Antonio Gonzalez
Cybersecurity Under Pressure. Real Attacks, Real Lessons
This podcast breaks down real cybersecurity incidents to understand what actually went wrong, not in theory, but in practice. Each episode analyzes a recent attack, explains the technical mechanics in clear language, and translates them into concrete lessons for security, engineering, and business teams. The focus is on operational reality, decision making under pressure, and the controls that truly reduce risk in production environments.
Author
Antonio Gonzalez
Category
Podcast website
Latest episode
Jul 10, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
How Stolen Credentials Break Industrial Plants 18.03.2026 26:11
In this episode, we dive deep into the escalating threat landscape facing both enterprise IT and Operational Technology (OT) environments. Drawing from the eye-opening 2025 Verizon Data Breach Investigations Report, we unpack why stolen credentials and third-party vulnerabilities remain the top initial access vectors for ransomware and other devastating attacks. We move beyond theory to analyze re...
Cybersecurity Under Pressure: The Executive Brief 17.03.2026 12:27
Short on time? Join hosts Marcus Webb and Riley Park for a fast-paced executive summary of the critical threats facing AI systems today. In this bite-sized episode of "Cybersecurity Under Pressure," Marcus and Riley distill the most important lessons from real-world AI vulnerabilities into actionable insights. We quickly break down why stealthy "black-box" TAP attacks are outpacing complex "white-...
Why Hidden Text Hacks Enterprise AI 16.03.2026 36:15
In this episode of "Cybersecurity Under Pressure", we dive deep into the complex and rapidly evolving world of Artificial Intelligence cybersecurity. As Large Language Models (LLMs) evolve into autonomous "Agentic AI" capable of interacting with environments and executing real-world actions, the attack surface—and the pressure on security teams—has never been greater. Join us as we unpack critical...
DDoS and Hacktivism: When Disruption Becomes a Board-Level Threat 13.03.2026 41:43
Not every damaging cyberattack needs sophistication. Sometimes, sustained disruption is enough. A slow customer portal. Unstable supplier access. Degraded telemetry. In highly automated environments, these aren't just IT headaches—they're strategic pressure points that simultaneously hit operations, communications, and the C-suite. The real danger isn't downtime; it's the loss of visibility when l...
When AI Agents Become the New Insider Threat: Why Zero Trust Is No Longer Enough 11.03.2026 40:15
AI agents are no longer just assistants—they're autonomous operators with system access. This creates a new breed of insider threat that traditional security models can't detect or contain. In this episode, we break down why "least privilege" collapses when AI makes real-time decisions in physical environments like rail systems, automotive factories, and critical infrastructure. What you'll learn:...
Logged In, Not Hacked: When Identity and Edge Become the Attack Vector 09.03.2026 23:26
Modern intrusions don't start with cinematic malware. They start with a login. When compromised accounts meet exposed gateways, attackers gain trusted paths deep into critical environments—no alarms triggered, no malware needed. The reality is that identity abuse and edge exploitation are no longer separate threats; attackers chain them into a unified intrusion model. In this episode, we dissect e...
KEV-First Patch Ops: Defending the Exposed Control Plane 06.03.2026 38:12
In this brand new episode of Cybersecurity Under Pressure: Real Attacks, Real Lessons, Alex and Sarah tackle why traditional monthly patching cycles are failing modern enterprises. Prompted by actively exploited edge vulnerabilities, they argue for a radical shift toward a KEV-first operations strategy. This episode covers how to prioritize external exploitation signals over CVSS scores, enforce e...
The Illusion of MFA: AiTM Phishing and Session Token Theft 04.03.2026 32:40
Welcome to a new episode of Cybersecurity Under Pressure: Real Attacks, Real Lessons. If your security dashboard shows complete MFA adoption, you might still be compromised. Sarah and Alex break down the mechanics of Adversary-in-the-Middle (AiTM) attacks targeting the banking and insurance sectors. Discover why attackers are bypassing traditional authentication to steal session tokens, and learn...
Automotive Extortion Goes Upstream: Protecting the New Vehicle Perimeter 02.03.2026 40:11
In this new episode of Cybersecurity Under Pressure: Real Attacks, Real Lessons, hosts Sarah and Alex dissect the structural shift in automotive cyber threats. Moving past the outdated CAN bus hacking narrative, they explore how extortion crews are now targeting cloud services, APIs, and CI/CD pipelines to hold fleets hostage. Listen in for a rigorous breakdown of how to secure the update chain wi...
