Root Causes: A PKI and Security Podcast

Tim Callan and Jason Soroko

Digital certificate industry veterans Tim Callan …

  • 7 minutes 51 seconds
    Root Causes 608: The Fragility of Formal Verification
    The reliability of cryptographic algorithms is largely a matter of conjecture based on track record. Proving security is impaired by the difficulty of formal verification, implementation weaknesses, and failure in randomness.
    22 April 2026, 2:21 pm
  • 7 minutes 59 seconds
    Root Causes 607: PKI That's Hard to Discover
    The first of the five pillars of Certificate Lifecycle Management (CLM) is discovery. While many of your certificates are easily discoverable, some difficult PKI remains.
    20 April 2026, 1:23 pm
  • 6 minutes 10 seconds
    Root Causes 606: What Is the UK Online Safety Act?
    The UK Online Safety Act intends to force vendors who sell hardware and software to allow the government to scan end-to-end encrypted communication on end devices. We once again marvel at governments seeking to undermine the security of their own citizens.
    17 April 2026, 3:16 pm
  • 9 minutes 17 seconds
    Root Causes 605: Chrome Declares Its Support for Merkle Tree Certificates (MTC)
    Google has taken a strong position supporting Merkle Tree Certificates (MTC) as the PQC-enabled future for SSL / TLS. We unpack this extremely important position from the WebPKI's most influential organization.
    15 April 2026, 1:54 pm
  • 11 minutes 9 seconds
    Root Causes 604: Accelerated Timeline for Quantum Computers Breaking ECC in Crypto and Blockchain
    A new paper from Google Quantum AI and others documents a new technique for breaking ECC, particularly the curve protecting crypto currencies, smart contracts, and blockchain. This accelerates post quantum cryptography (PQC) timelines.
    13 April 2026, 2:56 pm
  • 9 minutes 26 seconds
    Root Causes 603: Cryptographically Relevant Quantum Computing (CRQC) with Only 10,000 Qubits
    New research suggests that a cryptographically relevant quantum computer is achievable with only 10,000 qubits. This was an important contributor to Google moving its PQC target to 2029.
    10 April 2026, 7:09 pm
  • 12 minutes 59 seconds
    Root Causes 602: Google Moves the PQC Date Forward to 2029
    Google has announced that it is moving its target for full PQC support to 2029. This is a strong statement from one of the most knowledgeable PQC technology companies that the existing 2030 target is too late.
    8 April 2026, 3:21 pm
  • 6 minutes 50 seconds
    Root Causes 601: The Zombie in the Server Room
    Legacy PKI implementations in the enterprise are holding back technical progress and creating security risk. We discuss reasons why, consequences, and what to do about it.
    6 April 2026, 1:22 pm
  • 10 minutes 19 seconds
    Root Causes 600: Cryptographic Design Is Not Neutral
    In our previous episode we defined cryptography as the new geopolitics. Now in our 600th episode we follow up to explain how all cryptographic decisions reflect the social, political, and legal viewpoints of the cryptography's designers.
    3 April 2026, 12:11 pm
  • 10 minutes 39 seconds
    Root Causes 599: Cryptography Is the New Geopolitics
    In the last decade or so, nations around the world have become keenly determined to use cryptography for their own legal, economic, and military advantage. We explore this concept.
    1 April 2026, 1:44 pm
  • 7 minutes 55 seconds
    Root Causes 598: Why Johnny Can't authN in OT
    A recent CISA report declares that the nation's OT infrastructure is incapable of keeping up with the crypto agility and certificate management needs that modern security demands. We examine this finding.
    30 March 2026, 5:25 pm
  • More Episodes? Get the App