Fexingo

Cybersecurity Business with Fexingo: Security Companies, Breaches, and Enterprise Defense

Business EN ↓ 105 episodes

Lucas and Luna examine the business of cybersecurity: the companies that build defenses, the breaches that expose weaknesses, and the enterprise strategies that determine who survives a digital siege. Each episode dissects one security vendor's financial filings, contract wins, and R&D spend — CrowdStrike versus Palo Alto Networks, the Okta identity saga, how SentinelOne's AI detection affects its gross margins. They walk through actual breach post-mortems (Colonial Pipeline, SolarWinds, MOVEit) and ask: what did the insurance payout look like, which C-suite roles took the blame, and how did t...

Author

Fexingo

Category

Business

Podcast website

www.fexingo.com

Latest episode

Jul 11, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

How Security Teams Use Browser Fingerprinting to Stop Fraud 28.06.2026

Episode 80 of Cybersecurity Business. Lucas and Luna explore how security teams are using browser fingerprinting — collecting device signals like screen resolution, installed fonts, and GPU data — to detect fraud and account takeover without cookies or user friction. The episode anchors on a real case: a large e-commerce company that reduced chargebacks by 40 percent by fingerprinting every checko...

Why Cyber Insurance Premiums Are Finally Dropping 28.06.2026

After years of skyrocketing rates and restricted coverage, cyber insurance premiums are coming down. In this episode, Lucas breaks down the data: average premiums dropped roughly 15 percent in the first half of 2026, following a 10 percent decline in 2025. He explains the three forces driving the shift — improved underwriting data, better security hygiene among buyers, and increased competition fr...

How Security Teams Use Cyber Threat Intelligence Sharing 27.06.2026

Episode 78 of Cybersecurity Business with Fexingo dives into the practical world of cyber threat intelligence sharing. Lucas and Luna explore how organizations like the Financial Services Information Sharing and Analysis Center (FS-ISAC) help banks and fintechs exchange real-time threat data. They discuss the tension between sharing and competitive secrecy, the role of automated platforms like MIS...

How Security Teams Are Using Graph-Based Threat Detection 27.06.2026

Episode 77 of Cybersecurity Business with Fexingo dives into graph-based threat detection, which maps relationships between users, devices, and data to spot attacks that traditional rules miss. Lucas and Luna examine how this approach caught a sophisticated supply-chain compromise at a healthcare firm in Q2 2026, where attackers used stolen credentials that wouldn't have triggered alerts in a stan...

How Security Teams Are Using GenAI for Automated Incident Response 26.06.2026

Episode 76 of the Cybersecurity Business podcast digs into how security teams are now using generative AI not just for threat intelligence summaries, but to automate the first few minutes of incident response. Lucas and Luna walk through a real case: a mid-market retailer that integrated a large language model into its SOAR platform, cutting mean-time-to-respond for phishing incidents from 18 minu...

Why CISOs Are Betting on Supply Chain Security 26.06.2026

Episode 75 of Cybersecurity Business with Fexingo dives into the fastest-growing worry for enterprise defenders: software supply chain security. Lucas and Luna unpack the SolarWinds aftermath and why CISOs are now mandating SBOMs—software bills of materials—before signing any vendor deal. They discuss how the Biden administration's executive order accelerated adoption, why companies like Microsoft...

How Security Teams Are Using Zero Trust Network Access 25.06.2026

In this episode of Cybersecurity Business with Fexingo, Lucas and Luna dive into Zero Trust Network Access — ZTNA — and why it's rapidly replacing traditional VPNs for remote access. They break down the key difference: instead of granting network-level access, ZTNA connects users to specific applications based on identity, device posture, and context. The conversation centers on a real-world deplo...

