# security weekly (podcasts) — RSS Amplifier

Recent posts from the 2 feeds in the RSS Amplifier directory that cover security weekly.

Page: <https://rssamplifier.com/topics/security-weekly/podcasts>  
Feed: <https://rssamplifier.com/topics/security-weekly/podcasts.md>

---

## [Augmenting Threat Intel Analysis with Agents - Chris Wallis, Sai Kiran Uppu, Ramin Farassat - ASW #396](https://aswaudio.libsyn.com/augmenting-threat-intel-analysis-with-agents-chris-wallis-sai-kiran-uppu-ramin-farassat-asw-396)

_2026-08-18 · Application Security Weekly (Audio)_

All sorts of cybersecurity disciplines are adopting agents to help humans save time and automate routine activities. Sai Kiran Uppu describes his work on creating a platform for agents to analyze external threat intel, examine internal systems, and present triage decisions to operators. This type of work is especially useful to orgs that deal with petabytes of data and thousands of systems. And,…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_396_1--fa976697-41d5-4cec-9b6a-d00433dc203b--audio-converted--d44ef9a0-b224-465d-9788-a2f075148cee.mp3?dest-id=626765)

## [The Breached WiFi AI Ports... What? - PSW #939](https://pswonly.libsyn.com/the-breached-wifi-ai-ports-what-psw-939)

_2026-08-13 · Paul's Security Weekly (Audio)_

In the security news this week: North Carolina ports and contingency plans Back to paper and pencils Midnight Blizzard compromises hotel Wi-Fi DNS strikes again Captive portals, stolen credentials, and nation-state scale Phishing-resistant MFA Goodbye SMS and voice authentication Cornflake RAT and Chaco Shell The NPM worm Hundreds of compromised packages AI lowers the barrier to mass exploitation…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_939_1--1a2e0a3f-4795-4436-b3f6-dbf29ff898a1--audio-converted--4b46ad80-8e8a-48e6-9c70-6c9d543cd9cb.mp3?dest-id=388575)

## [Using LLMs for Vuln Discovery - Rishi Sharma - ASW #395](https://aswaudio.libsyn.com/using-llms-for-vuln-discovery-rishi-sharma-asw-395)

_2026-08-11 · Application Security Weekly (Audio)_

Finding flaws has always been a focus of appsec. And now with open source projects and open weight models orgs have modern tools to review code and conduct pentests. Rishi Sharma describes the motivation behind creating a platform of LLM-driven security tools and the effective ways to keep the tools in scope, on budget, and for engineering teams. We talk about how prompts influence LLM activity,…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_395_1--cf92f8a4-4d9e-4e0e-bd28-95e606f21c16--audio-converted--e799047d-3ceb-4981-8564-9249931e8c00.mp3?dest-id=626765)

## [When AI Commits Felonies - PSW #938](https://pswonly.libsyn.com/when-ai-commits-felonies-psw-938)

_2026-08-06 · Paul's Security Weekly (Audio)_

This week: When you are not at summer camp you can't read about it The Fettle continues Using the CFAA against AI Social contracts are not security models VSCode extentions, again Bugtraq is back! NVIDA, LVFS, and unraveling AI infrastructure More routers that come with backdoors Do we care about LPE? Even more AI that finds vulnerabilities When AI breaks its own guardtails Visit…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_938_1--046b0c88-c532-45ec-bf01-0b37da2fe4e2--audio-converted--2a7fb449-645a-4b98-a3c3-a63374b77eba.mp3?dest-id=388575)

## [Prompting for Patches That Fix Vulns Without Adding New Ones - Keith Hoodlet - ASW #394](https://aswaudio.libsyn.com/prompting-for-patches-that-fix-vulns-without-adding-new-ones-keith-hoodlet-asw-394)

_2026-08-04 · Application Security Weekly (Audio)_

There's already an increase in volume of security flaws found by LLMs. And orgs are already turning to LLMs to write code. So, what happens when orgs lean on LLMs to create patches for those security flaws? Keith Hoodlet gives an exclusive early look at his team's recent research into the success, quality, and failures of LLM-generated security patches. Notably, they saw scenarios across a…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_394_1--befad5cc-9d50-4650-a46d-2475b8908916--audio-converted--8cc7db00-d2aa-407d-9b8e-f186d4099621.mp3?dest-id=626765)

