Full Show Notes
Segment One

Live from RSAC 2026: AI, Zero Trust & Cybersecurity Trends You Need to Know – RSAC26 #1

Key Moments
  • 0:00 - Welcome to RSAC 2026 – Live from Broadcast Alley
  • 0:30 - What to Expect This Week on CyberRisk TV
  • 0:59 - First Impressions: The Scale of RSAC
  • 01:37 - 20 Years of RSAC – What’s Changed?
  • 02:29 - RSAC Takes Over San Francisco
  • 03:09 - Cybersecurity Buzzwords to Watch (AI, Zero Trust, Autonomous)
  • 04:12 - Are These Trends Actually New?
  • 05:10 - Inside the Expo: Startups vs Big Vendors
  • 06:03 - How Big Is RSAC Really?
  • 06:42 - Why RSAC Is a Must-Attend Event
  • 07:35 - AI Disruption: Who Will Survive?
  • 09:04 - Beyond Moscone: The RSAC Experience
  • 10:03 - Everyone Is Here – The Cybersecurity Gathering
  • 10:36 - Cybersecurity Swag & Fun Moments
  • 11:03 - Cybersecurity Market Trends & IPO Talk
  • 12:18 - AI vs Cybersecurity Stocks – Market Insights
  • 13:06 - Exit Strategies for Cybersecurity Companies
  • 13:38 - Funny Take: Getting Rich in Cybersecurity
  • 13:53 - Old School Security: Punch Cards Demo
  • 15:25 - Classic Hacks & Infinite Loops Explained
  • 16:04 - Why You Should Tune in This Week
  • 16:26 - What’s Coming Next on CyberRisk TV
Segment Two

Modern Phishing Attacks Are Under Multi-Channel Siege – Erich Kron – RSAC26 #1

Key Moments
  • 0:00 - RSAC 2026 Interview with Eric Kron (KnowBe4)
  • 0:25 - Phishing: The Ongoing Cybersecurity Threat
  • 0:40 - How AI Is Making Phishing More Dangerous
  • 01:11 - Why Traditional Phishing Clues Are Gone
  • 01:46 - AI Efficiency: Attackers Doing More with Less
  • 02:07 - Defending with AI: New Detection Strategies
  • 02:29 - Rise of Polymorphic Phishing Attacks
  • 03:09 - Detecting Phishing Through Context & Intent
  • 03:55 - Phishing Beyond Email: Teams, Slack & WhatsApp
  • 05:07 - How Attackers Move Across Communication Channels
  • 05:40 - Smishing Tactics & Social Engineering Tricks
  • 06:33 - AI Chatbots Powering Modern Phishing Attacks
  • 07:19 - Real-World Example: AI Chatbots in Action
  • 08:52 - New Defense Tools: Phish Alert for Teams
  • 09:54 - Encryption Creates Security Blind Spots
  • 10:00 - The Challenge of Stopping Smishing Attacks
  • 11:20 - Human Awareness: The Best Line of Defense
  • 11:54 - Trust Issues: Why Familiar Platforms Are Risky
  • 12:35 - Rise of Physical Mail & Toll Scam Attacks
  • 13:14 - Account Takeover: The Bigger Threat
  • 13:47 - Risks of Single Sign-On (SSO) Compromise
  • 14:08 - How to Protect Against Modern Phishing
  • 14:38 - Why AI Is Essential for Cyber Defense
  • 15:36 - The Future of AI Agents in Security
  • 15:41 - Closing Thoughts & RSAC 2026 Coverage
Guest
CISO Advisor at KnowBe4

Erich Kron, CISO Advisor at KnowBe4 is an author, a podcast host and regular contributor to cybersecurity industry publications. He is a veteran information security professional with over 30 years of experience in the medical, aerospace, manufacturing, and defense fields. His experience has fueled his passion for helping to address the human side of cybersecurity.

