Back

Explore every episode of the podcast Unsupervised Learning

Dive into the complete episode list for Unsupervised Learning. Each episode is cataloged with detailed descriptions, making it easy to find and explore specific topics. Keep track of all episodes from your favorite podcast and never miss a moment of insightful content.

Rows per page:

1–50 of 540

TitlePub. DateDuration
We're All Building a Single Digital Assistant15 Apr 202600:32:16

There's tons of confusion about what we're all building towards with Personal AI. Are we building Agents? AI Harnesses? To what end? In this video I lay why I think we're all heading towards a single place that we should start getting ready for now. I think getting this early will put you 1-3 years ahead of everyone.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Why AI Will Replace Knowledge Workers21 Mar 202601:16:09

A longer form discussion on exactly how and why AI will replace knowledge workers.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Why I Believe in SOTA Models Over Custom Ones11 Mar 202600:01:48

I think the future is cheaper and Open Source SOTA models combined with context, not custom, narrow models.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

AI Quality Inversion06 Mar 202600:01:02

A troubling thought about what we will think about high-quality content in the future. 

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

The Great Transition28 Feb 202601:24:20

There are a bunch of different transitions happening right now—all at the same time, all (I think) heading in the same direction. Here is a long-form exploration of the various pieces.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Starting 202630 Jan 202600:25:09

A welcome back and early entry into 2026. 

Sponsored by: Knocknoc!

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Judge AI based on Output, Not Mechanism22 Nov 202500:06:58

How we can use an output-based system to judge whether or not different kinds of technology achieve understanding or intelligence. 

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Humans Need Entropy16 Nov 202500:04:20

How humans and AI models both share the weakness of deterioration without novel inputs. 

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Why I Think Karpathy is Wrong on the AGI Timeline20 Oct 202500:09:54

Karpathy is confusing LLM limitations with AI system limitations, and that makes all the difference. 

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Novelty Exploration vs. Pattern Exploitation15 Oct 202500:03:44

How going from exploration to exploitation can help you as both a consumer and creator of everything.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Magnifying Time14 Oct 202500:06:30

Some thoughts on how novelty and attention magnify the time that we have. 

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation With Harry Wetherald CO-Founder & CEO At Maze22 Sep 202500:35:03

➡ Stay Ahead of Cyber Threats with AI-Driven Vulnerability Management with Maze:
https://mazehq.com/

In this conversation, I speak with Harry about how AI is transforming vulnerability management and application security. We explore how modern approaches can move beyond endless reports and generic fixes, toward real context-aware workflows that actually empower developers and security teams.

We talk about:

The Real Problem in Vulnerability Management
Why remediation—not just prioritization—remains the toughest challenge, and how AI can help bridge the gap between vulnerabilities and the developers who need to fix them.

Context, Ownership, and Velocity
How linking vulnerabilities to the right applications and teams inside their daily tools (like GitHub) reduces friction, speeds up patching, and improves security without slowing developers down.

AI Agents and the Future of Security
Why we should think of AI agents as “extra eyes and hands,” and how they’re reshaping everything from threat detection to system design, phishing campaigns, and organizational defense models.

Attackers Move First
How attackers are already building unified world models of their targets using AI, and why defenders need to match (or exceed) this intelligence to stay ahead.

From Days to Minutes
Why the tolerance for vulnerability windows is shrinking fast, and how automation and AI are pushing us toward a future where hours—or even minutes—make the difference.

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Chapters:

00:00 – Welcome and Harry’s Background
01:07 – The Real Problem: Remediation vs. Prioritization
04:31 – Breaking Down Vulnerability Context and Threat Intel
05:46 – Connecting Vulnerabilities to Developers and Workflows
08:01 – Why Traditional Vulnerability Management Fails
10:29 – Startup Lessons and The State of AI Agents
13:26 – DARPA’s AI Cybersecurity Competition
14:29 – System Design: Deterministic Code vs. AI
16:05 – How the Product Works and Data Sources
18:01 – AI as “Extra Eyes and Hands” in Security
20:20 – Breaking Barriers: Rethinking Scale with AI
23:22 – Building World Models for Defense (and Attack)
25:22 – Attackers Move Faster: Why Context Matters
27:04 – Phishing at Scale with AI Agents
31:24 – Shrinking Windows of Vulnerability: From Days to Minutes
32:47 – What’s Next for Harry’s Work
34:13 – Closing Thoughts

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation With Grant Lee CO-Founder & CEO At Gamma18 Sep 202500:21:48

➡ Upgrade your presentations with Gamma, the best AI presentation maker: https://gamma.app

In this conversation, I speak with Grant, co-founder of Gamma, about how their platform is transforming presentations and idea-sharing. Instead of starting with slides, Gamma helps you focus on the story first—then builds the visuals, structure, and delivery around it using AI.

We talk about:

From Slides to Stories
Why presentations should begin with narrative flow and core ideas, not pre-existing slide templates. Gamma enables creators to design around the message rather than being trapped by the format.

AI as Your Presentation Partner
How Gamma acts like a personal design expert—adjusting layouts, visuals, and style in real time—similar to having a world-class presentation coach and designer by your side.

