Antonio Gonzalez
Cybersecurity Under Pressure. Real Attacks, Real Lessons
This podcast breaks down real cybersecurity incidents to understand what actually went wrong, not in theory, but in practice. Each episode analyzes a recent attack, explains the technical mechanics in clear language, and translates them into concrete lessons for security, engineering, and business teams. The focus is on operational reality, decision making under pressure, and the controls that truly reduce risk in production environments.
Autor
Antonio Gonzalez
Kategorie
Podcast-Website
Neueste Folge
10. Jul 2026
Wo hören?
Podcasts in der App Replaio Radio Bald verfügbarPodcasts kommen bald in die App. Installiere sie jetzt und erlebe als Erster einen ganz neuen Blick auf Podcasts
Folgen
Why FRMCS Cannot Trust the Mobile Carrier 13.05.2026 35:25
Your 5G service level agreement is not a safety case, and confusing the two is a dangerous mistake for the future of rail. In this episode, we break down why FRMCS cannot depend on the goodwill of a mobile operator, regardless of how low the latency claims are. We explore the logic of EN 50159 and explain why the only way to build a truly resilient railway architecture is to assume the network is...
The Token That Bypassed the Jump Host 11.05.2026 35:31
Most industrial security teams are betting their entire plant floor on a jump server that an attacker can bypass in seconds. In this episode, we break down why your current MFA strategy is failing to stop session theft and what it actually takes to secure the engineering zone. We walk through the technical steps of removing NTLM and binding sessions to device posture so a compromised corporate cre...
Poisoning the Software Defined Vehicle at Birth 08.05.2026 33:42
Your vehicle’s security might be dead on arrival if the very network that birthed it was already compromised. In this episode, we challenge the industry obsession with supplier code and shift the focus to the high-stakes world of cryptographic provisioning on the plant floor. We break down why a verifiable SBOM is only half the battle and how to implement fleet-scale monitoring that actually filte...
Why Rail Operators Fear the Patch 06.05.2026 41:18
Most people think rail cybersecurity is a patching problem, but it is actually a validation nightmare that can stop your entire network in its tracks. In this episode, we break down why the standard patch or perish mindset fails when a single software update becomes an operational gamble with safety and timetables. We walk through the reality of TS 50701 and explore how data diodes and strict phys...
When Physics is the Final Firewall 04.05.2026 39:48
If you think your OT security problem is a lack of awareness, you’re missing the fact that your hardware literally cannot handle the solution. 🔌 In this episode, we’re getting real about why legacy PLCs were never meant for modern crypto and how forcing it can actually tank your process. We walk through why deep packet inspection is often a trap and how to build a defense-in-depth strategy that m...
That is the part many cybersecurity plans still miss, OT controls under revision 01.05.2026 35:00
The smartest OT control in rail is often the one that leaves the certified core untouched #RailCybersecurity #CBTC #EN50129 #TS50701 #IEC62443 #DPI #OTSecurity #Railway 🎯 IN THIS EPISODE:• Railway and transportation cybersecurity• AI and machine learning security risks 📋 KEY TOPICS COVERED:• Railway Cybersecurity• AI Security 🔑 KEY INSIGHTS:1. The smartest OT control in rail is often the one th...
Supply Chain: When the supplier will not cooperate resilience must become 29.04.2026 33:42
When the supplier will not cooperate, resilience must become hostile Too many OT risk programs still assume the vendor will help when it matters. In real plants, that assumption breaks fast. Large integrators often resist SBOM requests, reject monitoring agents, and defend remote access as if it were untouchable because of warranty, latency or system integrity. 🎯 IN THIS EPISODE:• Regulatory comp...
Zero Trust in OT does not start at the HMI 27.04.2026 29:28
Zero Trust in OT does not start at the HMI That is why mature OT security does not force cloud-style identity into the final device when the device, and the workflow around it, were never built for it. 🎯 IN THIS EPISODE:• Zero Trust architecture in OT environments• Automotive and connected vehicle security• AI and machine learning security risks• Identity and credential-based attacks• Authenticat...
