Chinese private sector, but state-directed Google says it will stand up a “disruption unit” Microsoft writes up a ransomware gang that's all-in on the cloud future Aussie firm hot-mics its work-from-home employees' laptops Youtube scam baiters help the feds take down a fraud ring This episode is sponsored by Dropzone.AI. Founder and CEO Edward Wu joins the show to talk about how AI driven SOC tools can help smaller organisations claw their way above the “security poverty line”. A dedicated monitoring team, threat hunting and alert triage, in a company that only has a couple of part time infosec people? Yes please! This episode is also available on Youtube. Show notes The Ongoing Fallout from a Breach at AI Chatbot Maker Salesloft – Krebs on Security Salesloft: The Leading AI Revenue Orchestration Platform Palo Alto Networks, Zscaler customers impacted by supply chain attacks | Cybersecurity Dive The impact of the Salesloft Drift breach on Cloudflare and our customers China used three private companies to hack global telecoms, U.S. says CSA_COUNTERING_CHINA_STATE_ACTORS_COMPROMISE_OF_NETWORKS.PDF Google previews cyber ‘disruption unit' as U.S. government, industry weigh going heavier on offense | CyberScoop Ransomware gang takedowns causing explosion of new, smaller groups | The Record from Recorded Future News Hundreds of Swedish municipalities impacted by suspected ransomware attack on IT supplier | The Record from Recorded Future News Storm-0501's evolving techniques lead to cloud-based ransomware | Microsoft Security Blog The Era of AI-Generated Ransomware Has Arrived | WIRED Between Two Nerds: How threat actors are using AI to run wild - YouTube Affiliates Flock to ‘Soulless' Scam Gambling Machine – Krebs on Security UK sought broad access to Apple customers' data, court filing suggests ICE reactivates contract with spyware maker Paragon | TechCrunch WhatsApp fixes 'zero-click' bug used to hack Apple users with spyware | TechCrunch Safetrac turned staff laptops into covert recording devices to monitor WFH Risky Bulletin: YouTubers unmask and help dismantle giant Chinese scam ring - Risky Business Media

Squawk Pod
5 Things to Know Before the Opening Bell 9/3/2025

Squawk Pod

Play Episode Listen Later Sep 3, 2025 3:15


The 5 things you need to know before the stock market opens today: A new ruling decided Google can keep Chrome, OpenAI is buying a product development startup for $1.1 billion, activist hedge fund Holdco is reportedly putting pressure on Comerica to sell or face a board challenge, Zscaler shares are up after strong revenue guidance, and Disney will pay $10 million to settle FTC claims it unlawfully collected children's data. Squawk Box is hosted by Joe Kernen, Becky Quick and Andrew Ross Sorkin.  Follow Squawk Pod for the best moments, interviews and analysis from our TV show in an audio-first format.

TD Ameritrade Network
Agentic A.I., Customer Contracts & Red Canary: What to Watch in ZS Earnings

TD Ameritrade Network

Play Episode Listen Later Sep 2, 2025 6:15


When it comes to Zscaler's (ZS) earnings after the bell on Tuesday, Cory Johnson says he'll watch how the company tackles the "future of A.I." Part of that comes from interest in the company's Red Canary acquisition and utilizing agentic A.I. to fight cybersecurity threats on a mass scale. Cory urges investors to keep an eye out for any information regarding Zscaler's contracts and customers. Understanding where the money's coming from can help determine how long the revenue stream will last.======== Schwab Network ========Empowering every investor and trader, every market day. Subscribe to the Market Minute newsletter - https://schwabnetwork.com/subscribeDownload the iOS app - https://apps.apple.com/us/app/schwab-network/id1460719185Download the Amazon Fire Tv App - https://www.amazon.com/TD-Ameritrade-Network/dp/B07KRD76C7Watch on Sling - https://watch.sling.com/1/asset/191928615bd8d47686f94682aefaa007/watchWatch on Vizio - https://www.vizio.com/en/watchfreeplus-exploreWatch on DistroTV - https://www.distro.tv/live/schwab-network/Follow us on X – https://twitter.com/schwabnetworkFollow us on Facebook – https://www.facebook.com/schwabnetworkFollow us on LinkedIn - https://www.linkedin.com/company/schwab-network/ About Schwab Network - https://schwabnetwork.com/about

