Search a title or topic

Over 20 million podcasts, powered by 

Player FM logo

Api Security Podcasts

show episodes
 
Practical DevSecOps (a Hysn Technologies Inc. company) offers vendor-neutral and hands-on DevSecOps and Product Security training and certification programs for IT Professionals. Our online training and certifications are focused on modern areas of information security, including DevOps Security, AI Security, Cloud-Native Security, API Security, Container Security, Threat Modeling, and more.
  continue reading
 
Artwork

1
The Application Security Podcast

Chris Romeo and Robert Hurlbut

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly+
 
Chris Romeo and Robert Hurlbut dig into the tips, tricks, projects, and tactics that make various application security professionals successful. They cover all facets of application security, from threat modeling and OWASP to DevOps+security and security champions. They approach these stories in an educational light, explaining the details in a way those new to the discipline can understand. Chris Romeo is the CEO of Devici and a General Partner at Kerr Ventures, and Robert Hurlbut is a Prin ...
  continue reading
 
Hosted by Viktor Gamov and Kaitlyn Barnard, we interview software developers and technology leaders at the top of their game every other week. We’ll also give you the tools, tactics and strategies you need to take your cloud native architecture to the next level. We go beyond the buzzwords and dissect real-life applications and success stories so that you can tackle your biggest connectivity challenges.
  continue reading
 
We believe that digital transformation efforts make companies and communities more resilient. In the API Resilience podcast you'll listen to guests from industry leading API teams sharing their views about the current trends of the API economy. We also bring you insights that your API team will be able to use, and even explain to your management on how APIs can help your company cope, resurge, and thrive during and after this pandemic. The host is Kristof Van Tomme.
  continue reading
 
Artwork

201
Cyber Work

Infosec

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly+
 
Learn how to break into cybersecurity, build new skills and move up the career ladder. Each week on the Cyber Work Podcast, host Chris Sienko sits down with thought leaders from Carbon Black, IBM, CompTIA and others to discuss the latest cybersecurity workforce trends.
  continue reading
 
Explore the evolving world of application delivery and security. Each episode will dive into technologies shaping the future of operations, analyze emerging trends, and discuss the impacts of innovations on the tech stack.
  continue reading
 
Artwork

4
Code. Deploy. Go Live.

Andrew Connell & Julie Turner

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly+
 
Welcome to the Code. Deploy. Go Live. podcast! By Microsoft MVPs Andrew Connell and Julie Turner, our mission is to deliver prescriptive guidance on Microsoft 365 and Azure for Full-Stack Developers. Get the latest news, discussions, and interviews on topics ranging from Microsoft 365, Microsoft Azure, and related topics. For developers, by developers!
  continue reading
 
Artwork
 
ePlus helps our clients imagine, implement, and achieve more from technology. Our people are the best in the business — and we're proud to feature them in our podcasts. Our services are backed by thousands of successfully delivered engagements, elite certifications, and awards. And we're pleased to share the talent and perspective of our staff as it relates to today's emerging, transformative technologies. See how we can help you connect the dots between IT investments and business outcomes.
  continue reading
 
Coding Over Cocktails is created by TORO Cloud, a company that offers a low-code, API centric platform for application development & integration. This podcast series will tackle issues faced by enterprises as they manage the process of digital transformation, application integration, low-code application development, data management, and business process automation. Watch out for exciting and engaging content from guests who will touch on topics such as APIs as the center and foundation of a ...
  continue reading
 
Ledger is the gold standard of security in the crypto space. Our signers are essential for anyone wanting to take control of their digital value. At the heart of this ecosystem, Ledger connects you with everything in the digital assets space, providing access to services and freedom from compromise on security, ownership or user experience. On 'The Ledger Podcast', we have conversations with some of the most interesting thought leaders in crypto, cybersecurity and culture to discuss the jour ...
  continue reading
 
Working in cybersecurity can lead to many restless nights worrying about the safety of your applications. But don’t let software insecurity get you down – we’re here to help you take back your sleep. World-renowned software security evangelists will join our Checkmarx experts Stephen Gates and Matt Slotten to get inside the minds of cyber attackers. Our conversations will be packed with insight into the latest software threats and best practices for maturing your application security program ...
  continue reading
 
