Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Ep. 61 - Blind With Scissors: The NSA's MCP Warning for Every Agentic AI Deployment

The NSA just published a rare advisory on the Model Context Protocol (MCP)—the plumbing under nearly every agentic AI deployment of the last 18 months—and the verdict is stark: optional authentication, no token lifecycle, silent behavior changes, and no logging to catch any of it. Host Tova Dvorin sits down with defensive cybersecurity expert Adrian Culley to unpack the eight risk categories, the WhatsApp and GitHub MCP exploits, and why MCP is now a testable validation surface.

MCP is the New Attack Surface -- and Your Controls Probably Don't Cover It #ai #mcp

AI just handed attackers a new front door — and most security teams don't even know it exists. Model Context Protocol (MCP) is the emerging standard that lets AI agents talk to your tools, your data, and each other. It's also the most significant new attack surface to emerge in years. The NSA noticed. Your adversaries already have.

5 Mindset Shifts for Security Teams with Gal Yosef

In this episode, Gal Yosef, Head of Product Management at AlgoSec, explores the five critical mindset shifts security teams must make to successfully secure today’s hybrid and multi-cloud environments. As organizations expand across AWS, Azure, GCP, and on-premises infrastructure, traditional security approaches often create silos, visibility gaps, and operational complexity.

From Small Town to Global Clients - Growth, AI & Cash Flow Lessons | Podcast with V Gautham Navada

V Gautham Navada, founder of ForthFocus, shares his entrepreneurial journey from freelancing in a small town to serving 350+ clients across 8+ countries. The discussion centered around "forthfocus" and its "10 Years of Vision, Innovation & Growth.

DSPM Is a Live Map of Your SENSITIVE DATA - Not a Quarterly Scan

In this video, you will learn why agentic browsers like ChatGPT Atlas, Perplexity Comet, and Arc have turned the browser into a double agent inside your enterprise, how shadow adoption is bypassing MDM and endpoint controls in days, and why indirect prompt injection creates an attack surface your file-based DLP cannot see. You will also learn how data lineage replaces noisy content inspection with origin-and-destination tracking, so you can stop the leak without blocking the tools your business depends on.

Provably better data

Every security vendor says their data is better. Corelight decided to test that claim directly. Using real nation-state attack scenarios, including Salt Typhoon-related activity, the same AI model was evaluated against multiple security data sources to measure investigation accuracy, threat visibility, and incident response coverage. The only variable was the data.

Shifting CEO Focus: From Detection to Containment in Cybersecurity

Discover why CEOs need to rethink their cybersecurity strategies for 2023. Instead of merely asking, "Are we patched?" they should focus on "Are we exposed?" Emphasizing the importance of containment over detection, this short highlights the critical role of AI in defense strategies and the necessity for swift action to prevent widespread business disruptions. Learn how CEOs can effectively prioritize their efforts on critical systems and empower their teams to act with authority, ensuring business continuity in the face of evolving cyber threats.

Michael Shaulov on Bloomberg: Introducing Flow for Stablecoins

Fireblocks CEO Michael Shaulov sat down with Bloomberg at Money 20/20 Europe to launch Flow, a new product that lets payment companies, merchants, and fintechs accept and send stablecoins as simply as Plaid streamlined traditional payments. He breaks down where stablecoin demand is actually coming from, why cross-border corridors are driving adoption, and what a MiCA-compliant euro stablecoin could mean for dollar dominance.