Back to (or Start) Fundamentals? - Rajesh Khazanchi - PSW #923

Back to (or Start) Fundamentals? - Rajesh Khazanchi - PSW #923

Author: Security Weekly Productions April 24, 2026 Duration: 2:03:37

This week:

Larry's in the host seat and chaos ensues. We dig into:

  • A very questionable story about tracking a warship with a $5 Bluetooth tracker
  • Serial-to-IP devices quietly sitting in critical infrastructure… and full of holes
  • New York regulators mandating MFA and asset inventory—aka CIS Control #1 is now breaking news
  • A ransomware negotiator who decided to double-dip (and landed in prison)
  • "Brand new" hard drives that come preloaded… with someone else's data
  • The Vercel breach: no zero-day, just shadow IT, stolen tokens, and bad decisions
  • AI-driven vulnerability discovery and the looming "vulnpocalypse"
  • Quantum crypto debates: real threat or just another security boogeyman?
  • Mirai is STILL alive—because apparently we still don't patch routers
  • And yes… Flipper Zero makes an appearance (no, you're not hacking airplanes… calm down)

Then, we rebroadcast an interview from RSAC.

Breach Readiness for Measurable Risk Reduction in the Age of AI Cyber leaders no longer debate whether a breach will occur. What has changed is the speed and scale at which AI now enables those breaches. The real question is how far an attacker can move once inside. In this conversation, Rajesh Khazanchi explores why breach readiness, including AI-assisted containment, measurable blast radius reduction, and pervasive microsegmentation, has become mission-critical for business continuity in 2026.

This segment is sponsored by ColorTokens. Visit https://securityweekly.com/colortokensrsac to learn more about them!

Show Notes: https://securityweekly.com/psw-923


Dive into the ever-evolving world of digital defense with the Security Weekly Podcast Network (Video). Produced by Security Weekly Productions, this network isn't a single perspective but a comprehensive hub where different facets of cybersecurity come into focus through distinct, dedicated shows. You'll find episodes from series like Application Security Weekly, Business Security Weekly, Paul's Security Weekly, Enterprise Security Weekly, and Security Weekly News, all curated in one feed. This structure means that whether you're analyzing code, shaping corporate policy, or managing infrastructure, there's relevant content for you. The discussions move beyond headlines, offering practical analysis and expert insights that help make sense of complex threats and solutions. By blending technology deep dives with timely news commentary, this video podcast provides a multi-dimensional view of the field, suitable for professionals who need to stay informed and enthusiasts curious about how security shapes our digital lives. It’s a consistent resource for anyone looking to understand not just what is happening in cybersecurity, but why it matters and how to respond.
Author: Language: English Episodes: 100

Security Weekly Podcast Network (Video)
Podcast Episodes
Scanning The Internet with Linux Tools - PSW #919 [not-audio_url] [/not-audio_url]

Duration: 1:03:26
In this segment, we will explore some pretty awesome tools for scanning the Internet, with a focus on network edge devices. We'll bring it all together with Claude Code and look at some sample results. Tools include: Sho…
Say Easy, Do Hard - Crypto-Agility - BSW #440 [not-audio_url] [/not-audio_url]

Duration: 52:28
With Q-day getting closer, regulatory guidance pushing firms to migrate to quantum security in the next five years, and an extensive remediation backlog waiting to be discovered, security leaders must start their quantum…