David Bombal

David Bombal
undefined
Apr 23, 2026 • 50min

#576: How to track dark ships using OSINT (with demos)

Rae Baker, a maritime OSINT and cyber intelligence expert and author of Deep Dive, guides listeners through tracking ships that hide at sea. She explains dark versus shadow fleets. She demos AIS manipulation, vessel repainting and satellite, RF and adtech cross-checks. She also explores maritime cyber risks like compromised port cranes and tools investigators use for verification.
undefined
Apr 14, 2026 • 1h 1min

#575: AI attackers are winning. Here is the SECRET to survive.

Are AI attackers winning the cybersecurity war? In this video, I sit down with Daniel Miessler, a 25-year security veteran, to discuss the terrifying reality of AI-driven cyber attacks and the massive advantage hackers have today. But it is not all doom and gloom. Daniel introduces his open-source project, PAI (Personal AI Infrastructure), demonstrating how you can build a customized, local AI assistant to automate your workflow, defend your data, and level up your tech skills. We cover everything from AI agents conducting prompt injection CTFs (like Gandalf) in real-time, to the future of work and why the ultimate goal of many corporations is zero human employees. Whether you are worried about AI replacing your job or you want to learn how to leverage local LLMs, Linux, and agentic AI to become an unstoppable force, this conversation is your blueprint for surviving and thriving in the 2026 tech landscape. Go here to get PAI for free: https://github.com/danielmiessler/Per... // Daniel’s SOCIAL // Twitter/X: / danielmiessler Website: https://danielmiessler.com/ GitHub: https://github.com/danielmiessler LinkedIn: / danielmiessler YouTube: / @unsupervised-learning / David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal YouTube: / @davidbombal Spotify: open.spotify.com/show/3f6k6gE... SoundCloud: / davidbombal Apple Podcast: podcasts.apple.com/us/podcast... // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MENU // 0:00 - Coming Up 01:05 - Introduction 02:06 - Daniel’s Background & His Predictions of The Future of AI 05:52 - How Attackers use AI 08:40 - Open Source SSL Vulnerability 10:20 - Helping Businesses Scale using AI 12:48 - Personal AI Infrastructure (PAI) 15:54 - Empowering People To Believe in Themselves 17:34 - Demo (PAI) 31:12 - Examples of Using (PAI) for Automating Your Life 34:13 - The Real Internet Of Things Concept 37:39 - What Happens To Security & Privacy with Personalised AI 42:43 - Running AI Locally For Privacy & Security Reasons 44:44 - What Does AI Mean for Humans & Their Future 50:00 - The AI Hype, Real or Fake ? 56:01 - Will Universal basic Income be a Reality In the Future ? 59:10 - The Advantages of AI 01:00:23 - Outro & Conclusion Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #ai #anthropic #mythos
undefined
Apr 14, 2026 • 25min

#574: Hacking Windows Active Directory in 10 minutes

Thank you ThreatLocker for sponsoring my trip to ZTW26 and also for sponsoring this video. To start your free trial with ThreatLocker please use the following link: https://www.threatlocker.com/davidbombal // Spencer Alessi’s SOCIAL // YouTube: / @techspence Website: https://spenceralessi.com/adsecuritykit/ X: https://x.com/techspence LinkedIn: / spenceralessi Swag: https://www.etsy.com/shop/ethicalthre... // ThreatLocker’s SOCIAL // LinkedIn: https://www.linkedin.com/company/thre... X: https://x.com/threatlocker Instagram: / threatlocker Website: https://www.threatlocker.com/ / David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal YouTube: / @davidbombal Spotify: open.spotify.com/show/3f6k6gE... SoundCloud: / davidbombal Apple Podcast: podcasts.apple.com/us/podcast... // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MENU // 0:00 - Coming up 0:54 - Spencer Alessi introduction & background 02:20 - Pentesting demo // Active Directory 03:34 - Control paths // Finding bad permissions with ADeleg 06:04 - Finding bad permissions with NetTools 06:52 - The most common issue 08:15 - Certificate abuse 12:20 - Quick recap 12:30 - Certificate abuse continued 15:10 - Pentesting summary 15:09 - How to become a pentester 18:48 - Recommended certifications 20:54 - Advice for blue teamers 22:15 - Overcoming being an introvert // Soft skills vs tech skills 23:43 - Windows hacking in the real world 24:54 - Conclusion Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #microsoft #windows11 #hacker
undefined
Apr 7, 2026 • 28min