TD Ameritrade Network
Butowsky: ZS "Huge Buy," on "Cutting Edge of Everything" Cybersecurity

TD Ameritrade Network

Play Episode Listen Later Sep 2, 2025 9:43


Ed Butowsky is a bull when it comes to Zscaler (ZS). He sees the cybersecurity company making a strong run higher due to its "streamlined" and "cohesive" application that makes it adaptable for various clients. Ed adds that its government contracts are a "seal of approval" for the private sector that will only boost bullish momentum. Tom White later offers example options trades for Zscaler and CrowdStrike (CRWD).======== Schwab Network ========Empowering every investor and trader, every market day.Options involve risks and are not suitable for all investors. Before trading, read the Options Disclosure Document. http://bit.ly/2v9tH6DSubscribe to the Market Minute newsletter - https://schwabnetwork.com/subscribeDownload the iOS app - https://apps.apple.com/us/app/schwab-network/id1460719185Download the Amazon Fire Tv App - https://www.amazon.com/TD-Ameritrade-Network/dp/B07KRD76C7Watch on Sling - https://watch.sling.com/1/asset/191928615bd8d47686f94682aefaa007/watchWatch on Vizio - https://www.vizio.com/en/watchfreeplus-exploreWatch on DistroTV - https://www.distro.tv/live/schwab-network/Follow us on X – https://twitter.com/schwabnetworkFollow us on Facebook – https://www.facebook.com/schwabnetworkFollow us on LinkedIn - https://www.linkedin.com/company/schwab-network/About Schwab Network - https://schwabnetwork.com/about

TD Ameritrade Network
ZS Earnings Preview: Government Contracts, A.I. in Cybersecurity

TD Ameritrade Network

Play Episode Listen Later Sep 2, 2025 7:08


Nathaniel Bradley joins Morning Movers to preview this week's earnings report from Zscaler (ZS). He believes the company's efficiency improvement displayed in margins has the needle pointing up. He does highlight Zscaler's government contract ties and the significance of maintaining a "level of demand" in the cybersecurity space. Later, Nathaniel discusses the A.I. technology implementation used in fighting cybercriminals.======== Schwab Network ========Empowering every investor and trader, every market day.Subscribe to the Market Minute newsletter - https://schwabnetwork.com/subscribeDownload the iOS app - https://apps.apple.com/us/app/schwab-network/id1460719185Download the Amazon Fire Tv App - https://www.amazon.com/TD-Ameritrade-Network/dp/B07KRD76C7Watch on Sling - https://watch.sling.com/1/asset/191928615bd8d47686f94682aefaa007/watchWatch on Vizio - https://www.vizio.com/en/watchfreeplus-exploreWatch on DistroTV - https://www.distro.tv/live/schwab-network/Follow us on X – / schwabnetwork Follow us on Facebook – / schwabnetwork Follow us on LinkedIn - / schwab-network About Schwab Network - https://schwabnetwork.com/about

Cyber Briefing
September 02, 2025 - Cyber Briefing

Cyber Briefing

Play Episode Listen Later Sep 2, 2025 9:10


If you like what you hear, please subscribe, leave us a review and tell a friend!

