Security Weekly Podcast Network (Video)

Fix your dumb misconfigurations, AI isn't people, and the weekly news - Danny Jenkins, Wendy Nather - ESW #436

10 snips
Dec 8, 2025
Danny Jenkins, CEO of ThreatLocker, emphasizes endpoint security and the impact of misconfigurations in defense strategies, discussing the importance of daily configuration checks. He also shares insights on how DAC (dumbass configurations) can gamify and improve security postures. Wendy Nather, Senior Research Initiatives Director at 1Password, introduces the concept of 'toxic anthropomorphism,' exploring how people misattribute human traits to AI, which leads to misplaced trust and social risks. Their engaging discussion also touches on security tools, AI interaction, and industry trends.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ADVICE

Daily Config Checks Prevent Simple Breaches

  • Run daily configuration checks to find misconfigurations before attackers do.
  • Use automated reports and percentiles to monitor and prioritize fixes across endpoints.
INSIGHT

Breaches Often Start With Simple Mistakes

  • Most breaches trace back to basic misconfigurations rather than exotic zero-days.
  • Fixing simple config mistakes yields high security ROI compared to chasing vulnerabilities.
ANECDOTE

From 'Dumbass' Checks To A Product

  • Danny said the original feature name was literally 'dumbass configurations' to catch simple mistakes.
  • That raw idea accidentally grew into a broad automated DAC product checking hundreds of settings.
Get the Snipd Podcast app to discover more snips from this episode
Get the app