Skip to content
Artwork for Reimagining Cyber - real world perspectives on cybersecurity
TechnologyNewsTech NewsBusiness

Reimagining Cyber - real world perspectives on cybersecurity

Reimagining Cyber

Explore the critical intersection of cybersecurity and business impact while gaining insights into CISO priorities with "Reimagining Cyber." Stay informed on the latest cybersecurity news, trends, and solutions tailored for today's CISOs and CIOs. This podcast is your go-to resource for staying updated on cybersecurity developments and addressing common challenges in the rapidly evolving digital landscape.


As featured on MillionPodcasts' 

Best 100 Cybersecurity Podcasts

https://www.millionpodcasts.com/cyber-security-podcasts/


Top 50 Chief Information Security Officer CISO Podcasts

https://www.millionpodcasts.com/ciso-podcasts/


Top 70 Security Hacking Podcasts

https://www.millionpodcasts.com/security-hacking-podcasts/





Play
  • 23 episodes
  • weekly
  • Avg 20 min
  • English
Counted on this page — what you have heard stays on this device, so it is not something the list can be paged by.
  • September 2 · 23 min

    From Ransomware to AI: 15 Years of Cybersecurity - #218

    In this special episode of Reimagining Cyber, Tyler Moffitt hosts the podcast for the final time — looking back on 15 years in cybersecurity, the lessons he’s learned from speaking with security practitioners, researchers, MSPs and incident responders, and how dramatically the threat landscape has evolved. Tyler and incoming host Keelin Conant explore the shift from early malware and ransomware to double extortion, data theft and increasingly sophisticated nation-state activity. They also discuss how AI is accelerating the speed at which new exploits and attacks move from proof of concept into the wild. The conversation covers why organizations should report cybercrime to law enforcement, the role cryptocurrency trails can play in investigations, and the increasingly blurred line between financially motivated ransomware groups and nation-state operations. Looking ahead, Tyler shares some practical advice for defenders: treat identity as part of the security perimeter, limit privileges, protect administrative accounts, prepare for AI agents with excessive permissions, test backups, run tabletop exercises and focus on the fundamentals. But this episode is ultimately about more than technology. Tyler and Keelin discuss the importance of people, curiosity and human experience in cybersecurity — and why, despite changing technology and evolving attackers, there will always be a need to understand what is really happening and what defenders should do about it. As Tyler hands over the hosting role to Keelin, the next chapter of Reimagining Cyber begins. In this episode: 15 years of cybersecurity lessons How ransomware has evolved AI and the acceleration of cyber threats Why organizations should report cybercrime Nation-state attacks and ransomware-for-hire Identity as the new security perimeter AI agents, permissions and OAuth tokens Incident response and tabletop exercises Why cybersecurity fundamentals still matter The human side of cybersecurity Tyler’s final episode and Keelin’s new chapter as host As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E217
    September 2 · 14 min

    The Boardroom Edition - #217

    What does cyber resilience really mean when the stakes extend far beyond the security team? In this special Reimagining Cyber: The Boardroom Edition, we bring together perspectives from three 2026 conversations to explore how cybersecurity is becoming a board-level business and operational issue. Theresa Lanowitz, Cybersecurity Analyst at Omdia and former Gartner analyst explains why resilience can't be treated as simply another cybersecurity initiative — and why the whole organization, from the board and C-suite to frontline teams, needs to take responsibility. We then look at the first year of the Digital Operational Resilience Act (DORA) with tech leader Dominic Brown (founder, Graves Light Consulting) , exploring what the regulation means for financial services, why implementation has proved challenging, and why governance, testing and accountability are becoming increasingly important. Finally, Doug Merritt, CEO of Aviatrix and former CEO of Splunk, argues that cybersecurity is entering a new “containment era.” If organizations have to assume that breaches will happen, how do they prevent those breaches from becoming catastrophic? His answer: measure the blast radius. Across all three conversations, one message stands out: cyber leadership is no longer simply about protecting technology. It's about preserving operations, protecting customers, sustaining trust and ensuring the business can continue when disruption occurs. This is cybersecurity from the boardroom perspective. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E216
    August 26 · 22 min

