Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

GitHub repositories compromised, Webworm targets Europe, fake Outlook & cybercriminal VPN [326]

In this episode of The Cybersecurity Defenders Podcast, we discuss some intel being shared in the LimaCharlie community. Originally recorded: Friday May 22, 2026 Support our show by sharing your favorite episodes with a friend, subscribe, give us a rating or leave a comment on your podcast platform. This podcast is brought to you by LimaCharlie, maker of the SecOps Cloud Platform, infrastructure for SecOps where everything is built API first. Scale with confidence as your business grows.

Vanta vs Drata: Key differences for enterprise GRC - 2026

Compare Vanta and Drata across integrations, automation, and enterprise GRC capabilities. This video breaks down key differences in testing, AI-driven remediation, and adaptive scoping. Learn why Vanta is built for complex enterprise compliance programs. – GRC platforms may look similar at first glance, but the differences become clear at enterprise scale. In this video, we compare Vanta and Drata across the capabilities that matter most for growing and complex organizations.

Access the App, Not the Network - with Cato Private Access

See how Cato Private Access helps organizations access the app, not the network. In this demo, we show how IT teams can deliver secure access to private applications without routing or firewall changes, while maintaining application-level access control, centralized policy enforcement, and visibility through the Cato Management Application. We also highlight how Cato manages private application access through the Cato SASE platform, enabling a more unified, operationally efficient approach than traditional connector-based architectures.

How AI Is Changing What Security Teams Can Actually Do | Nancy Phillips, Ensemble Health Partners

Threat actors used to need days or weeks to exploit a vulnerability. Now AI lets them do it in seconds. Most security teams are already buried. Too many tools, too many alerts, manual processes that can't keep pace, and break-glass changes that get made and forgotten. Keeping everything configured and optimized correctly is a full-time job on its own. Nancy Phillips, Chief Information Security Officer at Ensemble Health Partners: "I want my teams doing the innovative stuff. Not the mundane, repeatable stuff.".

Businesses have NO IDEA how bad AI attacks can be

There are two types of companies: those who have been compromised and those who will be. Mid and small businesses are walking into this reality without understanding what AI has changed. On The Cybersecurity Defenders Podcast, David Chernitzky, CEO and co-founder of Armour Cybersecurity, explains why the gap between how large organizations understand AI-driven threats and how smaller ones do is widening fast.

From PentestGPT to production: The state of AI-assisted offensive security with Charles Grandjean

Join us for this week's Defender Fridays as Charles Grandjean, CTO and Co-founder at Hexiagon AI, breaks down where AI-assisted pen testing actually stands today and what it means for both red teams and defenders. At Defender Fridays, we delve into the dynamic world of information security, exploring its defensive side with seasoned professionals from across the industry. Our aim is simple yet ambitious: to foster a collaborative space where ideas flow freely, experiences are shared, and knowledge expands.

Just vibe code it...

Sometimes unlimited tokens and rippin' guitar riffs can't solve every problem. The best builders know what NOT to build. Vibe coding might cut down on time, but that's only a fraction (20%) of the total software lifecycle cost. The other 70–80%? Maintenance, security patches, compliance updates. The slow grind of keeping it alive in production. When it comes to something as complex and critical as keeping your security airtight, depth wins over speed every time.