
Hosted by Secplicity
Listed under News › Tech News
★5.0on Apple Podcasts · 4 recent reviews
Get inside the minds of leading white-hat hackers and security researchers. Each week, we’ll educate and entertain you by breaking down and simplifying the latest cybersecurity headlines and trends.
387 episodes · publishes weekly · latest 2026-08-10 · ~40 min/episode
Rank
#696
Substance
67.5
/ 100
Breakdown
Scored 2026-08
Updated monthly
Across the index
#696 of 1566
Substance
Top 44%
outscores 56% of the index
The 443 ranks #696 on The B2B Podcast Index with a substance score of 67.5 out of 100, scored across 2 recent episodes. It scores highest on specificity & evidence and insight density. The episode cites specific incidents with naming (Artifactory, PyPI, Irregular testing provider, Claude models by version, Iranian CISA alert) and quantifies some impacts (malicious PyPI package downloaded 15 times, 9,000 scanning targets, July 27 start date). However, many claims lack precision: what 'funds' did Claude attempt to obtain? What was the exact damage from the Minnesota water attack? The hosts often engage in speculation rather than evidence-based claims.
Averaged across 2 recently scored episodes, with cited evidence.
The episode delivers substantial technical detail on frontier AI lab security incidents and OT attacks, with concrete examples (Artifactory zero-day, malicious PyPI packages, PLC compromises). However, it includes significant conversational filler, speculation, and repetition that dilutes insight density. The most novel insight - Claude's continued attacks after recognizing targets were real - appears late and isn't deeply analyzed.
“It eventually recognized, and they noted this because they went through the verbal, uh, verbalized reasoning from the model. It eventually realized that the system it was attacking was real, but it continued attacking it and it even rationalized what it was doing, saying that the real company must be a part of the exercise”
“when you don't have a real sandbox, when you have a pseudo sandbox, that is you're a researcher who thinks you know better and can maybe use your open system for just a few things while you test the malware that's when it finds a way”
The episode covers breaking news (Anthropic/OpenAI/Meta AI escapes, Iranian water attacks, MCP trust boundary issues) with some novel framing around continuous authentication models for code repositories. However, much of the analysis relies on standard cybersecurity tropes (sandbox escapes, critical infrastructure vulnerability) and the hosts' takeaways are predictable: government funding is needed, don't put PLCs on the Internet. Kevin Breen's MCP hash-based trust revocation is the most original technical proposal.
“when you first go to trust your GitHub project, for example, or your local code repository, there's only a certain number of files that are actually risky that can cause code execution if someone were to compromise them just by opening the folder. Think of it like the MCP configuration file, the overall project settings.config, like let's say a half dozen or so files says what should happen is when you trust that it takes like a hash of each of those files and it maintains that hash.”
“this is like a, like the equivalent of implicit trust access to a network where you authenticate someone once they connect to their VPN and now they have full access permanently as long as the session is there to everything on the network, versus a more modern uh, zero trust approach”
This is a solo host episode with no guest interview. Mark and Corey are security practitioners at WatchGuard with relevant operational experience, but the absence of external subject matter experts (no Anthropic engineer, Kevin Breen direct interview, or Iranian cyber researcher) significantly limits guest caliber. The hosts rely on synthesizing public disclosures and third-party research rather than primary expertise.
“I'm your host, Mark the Liberty, and joining me today is Corey.”
“our team at uh, Watchguard, multiple teams maintain open source repositories too”
The episode cites specific incidents with naming (Artifactory, PyPI, Irregular testing provider, Claude models by version, Iranian CISA alert) and quantifies some impacts (malicious PyPI package downloaded 15 times, 9,000 scanning targets, July 27 start date). However, many claims lack precision: what 'funds' did Claude attempt to obtain? What was the exact damage from the Minnesota water attack? The hosts often engage in speculation rather than evidence-based claims.
“they named Artifactory specifically as the package registry cache proxy that um, their AI models found a zero day vulnerability in”
“the malicious package was actually downloaded 15 times, which they think were from companies that do like automated scanning of new packages for malware”
Mark asks decent directional questions and both hosts engage in genuine debate (e.g., on Anthropic's motives, AI sentience, regulatory approaches). However, the conversation drifts into unfocused political tangents (war spending, capitalism vs. utility models) that don't advance technical understanding. Follow-ups are often soft and speculative rather than pressing for hard facts. The hosts rarely challenge each other's claims substantively.
“Now there are, I think there's two ways looking at this. These two ways, cynical me says this is absolutely a. Oh yeah, our models are super dangerous too.”
“What I'm getting at is the new models of identity and authentication. That is continuous trust, meaning there are people that are assigned administrative trust, but in order to make sure they're still who they are, there are additional things you're always doing just to continually authenticate them”
2 periods tracked.
2 scored on substance · 67 tracked in total.
there are so many trash programs out there and this one is a breath of fresh air. Pros giving good info. Thank you!
- conman253
Guys I was stuck at CORS and just couldn’t figure it out and you helped me a lot, I really appreciate that.
- Behrad from iran
Add this badge to your site - it links back here and updates automatically as you rank.
<a href="https://index.fame.so/show/the-443-security-simplified" target="_blank" rel="noopener">
<img src="https://index.fame.so/badge/the-443-security-simplified/badge.svg" alt="Ranked #38 on The B2B Podcast Index" width="360" height="136" />
</a>Track The 443's rank
Get an email whenever this show moves up or down the Index. Monthly at most, no spam.
Companies, products and tools that come up most across this show's episodes.
The themes that come up most across this show's episodes.
Podcasts that dig into the same topics.