Security Weekly Podcast Network (Audio)

Security Weekly Podcast Network (Audio)

By Security Weekly ProductionsNewsTechnologyTech News
Download on the App Store
  • Favorites

    79

    Followers

  • Typical duration

    36 min

    per episode

Based on Podcast App listening data

Security Weekly Podcast Network (Audio) episodes

  • The Future of Supply Chain Security - Janet Worthington - ASW #343

    Open source software is a massive contribution that provides everything from foundational frameworks to tiny single-purpose libraries. We walk through the dimensions of trust and provenance in the software supply chain with Janet Worthington. And we discuss how even with new code generated by LLMs and new terms like slopsquatting, a lot of the most effective solutions are old techniques.

    Resources

    • https://www.forrester.com/blogs/make-no-mistake-software-is-a-supply-chain-and-its-under-attack/
    • https://www.forrester.com/report/the-future-of-software-supply-chain-security/RES184050

    Show Notes: https://securityweekly.com/asw-343

    43 min
  • ESW at BlackHat and the weekly enterprise security news - ESW #419
    Topic Segment - What's new at Black Hat?

    We're coming live from hacker summer camp 2025, so it seemed appropriate to share what we've seen and heard so far at this year's event. Adrian's on vacation, so this episode is featuring Jackie McGuire and Ayman Elsawah!

    News Segment

    Then, in the enterprise security news,

    1. Tons of funding!
    2. SentinelOne picks up an AI security company weeks after Palo Alto closes the Protect AI deal
    3. Vendors shove AI agents into everything they’ve got
    4. Why SOC analysts ignore your playbooks
    5. NVIDA pinkie swears to China: no back doors!
    6. ChatGPT was allowing shared chat sessions to be indexed and crawled by search engines like Google
    7. Who is gonna secure all this vibe code?
    8. Who is gonna triage all these hallucinated bug reports?
    9. Perplexity and Cloudflare duke it out
    10. When you try to scrub your shady past off the Internet, it might just make things worse.

    All that and more, on this episode of Enterprise Security Weekly.

    Visit https://www.securityweekly.com/esw for all the latest episodes!

    Show Notes: https://securityweekly.com/esw-419

    46 min
  • Devices Are Attacking - PSW #886
    • Why should hate AI
    • When firmware attacks
    • The 300 second breach
    • Old ways still work, AI might help
    • And so begins the crawler wars
    • Turn off your SonicWall VPN
    • Your Pie may be wrapped in PII
    • Attackers will find a way
    • Signed kernel drivers
    • D-Link on the KEV
    • Rasperry PIs attack
    • Stealthy LoRa
    • LLM's don't commit code, people do
    • Jame's Bond style rescue with drones
    • SRAM has no chill
    • In the full view of the public...

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-886

    2 hr 9 min
  • Say Easy, Do Hard - AI Governance in the Supply Chain - Richard Bird, Nick Mistry - BSW #407

    Recent findings of AI ecosystem insecurities and attacks show the importance of needing AI governance in the supply chain. And this supply chain is rapidly expanding to include not only open-source software but also collaborative platforms where custom models, agents, prompts, and other AI resources are used. And with this expansion of third-party AI component and services use comes an expanded security threat often not included in traditional supply chain management processes. It's time to update our supply chain management process to include AI governance. Easier said than done.

    In this Say Easy, Do Hard segment, we invite three CISOs to discuss the challenges of AI and the supply chain, including:

    • Data privacy concerns
    • Flaws and malicious code in AI dependencies
    • Lack of security tools to test for AI
    • Vibe coding risks

    and more. But we also do the hard part, by discussing the changes needed to your supply chain management process to address these concerns.

    Visit https://www.securityweekly.com/bsw for all the latest episodes!

    Show Notes: https://securityweekly.com/bsw-407

    55 min
  • Uniting software development and application security - Will Vandevanter, Jonathan Schneider - ASW #342

    Maintaining code is a lot more than keeping dependencies up to date. It involved everything from keeping old code running to changing frameworks to even changing implementation languages. Jonathan Schneider talks about the engineering considerations of refactoring and rewriting code, why code maintenance is important to appsec, and how to build confidence that adding automation to a migration results in code that has the same workflows as before.