    Hackers Are Already Inside - Now What? -#216

    In this episode of Reimagining Cyber, Tyler Moffitt talks with Robert Salzwedell about what happens when attackers get past the firewall — and why keeping them out is no longer enough. With cloud services, remote workers, SaaS applications and compromised credentials blurring the boundaries of the traditional network, organisations can no longer assume that someone is safe simply because they are already inside. Robert explains why organisations need to look beyond the perimeter, understand where their sensitive data lives, rethink how they trust identities, and use behaviour to spot suspicious activity. They also discuss Zero Trust, AI agents, continuous security validation and how organisations can limit the damage when an account or device is compromised. In this episode: Why the traditional network perimeter is no longer enough What happens when attackers use legitimate identities Why understanding your data is critical to security How Zero Trust can help limit access and reduce risk The growing security challenge around AI and AI agents Why security needs to be continuously assessed and improved Practical steps organisations can take to reduce their exposure A conversation about moving from simply trying to keep attackers out to making sure that, when they do get in, they can't get very far. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

    • Transcript
    • Chapters
  • S1 · E215
    August 19 · 16 min

    Return of Cl0p and Their 'One to Many' Tactics

    Cl0p is back — and once again, the ransomware group is showing why attacking the technology that connects organisations can be far more powerful than attacking them one at a time. This episode examines Cl0p’s latest campaign targeting vulnerabilities in PTC Windchill and Flex PLM, enterprise software used across engineering, manufacturing and other industries. The conversation explores Cl0p’s “one-to-many” approach: find a widely deployed piece of enterprise software, exploit a vulnerability, and use it as a gateway into potentially hundreds of organisations. It’s a strategy the group has used before, most notably in the MOVEit campaign, which ultimately affected thousands of organisations. The episode looks at why data theft and extortion can now be more valuable than traditional ransomware encryption, why attackers are increasingly targeting the “multiplier” in an organisation’s technology ecosystem, and why simply patching a vulnerability may not be enough if an attacker has already gained access. It also explores the risks posed by MSPs, remote management platforms and trusted third parties — and what security teams should be doing to identify their own potential multipliers. The key lesson? Don’t just ask what happens if this system is compromised. Ask: if this system is compromised, what else does the attacker get? As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E214
    August 12 · 24 min

    The Attack Is Over. Now Comes the Hard Part - #214

    Ransomware recovery doesn’t end when the malware is removed and the servers come back online. In this episode of Reimagining Cyber, Tyler Moffitt is joined by Keelin Conant, a cybersecurity professional with firsthand experience of ransomware restoration, to explore what happens after the immediate crisis is over. They look beyond restoring systems to the human and business consequences that can linger for weeks, months and even years. Keelin shares stories of exhausted IT teams, leadership pressure, employee trauma, reputational damage and the danger of falling back into old habits once the immediate crisis has passed. The conversation also examines why organizations can be more vulnerable to another attack after the first one, the importance of fixing the vulnerabilities that allowed attackers in, and why backups and incident response plans aren't enough if they aren't regularly tested. From ransomware-as-a-service and repeat attacks to communication, leadership and the psychological impact on the people involved, this episode asks a fundamental question: when has an organization really recovered from a cyberattack? The answer may have less to do with getting the technology running again—and much more to do with whether the business and its people can genuinely move forward. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E213
    August 5 · 21 min

