David Bombal

David Bombal

By David BombalTechnology
Download on the App Store

David Bombal episodes

  • #601: Google Researchers Hacked the Pixel Phone using Audio Messages
    Big thanks to ThreatLocker for sponsoring my trip to Black Hat USA 2026 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/davidbombal
    A zero-click attack can compromise your phone without you opening a link, installing an application or even touching the device.
    David sits down with Natalie Silvanovich and Seth Jenkins from Google Project Zero to examine how specially crafted audio messages were used to remotely compromise the Pixel 9 and Pixel 10.
    The attack begins inside the Dolby Unified Decoder, where Android automatically processes incoming audio for transcription. The researchers explain how they exploited the decoder, escaped the media codec sandbox and targeted vulnerable Pixel hardware drivers to achieve kernel code execution and root access.
    They also discuss ASLR, SELinux, memory corruption, the eight-week exploit development process, how AI helped automate repetitive tasks and why Apple’s compiler protections prevented the same Dolby bug from affecting iPhones.
    Most importantly, they explain what manufacturers can do to reduce their attack surface and make commercial zero-click exploits significantly more expensive.
    These vulnerabilities were responsibly disclosed and patched. Pixel users running the latest security updates are protected.
    // Seth Jenkins SOCIAL //
    LinkedIn: https://www.linkedin.com/in/seth-jenkins-a20b914b/
    X: https://x.com/__sethJenkins
    // Natalie Silvanovich SOCIAL //
    X: https://x.com/natashenka?lang=en
    Website: https://natashenka.ca/
    // Website REFERENCE //
    Google Project Zero website: https://projectzero.google/
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU//
    0:00 - Intro
    01:00 - ThreatLocker sponsor segment
    02:10 - Natalie Silvanovich background
    04:00 - Seth Jenkins background
    04:49 - Zero click audio codec vulnerability
    05:41 - Disclaimer
    06:07 - Hacking using audio files // How it works
    10:23 - What happens in the sandbox
    13:27 - The next step
    15:15 - Running into issues
    22:55 - Would someone notice the hack?
    26:20 - Not secure by default
    27:44 - Using AI assistance
    29:44 - How to reduce attack surface
    34:57 - How to get into cybersecurity
    39:05 - Conclusion
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    #google #bhusa2026 #pixel10
    40 min
  • #600: This Free Tool Decodes Game Boy ROM From a Photograph
    Can you recover working software from a photograph of a microchip?
    Embedded systems reverse engineer Travis Goodspeed demonstrates how to extract the original Game Boy’s 256-byte boot ROM from a microscopic photograph of the mask ROM inside its CPU.
    The source image was created by combining 22 microscope photographs captured at 50x magnification. Using his free, open-source Mask ROM Tool, Travis marks 2,048 ROM bit locations, separates the ones from the zeros and checks for possible recognition errors. He then determines the logical order of the bits, disassembles the program and shows how it can be exported as a ROM file for use in an emulator.
    Travis also explains the Game Boy’s unusual copy-protection system. During startup, its boot ROM displays logo data supplied by the cartridge and compares it with Nintendo’s internal copy. If the logos do not match, the game does not boot. Requiring cartridges to contain Nintendo’s trademark gave the company legal leverage against unlicensed publishers.
    The video also explores techniques from Travis’s book, Microcontroller Exploits. These include extracting protected firmware from an access-control reader, chemically decapsulating chips while preserving their operation and using ultraviolet light with a nail-polish mask to remove memory protection without erasing the program.
    The Mask ROM Tool, Game Boy chip photograph and step-by-step tutorial are publicly available, allowing you to reproduce the ROM-decoding demonstration without owning a microscope or chemistry lab.
