
Threat Talks - Your Gateway to Cybersecurity Insights
Threat Talks is a cybersecurity podcast that explores the latest threats and industry trends. Each episode features experts breaking down complex topics to make them accessible to both IT professionals and everyday internet users. The show provides in-depth, first-hand experiences from leading cybersecurity professionals. New episodes are released monthly, helping listeners stay informed and secure.
Episodes

How a 19-Year-Old Hacked the NEWS Without Breaking In
Your Outlook account recovery will accept an authenticator code on its own. No password, no inbox, no phone number. Anyone holding that TOTP secret owns the account, and the second factor you bought to survive credential theft becomes the only thing in the way.Koen Kandelaars found one sitting in a PDF on a public help page at the NOS, the largest news organization in the Netherlands. He

The End of Reactive Security
You already had the threat intel. The IP was on your blocklist, the file hash was known bad. So why did your MDR only raise an alert instead of blocking it? Lieuwe Jan Koning, Co-founder & CTO at ON2IT, and colleague Nicholai Piagentini, Technical Enablement Engineer at ON2IT, make the case for preemptive cybersecurity: the shift from detect-and-clean-up to block-first, and what it me

NIST CSF 2.0: No CISO, No Excuse
The new NIST Cybersecurity Framework 2.0 is out, and most teams still ask the same question: what do I do tomorrow? Lieuwe Jan Koning sits down with NIST's Amy Mahn and Daniel Elliott to turn the framework into a concrete next step. Governance is now its own function. Profiles tell you where you are and where you need to be. And the Quick Start Guides give a 15-page answer to a problem mo

Your SOC Won't Survive AI Attackers Without This Shift
Running a SOC was always hard. With AI in attackers' hands, hard becomes impossible, unless you change how you work. Rob Maas, Field CTO at ON2IT, sits down with Lieuwe Jan Koning, Co-founder & CTO at ON2IT, on why detection and response no longer buys you time. Open-source AI now finds a way into a portal in about 15 minutes, no pentester required. The fix is preemptive cybersecurity

Shiny Hunters: One Name Behind a Dozen Mega-Breaches
Salesforce, Google, Okta, Louis Vuitton, Allianz, Odido: all breached under the same name. Shiny Hunters may not even be one group. It is a brand that different criminal crews borrow to extort their victims, because the reputation does half the work.The uncomfortable part is how simple it is. No fancy malware, no zero-days. Almost every documented breach started with a phishing call to th

HackShield: Raising the Next Generation of Cyber Heroes
The hacker who will attack your organization in five years is in school right now, and nobody is teaching that kid what to do online. HackShield is trying to change that. Lieuwe Jan Koning, Co-founder & CTO at ON2IT, sits down with Tim Murck, co-founder of HackShield, on why security awareness training for adults keeps failing, and what a game built for seven to twelve year olds can t

The Hacker Who'll Hit You in 5 Years Is in School
The hacker who will attack your organization in five years is in primary school right now, and nobody is teaching them anything. Tim Murck, Co-founder & Chief Product Officer at HackShield, joins Lieuwe Jan Koning, Co-founder & CTO at ON2IT, to explain how a game turns kids aged 7 to 12 into junior cyber agents instead of future attackers. The method is not fear. It is teaching ki

JADEPUFFER: The AI Malware With No Human in the loop
What if AI stopped being the assistant to cybercriminals and became the attacker itself? That's no longer hypothetical. JADEPUFFER is the first documented case of ransomware run entirely by an AI agent: it broke into a production database, hit a wall mid-attack, then found another way in within 31 seconds, faster than most human penetration testers can react. Rob Maas, Field CTO at ON2IT,

Four Firewall Mistakes Still Wrecking Networks in 2026
Three out of four firewall rule sets ON2IT’s SOC inherits from new customers share the same blind spots, and none of the fixes cost extra licensing.In this episode, Lieuwe Jan Koning, Co-founder & CTO at ON2IT, sits down with Jelle Konings, security optimization specialist in ON2IT’s Security Operations Center, to walk through the mistakes his team finds on almost every inherited netw

