Threat intelligence

Training Frontier Models to Out-Think Hackers — Uri Rolls, Arithmetic & Thom Wolf, Hugging Face

Training Frontier Models to Out-Think Hackers — Uri Rolls, Arithmetic & Thom Wolf, Hugging Face

Thom Wolf and Uri Rolls discuss the critical role of AI in cybersecurity, presenting a new benchmark called Masov. They argue that while frontier models excel at reconnaissance, they lack the sophisticated reasoning to exploit complex, logic-based zero-day vulnerabilities, such as a Keycloak name-versus-ID exploit. The solution, they propose, lies in high-quality, open-source AI models trained on real-world zero-day data to enable defenders to outpace attackers and build a new, AI-native security stack.

GPT-Red: Can AI read teams stop prompt injections?

GPT-Red: Can AI read teams stop prompt injections?

This podcast explores AI's impact on cybersecurity, discussing OpenAI's GPT-Red for automated red-teaming against prompt injections, the open-source ScamBuster that uses AI to bait scammers for threat intelligence, and Bruce Schneier's insights on the widening gap between skill and ability in the AI era and its ethical implications for the field.

Fable 5, GPT-5.6 and the high stakes of AI safeguards. Agentic ransomware, ClickFix reigns supreme

Fable 5, GPT-5.6 and the high stakes of AI safeguards. Agentic ransomware, ClickFix reigns supreme

This podcast explores the critical role of safeguards in frontier AI models like Anthropic's Fable 5 and OpenAI's GPT-5.6 Sol, analyzing the tension between powerful capabilities and misuse prevention. It also dissects the emergence and debate around agentic ransomware, specifically Jade Puffer, and covers the rise of ClickFix as a dominant social engineering attack targeting developers. Finally, it provides an in-depth analysis of UnregStealer, a credential-theft campaign impacting Latin American financial institutions, detailing its attack chain and mitigation strategies.

AI agents can manage your passwords. Should we let them? Plus: The biggest Patch Tuesday ever.

AI agents can manage your passwords. Should we let them? Plus: The biggest Patch Tuesday ever.

This episode of Security Intelligence delves into three critical cybersecurity topics: the implications of AI agents managing passwords, the impact of AI on vulnerability discovery and "Patch Tuesday" volumes, and the C-suite's evolving appetite for cyber risk in pursuit of innovation. Experts discuss the promises, pitfalls, and necessary strategic shifts in an AI-driven security landscape.

Exploits of public-facing apps are surging. Why?

Exploits of public-facing apps are surging. Why?

A deep dive into the 2026 IBM X-Force Threat Intelligence Index, exploring the shift to exploiting public-facing applications, the rise of AI agent-related threats, critical AI infrastructure flaws, and the need for a more human-centric approach to threat intelligence.

AI browser bans and the top software flaws of 2025

AI browser bans and the top software flaws of 2025

Experts discuss Gartner's advisory to ban AI browsers due to significant security risks like zero-click attacks. The conversation expands to the role AI vendors should play in threat intelligence, the frustrating persistence of old software vulnerabilities on the MITRE Top 25 list, the conditional safety of social logins, and a novel 'bring-your-own-virtual-machine' attack that bypasses traditional endpoint security.