## [Sandwich Hats - PSW #937](https://pswonly.libsyn.com/sandwich-hats-psw-937)

_2026-07-30 · Paul's Security Weekly (Audio)_

In the security news: 2.2 million cars, one shared Bluetooth key JFrog tries to spin an AI 0-day into a win Sextortion scammers recycling ShinyHunters' leaks The first hack ever, from 1966 Prompt injection as a service, $150 a month Cisco's mystery "static credential" BMCs still on the internet, still handing out hashes Scattered Spider duo sentenced over the TfL hack Air-gapped data sneaking out…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_937_1--782dff8e-fa1e-414a-a2bb-223b243f2601--audio-converted--9253b8f0-4dfa-4808-88d5-be60af21b4be.mp3?dest-id=388575)

## [Inside the OWASP Agent Security Regression Harness Project - Mert Satilmaz - ASW #393](https://aswaudio.libsyn.com/inside-the-owasp-agent-security-regression-harness-project-mert-satilmaz-asw-393)

_2026-07-28 · Application Security Weekly (Audio)_

Orgs need to be able to use agents, MCPs, and LLMs in ways that don't lead to unexpected actions and undesirable outcomes. The OWASP Agent Security Regression Harness project is an approach for defining customizable scenarios and testing whether those systems fail against known security threats. Mert Saltimaz talks about the background of the project, how orgs can use it as they bring more LLMs…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_393_1--63928861-c181-43b5-b39c-b0374d62d61a--audio-converted--3f8728c1-8b3e-4db3-bc67-7209557ceb71.mp3?dest-id=626765)

## [Fixing Vulns Is Harder Than Finding Them - PSW #936](https://pswonly.libsyn.com/fixing-vulns-is-harder-than-finding-them-psw-936)

_2026-07-23 · Paul's Security Weekly (Audio)_

In the news this week: InfraTrust and knowing what to patch Adversary in the middle triggered command injection Exploitarium again FreeRDP comes with free vulnerabilities AI breaking out of sandboxes on its own Wordpress RCE DMA dangers Nightmware eclypse is at it again Fortisandbox Turning AI to the dark side more prompt injection Secure boot is broken, still and again... Visit…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_936_1--c19269f7-a737-4679-b89c-a013a780729d--audio-converted--8fa2225e-528e-4b7c-a5e6-f08a3688aaad.mp3?dest-id=388575)

## [MacOS Security Design Features, Flaws, And Futures - Patrick Wardle - ASW #392](https://aswaudio.libsyn.com/macos-security-design-features-flaws-and-futures-patrick-wardle-asw-392)

_2026-07-21 · Application Security Weekly (Audio)_

Appsec often frames usability and security as at odds with each other. Apple's software has famously emphasized the importance of usability while also creating a solid security foundation. Patrick Wardle talks about how he's seen malware shift from Windows to macOS, how Apple's aggressive stance on deprecation benefits security, and the areas of the OS where he still sees plenty of opportunity for…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_392_1--dd54e5ec-1c44-4b95-a180-6783e400a446--audio-converted--7f99787d-5369-4d3b-ab57-177186e2cb91.mp3?dest-id=626765)

## [1999 Called and It Wants It's Exploits Back - PSW #935](https://pswonly.libsyn.com/1999-called-and-it-wants-its-exploits-back-psw-935)

_2026-07-16 · Paul's Security Weekly (Audio)_

This week, our technical segment covers a new open-source tool written by Paul (and Claude) that helps you keep your Linux systems up to date and assess supply chain risks. It's called "fettle" and is a pure Python implementation that gives you even more features than previously discussed! Then in the security news: The GodDamn Ransomware CMMC suspended Holy Microsoft Tuesday! Lessons learned…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_935_1--a508db48-0da0-448b-a3b9-d2e9df19930c--audio-converted--0cb57bd7-d3ee-49ff-a222-2ee4cbe503f6.mp3?dest-id=388575)

## [Watch chovy live code (Sponsored)](https://crawlproof.com/a/AJe6LtAUukvP)

_2026-07-16 · **Sponsored**_

Join Mosh Coding streams with collaborative screen sharing and remote control, open source.