Would Your Boss Read Your Prompts? Private AI, Explained
Would you still use ChatGPT if your boss, or the AI provider, could read every single prompt you typed in? Most of us type something we would never share publicly into an AI tool every day.In this Threat Talks Deep Dive, Field CTO Rob Maas sits down with ON2IT senior developer Derk Bell to unpack the privacy problem hiding inside everyday AI use, and a genuinely clever way to solve it.The

Framework Fatigue: Why NIST Rebuilt the Cybersecurity Framework
Ten years after its first release, the NIST Cybersecurity Framework got a full rebuild. Not because it failed, but because everyone started using it, and it was never built for everyone.In this episode, host Lieuwe Jan Koning talks with Amy Mahn, IT Standards Advisor at NIST, and Daniel Eliot, Lead for Small Business Engagement at NIST’s Applied Cybersecurity Division, about what CSF 2.0

Why Do You Trust Your AI Agent?
Agentic AI is powerful, and someone recently found that out the hard way when an AI tool, given free rein with a user’s own permissions, deleted her entire mailbox. That cautionary tale opens this Threat Talks Deep Dive, where host Lieuwe Jan Koning talks with Rob Maas, Field CTO of ON2IT, about what Zero Trust looks like when the thing you’re securing is an AI agent.Drawing on Rob’s rece

Mythos is not the AI Apocalypse
Mythos found a 23-year-old vulnerability in FreeBSD that no human team had caught. Your 30-day patch cycle assumes years before it gets weaponized. Today that window is one day. Next year it will be one hour.Lieuwe Jan Koning, Co-founder & CTO at ON2IT, sits down with Rob Maas, Field CTO at ON2IT, to break down what Anthropic's Mythos actually found, why the public release (Fable) sti

What about Iran? One Word Document, Three Backdoors
Every big nation state has a cyber army: China, Russia, the US, Europe. But what about Iran? Meet Boggy Serpens, a group tied to Iran’s civilian intelligence service whose entire business is breaking in and staying in, then handing the keys to whoever strikes next. Their playbook, Operation OLALAMPO, needs just one booby-trapped Word document to plant three separate backdoors on your netw

Europe Is Losing the Sea Cable Race
In 2026, 40 new submarine cables go live. Most won't land in Europe. Europe is losing the sea cable race, and most people haven't noticed yet.In this second part of our sea cables conversation, host Peter Ernst sits down with Ernst Noorman, the Netherlands' Cyber Ambassador-at-Large and a member of the ITU Advisory Body on Submarine Cable Resilience, to move from the “how” of sea cables t

Russia Cutting Cables?
The headlines say Russia’s shadow fleet is cutting cables. The experts say most faults come from clumsy ship anchors. Ninety-nine percent of global internet traffic runs across the ocean floor, and the conversation about what threatens it is mostly wrong.In this episode of Threat Talks, Peter van Burgel, CEO of AMS-IX, sits down with Ernst Noorman, Cyber Ambassador at Large for the Nether

Hero Culture and a $1 Million Mistake
A company skips a security check two days before Black Friday and loses $1 million when transactions land in the wrong bank accounts. A machine learning team is told no on production data access, gets it via SharePoint anyway, and a year later the data is on contractor laptops nobody can account for. Two stories, one pattern: when security blocks, the risky work doesn’t stop – it just hap

When Compliance Replaces Security
A SaaS company buys enterprise ChatGPT for 800 staff and strangely only uses 30 seats. A corporate signs annual risk exemptions for five years until the exception list itself is mistaken for a working security process. Same root cause, two symptoms.Compliance is not security. Security culture is company culture. If your employees do not trust their managers, no policy you write will save

The Agent Problem
Your AI agents are users now. They have your permissions. They read your email. They send messages. And they act on instructions that anyone with an internet connection can drop into your inbox.In this episode of Threat Talks, Lieuwe Jan Koning, Co-founder and CTO at ON2IT Cybersecurity, sits down with Jack Cable, CEO and Co-founder of Corridor and former lead of Secure by Design at CISA,

Your Sales Team is now a Developer
The biggest security threat in your organization right now? Your sales team.AI coding tools have crossed into every department, and most organizations have no idea what's being built or deployed in their name.In this episode of Threat Talks, Lieuwe Jan Koning, Co-founder and CTO at ON2IT Cybersecurity, sits down with Jack Cable, CEO and Co-founder of Corridor and former lead of Secure by

