Podcasts

News, analysis and commentary

Solving the AI agent identity problem

Presented by

James Wilson
James Wilson

Enterprise Technology Editor

In this podcast James Wilson and Brad Arkin chat about emerging trends in AI agent identity and credential management. Brad was formerly the CISO of Adobe, Cisco and Salesforce, and is now working with all sorts of companies that are deploying AI.

With everyone now in at least a large-scale pilot of agentic AI, the issue of how to manage agent identities and credentials is still an unsolved problem. But, some interesting patterns are emerging.

Solving the AI agent identity problem
0:00 / 40:21

Risky Bulletin: DigiCert hacked with a malicious screensaver file

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

DigiCert got hacked via a malicious screensaver file, two ransomware negotiators each get four years in prison, Trellix discloses a security breach, and another Russian hacker gets arrested while vacationing in the wrong place.

Risky Bulletin: DigiCert hacked with a malicious screensaver file
0:00 / 9:45

Sponsored: James Kettle built an AI hacker

Presented by

James Wilson
James Wilson

Enterprise Technology Editor

In this sponsored interview, James Wilson talks with James Kettle and Daf Stuttard from PortSwigger about the incredible research James will unveil at Black Hat US this July, and how that research will be productised into Burp Suite. It shouldn’t be surprising that when James Kettle bolts an LLM into his research methodology that insanely dangerous things happen. This interview is a window into the future of AI-enabled hacking and security testing.

This interview is also available on YouTube.

Sponsored: James Kettle built an AI hacker
0:00 / 24:56

Risky Bulletin: cPanel auth bypass exploited in wild

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

The Copy Fail vulnerability impacts all Linux distros going back to 2017, hackers are exploiting a cPanel auth bypass, every Moldovan citizen has their data stolen, and some scam compounds got raided raided… in Dubai.

Risky Bulletin: cPanel auth bypass exploited in wild
0:00 / 13:05

Snake Oilers: Ent AI, Spacewalk and Mondoo

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

In this edition of the Snake Oilers podcast three vendors stop by to pitch the audience on their products:

  • Ent AI: Co-founder Brandon Dixon pitched Ent, an intent-aware, AI-powered endpoint security control.

  • Spacewalk AI: Founders Chris Fuller and Tim Wenzlau pitch Spacewalk, an AI-powered incident response platform.

  • Mondoo: Co-founder Dominik Richter pitches Mondoo, an AI-powered “service as software” in the vulnerability management space.

This episode is also available on YouTube.

Snake Oilers: Ent AI, Spacewalk and Mondoo
0:00 / 43:59

Srsly Risky Biz: US Vows to Fight Distillation Attacks

Presented by

Amberleigh Jack
Amberleigh Jack

Producer and Editor

Tom Uren
Tom Uren

Policy & Intelligence

Tom Uren and Amberleigh Jack talk about the US government stepping in to fight ‘distillation attacks’ by Chinese AI labs. These are methods used to steal the special sauce of frontier AI models simply by asking questions.

They also discuss the wide-spread shift amongst Chinese threat actors to using botnets for all aspects of their operations. It’s a problem for defenders, but also a disruption opportunity for authorities.

This episode is also available on YouTube.

Srsly Risky Biz: US Vows to Fight Distillation Attacks
0:00 / 18:22

Risky Business #835 -- Why the Fast16 malware is badass

Presented by

James Wilson
James Wilson

Enterprise Technology Editor

Patrick Gray
Patrick Gray

CEO and Publisher

On this week’s show, Patrick Gray and James Wilson are joined by special guest-host Dmitri Alperovitch. They discuss the week’s cybersecurity news, including:

  • The US government is mad as hell about Chinese firms stealing American AI technology
  • Dmitri has an opinion or two about the US selling Nvidia chips to China
  • Speaking of Chinese AI, Kimi’s new 2.6 is very interesting
  • The US sanctions a Cambodian senator for earning mega bucks through scam compounds
  • And a ransomware family is promoting itself as being … quantum-safe?

This week’s show is sponsored by Trail of Bits. CEO and co-founder Dan Guido chats to Pat about how private inference works and Trail of Bits’ audit of WhatsApp’s private AI setup.

This episode is also available on Youtube.

Risky Business #835 -- Why the Fast16 malware is badass
0:00 / 66:28

A deep dive on AI model distillation attacks

Presented by

James Wilson
James Wilson

Enterprise Technology Editor

In this solo episode of Risky Business Features James Wilson explores how distillation techniques are both a legitimate way to train smaller models, as well as a way to steal model capabilities. It’s not just a problem for frontier labs! Any LLM-based product could have its competitive advantage stolen through these attacks.

James covers:

  • High-level concept of distillation
  • Why it matters including close/open-weight/open-source explanation
  • Types of distillation and the prompts used
  • The distillation pipeline end to end
  • Distillation at scale and mitigation techniques
  • Hardware resource constraints for distillation
A deep dive on AI model distillation attacks
0:00 / 72:08

Risky Bulletin: Ukrainians hacked Russian satellite comms platform

Presented by

Catalin Cimpanu
Catalin Cimpanu

News Editor

Claire Aird
Claire Aird

Newsreader

Ukrainians hack Russian satellites, Vimeo is being extorted, Greece wants to ban anonymity on social media, and a Scattered Spider hacker was arrested in Finland.

Risky Bulletin: Ukrainians hacked Russian satellite comms platform
0:00 / 8:31

Between Two Nerds: Hackers from the future

Presented by

The Grugq
The Grugq

Independent Security Researcher

Tom Uren
Tom Uren

Policy & Intelligence

In this edition of Between Two Nerds Tom Uren and The Grugq discuss what the North Korean hack of Drift can tell us about the future of hacking.

This episode is also available on YouTube.

Between Two Nerds: Hackers from the future
0:00 / 32:10