PodcastsTechnologyDavid Bombal

David Bombal

David Bombal
David Bombal
Latest episode

560 episodes

  • David Bombal

    #564: Hackers can bypass Your MFA In 2026 (And How To Stop It)

    03/23/2026 | 38 mins.
    Thank you to ThreatLocker for sponsoring my trip to ZTW26 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/davidbombal

    Are your passwords and 2FA enough to stop a modern cyber attack? In this interview, Rob from
    ThreatLocker breaks down the dangerous reality of password reuse, SIM swapping, and why
    traditional SMS MFA is no longer bulletproof.

    We dive deep into how threat actors use reverse proxies like Evilginx to steal session cookies, allowing them to bypass multi-factor authentication and hijack your accounts without ever needing your password.

    Discover why relying on legacy VPNs and leaving firewall ports open to the internet massively
    increases your attack surface, leaving your organization just one brute-force attack away from
    ransomware. Finally, we explore the mechanics of ThreatLocker’s Zero Trust Network Access
    and Cloud Access, detailing how denying by default and routing through secure proxies can lock
    down Microsoft 365 and make your internal network effectively invisible to hackers.

    // Rob Allen’s SOCIAL //
    LinkedIn: / threatlockerrob
    X: https://x.com/threatlockerrob

    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...

    // MY STUFF //
    https://www.amazon.com/shop/davidbombal

    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]

    // MENU //
    0:00 - Coming up
    0:57 - What is 2FA/MFA and why is it important?
    02:54 - Reusing passwords
    04:38 - Malicious Chrome extensions
    05:39 - Average person vs cybersecurity
    12:18 - SMS 2FA
    13:37 - Authenticator apps
    16:26 - Yubikeys
    17:58 - No one is "unhackable"
    21:52 - "Cookie stealing" explained
    22:53 - ThrearLocker's new tool/solution
    28:22 - How ThreatLocker protects Office365
    29:06 - ThreatLocker protecting organizations
    33:11 - Should I trust ThreatLocker?
    35:54 - How safe is ThreatLocker?
    38:00 - Conclusion

    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!

    Disclaimer: This video is for educational purposes only.

    #cybersecurity #hacker #hack
  • David Bombal

    #563: Securing LLMs and fighting Prompt Injection with Algorithmic Red Teaming

    03/23/2026 | 33 mins.
    Thank you to Cisco for sponsoring this video and sponsoring my trip to Cisco Live Amsterdam 2026.

    In this interview, Cisco VP Rick Miles breaks down the evolution of the
    firewall, the massive hardware leap of the 6100 series, and how AI agents and eBPF are completely reshaping the industry. Whether you're trying to secure AI models against prompt injection or wondering if AI will replace your networking job by 2030, this is the technical reality check every engineer needs to hear right now.

    Has the role of the traditional firewall changed? Rick Miles, VP of Product at Cisco, joins David Bombal at Cisco Live EMEA to reveal the massive architectural shift from static "firewalls" to dynamic "firewalling."

    This deep-dive interview covers the incredible specs of the new Cisco Secure Firewall 6100 series—boasting 80% less space, 60% less power, and up to 8 Terabits of clustered throughput in a 2RU form factor. We also explore how eBPF is revolutionizing deep visibility and virtual patching directly at the application layer, moving security beyond the edge.

    But hardware is only half the story. We also break down the new "Wild West" of AI cybersecurity. Learn how to secure the network against prompt injection, poisoned AI models, and unsecured Model Context Protocols (MCP). Finally, Rick shares his vision for 2030: "Agentic" security. Will AI agents replace network engineers, or will they become the ultimate force multiplier for your career?

    // Rick Miles’ SOCIAL //
    LinkedIn: / rcmiles09

    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...

    // MY STUFF //
    https://www.amazon.com/shop/davidbombal

    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]

    // MENU //
    0:00 - Coming Up
    0:19 - Introduction
    01:17 - Are Firewalls Dead?
    04:18 - Cisco and Firewalls
    08:30 - Hyperscalers vs Neo-Clouds vs Enterprises
    10:46 - EBPF and Switches as Firewalls
    14:32 - Managing your Hybrid Mesh Firewall
    16:20 - Cisco’s Compatibility with other Firewalls
    17:40 - Identity within Systems
    19:05 - More on Hybrid Mesh Firewall
    19:53 - Model Context Protocol and Security
    23:57 - The Future of “Firewalling”
    25:15 - The Effect of Agentic AI
    26:57 - Will AI take all our Jobs?
    27:56 - Should you get into Cyber Security?
    28:48 - Cool Story about Firewall
    30:30 - Talk to your Younger Self
    32:32 - Does AI give Advantage to Attackers?
    33:09 - Outro

    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!