Idea Propagation Beyond Slides
Why Gamma isn’t just about “slides,” but about propagating ideas in the right medium: presentations, video overlays, mobile-first content, or even context-based imagery and clips.

The Future of Gamma
Where the platform is headed in the next few years, and how AI-driven storytelling will redefine the way we share ideas across industries.

Subscribe to the newsletter:
https://danielmiessler.com/subscribe

Join the UL community:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Chapters:

00:00 – Introduction to Unsupervised Learning
00:17 – Welcome Grant and Gamma’s Background
01:31 – AI Trends Driving Presentation Innovation
03:20 – Story First: Rethinking Workflow Beyond Slides
04:29 – Building Narrative Flow Before Design
07:42 – Gamma as an AI Presentation Partner
09:43 – What Gamma Does Differently from Other Tools
12:27 – Idea Propagation: Matching Message, Medium, and Audience
13:23 – Enhancing Presentations with Images, Clips, and Context
15:15 – Current Graphics and Animation Options
17:03 – Most Popular and Favorite Features in Gamma
18:05 – What’s Coming Soon in Gamma
19:08 – The Future of Idea Propagation with AI
20:46 – Where to Learn More About Gamma
21:21 – Closing Thoughts

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 497: STANDARD EDITION | More NPM Shenanigans, I Open Sourced Kai, Blood Work Results, Finding Vulns in a 10-line Prompt, and more...10 Sep 202500:37:13

UL NO. 497: STANDARD EDITION | More NPM Shenanigans, I Open Sourced Kai, Blood Work Results, Finding Vulns in a 10-line Prompt, and more...

Read this episode online: https://newsletter.danielmiessler.com/p/ul-497

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 496: STANDARD EDITION | New Video on Building my Personal AI System, Anthropic Reveals One-person Hacking Company using Claude, Pentagon Says China Keeps Penetrating, and more...05 Sep 202501:02:49

UL NO. 496: STANDARD EDITION | New Video on Building my Personal AI System, Anthropic Reveals One-person Hacking Company using Claude, Pentagon Says China Keeps Penetrating, and more...

Read this episode online: https://newsletter.danielmiessler.com/p/ul-496

Personal AI Video I'm so excited about

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation with Michael Brown About Designing AI Systems22 Aug 202500:50:06

In this episode of Unsupervised Learning, I sit down with Michael Brown, Principal Security Engineer at Trail of Bits, to dive deep into the design and lessons learned from the AI Cyber Challenge (AIxCC). Michael led the team behind Buttercup, an AI-driven system that secured 2nd place overall.

We discuss:

-The design philosophy behind Buttercup and how it blended deterministic systems with AI/ML 
-Why modular architectures and “best of both worlds” approaches outperform pure LLM-heavy -designs
-How large language models performed in patch generation and fuzzing support
-The risks of compounding errors in AI pipelines — and how to avoid them
-Broader lessons for applying AI in cybersecurity and beyond

If you’re interested in AI, security engineering, or system design at scale, this conversation breaks down what worked, what didn’t, and where the field is heading.

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 494:  STANDARD EDITION | AI Finds a P1, I Missed Chartbeat So I Made My Own, XBow Open-Sources Their AI Bot, and more...21 Aug 202501:38:09

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Read this episode online: https://newsletter.danielmiessler.com/p/ul-494

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation With Sarit Tager from Prisma Cloud29 Jul 202500:25:31

➡ Prevent Risk At The Source with Cortex Cloud: https://www.paloaltonetworks.com/cortex/cloud/application-security

In this sponsored conversation, I speak with Sarit Tager, VP of Product Management at Palo Alto Networks, about how Prisma Cloud and their new ASPM solution are transforming cloud and application security by unifying data and deeply integrating business context into AppSec workflows.

We talk about:

Unifying AppSec, Cloud, and SOC into One Data Lake
How Palo Alto merged their products into a single system that consolidates runtime, code, identity, cloud, and SOC data, allowing for true context-aware risk prioritization and faster response times across the board.

From Detection to Dynamic Prevention
Why the future of application security isn’t just about discovering vulnerabilities, but enforcing smart, context-based guardrails during development, CI/CD, and build processes to prevent issues before they reach production.

AI-Powered Insight and the Future of Secure DevOps
How their system uses AI to analyze the full security posture, enrich findings, simulate attack paths, and recommend precise mitigations. The platform even helps guide security and engineering teams through better workflows, boosting velocity, and not blocking it.