[2026] Critical: The NIS2 problem is no longer whether the | Incident Response 24.04.2026 41:01
The NIS2 problem is no longer whether the small supplier agrees with the requirement The NIS2 problem is no longer whether the small supplier agrees with the requirement 🎯 IN THIS EPISODE: Critical vulnerability assessments and mitigations AI and machine learning security risks Incident response and crisis management 📋 KEY TOPICS COVERED: NIS2 Compliance AI Security 🔑 KEY INSIGHTS: ...
[2026] Deep Dive: Some of the hardest OT risks in rail | Zero Trust 22.04.2026 35:32
Some of the hardest OT risks in rail stay online for one simple reason If you cannot harden the asset, you isolate the risk around it with controls that actually understand the traffic. That means segmentation designed for the signalling cell, tightly brokered remote access, and inspection layers that can parse the protocols the system really uses instead of treating them as opaque packets. 🎯 IN...
[2026] Deep Dive: A bad weld passes inspection | OT Security 20.04.2026 47:17
A bad weld passes inspection That is why periodic challenge parts are useful, but not sufficient on their own. They validate model behaviour against physical reality. They do not give you cybersecurity visibility. 🎯 IN THIS EPISODE:• Automotive and connected vehicle security• AI and machine learning security risks 📋 KEY TOPICS COVERED:• Automotive Security• AI Security 🔑 KEY INSIGHTS:1. The PLC...
[2026] Critical: Zero Trust for Brownfield OT - IEC 62443 17.04.2026 38:41
"Do we have Zero Trust 🎯 IN THIS EPISODE: Regulatory compliance frameworks (NIS2, IEC 62443) Zero Trust architecture in OT environments AI and machine learning security risks Incident response and crisis management Supply chain attacks and software security 📋 KEY TOPICS COVERED: Critical Infrastructure Protection Zero Trust Architecture NIS2 Compliance IEC 62443 Standard AI Security 🔧...
Vendor Lock-in: Surviving Ransomware When You Can't Switch Suppliers 15.04.2026 43:38
Your automation vendor just announced a ransomware breach. You cannot switch them—you're locked into a 20-year PLC lifecycle and 18 months of SCADA recertification. In this episode of Cybersecurity Under Pressure, we break down the technical details behind this incident and translate them into actionable lessons for security teams, engineers, and business leaders. SBOMs are incomplete, visibility...
The Plausibility Gap: When AI Sensors Report Valid Data About Invalid Physics 13.04.2026 39:35
Machine learning is now embedded in Level 0 field devices, making autonomous calibration decisions that your deterministic PLC blindly trusts. When these "Shadow AI" sensors drift—through manipulation, environmental degradation, or weak validation limits—they feed plausible telemetry about physically impossible states. The bearing is failing, but the sensor reports normal acceleration. The train i...
The Great Bifurcation: Why Average Security Is Disappearing (And Which Side You’re On) 10.04.2026 37:01
Global breach costs just fell for the first time in five years. So why did US costs hit record highs? The answer reveals a market splitting in two: organizations with disciplined governance that absorb attacks and recover, and those entering a spiral of escalating costs and regulatory scrutiny. This episode targets the C-suite and security leaders navigating NIS2 compliance. We analyze the $1.9 mi...
The 56% Problem: Why Attackers No Longer Need Passwords (IBM X-Force Analysis) 08.04.2026 34:42
The 2026 IBM X-Force Threat Intelligence Index reveals a chilling statistic: more than half of last year’s exploited vulnerabilities required zero authentication to breach. The barrier to entry hasn’t disappeared—it has shifted from sophistication to pure velocity. In this episode we explore why "basic hygiene" is a dangerously vague concept and what "exposure management" actually means in practic...
