
Rise of Compromised LLMs - Sohrob Kazerounian - ASW #340
22 July - 1 hour 6 minsAI is more than LLMs. Machine learning algorithms have been part of infosec solutions for a long time. For appsec practitioners, a key concern is always going to be how to evaluate the security of software or a system. In some cases, it doesn't matter if a human or an LLM generated code -- the code needs to be reviewed for common flaws and design problems. But the creation of MCP servers and LLM-based agents is also adding a concern about what an unattended or autonomous piece of software is doing.
Sohrob Kazerounian gives us context on how LLMs are designed, what to expect from them, and where they pose risk and reward to modern software engineering.
Resources
https://www.vectra.ai/r...

The Cyber Canon, ditching the SOC 2, and the weekly enterprise news - Helen Patton - ESW #416
1 hour 49 mins
21 July Finished

Existential Dread, MCP, Cloudflare, ESXI, QR Codes, Salt Typhoon, Aaran Leyland... - SWN #495
33 mins
18 July Finished