
Sign up to save your podcasts
Or


The security community has been sounding alarms about AI infrastructure for two years. BadHost, a critical authentication bypass discovered in May 2026 inside one of the most widely used Python frameworks on the internet, is what that alarm sounds like when it goes off. Dan Fernandez returns to AI Spy to talk about what actually happened, why the official severity rating understates the real risk, and what the broader pattern of 40-plus CVEs against MCP implementations in 2026 alone tells us about how AI infrastructure is being built. This is not a technical deep-dive. It is a practitioner briefing on the vulnerability surface that every organization deploying agentic AI is now sitting on, whether they know it or not.
Show Notes
Dan Fernandez, cybersecurity practitioner and returning AI Spy guest.
Dan has spent his career at the intersection of threat intelligence and enterprise security infrastructure. He returns to AI Spy for his second appearance having previously covered AI as an attack tool. This time the conversation flips: AI infrastructure itself is the attack surface.
In this episode:
Links and References: BadHost - CVE-2026-48710 Starlette Host-Header Auth BypassDisclosing the BADHOST Vulnerability in Starlette – OSTIF.orgDan Fernández | LinkedIn
By Anurag MohapatraThe security community has been sounding alarms about AI infrastructure for two years. BadHost, a critical authentication bypass discovered in May 2026 inside one of the most widely used Python frameworks on the internet, is what that alarm sounds like when it goes off. Dan Fernandez returns to AI Spy to talk about what actually happened, why the official severity rating understates the real risk, and what the broader pattern of 40-plus CVEs against MCP implementations in 2026 alone tells us about how AI infrastructure is being built. This is not a technical deep-dive. It is a practitioner briefing on the vulnerability surface that every organization deploying agentic AI is now sitting on, whether they know it or not.
Show Notes
Dan Fernandez, cybersecurity practitioner and returning AI Spy guest.
Dan has spent his career at the intersection of threat intelligence and enterprise security infrastructure. He returns to AI Spy for his second appearance having previously covered AI as an attack tool. This time the conversation flips: AI infrastructure itself is the attack surface.
In this episode:
Links and References: BadHost - CVE-2026-48710 Starlette Host-Header Auth BypassDisclosing the BADHOST Vulnerability in Starlette – OSTIF.orgDan Fernández | LinkedIn