When Your Security Scanner Becomes the Trojan Horse: The CERT-EU Supply Chain Breach 06.04.2026 42:35
What happens when the tool you download to find vulnerabilities becomes the vulnerability itself? This week we dissect the European Commission breach where attackers exfiltrated 91.7GB of sensitive data through Trivy, a trusted open-source security scanner. We walk through the anatomy of a supply chain poisoning: how threat actors compromised upstream distribution channels, why traditional "trust...
Why Evidence Does Not Equal Confidence 03.04.2026 23:54
In this episode of Cybersecurity Under Pressure: Real Attacks, Real Problems, we dive deep into the fascinating and destructive world of real-life cyber threats that have reshaped our global digital landscape. Join us as we explore the infamous Stuxnet worm, a highly sophisticated malware that infiltrated air-gapped industrial control systems to sabotage physical infrastructure, proving that cyber...
Legacy rail assets do not become secure by policy 01.04.2026 28:13
In this episode, we dive into the alarming reality of cyber threats in the modern railway sector. We explore major real-world incidents that prove critical infrastructure is a prime target, from a teenager derailing trams in Łódź, Poland using a reverse-engineered TV remote , to the notorious WannaCry ransomware outbreak that disrupted Deutsche Bahn's passenger information displays .We also unpack...
If the secure reflash takes longer, the shortcut wins 30.03.2026 24:16
In this episode of "Cybersecurity Under Pressure: Real Attacks, Real Problems", we dive into the messy reality where theoretical cybersecurity collides with operational pressure. What happens when a dealership technician needs to rush a DoIP reflash at 6:45 PM on a Friday with a growing queue of vehicles on the bay? We discuss how the clash between security, which demands traceability and controll...
Jeep, Gateways and the Myth of Clean Isolation 27.03.2026 36:13
In this episode, we dive into why the infamous Jeep hack is not just nostalgia, but a live architectural problem that the automotive sector still wrestles with today. While connected features demand reach and product teams crave convenience, we explore how modern vehicle architectures struggle to neatly isolate trust boundaries in the real world. In theory, gateways, domain controllers, and embedd...
Rail Service Risk Starts Outside the SIL Boundary 25.03.2026 35:03
In this episode of Cybersecurity Under Pressure: Real Attacks, Real Problems, we explore the rapidly evolving threat landscape facing modern railway networks. The era of 'security by isolation' is officially over, as digital twins, AI, and interconnected operational technologies turn railways into massive, distributed attack surfaces. We break down real-world cyber incidents, including the 2023 Po...
Oldsmar Was About Standing Trust 23.03.2026 19:25
In the realm of Operational Technology (OT), cyberattacks are not just IT problems; they are events with physical consequences, financial disasters, and threats to human safety. In this episode, we dive into how digital transformation and IT/OT convergence have expanded the attack surface, exposing critical infrastructure to unprecedented threats. We will explore devastating real-world cases that...
Why Quantum Security Paralyzes Industrial Infrastructure 20.03.2026 24:29
In this episode, we dive deep into a critical, long-term threat facing Operational Technology (OT) and railway infrastructure: the "harvest now, decrypt later" strategy. We explore why attackers are actively collecting telemetry histories, failure signatures, and maintenance models today, knowing their engineering value will remain highly strategic a decade from now. The transition to post-quantum...
Cybersecurity Under Pressure: The Executive Brief 19.03.2026 8:29
Short on time? Join hosts Marcus Webb and Riley Park for a rapid, high-level summary of our deep dive into the escalating threats facing Operational Technology (OT) and enterprise IT. In this brief episode, we distill the most critical takeaways from the 2025 Verizon Data Breach Investigations Report, examining why stolen credentials and third-party vulnerabilities continue to be the dominant init...
Ähnliche Podcasts
Replaio ist kein Herausgeber von Podcasts; die Namen der Sendungen, Cover und Audioinhalte gehören ihren Autoren und werden über öffentliche RSS-Feeds verbreitet