 

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

 

Chapters:

00:00 – Sarit’s Background and the Goal of Unifying Security Context
01:50 – Building a Single Data Lake for Cloud, SOC, and AppSec
04:28 – From Noise to Clarity: Fixing the Prioritization Problem in AppSec
06:47 – Using Business Context to Drive Risk-Based Decisions
10:18 – True App Ownership, Developer Velocity, and Aligning with Business Impact
13:12 – Continuous Discovery and Bringing External Signals Into One View
15:25 – Why App Grouping and Context-Rich Policies Increase Velocity
17:58 – How Attackers Are Already Building Their Own Unified Context (UEC)
20:45 – Prisma’s Control Points: IDE, PR, CI/CD, Image, Admission Control
21:56 – Bringing In Data From External Scanners and Enriching Coverage
24:23 – Ecosystem Signals, Query Language, and Intelligent Workflow Automation
25:05 – Closing Thoughts: Security and Developers Working Together

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 489: STANDARD EDITION | My personal toolchain updates, Google tracking through DuckDuckGo, Anthropic’s Pentagon Deal, Grok4 NSFW, Substack Crushes WSJ, and more...17 Jul 202500:22:01

UL NO. 489: STANDARD EDITION | My personal toolchain updates, Google tracking through DuckDuckGo, Anthropic’s Pentagon Deal, Grok4 NSFW, Substack Crushes WSJ, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Read this episode online: https://newsletter.danielmiessler.com/p/ul-489

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 488: STANDARD EDITION | Google Granting Confusing Access to Gemini, A New Favorite Creator, Russia's new Autonomous Drones, Claude Code Madness and Neovim Config, and more...10 Jul 202500:30:11

UL NO. 488: STANDARD EDITION | Google Granting Confusing Access to Gemini, A New Favorite Creator, Russia's new Autonomous Drones, Claude Code Madness and Neovim Config, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Read this episode online: https://newsletter.danielmiessler.com/p/ul-488

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 487: STANDARD EDITION: Iranian Critical Infra Attacks, Insane Recent Productivity, A Chinese Mosquito Drone, Marcus's Response to Our AI Debate, "Context Engineering" Ain't It, and more...02 Jul 202500:41:31

UL NO. 487: STANDARD EDITION: Iranian Critical Infra Attacks, Insane Recent Productivity, A Chinese Mosquito Drone, Marcus's Response to Our AI Debate, "Context Engineering" Ain't It, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Read this episode online: https://newsletter.danielmiessler.com/p/ul-487

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

An AI Debate with Marcus Hutchins26 Jun 202502:00:04

Marcus and I debate AIs capabilities from nearly polar opposite ends. He thinks it's basically autocomplete, and I think it's the most important tech we've ever built as humans.

It was a fantastic, and very civil conversation, so thanks to Marcus for that, and we're already planning on Part 2.

This two-hour discussion covers:

🧠 The real risks of AI vs. the imagined ones
🔐 How security researchers view AI's capabilities
🤖 The blurry line between useful and dangerous automation
⚖️ Bias, alignment, and who gets to control intelligence
📉 Whether AI might ultimately collapse under its own complexity

Marcus Hutchins is best known for stopping the WannaCry ransomware attack and brings a sharp, skeptical perspective to AI.

Marcus' Website: https://marcushutchins.com

Watch the interview on YouTube: https://youtu.be/I9-iD_rLRjA

Subscribe to the UL newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Follow Marcus on LinkedIn:

https://www.linkedin.com/in/malwaretech/

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 486 STANDARD EDITION: Fully Automated AI Malware (Binary and Web), My Debate with Marcus Hutchins on AI and more26 Jun 202500:55:03

UL NO. 486: STANDARD EDITION: Fully Automated AI Malware (Binary and Web), My Debate with Marcus Hutchins on AI, The 'Did You Notice?' Psyop, The METR AI Metric for Longterm Tasks, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Read this episode online: https://newsletter.danielmiessler.com/p/ul-486

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 485: STANDARD EDITION: Netflix RCE, My Current AI Stack, All-in on Claude Code, and more...19 Jun 202500:36:45

STANDARD EDITION: Netflix RCE, My Current AI Stack, All-in on Claude Code, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Read this episode online: https://newsletter.danielmiessler.com/p/ul-485

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 484: STANDARD EDITION: OpenAI's Malicious AI Report, Disappointed with WWDC, AI's First Actual Science Breakthrough, and more...12 Jun 202500:43:31

UL NO. 484: STANDARD EDITION: OpenAI's Malicious AI Report, Disappointed with WWDC, AI's First Actual Science Breakthrough, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Read this episode online: https://newsletter.danielmiessler.com/p/ul-484

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 483 | STANDARD EDITION: A Chrome 0-Day, Meta Automates Security Assessments, New Essays, My New Video on Hacking with AI, Ukraine's Asymmetrical Attack, Thoughts on My AI Skeptical Friends, The Dangers of Winning the Wrong Game, and more...05 Jun 202500:31:39

A Chrome 0-Day, Meta Automates Security Assessments, New Essays, My New Video on Hacking with AI, Ukraine's Asymmetrical Attack, Thoughts on My AI Skeptical Friends, The Dangers of Winning the Wrong Game, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Read this episode online: https://newsletter.danielmiessler.com/p/ul-483

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

The Future of Hacking is Context03 Jun 202500:33:45

Sponsored by Vanta. Vanta takes the busywork out of GRC so you can focus on what actually matters—improving your security, not chasing compliance. https://ul.live/vanta

This isn’t just another AI podcast. It’s about the deeper shift that’s happening in cybersecurity—away from individual tools and dashboards, and toward real-time, comprehensive world models of what we’re trying to protect or attack. I'll walk through how I came to this idea, what it means for security assessments, red teaming, vuln management, and beyond—and why context, not AI, is the actual revolution.

