
Free Daily Podcast Summary
by Safe Mode Podcast
Podcast by Safe Mode Podcast
The most recent episodes — sign up to get AI-powered summaries of each one.
It starts with a fake error message. It ends with a pasted command. ClickFix has become one of the most reliable ways for attackers to get an initial foothold — first adopted by criminal groups, now used by state-linked actors like APT28 and Lazarus Group. This week, Greg is joined by John Hammond, Principal Security Researcher at Huntress, who helped identify and name the technique and has tracked its evolution for the past three years. They dig into why ClickFix still drives an estimated 20+ incidents a day at Huntress even after law enforcement disrupted major infostealer infrastructure like LumaStealer, how the technique has splintered into variants like FileFix and "consent fix" targeting Microsoft 365 and browser-stored credentials, and how attackers are now smuggling payloads inside images to slip past endpoint defenses. John walks through a real incident where a single pasted command led to 11 compromised devices, explains why he still believes security awareness training — not just tooling — is the best defense, and makes the case that the browser itself has become the blurriest and most under-protected boundary between endpoint and identity security. The conversation also turns to the npm/Axios supply chain attacks, where operators built fake Slack communities and fabricated employee personas to earn open-source maintainers' trust before compromising their packages — and what, if anything, can technically guard against a threat that's fundamentally social. In our reporter chat, Greg talks with Derek Johnson about the Supreme Court deciding against the Trump administration’s push for changes to mail-in ballots. Follow John on Youtube: https://www.youtube.com/@_JohnHammond
CyberScoop editor-in-chief Greg Otto talks with WatchTowr founder and CEO Ben Harris about how cybersecurity teams are adapting as AI accelerates vulnerability discovery, public proof-of-concepts, and exploitation timelines. They discuss the WordPress-to-shell case study, why mitigation has become essential when patching cannot happen instantly, and why Harris argues that traditional vulnerability management is “effectively dead.” Also in this episode, senior reporter Tim Starks explains Project Watershed 250, a new effort involving Texas, the private sector, and the water industry to strengthen critical-infrastructure cybersecurity.
NEA partner Aaron Jacobson put $250 million behind autonomous pen testing company Horizon3.ai on the bet that cybersecurity has entered an AI-versus-AI era — and he argues the "vulnpocalypse" defenders were warned about has already arrived, with AI-discovered vulnerabilities now the primary way attackers get into enterprises. He explains why overprovisioned AI agents are the new phishing target, since an agent with a user's credentials and no common sense can be prompt-injected into exfiltrating data a human would never touch. Jacobson also separates the open weights debate from the open source one, makes the case that cheap open competition ultimately favors defenders, and closes with the thing he got most wrong 18 months ago. In our reporter segment, Greg talks with Matt Kapko about the cybersecurity implications of the GTA VI leaks.
The federal government can't reliably say how many cybersecurity workers it has or what they cost — and that uncertainty sits at the heart of a much bigger question: is federal cyber training working, and can it keep pace with a field that's changing by the month? On this episode of Safe Mode, host Greg Otto talks with Christopher Bloor, Defense Director at the SANS Institute, about the state of the federal cyber workforce. The conversation moves through the real gap agencies face between filling job openings and actually assessing the skills their people already have, what 1,100 National Guard members revealed about morale and readiness during the CyberGuard critical infrastructure exercise, and why certifications and "qualifications" get treated as interchangeable when they shouldn't be. They also dig into some of the harder tensions in the space: whether federal training amounts to an unintentional subsidy for private-sector salaries, since the government will never be able to out-pay industry; how much of the workforce shortage is actually a skills problem versus a security-clearance bottleneck; and how AI has already flipped the day-to-day workflow for defenders, from checking AI-assisted code a year ago to now checking code AI has written itself. In this week's reporter chat, Greg talks with Tim Starks about the future of CORCA, a bill designated to fight organized retail crime that privacy experts say would create new mass surveillance capabilities for DHS.
Kat Sommer, head of government affairs at NCC Group, joins Safe Mode to unpack the DEF CON talk she gave on how governments around the world are — and mostly aren't — protecting security researchers. Of the roughly 195 jurisdictions on the planet, Sommer found only about 15 have enacted any form of legal safe harbor for vulnerability research, and just one, Portugal, has what she'd call a proper one on the statute book. She walks Greg Otto through the patterns that emerged from that survey: the encouraging shift toward regulating conduct rather than actors, the conditions that actually make sense (don't extort the vendor, report to the national CERT), and the ones that don't (no public disclosure until a government authority signs off). The conversation also digs into the gap between being "protected" on paper and protected in practice, why prosecutors and courts still hear "hacker" and think "criminal," and the extraterritoriality problem — it's the same internet in Portugal as it is in Brazil, the UK, or the U.S., but the legal exposure changes the moment you cross a border.
