3411: Why The Browser Is The New Security Perimeter

3411: Why The Browser Is The New Security Perimeter

When I invited Or Eshed, CEO and co-founder of LayerX Security, onto Tech Talks Daily, I wanted to challenge a blind spot most teams carry into work each day. We talk about phishing, ransomware, and endpoint controls, yet we skip the place where employees actually live online. The browser. That quiet tab bar has become the front door to identities, payments, SaaS, and now AI. Or calls it a different operating system in its own right, and once you hear his examples of how extensions can intercept cookies, mimic logins, or even meddle with AI chats, the penny drops fast.

Here's the thing. Blocking extensions across the board no longer fits how people work. Developers, marketers, sales teams, and support agents all lean on extensions for real productivity gains. Or's argument is simple. If the business depends on extensions, security has to meet people where they are with continuous, risk-based controls inside the browser itself. That means assessing code, permissions, ownership changes, and live behaviors, not relying on a static allow list that grows and grows while attackers slip through the cracks.

We also unpack Extensionpedia, LayerX's free resource that lets anyone look up the risk profile of a specific extension. It is part education, part early warning system, and it serves a wider mission to raise the floor for everyone. Or shares how a technology alliance with Google has helped the team analyze extensions at serious scale, and why better data beats clever slogans in a space where signals change hour by hour.

Malicious Extensions, AI Shortcuts, And The Culture Shift Security Needs

One of the standout moments is a real-world story that starts at home and ends inside a corporate network. A spouse installs a screen-recording extension on a personal device, the browser profile syncs at work, and suddenly corporate credentials and sensitive sessions are mirrored to an untrusted machine. No shadowy APT needed. Just everyday sync doing exactly what it was designed to do. It is messy, human, and exactly why policy needs to be paired with continuous visibility in the browser.

We explore the gray zone where productivity tools collide with privacy. Password managers, VPN helpers, and AI-everywhere extensions promise convenience, yet they can scrape data across SaaS apps or sync credentials in ways security leaders never intended. Or's advice is refreshingly pragmatic. Assume extensions are staying. Instrument the browser, score risk in real time, and adapt access based on what an extension actually does, not what it claims on a store page.

Looking ahead, Or sees the browser taking an even bigger role as email, SaaS, and AI agents converge in one place. With AI companies building their own browsers, the last mile of user interaction gets denser, faster, and more valuable to protect. If 99 percent of enterprise users already run at least one extension, the task is clear. Know which ones are in play, understand how they behave, and keep policy dynamic. If this conversation sparks a rethink of your own approach, check your extensions in Extensionpedia, and then consider what modern, in-browser controls would look like in your environment. After this episode, you may never look at that tidy row of icons the same way again.

*********

Visit the Sponsor of Tech Talks Network:

Land your first job in tech in 6 months as a Software QA Engineering Bootcamp with Careerist

https://crst.co/OGCLA

Episoder(2000)

Qlik Connect: James Fisher On Turning AI Into a Business Strategy

Qlik Connect: James Fisher On Turning AI Into a Business Strategy

What does it really take to move beyond AI experimentation and build something a business can rely on? Recording live from Qlik Connect, I sat down with James Fisher, Chief Strategy Officer at Qlik, t...

16 Apr 23min

3483: How Glean Is Securing The Next Wave Of AI Agents In The Enterprise

3483: How Glean Is Securing The Next Wave Of AI Agents In The Enterprise

What happens when your AI agents start making decisions faster than your security team can even see them? In this episode, I sit down with Sunil Agrawal, Chief Information Security Officer at Glean, t...

15 Apr 32min

Qlik Connect: Mike Capone On Agentic AI and Turning Insight Into Action

Qlik Connect: Mike Capone On Agentic AI and Turning Insight Into Action

What does it actually take to move AI from experimentation into something a business can depend on every single day? Recording live from the show floor at Qlik Connect in Florida, I sat down with Qlik...

14 Apr 18min

Twilio: Demystifying Model Context Protocol (MCP) And Real-World AI Deployment

Twilio: Demystifying Model Context Protocol (MCP) And Real-World AI Deployment

How are brands supposed to deliver AI-powered customer experiences when their data is scattered across systems that were never designed to work together? In this episode, I sit down with Peter Bell, V...

14 Apr 34min

Invisible Technologies CEO On Building AI Around Real Workflows, Not Hype

Invisible Technologies CEO On Building AI Around Real Workflows, Not Hype

What does it actually take to make AI work inside a real business, where messy data, human judgment, and operational risk all collide? In this episode, I sit down with Matt Fitzpatrick, CEO of Invisib...

13 Apr 29min

Willow On How AI Is Changing The Way Buildings Operate

Willow On How AI Is Changing The Way Buildings Operate

In this episode, I speak with Bert Van Hoof, CEO of Willow, about how AI is starting to reshape the built world in ways that go far beyond smart dashboards and efficiency reports. Bert brings decades ...

12 Apr 48min

Blumberg Capital On What Investors Really Want From AI Founders Now

Blumberg Capital On What Investors Really Want From AI Founders Now

What does it really take to build the next generation of AI companies when the hype around scale begins to fade and real-world impact takes center stage? In this episode, I sit down with David Blumber...

11 Apr 47min

AI Psychosis Explained With Dr. Ragy Girgis From Columbia University

AI Psychosis Explained With Dr. Ragy Girgis From Columbia University

How do we talk about artificial intelligence without ignoring the very human consequences it can have on our mental health? In this episode, I sit down with Dr. Ragy Girgis, Professor of Clinical Psyc...

10 Apr 24min

Populært innen Politikk og nyheter

giver-og-gjengen-vg
aftenpodden
aftenpodden-usa
popradet
forklart
stopp-verden
lydartikler-fra-aftenposten
det-store-bildet
nokon-ma-ga
dine-penger-pengeradet
rss-gukild-johaug
hanna-de-heldige
aftenbla-bla
fotballpodden-2
rss-espen-lee-usensurert
rss-ness
rss-dannet-uten-piano
e24-podden
frokostshowet-pa-p5
bt-dokumentar-2