📽️Check out the full video here: https://youtu.be/UwTTcka1Wd8

Topics covered: 
Why the core problem in security is organizational knowledge
Unified Entity Context (UEC) as the future architecture
Modular, AI-augmented security stacks
Why every attacker and defender will soon be running one
How this flips the AI conversation on its head

If you care about where hacking, automation, and AI are headed—this is the blueprint.

📬Subscribe for updates about trends and ideas in Cybersecurity, National Security, AI, Technology, and Society👇🏼
https://newsletter.danielmiessler.com/
👉🏻 X (Twitter): https://ul.live/x
👉🏻 Instagram: https://ul.live/ig
👉🏻 BlueSky: https://ul.live/bluesky
👉🏻 LinkedIn: https://ul.live/li

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 482 | STANDARD EDITION: AI Finds an 0-Day!, Postman Leaking Secrets, High Agency Mental Model, My Unified Entity Context Video, Github MCP Leaks Private Repos, Google vs. OpenAI vs. Apple on AI Vision, and more... 30 May 202500:31:33

AI Finds an 0-Day!, Postman Leaking Secrets, High Agency Mental Model, My Unified Entity Context Video, Github MCP Leaks Private Repos, Google vs. OpenAI vs. Apple on AI Vision, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Read this episode online: https://newsletter.danielmiessler.com/p/ul-482

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Unified Entity Context15 May 202500:30:18

🔹 Thanks to ProjectDiscovery for sponsoring today’s video. I've been using their tools like Nuclei and Subfinder for years, and now they’ve brought that power to the cloud with a full vulnerability management platform.

➡ Try it yourself at https://ul.live/PD1

For over a decade, I've been exploring how AI and context intersect—and I believe Unified Entity Context (UEC) is the key to unlocking what comes next.

In this podcast, I walk through my journey—from security assessments and AI-powered tools to building real-world demos like Alma and Threshold. The core idea? That most hard decisions are only hard because we lack the necessary context. With rich, accurate, and fresh context, even complex decisions become simple.

If you're building in security, investing in AI, or just trying to understand where things are heading, this concept might reframe everything.

Check out the full video here: https://youtu.be/IHUqk90ch7I

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Reviewing RSA 2025 with Jason Haddix08 May 202501:21:02

What really happened at RSA 2024?

Daniel Miessler and Jason Haddix break it down.

Fresh off a whirlwind RSA week, Daniel sits down with Jason Haddix (Arcanum Information Security) to talk about what mattered—beyond the show floor noise. From off-site innovation summits to real-world AI implementation, this deep dive covers:

-Where the real innovation happened (hint: not on the show floor)
-Key takeaways from the OpenAI and Airbnb AI Security events
-Jason’s talk on AI pentesting methodology and the Prompt Injection Taxonomy
-The future of cybersecurity moats and the risk of AI-native disruption
-Why agents aren’t the main character—data is -DARPA's AIxCC competition and the rise of Cyber Reasoning Systems
-Challenges with evals, autonomous security workflows, and VDP backlash -Behind the scenes at RSA: puppies, parties, burnout, and brutal honesty

They also explore content creation, the future of platform-native context, and why being opinionated (with receipts) matters more than ever in security and tech. 

Jason's Company https://arcanum-sec.com

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation with Bar-El Tayouri from Mend.io06 May 202500:45:53

➡ Get full visibility, risk insights, red teaming, and governance for your AI models, AI agents, RAGs, and more—so you can securely deploy AI powered applications with ul.live/mend

In this episode, I speak with Bar-El Tayouri, Head of AI Security at Mend.io, about the rapidly evolving landscape of application and AI security—especially as multi-agent systems and fuzzy interfaces redefine the attack surface.

We talk about:

• Modern AppSec Meets AI Agents
How traditional AppSec falls short when it comes to AI-era components like agents, MCP servers, system prompts, and model artifacts—and why security now depends on mapping, monitoring, and understanding this entire stack.

•  Threat Discovery, Simulation, and Mitigation
How Mend’s AI security suite identifies unknown AI usage across an org, simulates dynamic attacks (like prompt injection via PDFs), and provides developers with precise, in-code guidance to reduce risk without slowing innovation.

•  Why We’re Rethinking Identity, Risk, and Governance
Why securing AI systems isn’t just about new threats—it’s about re-implementing old lessons: identity access, separation of duties, and system modeling. And why every CISO needs to integrate security into the dev workflow instead of relying on blunt-force blocking.

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Chapters:

00:00 - From Game Hacking to AI Security: Barel’s Tech Journey
03:51 - Why Application Security Is Still the Most Exciting Challenge
04:39 - The Real AppSec Bottleneck: Prioritization, Not Detection
06:25 - Explosive Growth of AI Components Inside Applications
12:48 - Why MCP Servers Are a Massive Blind Spot in AI Security
15:02 - Guardrails Aren’t Keeping Up With Agent Power
16:15 - Why AI Security Is Maturing Faster Than Previous Tech Waves
20:59 - Traditional AppSec Tools Can’t Handle AI Risk Detection
26:01 - How Mend Maps, Discovers, and Simulates AI Threats
34:02 - What Ideal Customers Ask For When Securing AI
38:01 - Beyond Guardrails: Mend’s Guide Rails for In-Code Mitigation
41:49 - Multi-Agent Systems Are the Next Security Nightmare
45:47 - Final Advice for CISOs: Enable, Don’t Disable Developers

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

The 4 AAAAs of the AI ECOSYSTEM: Assistants, APIs, Agents, and Augmented Reality22 Apr 202500:27:04

In this episode, I break down what I believe is the emerging structure of the AI-powered world we're all building—consciously or not. I call it the “Four A’s”: Assistants, APIs, Agents, and Augmented Reality. This framework helps make sense of recent developments and where it’s all headed.