    Disclaimer: This video is for educational purposes only.

    #firewall #cisco #cybersecurity
  • David Bombal

    #562: Warning and demo: It's possible to Prompt Engineer Malware

    03/23/2026 | 9 mins.
    Big thanks to ‪@ThreatLocker‬ for sponsoring my trip to ZTW26 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/davidbombal

    Discover how easily hackers prompt engineer malware in 2026. Kieran Human from ThreatLocker demonstrates bypassing Microsoft Copilot guardrails to write PowerShell ransomware.

    // Kieran Human’s SOCIAL //
    LinkedIn: / kieran-human-5495ab170

    // GitHub page REFERENCE //
    https://github.com/ztwAdmin/ZTW-2026

    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...

    // MY STUFF //
    https://www.amazon.com/shop/davidbombal

    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]

    // MENU //
    0:00 - Coming Up
    0:17 - Intro
    01:00 - Demo
    01:37 - Sponsored by Threatlocker
    01:55 - Demo continued
    07:38 - Where to Find these Tools
    08:38 - Disclaimer
    09:33 - Outro

    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!

    Disclaimer: This video is for educational purposes only.
    #threatlocker #copilot #locallm
  • David Bombal

    #561: Why 1 small network FAIL breaks your massive 2026 AI job

    03/18/2026 | 30 mins.
    Big thanks to Cisco for sponsoring this video and sponsoring my trip to Cisco Live Amsterdam 2026.

    The AI revolution is putting unprecedented strain on global network architectures. In this exclusive deep dive with networking leaders from Cisco and NTT, we break down the critical infrastructure challenges and hardware innovations shaping 2026. Discover how emerging NeoClouds are competing with traditional hyperscalers to deliver dedicated GPU clusters, and why a single non-blocking network failure can bring an entire AI deployment to a grinding halt.

    We explore the reality of deploying agentic AI across enterprise networks, the vital role of international data sovereignty, and the extreme power demands driving the shift toward liquid-cooled data centers and innovations like the Cisco Silicon One G300 Chip. We also dive into the future of physical AI at the edge, where robotics and autonomous systems demand ultra-low
    latency inferencing.

    For IT professionals and network engineers, the stakes have never been higher. Learn the proven skills you need to stay relevant in 2026, from mastering zero-trust AI network security and observability with Splunk to managing predictive networking autonomously. Finally, get a sneak
    peek into the spooky future of post-quantum cryptography and what it means for the next generation of cybersecurity.

    // Gary Middleton’s SOCIAL //
    LinkedIn: / middletongary

    // Hendrik Blokhuis’ SOCIAL //
    LinkedIn: / hendrik-blokhuis-886a8910

    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...

    // MY STUFF //
    https://www.amazon.com/shop/davidbombal

    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]

    // MENU //
    0:00 - Coming Up
    0:30 - Introduction
    01:48 - NeoClouds and the Importance of Networking
    02:52 - Data Sovereignty
    04:47 - Challenges faced for Data Centres
    07:31 - Electricity and Data Centres
    09:18 - Technical Problems and Cisco’s Solutions
    12:41 - Lack of Skills in the Industry
    13:21 - Is it still Worth Getting into Cyber today?
    15:44 - Security of AI and Trusting your AI
    18:06 - NTT Data and Cisco Partnership
    20:01 - Who is Buying and Deploying this New Tech
    21:52 - Could Agentic AI help solve Problems
    23:46 - Customer Feedback on Agentic AI
    24:57 - Physical AI is the Next Step in AI
    25:58 - The Future of AI and Networking
    28:05 - Post Quantum Cryptography
    28:57 - Advice for Young People today
    30:17 - Outro

    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!

    Disclaimer: This video is for educational purposes only.
    #ntt #agenticai #postquantum
  • David Bombal

    #560: The one BIG mistake you are making with DNS security today

    03/18/2026 | 58 mins.
    Big thank you to Infoblox for sponsoring this video. To learn more about Infoblox please visit: https://www.infoblox.com/

    Do you know the difference between encrypted DNS and secure DNS? DNS veteran Cricket Liu, author of DNS and Bind, joins David Bombal to break down common misconceptions, explain the crucial distinction between security and privacy; and outline a massive update to the NIST Secure DNS Deployment Guide (SP 800-81). If you run a network, you cannot afford to ignore this control point.