The Hidden Risk of Your Infrastructure
Volt Typhoon spent years pre-positioning inside US critical infrastructure. Salt Typhoon pulled off one of the largest espionage campaigns in history. They didn't break in. They were already there.So what do you actually do about it?Caitlin Clarke, Senior Director of Cybersecurity Services at Venable and former Special Assistant to the President for Cybersecurity and Emerging Technology,

America Just Changed the Rules of Cyber War
If you're waiting for the executive orders to act, you're already behind. The U.S. has just released a new national cyber strategy.The core message is clear: stop waiting to be hit, and start making it costly to try. In this episode of Threat Talks, Caitlin Clarke, Senior Director of Cybersecurity Services at Venable and former Special Assistant to the President for Cybersecurity & E

The EU is forcing the conversation
We always worried about lock-in. But the real risk is getting locked out – of your cloud.Your data may sit in Europe.Your systems may run on trusted platforms.But if access is restricted tomorrow – by a provider, a government, or a legal decision - what actually happens?Can you still operate?In this episode of Threat Talks, Lieuwe Jan Koning (co-founder and CTO at ON2IT Cybersecurity) spe

Europe vs China vs US: Who Controls Your Tech?
You don’t control the technology your business runs on.That’s an uncomfortable reality. But the truth is: your infrastructure runs on foreign technology.Your data depends on external suppliers.And if they fail – you feel it.The EU has decided to step in. In this episode of Threat Talks, Lokke Moerel (Professor of Global ICT Law at Tilburg University and leading expert in EU cybersecurity

Breached OT Kills. Zero Trust 2.0 Doesn’t
Not long ago, OT environments were isolated islands.Control systems ran independently, accessible only through dedicated workstations requiring physical presence. The factory floor and the IT department might as well have been on different planets. That world is gone. Today’s OT environments are connected. Remote access from IT workspaces to control systems is routine. And this is just

React2Shell Explained
Log4j caught everyone off guard. React2Shell might be doing the same right now.Across thousands of React apps, exposure is already baked in - accelerated by vibe coding and shipped without scrutiny.In some cases, one request is all it takes.React2Shell turns that exposure into remote code execution in React and Next.js environments -triggered by a single HTTP POST request.In this episode

Zero Trust in the AI Era
AI can fake your voice.Deepfakes can move millions of dollars in minutes. And attackers no longer need to break trust - they can simulate it.Security teams are entering an era where nothing can be trusted at face value.In part two of our Zero Trust series with Dr. Zero Trust, Chase Cunningham, he and Lieuwe Jan Koning (Co-Founder and CTO at ON2IT Cybersecurity) explore what the future of

Zero Trust: From Revolution to Reality
Zero Trust is easy to say. Hard to execute.Most organizations try to build it themselves.Most underestimate the complexity.Most get stuck in architecture diagrams instead of protecting what actually matters: data.If execution determines success – should you really be doing it alone?In this episode of Threat Talks, Lieuwe Jan Koning, Co-Founder and CTO at ON2IT Cybersecurity, sits down wit

China is Already Inside your infrastructure
China is Already Inside your infrastructure. And the EU is done ignoring it.In this exclusive first discussion of the upcoming EU Cybersecurity Act revision, Bart Groothuis, MEP, joins Lieuwe-Jan Koning, CTO and Co-Founder, to explain why vendor dependency is now a board-level security risk.Groothuis breaks down how the revised EU Cybersecurity Act will shift Europe from soft guidance to

OpenClaw and The Dark Side of Agentic AI
Your biggest threat this year isn’t malware. It’s your own AI assistant.OpenClaw connects an LLM directly to your terminal, browser, email, and chat. It runs with your permissions. It executes tasks without hesitation.Days after launch, researchers found a One-Click RCE.Cisco called it a security nightmare.Gartner called it an unacceptable risk.OpenClaw (formerly known as Clawdbot and Mol

Inside the MongoBleed Memory Leak
Imagine your memory just became the attack surface.That’s MongoBleed. Or as others know it: CVE-2025-14847. No passwords to crack, no complex exploit chain. Just normal protocol behavior, repeated at scale.Each request leaks a little more MongoDB memory until something valuable shows up, even in environments that already follow network segmentation best practices.Rob Maas (Field CTO, ON2I