He is the former security manager for the US Army’s 2nd Regional Cyber Center and holds CISSP, CISSP-ISSAP, SACP, and many other certifications. Erich has worked with information security professionals around the world to provide the tools, training, and educational opportunities to succeed in Information Security.

Segment Three

From Reactive to Autonomous: Real-Time Endpoint Intelligence in the Age of AI – Tim Morris – RSAC26 #1

Key Moments
  • 0:00 - RSAC 2026 Interview with Tim Morris (Tanium)
  • 0:30 - What “Autonomous” Means in Cybersecurity
  • 01:06 - From Reactive to Autonomous Security
  • 02:53 - Why We Must Rethink Autonomous Strategy
  • 03:09 - The Foundation Problem: Bad Data & Visibility
  • 04:15 - Why Asset Visibility Is Still Broken
  • 04:53 - The Industry’s Biggest Blind Spot Explained
  • 05:53 - Fragmented Tools & Data Silos in Security
  • 07:48 - Can Agentic AI Solve the Data Problem?
  • 09:06 - The Evolution of Tanium’s Architecture
  • 10:30 - Why Traditional Data Lakes Fall Short
  • 11:30 - Real-Time Visibility: The Game Changer
  • 13:30 - Distributed AI Agents on Endpoints Explained
  • 14:13 - The Future: Autonomous Security with AI Agents
  • 15:39 - Final Thoughts & RSAC 2026 Coverage
Guest
Chief Security Advisor at Tanium

Tim is a visionary leader and an IT and cyber security expert, with decades of experience across industries. He joined Tanium after retiring from Wells Fargo, where he was an SVP and led several teams in cyber operations, engineering, and research. He holds 25 US patents and has written many articles on cyber security topics. He is also a trusted source of insights and opinions for major publications and web shows, where he shares his knowledge and passion for the field.

Tim started his IT career as a developer and sysadmin in manufacturing, then moved to banking, where was a software packaging, scripting, active directory administration, and M&A projects. He has been dedicated to cybersecurity since 2009, specializing in areas such as detection and response, systems and patch management, vulnerability assessment, web-content filtering, malware analysis, red-teaming, and digital forensics.

Segment Four

The Identity Crisis of Agentic AI – Ron Rasin – RSAC26 #1

Key Moments
  • 0:00 - Welcome to RSAC 2026 with Silverfort
  • 0:23 - What Silverfort Does in Identity Security
  • 01:16 - Human vs Non-Human vs AI Identities
  • 01:37 - The Identity Sprawl Problem
  • 02:56 - Why Runtime Access Control Matters
  • 03:16 - Securing Service Accounts with Virtual Fencing
  • 03:43 - Least Privilege for Non-Human Identities
  • 04:15 - The Risk of AI Using Human Credentials
  • 04:32 - Mapping the Full AI Identity System
  • 06:11 - Why Admin-Time Security Is Too Slow for AI
  • 06:47 - Managing AI Risk Across Third-Party SaaS
  • 07:37 - Silverfort’s Integrations with AI Platforms
  • 07:47 - How the Copilot Studio Integration Works
  • 09:06 - Policy-Based Runtime Control for AI Agents
  • 09:54 - Catching Overprivileged AI at Runtime
  • 10:36 - Reporting AI Permissions to Leadership
  • 11:09 - Educating Developers to Build Secure Agents
  • 11:31 - Treating AI Agents Like Human Identities
  • 11:59 - Avoiding Old IAM Mistakes with AI Accounts
  • 13:14 - Delegating Only the Right Privileges to AI
  • 13:41 - Reducing AI Access to What It Actually Needs
  • 13:56 - Solving AI Identity Risk at Runtime
  • 14:22 - What Makes Silverfort Different
  • 15:25 - Closing Thoughts and RSAC 2026 Coverage
Guest
Chief Strategy Officer at Silverfort

As Chief Strategy Officer, Ron leads Silverfort’s strategic alliances with technology partners, as well as our growth operations and business strategy. He brings more than 15+ years of hands-on product management experience and cyber security expertise. Prior to joining Silverfort, Ron was the Director of Product Management at Claroty, and held product management roles at Wix and NCR. Before that Ron served as a Team Leader at the 8200 elite cyber unit of the Israel Defense Forces. Ron holds a B.A in Economics from Tel Aviv University.