Why CISOs Are Moving to Cloud-Native Security Controls 25.06.2026

Episode 73 of Cybersecurity Business with Fexingo explores why CISOs are shifting away from third-party security appliances toward cloud-native controls like AWS Security Hub, Azure Policy, and Google Security Command Center. Lucas and Luna break down the 2025 Cloud Security Alliance report showing that 68% of enterprises now prioritize native tools over best-of-breed third parties. They discuss t...

Why Attackers Are Using Living Off the Land Techniques 24.06.2026

Episode 72 of Cybersecurity Business explores the rise of 'living off the land' (LotL) attacks, where hackers use built-in system tools like PowerShell and WMI instead of malware. We dive into a real case involving a mid-sized financial firm that lost $2.3 million when attackers abused Microsoft's own remote management tools. Lucas and Luna discuss why LotL evades detection, how endpoint detection...

Why Security Teams Are Adopting Browser-Based Isolation 24.06.2026

In Episode 71 of Cybersecurity Business with Fexingo, Lucas and Luna explore how enterprise security teams are using remote browser isolation to stop web-based threats. They break down the two main architectures — clientless and client-based — and discuss why companies like Google and Cloudflare are investing heavily in this space. The hosts explain how isolation works, when it makes sense, and wh...

How Security Teams Are Using EASM to Discover Unknown Assets 23.06.2026

External Attack Surface Management (EASM) is one of the fastest-growing segments in cybersecurity, and for good reason. Lucas and Luna dive into why organizations are discovering they don't actually know what's exposed to the internet. They break down a real case: a mid-sized financial services firm that found 47 unknown subdomains and three unpatched databases after running an EASM scan for the f...

How Security Teams Are Using Cyber Deception to Trap Ransomware 23.06.2026

In this episode, Lucas and Luna drill into a specific tactic gaining traction in enterprise defense: cyber deception. They explore how security teams deploy decoy systems, fake credentials, and breadcrumb files to lure ransomware operators into sandboxes where their behavior can be analyzed and their attacks neutralized. Lucas cites a case study involving a mid-sized healthcare network that used d...

How CISOs Are Using Continuous Threat Exposure Management 22.06.2026

Episode 68 of Cybersecurity Business with Fexingo dives into Continuous Threat Exposure Management (CTEM) — the framework Gartner predicts will reduce attack surface exploitation by two-thirds by 2027. Lucas and Luna break down how a mid-size retailer used CTEM to prioritize a critical API vulnerability before a breach, saving an estimated $4 million in potential damages. They discuss the five pha...

How Security Teams Are Using Adversary-in-the-Middle Attacks to Test Phishing Defenses 22.06.2026

In Episode 67 of Cybersecurity Business with Fexingo, Lucas and Luna dive into how security teams are using adversary-in-the-middle (AiTM) attack simulations to test their phishing defenses. Lucas explains that AiTM attacks bypass multi-factor authentication by proxying credentials and session cookies in real time, and how tools like EvilGinx and Modlishka have made this technique accessible to bo...

Why Security Teams Are Adopting Cloud Infrastructure Entitlement Management 21.06.2026

In this episode of Cybersecurity Business with Fexingo, Lucas and Luna dive into Cloud Infrastructure Entitlement Management (CIEM), a security discipline that addresses the risk of excessive permissions in multi-cloud environments. They break down how CIEM tools help organizations enforce least-privilege access across AWS, Azure, and Google Cloud, using the example of a 2025 breach at a major fin...

Why CISOs Are Moving to Vendor-Native API Security 21.06.2026

Episode 65 of Cybersecurity Business with Fexingo dives into the shift from bolt-on API security tools to vendor-native API protection inside platforms like AWS, Azure, and Google Cloud. Lucas and Luna discuss why CISOs are trading point solutions for integrated defenses, using examples from Capital One's 2019 breach and how API gateway native controls could have blocked the attack. They explore c...