How to pass any cybersecurity certification
Certifications play a central role in cybersecurity career development.Yet many experienced engineers find themselves failing exams they should easily pass.The problem isn’t a lack of knowledge or skills.It’s the disconnect between real-world security work, and certifications built around memorization, UI trivia, and version-specific details that will be obsolete in two months.In this epi

The End of Reactive Security
You already had the threat intel. The IP was on your blocklist, the file hash was known bad. So why did your MDR only raise an alert instead of blocking it? Lieuwe Jan Koning, Co-founder & CTO at ON2IT, and colleague Nicholai Piagentini, Technical Enablement Engineer at ON2IT, make the case for preemptive cybersecurity: the shift from detect-and-clean-up to block-first, and what it me

From IPs to people
Detection fails without identity. When activity isn’t tied to a person, anomalies stop telling a story - they’re just signals without context. And when your logs only show IP addresses, your security team is left responding to shadows, not real risk. In this Threat Talks Deep Dive, Rob Maas (Field CTO, ON2IT) and Nicholai Piagentini (Technical Enablement Engineer, ON2IT) show how identity

Beyond NIS2 Compliance
Most organizations ask one question: “Are we compliant?”The question that actually matters is: “Will we still be operating when things go wrong?”In this Threat Talks episode, Lieuwe Jan Koning speaks with Jasper Nagtegaal about what NIS2 is really trying to change - and why cyber resilience fails when organizations treat it as a policy exercise instead of a business risk.This isn’t about

Maritime Cybersecurity: Predictable = Hackable
You’re Port Control. A vessel requests entry.No captain. No crew. Just autonomy.In maritime cybersecurity, the risk isn’t that the ship is autonomous.It’s that you no longer know who’s steering.Lieuwe Jan Koning (Co-Founder & CTO, ON2IT) joins Stephen McCombie (Professor of Maritime IT Security, NHL Stenden) and Hans Quivooij (CISO, Damen Shipyards) to expose the illusion of control i

Before the Mayday: Cyber Attacks at Sea
Could Stuxnet happen again - this time at sea?In this Threat Talks episode, host Lieuwe Jan Koning sits down with Professor Stephen McCombie, global expert in maritime cybersecurity, to unpack real-world cyber attacks on critical infrastructure and why the maritime sector is dangerously exposed.From GPS spoofing and insider threats to aging ship systems and state-sponsored attacks, this c

Looking Back at 2025: Cybersecurity at a Turning Point
2025 was the year detection stopped being enough.Because attacks stopped behaving the way detection was built to handle.OT systems were hit with real-world consequences. AI stopped being just a productivity tool and became an attacker. And SOCs discovered - often painfully - that speed alone still means reacting too late.In this special end-of-year Threat Talks episode, Lieuwe Jan Koning

BGP Vortex: Internet Kill Switch?
Could a single BGP trick really break the internet?A new “BGP Vortex” claim says yes - by abusing route oscillation and BGP communities to trigger endless update loops and exhaust router CPU. So we check what actually holds up in the real world.In this Threat Talks Deep Dive, Rob Maas, Field CTO at ON2IT, sits down with Eric Nghia Nguyen Duy, Network Engineer at AMS-IX, to understand wha

WSUS RCE: Update Weaponized
Attackers are abusing a WSUS flaw - Microsoft’s Windows Server Update Services - to detonate PowerCat, spawn reverse shells, and plant ShadowPad. All from the update server your entire Windows estate trusts by default.One weak crypto key and a broken deserialization function let attackers hit your WSUS server with unauthenticated SYSTEM-level code execution. Chinese APT groups are already

Bad Successor: The Service Account Flaw to Watch
It was built to secure service accounts.Instead, it became the cleanest privilege-escalation vector of 2025.They called it Bad Successor (A.K.A. CVE-2025-53779).A new “secure by design” feature in Windows Server 2025 -DMSA -was supposed to fix service account hygiene. Instead, it introduced a loophole where attackers could claim successor status, skip password requirements, and silently i

From Hacker to Hero
What if your next great cyber defender is a teenager gaming in their bedroom right now?In this Threat Talks episode, Lieuwe Jan Koning and former FBI Supervisory Special Agent William McKean (founder of The Redirect Project) explore how young digital natives go From Hacker to Hero.They chart the journey from gaming and online communities to risky first hacks and real-world intrusions. The