Segment Five

X-PHY Delivers Hardware-Enforced Security for the Age of AI Agents – Camellia Chan – RSAC26 #1

Key Moments
  • 0:00 - Intro – RSAC 2026 Interview with X-PHY CEO
  • 0:31 - What is X-PHY? Hardware-Based Cybersecurity Explained
  • 01:16 - How Hardware Stops Zero-Day Attacks & Human Error
  • 01:32 - AI Inside SSD: Detecting Ransomware at the Hardware Level
  • 02:16 - Server Defender: Monitoring All 7 Layers of Infrastructure
  • 03:11 - Why Software Security Can Be Bypassed
  • 03:21 - Hardware vs Software Security: Key Differences
  • 03:43 - AI for Anomaly Detection in Endpoints & Servers
  • 04:16 - MCP Explained – “USB for AI”
  • 06:09 - Why MCP is Powerful (and Risky)
  • 07:08 - X-PHY + MCP: Hardware Meets AI Security
  • 08:04 - Instant Lockdown: Stopping Attacks at Firmware Level
  • 08:50 - Preventing Data Exfiltration with Hardware Control
  • 09:39 - Hardware Identity + MCP Security Integration
  • 10:22 - Building a “Community of Trust” with X-PHY
  • 11:07 - Cross-Enterprise Trust & Device Authentication
  • 12:12 - Real-World Use Cases (Government & Contractors)
  • 13:26 - Why Hardware Identity is Hard to Compromise
  • 14:18 - Firmware-Level Security vs Traditional HSM
  • 14:59 - Final Thoughts & Closing
Guest
Co-Founder and CEO at X-PHY

Camellia Chan is the Co-Founder and CEO of X-PHY Inc., a pioneering cybersecurity company delivering hardware-based protection at the physical layer. She leads the company’s global strategy, innovation, and partnerships, with a focus on AI-embedded solutions that provide real-time, autonomous defense against modern cyber threats. Under her leadership, X-PHY has developed a growing portfolio of patented technologies and launched award-winning solutions like the X-PHY® Cyber Secure SSD.

Segment Six

Zero Trust That Actually Ships: Moving From Strategy Decks to Real Security – Rohan Ravindranath – RSAC26 #1

Key Moments
  • 0:00 - Intro – Zero Trust That Actually Ships (RSAC 2026)
  • 0:20 - The Problem: Zero Trust Stuck in PowerPoint
  • 01:16 - Why Zero Trust Fails in Real Enterprises
  • 02:10 - Security as a “Gate” Is the Core Issue
  • 03:10 - Cloud, Hybrid, and the Security Gap Explained
  • 04:16 - Why Teams Optimize for Speed, Not Security
  • 05:03 - Shift Left: Embedding Security from Day One
  • 05:36 - What Is “Zero Trust as Code”?
  • 06:30 - How to Build Secure Cloud Landing Zones
  • 07:30 - Enforcing Security by Default (Not Optional)
  • 08:10 - Multi-Vendor Environments & Policy Automation
  • 08:40 - Drift Detection & Auto-Remediation Explained
  • 08:55 - How Zero Trust Scales Across APIs & AI Systems
  • 09:20 - Agentic AI in Security – What It Can (and Can’t) Do
  • 10:40 - Why AI Needs Business Context to Work
  • 11:20 - Is Your Infrastructure Ready for AI Security?
  • 12:30 - 90-Day Zero Trust Roadmap (Overview)
  • 12:45 - Days 0–30: Protect Crown Jewel Applications
  • 13:40 - Microsegmentation & Default Deny Strategy
  • 14:30 - Days 30–60: Kill VPNs & Move to ZTNA
  • 15:10 - Identity-Based Security & Continuous Validation
  • 15:30 - Days 60–90: Automate with Zero Trust Pipelines
  • 16:10 - Biggest Mistake: Treating Everything as Critical
  • 16:20 - Final Thoughts & Key Takeaways
Guest
Founder & CEO at Zappsec