    CaptiveCrunch - The Evolution of Public WiFi Attacks - #213

    Hotel Wi-Fi has long been considered a cybersecurity risk—but what if you're connected to the correct network? In this episode of Reimagining Cyber, Tyler Moffitt examines CaptiveCrunch, a sophisticated campaign that compromises legitimate hotel and conference Wi-Fi infrastructure to intercept users before they ever reach the internet. Discover how attackers manipulate DNS traffic, abuse device code authentication, bypass traditional phishing defenses, and deploy malware such as Cornflake and CocoShell to steal credentials, OAuth tokens, and corporate access. Tyler explains why familiar security signals—including genuine Wi-Fi networks, legitimate Microsoft login pages, and even multi-factor authentication—may no longer be enough to protect travellers. Whether you're a business traveller, security leader, or IT professional, this episode offers practical guidance on reducing risk, securing remote connections, and adapting to a new generation of identity-based attacks. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E212
    July 28 · 19 min

    Nuclear Power 'Hack': What Really Happened? - #212

    Nearly 19,000 files reportedly connected to India’s Kudankulam Nuclear Power Plant appeared on a ransomware group’s leak site. The files allegedly included engineering drawings, facility layouts, supplier details, inspection records, project correspondence, and equipment photographs. The plant’s operator says nuclear safety and security systems were not compromised. That distinction matters, but it does not make the exposed information worthless. Ben interviews Tyler Moffitt about how attackers can collect intelligence without penetrating a reactor, why contractors become attractive targets, and how individually mundane documents can combine into an operational map of critical infrastructure. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E211
    July 22 · 25 min

    How Ransomware Stopped America's Milk Supply - #211

    A ransomware attack against Coca-Cola-owned Fairlife forced the company to temporarily suspend production across the United States. Product safety was not affected, but production-related systems were. How does a cyberattack stop a physical product from being manufactured? Why would a company shut down production when there is no evidence that the product itself was compromised? And what does this tell us about the difference between restoring technology and restoring a business? Ben interviews Tyler Moffitt about operational ransomware, manufacturing dependencies, containment decisions, and what organizations should learn from Fairlife’s response. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E210
    July 15 · 21 min

    The Ransomware Negotiator Who Worked for the Hackers - #210

    What happens when a trusted ransomware negotiator secretly works for the very hackers he's supposed to stop? In this episode of Reimagining Cyber, Tyler Moffitt unpacks one of the most shocking insider threat cases in recent cybersecurity history. A ransomware negotiator admitted to providing confidential victim information—including insurance limits and negotiation strategies—to the BlackCat (ALPHV) ransomware gang while representing organizations during active ransomware attacks. Learn how ransomware negotiations really work, why information is the most valuable asset during a cyber incident, and what this case reveals about ransomware-as-a-service, cyber insurance, incident response, and insider threats. Whether you're a CISO, security leader, IT professional, or simply interested in cybersecurity, this episode offers practical lessons on trust, risk, and protecting sensitive information when every decision matters. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E209
    July 8 · 9 min

    How an Alleged Scattered Spider was Tracked Down - #209

    Federal prosecutors have charged an alleged member of the Scattered Spider cybercrime group in a case that highlights how modern cyber investigations are evolving. While the arrest itself made headlines, one detail stood out: investigators reportedly used Microsoft's Global Device ID (GDID), alongside other forensic evidence, to help connect the dots. In this episode of Reimagining Cyber, Tyler Moffitt unpacks what makes this investigation so significant. The conversation explores: Who Scattered Spider is and how the group gains initial access What Microsoft's Global Device ID (GDID) is and how it factored into the investigation Why device identity is becoming just as important as user identity What this case reveals about modern digital investigations Why VPNs don't guarantee anonymity The importance of logging, endpoint visibility, and identity monitoring for defenders Practical steps organizations can take to strengthen identity security and help desk processes The biggest takeaway? Cybersecurity is no longer just about protecting user accounts. As attackers become more effective at impersonating people, defenders—and investigators—are increasingly relying on device identity, telemetry, and data correlation to uncover malicious activity. If you enjoyed this episode, please rate, review, and share Reimagining Cyber. New episodes are released every Wednesday. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E208
    July 1 · 15 min