#573: WhatsApp Hackers for Hire on the Dark Web (Surprisingly cheap)

Colin Ellis, onboarding engineering manager at ThreatLocker who researches dark web threats, walks through live demos of Tails, Tor and hidden wiki navigation. He exposes hacker listings and surprisingly cheap WhatsApp takeover services. Short takes cover ransomware leak sites, script-kiddie marketplaces and why basic password hygiene and MFA matter.
undefined
Mar 31, 2026 • 15min

#572: How Cisco Protects AI Agents in Modern Data Centers

Dave West, Senior Cisco executive with 25 years leading global specialist teams, explains Cisco’s OneCisco platform and AI-ready data center stacks. He covers secure networking as the foundation. He describes AI infrastructure partnerships, micro-segmentation, Zero Trust, Splunk-driven visibility, and agentic operations for hybrid work. Practical architecture and containment strategies get center stage.
undefined
Mar 31, 2026 • 1h 8min

#571: Google Big Sleep: The End of Human Hackers?

Stephen Sims, an offensive security researcher and SANS instructor, returns with sharp takes on AI in cybersecurity. He unpacks offensive vs adversarial AI, prompt injection and jailbreak techniques. Vector databases, agentic automated testing, Google Project Zero’s Big Sleep, and AI-driven patch diffing get clear, bite-sized treatment. Practical career and governance implications wrap up the conversation.
undefined
Mar 31, 2026 • 36min

#570: 100 Terabit Smart Switches: What You Need to Know

Will Eatherton, a Cisco networking executive focused on data center and AI infrastructure, discusses the rise of 100 Tbps smart switches powered by Cisco Silicon One G300. He covers optics tradeoffs like co-packaged vs linear packaged, DPUs and smart NICs enforcing security, Ethernet vs InfiniBand for AI clusters, and the shift toward higher-bandwidth interfaces and operational tools.
undefined
Mar 31, 2026 • 37min

#568: 5-Minute Cyber Hacks Everyone Should Know (2026)

Rayton Li, Linux security expert who demos sudo misconfigurations and quick root tricks. David Smith, Windows specialist showing Alternate Data Streams for hiding executables. Jacob Meyer, researcher revealing LNK shortcut hijacks and LinkItUp. Kenneth Walker, red team operator abusing Steam profiles as C2. Alex Benton, practitioner demonstrating the Sticky Keys rename exploit and defenses.
undefined
Mar 30, 2026 • 1h 16min

#569: Why Vibe Hacking Is a Big Cybersecurity Threat in 2026

Pascal Geenens, Radware researcher and cybersecurity expert behind the Global Threat Analysis Report, explains the 2025–2026 shift where AI supercharges attackers. He breaks down vibe hacking, agentic AI and MCP risks. Short takes cover AI-driven DDoS resurgence, vulnerable APIs, indirect prompt injection, and how automation hands novices powerful attack tools.
undefined
Mar 28, 2026 • 20min

#567: Why Power Is Becoming a Major Problem for AI in 2026

Nathan Jokel, Head of Corporate Strategy at Cisco who leads long-term AI and security partnerships, discusses the future of AI data centers. He covers Cisco and NVIDIA's work to remove networking bottlenecks with 1.6T ports and G300 silicon. Topics include Secure AI infrastructure, observability and security (Splunk, eBPF, HyperShield), power constraints for data centers, and preparations for post-quantum and quantum networking.

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app