Artwork

1
Tech Lounge

Chris Chinchilla

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly+
 
A weekly podcast that welcomes you to explore technology with an insightful interview every two weeks and topic-deep dives every other two weeks. If you're interested in deep and creative technology and conversations with some of its most interesting practioners, this is the show for you. Come in and get yourself comfortable. Show notes can be found at - chrischinchilla.com/podcast Formerly known as "Chinchilla Squeaks"
  continue reading
 
Buzzword Bingo explores top-of-mind topics in enterprise tech. Each topic is examined from multiple perspectives through in-depth interviews with industry leaders and aficionados. Powered by Rubrik.
  continue reading
 
Artwork

1
The Last Great Cloud Transformation

lastgreatcloudtransformation

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly
 
For 20 years the cloud computing revolution has been transforming how organizations operate and innovate. But the revolution is not yet complete. The final areas of transformation are networking and security, which have remained grounded in on-premises thinking and technologies. No longer. A majority of enterprises are planning to increase spending on network modernization. Join us as we discuss what this new, cloud-oriented network should look like.
  continue reading
 
Welcome to The Bare Metal Cyber CISSP Audio Course—your comprehensive companion for mastering the Certified Information Systems Security Professional (CISSP) certification. Built for serious cybersecurity professionals and aspiring leaders alike, this Audio Course transforms the eight domains of the CISSP Common Body of Knowledge into clear, structured, and engaging lessons you can learn anytime, anywhere. Each episode blends real-world context, expert insight, and exam-focused explanations ...
  continue reading
 
Artwork

1
Cloud Talk

Rackspace Technology

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly
 
Cloud Talk brings you discussions on topics like digital transformation, Kubernetes, IoT, edge computing and multicloud, as told through the perspectives of the people and the companies who are living this transformation on a daily basis. In Cloud Talk, host Jeff DeVerter interviews some of the most influential figures on the frontlines of cloud technology, helping you stay connected. Jeff is CTO at Rackspace and has spent over 20 years immersed in the world of cutting-edge technology.
  continue reading
 
Artwork

1
The Stack Overflow Podcast

The Stack Overflow Podcast

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Weekly+
 
For more than a dozen years, the Stack Overflow Podcast has been exploring what it means to be a developer and how the art and practice of software programming is changing our world. From Rails to React, from Java to Node.js, we host important conversations and fascinating guests that will help you understand how technology is made and where it’s headed. Hosted by Ben Popper, Cassidy Williams, and Ceora Ford, the Stack Overflow Podcast is your home for all things code.
  continue reading
 
Software Engineering Radio is a podcast targeted at the professional software developer. The goal is to be a lasting educational resource, not a newscast. SE Radio covers all topics software engineering. Episodes are either tutorials on a specific topic, or an interview with a well-known character from the software engineering world. All SE Radio episodes are original content — we do not record conferences or talks given in other venues. SE Radio is brought to you by the IEEE Computer Societ ...
  continue reading
 
Welcome to MessageBot, the podcast that explores how Indian businesses are transforming communication using Bulk SMS, Voice Calls, WhatsApp Business API, and RCS Messaging. Each episode dives into real-world use cases, automation strategies, and the latest updates in India’s messaging ecosystem. Whether you’re a startup, developer, or enterprise, you’ll learn how to send secure OTPs, automate campaigns, and stay TRAI-compliant — all while delivering messages that truly connect.
  continue reading
 
Artwork
 
We interview cybersecurity professionals for tips and advice on how to break into a cybersecurity career. Explore how to think and take action to be successful as an IT Security professional. Learn about roles in IT Audit, Risk Management, Pentesting, DevSecOps, Cloud Security and certifications.
  continue reading
 
This podcast network will have my main tech program when something comes out which is not security related. Sans News Bites, The Security Box, and other tech nuggets will also be here too. Some adult language may be possible in content, and a disclaimer plays on TSB as its a show on the mix. Enjoy!
  continue reading
 