The Npm Worm Outbreak
The world’s biggest open-source ecosystem - npm - faced its first self-spreading worm.They called it Shai Hulud.It didn’t just infect one package. It infected developers themselves.When a maintainer got phished, the worm harvested credentials, hijacked tokens, and created new CI/CD workflows to keep spreading - automatically.No command-and-control. No manual uploads. Just a chain reaction

Inside the SalesLoft Breach
You were promised safe SaaS - but got silent data loss.In Inside the Salesloft Breach, Rob Maas and Luca Cipriano expose how trusted integrations became the attack vector.They trace how vishing calls, trojanized Salesforce tools, and GitHub-to-AWS pivots gave attackers OAuth access and drained CRMs without a single alert. You’ll hear how Drift integrations and bulk SOQL queries quietly mo

The App Store Nightmare: Why AI MCP Stores Are a Trap
The new AI app store is here - and it’s already making choices for your company. This episode shows you how to spot it, stop it, and stay safe.Host Lieuwe Jan Koning with RobMaas (Field CTO, ON2IT) explain the app storenightmare in plain language. A new system (MCP) lets AI tools like ChatGPT, Claude, and Gemini do tasks for you - sometimes too much. When a bad tool or a sneaky document g

The Secret Diplomats Fighting Cyber Wars
Cyber defense doesn’t just happen in code. It’s shaped in conversation. Behind every cyber norm or sanction, there’s a diplomat working to stop digital wars before they start. In this episode of Threat Talks, Lieuwe Jan Koning (CTO & co-founder of ON2IT) sits down with Ernst Noorman, Ambassador at Large for Cyber Affairs for the Kingdom of the Netherlands. They reveal how backchannel

Patch Smarter, Not Harder
Patch smarter, not harder.Lieuwe Jan Koning and ON2IT Field CTO Rob Maas break down why “patch everything now” isn’t a strategy, but a risk multiplier. In this session, they teach a practical patching strategy: know your assets, patch edge first, stage updates, and use Zero Trust segmentation to choke off exposure so you only patch what truly matters: fast, safely, and without outages.(00

Public Key Infrastructure: The Foundation of Digital Trust
How solid is your digital trust—or are you just hoping your PKI is secure?Let’s be honest: too many companies run on borrowed trust and forgotten certificates. In this episode of Threat Talks, ON2IT’s Lieuwe Jan Koning and Rob Maas pull back the curtain on what really holds your digital world together—and what can tear it down overnight.They break down PKI in plain language: the root of t

Why Your Cyber Hygiene Matters?
One unlocked phone can unravel the defenses of a billion-dollar enterprise—because in cybersecurity, small mistakes don’t stay small for long. Attackers can read notes, steal IDs, or impersonate you on WhatsApp. A reused password can launch a remote tool that looks completely legitimate.Rob Maas (Field CTO, ON2IT) and Luca Cipriano (Cyber Threat Intelligence Program Lead, ON2IT) reveal ho

Resilience Over Fragmentation: The Risk You Can’t Ignore
The internet promised freedom. Now it monetizes you. The trade-off? Convenience for control.In this episode, Lieuwe Jan Koning and Prof. Jacobs reveal how scattered tools like meta and X create security gaps—and how one policy, fewer interfaces, and less data shared cut exposure and keep operations running.Real examples you’ll hear:• The neighborhood chat stuck on WhatsApp—and how switchi

Zero Trust Step 5B: Maintain Controls
Boards don’t buy dashboards—they buy assurance. Breaches are late-stage symptoms of drift: rules pile up, logs lose signal, cloud/Kubernetes outpace governance. Lieuwe Jan Koning (ON2IT Co-Founder) and Rob Maas (Field CTO) show how Zero Trust Step 5B (Maintain) proves your controls still work—today.(00:00) - — Welcome & Zero Trust Step 5B
(00:57) - — Five steps: fast recap
(03:12) -