The Tech Trek
Why Legacy Security Can't Protect AI

The Tech Trek

Play Episode Listen Later Aug 26, 2025 24:38


Moinul Khan, co-founder and CEO of Aurascape, joins the show to unpack what it takes to build a cybersecurity startup in the age of AI. With decades of experience at companies like Zscaler, Palo Alto Networks, and FireEye, Moinul shares why AI demands an entirely new security stack, how agentic AI is changing the game, and why prevention—not dashboards—must be at the heart of real solutions. If you're a tech leader navigating the future of AI and security, this is a conversation you won't want to miss.Key Takeaways• Traditional security stacks can't keep up with dynamic, evolving AI tools• Prevention-focused solutions matter more than dashboards or API visibility• Agentic AI is both an opportunity and a security challenge that startups must address• CISOs are rethinking consolidation and becoming more open to best-of-breed solutions in AI security• Building with a long-term prevention mindset creates stronger, more resilient startupsTimestamped Highlights00:37 — Aurascape's mission to deliver an all-encompassing AI security solution02:27 — The “aha” moment: why legacy firewalls and proxies can't secure AI08:23 — How Aurascape's vision has evolved from public AI tools to securing private and third-party applications13:17 — Agentic AI, MCP protocols, and why startups need to secure the next wave of AI agents16:44 — Best-of-breed vs consolidation: where the security market is really heading20:37 — Advice for founders: why prevention-first is the only real path to solving security problemsA standout moment“If you try to patch what you have built in the last 20 years, you will fail. If you want to secure AI, you have to build your entire stack from the ground up.” — Moinul KhanResources MentionedAurascape.aiPro TipDon't build for a quick exit. Focus on prevention, even if it's the harder road—it's what truly solves customer problems in cybersecurity.Call to ActionIf you enjoyed this episode, share it with someone exploring AI security. Subscribe or follow the show for more conversations with the builders shaping the future of tech.

Inside the Network
Jay Chaudhry: Betting on yourself and building a $40B+ Zero Trust giant in Zscaler

Inside the Network

Play Episode Listen Later Aug 26, 2025 53:45 Transcription Available


In this episode of Inside the Network, we sit down with Jay Chaudhry, founder and CEO of Zscaler, one of the most valuable cybersecurity companies in the world with a market cap of over $40 billion and $3 billion in ARR.Jay's journey is unlike any other. Raised in a remote Indian village with no electricity, no running water, and a two-and-a-half-mile walk to school, he went on to build five companies and pioneer the modern Zero Trust cloud security model. Zscaler, his most iconic company, was launched in 2007 with $50 million of his own capital and no VC investment - a bold bet in the middle of a market downturn, at a time when few believed enterprise security could move to the cloud.This episode is packed with powerful lessons from a founder who's played the long game. Jay talks about the mindset he carried from his early years farming with oxen, how working alongside his wife Jyoti gave him unmatched focus and alignment, and why startups should be “a foot wide and 20 feet deep.” He explains how Zscaler rewrote not just the playbook for go-to-market in security, but also the TCP/IP stack, and the early challenges of selling Zero Trust well before the term even existed. He also shares his wisdom on why most founders pivot too late when their sales motion fails. Jay provides his view of the future of cybersecurity and the Internet itself, from why the private corporate network is dying to why firewalls will eventually go the way of mainframes.Throughout it all, Jay shares a rare combination of conviction, humility, and self-discipline. Whether you're a first-time founder or running a $10 billion company, this is an absolute masterclass in how to build enduring companies and stay grounded in the process.

Feds At The Edge by FedInsider
Ep. 213 CMMC 2.0: What DoD Contractors Need to Know

Feds At The Edge by FedInsider

Play Episode Listen Later Aug 20, 2025 56:52


A looming deadline always gets attention, and for DoD suppliers, the clock is ticking. On October 1, 2025, the Department of Defense will begin including Cybersecurity Maturity Model (CMMC) certification requirements in new contracts.     This week on Feds At The Edge, four leading experts cut through the complexity and share practical guidance to help you start, or finish, your CMMC journey.    Sean Frazier, Federal Chief Security Officer for Okta, explains why “Know Thy Data” is the key to applying the right level of security where it matters most.  Alan Dinerman, PhD, Senior Manager, Cyber Strategy, Policy, and Privacy at Mitre, puts CMMC in context with other cybersecurity standards, noting its focus on Controlled Unclassified Information. And Jeff Adorno, Field Chief Compliance Officer at ZScaler, warns of risks in the AI era, where sensitive data can unintentionally “leak” into Large Language Models. The panel as a whole highlights how aligning with existing frameworks and using current technologies can demonstrate progress to auditors and ease compliance.     Listen now on your favorite podcast platform because whether you're deep into compliance or just getting started, this conversation will help you navigate the evolving landscape of CMMC and beyond.   