Artwork

1
Let's Talk Azure!

Alan Armstrong & Sam Foot

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly+
 
Listen with Alan Armstrong and Sam Foot as we talk about all things Microsoft Azure! We are both technical consultants working with Azure day in, day out. Alan focuses on Identity and Security automation while Sam is a .NET developer deploying PaaS and SaaS solutions on Azure. Each episode we have a topic we cover and we highlight some key news that we are interested in. No fluff, sales or products here, just two technical people having a light hearted chat.
  continue reading
 
Artwork

1
Platform Engineering Podcast

Cory O'Daniel, CEO of Massdriver

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly
 
The Platform Engineering Podcast is a show about the real work of building and running internal platforms — hosted by Cory O’Daniel, longtime infrastructure and software engineer, and CEO/cofounder of Massdriver. Each episode features candid conversations with the engineers, leads, and builders shaping platform engineering today. Topics range from org structure and team ownership to infrastructure design, developer experience, and the tradeoffs behind every “it depends.” Cory brings two deca ...
  continue reading
 
Artwork

1
Now in Android

Now in Android

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly
 
This show gives listeners a quick run-down on things that the Android team has done recently that developers may want to check out. It covers library and platform releases, articles, videos, podcasts, samples, codelabs - whatever seems relevant and interesting for Android developers. Subscribe to Android Developers YouTube → https://goo.gle/AndroidDevs Android's a big platform and there are many things being released all the time; listen to this podcast to stay up to date on what those thing ...
  continue reading
 
Welcome to the Flying High with Flutter Podcast! This podcast has new episodes coming out every week! We talk about anything and everything Flutter! From real-world problems you faced while using Flutter to daydream-challenged ideas, Flying High with Flutter has got you covered. Guests visit the show from time to time to share their background, experience, thoughts, and insights into the engaging Flutter world! Hi! I am Allen Wyma, aka Big C, and I am your podcast host. I have great passion ...
  continue reading
 
Private equity, venture capital and alternative investments - long-form podcasts with industry leaders Dive into in-depth conversations with industry leaders and gain exclusive insights into the world of private capital. 🎙️Fund Shack is dedicated to providing thought-provoking, authentic discussions with the most respected private capital managers, asset managers, professional advisers, & thought leaders. Our long-form interviews are unscripted, ensuring genuine & enriching conversations. Ho ...
  continue reading
 
Artwork

1
GovCIO Media & Research Podcasts

GovCIO Media & Research

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Weekly+
 
The GovCIO Media & Research podcast network comprises GovCast, CyberCast and HealthCast featuring conversations with key leaders on timely issues impacting the federal IT landscape. Topics include cybersecurity, artificial intelligence, cloud computing, IT modernization, data analytics, workforce development and more. New episodes release each Tuesday.
  continue reading
 
Artwork

1
Modern Web

Modern Web

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly+
 
The modern web is changing fast. Front-end frameworks evolve quickly, standards are emerging and old ones are fading out of favor. There are a lot of things to learn, but knowing the right thing is more critical than learning them all. Modern Web Podcast is an interview-style show where we learn about modern web development from industry experts. We’re committed to making it easy to digest lots of useful information!
  continue reading
 
Artwork

1
Rocket Ship

Simon Grimm

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly+
 
Welcome aboard the Rocket Ship, the ultimate podcast voyage into the heart of React Native development with Simon Grimm! Whether you're a seasoned mobile app developer or just starting your journey, this is your go-to destination for all things React Native and Expo.
  continue reading
 
Artwork

1
All Things MSP

Justin Esgar and Eric Anthony

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Weekly
 
Join hosts Justin Esgar and Eric Anthony as they discuss weekly the many facets of the IT services business and have some fun along the way. There will also be a steady flow of guests to provide their unique insights into the topic of the week.
  continue reading
 
Host David Brossard discusses the latest in fine-grained, policy-based authorization, and the latest developments and challenges enterprises face in their access control journey. Axiomatics is the originator and leading provider of runtime, fine-grained authorization delivered with attribute-based access control (ABAC) for applications, data, APIs, and microservices. The company’s Orchestrated Authorization strategy enables enterprises to effectively and efficiently connect Axiomatics’ award ...
  continue reading
 
