PODCAST · technology
The Breach Desk
by Carlos Alves
Every week, Carlos Cardal Alves, CISO and founder of CRS Consulting, takes the week's most significant breach, strips it down to the mechanism that made it possible, maps it to the regulatory exposure, and hands you one action to take before the next one lands.No jargon for its own sake. No vendor pitches. Just the breach and the lessons thereof.
-
7
Episode 7 - Targetting availability instead of confidentiality
In this episode of "Hackers target DNA and physical infrastructure," we examine a critical paradigm shift in modern threat intelligence: attackers pivoting away from traditional, reversible data theft toward irreversible genetic exposure and direct operational control over physical infrastructure
-
6
Episode 6 - Weaponizing the Shipping Lane
In this episode, we trace the alarming lifecycle of the CEVA Logistics breach, showing how a single, invisible link in the supply chain disrupted the entire European e-commerce sector
-
5
Episode 5 - Facts vs Friction
How a legacy, unmonitored credential in a connected SaaS tool, Guey, created an open, standing doorway directly into the LastPass environment
-
4
Episode 4 - Human Voice + AI = Security Bypass
In this episode of "How Human Voices and AI Bypass Security," we dismantle the illusion of the digital fortress and expose the human-centric and systemic vulnerabilities threatening modern organizations
-
3
Episode 3 - Why hackers prefer to target people rather than code
Think encryption is enough? Think again, in our newest podcast episode, 'Why hackers target people instead of code,' we do a deep dive into why having the best in the world is no longer enough.We break down the psychological tactics behind the Odido breach where no AI was needed, just confidence.
-
2
Episode 2 - Third Party Breaches During July'26 First Week
In this episode, we explore why the traditional corporate firewall is dead and the real security battleground is your supply chain. Analyzing five major global incidents from the 1st week of July, we expose the cascading dangers of relying blindly on third-party vendors. We dive into how six independent internet providers were compromised through one shared telecom platform, why a peripheral marketing vendor breach gave hackers the perfect disguise to target Deutsche Bank, and how a missing public record from Microsoft accidentally hid an active software exploit from automated IT scanners.We also examine the alleged leak of digital master keys from IT infrastructure builder Accenture and the terrifying rise of "JADEPUFFER", an autonomous AI agent that hacked an unpatched server and rewrote its own code to bypass defenses in just 31 seconds.The takeaway message: Static compliance checklists and annual vendor spreadsheets are failing. Tune in to learn why continuous vendor testing is the only way to survive when cyberattacks are moving at machine speed
-
1
The Hidden Master Keys
This podcast is a deep-dive discussion about Episode 1, specifically highlighting how trusted third parties serve as primary attack vectors. The discussion also covers JavaScript injections and the unverified claims against the Council of Europe, emphasizing the need for rigorous vendor inventories
-
0
Episode 1 - They Never Touched The Front Door
Episode 1 - The Door You Forgot You Left OpenCoverage window: breaches logged through 01 July 2026Three confirmed breaches. Three different targets. One pattern: not one attacker knocked on the front door. Every breach came through a trusted third party, a forgotten credential, a hijacked package, an injected script. This is the episode that sets the tone for The Breach Desk: Breach Mechanisms, not Headlines.#TheBreachDesk #CyberSecurity #DataBreach #CISO #CyberRisk #GRC #DORA #NIS2 #GDPR #OperationalResilience #ThirdPartyRisk #SupplyChainSecurity #RansomWare #ThreatIntelligence #InfoSec #CyberLeadership #BoardAdvisory #SecurityStrategy #DataProtection #npm #OpenSource #PasswordSecurity #OAuth #EURegulation #CRS
We're indexing this podcast's transcripts for the first time — this can take a minute or two. We'll show results as soon as they're ready.
No matches for "" in this podcast's transcripts.
No topics indexed yet for this podcast.
Loading reviews...
ABOUT THIS SHOW
Every week, Carlos Cardal Alves, CISO and founder of CRS Consulting, takes the week's most significant breach, strips it down to the mechanism that made it possible, maps it to the regulatory exposure, and hands you one action to take before the next one lands.No jargon for its own sake. No vendor pitches. Just the breach and the lessons thereof.
HOSTED BY
Carlos Alves
CATEGORIES
Loading similar podcasts...