
Practical Cybersecurity with Jen Stone · 2026-05-12 · 10 min
Is your organization prepared for an autonomous AI bot? Roger Grimes joins Jen Stone to discuss the shifting landscape of cybersecurity. This episode moves past the hype to look at the hard data: AI scams are yielding 4.5x more value for attackers, and traditional MFA is no longer enough to stop them. In this episode, we translate complex "vulnerability fatigue" into a clear, two-step priority list. We strip away the jargon to show you exactly how autonomous bots are bypassing firewalls by targeting the human element. Key Takeaways: Focus on the "Big Two": Social engineering and unpatched software account for nearly 90% of business risk. Phishing Resistance: Why you should move toward YubiKeys or passkeys to avoid "man-in-the-middle" code interception. Patch Management: Why you should ignore "shiny" new vulnerabilities and follow the CISA Known Exploited Vulnerabilities catalog. The Negotiator's Trap: What happens when a CEO claims they have backups, but the hackers have already deleted them. Featured Resources: CISA Known Exploited Vulnerabilities (KEV) Catalog: Use this to prioritize patching based on real-world attacker behavior.