I talk about:

1. Digital Assistants That Understand and Optimize Your Life
Your DA (like “Kai”) will know your goals, preferences, health, schedule, and context—and proactively optimize your day, from filtering messages to planning meals or surfacing relevant information in real time.

2. APIs and the Real Internet of Things
Everything becomes an API—from businesses to people to physical objects. Your assistant interacts with these APIs to act on your behalf, turning the world into a navigable ecosystem of services, tools, and resources.

3. Agents and AR Bringing It All Together
Agents act autonomously to complete multi-step goals, and AR glasses will display their outputs contextually as you move through the world. 

These systems will collaborate, search, and act—quietly transforming how we live, work, and perceive reality.

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

See you in the next one!

Chapters:

00:00 - The AI Ecosystem We’re Building Without Realizing It
01:33 - Assistant: Your Most Powerful Digital Companion
03:08 - APIs: How DAs Interact with the World
07:54 - Agents: The Step Beyond Automation
11:00 - Augmented Reality: The Interface Layer of the AI Ecosystem
14:20 - Combining APIs, Agents, and UI for Real-Time Situational Awareness
17:17 - Summary: A Unified Ecosystem Driven by the Four A’s
23:36 - Industry Trends: How Companies Like OpenAI, Apple, and Meta Fit In
25:11 - Final Thoughts on Timelines, Winners, and Interpreting AI News

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Using the Smartest AI to Rate Other AI19 Apr 202500:09:35

In this episode, I walk through a Fabric Pattern that assesses how well a given model does on a task relative to humans. This system uses your smartest AI model to evaluate the performance of other AIs—by scoring them across a range of tasks and comparing them to human intelligence levels.

I talk about:

1. Using One AI to Evaluate Another
The core idea is simple: use your most capable model (like Claude 3 Opus or GPT-4) to judge the outputs of another model (like GPT-3.5 or Haiku) against a task and input. This gives you a way to benchmark quality without manual review.

2. A Human-Centric Grading System
Models are scored on a human scale—from “uneducated” and “high school” up to “PhD” and “world-class human.” Stronger models consistently rate higher, while weaker ones rank lower—just as expected.

3. Custom Prompts That Push for Deeper Evaluation
The rating prompt includes instructions to emulate a 16,000+ dimensional scoring system, using expert-level heuristics and attention to nuance. The system also asks the evaluator to describe what would have been required to score higher, making this a meta-feedback loop for improving future performance.

Note: This episode was recorded a few months ago, so the AI models mentioned may not be the latest—but the framework and methodology still work perfectly with current models.

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

See you in the next one!

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation with Patrick Duffy from Material Security15 Apr 202500:26:47

➡ Secure what your business is made of with Martial Security: 
https://material.security/

In this episode, I speak with Patrick Duffy from Material Security about modern approaches to email and cloud workspace security—especially how to prevent and contain attacks across platforms like Google Workspace and Microsoft 365.

We talk about:

• Proactive Security for Email and Cloud Platforms
How Material goes beyond traditional detection by locking down high-risk documents and inboxes preemptively—using signals like time, access patterns, content sensitivity, and anomalous user behavior.

• Real-World Threats and Lateral Movement
What the team is seeing in the wild—from phishing and brute-force attacks to internal data oversharing—and how attackers are increasingly moving laterally through cloud ecosystems using a single set of compromised credentials.

• Customizable, Context-Aware Response Workflows
How Material helps teams right-size their responses based on risk appetite, enabling fine-grained actions like MFA prompts, access revocation, or full session shutdowns—triggered by dynamic, multi-signal rule sets.

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Chapters:

00:00 - Welcome & High-Level Overview of Material Security
02:04 - Common Threats: Phishing and Lateral Movement in Cloud Office
05:30 - Access Control in Collaborative Workspaces (2FA, Just-in-Time, Aging Content)
08:43 - Connecting Signals: From Login to Exfiltration via Rule Automation
12:25 - Real-World Scenario: Suspicious Login and Automated Response
15:08 - Rules, Templates, and Customer Customization at Onboarding
18:46 - Accidental Risk: Sensitive Document Sharing and Exposure
21:04 - Security Misconfigurations and Internal Abuse Cases
23:43 - Full Control Points: IP, Behavior, Classification, Sharing Patterns
27:50 - Integrations, Notifications, and Real-Time Security Team Coordination
31:13 - Lateral Movement: How Attacks Spread Across the Workspace
34:25 - Use Cases Involving Google Gemini and AI Exposure Risks
36:36 - Upcoming Features: Deeper Remediation and Contextual Integration
39:30 - Closing Thoughts and Where to Learn More

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

AICAD: Artificial Intelligence Capabilities For Attack & Defense12 Apr 202500:42:52

AI is changing cybersecurity at a fundamental level—but how do we decide what to build, and when? In this episode, I outline a structured way to think about AI for security: from foundational ideas to a future-proof system that can scale with emerging threats.

