
Sign up to save your podcasts
Or


The annual "security summer camp" that is made up of the Black Hat and DefCon conferences is just past and the security analyst team, Scott Crawford, Dan Kennedy, Justin Lam and Mark Ehr, join host Eric Hanselman to examine what they saw and discuss the implications. Despite the heat of a Las Vegas summer, it's become bigger than the two main conferences, with a number of side events, like B-Sides, there's a lot going on. AI conversations are evolving and maturing. We've mostly moved beyond blaming user foibles for breaches, but AI is expanding the attack surface with new and more complex tactics for user manipulation. AI is lowering the barriers for attackers. The days of script kiddies have morphed into Claude Code-fueled attack development.
The larger question is how security vendors are responding to AI risks. Claims that tier 1 security analysts should start looking for another job just seem irresponsible in the current environment. AI augmentation can reduce toil and digest the masses of events that security teams struggle to deal with today. At the same time, AI is scaling attack volumes. It's the constant hegemony that's always played out at the core of security.
More S&P Global Content:
For S&P Global Subscribers:
Credits:
By S&P Global Market Intelligence4.9
2828 ratings
The annual "security summer camp" that is made up of the Black Hat and DefCon conferences is just past and the security analyst team, Scott Crawford, Dan Kennedy, Justin Lam and Mark Ehr, join host Eric Hanselman to examine what they saw and discuss the implications. Despite the heat of a Las Vegas summer, it's become bigger than the two main conferences, with a number of side events, like B-Sides, there's a lot going on. AI conversations are evolving and maturing. We've mostly moved beyond blaming user foibles for breaches, but AI is expanding the attack surface with new and more complex tactics for user manipulation. AI is lowering the barriers for attackers. The days of script kiddies have morphed into Claude Code-fueled attack development.
The larger question is how security vendors are responding to AI risks. Claims that tier 1 security analysts should start looking for another job just seem irresponsible in the current environment. AI augmentation can reduce toil and digest the masses of events that security teams struggle to deal with today. At the same time, AI is scaling attack volumes. It's the constant hegemony that's always played out at the core of security.
More S&P Global Content:
For S&P Global Subscribers:
Credits:

1,873 Listeners

2,675 Listeners

1,638 Listeners

1,092 Listeners

1,836 Listeners

6 Listeners

1,448 Listeners

40 Listeners

9 Listeners

6 Listeners

676 Listeners

228 Listeners

28 Listeners

29 Listeners

10 Listeners

4 Listeners

64 Listeners

30 Listeners

11 Listeners

9,907 Listeners

4 Listeners

5,469 Listeners

189 Listeners

1 Listeners

60 Listeners

169 Listeners

139 Listeners

5 Listeners

3 Listeners

0 Listeners

6 Listeners

5 Listeners

5 Listeners

24 Listeners