Rohan Ravindranath is a cloud and security modernization strategist known for turning Zero Trust from concept into production reality. As Founder & CEO of Zappsec Technologies, he leads global infrastructure transformation programs that converge network modernization, cloud landing zones, microsegmentation, and AI-ready architecture into a unified execution model.

Rohan has directed large-scale initiatives spanning 1,000’s of international sites, embedding identity-driven controls and workload-level segmentation directly into modernization programs.

He is passionate about bridging the gap between security theory and operational deployment, helping enterprises enforce policy, reduce attack surface, and accelerate innovation simultaneously.

Segment Seven

Agentic AI: Don’t Make Your SOC Faster at Being Wrong – Georges Bossert – RSAC26 #1

Key Moments
  • 0:00 - Intro – Agentic AI in Cybersecurity (RSAC 2026)
  • 0:30 - The Growing Threat of Agentic AI
  • 01:00 - AI in SOC: Opportunity vs Risk
  • 01:26 - Why AI Adoption Starts with Data (Not LLMs)
  • 02:24 - “Garbage In, Garbage Out” in AI Security
  • 02:49 - Why Generic LLMs Fail in SOC Environments
  • 03:35 - The Danger of “Failing Faster” with AI
  • 03:54 - AI Agents = Junior Analysts (Key Analogy)
  • 04:55 - Why Context Is Critical for AI Security
  • 05:37 - AI vs Humans: The Problem of False Confidence
  • 06:10 - When AI Lies (And Why It’s Dangerous)
  • 07:06 - Chatbots vs Real AI Reasoning Systems
  • 07:39 - How Runbooks Power AI Security Automation
  • 09:29 - Feeding Context: Data, Users, Networks & Threats
  • 09:35 - Can AI Agents Actually Improve Over Time?
  • 10:40 - AI Reasoning Playbooks Explained
  • 11:41 - Why Chain of Thought Matters in Cybersecurity
  • 12:34 - The Rise of AI-Powered Threat Detection
  • 13:22 - Biggest Risk: Rushing AI in the SOC
  • 14:45 - When AI Slows You Down Instead of Helping
  • 15:12 - The 3 Pillars of Effective AI Security Operations
  • 16:57 - Final Thoughts & Key Takeaways
Guest
Co-Founder, Chief Technology and Product Officer at Sekoia.io

Georges Bossert is the Co-founder and Chief Technology and Product Officer of Sekoia.io. An engineer by training and PhD graduate from CentraleSupélec, his research focused on applying machine learning and grammatical inference to cybersecurity.

With over 15 years of experience, he has worked across the full spectrum of cybersecurity — from reverse engineering to leading technology and product strategy.

A former reservist in the French Army’s cyber operations division, Georges now serves as a board member and lecturer at the University of Rennes. He is passionate about innovation, mentoring, and building resilient teams. He was named *Innovator of the Year 2024* by *Le Point* magazine and a 2025 *Cyberscoop 50* finalist.

Segment Eight

The SDLC Blind Spot: Why Breaches Start with Identity, Not Code – Raj Mallempati – RSAC26 #1

