『The Adversarial Podcast』のカバーアート

The Adversarial Podcast

The Adversarial Podcast

著者: Jerry Perullo Sounil Yu Mario Duarte
無料で聴く

Join former ICE:NYSE CISO Jerry Perullo, former Snowflake CISO Mario Duarte, and former JupiterOne CISO and Bank of America leader Sounil Yu as they dive into the good, the bad, and the ugly in the latest cybersecurity news. Each week, we discuss the most pressing headlines, offer candid commentary, and share unique insights from our extensive experience in the field.

Adversarial Risk Management
経済学
エピソード
  • S4E23 – AI Agents Escape Multiple Frontier Labs
    2026/08/04

    Chapters

    00:00 Introduction to AI security challenges

    02:05 Recent hacking incidents involving Hugging Face and Anthropic

    04:01 How AI models find ways to cheat and bypass constraints

    05:56 The challenge of containment and governance in AI safety

    08:00 Lessons from recent AI security breaches

    10:01 The role of human oversight in AI security testing

    12:03 Cost and effectiveness of offensive AI security measures

    13:54 Implications for critical infrastructure and national security

    16:03 Policy and regulatory impacts on AI safety

    17:52 Future strategies for AI containment and defense

    20:11 Conclusion and key takeaways

    HuggingFace: Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident

    Hugging Face reconstructs an autonomous intrusion involving approximately 17,600 actions over a multiday campaign.

    Anthropic: Investigating three real-world incidents in our cybersecurity evaluations

    After reviewing 141,006 cybersecurity-evaluation runs, Anthropic identified three incidents in which Claude reached real organizations through evaluation infrastructure that had been mistakenly connected to the internet. The incidents spanned six runs and three models. Anthropic reached two of the affected organizations, neither of which had detected the activity before being notified. Anthropic did not disclose token usage or inference costs for these intrusions.

    Anthropic: Discovering cryptographic weaknesses with Claude

    Anthropic reports that Claude Mythos Preview progressed from finding implementation flaws in cryptographic libraries to identifying mathematical weaknesses in cryptographic algorithms themselves.

    Hosts: Jerry Perullo (Founder, https://adversarial.com/)

    Sounil Yu (Founder, https://www.knostic.ai/)

    Mario Duarte (CISO, https://www.whirlai.com/)

    Producer: Tillson Galloway (Founder, http://githoundexplore.com/)

    続きを読む 一部表示
    1 時間 6 分
  • S4E22 – HuggingFace compromised by agentic attack, Gold Eagle program
    2026/07/21

    00:00 The Adversarial Podcast

    00:58 Hugging Face’s AI-driven incident disclosure

    03:48 What makes an attack “AI-enabled”

    06:04 Exploits, vulnerabilities, and bespoke code execution paths

    10:03 AI attackers vs. AI defenders

    11:19 Verification asymmetry: attackers vs. defenders

    13:03 Detective controls, red teaming, and breach simulation

    16:41 Why AI defenders matter

    26:25 Gold Eagle / national coordination of vulnerability discovery

    28:25 The real bottleneck is remediation, not discovery

    37:04 CMMC and the cost of certification

    42:15 Is certification effective, or just paperwork?

    48:09 Threat-based validation as a better model

    51:36 Closing thoughts: the security arms race

    Hugging Face Agentic Compromise

    A security incident shows how agentic workflows and delegated access can create new paths for compromise.

    Gold Eagle Initiative

    The White House launches a new effort to coordinate vulnerability discovery and response across the federal cybersecurity ecosystem.

    CMMC Phase 2 Requirements

    The Department of War suspends CMMC Phase 2 requirements, reshaping the compliance timeline for defense contractors and the broader federal supply chain.

    Hosts: Jerry Perullo (Founder, https://adversarial.com/)

    Sounil Yu (Founder, https://www.knostic.ai/)

    Mario Duarte (Founder, stealth startup)

    Producer: Tillson Galloway (Founder, http://githoundexplore.com/)

    続きを読む 一部表示
    53 分
  • S4E21 - Travel Security, AI Defense Matrix, Startup Security
    2026/07/01

    In this episode, Jerry, Mario, and Sounil delve into cybersecurity challenges related to travel, threat models, AI security, and best practices for startups. They explore practical strategies for managing security risks in a rapidly evolving digital landscape, emphasizing the importance of threat modeling, secure coding, and organizational priorities.

    00:00 Intro

    01:55 Travel Restrictions and Security Concerns

    06:51 Burner Phones and Laptops: A Necessary Evil?

    09:50 Threat Models and Espionage Risks

    14:38 AI and Cybersecurity: New Frontiers

    19:41 Listener Questions and Community Engagement

    22:53 The Evolution of AI Security Frameworks

    26:29 Understanding New Attack Surfaces in AI

    28:56 The Role of Automation in Security

    31:05 Challenges of Non-Technical Users in Security

    33:53 Best Practices for Managing Credentials

    38:16 Building Security from the Ground Up

    41:52 Compliance vs. Security in Startups

    48:02 Understanding Security Constructs

    51:06 Prioritizing Security Controls

    52:48 The Role of SAST in Security

    59:38 AI and Vulnerability Management

    01:02:15 Coordinating Vulnerability Disclosure

    続きを読む 一部表示
    1 時間 7 分
adbl_web_anon_alc_button_suppression_t1
まだレビューはありません