# asw (audio feeds) — RSS Amplifier

Recent posts from the 1 feeds in the RSS Amplifier directory that cover asw.

Page: <https://rssamplifier.com/topics/asw/audio>  
Feed: <https://rssamplifier.com/topics/asw/audio.md>

---

## [Augmenting Threat Intel Analysis with Agents - Chris Wallis, Sai Kiran Uppu, Ramin Farassat - ASW #396](https://aswaudio.libsyn.com/augmenting-threat-intel-analysis-with-agents-chris-wallis-sai-kiran-uppu-ramin-farassat-asw-396)

_2026-08-18 · Application Security Weekly (Audio)_

All sorts of cybersecurity disciplines are adopting agents to help humans save time and automate routine activities. Sai Kiran Uppu describes his work on creating a platform for agents to analyze external threat intel, examine internal systems, and present triage decisions to operators. This type of work is especially useful to orgs that deal with petabytes of data and thousands of systems. And,…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_396_1--fa976697-41d5-4cec-9b6a-d00433dc203b--audio-converted--d44ef9a0-b224-465d-9788-a2f075148cee.mp3?dest-id=626765)

## [Using LLMs for Vuln Discovery - Rishi Sharma - ASW #395](https://aswaudio.libsyn.com/using-llms-for-vuln-discovery-rishi-sharma-asw-395)

_2026-08-11 · Application Security Weekly (Audio)_

Finding flaws has always been a focus of appsec. And now with open source projects and open weight models orgs have modern tools to review code and conduct pentests. Rishi Sharma describes the motivation behind creating a platform of LLM-driven security tools and the effective ways to keep the tools in scope, on budget, and for engineering teams. We talk about how prompts influence LLM activity,…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_395_1--cf92f8a4-4d9e-4e0e-bd28-95e606f21c16--audio-converted--e799047d-3ceb-4981-8564-9249931e8c00.mp3?dest-id=626765)

## [Prompting for Patches That Fix Vulns Without Adding New Ones - Keith Hoodlet - ASW #394](https://aswaudio.libsyn.com/prompting-for-patches-that-fix-vulns-without-adding-new-ones-keith-hoodlet-asw-394)

_2026-08-04 · Application Security Weekly (Audio)_

There's already an increase in volume of security flaws found by LLMs. And orgs are already turning to LLMs to write code. So, what happens when orgs lean on LLMs to create patches for those security flaws? Keith Hoodlet gives an exclusive early look at his team's recent research into the success, quality, and failures of LLM-generated security patches. Notably, they saw scenarios across a…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_394_1--befad5cc-9d50-4650-a46d-2475b8908916--audio-converted--8cc7db00-d2aa-407d-9b8e-f186d4099621.mp3?dest-id=626765)

## [Inside the OWASP Agent Security Regression Harness Project - Mert Satilmaz - ASW #393](https://aswaudio.libsyn.com/inside-the-owasp-agent-security-regression-harness-project-mert-satilmaz-asw-393)

_2026-07-28 · Application Security Weekly (Audio)_

Orgs need to be able to use agents, MCPs, and LLMs in ways that don't lead to unexpected actions and undesirable outcomes. The OWASP Agent Security Regression Harness project is an approach for defining customizable scenarios and testing whether those systems fail against known security threats. Mert Saltimaz talks about the background of the project, how orgs can use it as they bring more LLMs…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_393_1--63928861-c181-43b5-b39c-b0374d62d61a--audio-converted--3f8728c1-8b3e-4db3-bc67-7209557ceb71.mp3?dest-id=626765)

## [MacOS Security Design Features, Flaws, And Futures - Patrick Wardle - ASW #392](https://aswaudio.libsyn.com/macos-security-design-features-flaws-and-futures-patrick-wardle-asw-392)

_2026-07-21 · Application Security Weekly (Audio)_

Appsec often frames usability and security as at odds with each other. Apple's software has famously emphasized the importance of usability while also creating a solid security foundation. Patrick Wardle talks about how he's seen malware shift from Windows to macOS, how Apple's aggressive stance on deprecation benefits security, and the areas of the OS where he still sees plenty of opportunity for…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_392_1--dd54e5ec-1c44-4b95-a180-6783e400a446--audio-converted--7f99787d-5369-4d3b-ab57-177186e2cb91.mp3?dest-id=626765)