Key Moments
  • 0:00 - Welcome to RSAC 2026 – Developer Security Trends
  • 0:22 - Why Identity & Access Management Still Matters
  • 0:48 - The Hidden Root Cause of Vulnerabilities (Not Just CVEs)
  • 02:29 - Human vs Non-Human Identities & AI Agents Explained
  • 02:56 - Why Enterprises Know the Risk But Ignore It
  • 04:01 - The Visibility Problem in DevSecOps
  • 04:35 - Least Privilege & Reducing Attack Surface
  • 06:17 - Understanding Toxic Interactions in Security
  • 06:52 - Insider Risk vs External Threats in Dev Environments
  • 08:19 - Correlating Data Across Dev Tools for Better Security
  • 08:33 - Managing Shadow AI & Developer Tool Sprawl
  • 09:27 - The Rise of Unsanctioned LLMs in Development
  • 11:35 - Overprivileged Access – The 5% Usage Reality
  • 12:13 - How CISOs Can Secure Without Slowing Developers
  • 13:45 - Balancing Security with Developer Productivity
  • 14:02 - Zero Trust & Least Privilege in Practice
  • 14:30 - Developer Freedom vs Security Governance
  • 14:45 - What is Developer Risk & Governance Platform?
Guest
CEO and Co-founder at BlueFlag Security

Raj Mallempati is CEO & Co-founder of BlueFlag Security. Prior to launching BlueFlag, he most recently served as COO CIEM at Microsoft, through Microsoft’s acquisition of his prior company CloudKnox Security (acquired 2021). Prior to joining CloudKnox, Raj was the Senior Vice President of Marketing at Malwarebytes. Raj has also held positions as the Vice President of Global Marketing at MobileIron, Vice President of Product Marketing at Riverbed Technology, and was the Director of Marketing and Business Strategy at VMware. He holds an MBA from The Wharton School, University of Pennsylvania, MS, Computer Science from the University of Texas, and a B.Tech from Indian Institute of Technology, Madras.

Segment Nine

Introducing Legion Investigator: Goal-Oriented AI Investigations – Ely Abramovitch – RSAC26 #1

Key Moments
  • 0:00 - RSAC 2026 Interview – Legion Security & AI Investigations
  • 0:56 - What is Legion Investigator? Goal-Oriented AI Explained
  • 02:08 - Task-Based vs Goal-Based AI in Cybersecurity
  • 02:41 - Deterministic vs Exploratory Security Workflows
  • 03:04 - Why Traditional Playbooks Fail in Real Investigations
  • 03:53 - AI Extending Investigations Beyond Human Limits
  • 04:33 - Can AI Investigations Be Trusted? Auditability Explained
  • 05:58 - Guardrails, Permissions & Explainable AI Decisions
  • 06:32 - From AI Discovery to Automated Security Workflows
  • 06:51 - How AI Learns & Adapts to New Security Environments
  • 07:14 - Personalized AI for Enterprise Security Operations
  • 08:20 - Why One-Size Security Playbooks Don’t Work
  • 09:31 - Cyber Attacks at Machine Speed – Why AI Defense Matters
  • 10:53 - Phishing, Polymorphic Malware & Modern Threats
  • 12:14 - Capturing Tribal Knowledge with AI Investigations
  • 13:27 - Faster Incident Response with AI (MTTD, MTTR)
  • 14:43 - Measuring ROI of AI in Security Operations
  • 15:36 - Automating Repetitive Security Tasks with AI
  • 16:34 - Human + AI Collaboration in Cybersecurity
Guest
CEO & Co-founder at Legion Security

Ely Abramovitch is the Co-Founder and CEO of Legion Security, the world’s first browser-native AI SOC platform. With a background leading product management for Microsoft Sentinel, he has a proven track record of scaling multi-billion dollar security solutions. Abramovitch’s vision focuses on automating complex threat investigations by having AI learn directly from human analyst workflows. He is also a former jazz pianist whose transition into mathematics and technology has shaped his creative approach to solving enterprise security challenges.

