Exploring AI Network Protocols; Vulnerability Truths and Guarantees; and the News - O'Shea Bowens, Jeremiah Grossman - ESW #469

Exploring AI Network Protocols; Vulnerability Truths and Guarantees; and the News - O'Shea Bowens, Jeremiah Grossman - ESW #469

Author: Security Weekly Productions July 27, 2026 Duration: 1:50:45

Segment 1 - Interview with O'Shea Bowens

What do we really know about "AI Network Protocols"? Network security is about to get popular all over again.

Generative AI caused a disruptive explosion across all of tech and every company's roadmap. The move from chatbots to AI agents doubled down on that disruption. Now agents need to talk to each other?

Boom: we have MCP. A2A. Universal Commerce Protocol. General purpose and specialized protocols for agent communication. What does this look like from the network perspective, though? O'Shea Bowen joins us to answer this question, and he thinks the results are interesting enough to spark a resurgence of interest in network security tooling.

Segment Resources:

  1. https://www.nsa.gov/Portals/75/documents/Cybersecurity/CSIMCPSECURITY.pdf?ver=bmgiSbNQLP6Z_GiWtRt6bg%3D%3D
  2. https://labs.cloudsecurityalliance.org/research/csa-research-note-mcp-security-crisis-20260504-csa-styled/
  3. https://cyberone.security/blog/building-an-ai-security-strategy-without-stalling-business-growth

Segment 2 - Interview with Jeremiah Grossman

Jeremiah Grossman on why we've been measuring cyber risk wrong for 20 years

After decades helping shape modern web security, and building companies that were ultimately acquired by Synopsys and Tenable, Jeremiah Grossman believes cybersecurity has arrived at an inflection point. His argument is a provocative one: for years, the industry has optimized around the wrong metrics. His latest venture, Root Evidence, aims to help security teams identify which risks are most likely to cause meaningful business loss, and he has the evidence - real-world breach data, cyber insurance claims, digital forensics intelligence, attack surface intelligence, and observed attacker behavior - to back it up.

Find all of CyberRisk TV's Black Hat 2026 coverage at: https://www.securityweekly.com/blackhat

Segment 3 - Weekly Enterprise News

Finally, in the enterprise security news,

  1. We vibe check the AI model situation
  2. hidden devices in California cars causes concerns
  3. OpenAI's models escape sandboxes and breaches another AI company, totally by accident, they promise!
  4. Grok Build uploads all your files, totally by accident, they promise!
  5. Eclipsium debuts a firmware version of patch tuesday!
  6. HTTP gets a new method
  7. common problems with incident response
  8. Which one of the security weekly hosts would consider switching to a "dumb phone"?

All that and more, on this episode of Enterprise Security Weekly.

Show Notes: https://securityweekly.com/esw-469


Dive into the ever-evolving world of digital defense with the Security Weekly Podcast Network (Video). Produced by Security Weekly Productions, this network isn't a single perspective but a comprehensive hub where different facets of cybersecurity come into focus through distinct, dedicated shows. You'll find episodes from series like Application Security Weekly, Business Security Weekly, Paul's Security Weekly, Enterprise Security Weekly, and Security Weekly News, all curated in one feed. This structure means that whether you're analyzing code, shaping corporate policy, or managing infrastructure, there's relevant content for you. The discussions move beyond headlines, offering practical analysis and expert insights that help make sense of complex threats and solutions. By blending technology deep dives with timely news commentary, this video podcast provides a multi-dimensional view of the field, suitable for professionals who need to stay informed and enthusiasts curious about how security shapes our digital lives. It’s a consistent resource for anyone looking to understand not just what is happening in cybersecurity, but why it matters and how to respond.
Author: Language: English Episodes: 50

Security Weekly Podcast Network (Video)
Podcast Episodes
Fixing Vulns Is Harder Than Finding Them - PSW #936 [not-audio_url] [/not-audio_url]

Duration: 2:02:34
In the news this week: InfraTrust and knowing what to patch Adversary in the middle triggered command injection Exploitarium again FreeRDP comes with free vulnerabilities AI breaking out of sandboxes on its own Wordpress…
1999 Called and It Wants It's Exploits Back - PSW #935 [not-audio_url] [/not-audio_url]

Duration: 2:11:49
This week, our technical segment covers a new open-source tool written by Paul (and Claude) that helps you keep your Linux systems up to date and assess supply chain risks. It's called "fettle" and is a pure Python imple…