Artwork

محتوای ارائه شده توسط Evan Kirstel. تمام محتوای پادکست شامل قسمت‌ها، گرافیک‌ها و توضیحات پادکست مستقیماً توسط Evan Kirstel یا شریک پلتفرم پادکست آن‌ها آپلود و ارائه می‌شوند. اگر فکر می‌کنید شخصی بدون اجازه شما از اثر دارای حق نسخه‌برداری شما استفاده می‌کند، می‌توانید روندی که در اینجا شرح داده شده است را دنبال کنید.https://fa.player.fm/legal
Player FM - برنامه پادکست
با برنامه Player FM !

Self-Healing Code: How AI Transforms Software Supply Chain Security

15:30
 
اشتراک گذاری
 

Manage episode 497423728 series 3499431
محتوای ارائه شده توسط Evan Kirstel. تمام محتوای پادکست شامل قسمت‌ها، گرافیک‌ها و توضیحات پادکست مستقیماً توسط Evan Kirstel یا شریک پلتفرم پادکست آن‌ها آپلود و ارائه می‌شوند. اگر فکر می‌کنید شخصی بدون اجازه شما از اثر دارای حق نسخه‌برداری شما استفاده می‌کند، می‌توانید روندی که در اینجا شرح داده شده است را دنبال کنید.https://fa.player.fm/legal

Interested in being a guest? Email us at [email protected]

The invisible layers of software beneath our applications harbor unseen risks that could compromise entire organizations. Nick Mistry CISO from Lineaje Inc pulls back the curtain on why software supply chain attacks like SolarWinds and Log4j caught so many companies unprepared—despite having robust security programs in place.
Software today can contain dependencies that run 60 layers deep, creating a perfect hiding place for malicious code or vulnerabilities. As Nick explains, "Open source people who develop open source are in it to drive innovation. They're not necessarily in it to maintain that software over time." This fundamental tension sets the stage for the security challenges we're witnessing.
What makes Lineaje approach different is their comprehensive scanning of both source code and compiled binaries to detect tampering, combined with their "Gold Open Source" program that provides pre-vetted, secure components. Most exciting is their "agentic AI" technology that automatically remediates vulnerabilities without breaking applications—completing in minutes what would take developers weeks to accomplish manually, all while keeping sensitive code within your environment.
The conversation takes a fascinating turn when Nick discusses how AI is transforming the threat landscape itself. "The old world of prioritizing vulnerabilities based on exploitability is quickly becoming outdated," he warns. "Threat actors can now use AI to get any vulnerability, whether it has an exploit or not, and create an exploit almost overnight with very little skill." This reality demands a fundamental shift in how we approach software security.
Want to take immediate action? Start by creating a comprehensive Software Bill of Materials (SBOM) for your applications. Join us at the Lineaje Software Supply Chain Summit on August 4th at #BlackHat to learn more about using AI for security and securing AI itself.

Support the show

More at https://linktr.ee/EvanKirstel

  continue reading

فصل ها

1. Introduction to Software Supply Chain Risks (00:00:00)

2. Understanding the Open Source Challenge (00:01:47)

3. Lineage's Solution and Technology Approach (00:03:25)

4. Agentic AI for Self-Healing Code (00:07:16)

5. DevSecOps Team Impact and Benefits (00:09:03)

6. Future of AI in Software Security (00:11:24)

7. Upcoming Events and Closing (00:14:17)

523 قسمت

Artwork
iconاشتراک گذاری
 
Manage episode 497423728 series 3499431
محتوای ارائه شده توسط Evan Kirstel. تمام محتوای پادکست شامل قسمت‌ها، گرافیک‌ها و توضیحات پادکست مستقیماً توسط Evan Kirstel یا شریک پلتفرم پادکست آن‌ها آپلود و ارائه می‌شوند. اگر فکر می‌کنید شخصی بدون اجازه شما از اثر دارای حق نسخه‌برداری شما استفاده می‌کند، می‌توانید روندی که در اینجا شرح داده شده است را دنبال کنید.https://fa.player.fm/legal

Interested in being a guest? Email us at [email protected]

The invisible layers of software beneath our applications harbor unseen risks that could compromise entire organizations. Nick Mistry CISO from Lineaje Inc pulls back the curtain on why software supply chain attacks like SolarWinds and Log4j caught so many companies unprepared—despite having robust security programs in place.
Software today can contain dependencies that run 60 layers deep, creating a perfect hiding place for malicious code or vulnerabilities. As Nick explains, "Open source people who develop open source are in it to drive innovation. They're not necessarily in it to maintain that software over time." This fundamental tension sets the stage for the security challenges we're witnessing.
What makes Lineaje approach different is their comprehensive scanning of both source code and compiled binaries to detect tampering, combined with their "Gold Open Source" program that provides pre-vetted, secure components. Most exciting is their "agentic AI" technology that automatically remediates vulnerabilities without breaking applications—completing in minutes what would take developers weeks to accomplish manually, all while keeping sensitive code within your environment.
The conversation takes a fascinating turn when Nick discusses how AI is transforming the threat landscape itself. "The old world of prioritizing vulnerabilities based on exploitability is quickly becoming outdated," he warns. "Threat actors can now use AI to get any vulnerability, whether it has an exploit or not, and create an exploit almost overnight with very little skill." This reality demands a fundamental shift in how we approach software security.
Want to take immediate action? Start by creating a comprehensive Software Bill of Materials (SBOM) for your applications. Join us at the Lineaje Software Supply Chain Summit on August 4th at #BlackHat to learn more about using AI for security and securing AI itself.

Support the show

More at https://linktr.ee/EvanKirstel

  continue reading

فصل ها

1. Introduction to Software Supply Chain Risks (00:00:00)

2. Understanding the Open Source Challenge (00:01:47)

3. Lineage's Solution and Technology Approach (00:03:25)

4. Agentic AI for Self-Healing Code (00:07:16)

5. DevSecOps Team Impact and Benefits (00:09:03)

6. Future of AI in Software Security (00:11:24)

7. Upcoming Events and Closing (00:14:17)

523 قسمت

All episodes

×
 
Loading …

به Player FM خوش آمدید!

Player FM در سراسر وب را برای یافتن پادکست های با کیفیت اسکن می کند تا همین الان لذت ببرید. این بهترین برنامه ی پادکست است که در اندروید، آیفون و وب کار می کند. ثبت نام کنید تا اشتراک های شما در بین دستگاه های مختلف همگام سازی شود.

 

راهنمای مرجع سریع

در حین کاوش به این نمایش گوش دهید
پخش