Segment Ten

Delinea: Redefining Identity Security for the Agentic AI Era – Phil Calvin – RSAC26 #1

Key Moments
  • 0:00 - RSAC 2026 Interview – Identity Security with Delinea
  • 0:29 - Evolution of Identity Management in Cybersecurity
  • 01:20 - Authentication vs Authorization Explained
  • 02:35 - Why VPNs & Traditional Security Are Failing
  • 02:51 - The Danger of Static Credentials & Overprivileged Accounts
  • 03:25 - Just-In-Time Access & Least Privilege Explained
  • 03:55 - Why sudo & Root Access Still Fail Security
  • 05:05 - Centralized Authorization Policies for Enterprises
  • 05:34 - Real-World Analogy: Just-In-Time Security Controls
  • 06:36 - The Explosion of Non-Human Identities & AI Agents
  • 07:40 - Managing Identity Risk Across Cloud & Hybrid Environments
  • 08:38 - The “Wild West” of Cloud & Third-Party Access Risks
  • 09:31 - Ephemeral Infrastructure & Hidden Security Threats
  • 10:07 - Governance, Auditing & Identity Visibility Challenges
  • 11:44 - Continuous Discovery & Risk Prioritization for CISOs
  • 12:28 - Identifying High-Risk Accounts & Access Control Strategy
  • 13:11 - AI, Agents & MCP Servers – The Future of Identity Security
  • 14:18 - Securing APIs & Machine-to-Machine Communication
  • 14:25 - Delinea + StrongDM Acquisition Explained
  • 15:40 - Why Identity is the Oldest Cybersecurity Problem
  • 16:20 - Agentic AI Risks & The Future of Access Control
Guest
Chief Product Officer at Delinea

Phil Calvin brings more than 25 years of software development, technical leadership and entrepreneurial experience to Delinea. His areas of expertise include technical strategy, cloud architecture, and engineering executive management. Prior to Delinea, Phil spent nearly a decade at Salesforce in a variety of architectural and engineering leadership roles, most recently leading the Platform Engineering organization and focusing on making the Salesforce platform trusted, accessible, and scalable.

Segment Eleven

Privileged by Design: AI Agents and the New Identity Risk to Production Systems – Shashwat Sehgal – RSAC26 #1

Key Moments
  • 0:00 - RSAC 2026 Interview – AI Security Challenges with P0 Security
  • 0:50 - The Explosion of AI Tools & Agentic Frameworks
  • 01:46 - Why Security Teams Can’t Keep Up with AI Innovation
  • 02:21 - Identity Security Fundamentals: Connectivity, Auth & Authorization
  • 04:24 - Why Authorization is the Biggest Problem in AI Security
  • 04:49 - AI Agents vs Human Identity – Who Gets Access?
  • 05:59 - Securing AI Agents Before Production Deployment
  • 06:26 - Guardrails, Ownership & Governance for AI Systems
  • 08:46 - Just-In-Time Access & Short-Lived Credentials Explained
  • 09:31 - Shadow AI, Open Source Agents & Governance Gaps
  • 10:56 - Lessons from Cloud Security Failures (S3, IAM Risks)
  • 11:24 - Why Traditional Identity Tools Are Failing Today
  • 12:37 - API-Based Security: The New Identity Control Layer
  • 13:24 - Identity as the New Perimeter in Cybersecurity
  • 14:37 - Organizational Challenges in Identity & AI Security
Guest
CEO and co-founder at P0 Security

Shashwat Sehgal is the Co-Founder and CEO of P0 Security. He’s spent most of his career building security and observability products for developers, DevOps, and security teams.

Shashwat is passionate about solving the problem of cloud access security and helping security engineers’ control ‘who has access to sensitive resources in their clouds.’

He enjoys playing tennis, spending time with his family, teaching his son how to play chess, and geeking out on all things security.