CISO Liability Insurance Is Changing Cybersecurity Priorities 20.06.2026

Episode 64 of Cybersecurity Business with Fexingo: Security Companies, Breaches, and Enterprise Defense. Lucas and Luna explore how the tightening of directors and officers (D&O) liability insurance is reshaping cybersecurity strategy. They unpack the case of a 2024 shareholder lawsuit against a publicly traded healthcare company after a ransomware attack revealed inadequate oversight. Lucas expla...

How Security Teams Use Deception Technology to Trap Attackers 20.06.2026

In this episode of Cybersecurity Business with Fexingo, Lucas and Luna dive into deception technology — a proactive defense strategy where security teams deploy decoys, honeypots, and breadcrumbs to mislead attackers and detect intrusions early. They explore a real-world case: how a mid-sized financial services firm used fake database credentials and simulated customer records to unmask a latent r...

Why CISOs Are Investing in OT Security Now 19.06.2026

Industrial control systems and operational technology networks were long treated as air-gapped fortresses. That assumption collapsed in 2022 with the Colonial Pipeline shutdown and again in 2024 when a German wind turbine fleet was remotely hijacked. Today, Lucas and Luna drill into a specific case: the 2025 breach at a Gulf Coast petrochemical plant that entered through a legacy temperature senso...

How Security Teams Use MFA Fatigue to Strengthen Authentication 19.06.2026

Episode 61 of Cybersecurity Business with Fexingo explores how attackers are weaponizing MFA fatigue—bombarding users with push notifications until they approve—and what security teams are doing about it. Lucas and Luna break down the rise of MFA bombing attacks, the role of number matching and conditional access policies, and why some enterprises are moving to phishing-resistant FIDO2 keys. They...

How Security Teams Are Using User and Entity Behavior Analytics 18.06.2026

Episode 60 of Cybersecurity Business with Fexingo dives into User and Entity Behavior Analytics (UEBA) — the technology that learns what 'normal' looks like for users and machines, then flags the anomalous. Lucas and Luna explore how CrowdStrike and Microsoft Sentinel are baking behavioral baselining into their platforms, why a finance intern's late-night VPN login from a new device triggered a re...

Why CISOs Are Using SaaS-to-SaaS Backup Strategies 18.06.2026

Episode 59 of Cybersecurity Business with Fexingo explores why enterprise security teams are adopting dedicated SaaS-to-SaaS backup tools to protect critical cloud applications like Salesforce, Microsoft 365, and ServiceNow. Lucas and Luna break down the shared responsibility model gap, the shift from legacy on-prem backup approaches, and why recovering deleted or corrupted data from a SaaS app ca...

How Security Teams Are Using AI-Powered Red Teaming 17.06.2026

Episode 58 of Cybersecurity Business with Fexingo explores a fresh approach to security testing: AI-powered red teaming. Lucas and Luna discuss how companies like Anthropic, Google, and Microsoft are using large language models to automate and scale red teaming exercises, shifting from manual penetration testing to continuous, AI-driven attack simulation. They examine a specific case from early 20...

How Security Teams Use Dark Web Monitoring to Detect Stolen Credentials 17.06.2026

Episode 57 of Cybersecurity Business with Fexingo: How enterprise security teams are monitoring the dark web for stolen credentials, leaked data, and early breach indicators. Lucas and Luna break down the specific techniques—from automated scraping to human intelligence—using real-world examples like the 2024 Snowflake campaign and the rise of credential-stuffing attacks. They discuss how companie...

How Endpoint Detection and Response Became Essential 16.06.2026

Lucas and Luna explore the evolution of endpoint detection and response (EDR) from a niche tool to a cornerstone of enterprise cybersecurity. They discuss the 2023 MGM Resorts breach that highlighted gaps in traditional antivirus, the rise of EDR vendors like CrowdStrike and SentinelOne, and how EDR now integrates with XDR and SIEM to provide continuous visibility. Lucas explains the shift from si...

Listen to the Cybersecurity Business with Fexingo: Security Companies, Breaches, and Enterprise Defense podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.