Tim Callan and Jason Soroko
Root Causes: A PKI and Security Podcast
Digital certificate industry veterans Tim Callan and Jason Soroko explore the issues surrounding digital identity, PKI, and cryptographic connections in today's dynamic and evolving computing world. Best practices in digital certificates are continually under pressure from technology trends, new laws and regulations, cryptographic advances, and the evolution of our computing architectures to be more virtual, agile, ubiquitous, and cloud-based. Jason and Tim (and the occasional guest subject matter expert) will help you stay current on developments in this essential technology platform and to u...
Author
Tim Callan and Jason Soroko
Category
Podcast website
Latest episode
Jul 10, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Root Causes 563: Our Response to QWAC Arguments - Part 1 05.01.2026 15:58
As a follow up to our episode 546, we break down the first of three sets of arguments about QWACs and examine their level of validity.
Root Causes 564: Our Response to QWAC Arguments - Part 2 05.01.2026 11:21
In our second of three episodes on the topic, we scrutinize arguments made for and against QWACs, this time focused on "governance and sovereignty."
Root Causes 562 : What Is a Side Oracle Attack? 30.12.2025 7:57
You may have heard of side channel attacks. Now Jason explains what a side oracle attack is and how a side oracle attack in conjunction with AI could be effective against the HQC or Falcon PQC algorithms.
Root Causes 561: What Is Classic McEliece? 23.12.2025 7:54
One of the NIST Round 3 PQC finalists that was never selected or eliminated is Classic McEliece. In this episode we explain in non-math terms how this algorithm works.
Root Causes 560: AI in 1000 Days - Small Language Models 18.12.2025 10:53
Continuing our examination of AI in 1000 days, we discuss the use of finely tuned small language models for highly specific use cases.
Root Causes 559: AI in 1000 days - Content Quality 16.12.2025 12:31
We discuss what happens when the quality gap between AI-generated and human-generated content drops to zero. We explore the consequences of this inevitable outcome.
Root Causes 558: AI in 1000 days - Human-in-the-loop Economy 15.12.2025 7:40
In our ongoing series on what AI will look like in 1000 days, we discuss the spread of a new business process, where AIs do the bulk of the work while humans sit in the loop for certain specific tasks and roles.
Root Causes 557: Top 5 PQC Laggards 12.12.2025 9:47
Following up on our list of top 5 PQC vanguards, in this episode we detail the top 5 PQC laggards.
Root Causes 556: Top 5 PQC Vanguards 10.12.2025 9:58
We describe the top five technology categories that are on the vanguard of driving PQC adoption. We describe what these categories have in common and how that results in early adoption of post quantum cryptography.
Root Causes 555: Perpretrators of Rogue Certificates 08.12.2025 12:42
We detail the top ten groups inside the organization who introduce rogue certificates into IT organizations.
Root Causes 554: Disentangling Quantum 05.12.2025 10:14
Tech watchers tend to conflate the many quantum technologies under development right now. In this episode we go through these technologies and explain how they connect.
Root Causes 553: Connecting Quantum Clocks to Cryptography 03.12.2025 5:55
We discuss quantum clocks and their potential role in cryptography.
Root Causes 552: 2026 Predictions 01.12.2025 32:43
We share our PKI predictions for 2026. Topics include PQC, eIDAS 2, CT logging, ACME, passkeys, CA distrust, AI model poisoning, and new attack vectors.
Root Causes 551: PKI in a Swarm at 50 mph 24.11.2025 9:53
Jason explores the role cryptography and trust systems play in the command and control of groups of autonomous drone systems.
Root Causes 550: WebPKI Certificate Lifespan - How Low Can You Go? 21.11.2025 15:46
Certificate maximum term is shrinking. In this episode we examine exactly how short they could get.
Root Causes 549: AI 1000 Days from Now - the Defeat of Voice Authentication 19.11.2025 18:10
In our ongoing series on AI in 1000 days, we describe the inevitable, complete distrust of voice printing as an authentication method, including why and what we think will happen.
Root Causes 548: AI 1000 Days from Now - Emotional Intelligence 17.11.2025 17:43
We begin a new series about what we expect from AI in the next three years. In this episode we discuss AI emulating emotional intelligence and its benefits.
Root Causes 547: Should We Do Mass Revocation Fire Drills? 14.11.2025 12:32
In this episode we discuss the value for enterprises in running mass revocation drills and compare the merits of tabletop exercises versus voluntary revocation events.
Root Causes 546: New Research Codifies Arguments for and Against QWACs 11.11.2025 43:25
We are joined by guests Pol Holzmer and Johannes Sedlmeir to describe their recent research that documents and organizes public arguments made about QWAC certificates. You can find this research at https://orbilu.uni.lu/handle/10993/66334.
Root Causes 545: What Is MOSH? 10.11.2025 8:18
The MOSH tool aids the use of SSH-secured sessions, especially across different systems. Jason unpacks the security of this system and how it uses encryption and shared secrets.
Root Causes 543: AI Finds a Zero Day 05.11.2025 17:45
We have seen the first known instance of an AI tool discovering a zero-day vulnerability. This could have vast implications on vulnerability detection and bug bounty programs. We discuss the implications.
Root Causes 544: What Is Chain of Lure? 05.11.2025 10:02
Chain of lure is an attack method used to circumvent restrictions and boundaries placed on AIs. Jason explains this attack and its implications.
Root Causes 542: Use Cases for HQC 02.11.2025 10:34
In this episode we go over some of the reasons one might choose HQC over ML-KEM as a PQC key exchange algorithm for specific circumstances. And we discuss the future diversity of cryptography.
Root Causes 541: Introducing the HQC PQC Algorithm 31.10.2025 6:52
NIST recently selected a second Key Exchange Module (KEM) among the PQC algorithms, HQC. We explain this code-based algorithm.
Root Causes 540: Contextual CBOM 27.10.2025 11:03
We define Cryptographic Bill of Materials (CBOM), which is more than a list of your cryptography and where it is. A CBOM need also include information about the PQC readiness of environments, availability of updates, and the importance of secrets.
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.