Segment Twelve

Downtime: The New Economic Threat – Christy Wyatt – RSAC26 #1

Key Moments
  • 0:00 - RSAC 2026 Interview – Cyber Resilience & Downtime Risks
  • 0:28 - Why Downtime is the Biggest Hidden Cyber Threat
  • 01:18 - The Real Cost of Cyber Attacks: Recovery Time
  • 01:58 - Why Businesses Lose Money During Downtime
  • 02:56 - Cyber Recovery Challenges & Business Impact
  • 04:10 - Why Some Companies Never Recover from Cyber Attacks
  • 04:56 - The Importance of Testing Incident Response & Recovery
  • 05:47 - Measuring Cyber Resilience: Downtime Metrics Explained
  • 06:40 - Risk Tolerance & Cybersecurity Strategy for Boards
  • 08:18 - Why Traditional Recovery Plans Fail in Real Life
  • 09:35 - Remote Work, AI & New Cybersecurity Risks
  • 10:12 - Third-Party Risk & Dependency Failures Explained
  • 11:21 - Why Disaster Recovery Testing Often Fails
  • 13:13 - Endpoint Security & Device Resilience Explained
  • 14:37 - AI, Complexity & The Growing Cyber Risk Landscape
  • 15:42 - Rapid Recovery: Rebuilding Devices After Ransomware
  • 16:11 - The Future of Cyber Resilience & AI-Driven Recovery
Guest
President & CEO at Absolute Security

Christy Wyatt is President and CEO of Absolute Security, an enterprise Cyber Resilience leader.

As a recognized business and cybersecurity industry visionary, Christy has deep experience and expertise spanning cybersecurity, enterprise mobility, embedded platforms, IoT, enterprise software, and data science.
Prior to Absolute Security, she served as the Chairman and CEO of Dtex Systems. Before that, she was President and CEO of Good Technology (acquired by Blackberry). Christy has held technology and business leadership roles at Citigroup, Motorola, Apple, Palm, and Sun Microsystems. She currently serves on the board of directors of LM Ericsson and Silicon Labs. She has previously served on the boards of Quotient Technologies, Good Technology, Dtex, Centrify, and the Linux Foundation.

Christy has been recognized as an SC Media Women in Cybersecurity Leader, CEO of the Year by Globe and Mail, a Top 50 Women Leaders in SaaS, an Inc. Magazine Top 50 Women Entrepreneurs of America, an Information Security’s CEO of the Year, and a Fierce Wireless “Most Influential Women in Wireless.”

Segment Thirteen

Scripted Sparrow: A Prolific BEC Group – John Wilson – RSAC26 #1

Key Moments
  • 0:00 - RSAC 2026 Interview – Email Security & BEC Threats
  • 0:25 - What is Fortra? Cybersecurity Products & Services Overview
  • 02:44 - Introducing Scripted Sparrow BEC Threat Group
  • 03:04 - How Business Email Compromise (BEC) Attacks Work
  • 03:30 - Targeting Accounts Payable Teams with Fake Invoices
  • 04:27 - Why Attackers Use Executive Coaching Scams
  • 05:24 - Global BEC Attacks: US, UK, Sweden & Beyond
  • 06:20 - AI & Multilingual Phishing Attacks Explained
  • 07:10 - Why International Targets Are More Vulnerable
  • 07:37 - How Advanced Phishing Emails Bypass Detection
  • 08:19 - Active Defense & Scam Baiting Explained
  • 09:23 - What is Active Defense in Cybersecurity?
  • 10:15 - Disrupting Scammers: Domains, Emails & Takedowns
  • 11:20 - How Threat Intelligence Improves Security Products
  • 12:08 - Sharing Cyber Threat Intelligence with Law Enforcement
  • 13:15 - Why Social Engineering Still Works in 2026
  • 14:07 - Human Risk in Cybersecurity & Phishing Awareness
  • 14:58 - Using Real Phishing Simulations for Training
Guest
Senior Fellow, Threat Research at Fortra

John Wilson has been combating email-based fraud since 2006, when he developed an authentication-based anti-phishing solution as CTO of Brandmail Solutions. John continued his mission to rid the world of email fraud at Agari. As part of their threat intelligence team, John assisted Microsoft and the FS-ISAC with the B54 Citadel botnet takedown by providing data related to Citadel botnet infections and by acting as a declarant in the civil forfeiture action filed in US District Court.

