Risky Business Risky Business

Snake Oilers: watchTowr, XBOW and CoreView

Sep 11, 2026 · 42m

Summary

This episode of Risky Business features three guests discussing security tools. Ben Harris from Watchtower explains how his company helps organizations apply rapid detections and preventions for emerging vulnerabilities before patches are available. Fede Hirschbaum, head of security labs at Expo, details their autonomous AI penetration testing agent, which gained attention for its performance on bug bounty platforms. Finally, Andrew McAllister from Coreview discusses their platform for securing complex Microsoft 365 tenants, highlighting the challenges of managing the platform's numerous co…

Topics discussed

Introduction to the Snake Oilers episode and sponsors Introducing Fede Hirschbaum and Coreview Coreview: M365 security and vulnerability mitigation Watchtower's three pillars: Intel, Preem, and Mitigation Target technologies and the shift to the 'everything' problem Jailbreaking appliances and reverse engineering at scale Deploying custom EDR on locked-down appliances Rapid detection, WAF rules, and threat intelligence feeds Finding 0-days and the speed of modern exploitation Moving from performative research to practical mitigation Transition to Fede Hirschbaum and Exploit AI Exploit AI: Autonomous AI penetration testing Synthesizing findings and the role of human expertise Commoditization of pen testing and its benefits The AI harness: Brain and body architecture Coordinators, solvers, and agent-based vulnerability hunting Black box approach and team diversity The future of pen testing as a validation layer Reflections on Exploit AI's rise and AI in offensive security Introducing Andrew McAllister and Coreview Coreview: M365 tenant visibility and Microsoft gaps Drift detection and configuration rollback Third-party app inventory and risk assessment Common M365 misconfigurations and MFA issues Continuous compliance and governance dashboards Wild findings: Global admins and permission models Case studies: Unauthorized access and SharePoint risks Closing remarks and final thoughts
Listen ad-free on Castria