ITSPmagazine | Technology. Cybersecurity. Society
Data Kidnapping: Because File Encryption Is So 2020 | A Brand Story with Brett Stone-Gross, Senior Director of Threat Intelligence at Zscaler | A Black Hat USA 2025 Conference On Location Brand Story

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Aug 14, 2025 21:11


At Black Hat USA 2025, Sean Martin, co-founder of ITSPmagazine, sat down with Brett Stone-Gross, Senior Director of Threat Intelligence at Zscaler, to discuss the findings from the company's latest ransomware report. Over the past five years, the research has tracked how attack patterns, targets, and business models have shifted—most notably from file encryption to data theft and extortion.Brett explains that many ransomware groups now find it more profitable—and less risky—to steal sensitive data and threaten to leak it unless paid, rather than encrypt files and disrupt operations. This change also allows attackers to stay out of the headlines and avoid immediate law enforcement pressure, while still extracting massive payouts. One case saw a Fortune 50 company pay $75 million to prevent the leak of 100 terabytes of sensitive medical data—without a single file being encrypted.The report highlights variation in attacker methods. Some groups focus on single large targets; others, like the group “LOP,” exploit vulnerabilities in widely used file transfer applications, making supply chain compromise a preferred tactic. Once inside, attackers validate their claims by providing file trees and sample data—proving the theft is real.Certain industries remain disproportionately affected. Healthcare, manufacturing, and technology are perennial top targets, with oil and gas seeing a sharp increase this year. Many victims operate with legacy systems, slow to adopt modern security measures, making them vulnerable. Geographically, the U.S. continues to be hit hardest, accounting for roughly half of all observed ransomware incidents.The conversation also addresses why organizations fail to detect such massive data theft—sometimes hundreds of gigabytes per day over weeks. Poor monitoring, limited security staffing, and alert fatigue all contribute. Brett emphasizes that reducing exposure starts with eliminating unnecessary internet-facing services and embracing zero trust architectures to prevent lateral movement.The ransomware report serves not just as a data source but as a practical guide. By mapping observed attacker behaviors to defensive strategies, organizations can better identify and close their most dangerous gaps—before becoming another statistic in next year's findings.Learn more about Zscaler: https://itspm.ag/zscaler-327152Note: This story contains promotional content. Learn more.Guest:Brett Stone-Gross, Senior Director of Threat Intelligence at Zscaler, | On LinkedIn: https://www.linkedin.com/in/brett-stone-gross/ResourcesLearn more and catch more stories from Zscaler: https://www.itspmagazine.com/directory/zscalerLearn more about ITSPmagazine Brand Story Podcasts: https://www.itspmagazine.com/purchase-programsNewsletter Archive: https://www.linkedin.com/newsletters/tune-into-the-latest-podcasts-7109347022809309184/Business Newsletter Signup: https://www.itspmagazine.com/itspmagazine-business-updates-sign-upAre you interested in telling your story?https://www.itspmagazine.com/telling-your-storyKeywords: sean martin, brett stone-gross, ransomware, data extortion, cyber attacks, zero trust security, threat intelligence, data breach, cyber defense, network security, file transfer vulnerability, data protection, black hat, black hat usa 2025, zscaler

The Look Back with Host Keith Newman
The AI Security Crisis No One Is Talking About | The Liftoff with Keith

The Look Back with Host Keith Newman

Play Episode Listen Later Aug 6, 2025 7:17


Is your company's AI strategy opening you up to massive security risks? In this powerful conversation, Claudionor Coelho, Chief AI Officer at Zscaler, reveals the hidden dangers of agentic AI—and how Fortune 500 companies are unintentionally exposing sensitive data through generative AI tools.Claudionor shares real-world examples of AI vulnerabilities, how attackers can exploit agent systems to extract private data, and why AI security must be treated with the same urgency as data security. From salary leaks to corporate data breaches, this discussion is a wake-up call for executives, CISOs, and AI teams alike.

