Episode

Episode 865 - Multiplayer Firewalls

Podcast
FLOSS Weekly
Published
Mar 4, 2026
Duration seconds
3359
Processing state
processed
Canonical source
https://b27a1a7a-dbb9-4922-ac3e-601e2d6ca1e1.libsyn.com/episode-865-multiplayer-firewalls
Audio
https://traffic.libsyn.com/secure/b27a1a7a-dbb9-4922-ac3e-601e2d6ca1e1/FLOSS-865.mp3?dest-id=4272468
JSON
/v1/public/podcasts/floss-weekly/episodes/episode-865-multiplayer-firewalls
Markdown
/podcast/floss-weekly/episode-865-multiplayer-firewalls.md

Actions

  • POST https://stenobird.com/v1/public/podcasts/floss-weekly/episodes/episode-865-multiplayer-firewalls/transcription-requests
    Idempotently request low-priority transcript generation for this episode.
  • GET https://stenobird.com/podcast/floss-weekly/episode-865-multiplayer-firewalls.md
    Read the agent-friendly Markdown representation of this episode resource.

Summary

Explore the business and technical mechanics of 'multiplayer firewalls' through the lens of CrowdSec. The discussion covers how sharing attacker telemetry across a distributed network creates a collective defense against modern threats.

Topics

  • CrowdSec
  • Web Application Firewall
  • Open Source Security
  • IPv6
  • Artificial Intelligence
  • Bug Bounty
  • Network Telemetry
  • Cybersecurity Business Models

Highlights

  • Main idea: The 'multiplayer firewall' concept relies on sharing attacker telemetry rather than user data to build a global reputation database
  • Practical takeaway: Managing IPv6 security requires shifting focus from individual IPs to larger, identifiable subnet blocks
  • Failure mode: The rise of LLMs in bug bounty programs is significantly increasing the signal-to-noise ratio, making manual triage harder
  • Main idea: Effective defense in an era of automated scanning relies on identifying the digital highways and IP origins of incoming traffic
  • Practical takeaway: Using human-centric bug bounty platforms can mitigate the influx of low-quality, AI-generated vulnerability reports

Chapters

  1. 1:00 Introduction to Offensive Security: An introduction to Philippe Humeau's background in offensive security and AI.
  2. 5:00 The Open Source Business Model: Discussing the transition from open-source projects to sustainable security businesses.
  3. 21:50 AI-Driven Reconnaissance: The potential for agentic LLMs to automate large-scale surface area scanning and social engineering.
  4. 26:00 The Bug Bounty Noise Crisis: How LLMs are flooding bug bounty programs with low-quality, automated vulnerability reports.
  5. 30:15 IPv4 vs. IPv6 Defense Strategies: Analyzing the challenges of tracking attackers in the massive address space of IPv6.
  6. 34:40 Data Privacy and Telemetry: How to share security intelligence while protecting user privacy through data blurring.
  7. 51:35 The Future of Cybersecurity: Predicting the impact of Model Context Protocol (MCP) and the evolution of automated security systems.