BadHost, Dead CTFs, Exploding NPMs, and the Verizon DBIR - ASW #385
About this episode
We dedicate an episode to catching up on appsec news with Kalyani Pawar. We see parsing problems that led to the BadHost vuln, which exposed lots of LLMs, MCPs, and agents to potential compromise. We wonder where to look for security education and practice as the camaraderie of the CTF community becomes infiltrated by LLMs. We talk about the tradeoffs in trust between using public packages vs. having agents write replacements from scratch. And we examine some of the appsec details that the Verizon DBIR reveals about how orgs are being attacked -- and how orgs might use that information to protect themselves.
Visit https://www.securityweekly.com/asw for all the latest episodes!
Show Notes: https://securityweekly.com/asw-385
Get every episode summarized
Each time Security Weekly Podcast Network (Audio) publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from Security Weekly Podcast Network (Audio)
Linux Threat Hunting - PSW #942
Security Weekly Podcast Network (Audio)
Preventing Wire Fraud and 2 Interviews From BH USA 2026 From Optiv Security and...
Security Weekly Podcast Network (Audio)
Victorians, TONIC, RevStealer, Fireant, OpenClaw, PowerShell, SuperBox, Aaran Le...
Security Weekly Podcast Network (Audio)
Fixing Software Weaknesses Rather Than Just Finding More Flaws - Gil Geron, Nidh...
Security Weekly Podcast Network (Audio)