    // Sponsored SEGMENT //
    Big thank you to Proton Pass for sponsoring this video. Take your security to the next level by getting Proton Pass using the following be www.proton.me/davidbombal
    // Link to No Starch Website for Travis’ Book //
    Order Microcontroller Exploits and get the eBook free.
    https://nostarch.com/microcontroller-...
    Use Coupon Code GOODSPEED25 for 25% off Microcontroller Exploits at NoStarch.com
    // Travis Goodspeed SOCIAL //
    GitHub: https://github.com/travisgoodspeed
    // GitHub link to GameBoy ROM Tutorial //
    https://github.com/travisgoodspeed/gb...
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU//
    0:00 - Coming Up
    0:40 - Intro
    03:28 - Book Overview
    05:27 - Proton Pass Ad
    07:29 - Demonstration Context
    09:56 - Demo Begins
    12:48 - Marking the Chip Rows
    18:27 - How Travis Wrote his Book
    19:55 - Design Rule Check
    23:11 - How to Decode the Binary
    28:36 - Can the Binary Numbers Change?
    30:30 - Why is this Method Useful?
    34:24 - More book Overviews
    40:48 - Conclusion
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    #gameboy #reverseengineering #rom
    42 min
  • #599: This Pocket Tool Diagnoses Wi-Fi in 45 Seconds
    Your internet speed can look fine while your Wi-Fi is still failing. Packet loss, latency, congested channels, interference and poor configuration can all damage performance, but a normal speed test will not show you the full picture.
    In this video, I test the Ookla Speedtest Pulse, a pocket-sized Wi-Fi 7 diagnostic tool that measures more than 25 network metrics in around 45 seconds. We test Wi-Fi at the Natural History Museum in London and examine results from an Airbnb to identify whether the problem comes from the Wi-Fi network, wired connection or internet service provider.
    Matt explains how the device tests 2.4, 5 and 6 GHz Wi-Fi, detects channel problems, measures signal quality and gives you practical recommendations in plain English.
    We also compare Speedtest Pulse with the normal Speedtest application, laptopbased tools and the Ekahau Sidekick 2. You will see its current limitations, upcoming continuous monitoring features and how it could help technicians finally capture intermittent Wi-Fi problems.
    Big thanks to OOKLA for sponsoring this video. To get your own Speedtest Pulse please use the following link: https://wifi.ekahau.com/david-bombal-...
    // Matt Starling’s SOCIAL //
    LinkedIn: / matt-starling-03913633
    X: https://x.com/mattstarling?s=21
    // Ookla’s SOCIAL //
    LinkedIn: / ookla
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU //
    0:00 - Coming Up
    0:58 - Testing Public Wi-Fi in London
    01:40 - What Is the Speedtest Pulse?
    03:40 - Pulse vs Speedtest vs Sidekick 2
    06:19 - Making Wi-Fi Troubleshooting Easy
    07:44 - Running a Wi-Fi Test
    09:22 - Understanding Wi-Fi Performance Scores
    11:16 - Reports and Cloud Results
    13:00 - Active vs Continuous Pulse
    15:14 - Wired and Wireless Network Testing
    18:05 - Why Not Just Use a Laptop?
    21:02 - Mobile Support and Wi-Fi 7 Hardware
    23:17 - Understanding Your Wi-Fi Score
    26:54 - Wi-Fi Security and PMF
    29:03 - Signal Strength and Transmit Power
    30:19 - Wi-Fi Channels and Interference
    31:58 - How to Improve Your Wi-Fi
    33:12 - WPA3 Best Practices
    34:16 - Price and Coverage Mapping
    35:59 - Pulse vs Sidekick 2 for Interference
    38:36 - Solving Intermittent Wi-Fi Problems
    40:32 - Cloud Monitoring and Multi-Site Management
    42:12 - Final Thoughts
    Please note that links listed may be affiliate links and provide me with a small
    percentage/kickback should you use them to purchase any of the items listed or recommended.
    Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    #ookla #speedtest #wifi
    43 min
  • #598: AI Can’t Understand Intent. That’s a Security Problem
    Big thanks to ThreatLocker for sponsoring my trip to Black Hat USA 2026 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/davidbombal
