Episode 24

full
Published on:

17th Feb 2026

Cracking Passwords and the Future of Passwords with Evil Mog

In this episode of the Security by Default podcast, host Joe Carson welcomes Evil Mog, an expert in password cracking and cybersecurity. They discuss the importance of Hacker Jeopardy in making cybersecurity fun, the ongoing challenges with passwords, and the evolving role of AI in password cracking. The conversation also touches on incident response, the significance of documentation, and the future trends in cybersecurity, including the shift towards passwordless authentication and the impact of AI on both attackers and defenders.

Takeaways

  1. Hacker Jeopardy is a fun way to engage with cybersecurity.
  2. Teaching others helps reinforce your own knowledge.
  3. Passwords will remain a necessary evil in security.
  4. AI is enhancing password cracking methodologies.
  5. Documentation is crucial in incident response.
  6. The cost of hacking is increasing due to advanced techniques.
  7. Collaboration between red and blue teams is essential.
  8. Insider threats are on the rise in cybersecurity.
  9. Password management is fundamentally an asset management issue.
  10. Future trends indicate a shift towards passwordless authentication.


Sound bites

"Teaching helps you learn better."

"Security is about enabling the business."

"The cost of hacking is rising."


Chapters

  1. 00:00 Introduction to Evil Mog and Hacker Jeopardy
  2. 02:37 The Importance of Community and Teaching in Cybersecurity
  3. 05:22 Password Security: The Louvre Incident
  4. 07:59 The Evolution of Authentication Methods
  5. 10:35 Challenges in Asset Management and Password Management
  6. 13:15 Operational Technology (OT) Security Challenges
  7. 15:53 The Role of Documentation in Cybersecurity
  8. 18:42 AI in Cybersecurity: Automation and Password Recovery
  9. 21:52 AI in Password Cracking
  10. 24:56 Enhancing Human Capabilities with AI
  11. 27:18 The Evolution of Cybercrime
  12. 30:02 Trends and Predictions for Cybersecurity
  13. 34:41 Collaboration in Cybersecurity
  14. 37:24 The Future of Cybercrime and AI
  15. 40:59 Connecting with Evil Mog
Show artwork for Security by Default

About the Podcast

Security by Default
Security by Default is a cybersecurity podcast hosted by Joseph Carson, a renowned ethical hacker and security expert. Each episode dives into the latest security trends.
Security by Default is a cybersecurity podcast hosted by Joseph Carson, a renowned ethical hacker and security expert. Each episode dives into the latest security trends, real-world threats, and practical advice for staying safe in the digital world. With insightful interviews and clear explanations, Joseph makes complex topics accessible for both IT professionals and curious listeners alike.

About your host

Profile picture for Joseph Carson

Joseph Carson

I am a distinguished cybersecurity professional with over 30 years of experience in enterprise security and infrastructure.

Throughout my career, I have been an active contributor to the cybersecurity community, serving as an educator, ethical hacker, and speaker at global conferences. I hold both the Certified Information Systems Security Professional (CISSP) and Offensive Security Certified Professional (OSCP) certifications as well as advise various governments, critical infrastructure organizations, and industries such as finance and transportation on cybersecurity matters.
I am the author of "Cybersecurity for Dummies," a book that has gained global recognition for helping companies integrate people, processes, and technology to strengthen their defense against cyberattacks. The book has over 50,000 readers worldwide and provides a straightforward approach to understanding cybersecurity.

In addition to my writing, I have authored numerous articles and research papers, contributing to publications such as The Wall Street Journal, USA Today, Dark Reading, and CSO Magazine. I also host the bi-weekly podcast "Security by Default" which offers insights from leading cybersecurity experts and discusses best practices for navigating security challenges.
I am dedicated to educating the next generation of cybersecurity leaders and his commitment to building a safer internet have made him a respected figure in the cybersecurity community.