Home Podcasts Root Causes: A PKI and Security Podcast
Root Causes: A PKI and Security Podcast

Root Causes: A PKI and Security Podcast

Tim Callan and Jason Soroko 623 Episodes Sep 18, 2026

Digital certificate industry veterans Tim Callan and Jason Soroko explore issues surrounding digital identity, PKI, and cryptographic connections in today's dynamic computing world. They discuss best practices in digital certificates under pressure from technology trends, new laws, cryptographic advances, and evolving computing architectures. The podcast helps listeners stay current on developments in this essential technology platform and understand the whys and wherefores of popular Public Key Infrastructures.

Episodes

Root Causes 665: What is Quantum Security Posture Management (QSPM)?
Root Causes 665: What is Quantum Security Posture Management (QSPM)? Sep 18, 2026 00:23:48 We define a new term, Quantum Security Posture Management (QSPM) and explain what it is and why it's important for PQC plans.
Root Causes 664: What Is a Scientifically Relevant Quantum Computer? Part 1
Root Causes 664: What Is a Scientifically Relevant Quantum Computer? Part 1 Sep 17, 2026 00:29:26 Much ado has been made about quantum computers breaking traditional cryptography. But that's not the reason so much effort is going into their creation. In this first of two episodes, we discuss the expected scientific applications for quantum computing architecture and the idea of a Scientifically Relevant Quantum Computer (SRQC).
Root Causes 663: The Trouble with Quantum Key Distribution
Root Causes 663: The Trouble with Quantum Key Distribution Sep 11, 2026 00:22:30 Quantum Key Distribution (QKD) is supposed to be this highly secure method of key exchange. But is it as secure as people say? We explore the potential weaknesses with QKD.
Root Causes 662: HAWK Eliminated from NIST Competition, FALCON Unaffected
Root Causes 662: HAWK Eliminated from NIST Competition, FALCON Unaffected Sep 9, 2026 00:05:21 We follow up on the recent Mythos attack against PQC candidate HAWK. We discuss the impact of this attack on both HAWK and FALCON.
Root Causes 661: What Will Happen with eIDAS and MTC?
Root Causes 661: What Will Happen with eIDAS and MTC? Sep 4, 2026 00:10:50 TLS certificates from CA/Browser Forum CAs are not the only server certificates in the WebPKI. eIDAS QWACs are treated as server certificates by the major browsers. We see clear progress toward post quantum cryptography (PQC) for TLS by way of the Merkle Tree Certificate (MTC) architecture. But what is the path to PQC for eIDAS? We examine this question.
Root Causes 660: What Are Delegated Credentials?
Root Causes 660: What Are Delegated Credentials? Sep 2, 2026 00:03:07 As certificate lifespans become extremely short, new methods of delivery become functionally necessary. We explain RFC 9345 and how delegated credentials play a role in CDNs to deliver very short-lived certificates.
Root Causes 659: Should We Lengthen Certificate Lifespans?
Root Causes 659: Should We Lengthen Certificate Lifespans? Aug 31, 2026 00:12:26 With certificate lifespans shortening, we occasionally run into those who disagree with this trend and seek to lengthen maximum term once again. We examine regressive attitudes in PKI, why they occur, and the reasons that lessening security is generally a bad policy.
Root Causes 658: The Trouble with X9 Certificates
Root Causes 658: The Trouble with X9 Certificates Aug 26, 2026 00:13:00 X9 is a consortium certificate for interbanking applications. There is a common misunderstanding that X9 certificates are a public-trust surrogate for mTLS using WebPKI certificates. We clarify why this is not the case.
Root Causes 657: What Is Chaos Engineering?
Root Causes 657: What Is Chaos Engineering? Aug 24, 2026 00:01:53 "Chaos engineering" describes the practice of injecting faults into a system to see what happens. This is a known strategy for deterministic systems, but with the advent of non-deterministic AI systems, chaos engineering has taken on greater importance.
Root Causes 656: The Trouble with Recursive AI Training
Root Causes 656: The Trouble with Recursive AI Training Aug 21, 2026 00:06:09 Since frontier-model AIs have been trained on a large portion of published human knowledge, widespread publication of incorrect information can taint AI results. As more AI-generated slop finds its way onto the internet, this runs the risk of further poisoning AI results. This ultimately can result in completely unusable information.
Root Causes 655: Why Not to Create Your Own Private CA
Root Causes 655: Why Not to Create Your Own Private CA Aug 19, 2026 00:05:59 It is possible to use common tools like OpenSSL to create your own ML-DSA private CA. This is a great tool for development and research projects, but Jason explains the pitfalls with trying to do this for production systems.
Root Causes 654: What's the Difference Between ML-DSA and ML-KEM?
Root Causes 654: What's the Difference Between ML-DSA and ML-KEM? Aug 17, 2026 00:07:01 We are replacing RSA with the combination of ML-DSA and ML-KEM. We explain the naming convention and specifically what these two algorithms do.

Recommended