Defend Against Hacktivist Groups like APT Handala | The Cyber Security Podcast
Hacktivists don’t need zero-days to hurt you—they weaponize people. Host Lieuwe Jan Koning sits down with Yuri Wit (SOC analyst) and Rob Maas (Field CTO) to dissect APT Handala: how they hunt targets, deliver wipers, and brag about leaks. We map their moves to the Lockheed Martin Kill Chain and turn it into a Zero Trust defense playbook you can actually use—today.(00:00) - - 01:40 - Intro

Promptlock – The First AI-Powered Malware | The Cyber Security Podcast
First documented case: AI inside the breach.Promptlock marks the first time malware has used AI during execution, not just in preparation. In this Threat Talks deep dive, Rob Maas (Field CTO, ON2IT) sits down with Yuri Wit (SOC Analyst, ON2IT) to break down how it works: a Go loader calling an attacker’s LLM in real time, generating fresh payloads that adapt on the fly.This episode strips

Data Bouncing: How HTTP Headers Leak Data | The Cyber Security Podcast
Your tools say “secure.” Your headers say “leaking.”In this Threat Talks Deep Dive, ON2IT’s Luca Cipriano (CTI & Red Team Lead) exposes Data Bouncing—a stealthy exfiltration trick that hides inside HTTP headers and abuses DNS lookups through trusted third parties. We show the demo, decode the psychology of the attack, and translate it into Zero Trust moves you can deploy today.(00:00)

AI, Play It Safe: Why CISOs Are Wrong to Ban AI
Playing it safe with AI sounds smart, but is banning it really how you prevent data leaks?In this episode of Threat Talks, ON2IT’s Lieuwe Jan Koning (ON2IT Co-Founder) sits down with Rob Maas, Field CTO at ON2IT, to tackle the hard question: How can CISOs and security leaders embrace AI safely—without exposing their organization to destructive data leaks?From Samsung’s ChatGPT ban to real

Zero Trust step 5A: Stop Breaches—Inspect Every Event Now | The Cybersecurity Podcast
Zero Trust step 5A is where monitoring turns raw logs into decisive action.Hosts Lieuwe Jan Koning and Rob Maas (Field CTO, ON2IT) expose why MDR alone isn’t protection—and how context closes the gap. Learn to inspect every event, use Indicators of Good/Compromise, and set Rules of Engagement that stop lateral movement and alert fatigue.(00:00) - — Welcome & Step 5A (Monitor) setup
(

From Stealth to Wipers: Inside Russia’s APT 44 AKA Seashell Blizzard | The Cybersecurity Podcast
Russia’s most notorious cyber unit—Seashell Blizzard (also known as Sandworm, APT 44 and Iron Viking)—has taken down shipping giants, Olympic systems, and Ukraine’s power grid.In this Threat Talks deep dive, Lieuwe Jan Koning, Yuri Wit (Red Team), and Rob Maas (Blue Team) reveal exactly how these attacks unfold, why they’re so hard to stop, and how Zero Trust can tip the balance back to d

Signal Gate: One Wrong Number Triggered the Largest U.S. Gov Data Leak | The Cybersecurity Podcast
One mis-typed contact detonates Signal Gate, turning “secure” messaging into a classified-data leak.Host Lieuwe Jan Koning (Co-founder, ON2IT) and Thomas Manolis (Security Officer, AMS-IX) lay out the breach blow-by-blow—then drop the Zero Trust, Shadow IT and information-governance tactics every CISO needs before the next incident hits.High stakes, hard lessons—compressed into actionable

Splinternet Reality Check: Zero Trust Strategies for a Fragmenting Web
ON2IT’s Lieuwe Jan Koning goes one-on-one with AMS-IX CEO Peter van Burgel to expose why the once-open internet is splintering into rival, firewalled regions. Discover the geopolitical forces fueling this cybersecurity trend. Learn the Zero Trust resilience moves CISOs must deploy to stay sovereign in the future of the internet.Key Topics Covered• Drivers behind the Splinternet & what

Zero Trust Step 4B: How to Secure Admin Access
Administrative accounts come with serious power – and serious power, comes with serious risk.In part B of our deep dive into step four of Zero Trust (create Zero Trust policy), host Lieuwe Jan Koning and ON2IT Field CTO Rob Maas unpack how to build Zero Trust policies specifically for administrative access. They explore:1) Why admins are a high-value target – and what that means for polic

