3411: Why The Browser Is The New Security Perimeter
Tech Talks Daily6 Syys 2025

3411: Why The Browser Is The New Security Perimeter

When I invited Or Eshed, CEO and co-founder of LayerX Security, onto Tech Talks Daily, I wanted to challenge a blind spot most teams carry into work each day. We talk about phishing, ransomware, and endpoint controls, yet we skip the place where employees actually live online. The browser. That quiet tab bar has become the front door to identities, payments, SaaS, and now AI. Or calls it a different operating system in its own right, and once you hear his examples of how extensions can intercept cookies, mimic logins, or even meddle with AI chats, the penny drops fast.

Here's the thing. Blocking extensions across the board no longer fits how people work. Developers, marketers, sales teams, and support agents all lean on extensions for real productivity gains. Or's argument is simple. If the business depends on extensions, security has to meet people where they are with continuous, risk-based controls inside the browser itself. That means assessing code, permissions, ownership changes, and live behaviors, not relying on a static allow list that grows and grows while attackers slip through the cracks.

We also unpack Extensionpedia, LayerX's free resource that lets anyone look up the risk profile of a specific extension. It is part education, part early warning system, and it serves a wider mission to raise the floor for everyone. Or shares how a technology alliance with Google has helped the team analyze extensions at serious scale, and why better data beats clever slogans in a space where signals change hour by hour.

Malicious Extensions, AI Shortcuts, And The Culture Shift Security Needs

One of the standout moments is a real-world story that starts at home and ends inside a corporate network. A spouse installs a screen-recording extension on a personal device, the browser profile syncs at work, and suddenly corporate credentials and sensitive sessions are mirrored to an untrusted machine. No shadowy APT needed. Just everyday sync doing exactly what it was designed to do. It is messy, human, and exactly why policy needs to be paired with continuous visibility in the browser.

We explore the gray zone where productivity tools collide with privacy. Password managers, VPN helpers, and AI-everywhere extensions promise convenience, yet they can scrape data across SaaS apps or sync credentials in ways security leaders never intended. Or's advice is refreshingly pragmatic. Assume extensions are staying. Instrument the browser, score risk in real time, and adapt access based on what an extension actually does, not what it claims on a store page.

Looking ahead, Or sees the browser taking an even bigger role as email, SaaS, and AI agents converge in one place. With AI companies building their own browsers, the last mile of user interaction gets denser, faster, and more valuable to protect. If 99 percent of enterprise users already run at least one extension, the task is clear. Know which ones are in play, understand how they behave, and keep policy dynamic. If this conversation sparks a rethink of your own approach, check your extensions in Extensionpedia, and then consider what modern, in-browser controls would look like in your environment. After this episode, you may never look at that tidy row of icons the same way again.

*********

Visit the Sponsor of Tech Talks Network:

Land your first job in tech in 6 months as a Software QA Engineering Bootcamp with Careerist

https://crst.co/OGCLA

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(2000)

Zscaler's Ripple Effect Report Reveals The Cyber Resilience Gap

Zscaler's Ripple Effect Report Reveals The Cyber Resilience Gap

Are organizations investing enough in cybersecurity, or are they simply spending more money while falling further behind? In this episode of Tech Talks Daily, I speak with Martyn Ditchburn, CTO in Res...

3 Kesä 23min

Outshift By Cisco On Connecting The Next Generation Of AI Agents

Outshift By Cisco On Connecting The Next Generation Of AI Agents

At Cisco Live, I sat down with Papi Menon, Vice President of Product Management at Outshift by Cisco, to explore one of the most ambitious ideas emerging in the AI world today. While much of the indus...

2 Kesä 28min

Zoho On Balancing AI Innovation With Trust, Control, And Digital Sovereignty

Zoho On Balancing AI Innovation With Trust, Control, And Digital Sovereignty

Can businesses embrace AI without surrendering control over their data, technology choices, and future direction? In this episode of Tech Talks Daily, I sit down with Sachin Agrawal, Managing Director...

2 Kesä 38min

Risk Ledger Explains The Hidden Risks Inside Modern AI Supply Chains

Risk Ledger Explains The Hidden Risks Inside Modern AI Supply Chains

What happens when the weakest link in your technology supply chain becomes the entry point for a national security incident? In this episode of Tech Talks Daily, I welcome back Haydn Brooks, CEO and f...

1 Kesä 21min

How TinyMCE Is Bringing AI Directly Into The Content Creation Workflow

How TinyMCE Is Bringing AI Directly Into The Content Creation Workflow

Have you ever stopped to think about the technology powering almost every text box you interact with online? Whether you're applying for a job, drafting a legal contract, publishing content, or updati...

31 Touko 30min

Can AI Improve Trust Between Political Campaigns And Voters?

Can AI Improve Trust Between Political Campaigns And Voters?

Have you ever wondered why political campaigns can send millions of text messages but still struggle to have meaningful conversations with voters? In this episode of Tech Talks Daily, I sit down with ...

30 Touko 23min

Adobe Summit: Why Context Is the Missing Ingredient in Enterprise AI

Adobe Summit: Why Context Is the Missing Ingredient in Enterprise AI

How do you move beyond AI experimentation and start building systems that can genuinely reason, act, and create value across an enterprise? Recorded at Adobe Summit in Las Vegas, this episode features...

29 Touko 24min

AI, Analytics, And Conservation: The Nature Conservancy's Data Transformation Story

AI, Analytics, And Conservation: The Nature Conservancy's Data Transformation Story

What does better analytics actually mean when your mission is protecting the planet? At SAS Innovate, I sat down with John Blackwell, Director of Strategic Analytics at The Nature Conservancy, to expl...

28 Touko 22min

Suosittua kategoriassa Politiikka ja uutiset

uutiscast
aikalisa
politiikan-puskaradio
ootsa-kuullut-tasta-2
rss-ootsa-kuullut-tasta
rss-podme-livebox
tervo-halme
otetaan-yhdet
rss-vaalirankkurit-podcast
et-sa-noin-voi-sanoo-esittaa
rss-asiastudio
the-ulkopolitist
rss-kaikki-uusiksi
rss-ulkopoditiikkaa
rss-pinnalla
rss-sinivalkoinen-islam
rss-hyvaa-huomenta-bryssel