## [Discovering & Securing Your AI Agent Attack Surface - Jeremy Snyder - ASW #391](https://aswaudio.libsyn.com/discovering-securing-your-ai-agent-attack-surface-jeremy-snyder-asw-391)

_2026-07-14 · Application Security Weekly (Audio)_

While LLMs and agents are new to appsec and everyone else, a lot of AI security requirements translate to well-known API security requirements. Jeremy Snyder helps us frame the OWASP LLM Top 10 into five layers in order to help orgs understand and prioritize their attack surface. A lot of orgs don't have to deal with model-specific threats or building their own GPU architecture, but every org…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_391_1--b923eabc-93ec-481b-b200-9712afc64bbb--audio-converted--842a0eae-dff5-44a7-a6d1-43f6f626e610.mp3?dest-id=626765)

## [Defense-in-depth strategies for securing mobile applications - Ryan Lloyd - ASW #390](https://aswaudio.libsyn.com/defense-in-depth-strategies-for-securing-mobile-applications-ryan-lloyd-asw-390)

_2026-07-07 · Application Security Weekly (Audio)_

Mobile applications have unique risks and threat models compared to server-side applications and infrastructure. Consequently, they need different strategies to ensure their business logic and workflows well secured. We'll dive into some of these defense-in-depth strategies and why they are important to mobile applications. Securing workflows goes beyond input validation and pattern matching…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_390_1--4b0e21d2-3c69-44d3-be69-a71716049e47--audio-converted--588e1185-e8ad-46c1-8e0a-daee242b1d64.mp3?dest-id=626765)

## [Reducing Attack Surface & Evaluating Efficiency in Agents - Itamar Apelblat, David Goldschlag - ASW #389](https://aswaudio.libsyn.com/reducing-attack-surface-evaluating-efficiency-in-agents-itamar-apelblat-david-goldschlag-asw-389)

_2026-06-30 · Application Security Weekly (Audio)_

SquidBleed reveals another vuln that's been lurking for decades, but its real lesson is in managing an attack surface. Regardless of whatever programming language you use, removing code is one of the best security steps you can take, followed by changing default configs to turn off uncommon features and ancient protocols. The Linux kernel's removal of strncpy is another example of managing attack…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_389_1--04bc3dd7-5d66-4f9e-8875-8b4b79524713--audio-converted--4728e53f-1f99-409e-aba7-6668d59eec40.mp3?dest-id=626765)

## [How AI Is Reshaping Identity Security at the Infrastructure Layer - Amit Masand, Neha Duggal, Ev Kontsevoy - ASW #388](https://aswaudio.libsyn.com/how-ai-is-reshaping-identity-security-at-the-infrastructure-layer-amit-masand-neha-duggal-ev-kontsevoy-asw-388)

_2026-06-23 · Application Security Weekly (Audio)_

Appsec has seen machine identities from daemons and processes to services, microservices, and cloud accounts. And now we have agents. Ev Kontsevoy talks about what it means to have engineers and agents interacting in an environment, and why a focus on actions can be more effective than roles. One of the biggest challenges in securing agents along with all of the other identities that organizations…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_388_1--6fe3d1ea-3b06-4331-b9f9-44f84846c8e2--audio-converted--4feda274-71b3-49a5-8ff9-c903097a2f8d.mp3?dest-id=626765)

## [Countdown to Getting Paid (Sponsored)](https://crawlproof.com/a/6TQNglku1ZJN)

_2026-06-23 · **Sponsored**_

Create a shareable wallet timer — deposits buy back time and pay debt down

## [Why Does It Matter Who or What Created the Code? - Matias Madou - ASW #387](https://aswaudio.libsyn.com/why-does-it-matter-who-or-what-created-the-code-matias-madou-asw-387)

_2026-06-16 · Application Security Weekly (Audio)_

Agents and LLMs are creating and reviewing code. They're a new tool to help developers write software and they're a new abstraction layer for expressing what code should do. But if we're focused on determining whether code is secure, where do we focus our attention on ensuring a secure outcome? Matias Madou talks about the challenges of finding metrics to help answer these questions. We walk…

[Listen](https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_387_1--b1d61246-de74-4b4f-9df4-12a4e6763414--audio-converted--fd4c76f0-d8e5-4873-a823-17dfd8dc475e.mp3?dest-id=626765)