Artwork

1
AWS Podcast

Amazon Web Services

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Weekly
 
The Official AWS Podcast is a podcast for developers and IT professionals looking for the latest news and trends in storage, security, infrastructure, serverless, and more. Join Simon Elisha and Hawn Nguyen-Loughren for regular updates, deep dives, launches, and interviews. Whether you’re training machine learning models, developing open source projects, or building cloud solutions, the Official AWS Podcast has something for you.
  continue reading
 
Artwork

1
JavaScript Jabber

Charles M Wood

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Monthly+
 
Stay current on JavaScript, Node, and Front-End development. Learn from experts in programming, careers, and technology every week. Become a supporter of this podcast: https://www.spreaker.com/podcast/javascript-jabber--6102064/support.
  continue reading
 
Tiff and Steve’s magical sysadmin adventures. You can expect fun banter about “the cloud,” Microsoft tech (Office 365, Azure, Defender, Exchange, etc), InfoSec, PowerShell, Docker, Zune (yes, Zune), existential thoughts on enterprise IT, and so much more.
  continue reading
 
Loading …
show series
 
Join Andrew Connell and Julie Turner as they recap Microsoft Ignite 2025, diving deep into the latest announcements for developers. They discuss Agent 365's new governance capabilities, Copilot API updates, including retrieval and search features, and exciting declarative agent enhancements. The hosts also cover Security Copilot's inclusion with E5…
  continue reading
 
In this episode of the Ledger Podcast, Sebastian Badault (EVP, Ledger Enterprise) sits down with Ilya Vulkov, Co-Founder & CEO of Youhodler, to unpack a question every serious builder faces: how do you earn trust in digital assets? Ilya explains that crypto isn’t a “revolution," it’s an evolution, and what that means in practice: borrowing proven f…
  continue reading
 
Ryan sits down with Corey Quinn, Chief Cloud Economist at Duckbill, at AWS re:Invent to get Corey’s patented snarky take on all the happenings from the conference. They discuss whether the AI agent hype is supported by actual buyers, how startups are faring as AWS focuses on large enterprises, and how many of the new technologies coming out this ye…
  continue reading
 
Positive trends related to public IP range from the year 2025 Fewer ICS systems, as well as fewer systems with outdated SSL versions, are exposed to the internet than before. The trend isn t quite clean for ISC, but SSL2 and SSL3 systems have been cut down by about half. https://isc.sans.edu/diary/Positive%20trends%20related%20to%20public%20IP%20ra…
  continue reading
 
If you haven't gotten the picture yet, this will be the last TSB program of the year. Feel free to visit the blog to learn more about what's going on and I may even post too. Sans will not be going anywhere, and we'll continue to work on catching that up. Some ADA stuff, end of year predictions and chatter about Sans stuff too. Hope you enjoy!…
  continue reading
 
In this episode of the All Things MSP podcast, recorded live on-site at IT Nation Connect 2025, hosts Justin Esgar and Eric Anthony sit down with two pivotal figures from Pax8 to discuss the evolving landscape of the Managed Service Provider industry. First, we are joined by Urvish Badiani, VP of Sales at Pax8. Urvish dives deep into the Pax8 marke…
  continue reading
 
Join host Kristof Van Tomme with Jean Dulau and Julien Rateau from Google Cloud’s Apigee team for a special live episode marking 10 years of our partnership that started with a meeting at APIdays and built up to shaping developer portals and API management worldwide. The conversation then looks forward, exploring the new era of AI and the urgent ne…
  continue reading
 
In this episode, I speak with John Buck about the book "Inventing the Future" about Apple's advanced technology group and the myriad technologies they created. https://books.by/john-buck 100s of amazing Mac apps Looking to supercharge your Mac with 100s of apps to choose from and one low monthly price? Take a look at Setapp from MacPaw. https://go.…
  continue reading
 
Maybe a Little Bit More Interesting React2Shell Exploit Attackers are branching out to attack applications that initial exploits may have missed. The latest wave of attacks is going after less common endpoints and attempting to exploit applications that do not have Next.js exposed. https://isc.sans.edu/diary/Maybe%20a%20Little%20Bit%20More%20Intere…
  continue reading
 