## [Discovering & Securing Your AI Agent Attack Surface - Jeremy Snyder - ASW #391](https://aswaudio.libsyn.com/discovering-securing-your-ai-agent-attack-surface-jeremy-snyder-asw-391)

_2026-07-14 · Application Security Weekly (Audio)_

While LLMs and agents are new to appsec and everyone else, a lot of AI security requirements translate to well-known API security requirements. Jeremy Snyder helps us frame the OWASP LLM Top 10 into five layers in order to help orgs understand and prioritize their attack surface. A lot of orgs don't have to deal with model-specific threats or building their own GPU architecture, but every org…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_391_1--b923eabc-93ec-481b-b200-9712afc64bbb--audio-converted--842a0eae-dff5-44a7-a6d1-43f6f626e610.mp3?dest-id=626765)

## [AI Is Annoying & IoT Devices Still Get Hacked - PSW #934](https://pswonly.libsyn.com/ai-is-annoying-iot-devices-still-get-hacked-psw-934)

_2026-07-09 · Paul's Security Weekly (Audio)_

In the security news: Son of Anton strikes again! HalluSquatting and using Claude to defend itself CISA KEV's Revolving Door LLM's hallucinate and companies get sued Additionally - GitLost Yet even more Linux vulnerabilities Citrix just keeps bleeding Old hardware is new again A sneak peak into next week's tech segment Tenda hidden backdoors We're still talking about Mirai Today was not a good day…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_934_1--d8a96728-38be-4eb5-b646-90ae1b93c3be--audio-converted--47bdfde7-6500-451e-8593-eb769a89acbd.mp3?dest-id=388575)

## [Defense-in-depth strategies for securing mobile applications - Ryan Lloyd - ASW #390](https://aswaudio.libsyn.com/defense-in-depth-strategies-for-securing-mobile-applications-ryan-lloyd-asw-390)

_2026-07-07 · Application Security Weekly (Audio)_

Mobile applications have unique risks and threat models compared to server-side applications and infrastructure. Consequently, they need different strategies to ensure their business logic and workflows well secured. We'll dive into some of these defense-in-depth strategies and why they are important to mobile applications. Securing workflows goes beyond input validation and pattern matching…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_390_1--4b0e21d2-3c69-44d3-be69-a71716049e47--audio-converted--588e1185-e8ad-46c1-8e0a-daee242b1d64.mp3?dest-id=626765)

## [Linux Tech Segment & Vulnerabilities Galore - PSW #933](https://pswonly.libsyn.com/linux-tech-segment-vulnerabilities-galore-psw-933)

_2026-07-02 · Paul's Security Weekly (Audio)_

This week we have a technical segment based on the response to "Atomic Arch", an updated open-source tool to help you catch malicious packages. In the security news: Exploitarium A hot messy summer of vulnerabilities AI Squatting Linux LPE - no shortage of those Fingerprinting Favicons Windows 10 extended Can Clothes Make You Invisible to Facial Recognition? Fable and Mythos for All Do we care…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_933_1--47c4a298-d0fc-44a1-bb51-dd6ecdfa1ac0--audio-converted--8ddd6fe7-4412-4f62-8b3d-9029cc74d8ba.mp3?dest-id=388575)

## [Reducing Attack Surface & Evaluating Efficiency in Agents - Itamar Apelblat, David Goldschlag - ASW #389](https://aswaudio.libsyn.com/reducing-attack-surface-evaluating-efficiency-in-agents-itamar-apelblat-david-goldschlag-asw-389)

_2026-06-30 · Application Security Weekly (Audio)_

SquidBleed reveals another vuln that's been lurking for decades, but its real lesson is in managing an attack surface. Regardless of whatever programming language you use, removing code is one of the best security steps you can take, followed by changing default configs to turn off uncommon features and ancient protocols. The Linux kernel's removal of strncpy is another example of managing attack…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_389_1--04bc3dd7-5d66-4f9e-8875-8b4b79524713--audio-converted--4728e53f-1f99-409e-aba7-6668d59eec40.mp3?dest-id=626765)

## [Cloud Visibility, Fortibleed, hacking things the easy way - Sandy Bird - PSW #932](https://pswonly.libsyn.com/cloud-visibility-fortibleed-hacking-things-the-easy-way-sandy-bird-psw-932)