    What Defenders Are Still Getting Wrong About Identity - #208

    For years, cybersecurity assumed attackers had to break into organizations. Today, they increasingly just log in. Valid credentials, stolen browser sessions, OAuth tokens, help desk social engineering,and underground marketplaces have fundamentally changed how attacks unfold. So why are organizations still thinking about identity the same way they did five years ago? In this episode, Tyler Moffitt discusses the biggest misconceptions around identity security, why trust has become a commodity, and why cyber resilience requires more than prevention alone. Relevant links: 'What defenders are still getting wrong' webcast series with Tyler Moffitt https://www.brighttalk.com/webcast/8241/646699?utm_source=LinkedIn&utm_medium=brighttalk&utm_campaign=646699 As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E207
    June 23 · 12 min

    Every Breach is the Same - #207

    Every week brings another breach headline. A retailer is compromised. An airline suffers a cyberattack. A ransomware gang claims another victim. A cryptocurrency company loses sensitive data. The victims change, the industries change, and the attackers sometimes change—but many of today's most significant breaches follow a remarkably similar pattern. In this episode of Reimagining Cyber, Tyler Moffitt breaks down the common attack chain behind modern cyberattacks and explains why threat actors continue to rely on the same core tactics year after year. From phishing, social engineering, and credential theft to identity compromise, privilege escalation, data access, and extortion, the conversation explores the techniques that repeatedly appear across major incidents. The episode examines why identity has become the primary target for attackers, how groups such as Scattered Spider have demonstrated the power of identity-based attacks, and why data theft and extortion are increasingly replacing traditional ransomware operations. Rather than focusing on the company named in the latest headline, security leaders and practitioners should focus on the attack path itself. Understanding how attackers gain access, move through environments, and monetize breaches reveals the patterns that matter most—and the defensive strategies that can make the greatest difference. Key topics include: Why many major breaches follow the same attack chain The continued effectiveness of phishing and social engineering How attackers exploit identities, credentials, and privileged access The rise of data extortion and extortion-first operations Why cybercriminal groups operate more like businesses than hackers Practical lessons organizations can apply to strengthen security defenses Whether you're a CISO, security practitioner, IT leader, or simply interested in the evolving threat landscape, this episode provides valuable insight into the techniques driving today's most impactful breaches—and why understanding the playbook is critical for defending against tomorrow's attacks. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E206
    June 16 · 15 min

    Return of the Edge: Did We Forget About the Perimeter? - #206

    For years, cybersecurity leaders have focused on identity as the new perimeter. MFA, Zero Trust, SSO, and identity protection became the center of modern security strategies. But while everyone was focused on identity, attackers never stopped targeting something much older: internet-facing infrastructure. VPNs. Firewalls. Remote access appliances. Recent attacks involving Check Point, Fortinet, Ivanti, SonicWall, and others show that the perimeter never really disappeared. In this episode, Tyler Moffitt discusses why edge devices remain prime ransomware targets, why patch windows matter more than ever, and why vulnerability management remains one of cybersecurity's most important fundamentals. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E205
    June 10 · 15 min

    Scattered Spider's Evolution: One Industry at a Time - #205

    Scattered Spider has become one of the most disruptive cybercrime groups in the world—not because of advanced malware or zero-day exploits, but because of its mastery of social engineering and identity attacks. In this episode, Tyler Moffitt explores how the group is evolving its tactics. Rather than targeting organizations at random, Scattered Spider appears to be moving industry by industry, reusing successful playbooks across sectors including casinos, retail, insurance, and airlines. Once they understand how one organization handles identity verification, help desk requests, and MFA resets, they can apply those same techniques across an entire industry. Tyler reveals: How Scattered Spider rose to prominence through high-profile attacks Why identity has become the primary attack surface The shift from software vulnerabilities to business process vulnerabilities How attackers exploit trust, urgency, and help desk workflows Why industry-specific attack campaigns are so effective What organizations of all sizes can do to defend against identity-based threats The key takeaway: modern attackers don't always need to hack their way in—they can simply convince someone to open the door. As Scattered Spider continues to refine its approach, organizations must rethink not just how they secure systems, but how they verify trust. Identity is the new perimeter—and Scattered Spider may be proving it better than anyone else. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E204
    June 3 · 16 min