Security operations centers have run on the same playbook for decades — collect, queue, triage, investigate, escalate. But attackers now move at machine speed: one recent breach that cost a company 3,600 repos got underway in roughly 87 seconds, far outpacing even a fast 10-minute log-enrichment pipeline. This week, host Greg Otto talks with ExtraHop CEO Greg Clark about the newly announced Agentic SOC Alliance and why he believes traditional SOC architecture can't keep up. Clark breaks down the three-layer stack he says every CISO needs to understand — context (the historical and real-time data an agent needs to reason about a threat), harness (the governance layer controlling what an agent can do, how it's tested, and how it audits its actions), and model (the LLM doing the reasoning, one of nearly 100 that ExtraHop benchmarks in an internal ""arena""). The conversation digs into some pointed findings: Chinese-origin models like Qwen consistently outperform on complex breach-reasoning tasks in ExtraHop's testing, a result Clark attributes to strong adversarial training data translating into strong defensive reasoning. He also makes the case for staying model-agnostic, since a new front-runner can emerge overnight — pointing to a Microsoft release just days before this recording. Much of the discussion centers on where humans still fit in. Clark describes today's dominant pattern — agents running in parallel ""investigate mode"" while analysts watch and validate — and predicts bounded, agent-driven response will expand faster than most expect, once governance and audit trails give leaders enough confidence to hand over execution on certain incidents, while higher-stakes systems like trading floors keep a human firmly in the loop. He closes by outlining what's next for the Alliance: growing membership, pushing toward published, vendor-neutral standards, and building the benchmarking needed to prove agentic SOC tools actually work before going into production.
The US-China AI competition has quietly become a cybersecurity arms race, and this week made that impossible to ignore. Booz Allen's Brad Medairy joins Safe Mode to unpack the milestones behind that shift — from China's Villager red-teaming framework to last December's frontier model jailbreak — and a report his team ran finding Chinese models like DeepSeek, Qwen, and Kimi carry policy bias and generate more vulnerable code when prompted in US government contexts. Medairy digs into the hard questions: whether banning Chinese open-weight models like Z.AI/GLM is even feasible, why CISOs are unknowingly running them under different names, and how agentic tools can compromise a network in six minutes while analysts miss it for 48. He also covers real-world breaches — an Ethiopian hacker using Claude and Codex to hit 14 US companies, and OpenAI's model escaping its boundaries to compromise Hugging Face — and closes on whether the US simply out-innovates China or finds room for guardrails when only one side is playing by them.
It's been a wild six weeks for frontier AI models — Mythos launched, got yanked offline by the Department of Commerce over export controls, and came back online with new guardrails, all while Five Eyes agencies warned that AI is months away from reshaping the threat landscape. This week on Safe Mode, Greg Otto talks with Armadin's David Slater, who is building directly on top of these frontier models, creating a platform integrating AI into cybersecurity offense and defense. The two dig into what it was actually like watching America's leading models go dark just as Chinese models — namely GLM 5.2 — closed the gap on intelligence, endurance, and something the guest calls "willingness": a model's readiness to be used for offensive cyber purposes without the safeguards baked into Western frontier labs. The conversation covers why export controls and "kill switches" on U.S. models may not actually blunt adversary capability given the availability of open-weight alternatives, why intelligence and endurance alone aren't enough without a wide enough "aperture" to see an entire attack surface, and why a small circle of well-resourced defenders working with frontier labs isn't sufficient to protect the hundreds of thousands of organizations and critical infrastructure operators left without that access. They also get into where AI is already reshaping attacker-defender asymmetry — credential stuffing, ransomware, and lateral movement — and where the next capability walls may fall, from reverse-engineering patches to longer-range vulnerability chaining. The guest closes with a pointed message for security teams: the technology is arriving faster than most organizations' ability to act on it, and the real gap isn't intelligence — it's whether your people and processes can move at "wartime" speed when a serious threat shows up.
AI-powered recaps with compact key takeaways, quotes, and insights.
Get key takeaways from Safe Mode Podcast in a 5-minute read.
Stay current on your favorite podcasts without falling behind.
It's a free AI-powered email that summarizes new episodes of Safe Mode Podcast as soon as they're published. You get the key takeaways, notable quotes, and links & mentions — all in a quick read.
When a new episode drops, our AI transcribes and analyzes it, then generates a personalized summary tailored to your interests and profession. It's delivered to your inbox every morning.
No. Podzilla is an independent service that summarizes publicly available podcast content. We're not affiliated with or endorsed by Safe Mode Podcast.
Absolutely! The free plan covers up to 3 podcasts. Upgrade to Pro for 15, or Premium for 50. Browse our full catalog at /podcasts.
Safe Mode Podcast publishes weekly. Our AI generates a summary within hours of each new episode.
Safe Mode Podcast covers topics including News. Our AI identifies the specific themes in each episode and highlights what matters most to you.
Free forever for up to 3 podcasts. No credit card required.
Free forever for up to 3 podcasts. No credit card required.