    AI is changing cybersecurity, but simply using more AI to defend against AI attacks may not be the answer.
    David Bombal sits down with Danny Jenkins, CEO of ThreatLocker, to discuss the security risks created by AI, autonomous agents, zero-day vulnerabilities, ransomware, and the rapidly expanding attack surface businesses now have to deal with.
    Danny explains one of the fundamental problems with AI security: AI can understand what something does, but it may not understand the intent behind it. The same action could be performed legitimately by an administrator or maliciously by an attacker.
    They also discuss how AI is giving attackers capabilities that previously required significantly more expertise and resources, including vulnerability discovery and
    sophisticated phishing attacks.
    But AI creates another problem inside organizations. Autonomous agents can potentially access files, upload data, perform actions, and make mistakes extremely quickly. Every new piece of software adds attack surface, and powerful AI agents can dramatically increase that risk. Danny argues that the answer isn't simply AI versus AI.
    Instead, organizations need to rethink trust itself.
    The discussion covers deny by default, application control, restricting what software and AI agents are allowed to access, and why AI should be used as an additional
    security layer rather than becoming your primary defense.
    Topics include:
    • AI security risks
    • Autonomous and agentic AI
    • Why AI struggles with intent
    • How hackers are using AI
    • AI-powered vulnerability discovery
    • Zero-day vulnerabilities
    • Ransomware
    • AI attack surfaces
    • Application control
    • Deny by default security
    • Why AI alone can't solve AI security
    • Securing AI inside businesses
    // Danny Jenkins’ SOCIAL //
    LinkedIn: / dannyjenkinscyber
    // ThreatLocker’s SOCIAL //
    LinkedIn: https://www.linkedin.com/company/thre...
    X: https://x.com/threatlocker
    Instagram: / threatlocker
    Website: https://www.threatlocker.com/
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU //
    0:00 - Coming Up
    0:34 - Introduction
    0:46 - Why Businesses Are Afraid of AI
    02:17 - AI Can Be Used for Good or Bad
    03:29 - The Race to Adopt AI
    05:02 - AI Gives Attackers Nation-State Capabilities
    06:09 - Why AI Can't Be Your Primary Defense
    07:59 - How AI Is Expanding the Attack Surface
    08:53 - Solving AI Security With Limited Access
    11:04 - The Deny-by-Default Security Model
    14:12 - AI-Powered Vulnerability Hunting
    17:29 - How ThreatLocker Actually Uses AI
    20:01 - Why Deny-by-Default Beats Chasing Zero-Days
    21:15 - What Cybersecurity Customers Are Most Worried About
    22:16 - AI Hype, Jobs & Closing Thoughts
    24:55 - ThreatLocker Advert
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    #threatlocker #bhusa2026 #blackhat
    27 min
  • #597: The Hacking Gadgets You Need to Know
    Note: Hak5 did not pay me to make this video. But, I'm marking it as sponsored because Darren was kind enough to give me some cool Hak5 gadgets. Get your own using my link: https://davidbombal.wiki/gethak5
    // Darren Kitchen SOCIAL //
    YouTube: https://www.youtube.com/darrenkitchen
    Website: https://hak5.org/pages/hack-across-america
    X: https://x.com/hak5darren
    // Hak5 WEBSITE (affiliate) //
    https://davidbombal.wiki/gethak5
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU//
    0:00 - Coming up
    01:00 - 21 Years of Hak5 // Device overview
    05:30 - USB Rubber Ducky
    09:22 - Bash Bunny
    12:41 - Plunder Bug
    13:28 - Shark Jack & Shark Jack Display
    16:28 - Packet Squirrel
    18:51 - Key Croc
    21:51 - Screen Crab
    24:07 - Lan Turtle Hub
    28:14 - WiFi Pineapple
    33:16 - WiFi Pineapple Pager
    37:32 - Hak5 books
    39:15 - Darren's favourite tools
    41:27 - Future projects // Conclusion
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    #hak5 #hackinggadgets #hacktool
    43 min
  • #596: This is the Real Cybersecurity Problem
