Episode

The last layer standing

Podcast
Safe Mode Podcast
Published
Jun 4, 2026
Duration seconds
2147
Processing state
not_requested
Canonical source
https://soundcloud.com/podcast-defensescoop-com/the-last-layer-standing
Audio
https://feeds.soundcloud.com/stream/2333485970-podcast-defensescoop-com-the-last-layer-standing.mp3
JSON
/v1/public/podcasts/safe-mode-podcast-6421323/episodes/the-last-layer-standing
Markdown
/podcast/safe-mode-podcast-6421323/the-last-layer-standing.md

Actions

  • POST https://stenobird.com/v1/public/podcasts/safe-mode-podcast-6421323/episodes/the-last-layer-standing/transcription-requests
    Idempotently request low-priority transcript generation for this episode.
  • GET https://stenobird.com/podcast/safe-mode-podcast-6421323/the-last-layer-standing.md
    Read the agent-friendly Markdown representation of this episode resource.

Summary

What happens when an "assume breach" scenario turns into a total corporate wipeout? In this episode of Safe Mode, host Greg welcomes Brandon Willitts, Director of Cyber Resilience at Everpure, to pull back the curtain on a devastating "malwareless" attack that deleted over 80,000 endpoints at a Fortune 100 company. When adversaries exploit valid credentials to compromise the entire identity plane, your own endpoint management tools can be weaponized against you. Brandon breaks down how separating the storage layer from the identity blast radius—and leveraging immutable snapshot technology—allowed a non-technical engineer to jumpstart a full recovery in just days rather than months. In our reporter chat, Greg talks with Derek Johnson about all the AI security news that has happened over the past week.