Applying Zero Trust Principles to Agents - Kieran Human - ASW #397
25 August - 1 hour 6 minsSandboxing, least privilege, and monitoring are well-established controls in terms of the defenses they provide against unexpected and unauthorized actions. But being well-established in theory doesn't always translate to successful in practice. Kieran Human talks about some of the properties that a good sandbox should have and how monitoring creates a feedback loop to refine allow lists and access controls. In practice, the potential unpredictable behavior of an agent isn't much different from malware. We talk through some of the ways orgs can securely deploy agents without unnecessarily increasing their attack surface.
Resources
https://www.threatlocker.com/blog/the-principle-of-leas...
Can employees safely use AI agents? AI pentesting agent liabilities, and the news - Rob Allen - ESW #473
1 hour 39 mins
24 August Finished
Surveillance, Murder Hornets, Portmantau, TrueCONF, Siemens, N-Able and More - SWN #609
41 mins
21 August Finished
Preventing a Breakout as AI Agent Threats Is One of Three Top CISO Concerns - Rob Allen - BSW #461
53 mins
19 August Finished
Secrets, Red Agent, GitHub, evoooo1bot, DecryptAds, Copilot, Aaran Leyland, and More - SWN #608
39 mins
18 August Finished