Mastering Step Four of Zero Trust: Policy Creation
Now that you’ve defined your protect surfaces, mapped your transaction flows and built your Zero Trust architecture, it’s time for step four of Zero Trust: creating policy. In other words, it’s time to turn strategy into actual rules.In this episode of Threat Talks, host Lieuwe Jan and Koning and Field CTO of ON2IT Rob Maas talk through how to create and validate Zero Trust policies.They

Blockchain in a Post-Quantum World
What does quantum computing mean for blockchain? And how should platforms respond before Q-day becomes reality? In this episode of Threat Talks, ON2IT Field CTO Rob Maas is joined by Jeroen Scheerder, who leads ON2IT's post-quantum cryptography research group. They explore how quantum algorithms interact with current blockchain designs, what makes certain cryptocurrencies more flexible th

Windows Recall: Convenience or Catastrophe?
Windows Recall is a new feature in Windows 11 that captures screenshots every few seconds and stores them in a local database. It’s designed to help users find what they’ve seen or done: but that convenience may come at a high cost.In this episode of Threat Talks, ON2IT Field CTO Rob Maas speaks with security expert Jeroen Scheerder about the real risks of Recall. They break down how the

Agentic AI: Hype, Hope, or Real Risk?
Andy Grotto (founder and director of the Program on Geopolitics, Technology and Governance at Stanford University) puts it plainly: there's a 5% chance that within the next 10 years, AI could rule over humans. That number might sound small, but it's enough to take seriously.He joins host Lieuwe Jan Koning and guest Davis Hake (Senior Director for Cybersecurity at Venable) as they dive int

Zero Trust Step Three: Build a Zero Trust Architecture
It’s time to get practical. After identifying protect surfaces and mapping flows, the third step in Zero Trust is about designing the actual architecture.In this episode of Threat Talks, Lieuwe Jan and Rob Maas talk about segmentation, control selection, and why this is the most operational step in your Zero Trust journey.They cover:✅ Why segmentation is one of the most important Zero Tru

Cybersecurity Without Borders
From sovereign clouds to Zero Trust, and from cross-border investments to threat intelligence sharing, cooperation between the US and Europe is crucial, but still complex. With differing policies, fragmented markets, and varying strategies, the cyber world remains anything but unified.In this special episode of Threat Talks, Davis Hake (Senior Director for Cybersecurity at Venable) leads

Will AI Replace Human Pentesters?
AI vs. Human Pentesting: Who Wins?What happens when you try to automate something that’s part science, part art? In an industry rushing to adopt AI for everything from detection to response, the real question is: can a machine truly replace the craft of a human pentester?In this episode of Threat Talks, host Lieuwe Jan Koning is joined by Melanie Rieback, co-founder and CEO of Radically O

Rethinking OT: It's All Just Technology
PLCs with default passwords. Devices searchable online. Siloed asset inventories. These OT challenges are common, but they’re also fixable. In this episode of Threat Talks, host Lieuwe Jan Koning sits down with Venable’s Caitlin Clarke and Schneider Electric’s Patrick Ford to discuss why the OT side of your business deserves the same focus and attention as IT. From default passwords to ex

Zero Trust Step 2: Map Transaction Flows
Once you have defined a few protect surfaces (see: Step 1 of Zero Trust-video link below), the next step is to start mapping the transaction flows: how these protect surfaces communicate with one another. Understanding how data travels to, from and around protect surfaces is your next logical movie. Why? Because if you don’t know how your systems talk to each other, you can’t secure the

The OT Attack Cyber Kill Chain
Now that we know what a PLC, HMI and SCADA are (check out last week’s episode for a refresher if you need one!), we’re ready for part two of our OT deep dive: how does an OT attack work? In this Deep Dive, Rob Maas and Luca Cipriano break down just how complex an OT attack really is. From needing to stay hidden, to requiring access to very specific system settings and blueprints; setting

Operational Technology for Dummies
From heating systems in Ukraine to petrochemical plant safety controls, Operational Technology (OT) systems are the hidden workhorses behind critical infrastructure: and they're wide open to cyber threats. In this Deep Dive, Rob Maas sits down with Luca Cipriano to break down what OT is, why it’s different from IT, where the two overlap and how we can start securing both before it’s too l