John joined Fortra through the acquisition of Agari in June 2021. In his current role at Fortra, he continues to research email scams and conduct experiments in “active defense”. In early 2023, John again worked with Microsoft, this time on a takedown effort aimed at curbing the illegal use of Fortra’s Cobalt Strike adversary simulation solution.

John holds a B.S. in Computer Science and Engineering from MIT. He has spoken at a variety of security conferences including RSA, FS-ISAC, Aviation ISAC, NCFTA Disruption, and the Microsoft Digital Crimes Consortium.

Segment Fourteen

Cloning Attacker Tradecraft: Why AI Pentesting is Becoming Essential – Ido Geffen – RSAC26 #1

Key Moments
  • 0:00 - RSAC 2026 Interview – AI Pen Testing with Novee Security
  • 0:22 - What is Novee Security? AI Vulnerability Scanning Explained
  • 0:50 - Can AI Prevent Exploits Before Hackers Strike?
  • 01:29 - Nation-State Expertise Behind AI Security Tools
  • 02:00 - Custom AI Models vs Open Source LLMs in Cybersecurity
  • 02:25 - Training AI to Detect Vulnerabilities at Scale
  • 03:28 - Building the “Novee Gym” Cyber Range for AI Training
  • 04:07 - What Are Business Logic Vulnerabilities?
  • 04:31 - Real Example: Payroll Data Access Security Risks
  • 05:19 - Customizing Security by Company & Application Logic
  • 06:23 - Avoiding False Positives in Vulnerability Scanning
  • 07:37 - AI Exploitability Scanning vs Traditional Pen Testing
  • 08:40 - How AI Finds & Validates Exploitable Vulnerabilities
  • 09:20 - Automated Remediation & Security Fix Recommendations
  • 10:24 - Personalized Defense Based on WAF & Infrastructure
  • 11:07 - Continuous Security Testing for Modern Applications
  • 13:08 - Why AI Pen Testing is Better Than Basic Vulnerability Scans
  • 13:48 - Testing Custom Apps, APIs & AI Systems (Prompt Injection)
  • 15:09 - AI Pen Testing Announcement at RSAC 2026
Guest
CEO and Co-founder at Novee Security

Ido Geffen is the CEO and co-founder of Novee, the leader in AI-powered penetration testing. He brings over 20 years of experience across offensive and defensive cybersecurity, including nation-scale operations, vulnerability exploitation, and defense.

Through his work on national defense, he and fellow Novee co-founders Gon Chalamish and Omer Ninburg saw enterprises facing an impossible challenge: deploying code continuously while testing security only quarterly, even as attackers operate 24/7 with AI-powered tools. They founded Novee in May 2025 to clone their combined expertise into an agent that runs continuously, finding zero-days, business logic flaws, and complex attack chains that traditional tools miss.

Segment Fifteen

RSAC 2026 Day 1: First Impressions and Early Themes – RSAC26 #1

Key Moments
  • 0:00 - RSAC 2026 Day 1 Recap Begins
  • 0:42 - First Impressions of RSAC Conference 2026
  • 01:11 - Massive Cybersecurity Marketing at RSAC
  • 02:18 - The #1 Buzzword: Agentic AI Explained
  • 02:35 - Identity Security Meets Agentic AI
  • 03:20 - AI Trends: Phishing, Code Vulnerabilities & Defense
  • 04:00 - Innovation Sandbox Winner: AI Security Platform
  • 05:15 - Are Cybersecurity Problems Really New?
  • 06:37 - Why CVEs & AppSec Are Still Broken
  • 07:47 - Secure by Design: The Future of Security?
  • 08:34 - When Will Secure Coding Become Mandatory?
  • 09:35 - AI’s Role in Secure Software Development
  • 11:15 - The Future of Developers with AI
  • 12:59 - Predictions for RSAC 2027 & AI Security
  • 14:28 - Final Thoughts on Cybersecurity Trends

Stay in the Know, No Smoke and Mirrors – Join Our Newsletter

You can skip this ad in 5 seconds