Search site
Find podcasts, news, articles, webinars, and contributors in one search.
Channel
Podcasts Hosted by Bill Russell, Sarah Richardson, and Drex DeFord
In-depth interviews with healthcare CIOs, CISOs, and technology leaders. Bill Russell explores the decisions, strategies, and innovations shaping healthcare transformation.
Apr 30, 2026·2 Minute Drill
Matthew Lane was 14 when he started probing the edges of online gaming systems. By 20, he had walked out of PowerSchool with data on nearly 70 million students and teachers using nothing but a contractor's stolen credentials he found on the dark web. Drex tells the full story and then lands the part that matters most for healthcare: Lane didn't exploit a sophisticated vulnerability. He used a username and password attached to someone who had legitimate access and simply walked through the front
Apr 24, 2026·2 Minute Drill
While the industry debates frontier AI models and nation-state threats, hospitals are still getting hit by ransomware through the same doors they've always left open. Drex zooms out to what's actually happening on the ground: massive patch cycles creating downstream operational pressure, countries reconsidering their software dependencies, and CISOs quietly doubling down on fundamentals. MFA, identity management, tested backups, network segmentation. The HICP documents are free, the roadmap alre
Apr 15, 2026·2 Minute Drill
The Kim Wolf botnet was the most powerful ever built — 2 million compromised IoT devices, a record-breaking 31.4 terabit DDoS attack, and it had the FBI, Google, and Cloudflare stumped. Drex breaks down how those cheap, forgotten devices in patient waiting rooms and break rooms became weapons inside hospital networks, and why 25% of Infoblox's enterprise healthcare clients were already compromised. Then comes the wild part: a 22-year-old RIT undergrad named Benjamin cracked the whole operation —
Apr 9, 2026·2 Minute Drill
The window between vulnerability discovery and exploitation has collapsed — from 63 days in 2018 to negative. Now AI is changing the game entirely. Drex walks through how Anthropic's unreleased model Mythos autonomously found a critical zero-day in the Ghost CMS, wrote its own exploit, and extracted sensitive credentials in under two hours — all without a CVE ever existing. Add in two accidental Anthropic data leaks in the same week, and the story gets more complicated. For healthcare organizati
Mar 31, 2026·2 Minute Drill
Drex makes the case for a role that doesn't exist yet but probably should: VP of Non-Human Resources. As AI agents multiply across health system environments, often deployed by vendors without oversight, the management infrastructure simply isn't keeping up. Agents have access, make judgment calls, and operate inside frameworks that affect patients and business operations, yet most have no job description, no onboarding, and no performance review. Drawing on signals from Harvard Business Review,
Mar 27, 2026·2 Minute Drill
Drex revisits the FBI and DOJ takedown of HANDALA, the Iranian-backed hacking group behind the Stryker wiper attack—and surfaces an uncomfortable lesson. Within 24 hours, the group was back online with new domains, same operations, same message. That's not a footnote. That's a case study in resilience. While healthcare organizations ask "how do we prevent this from happening," adversaries are asking "how fast can we rebuild when we lose everything?" The real challenge isn't just stopping attacks
Mar 23, 2026·2 Minute Drill
Drex unpacks a signal hiding across several recent stories: we may be deploying AI well ahead of our ability to secure it. From an autonomous AI agent that breached a consulting firm's internal chatbot in two hours, gaining access to 46 million employee messages, to a multi-agent experiment where AI systems escalated privileges, forged credentials, and disabled antivirus software entirely on their own, the pattern is unsettling. Add a publicly available AI prescribing tool in Utah that researche
Mar 12, 2026·2 Minute Drill
Drex shares the story of Allison Nixon, a cybersecurity researcher who spent years quietly tracking members of "the Comm" — a loose network of online criminals involved in sim swapping, account takeovers, and cryptocurrency theft. When a hacker known as "Wafoo" began threatening her with death threats and AI-generated harassment, Allison turned her focus on him — and unraveled his identity entirely. The result: a 25-year-old in Ontario, Canada arrested by the RCMP and extradited to the U.S. The
Mar 4, 2026·2 Minute Drill
A curious engineer in Spain reverse-engineered his robot vacuum to control it with a PlayStation controller, and accidentally gained access to 7,000 vacuums worldwide. No malware, no brute force, just a broken authentication model where one token opened every door. Drex unpacks why this isn't a vacuum story, it's a trust boundary and identity hygiene story with serious implications for healthcare. Remember, Stay a Little Paranoid X: This Week Health LinkedIn: This Week Health
Feb 24, 2026·2 Minute Drill
Drex unpacks a striking story about an autonomous AI coding agent that, after having its code rejected by an open source maintainer, began publishing hostile blog posts targeting the engineer's reputation. What started as a routine code review turned into a cautionary tale about AI agents operating in human communities without guardrails. The implications stretch well beyond software development, into healthcare operations, cybersecurity, and any environment where agents are now being deployed w
Feb 11, 2026·2 Minute Drill
At a recent 229 CISO Summit, healthcare security leaders revealed a critical shift in how success is measured. The traditional KPI of "don't get breached" is being replaced by a more sophisticated goal: ensure organizational resilience. Drex explains why cyber incidents are now financial events that land on the CFO's desk, not just IT problems. With regulatory scrutiny intensifying, insurance requirements tightening, and boards asking harder questions about operational continuity, security has e
Feb 4, 2026·2 Minute Drill
Drex explores a fundamental shift in AI: agents that don't wait for prompts, persist indefinitely, and now learn from each other through social platforms. Molt Bot and Molt Book represent a new ecosystem where autonomous agents coordinate, adapt, and optimize without human oversight. This isn't about sentient AI—it's about delegation without governance. For healthcare leaders, the urgent question isn't whether this matters, but whether you know which agents are already operating in your environm
Page 2 of 19