Visibility with EDR/MDR is still important, 'the basics' are impossible, and the news - Rob Allen - ESW #460

Visibility with EDR/MDR is still important, 'the basics' are impossible, and the news - Rob Allen - ESW #460

Author: Security Weekly Productions May 25, 2026 Duration: 1:44:54

Interview with Rob Allen from Threatlocker

This week, Rob Allen from Threatlocker is with us to discuss the importance of EDR and MDR visibility. We discuss some real world attacks and anecdotes where EDR was able to save the day when threats were missed by other controls.

Topic: Do the basics, they said. Easier said than done.

Guillaume and Adrian discuss the futility of attempting to do all the foundational work standards, best practices, and regulations expect of organizations. Adrian has given up. Fortunately, Guillaume has some excellent advice and hope to share on this front.

The weekly enterprise news

Finally, in the enterprise security news,

  1. a really interesting vibe check
  2. funding
  3. acquisitions
  4. the verizon DBIR
  5. we give a tutorial on how to leak AWS keys on github
  6. OH NEVERMIND, SOMEONE AT CISA ALREADY MADE THE TUTORIAL
  7. agents versus agents
  8. exploitbench
  9. the vulnpocalypse
  10. robot dogs are SO EASY to take out, we don't need to be too scared of them yet

All that and more, on this episode of Enterprise Security Weekly.

Show Notes: https://securityweekly.com/esw-460


Dive into the ever-evolving world of digital defense with the Security Weekly Podcast Network (Video). Produced by Security Weekly Productions, this network isn't a single perspective but a comprehensive hub where different facets of cybersecurity come into focus through distinct, dedicated shows. You'll find episodes from series like Application Security Weekly, Business Security Weekly, Paul's Security Weekly, Enterprise Security Weekly, and Security Weekly News, all curated in one feed. This structure means that whether you're analyzing code, shaping corporate policy, or managing infrastructure, there's relevant content for you. The discussions move beyond headlines, offering practical analysis and expert insights that help make sense of complex threats and solutions. By blending technology deep dives with timely news commentary, this video podcast provides a multi-dimensional view of the field, suitable for professionals who need to stay informed and enthusiasts curious about how security shapes our digital lives. It’s a consistent resource for anyone looking to understand not just what is happening in cybersecurity, but why it matters and how to respond.
Author: Language: English Episodes: 100

Security Weekly Podcast Network (Video)
Podcast Episodes
Security Researchers Are Threat Actors - PSW #929 [not-audio_url] [/not-audio_url]

Duration: 2:01:49
This week in the security news: Security Researchers Are Threat Actors according to Microsoft Hands-free malicious firmware If you've ever typed "ls" in Windows, this is for you Cisco makes more patches, wants you to pay…
BadHost, Dead CTFs, Exploding NPMs, and the Verizon DBIR - ASW #385 [not-audio_url] [/not-audio_url]

Duration: 45:22
We dedicate an episode to catching up on appsec news with Kalyani Pawar. We see parsing problems that led to the BadHost vuln, which exposed lots of LLMs, MCPs, and agents to potential compromise. We wonder where to look…
Linux Supply Chain How-To - PSW #928 [not-audio_url] [/not-audio_url]

Duration: 2:04:18
This week we have a technical segment focused on Linux! Paul released a script that helps you get a handle on Linux supply chain security, and new features allow you to assess the state of Secure Boot on your Linux syste…