    Resources

    • https://docs.openrewrite.org
    • https://github.com/openrewrite

    Then, instead of our usual news segment, we do a deep dive on some recent vulns NVIDIA's Triton Inference Server disclosed by Trail of Bits' Will Vandevanter. Will talks about the thought process and tools that go into identify potential vulns, the analysis in determining whether they're exploitable, and the disclosure process with vendors. He makes the important point that even if something doesn't turn out to be a vuln, there's still benefit to the learning process and gaining experience in seeing the different ways that devs design software. Of course, it's also more fun when you find an exploitable vuln -- which Will did here!

    Resources

    • https://nvidia.custhelp.com/app/answers/detail/a_id/5687
    • https://github.com/triton-inference-server/server
    • https://blog.trailofbits.com/2025/07/31/hijacking-multi-agent-systems-in-your-pajamas/
    • https://blog.trailofbits.com/2025/07/28/we-built-the-security-layer-mcp-always-needed/

    Visit https://www.securityweekly.com/asw for all the latest episodes!

    Show Notes: https://securityweekly.com/asw-342

    59 min
  • Weekly Enterprise Security News and Tips on Building Security From Day 1 - Guillaume Ross - ESW #418
    The Weekly Enterprise News (segments 1 and 2)

    This week, we’ve had to make some last minute adjustments, so we’re going to do the news first, split into two segments.

    This week, we’re discussing:

    1. Some interesting funding
    2. Two acquisitions - one picked up for $250M, the other slightly larger, at $25 BILLION
    3. Interesting new companies!
    4. On the 1 year anniversary of that thing that happened, Crowdstrike would like to assure you that they’re REALLY making sure that thing never happens again
    5. Flipping the script
    6. How researchers rooted Copilot, but not really
    7. talks to check out at Hacker Summer Camp
    8. detection engineering tips
    9. the Cloud Security Alliance has a new AI Controls Matrix
    10. sending in the National Guard to handle a breach!
    11. and how to read an AI press release
    Interview: Guillaume Ross on Building Security from Scratch

    Guillaume shares his experiences building security from scratch at Canadian FinTech, Finaptic. Imagine the situation: you're CISO, and literally NOTHING is in place yet. No policies, no controls, no GRC processes. Where do you start? What do you do first? Are there things you can get away with that would be impossible in older, well-established financial firms?

    Visit https://www.securityweekly.com/esw for all the latest episodes!

    Show Notes: https://securityweekly.com/esw-418

    1 hr 46 min
  • Hacking Washing Machines - PSW #885

    In the security news:

    • Hacking washing machines, good clean fun!
    • Hacking cars via Bluetooth
    • More Bluetooth hacking with Breaktooth
    • Making old vulnerabilities great again: exploiting abandoned hardware
    • Clorox and Cognizant point fingers
    • AI generated Linux malware
    • Attacking Russian airports
    • When user verification data leaks
    • Turns out you CAN steal cars with a Flipper Zero, so we're told
    • The UEFI vulnerabilities - the hits keep coming
    • Hijacking Discord invites
    • The Raspberry PI laptop
    • The new Hack RF One Pro
    • Security appliances still fail to be secure
    • Person Re-Identification via Wi-Fi

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-885

    1 hr 59 min

About Security Weekly Podcast Network (Audio)

From the publisher's feed

Welcome to the Security Weekly Podcast Network, your all-in-one source for the latest in cybersecurity! This feed features a diverse lineup of shows, including Application Security Weekly, Business Security Weekly, Paul's Security Weekly, Enterprise Security Weekly, and Security Weekly News. Whether you're a cybersecurity professional, business leader, or tech enthusiast, we cover all angles of the cybersecurity landscape.

Best of Security Weekly Podcast Network (Audio)

Ranked by our users in the last 21 days

More shows like Security Weekly Podcast Network (Audio)

Freakonomics Radio by Freakonomics Radio + Stitcher

Freakonomics Radio

32,053 Listeners

Planet Money by NPR

Planet Money

30,689 Listeners

Global News Podcast by BBC World Service

Global News Podcast

7,624 Listeners

Hacked by Hacked

Hacked

192 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,012 Listeners

Uncanny Valley | WIRED by WIRED

Uncanny Valley | WIRED

504 Listeners

Risky Business by Risky Business Media

Risky Business

375 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

653 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,029 Listeners

Paul's Security Weekly (Audio) by Paul Asadoorian

Paul's Security Weekly (Audio)

17 Listeners

Click Here by Recorded Future News

Click Here

421 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,059 Listeners

Tech Brew Ride Home by Morning Brew

Tech Brew Ride Home

959 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

179 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

138 Listeners