    Thank you to Threatlocker for sponsoring my trip to Black Hat so I can interview amazing people.
    Jen Easterly joins David Bombal to discuss why today’s cybersecurity problem may actually be a software quality problem.
    For decades, users and organizations have been blamed for failing to patch systems, change default passwords, or enable MFA. Jen argues that the bigger question is whether software vendors should be held responsible for shipping insecure products in the first place.
    They discuss Secure by Design, software vulnerabilities, memory safety, AI security, zero-day attacks, rogue AI agents, critical infrastructure, vendor accountability, and how artificial intelligence could dramatically shorten the time between discovering a vulnerability and weaponizing it.
    Jen also shares lessons from her career at the NSA, the White House, CISA, Morgan Stanley, the U.S. Army, and now RSAC, including her advice for hackers, cybersecurity professionals, and future leaders.
    Topics include:
    Why cybersecurity may be a software quality problem
    Why users are blamed for insecure software
    CISA’s Secure by Design initiative
    Why default passwords should disappear
    AI agents behaving in unexpected ways
    AI and the future of zero-day attacks
    Memory safety, C, C++ and Rust
    Government regulation and vendor accountability
    The EU Cyber Resilience Act
    Why Patch Tuesday may eventually become unacceptable
    How AI could help defenders find and fix vulnerabilities
    Jen Easterly’s advice for cybersecurity professionals
    If you work in cybersecurity, ethical hacking, software development, networking, AI security, or critical infrastructure, this is a conversation you don’t want to miss.
    // Jen Easterly’s SOCIAL //
    LinkedIn: / jen-easterly
    // Website REFERENCE //
    https://www.cisa.gov/
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU //
    0:00 - Coming up
    0:55 - Jen Easterly introduction & background
    04:20 - Advice for the youth
    07:10 - Advice for ethical hackers and leadership
    11:35 - Software security // Who's to blame?
    17:39 - Power and responsibility
    21:17 - Secure by design
    26:38 - Is it important to attend RSAC? // Conclusion
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    #rsac #bhusa2026 #securebydesign
    29 min
  • #595: How to Detect Fake Cell Towers Near You
    Big thanks to Proton VPN for sponsoring this video. To sign up for Proton VPN please use the following link https://protonvpn.com/davidbombal and get 70% off.
    Learn how fake cell towers and Stingray-style devices can be used to track phones, capture metadata, and monitor cellular activity.
    OTW joins David Bombal to demonstrate how SDR tools such as HackRF, RTL-SDR, DragonOS, and Falcon can be used to scan nearby cell towers and investigate suspicious signals. They look at how 4G and 5G networks work, why mobile networks still expose valuable metadata, how IMSI catchers operate, and what suspicious or rogue cell towers may look like.
    They also discuss SS7 vulnerabilities, mobile network attacks, Signal, GrapheneOS, and practical steps you can take to better protect your communications.
    Topics covered:
    How to scan for nearby cell towers
    How fake cell towers and Stingrays work
    Detecting suspicious cell towers with SDR
    HackRF and RTL-SDR
    DragonOS and Falcon
    IMSI catchers and phone tracking
    4G and 5G security
    SS7 vulnerabilities
    Mobile phone metadata
    Signal and GrapheneOS
    Mobile network security
    // Occupy The Web SOCIAL //
    X: / three_cube
    Website: https://hackers-arise.net/
    // Occupy The Web Books //
    Linux Basics for Hackers 2nd Ed
    US: https://amzn.to/3TscpxY
    UK: https://amzn.to/45XaF7j
    Linux Basics for Hackers:
    US: https://amzn.to/3wqukgC
    UK: https://amzn.to/43PHFev
    Getting Started Becoming a Master Hacker
    US: https://amzn.to/4bmGqX2
    UK: https://amzn.to/43JG2iA
    Network Basics for hackers:
    US: https://amzn.to/3yeYVyb
    UK: https://amzn.to/4aInbGK
    // OTW Discount //