• Rethinking Human Workflows as Intelligence Pipelines
By mapping tasks into visual workflows, we can pinpoint exactly where human intelligence is still required—and where AI agents are most likely to replace or enhance us.

• Using AI to Understand and Manage Organizational State
I introduce the concept of AI state management: building systems that track your current and desired security posture in real time, and using AI to bridge the gap—automating insights, decisions, and even actions across your environment.

• Building a Cyber Defense Program Inspired by Attacker Playbooks
Instead of waiting for threats, I propose a new framework based on attacker capabilities—what they wish they could do now and in the near future—and how to proactively prepare by building a continuously adapting AI-powered defense system.

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Chapters:
00:00 - Framing the Future: Two Key Questions on AI and Cybersecurity
01:28 - Intelligence Pipelines: Visualizing Human Work as Replaceable Workflow
06:10 - Theory of Constraints: How Attackers Are Bottlenecked by Human Labor
10:42 - Defining Agents: What Makes AI Different From Traditional Automation
12:08 - AI State Management: The Universal Use Case for Automated Intelligence
16:53 - Real-World Demo: Unified Context AI for Security Program Management
26:30 - Advanced Uses: Reassigning Projects, Updating KPIs, and Security Reports
34:58 - Automating Security Questionnaires With AI Context Awareness
38:43 - ACAD Framework: Predicting and Preparing for Future Attacker Capabilities
47:40 - Defender Response: Building AI-Driven Red Teams and Internal UCCs
52:25 - Final Answers: How Software and Security Change With AI Agents

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Possible Path to ASI08 Apr 202500:10:52

The conversation around AGI and ASI is louder than ever—but the definitions are often abstract, technical, and disconnected from what actually matters. In this episode, I break down a human-centered way of thinking about these terms, why they’re important, and a system that could help us get there.

I talk about: 

• A Better Definition of AGI and ASI
Instead of technical abstractions, AGI is defined as the ability to perform most cognitive tasks as well as a 2022 U.S.-based knowledge worker. ASI is intelligence that surpasses that level. Framing it this way helps us immediately understand why it matters—and what it threatens.

• Invention as the Core Output of Intelligence
The real value of AGI and ASI is their ability to generate novel solutions. Drawing inspiration from the Enlightenment, we explore how humans innovate—and how we can replicate that process using AI, automation, and structured experimentation.

• Scaling the Scientific Method with AI
By building systems that automate idea generation, recombination, and real-world testing, we can massively scale the rate of innovation. This framework—automated scientific iteration—could be the bridge from human intelligence to AGI and beyond.

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Chapters:

00:00 - Why AGI and ASI Definitions Should Be Human-Centric
01:55 - Defining AGI as a 2022-Era US Knowledge Worker
03:04 - Defining ASI and Why It’s Harder to Conceptualize
04:04 - The Real Reason to Care: AGI and ASI Enable Invention
05:04 - How Human Innovation Happens: Idea Collisions and Enlightenment Lessons
06:56 - Building a System That Mimics Human Idea Generation at Scale
09:00 - The Challenge of Testing: From A/B Tests to Biotech Labs
10:52 - Creating an Automated, Scalable Scientific Method With AI
12:50 - A Timeline to AGI and ASI: Predictions for 2027–2030

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation With Matt Muller From Tines01 Apr 202500:39:32

➡ Build, run, and monitor workflows with Tines at: tines.com

In this episode, I speak with Matt Muller, Field CSCO at Tines, about how automation and AI are transforming security operations at scale.

We talk about:

• Tines' Mission to Eliminate Manual Security Work Through Automation
How Tines helps security teams streamline incident response and workflow automation without needing to write code, saving time and reducing burnout.

• Applying AI to Security Operations and Analyst Workflows
How AI is used in phishing analysis, threat intel reporting, and data transformation—integrated safely into workflows using tools like Workbench with private LLMs.

• Tines Workbench and the Future of Agentic AI
How Workbench combines chat with deterministic automation to help analysts take action securely, and how Tines is exploring agentic AI to take automation even further.

