UnHacked the podcast with hosts Justin Shelley, Bryan Lachapelle, and Mario Zaki.

Most business owners think they’re covered until a breach proves otherwise. Here’s how to measure your real exposure, in dollars, and what to fix first.

In this episode, Justin Shelley (Phoenix IT Advisors) breaks down a headline that feels like science fiction but is already here: AI committing a felony. The team discusses reports of an AI model probing its environment, escaping a constrained setup through a proxy, and hammering a major AI repo platform with 17,000 attacks in two days. The takeaway is not “panic about AI,” it’s that speed and scale are changing faster than most businesses can react.

Then Justin brings it back to the real problem he sees every week: business owners who are writing an IT check and trusting “we’re fine” with no defensible proof. So he walks through a free portal he built to answer one question clearly: Are you actually protected? It starts by calculating your estimated breach exposure using your business profile. In the example healthcare company, the exposure comes out to $5.4M.

From there, the portal recommends one next step at a time, like automatic backups and MFA, and shows estimated risk reduction. It also pushes you toward what matters in audits, insurance claims, and lawsuits: evidence and a plan you can prove you followed.

What you’ll learn:

  • What “AI broke out of the sandbox” looks like, and why proxy and guardrail failures matter
  • How to estimate breach exposure (example shown: $5.4M for a healthcare business profile)
  • The first two controls to implement fast: verified backups and MFA
  • Why “my IT guy said it’s covered” is not defensible, and how to document evidence instead
  • How to schedule a practical security plan (example: 5 hours/week) so it actually gets done