Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Ep. 65 - "Months, Not Years": The Five Eyes AI Warning and Your Security Program

On June 22, 2026, the heads of all six Five Eyes cyber agencies — GCHQ, CISA, the NSA, ASD, the Canadian Centre, and New Zealand's GCSB — signed a rare joint statement: AI has rewritten the cyber risk timeline, and it's months, not years. Host Tova Dvorin and offensive security expert Adrian Culley unpack why AI is collapsing the window between vulnerability and exploit, why "having controls" isn't the same as proven controls, and why legacy systems are now strategic liabilities for the board, not the IT team. A clear-eyed look at validation, assumed breach, and what CISOs should do Monday morning.

Ep. 64 - The Mythos Hype Index: What AI Really Did to the Zero-Day Curve

Every CISO is asking it: now that frontier models like Claude Mythos and ChatGPT 5.5 have real offensive cyber capability, are zero days surging? Host Tova Dvorin and SafeBreach offensive engineer Adrian Culley dig into the mid-2026 data — GTIG, Mandiant M-Trends, Rapid7, AISI — and find the curve moved in shape, not volume. Inside: the two AI "firsts" (Big Sleep and a 2FA-bypass exploit), why commercial spyware explains the rebound, the negative-seven-day time-to-exploit, and why defender deployment is the real bottleneck.

Ep. 68 - Why OWASP's AIVSS Scores Agentic AI at Maximum Risk

OWASP just shipped AIVSS—an entirely new vulnerability scoring methodology built for autonomous AI agents, where a compromised orchestrator can score a perfect 10. Host Tova Dvorin and Adrian break down the "amplification principle": why a 2.1 CVSS finding becomes a 7.1 in the wrong agent, how persistent memory and broad tool access expand every blast radius, and what EchoLeak-style attacks already mean for real deployments.

Backup Azure DevOps Test Plans w GitProtect.io | Ochrona QA i Test Suites

Zabezpiecz pełny cykl zapewnienia jakości w swoich projektach programistycznych! W wersji 2.4 GitProtect wprowadza wyczekiwaną funkcję: pełną kopię zapasową oraz odzyskiwanie planów testowych Azure DevOps Test Plans (w tym powiązanych zestawów testów — Test Suites). W tym wideo pokazujemy, jak łatwo dodać i skonfigurować plan ochrony dla Azure DevOps, zachowując przy tym pełną strukturę powiązań między przypadkami testowymi, konfiguracjami i historią ich wykonania.

GitProtect.io & Active Directory Integration (LDAP) | User Management Automation

User management in GitProtect.io is becoming even simpler! In version 2.4, we introduced direct integration with Active Directory via the LDAP/LDAPS protocol. Streamline your administration and replicate your company's hierarchy in minutes. In this tutorial, you'll learn how to establish a secure AD connection, handle verification certificates, and map AD groups to corresponding roles inside the GitProtect.io console.

What Is Dark AI? How Scammers Are Using Artificial Intelligence Against You

AI isn't just being used for good. Dark AI — artificial intelligence weaponized for malicious purposes — is behind a new wave of scams, phishing attacks, deepfakes, and cybercrimes that are harder than ever to detect. Scammers are now using AI to clone voices, fake video calls, impersonate people you trust, and generate convincing phishing messages at massive scale — all powered by dark GPTs built without safety restrictions.

The $50K per hour network downtime dilemma

Networking and network security stakes are high. Like really high. Infrastructure downtime costs teams at minimum $50,000 per hour, according to Business Wire. So what’s standing in the way of a faster, more coordinated response? Join Netskope and Tines for a live conversation on how you can move from reactive networking and network security operations to proactive response. Learn how to bridge the gap between detection and resolution across modern hybrid environments, improving reliability, accelerating response times, and reducing the manual work that slows teams down.

Who Gets to Control AI? The Governance Crisis Nobody's Solving

The EU just pushed back its AI Act enforcement by 16 months. The US is deregulating. China is governing through infrastructure. And the UK is doing nothing and hoping for the best. Welcome to Razorwire, the podcast where we share our take on the world of cybersecurity with direct, practical advice for professionals and business owners alike. I'm Jim and in this episode, I'm joined by Richard Cassidy, Field CISO at Rubrik, and Jonathan Care, Head of the AI Practice at KuppingerCole.