Chapters:

00:00 - How Tines Automates Security to Solve SOC Burnout
07:19 - The AI Arms Race: How Attackers and Defenders Are Evolving
09:08 - Why Security Still Comes Down to Workflow, Logging, and Action
13:41 - How CISOs Are Balancing AI Adoption and Enterprise Risk
17:36 - Using AI in Tines to Transform and Automate Security Workflows
20:40 - How AI Detects Business Email Compromise Better Than Rules
25:26 - From Security to Data Pipelines: Tines as Workflow Orchestration
28:59 - Inside Workbench: Secure AI-Powered Chat for Analysts
36:00 - Automating Phishing Investigations with Trusted Tool Integrations
39:19 - Where to Learn More and Try Tines for Free

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 474 | Signal OPSEC, White-box Red-teaming LLMs, Unified Company Context (UCC), New Book Recommendations, Single Apple Note Technique, and much more...31 Mar 202500:18:24

STANDARD EDITION: Signal OPSEC, White-box Red-teaming LLMs, Unified Company Context (UCC), New Book Recommendations, Single Apple Note Technique, and much more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member to unlock the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation With Slava Konstantinov From ThreatLocker18 Mar 202500:33:30

➡ Allow what you need, block everything else with ThreatLocker:
threatlocker.com

In this episode, I speak with Slava Konstantinov, ThreatLocker's MacOS Lead Architect, about their zero-trust approach to endpoint security and their latest cybersecurity innovations.

We talk about:

• ThreatLocker’s Zero Trust Approach to Cybersecurity:
How ThreatLocker enforces a default deny security model, ensuring only explicitly allowed applications and actions can run, reducing attack surfaces and unauthorized access.

• Key ThreatLocker Products and Features:
How ThreatLocker’s solutions—Application Control, Storage Control, Ring Fencing, Network Control, and ThreatLocker Detect—help organizations enhance security through granular policy enforcement.

• New & Upcoming ThreatLocker Features:
How new solutions like Patch Management, Web Control, Insights, and Cloud Detect will provide even greater security, automation, and compliance for businesses managing complex IT environments.

Chapters:
00:00 - Intro to ThreatLocker and Zero Trust Security
01:24 - How ThreatLocker’s Application Control Blocks Unauthorized Software
06:52 - Storage Control: Preventing Unauthorized Data Access and USB Threats
08:19 - Ring Fencing: Controlling App Permissions and Network Access
12:37 - Elevation Control: Granting Admin Privileges Without Risk
16:23 - Network Control: Restricting Internet and Internal Network Access
19:26 - AI-Driven Security Policies: The Future of ThreatLocker Management
24:07 - Mac vs. Windows Security: Key Differences and Challenges
29:49 - ThreatLocker’s Expansion: New Products and Future Plans
32:32 - Where to Learn More About ThreatLocker’s Security Solutions

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 472 | STANDARD EDITION: 28 Open Cyber Jobs, Real-world AI Propaganda Poisoning, MCP Explained, Cline vs. Windsurf, and more...15 Mar 202500:39:31

STANDARD EDITION: 28 Open Cyber Jobs, Real-world AI Propaganda Poisoning, MCP Explained, Cline vs. Windsurf, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member for the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessle

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Raycast is a Must in 2025 - Action at the Speed of Thought15 Mar 202500:45:52

In this episode, Daniel Miessler explores how to supercharge your macOS workflow with Raycast, transforming everyday tasks into lightning-fast, AI-powered actions.

He talks about:

Raycast as a Universal Launcher:
Daniel explains how Raycast replaces traditional launchers like Spotlight and Alfred, offering an all-in-one shortcut to apps, files, and bookmarks for unparalleled efficiency.

Quick Links and Custom Searches:
He demonstrates how quick links streamline navigation by replacing outdated bookmarks and enabling custom search commands that let you bypass the browser for faster access.

Integrated Utilities and Window Management:
Discover how Raycast consolidates everyday tools—from color pickers and process killers to custom window arrangements—ensuring that all your essential utilities are just a keystroke away.

Advanced AI Integration:
Learn how Raycast’s innovative AI commands integrate with platforms like ChatGPT and Fabric, allowing you to interact with, summarize, and analyze web content directly from your command line.

Custom Commands and Productivity Hacks:
Daniel reveals his secrets for creating personalized hotkeys, snippets, and aliases that reduce friction in your digital workflow, making your daily tasks smoother and more intuitive.

Subscribe to the newsletter at:
https://danielmiessler.com/newsletter

Watch the video on YouTube at:
https://www.youtube.com/c/UnsupervisedLearning

Follow on Twitter at:
https://twitter.com/danielmiessler

See you in the next one!

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 471 | STANDARD EDITION: Cyber Standing Down, China's Innovation Burst, PC vs. NPC, Why AI Can't Understand, and more...09 Mar 202500:25:40

STANDARD EDITION: Cyber Standing Down, China's Innovation Burst, PC vs. NPC, Why AI Can't Understand, and more...

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member for the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 470 | Attacking Signal, Blogging Getting MORE Important, AI's Final Form, Claude 3.7 vs. World, Censorship as a Service, and more...04 Mar 202500:41:25

STANDARD EDITION: Attacking Signal, Blogging Getting MORE Important, AI's Final Form, Claude 3.7 vs. World, Censorship as a Service, and more...

➡ Protect Against Bots, Fraud, and Abuse. Check out WorkOS Radar at: workos.com/radar

You are currently listening to the Standard version of the podcast, consider upgrading and becoming a member for the full version and many other exclusive benefits here: https://newsletter.danielmiessler.com/upgrade

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 468 | TELOS Patterns, Apple 0-Day, Gumroad Replaces Developers with AI19 Feb 202500:49:20

Also: A new threat modeling framework for AI, an API security report, and being paralyzed by crisis

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://x.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 467 | Why You Should Care About AGI (And a Definition)07 Feb 202500:25:42

Plus: DeepSeek's open database, Using o3 with Fabric, Chinese backdoors in health monitors, and much more...