_2026-06-25 · Paul's Security Weekly (Audio)_

First up is Sandy Bird from Sonrai discussing how to protect our cloud infrastructure! This segment is sponsored by Sonrai Security. Visit https://securityweekly.com/sonrai to learn more about them! Next up in the security news: Help, I am Fortibleeding Cisco SD-WAN needs help The secret life of probe requests Help, I am Squidbleeding XSS to RCE and why CVSS isn't the full picture TVs spy on you…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_932_1--1643c94b-5182-4bc1-84b2-e93ee37bbf23--audio-converted--0e0788aa-47e1-4ce6-87d0-442d9f77b432.mp3?dest-id=388575)

## [How AI Is Reshaping Identity Security at the Infrastructure Layer - Amit Masand, Neha Duggal, Ev Kontsevoy - ASW #388](https://aswaudio.libsyn.com/how-ai-is-reshaping-identity-security-at-the-infrastructure-layer-amit-masand-neha-duggal-ev-kontsevoy-asw-388)

_2026-06-23 · Application Security Weekly (Audio)_

Appsec has seen machine identities from daemons and processes to services, microservices, and cloud accounts. And now we have agents. Ev Kontsevoy talks about what it means to have engineers and agents interacting in an environment, and why a focus on actions can be more effective than roles. One of the biggest challenges in securing agents along with all of the other identities that organizations…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_388_1--6fe3d1ea-3b06-4331-b9f9-44f84846c8e2--audio-converted--4feda274-71b3-49a5-8ff9-c903097a2f8d.mp3?dest-id=626765)

## [GPS, PCI, ARCH, OH MY! - PSW #931](https://pswonly.libsyn.com/gps-pci-arch-oh-my-psw-931)

_2026-06-18 · Paul's Security Weekly (Audio)_

In the security news this week: GPS spoofing and satellite jamming are getting way too accessible Rekeying satellites in orbit sounds terrifying Cyber extortion and whether criminals still have ethics AI helping cybersecurity research... and drug discovery Data centers eating regional power grids Nuclear, solar, natural gas, and the future of AI infrastructure What happens when GPS stops being…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_931_1--3b37901a-b4ad-46d7-bdda-8103bbf841d4--audio-converted--e28a95d0-558d-41f0-b773-46c14f721fc6.mp3?dest-id=388575)

## [Why Does It Matter Who or What Created the Code? - Matias Madou - ASW #387](https://aswaudio.libsyn.com/why-does-it-matter-who-or-what-created-the-code-matias-madou-asw-387)

_2026-06-16 · Application Security Weekly (Audio)_

Agents and LLMs are creating and reviewing code. They're a new tool to help developers write software and they're a new abstraction layer for expressing what code should do. But if we're focused on determining whether code is secure, where do we focus our attention on ensuring a secure outcome? Matias Madou talks about the challenges of finding metrics to help answer these questions. We walk…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_387_1--b1d61246-de74-4b4f-9df4-12a4e6763414--audio-converted--fd4c76f0-d8e5-4873-a823-17dfd8dc475e.mp3?dest-id=626765)

## [Home Internet From Space (Sponsored)](https://crawlproof.com/a/Hwntsg261k4e)

_2026-06-16 · **Sponsored**_

Residential satellite internet that brings connectivity to homes beyond conventional networks

## [Trolling Microsoft With Vulnerabilities - PSW #930](https://pswonly.libsyn.com/trolling-microsoft-with-vulnerabilities-psw-930)

_2026-06-11 · Paul's Security Weekly (Audio)_

In the security news: Trolling Microsoft With Vulnerabilities Fable 5 loves guardrails Binwalk vulnerability EMBA and local models EDRChoker AI worms Interesting Arista vulnerability added to KEV BOD 26-04 and stakeholder specific vulnerability categorization Bring your own execution environment Homelab tips MikroTik routers as interceptors Ivanti Sentry and irony Smart TV botnets Privacy laws…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pswonly/PSW_930_1--f761717e-cde3-489d-9777-deb5a5263b0a--audio-converted--6ff641cd-7293-4c2e-9a9f-e8c27461fbac.mp3?dest-id=388575)

