
Sign up to save your podcasts
Or


Join us as we explore what happens when AI generates vulnerabilities faster than any human can review them! In this episode, Oren Efraim, Technology Leader at Check Point (and leader of the 10,000-member Node.js Israel community), explains why security has to become a first-class part of your platform — not a gate at the end. Discover why 2025's ~50,000 new vulnerabilities are heading toward 100,000, why Check Point's research shows 96% of exploited vulnerabilities aren't even new, and why a CVSS score of 9.9 tells you almost nothing without context.
Oren Efraim on LinkedIn - https://www.linkedin.com/in/orenefr/
Miki Manor on LinkedIn - https://www.linkedin.com/in/mikimanor/
Ofir Stein on LinkedIn - https://www.linkedin.com/in/ofir-stein/
DevOps Leaders - https://www.linkedin.com/company/devops-leaders-il/posts/?feedView=all
Key takeaways:
* The vulnerability flood is real: ~50,000 new vulnerabilities in 2025, heading to 70,000–100,000 as AI coding tools multiply the output
* Check Point's research bombshell: 96% of exploited vulnerabilities are NOT new — they already existed, and nobody patched them
* "Mythos" and the new class of AI models that can map your whole system and find advanced vulnerabilities only veteran security researchers used to catch
* Why a weapon in one person's hands is more dangerous than a weapon everyone has — the zero-day economics of AI-found exploits in open-source libraries
* We don't write code by hand anymore: bring a *different* model with no bias to security-review the code your first model wrote ("the suspect is also the victim")
* Why a 9.9 severity score means nothing without context — attack surface, networking, permissions, and business logic decide what's actually critical
* How to kill the security bottleneck: move from rigid context-free scanners to an agentic system that decides in context, so deployments don't stall
* Who owns the context? Developers know the logic, platform people know the exposure, product people know what the business can't afford to lose — plus detecting drift between what's defined and what's actually running
We're recording live from the Platforma 2026 conference in Tel Aviv, featuring fascinating discussions on AI and more.Join our exclusive DevOps Leaders community with over 300 members, where we share knowledge and improve together.
What's your biggest challenge in the DevOps field? Drop it in the comments!
Subscribe for weekly insights and updates on the latest in DevOps!
#DevOps #Podcast #Technology #AI #CheckPoint
By DevOps Leaders IL CommunityJoin us as we explore what happens when AI generates vulnerabilities faster than any human can review them! In this episode, Oren Efraim, Technology Leader at Check Point (and leader of the 10,000-member Node.js Israel community), explains why security has to become a first-class part of your platform — not a gate at the end. Discover why 2025's ~50,000 new vulnerabilities are heading toward 100,000, why Check Point's research shows 96% of exploited vulnerabilities aren't even new, and why a CVSS score of 9.9 tells you almost nothing without context.
Oren Efraim on LinkedIn - https://www.linkedin.com/in/orenefr/
Miki Manor on LinkedIn - https://www.linkedin.com/in/mikimanor/
Ofir Stein on LinkedIn - https://www.linkedin.com/in/ofir-stein/
DevOps Leaders - https://www.linkedin.com/company/devops-leaders-il/posts/?feedView=all
Key takeaways:
* The vulnerability flood is real: ~50,000 new vulnerabilities in 2025, heading to 70,000–100,000 as AI coding tools multiply the output
* Check Point's research bombshell: 96% of exploited vulnerabilities are NOT new — they already existed, and nobody patched them
* "Mythos" and the new class of AI models that can map your whole system and find advanced vulnerabilities only veteran security researchers used to catch
* Why a weapon in one person's hands is more dangerous than a weapon everyone has — the zero-day economics of AI-found exploits in open-source libraries
* We don't write code by hand anymore: bring a *different* model with no bias to security-review the code your first model wrote ("the suspect is also the victim")
* Why a 9.9 severity score means nothing without context — attack surface, networking, permissions, and business logic decide what's actually critical
* How to kill the security bottleneck: move from rigid context-free scanners to an agentic system that decides in context, so deployments don't stall
* Who owns the context? Developers know the logic, platform people know the exposure, product people know what the business can't afford to lose — plus detecting drift between what's defined and what's actually running
We're recording live from the Platforma 2026 conference in Tel Aviv, featuring fascinating discussions on AI and more.Join our exclusive DevOps Leaders community with over 300 members, where we share knowledge and improve together.
What's your biggest challenge in the DevOps field? Drop it in the comments!
Subscribe for weekly insights and updates on the latest in DevOps!
#DevOps #Podcast #Technology #AI #CheckPoint