Red teaming

What should security leaders do with AI? They don’t know.

What should security leaders do with AI? They don’t know.

This podcast explores the challenges cybersecurity leaders face in adopting AI, the emergence of new threats like ghostjacking, and AI's current capabilities in patching vulnerabilities. It highlights the prevalent "AI decision paralysis" and offers strategic advice for integrating AI into security operations, advocating for a human-in-the-loop approach and a realistic assessment of AI's current

GPT-Red: Can AI read teams stop prompt injections?

GPT-Red: Can AI read teams stop prompt injections?

This podcast explores AI's impact on cybersecurity, discussing OpenAI's GPT-Red for automated red-teaming against prompt injections, the open-source ScamBuster that uses AI to bait scammers for threat intelligence, and Bruce Schneier's insights on the widening gap between skill and ability in the AI era and its ethical implications for the field.

Through the AI Fog: The Architectural Decision Agentic Security Depends On — Manoj Nair, Snyk

Through the AI Fog: The Architectural Decision Agentic Security Depends On — Manoj Nair, Snyk

Manoj Nair of Snyk reveals alarming data on AI-driven security risks, emphasizing that generative AI and validation systems cannot be the same. He highlights issues like autonomous attacks, rampant vulnerabilities in AI-generated code and skills, and PII leakage. Snyk's solution, Evo, integrates deterministic prevention and remediation to secure the agentic development lifecycle.

LLMjacking: How hackers steal your AI API keys and stick you with the bill

LLMjacking: How hackers steal your AI API keys and stick you with the bill

Experts discuss the rise of LLMjacking, where stolen AI API keys lead to massive financial losses. They explore how AI is reshaping adversary simulations, the enduring need for human expertise in the loop, and the debate over accelerating security patch timelines in the face of AI-powered threats.

Time to become a hacker // Matt Sharp

Time to become a hacker // Matt Sharp

In this talk, Matt Sharp explains that while 2025 is the year of AI agents, it's also the year of cybercrime. The rush to create frictionless, user-friendly agents has led to a neglect of fundamental security principles, creating a perfect environment for hackers who are now using these same powerful AI tools to innovate and scale their attacks.

Hacking AI Systems: How to (Still) Trick Artificial Intelligence • Katharine Jarmul • GOTO 2025

Hacking AI Systems: How to (Still) Trick Artificial Intelligence • Katharine Jarmul • GOTO 2025

To build secure AI systems, we must first learn to break them. Katharine Jarmul explores the landscape of adversarial AI, detailing how attackers exploit fundamental weaknesses in deep learning models—from poisoned training data and overparameterization to the attention mechanism itself. This talk provides a practical taxonomy of attacks and a primer on building robust defenses.