
This week on the podcast, we discuss a research post that defines a new attack technique against AI tools called Cryptographic Context Injection. Before that, we cover an authentication bypass vulnerability in CircleCI’s MCP server after discussing 3.6 million records stolen from the Azure tenants of several large organziations.
Aug 25
31 min

This week on the podcast, we discuss a new White House memorandum that creates a program to authorize American private companies to begin conducting offensive cyber operations. Before that, we discuss a vulnerability write up for a Citrix Netscaler flaw before covering yet another prompt injection vulnerability in a popular AI tool.
Aug 17
39 min

This week on the podcast, we cover a series of alerts form US law enforcement and intelligence sources describing Iran-backed attacks against municipal water supply utilities. Before that, we give an update on the OpenAI and HuggingFace rogue AI saga before discussing a research post on MCP configuration file risks.
Aug 10
41 min

This week on the podcast, we review HuggingFace’s technical write up of their recent run in with a rogue OpenAI model, as well as their CEO’s demands from OpenAI in response. We then cover an interesting research whitepaper that describes a side channel attack that could let AI transcribe typed text by an audio recording alone. We end with a threat intelligence report about DNS Poisoning attacks against hotel Wi-Fi systems.
Aug 3
41 min

This week on the podcast, we cover the crazy saga that unfolded between the popular open-source AI platform Hugging Face and the frontier AI lab OpenAI. After that, we discuss a recent WordPress remote code execution vulnerability WP2Shell and the research process that Searchlight Cyber followed to uncover it sing artificial intelligence. Finally, we end with a quick analysis of Palo Alto Global Protec’s authentication bypass vulnerability CVE-2026-0257
Jul 27
37 min

This week on the podcast we cover the key takeaways from the just-released Cyber Hygiene Report from WatchGuard. After that, we discuss a recent alert from CISA and other international security agencies on state-sponsored attacks against network equipment. We end with an interesting research post on exfiltrating data from Claude’s memory.
Jul 20
44 min

Enter our AI Innovation Challenge: https://secure.watchguard.com/aichallenge
This week on the podcast, we review an after action report from CISA on a security incident they responded to back in May. After that, we cover a vulnerability in Amazon’s Q Extension for VSCode before covering a research post from Microsoft on Giga Wiper.
Jul 13
31 min

This week on the podcast, we take a look at the impact of the US National Institute of Standards and Technology (NIST) backing away from their previous role of enriching vulnerability CVE records. Before that, we discuss Huntress’s insider threat drama before ending with an AI-assisted vulnerability discovery in the Front Gate Tickets platform.
Jul 6
32 min

This week on the podcast we welcome back Ryan Estes from the WatchGuard Endpoint Security attestation team to discuss a recent deep dive analysis of NoisyS0cks. After that, we give an update on the latest trends in Ransomware targeting SMBs.
Jul 2
31 min

This week on the podcast, we unpack the Claude Fable 5 release and subsequent revocation following an export control directive from the US federal government. After that, we cover the recent FortiBleed credential dump, discussing its likely origins, before reviewing the most recent Windows 0day disclosed by Nightmare Eclipse.
Jun 22
34 min
Load more