Invisible Conduits: The Control Plane Siege 28.02.2026 33:33
This episode dissects the strategic shift toward control plane exploitation, using the recent Cisco SD-WAN bypass (CVE-2026-20127) to illustrate how attackers are rewriting network segmentation in real-time. We analyze the fallout of the Odido leak and why "availability" has become the primary risk factor for industrial and automotive supply chains. We wrap up with a "Tier 0" roadmap for hardening...
Hostile Time: When the Clock Lies in Critical OT 27.02.2026 46:11
We are back with another episode of Cybersecurity Under Pressure. Real Attacks, Real Lessons, diving into one of the most insidious vectors in operational technology: hostile time. At 06:05, a rail control room gets a burst of alarms, but the chronological sequence is physically impossible. The interlocking system reports an input changing after the command that supposedly triggered it. Time synch...
The 18:45 Reflash: When Usability Friction Becomes a Threat 25.02.2026 23:24
In this new chapter of Cybersecurity Under Pressure. Real Attacks, Real Lessons, we tackle the dangerous intersection of operational friction and systems engineering. A dealership laptop starts a DoIP reflash at 18:45. The authentication portal lags, the technician forces a shared session to stay alive, and suddenly the trust chain is compromised by a manual workaround. This episode challenges the...
The Friday Night Patch & The Illusion of Segmentation 23.02.2026 29:05
Welcome to a new episode of Cybersecurity Under Pressure. Real Attacks, Real Lessons. It is Friday at 22:30, and a rail depot applies a minor network change to fix a flaky engineering link. By Monday morning, everything looks functional, but the security boundary has silently drifted. In this chapter, we break down why probabilistic defense and manual audits fundamentally fail in OT environments....
Weekly Roundup: State Machine Breakdown & Engineering the Degraded Mode 21.02.2026 40:35
Welcome to a new weekly roundup episode of Cybersecurity Under Pressure. Real Attacks, Real Lessons. This week, we examine a cascade of high-impact events across multiple critical sectors: a massive DDoS wave knocking Deutsche Bahn’s passenger systems offline, ransomware forcing the University of Mississippi Medical Center to revert to manual workflows, a major data breach of France's FICOBA bank...
Engineer the Path, Not Just the Perimeter 20.02.2026 32:44
A vendor fixes an alarm at 4 PM. At midnight, that same remote tunnel is used to push an unsafe setpoint. Different intent, identical path. How does your network know the difference? Spoiler: It doesn't. This is the synthesis. We connect the dots from the previous episodes, the Oldsmar attack and the break-glass dilemma, to deliver a final verdict: You cannot patch your way to safety. You have to...
02:00 AM Panic: Does "Break-Glass" Mean "Break-Security"? 18.02.2026 27:54
The packaging line stalls at 01:40 AM. Scrap is rising. The IAM server is down. Do you wait for IT to wake up, or do you reach for the "emergency" admin password kept in a drawer? That split-second decision is where security dies. In this episode, we tackle the uncomfortable friction between production pressure and cybersecurity. We explain why "temporary" bypasses often become permanent backdoors...
When Maintenance Becomes the Weapon: The Oldsmar Incident 16.02.2026 29:00
February 2021. An operator in Florida watches his cursor move across the screen on its own. It wasn’t a glitch; it was an active attempt to poison the water supply by changing sodium hydroxide levels. But here is the terrifying part: The attackers didn’t use a zero-day exploit. They used the plant’s own maintenance tools. In this episode, we dissect the Oldsmar incident to uncover a harsh reality:...
When the Hypervisor Becomes the Attack Surface: The OT Signal Behind CVE-2025-22225 07.02.2026 31:42
Picture a control room where HMIs work, but historians freeze and jump servers vanish. Nothing “OT” was hacked, but the digital floor beneath them just crumbled. This article analyzes why CVE-2025-22225 in VMware ESXi is not just another IT vulnerability, but a systemic risk to industrial safety. We explore the mechanics of the “Guest-to-Host” escape, why the hypervisor must now be treated with th...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.