The Cybersecurity Defenders Podcast
#237 - Intel Chat: Black Hat roundup - Gemini AI, NeuralTrust & SPLX, VisionSpace Tech, BCM5820X - & CISA/FEMA cyber grant funding

The Cybersecurity Defenders Podcast

Play Episode Listen Later Aug 6, 2025 39:35


In this episode of The Cybersecurity Defenders Podcast, we discuss some intel being shared in the LimaCharlie community.More than 90 state and local government organizations have been targeted in a recent wave of cyberattacks exploiting a vulnerability in Microsoft SharePoint, according to the Center for Internet Security (CIS).Traditional cyber attack methodologies - exploiting endpoints, moving laterally, escalating privileges - are increasingly outdated as enterprise IT shifts toward SaaS and browser-based access.The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2023-2533 - a high-severity Cross-Site Request Forgery (CSRF) vulnerability in PaperCut NG/MF print management software - to its Known Exploited Vulnerabilities (KEV) catalog.Researchers at Nozomi Networks have disclosed over a dozen security flaws in Tridium's Niagara Framework, a vendor-agnostic building management platform used in sectors ranging from industrial automation to energy and smart infrastructure.Between April 2024 and April 2025, ransomware attacks on the oil and gas industry increased by an unprecedented 935%, according to new research from cybersecurity firm Zscaler.Support our show by sharing your favorite episodes with a friend, subscribe, give us a rating or leave a comment on your podcast platform.This podcast is brought to you by LimaCharlie, maker of the SecOps Cloud Platform, infrastructure for SecOps where everything is built API first. Scale with confidence as your business grows. Start today for free at limacharlie.io.

Packet Pushers - Full Podcast Feed
PP071: SSE Vendor Test Results; Can HPE and Juniper Get Along?

Packet Pushers - Full Podcast Feed

Play Episode Listen Later Jul 22, 2025 46:20


CyberRatings, a non-profit that performs independent testing of security products and services, has released the results of comparative tests it conducted on Secure Service Edge, or SSE, services. Tested vendors include Cisco, Cloudflare, Fortinet, Palo Alto Networks, Skyhigh Security, Versa Networks, and Zscaler. We look at what was tested and how, highlight results, and discuss... Read more »

Packet Pushers - Fat Pipe
PP071: SSE Vendor Test Results; Can HPE and Juniper Get Along?

Packet Pushers - Fat Pipe

Play Episode Listen Later Jul 22, 2025 46:20


CyberRatings, a non-profit that performs independent testing of security products and services, has released the results of comparative tests it conducted on Secure Service Edge, or SSE, services. Tested vendors include Cisco, Cloudflare, Fortinet, Palo Alto Networks, Skyhigh Security, Versa Networks, and Zscaler. We look at what was tested and how, highlight results, and discuss... Read more »

Business Daily
Business Daily meets: Zscaler CEO Jay Chaudhry

Business Daily

Play Episode Listen Later Jul 3, 2025 17:29


The entrepreneur grew up in a small village in the foothills of the Himalayas with no electricity.He went on to found a cloud-based cyber-security company with a value of $47 billion, trying to protect digital data for businesses and governments. Jay Chaudhry tells us about his daily battle to stay ahead of the “bad guys”.Presenter: Will Bain Producer: Amber Mehmood(Image: Jay Chaudhry giving the keynote speech at Zenith Live. Credit: Zscaler)

Motley Fool Money
Right Place, Right Time for Zscaler

Motley Fool Money

Play Episode Listen Later Jun 2, 2025 23:59


The cybersecurity company saw its stock shoot up 10% on Friday. Is that dumb luck or something more? (00:21) Andy Cross and Asit Sharma discuss May's market bounce, plus earnings from ZScaler and Ulta Beauty. Companies discussed: ZS, NOW, ULTA, ELF Host: Andy Cross Guest: Asit Sharma Producer: Anand Chokkavelu Engineer: Dan Boyd Advertisements are sponsored content and provided for informational purposes only. The Motley Fool and its affiliates (collectively, "TMF") do not endorse, recommend, or verify the accuracy or completeness of the statements made within advertisements. TMF is not involved in the offer, sale, or solicitation of any securities advertised herein and makes no representations regarding the suitability, or risks associated with any investment opportunity presented. Investors should conduct their own due diligence and consult with legal, tax, and financial advisors before making any investment decisions. TMF assumes no responsibility for any losses or damages arising from this advertisement. Learn more about your ad choices. Visit megaphone.fm/adchoices