    Use the code BOMBAL to get a 20% discount off anything from OTW's website: https://hackers-arise.net/
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU //
    0:00 - Coming up
    0:37 - Mobile system vulnerability explained
    12:29 - Proton VPN sponsor segment
    15:07 - How to search cell towers in your area // CellSearch demo
    19:45 - Cell tower frequencies explained
    22:19 - CellSearch demo continued
    32:41 - Discovering the identifiers
    37:42 - Scanning for Stingrays/rogue cell towers // CellSearch demo continued
    44:00 - Ordinary people being victims of WiFi hacking
    47:28 - Authentication bypass on IoT devices
    49:01 - Scanning higher frequencies with CellSearch
    52:06 - Falcon demo // Discovering cellphones connecting to a cell tower
    57:46 - Recommended protection from traffic interception
    01:01:38 - Conclusion
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    #stingray #celltower #sdrhacking
    1 hr 3 min
  • #594: How to Protect Your Network From Insecure IoT Devices
    Hackers are using overlooked IoT devices such as IP cameras, printers and smart speakers to gain access to networks and spread ransomware.
    Philip Wylie explains how an outdated IP camera became a ransomware gateway, why default passwords and poor segmentation remain serious risks, and how to protect your network using separate VLANs, firmware updates, monitoring and zero-trust controls. The interview also explores medical devices, OT security, AI-enabled devices and the growing demand for IoT penetration-testing skills.
    Big thanks to ThreatLocker for sponsoring my trip to ZTW26 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/davidbombal
    // Philip Wylie’s SOCIAL //
    X: https://x.com/phillipwylie
    LinkedIn: / phillipwylie
    YouTube: / @phillipwylie
    Instagram: / phillipwylie
    // Book REFERENCE //
    The Pentester Blueprint Phillip Wylie:
    US: https://amzn.to/4jkigAa
    UK: https://amzn.to/42vShPB
    // YouTube video REFERENCE //
    Pentester Blueprint: Your Road to Success: • Pentester Blueprint: Your road to success
    How to hack IP Cameras (Ethically) and learn IoT hacking: • How to hack IP Cameras (Ethically) and lea...
    // Website REFERENCE //
    https://training.brownfinesecurity.com/
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU //
    0:00 - Coming Up
    0:56 - Intro
    03:08 - The Weakness in Pen-testing
    07:38 - How Do Hackers Get Access?
    11:30 - How To Protect IoT Devices
    14:36 - Dangers of Medical IoT Devices
    18:24 - Countries Banning IoT Devices
    20:46 - Phillip's Recommendations
    22:42 - What is Exploit DB
    27:30 - How Vulnerable Are You?
    28:28 - Advice To The Youth
    29:40 - How To Start Learning
    31:15 - Conclusion
    31:23 - Threatlocker Advert
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    #iot #iothacking #security
    32 min
  • #593: How to pass the CCNA exam (advice from two Cisco instructors)
    Two Cisco training veterans break down how to know you are ready for the CCNA exam, what changes in CCNA 2.0, and whether the CCNA is still worth it in 2026.
    Brian Bays has been teaching official Cisco classes since 2000. Michael Aldridge has been writing practice exam content since 2001. In this interview they answer the questions I get asked constantly: how long should I study, do I need physical equipment, should I do Network Plus first, and is AI going to take these jobs away?
    Short answer on that last one: they have heard this before. Automation was going to end tech jobs. Then virtualization. Then cloud. Every time, it just made good engineers more productive. Junior engineers become senior engineers, and we cannot function without senior engineers.
    We also cover what is coming in CCNA 2.0, including more troubleshooting woven through every section, a dark mode option, a full screen CLI, and the ability to send a command to every device in a lab at once.
    This video is not sponsored. I have known Brian and Michael for years and I recommend them because I rate them, not because anyone paid for this.