In this episode, Benjamin Brial, CEO and co-founder of Cycloid, speaks with host Sriram Panyam about internal developer platforms (IDPs) and internal developer portals. The conversation explores how these platforms address the growing challenges of DevOps scalability, multi-cloud complexity, and cloud waste, all of which organizations face as they …
  continue reading
 
In this episode of Code Deploy GoLive, hosts Julie Turner and Andrew Connell explore why Microsoft 365 Copilot experiences vary significantly depending on where you access them—whether in Outlook, Word, Teams, or the standalone Copilot app. Through real-world examples and technical insights, they explain how different orchestrators power various Co…
  continue reading
 
Why do so many “modern” platforms feel slow, fragile, and painful to work on? Platform engineer and fractional CTO Brian Childress joins Cory to discuss how over-engineering, resume‑driven development, and scattered tooling quietly block teams from shipping value. They explore why simplicity is a competitive advantage for platform teams, especially…
  continue reading
 
Enroll now in the Certified AI Security Professional (CAISP) course by Practical DevSecOps! This highly recommended certification is designed for the engineers , focusing intensely on the hands-on skills required to neutralize AI threats before attackers strike. The CAISP curriculum moves beyond theoretical knowledge, teaching you how to secure AI …
  continue reading
 
Beyond RC4 for Windows authentication Microsoft outlined its transition plan to move away from RC4 for authentication and published guidance and tools to facilitate this change. https://www.microsoft.com/en-us/windows-server/blog/2025/12/03/beyond-rc4-for-windows-authentication FortiCloud SSO Login Vuln Exploited Arctic Wolf observed exploit attemp…
  continue reading
 
Episode Summary The future of cyber resilience lies at the intersection of data protection, security, and AI. In this conversation, Cohesity CEO Sanjay Poonen joins Danny Allan to explore how organisations can unlock new value by unifying these domains. Sanjay outlines Cohesity’s evolution from data protection to security in the ransomware era, to …
  continue reading
 
The critical watches and warnings issued by the National Weather Service (NWS) inform everything from a firefighter's deployment to wildfires to the public's beach plans. This information is powered by some of the most advanced computational infrastructure in the world. According to David Michaud, director of the National Centers for Environmental …
  continue reading
 
The web we built—a tangle of HTML, JavaScript, CSS, APIs, and SEO quirks—has always been messy. But with AI agents and real-time apps now consuming the web as data, that mess becomes a liability. Firecrawl is one of the new tools reshaping how apps see and ingest web content, turning web pages into structured JSON, markdown, screenshots—everything …
  continue reading
 
Ryan is joined by Stack Overflow’s CEO Prashanth Chandrasekar and Director of Data Science Michael Foree on the floor at re:Invent to discuss all they’ve seen and heard at the event, from the future of AI agents to the trust issues the enterprise has around AI and the impact of AI and robotics on the job market. Episode Notes: This episode was reco…
  continue reading
 
This week’s episode covers a big React Native release, a critical React security vulnerability, and a wave of performance and DX improvements across the ecosystem. I also share updates from Tiny Harvest and talk about the realities of AI-assisted coding as projects grow. ⚛️ React Native Radar 🚀 React Native 0.83 released 📦 Release overview & what’s…
  continue reading
 
More React2Shell Exploits CVE-2025-55182 Our honeypots continue to detect numerous React2Shell variants. Some using slightly modified exploits https://isc.sans.edu/diary/More%20React2Shell%20Exploits%20CVE-2025-55182/32572 The Fragile Lock: Novel Bypasses For SAML Authentication SAML is a tricky protocol to implement correctly, in particular if dif…
  continue reading
 
Welcome to program 29 of Sans. The link to the December 5, 2025 newsletter is https://view.email.sans.org/?qs=98500f4c8692dbb312c3051d77038920ed898ed6caa33e4500f4a980442386f2cf208d4038bc473ffe25a888f0f4e9ceafc60e447d83334645b34da0a9bbabbb26d0970656f95232cab5006f8703ffd75d056e09e13503c0">here for you to peruse if you'd like to take a look at it. The…
  continue reading
 