    Detailed Breakdown:
    DNS is the Achilles' heel of internet infrastructure. While newer protocols like DNS over HTTPS (DoH) and DNS over TLS (DoT) solve the cleartext privacy problem, they do not stop malware, phishing, or data exfiltration. In fact, attackers are now using encrypted DNS against us.

    In this deep-dive interview, Cricket Liu explains how DNS security must evolve beyond simple encryption to include Protective DNS (PDNS) using Response Policy Zones (RPZ). Learn how to turn your existing DNS infrastructure into a low-cost, high-efficiency control point that blocks malicious C2 rendezvous, phishing links, and DNS tunneling automatically.

    We also tackle the DNSSEC confusion head-on. Cricket clarifies exactly why DNSSEC is about validation and integrity, not encryption, and discusses the looming threat of quantum computing on modern cryptographic standards. Finally, we discuss real-world attack vectors, including a wild story about a dangling CNAME record on CDC.gov that was hijacked to game search engine rankings, and how the updated NIST guide shifts focus from just network administrators to security practitioners.

    // Links to documents //
    NIST SP 800-81: https://nvlpubs.nist.gov/nistpubs/Spe...
    Inflox Q&A on NIST SP 800-81:
    https://www.infoblox.com/blog/securit...

    // Cricket Liu’s SOCIAL //
    LinkedIn: / cricketliu

    // Renee Burton’s SOCIAL //
    LinkedIn: / ren%c3%a9e-burton-b7161110b
    Blog Posts: https://www.infoblox.com/blog/author/...

    // Infoblox SOCIAL //
    LinkedIn: / infoblox
    Website: https://www.infoblox.com/

    // Books by Cricket //
    DNS on Windows Server 2003: Mastering the Domain Name
    US: https://amzn.to/4byNAtQ
    UK: https://amzn.to/4rjqgoz
    DNS & BIND Cookbook: Solutions & Examples for System Administrators 1st Edition
    US: https://amzn.to/40iZPob
    UK: https://amzn.to/3Nk2MBM
    DNS and BIND on IPv6: DNS for the Next-Generation Internet 1st Edition
    US: https://amzn.to/3MXly1Y
    UK: https://amzn.to/4s2SFRe
    Learning CoreDNS: Configuring DNS for Cloud Native Environments 1st Edition
    US: https://amzn.to/4sC4GwS
    UK: https://amzn.to/4ro0T59
    DNS & Bind 4th Edition:
    US: https://amzn.to/4s8WaWm
    UK: https://amzn.to/4sztLbB

    // Website REFERENCE //
    Nist: https://www.nist.gov/

    Secure Domain Name System Deployment Guide: https://www.nist.gov/news-events/news...

    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: www.twitter.com/davidbombal
    Instagram: www.instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: www.facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    YouTube: / @davidbombal
    Spotify: open.spotify.com/show/3f6k6gE...
    SoundCloud: / davidbombal
    Apple Podcast: podcasts.apple.com/us/podcast...

    // MY STUFF //
    https://www.amazon.com/shop/davidbombal

    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: [email protected]

    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!

    Disclaimer: This video is for educational purposes only.
    #dns #dnssec #cybersecurity

More Technology podcasts

About David Bombal

Want to learn about IT? Want to get ahead in your career? Well, this is the right place! On this channel, I discuss Python, Ethical Hacking, Networking, Network Automation, CCNA, Virtualization and other IT related topics. This YouTube channel has new videos every week! Subscribe for technical, detailed, no fluff content. David’s details: Discord: https://discord.com/invite/usKSyzb Twitter: https://www.twitter.com/davidbombal Instagram: https://www.instagram.com/davidbombal LinkedIn: https://www.linkedin.com/in/davidbombal Facebook: https://www.facebook.com/davidbombal.co Website: http://www.davidbombal.com YouTube: https://www.youtube.com/davidbombal All the best! David
Podcast website

Listen to David Bombal, All-In with Chamath, Jason, Sacks & Friedberg and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features
Social
v8.8.3 | © 2007-2026 radio.de GmbH
Generated: 3/24/2026 - 9:47:28 AM