CCT 348: ClaudeBleed - The Hidden Risk In AI Browser Extensions and CISSP Domain 3

CCT 348: ClaudeBleed - The Hidden Risk In AI Browser Extensions and CISSP Domain 3

Send us Fan Mail Your browser just became a security boundary you can’t afford to ignore. We start with ClaudeBleed, a vulnerability in the Claude AI Chrome extension that shows how an AI browser agent can be hijacked by another malicious extension, even one with zero special permissions. When an agent can act “as you” inside a trusted environment, the risk jumps from theory to real outcomes like silent email sending, data loss through Google Drive, or code theft from private repos. We walk ...

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(373)

CCT 369: Security Models Demystified - CISSP Domain 3.2 (Replay of CCT 278)

CCT 369: Security Models Demystified - CISSP Domain 3.2 (Replay of CCT 278)

Send us Fan Mail 🔁 REPLAY — this episode originally aired as CCT 278 in September 2025. I'm heads-down finishing a Domain 3 cryptography episode, so I'm re-running one of the strongest episodes in t...

7 Syys 31min

CCT 368: CISSP Asset Security and Data Classification (Domain 2)

CCT 368: CISSP Asset Security and Data Classification (Domain 2)

Send us Fan Mail Nine million images. No password. No encryption. And the defence was basically: “It wasn’t public because you had to know the URL.” That single line opens up one of the most important...

31 Elo 42min

CCT 367: Threat Modeling and the AI Agent That Breached Hugging Face (CISSP Domain 1.10)

CCT 367: Threat Modeling and the AI Agent That Breached Hugging Face (CISSP Domain 1.10)

Send us Fan Mail A rogue AI agent didn’t “hack the future” so much as exploit the oldest security problems in the book: weak boundaries, over-trusted inputs, exposed endpoints, and credentials lying a...

24 Elo 42min

CCT 366: Software Supply Chain Security Explained — CISSP Domain 8 (ChainDrop Case Study)

CCT 366: Software Supply Chain Security Explained — CISSP Domain 8 (ChainDrop Case Study)

Send us Fan Mail A supply chain attack that leaves your Git history spotless should change how you think about “secure code.” We walk through ChainDrop, a worm discovered in the NPM ecosystem that poi...

17 Elo 33min

CCT 365: Malicious QR Code Attacks and Digital Forensics Techniques Every CISSP Should Know [REPLAY]

CCT 365: Malicious QR Code Attacks and Digital Forensics Techniques Every CISSP Should Know [REPLAY]

Send us Fan Mail One careless QR scan can quietly turn a “private” chat into a live wiretap. We start with a timely threat story: Russian APT-style actors abusing Signal’s linked device flow by pushin...

10 Elo 25min

CCT 364: Third Party Risk Management - How One Vendor Breach Exposed 119,000 Users

CCT 364: Third Party Risk Management - How One Vendor Breach Exposed 119,000 Users

Send us Fan Mail A breach can hit your headlines even when your own systems never get touched, and that’s exactly why third-party risk management keeps showing up on the CISSP exam and in real inciden...

3 Elo 46min

CCT 363: CISSP AI Governance - What Credit Union Examiners Are Really Asking

CCT 363: CISSP AI Governance - What Credit Union Examiners Are Really Asking

Send us Fan Mail One bad AI decision can cost you more than money. It can cost you trust, trigger regulators overnight, and put your name on the hook when the board asks, “Who approved this?” We dig i...

27 Heinä 44min

CCT 362: Security Assessment Strategies & Abandoned Cloud Storage Risks (CISSP 6.1) - REPLAY

CCT 362: Security Assessment Strategies & Abandoned Cloud Storage Risks (CISSP 6.1) - REPLAY

Send us Fan Mail That forgotten cloud storage you stopped thinking about months ago can become a real attack path today. We start with a simple but dangerous scenario: abandoned AWS S3 buckets and oth...

20 Heinä 34min

Suosittua kategoriassa Koulutus

rss-murhan-anatomia
aamukahvilla
psykopodiaa-podcast
voi-hyvin-meditaatiot-2
rss-luonnollinen-synnytys-podcast
adhd-podi
rss-rahamania
rss-liian-kuuma-peruna
ihminen-tavattavissa-tommy-hellsten-instituutti
psykologia
rss-arkea-ja-aurinkoa-podcast-espanjasta
koulu-podcast-2
kesken
rss-uskonto-on-tylsaa
rss-niinku-asia-on
rss-duodecim-lehti
rss-spessu
rss-valo-minussa-2
rss-psykalab
taytta-tavaraa