Abusing DLLs EntryPoint for the Fun DLLs will not just execute code when some of their functions are called, but also as they are loaded. https://isc.sans.edu/diary/Abusing%20DLLs%20EntryPoint%20for%20the%20Fun/32562 Apple Patches Everything: December 2025 Edition Apple released patches for all of its operating systems, fixing two already exploited…
  continue reading
 
In this episode of the All Things MSP podcast, hosts Justin Esgar and Eric Anthony are live on location at IT Nation Connect 2025, bringing you conversations with the movers and shakers of the managed services world. This week features a powerhouse double-header that addresses two of the most critical pillars of a successful MSP: operational effici…
  continue reading
 
In this episode of The Ledger Podcast, Jeff Rochet EVP of Consumer Services at Ledger sits down with DaoSasha, Head of BD at 1inch to talk about one of the most critical pain points in crypto: blind signing. They explain why signing transactions you don’t fully understand is a massive blocker to DeFi mass adoption, and how clear signing on Ledger d…
  continue reading
 
Ryan talks with Wesley Yu, head of engineering at Metalab, about the evolution of interfaces in technology, the pressure that UI generated on the fly would put on your backend systems, and why AI is just the latest and fanciest in a long line of CRUD apps. Episode notes: Metalab designs interfaces for top brands around the world, helping them desig…
  continue reading
 
Using AI Gemma 3 Locally with a Single CPU Installing AI models on modes hardware is possible and can be useful to experiment with these models on premise https://isc.sans.edu/diary/Using%20AI%20Gemma%203%20Locally%20with%20a%20Single%20CPU%20/32556 Mystery Google Chrome 0-Day Vulnerability Google released an update for Google Chrome fixing a vulne…
  continue reading
 
In this episode, we wrap up the season, where we explore our favorite episodes of the season. We also talk about the what happened in 2025, and how the podcast has grown in terms of listenership and engagement. As we bid farewell to the season, we also reveal our future plans for the next season, which will start in January 2026. This episode is a …
  continue reading
 
Will Dunham, President and CEO of the American Investment Council, joins Fund Shack to unpack one of the most misunderstood debates in modern finance: the real economic impact of private equity and private credit in the United States. We explore how private capital supports 13 million American jobs, why online narratives around housing and healthca…
  continue reading
 
How cyber criminals are weaponising AI to defeat your threat detection and response Beyond encryption – how ransomware has evolved to include data exfiltration, publication threats and supply chain compromise How geopolitical tensions are increasing nation-sponsored cyber-campaigns - proxy attacks, IT worker scams and supply chain risks Thom Langfo…
  continue reading
 
The cybersecurity market is currently experiencing a massive talent shortfall in the emerging field of Artificial Intelligence security, driving compensation for specialized roles to unprecedented heights. AI security roles are projected to pay between 180K–280K in 2026, but the majority of cybersecurity professionals lack the necessary qualificati…
  continue reading
 
Possible exploit variant for CVE-2024-9042 (Kubernetes OS Command Injection) We observed HTTP requests with our honeypot that may be indicative of a new version of an exploit against an older vulnerability. Help us figure out what is going on. https://isc.sans.edu/diary/Possible%20exploit%20variant%20for%20CVE-2024-9042%20%28Kubernetes%20OS%20Comma…
  continue reading
 
In this episode of JavaScript Jabber, Steve Edwards and I kick things off by catching up on life — from winter weather and marathon training to health journeys, CrossFit, and some behind-the-scenes personal stories that shaped how we think about wellness and longevity. After warming up, we shift our focus to the state of the tech job market, someth…
  continue reading
 
Environment variables and secrets are usually a mess: out of sync .env files, scattered API keys, painful onboarding, and brittle CI configs. In this episode of the Modern Web Podcast, Rob Ocel talks with Varlock co-creators Phil Miller and Theo Ephraim about how Varlock turns .env files into a real schema with types, validation, and documentation,…
  continue reading
 
Microsoft Patch Tuesday Microsoft released its regular monthly patch on Tuesday, addressing 57 flaws. https://isc.sans.edu/diary/Microsoft%20Patch%20Tuesday%20December%202025/32550 Adobe Patches Adobe patched five products. The remote code execution in ColdFusion, as well as the code execution issue in Acrobat, will very likely see exploits soon. h…
  continue reading
 
