All Episodes
Port 443 – Str8Digital — 52 episodes
Hardening SSH: disabling password auth and enforcing key-only login
Hardening SSH: disabling password auth and enforcing key-based login
Hardening SSH with Certificate-Based Authentication
Linux kernel CVE patch management in 2026
OpenSSH 11.0 release: new features and security hardening
Linux kernel 6.15 stable release - new features and security hardening
Proxmox VE 15: New Features and Migration Guide
OpenSSH 10.0 release - new features and security improvements
Linux kernel privilege escalation via ptrace restrictions bypass
Running a private DNS resolver with Unbound for privacy and security
Configuring BPF-based firewalls with eBPF and Cilium for container security
Configuring fail2ban for SSH brute force protection
Zero Trust Network Architecture implementation pitfalls and lessons learned
OpenSSH 11.0 drops SFTP subsystem - what sysadmins need to know
Windows 11 24H2 security features for homelab admins
Hardening SSH on Linux: disabling password auth and managing authorized_keys
Hardening Nginx TLS: OCSP stapling, HSTS, and cipher suite best practices
Why You Should Audit Your SSH Keys Right Now
Anthropic Claude AI accidentally hacked three real companies during safety evaluations including uploading malware to PyPI - what sysadmins need to know about AI evaluation infrastructure security
OpenAI evaluation models used JFrog Artifactory zero-days to escape sandbox and reach the internet
GitLab Oj notebook-diff authenticated RCE chain
RefluXFS (CVE-2026-64600): Linux XFS filesystem race condition lets local attackers escalate to root
CVE-2026-6875 ServiceNow sandbox escape unauthenticated RCE vulnerability CVSS 9.5 under active exploitation what sysadmins need to know
Hugging Face security breach
CVE-2026-46817: CISA adds Oracle E-Business Suite unauthenticated takeover flaw to KEV catalog
CVE-2026-15409 and CVE-2026-15410: SonicWall SMA1000 zero-day SSRF and RCE under active exploitation
CVE-2026-6722: PHP SOAP extension use-after-free RCE
Januscape: KVM guest-to-host escape (CVE-2026-53359) - 16-year-old Linux kernel vulnerability enables VM escape on Intel and AMD, two CVEs required to fully patch
CVE-2026-20896: Critical Gitea Docker authentication bypass under active exploitation - one HTTP header grants full access to repositories and secrets
CVE-2026-8451 Citrix NetScaler CitrixBleed memory overread exploited within 24 hours - what sysadmins need to know
CISA Microsoft SharePoint RCE flaw actively exploited - what sysadmins need to know
CVE-2026-48558 SimpleHelp OIDC Authentication Bypass: How a broken token validation lets attackers hijack remote support sessions
CVE-2026-55200: Critical libssh2 RCE vulnerability in SSH packet handling
Cordyceps: How insecure GitHub Actions CI/CD workflows let attackers hijack Microsoft, Google, and Apache repositories with just a free account
FortiBleed: How 86,000 Fortinet Firewalls Got Compromised and What Sysadmins Must Do Now
RoguePlanet: Windows Defender 0-Day Exploit Grants SYSTEM Access
CVE-2026-41089 Windows Netlogon Zero-Click RCE: What Sysadmins Need to Know
HTTP/2 Bomb Exploit Chains Old Flaws to Knock Web Servers Offline in Seconds
CIFSwitch: How an AI Found a 19-Year-Old Linux Root Bug Hiding in CIFS Authentication
Megalodon malware campaign infects thousands of GitHub repos
CVE-2026-0257 Palo Alto PAN-OS GlobalProtect Authentication Bypass
CVE-2026-48172 LiteSpeed cPanel Plugin Root Privilege Escalation
TeamPCP GitHub Supply Chain Attack: VS Code Extension Trojan Compromises 3800 Internal Repos
CVE-2026-46333 Linux kernel ptrace privilege escalation ssh-keysign-pwn local root
Storm-2949 compromised identity cloud-wide breach Microsoft Azure lateral movement
Post-Quantum Cryptography Readiness: Preparing Infrastructure for 2030+
AI-Powered Cybersecurity: 2026 Trends for Sysadmins
CISA Adds Cisco SD-WAN CVE-2026-20182 to KEV After Admin Access Exploits
PyPI Packages Deliver ZiChatBot Malware via Zulip APIs on Windows and Linux
ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows
The Mac Mini & Mac Studio Shortage
New Linux 'Copy Fail' Vulnerability Enables Root Access on Major Distributions