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X: https://x.com/danielmiessler

Follow on LinkedIn: https://www.linkedin.com/in/danielmiessler

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Writing Fiction With AI05 Feb 202500:30:14

I want to explore how AI can assist in fiction writing, especially using open-source models that allow for greater control, creativity, and long-form storytelling. With tools like LM Studio and Hugging Face, we can download powerful AI models capable of maintaining story coherence, helping authors generate complex narratives, and even unlocking new storytelling possibilities.

So, the idea is to create a structured approach to fiction writing with AI. By organizing story elements—characters, setting, mystery, and plot—into a detailed text file ("Telus file"), we can guide AI models to produce high-quality, structured narratives. The goal is not to replace authors but to empower them with AI-assisted storytelling.

Who wants to experiment with this approach? Or does anyone know of better AI tools for fiction writing? With larger context models and improving AI capabilities, we might be close to AI-assisted novels that rival human-written stories!

Subscribe to the newsletter at:
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X: https://x.com/danielmiessler

Follow on LinkedIn: https://www.linkedin.com/in/danielmiessler

 

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation with Alastair Paterson from Harmonic Security04 Feb 202500:29:32

In this conversation, I speak with Alastair Paterson, CEO and co-founder of Harmonic Security.

We talk about:

Harmonic Security’s Unique Approach to AI Data Protection:

How Harmonic Security’s Zero-Touch Data Protection uses small language models to identify and prevent sensitive data leaks, differentiating it from traditional DLP solutions.

Challenges of AI Adoption & Enterprise Security Risks:

How enterprises are struggling to adopt Generative AI safely, as employees unknowingly expose sensitive data. The risks of shadow AI usage, and why visibility into AI applications is essential for organizations.

Harmonic’s Browser-Based Solution for Secure AI Adoption:

How Harmonic Security’s browser-based extension provides real-time monitoring and intervention, allowing enterprises to track AI adoption, prevent data leaks, and enforce security policies without disrupting productivity.

➡️ Get a DEMO and Take Advantage of Harmonic's GenAI Securely 

ul.live/harmonic

➡️ Check out Harmonic's Data leakage report "From Payrolls to Patents"
ul.live/harmonic-data-leaked

00 Intro
00:12 Guest Introduction - Alistair and Harmonic Security
01:16 Background on Digital Shadows and Transition to Harmonic Security
02:50 The Impact of ChatGPT and Generative AI on Security
04:35 The Problem with AI Data Leakage and Enterprise Risks
06:20 The Evolution of Data Protection: From DLP to AI Readiness
08:45 The Challenge of Shadow AI in Enterprises
10:30 Understanding Harmonic Security's Zero-Touch Data Protection
12:15 How Harmonic Security Works - Browser Extension Overview
14:40 Detecting Sensitive Data in AI Prompts
16:50 Live Demo - Preventing Data Leaks in AI Chatbots
19:35 Visibility and Monitoring of AI Usage Across the Enterprise
22:10 Risk Classification and Training Data Considerations
24:05 Policy Enforcement and Customization Options
26:30 Future Developments - Expanding Coverage Beyond AI Apps
28:15 Final Thoughts and Where to Learn More

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 466 | My Analysis and Prediction on the Deepseek Situation30 Jan 202500:33:01

Plus: The AI Vulnerability Glut, Remotely Hacking Subarus, Criticism of CVSS, the United Breach, and much more...

➡ Protect Against Bots, Fraud, and Abuse. Check out WorkOS Radar at workos.com/radar

Subscribe to the newsletter at: 
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://twitter.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

See you in the next one!

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

A Conversation with Faisal Khan from Vanta28 Jan 202500:39:01

In this episode, I speak with Faisal Khan, a GRC Solution Specialist at Vanta, about how their platform is transforming trust management for organizations.

We talk about:

Vanta as a Trust-Management Platform:
How Vanta helps organizations build, scale, and showcase their security and compliance programs through automation, efficiency, and tools like the Trust Center.

Key Features and Solutions Offered by Vanta:
How Vanta’s integrations automate compliance checks, streamline vendor risk management, and address industry standards like SOC 2, ISO 27001, and CMMC to save time and improve efficiency.

Future Directions and AI Integration:
How Vanta is expanding into new frameworks like the EU AI Act and leveraging AI to simplify compliance, optimize workflows, and address evolving trends in governance and security.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

UL NO. 465 | The SaaS Attack Vector, Project Stargate, and Undersea Cable Drones26 Jan 202500:21:15

also...Joseph goes independent, Perplexity's new search API, Stoicism's gift, and much more...

Subscribe to the newsletter at: 
https://danielmiessler.com/subscribe

Join the UL community at:
https://danielmiessler.com/upgrade

Follow on X:
https://twitter.com/danielmiessler

Follow on LinkedIn:
https://www.linkedin.com/in/danielmiessler

See you in the next one!

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

© My Podcast Data · Independent project · Data from Apple & Spotify