In this episode of Software Engineering Radio, Srujana Merugu, an AI researcher with decades of experience, speaks with host Priyanka Raghavan about building LLM-based applications. The discussion begins by clarifying essential concepts like generative vs. predictive AI, pre-training vs. fine-tuning, and the transformer architecture that powers mod…
  continue reading
 
The U.S. is facing a surge in advanced threats from nation-state actors like China and Russia, who are increasingly probing critical infrastructure vulnerabilities. David Travers, director of the Environmental Protection Agency's (EPA) Office of Water Emergency Response and Cybersecurity, noted how escalating risks to the nation's water sector has …
  continue reading
 
Uptime used to mean reliability. But in the LLM era, five nines just means your liar is always available. Real reliability now includes correctness and that means probing models in real time with prompts that have known answers. When those slip, your delivery fabric has to reroute before customers find out. In this episode F5's Lori MacVittie, Joel…
  continue reading
 
Ryan is joined by Kayvon Beykpour, CEO and founder of Microscope, to dive into AI-powered code review’s potential for managing large codebases, the need for humans-in-the-loop for reviewing PRs so AI tools can efficiently and effectively debug, and how AI can increase visibility through summarization at the abstract syntax tree level and high signa…
  continue reading
 
Welcome to Sans, episode 28 across the Jared Rimer Network. You'll notice a change in the podcast, its Jared's Technology Podcast Network. Same content as the tech blog and podcast, but now reflects what we're trying to do. The Sans issue we're going to cover will be for the newsletter that was for December 2, 2025 as we work to try and catch up. I…
  continue reading
 
nanoKVM Vulnerabilities The nanoKVM device updates firmware insecurely; however, the microphone that the authors of the advisory referred to as undocumented may actually be documented in the underlying hardware description. https://www.tomshardware.com/tech-industry/cyber-security/researcher-finds-undocumented-microphone-and-major-security-flaws-in…
  continue reading
 
We are so sorry that this is being released late. Its been a bit busy lately. This podcast was aired last wednesday and covers news notes from what people have found as well as our topic of the worst passwords of 2025. Stop">https://www.forbes.com/sites/zakdoffman/2025/11/06/stop-using-every-password-now-thats-on-this-list/">Stop Using Every Passwo…
  continue reading
 
AutoIT3 Compiled Scripts Dropping Shellcodes Malicious AutoIT3 scripts are usign the FileInstall function to include additional scripts at compile time that are dropped as temporary files during execution. https://isc.sans.edu/diary/AutoIT3%20Compiled%20Scripts%20Dropping%20Shellcodes/32542 React2Shell Update The race is on to patch vulnerable syst…
  continue reading
 
What happens to crypto when everything on-chain becomes encrypted by default? In this episode of the Ledger Podcast, host Kyle O’Brien (COS @ Zama) sits down with Rand Hindi (Founder & CEO @ Zama) and Charles Guillemet (CTO @ Ledger) to dive deep into privacy, fully homomorphic encryption (FHE), hardware security, and why institutional adoption is …
  continue reading
 
Ryan is joined by Outshift by Cisco’s VP of Engineering Guillaume De Saint Marc to discuss the future of multi-agent architectures as microservices, the challenges and limitations of the infrastructure for these multi-agent systems, and the importance of communication protocols and interoperability in order to build decentralized and scalable archi…
  continue reading
 
Nation-State Attack or Compromised Government? [Guest Diary] An IP address associated with the Indonesian Government attacked one of our interns' honeypots. https://isc.sans.edu/diary/Nation-State%20Attack%20or%20Compromised%20Government%3F%20%5BGuest%20Diary%5D/32536 React Update Working exploits for the React vulnerability patched yesterday are n…
  continue reading
 
Attempts to Bypass CDNs Our honeypots recently started receiving scans that included CDN specific headers. https://isc.sans.edu/diary/Attempts%20to%20Bypass%20CDNs/32532 React Vulnerability CVE-2025-55182 React patched a critical vulnerability in React server components. Exploitation is likely imminent. https://react.dev/blog/2025/12/03/critical-se…
  continue reading
 
Loading …
Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play