Podcast Episodes
Back to SearchCCT 373: An AI Agent Was Told No and Got In Anyway (CISSP Domain 6.2)
Season 3 Episode 373
Send us Fan Mail
An AI agent gets blocked by access controls, then calmly finds another way in anyway and that is the wake-up call. I use a recent Hac…
5 hours ago
CCT 372: Stolen Sessions and Why MFA Never Saw Them (CISSP Domain 5.6)
Season 3 Episode 372
Send us Fan Mail
A stolen password is annoying. A stolen session token can be invisible, valid, and instantly profitable. Today we dig into a real war…
1 week ago
CCT 371: Secure Communication Channels and Who Is Really On Your Call (Domain 4.3)
Season 3 Episode 371
Send us Fan Mail
One video hotline feels like a single, simple conversation until you trace the call path and realise there may be seven companies inv…
2 weeks ago
CCT 370: CISSP Cryptography, FIPS Validation, and Post-Quantum (Domain 3)
Season 3 Episode 370
Send us Fan Mail
A compliance deadline can change your security posture without changing a single bit of your encryption. We start with a simple stick…
3 weeks ago
CCT 369: Security Models Demystified - CISSP Domain 3.2 (Replay of CCT 278)
Season 3 Episode 369
Send us Fan Mail
🔁 REPLAY — this episode originally aired as CCT 278 in September 2025.
I'm heads-down finishing a Domain 3 cryptography episode, so I'…
4 weeks ago
CCT 368: CISSP Asset Security and Data Classification (Domain 2)
Season 3 Episode 368
Send us Fan Mail
Nine million images. No password. No encryption. And the defence was basically: “It wasn’t public because you had to know the URL.” T…
1 month ago
CCT 367: Threat Modeling and the AI Agent That Breached Hugging Face (CISSP Domain 1.10)
Season 3 Episode 367
Send us Fan Mail
A rogue AI agent didn’t “hack the future” so much as exploit the oldest security problems in the book: weak boundaries, over-trusted …
1 month, 1 week ago
CCT 366: Software Supply Chain Security Explained — CISSP Domain 8 (ChainDrop Case Study)
Season 3 Episode 366
Send us Fan Mail
A supply chain attack that leaves your Git history spotless should change how you think about “secure code.” We walk through ChainDro…
1 month, 2 weeks ago
CCT 365: Malicious QR Code Attacks and Digital Forensics Techniques Every CISSP Should Know [REPLAY]
Season 3 Episode 365
Send us Fan Mail
One careless QR scan can quietly turn a “private” chat into a live wiretap. We start with a timely threat story: Russian APT-style ac…
1 month, 3 weeks ago
CCT 364: Third Party Risk Management - How One Vendor Breach Exposed 119,000 Users
Season 3 Episode 364
Send us Fan Mail
A breach can hit your headlines even when your own systems never get touched, and that’s exactly why third-party risk management keep…
2 months ago