OT’s Hidden Cyber Risks
From ships and cities to hospitals and airports, Operational Technology (OT) keeps the world running. The problem? It was never designed with cybersecurity in mind. In this episode of Threat Talks, host Karin Muller is joined by TC Hoot (VP of Contracts at TAC) and Luca Cipriano (Threat Intel Specialist at ON2IT) to explore how airports, hospitals, ports, and even water systems can be com

Zero Trust Starts Here
Zero Trust is about more than just IP addresses and firewalls: it’s about understanding what truly matters to your business. In step one of Zero Trust: define your protect surface, we focus on how to prioritize what you want to protect, how to avoid common pitfalls, and how to kick off your Zero Trust journey from a solid, business-aligned foundation.In this episode of Threat Talks, host

Zero Trust Demystified: What is Zero Trust Really About?
Zero Trust is everywhere – but what does this actually mean? Is it a cybersecurity strategy, a set of tactics, a product you can buy, or just clever marketing? In this kickoff episode of this Zero Trust series, Lieuwe Jan Koning and Rob Maas explore what Zero Trust actually is, how to think about it strategically, and why it’s not just about identity or buying new tools.They discuss: ✅ Wh

Inside Volt Typhoon: China’s Silent Cyber Threat
What happens when a cyber threat actor doesn’t want to make headlines? Volt Typhoon, a state-sponsored group tied to the People’s Republic of China, has been quietly infiltrating Western critical infrastructure, staying under the radar by avoiding malware, using native tools, and taking things slow. In this episode of Threat Talks, Lieuwe Jan Koning is joined by Rob Maas and Luca Ciprian

Cybercrime-as-a-Service: The Disney+ of the Dark Web
Dark Markets are making cybercrime more accessible than ever. Malware, remote access tools, phishing kits, credit cards information: all of it is readily available, and oftentimes available as a service, if you just know where to look. Subscribing to these illicit services is now as easy as signing up for Disney+. In this Deep Dive, host Rob Maas and special guest, cybersecurity research

Inside the Dark Web Economy: $10 for Your Identity & Corporate Access?
The Dark Web Economy: Hacks for $10?Would you pay $10 for access to a corporate system? Because someone on the dark web already has. In this episode of Threat Talks, host Lieuwe Jan Koning talks to cybersecurity researcher Michele Campobasso about the business of cybercrime. From ransomware services to stolen credentials, the dark web is thriving. 💰 How much is YOUR data worth on the dark

Why Precision Time Matters in Cybersecurity | PTP vs NTP Explained
⏳ What happens when time goeswrong? Time synchronizationis an overlooked but essential part of cybersecurity. A few microseconds ofdrift can lead to failed transactions, inaccurate forensic logs, or evensecurity breaches. In this episode of ThreatTalks, host Rob Maas (Field CTO, ON2IT) and guest Jan van Boesschoten(Innovation Manager, AMS-IX) discuss: · How does time impact cybersecu

Why SSL Decryption Matters
Many organizations hesitate to implement SSL decryption due to concerns over complexity, privacy, and performance. However, the reality is that failing to decrypt means failing to see threats.In this Deep Dive, host Lieuwe Jan Koning and Rob Maas (Field CTO at ON2IT) explore why decrypting SSL traffic is critical for cybersecurity. Why is SSL decryption necessary, and what are the risks o

Intrusion Kill Chain: Stop Playing Defense with Rick Howard
Cybersecurity shouldn’t always be about playing defense – it can also be about disrupting attackers before they succeed. In this Deep Dive, host Lieuwe Jan Koning and cybersecurity expert Rick Howard break down the Intrusion Kill Chain and the strategic shift it introduced in the world of cybersecurity. How does the Intrusion Kill Chain flip the script on cyberattacks?The 250 active adve
Recommended

The Daily

World News Tonight with David Muir

The Joe Rogan Experience

TED Talks Daily

English Vocabulary Help

Talk About Talk - Executive & Leadership Communication Skills

Learn English B1 with Daily News | English Listening Practice

Stand In The Circle

This Past Weekend w/ Theo Von

Learn 50 English Phrases While You Sleep | Everyday English Phrases & Vocabulary

پلی لیست | PlayList

English with Olivia | Slow Conversations & Vocabulary