PrOTect It All

Pen Testing Reality Check: Why Cybersecurity Fundamentals Still Matter More Than AI


Listen Later

Shiny tools don’t break attackers in basic mistakes.

In Episode 92 of Protect It All, host Aaron Crow sits down with Corey LeBleu, founder of Relix Security and seasoned penetration tester, for a candid look at what actually causes organizations to get compromised and why fundamentals still matter more than the latest security trends.

Drawing from years of red-team and penetration-testing experience, Corey shares real stories from the field: forgotten printers, unmanaged IoT devices, legacy systems no one owns anymore, and misconfigurations hiding in plain sight. Together, Aaron and Corey unpack why asset visibility, patching, and change management continue to be the weakest links - even as AI and automation enter the security conversation.

You’ll learn:

  • Why old printers, IoT devices, and “temporary” systems are prime attack paths
  • What most organizations misunderstand about pen testing and red teaming
  • How poor asset inventory and change management undermine security programs
  • The real risks behind shadow IT and unmanaged tools
  • Where AI helps in pen testing and where experience still wins
  • Why mastering the basics beats chasing new security gadgets every time

  • Whether you’re a security professional, IT leader, or someone looking to break into cybersecurity, this episode delivers practical, no-nonsense lessons from the front lines - focused on what actually reduces risk.

    Tune in to hear why cybersecurity success still starts with the fundamentals - only on Protect It All.

    Key Moments: 

    03:57 Critical Infrastructure: Finding Vulnerabilities

    06:44 "Cyber Risks from Hidden Devices"

    11:25 Cybersecurity: Focus on Basics

    16:09 Complex Systems Demand Continuous Testing

    18:17 Understanding Complex System Security

    22:54 "Testing: External vs. Internal"

    24:12 Enterprise Challenges with AI Integration

    27:40 AI Lowers Barriers for Hacking

    About the guest : 

    Corey LeBleu has built a career around application security testing, becoming deeply involved in integrating vulnerability assessments throughout the software testing lifecycle. Noticing shifts in industry practices, Corey observed major international financial institutions moving to routinely pentest every application- even legacy IBM systems - leading the way in robust cybersecurity practices. In contrast, Corey also highlights the challenges faced by manufacturing, where operational technology often suffers from outdated, vulnerable systems. Corey’s experience showcases the evolving landscape of application security, emphasizing the need for continuous testing and vigilance across diverse industries.

    How to connect Corey :
    https://www.linkedin.com/in/coreylebleu/

    Connect With Aaron Crow:

    • Website: www.corvosec.com 
    • LinkedIn: https://www.linkedin.com/in/aaronccrow
    • Learn more about PrOTect IT All:

      • Website: https://protectitall.co/ 
      • X: https://twitter.com/protectitall 
      • YouTube: https://www.youtube.com/@PrOTectITAll 
      • FaceBook:  https://facebook.com/protectitallpodcast
      •  

        To be a guest or suggest a guest/episode, please email us at [email protected]

        Please leave us a review on Apple/Spotify Podcasts:

        Apple   - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124

        Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4

        ...more
        View all episodesView all episodes
        Download on the App Store

        PrOTect It AllBy Aaron Crow

        • 5
        • 5
        • 5
        • 5
        • 5

        5

        7 ratings


        More shows like PrOTect It All

        View all
        The Joe Rogan Experience by Joe Rogan

        The Joe Rogan Experience

        229,646 Listeners

        CyberWire Daily by N2K Networks

        CyberWire Daily

        1,025 Listeners

        Darknet Diaries by Jack Rhysider

        Darknet Diaries

        8,086 Listeners

        Talkin' Bout [Infosec] News by Black Hills Information Security

        Talkin' Bout [Infosec] News

        94 Listeners

        Cybersecurity Headlines by CISO Series

        Cybersecurity Headlines

        138 Listeners

        Hack the Plant by Bryson Bort

        Hack the Plant

        25 Listeners