Joe Holado from Rubric discusses a new LLM vulnerability class called remote prompt execution, which allows attackers to bypass AI guardrails and spawn remote shells in Microsoft Copilot. The episode also features a segment on the privacy risks of AI note-takers and recorders, highlighting how these devices often record sensitive conversations without clear consent or visibility. Additionally, the hosts cover enterprise security news, including research on sandbox escapes, the reliability of AI-generated patches, and the growing vulnerabilities in data centers.
Listen ad-free on Castria