    ClickFix Chaos! The Evolution of Social Engineering - #204

    ClickFix is a fast-growing social engineering technique appearing in malware campaigns, compromised websites, fake CAPTCHA prompts, and browser verification scams. In this episode Tyler Moffitt explains how attackers compromise legitimate sites by exploiting unpatched CMS or plugins, inject malicious JavaScript, and then trick visitors into “verifying” by opening Run/PowerShell and pasting a preloaded command that downloads malware, leading to info stealers and potentially ransomware. ClickFix is effective because it leverages trusted brands, bypasses traditional phishing defenses, scales via high-traffic sites, and is increasingly polished through AI. They connect this to the shrinking “patch window,” emphasizing rapid patching, reducing internet exposure, monitoring website integrity, updating user training to avoid pasting commands, and layering defenses like EDR/MDR and DNS filtering. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E203
    May 27 · 26 min

    Vulnerability Management and the 2026 Verizon DBIR - #203

    The 2026 Verizon DBIR is here — and one finding changes the conversation around cyber risk. For years, the industry has focused on identity as the primary attack surface. But according to the latest Data Breach Investigations Report, vulnerability exploitation has now overtaken credential abuse as the most common initial access vector in breaches. In this episode of Reimagining Cyber, Tyler Moffitt breaks down what the report really means for defenders, MSPs, and SMBs. He explores why attackers are moving faster than patch cycles, how AI is accelerating both exploitation and phishing, and why “identity vs. patching” is the wrong debate. He also unpacks: Why vulnerability exploitation surged to the top attack vector How AI is compressing the timeline from disclosure to attack Why ransomware still dominates breach outcomes The growing role of third-party and supply-chain risk Why SMBs struggle most with patch management and visibility Practical steps organizations should prioritize right now What MSPs should be telling customers after this year’s DBIR Key takeaway: “Identity is the new perimeter, but vulnerability management is still the unlocked window.” If you work in cybersecurity, IT, risk management, or support SMB environments, this episode delivers practical insight into where attackers are succeeding — and what organizations need to do next. #CyberSecurity #DBIR #Ransomware #PatchManagement #IdentitySecurity #AI #MSP #CyberRisk #VerizonDBIR #Infosec As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E202
    May 20 · 16 min

    AI and Zero-Day Exploits: A New Cybersecurity Threat? - #202

    Google says it may have uncovered the first real-world case of threat actors using AI assistance during zero-day exploit development — but is this truly a cybersecurity turning point, or another overhyped AI headline? In this episode of Reimagining Cyber, Tyler Moffitt unpacks what actually happened, what Google discovered, and why the reality is both less dramatic — and potentially more dangerous — than the headlines suggest. Tyler looks at how AI is accelerating exploit research, lowering the barrier for mid-tier cybercriminals, and compressing the timeline between vulnerability discovery and active attacks. He explains why this isn’t “Skynet for hackers,” but rather AI acting as a force multiplier that makes attackers faster, cheaper, and more scalable. The conversation also covers: How AI-assisted exploit development really works Why hallucinated code and fake vulnerability references tipped Google off The growing “AI vs AI” battle between attackers and defenders Why patching delays remain one of the biggest security risks How identity security, MFA, and layered defenses still matter most Whether this moment could become cybersecurity’s next major turning point If you’ve been wondering whether AI is truly changing the threat landscape — or just accelerating the one we already have — this episode breaks it down clearly and practically. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E201
    May 13 · 21 min

