Lastpass and the Security of Security Products

Lastpass and the Security of Security Products

The gang discusses the Lastpass breach and the need for the security of utility-style security providers. We discuss Lastpass from a different angle - the responsibility of "hard security" providers. As security practitioners, we have been telling users to "just use a password manager." So what do we do now? How do password managers impact the way we give advice? Lastpass is as "hard security" service as it can be - are security people taking things as seriously as they should? Are we ...

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(111)

The End of Bug Bounty As We Know It

The End of Bug Bounty As We Know It

We dig into Linus Torvalds' claim that AI is now a legitimate tool for the Linux kernel, and what it means for bug bounty platforms drowning in submissions, with Bug Crowd reporting a fourfold spike i...

5 Aug 42min

Make No Mistakes: Inside the First "Agentic Ransomware"

Make No Mistakes: Inside the First "Agentic Ransomware"

We dig into Sysdig's Jade Puffer report, the so-called first agentic ransomware, and argue about whether the evidence actually proves an LLM was driving the attack or if it's just a well-trained scrip...

22 Juli 43min

Is Spec-Driven Development Already Dead

Is Spec-Driven Development Already Dead

In this episode, we take on spec-driven development, the resurgent idea that writing a detailed spec and letting AI implement it will finally give us the precision engineering promised us since the 19...

15 Juli 41min

Don't Bury the Model T: Why STRIDE Still Drives in an AI World

Don't Bury the Model T: Why STRIDE Still Drives in an AI World

In this episode, we dig into two things the security community loves to argue about: npm finally doing the right thing and whether STRIDE has any business being called dead. The npm v12 changes gate d...

1 Juli 59min

Mostly Dead or Mostly Back: The Zombie Resurrection of DAST in an AI World

Mostly Dead or Mostly Back: The Zombie Resurrection of DAST in an AI World

In this episode, we dig into whether DAST is dead, mostly dead, or quietly making a comeback dressed in an AI trench coat. The conversation traces the origins of dynamic application security testing f...

24 Juni 42min

Realists At The Table: How To See Through The Hype

Realists At The Table: How To See Through The Hype

In this episode, we dig into how the cybersecurity personality has shifted from the ego-driven, hoodie-up archetype to the paycheck-chasing newcomer. The conversation covers hype cycles from mainframe...

17 Juni 37min

The Agentic Access Problem: When AI Becomes Its Own Administrator

The Agentic Access Problem: When AI Becomes Its Own Administrator

In this episode, we explore what happens when AI agents meet the security principle of least privilege. As agents gain the ability to request permissions, make decisions, and interact with systems on ...

3 Juni 40min

The Tool Creep Problem: When More Security Means Less Security

The Tool Creep Problem: When More Security Means Less Security

In this episode, we break down why security budgets keep growing while organizations keep falling further behind. We explore how tool creep has quietly shifted from a nuisance into an active attack su...

8 Maj 42min

Populärt inom Teknik

uppgang-och-fall
skogsforum-podcast
rss-laddstationen-med-elbilen-i-sverige
elbilsveckan
 och-bilen-gar-bra
rss-elektrikerpodden
market-makers
bli-saker-podden
developers-mer-an-bara-kod
rss-en-ai-till-kaffet
rss-veckans-ai
bosse-bildoktorn-och-hasse-p
rss-uppgang-och-fall
hej-bruksbil
rss-milpodden
rss-fabriken-2
natets-morka-sida
allt-du-behover-veta-om-ny-teknik
algoritmen
rss-technokratin