S4E22 – HuggingFace compromised by agentic attack, Gold Eagle program
The Adversarial Podcast di Jerry Perullo, Sounil Yu, Mario Duarte
Note sull'episodio
00:00 The Adversarial Podcast
00:58 Hugging Face’s AI-driven incident disclosure
03:48 What makes an attack “AI-enabled”
06:04 Exploits, vulnerabilities, and bespoke code execution paths
10:03 AI attackers vs. AI defenders
11:19 Verification asymmetry: attackers vs. defenders
13:03 Detective controls, red teaming, and breach simulation
16:41 Why AI defenders matter
26:25 Gold Eagle / national coordination of vulnerability discovery
28:25 The real bottleneck is remediation, not discovery
37:04 CMMC and the cost of certification
42:15 Is certification effective, or just paperwork?
48:09 Threat-based validation as a better model
51:36 Closing thoughts: the security arms race
...
Parole chiave
cybersecuritycisocomputer security