    The SMB Cyber Wake-Up Call - #201

    In this episode of Reimagining Cyber, host Rob Aragao sits down with MK Palmore to explore why small and medium-sized businesses are becoming prime targets for cyberattacks — and why traditional enterprise security models often fail them. Drawing on more than three decades of experience across the FBI and Fortune 500 leadership roles, MK shares how SMBs can rethink cybersecurity through a more scalable, cost-effective “fractional CISO” approach. The conversation covers the biggest mistakes growing companies make, why reactive security strategies create long-term risk, and how organizations can build security maturity without enterprise-sized budgets. Rob and MK also discuss: Why SMBs are disproportionately impacted by cyber threats The pitfalls of trying to replicate Fortune 100 security teams How fractional cybersecurity leadership accelerates growth and resilience The importance of embedding security early in product development How AI agents could transform cybersecurity operations and compliance in the years ahead A practical and forward-looking conversation for business leaders, security practitioners, and growing organizations navigating today’s evolving cyber landscape. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E200
    May 6 · 44 min

    200 Episodes of Reimagining Cyber: Then, Now, and What’s Next

    In this milestone 200th episode of Reimagining Cyber, hosts Rob Aragao and Tyler Moffitt reflect on the journey so far—exploring how cybersecurity has evolved over the past five years and where it’s headed next. From the early focus on cyber resilience to today’s rapidly shifting threat landscape, they break down the biggest changes shaping the industry: the rise of ransomware as a business model, the growing impact of supply chain attacks, and why identity has become the new perimeter. They also debate a key question—are attackers getting more sophisticated, or just better at scaling what already works? The conversation dives into the real-world impact of AI on both defenders and attackers, separating hype from reality, and examining how automation, tool overload, and complexity are affecting security teams. Rob and Tyler also tackle persistent challenges like phishing, human risk, and why even after decades of awareness training, the fundamentals still matter. Looking ahead, they share candid perspectives on what organizations are getting wrong, where security investments should shift, and why prevention, prediction, and business alignment are more critical than ever. Plus, insights into the evolving role of the CISO as a true business leader. Whether you’ve been listening since episode one or are just joining, this episode offers a thoughtful, no-nonsense look at the past, present, and future of cybersecurity. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

  • S1 · E199
    April 29 · 23 min

    Containment or Catastrophe - #199

    Cybersecurity has entered a new era—and prevention alone is no longer enough. In this episode, Doug Merritt, CEO of Aviatrix and former CEO of Splunk, joins us to break down why security leaders must fundamentally rethink their approach. With decades of experience across Cisco, SAP, and the evolution of modern security operations, Doug brings a sharp, operator-level perspective on what’s changing—and what CISOs need to do now. As AI accelerates attacker capabilities and cloud environments introduce unprecedented exposure, the traditional playbook is breaking down. Sophisticated threats are no longer rare—they’re scalable, automated, and increasingly successful. Meanwhile, most organizations are still over-investing in vulnerability patching while underestimating the importance of containment. We explore what this shift really means in practice: Why “assume breach” is becoming the only realistic strategy How AI is democratizing and accelerating cyber attacks The hidden risks of flat, unsegmented cloud architectures Why detection and remediation aren’t enough anymore How to think about blast radius as a critical new metric Using powerful analogies—like submarine breach containment—we break down how modern organizations can limit the damage of inevitable attacks and build true cyber resilience. For CISOs and security leaders, this is a conversation about reframing success: not just keeping attackers out, but ensuring that when they get in, the business survives. As featured on Million Podcasts' Best 100 Cybersecurity Podcasts Top 50 Chief Information Security Officer CISO Podcasts Top 70 Security Hacking Podcasts This list is the most comprehensive ranking of Cyber Security Podcasts online and we are honoured to feature amongst the best! Follow or subscribe to the show on your preferred podcast platform. Share the show with others in the cybersecurity world. Get in touch via reimaginingcyber@gmail.com

Showing 1–20 of 23 episodes