    Get CCNA Certified with Boson’s comprehensive training solutions: https://boson.com/certifications/ccna/
    // Bryan Baize SOCIAL //
    LinkedIn: / bbaize
    // Michael Aldridge SOCIAL //
    LinkedIn: / michael-aldridge-48125338a
    Reddit: / bosonmichael
    // Boson LinkedIn //
    LinkedIn: / boson
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU //
    0:00 - Coming up
    01:01 - Introductions
    03:55 - When will you be ready for the CCNA exam?
    08:34 - Overwhelming exam resources
    11:14 - Do you need physical equipment for the CCNA exam?
    13:52 - Mistakes preparing for the exam
    16:56 - The learning never stops
    17:57 - CCNA vs Network+
    19:52 - What is Boson NetSim?
    20:53 - What is Boson ExSim?
    21:37 - NetSim vs Packet Tracer
    22:37 - Why trust Boson?
    24:46 - Tips for passing the CCNA exam
    25:37 - How long should you study for the CCNA exam?
    27:34 - New CCNA exam expectations
    29:27 - Mistakes when taking the exam
    31:52 - Topics students struggle with
    33:26 - Important resources
    35:23 - Conclusion
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    #boson #ccna #networkengineer
    37 min
  • #592: Why most enterprise AI fails (and how to succeed)
    Agentic AI is putting a 400x load on enterprise networks. Cisco and NTT Data experts reveal why only 13% of leaders successfully scale AI, the nightmare of quantum threats, and how to secure your infrastructure.
    Big thank you to NTT DATA for sponsoring this video.
    Book an AI Infrastructure Readiness Assessment using one of the following links:
    https://services.global.ntt/en-us/cam...
    or
    https://services.global.ntt/en-us/cam...
    // Vikesh Gumpalli’s SOCIAL //
    LinkedIn: / vgumpalli
    // Vance Baran’s SOCIAL //
    LinkedIn: / vancebaran
    // Website REFERENCE //
    https://www.nttdata.com/global/en/
    https://www.nttdata.com/en-us/2026-gl...
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...
    // MY STUFF //
    https://www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]
    // MENU //
    0:00 - Coming Up
    01:09 - Introduction
    03:04 - Enterprise AI Adoption: The Board-Level Challenge
    05:02 - How AI Agents Are Reshaping Network Infrastructure
    07:22 - AI Agent Access, Sensitive Data and Security Risks
    10:24 - Cybersecurity at Machine Speed and Modernising Security
    14:08 - AI Budgets, ROI and Business Readiness
    15:00 - AI’s Impact on Jobs and an Insurance Case Study
    19:08 - Data Sovereignty and Custom AI Models
    22:18 - AI Factories, Edge Deployment and Public-Sector Use Cases
    26:31 - Preparing for Quantum-Safe Security
    28:43 - Managing Multi-Vendor Environments and Security Readiness
    32:09 - Live Protect and Hybrid Mesh Firewalls
    34:04 - Splunk, Galileo, AI Observability
    36:33 - Where to Learn More
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    Disclaimer: This video is for educational purposes only.
    38 min

About David Bombal

From the publisher's feed

Want to learn about IT? Want to get ahead in your career? Well, this is the right place!

More shows like David Bombal

Hacked by Hacked

Hacked

191 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

373 Listeners

Risky Business by Risky Business Media

Risky Business

375 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

653 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,028 Listeners

Smashing Security by Graham Cluley

Smashing Security

318 Listeners

Click Here by Recorded Future News

Click Here

421 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,054 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

179 Listeners

Hacking Humans by N2K Networks

Hacking Humans

314 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

191 Listeners

Defense in Depth by CISO Series

Defense in Depth

73 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

138 Listeners

Risky Bulletin by Risky Business Media

Risky Bulletin

47 Listeners

Hacker And The Fed by Chris Tarbell & Hector Monsegur

Hacker And The Fed

168 Listeners