Building EDR for AI: Controlling Autonomous Agents Before They Go Rogue with Ron Eddings

Building EDR for AI: Controlling Autonomous Agents Before They Go Rogue with Ron Eddings

AI agents aren't just reacting anymore, they're thinking, learning, and sometimes deleting your entire production database without asking. The real question isn't if your AI agent will be hacked, it's when, and whether you'll have the right hooks in place to stop it before it happens.

In this episode, Ron breaks down the ChatGPT Atlas vulnerability that shocked researchers, revealing how malicious prompts can turn AI assistants against their own users by bypassing safeguards and accessing file systems. He presents his new talk "Hooking Before Hacking," introducing a framework for applying EDR principles, prevention, detection, and response, to AI agents before they execute unauthorized commands. From pre-tool use hooks that catch malicious intent to one-time passwords that put humans back in the loop, this episode shares practical security controls you can implement today to prevent your AI agents from going rogue.

Impactful Moments:

00:00 - Introduction 02:00 - ChatGPT Atlas vulnerability exposed 04:00 - AI technology outpacing security guardrails 05:00 - Guardrail jailbreaks and prompt injection 06:00 - AI agents deleting production databases 07:00 - EDR principles for AI agents 09:00 - Pre-tool use hooks catch intention 11:00 - User prompt sanitization prevents leaks 14:00 - One-time passwords for agent workflows 16:00 - Automation mistakes across 10 years

Links:

Connect with Ron on LinkedIn: https://www.linkedin.com/in/ronaldeddings/

Check out the entire article here: https://www.yahoo.com/news/articles/cybersecurity-experts-warn-openai-chatgpt-101658986.html

GitHub Repository: https://hackervalley.com/hooking-before-hacking

See Ron's "Hooking Before Hacking" presentation slides here: http://hackervalley.com/hooking-before-hacking-presentation

Check out our website: https://hackervalley.com/

Upcoming events: https://www.hackervalley.com/livestreams

Love Hacker Valley Studio? Pick up some swag: https://store.hackervalley.com

Continue the conversation by joining our Discord: https://hackervalley.com/discord

Become a sponsor of the show to amplify your brand: https://hackervalley.com/work-with-us/

Join our creative mastermind and stand out as a cybersecurity professional: https://www.patreon.com/hackervalleystudio

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(424)

Episode 56 - Digging into Deepfakes with Alyssa Miller

Episode 56 - Digging into Deepfakes with Alyssa Miller

In this conversation, we sit down with security veteran Alyssa Miller to talk about her recent deepfake research. We also discuss stoking the fire of curiosity to keep things fresh in cybersecurity. A...

15 Huhti 202029min

Episode 55 - A Tech Origin Story with Sam Crowther

Episode 55 - A Tech Origin Story with Sam Crowther

If you love interesting origin stories, look no further than this episode with Sam Crowther. He is the founder and CEO of Kasada. We discuss his origin and the beginnings of his company.   Sam's Twitt...

13 Huhti 202013min

Episode 54 - Hiring Leaders and Finding Talent with Alex Maestretti

Episode 54 - Hiring Leaders and Finding Talent with Alex Maestretti

In this episode we sit down to chat with Alex Maestretti, CISO of Remitly. In this conversation, we explore finding talent and the unique challenge of hiring managers. Chris also shares his unique rel...

9 Huhti 202016min

Episode 53 - In the Depths of Deception with Jenny Radcliffe

Episode 53 - In the Depths of Deception with Jenny Radcliffe

Psychology is a major pillar of Social Engineering 🧠. In this episode, we brought in a true expert, Jenny Radcliffe - A burgular for hire, a professional con-artist, and an expert in Non-verbal commu...

6 Huhti 202039min

Episode 52 - From Librarian to OSINT with Tracy Maleeff

Episode 52 - From Librarian to OSINT with Tracy Maleeff

Open Source Intelligence (OSINT) is "data collected from publicly available sources to be used in an intelligence context". Performing OSINT is a critical aspect in triaging cybersecurity related even...

1 Huhti 202040min

Episode 51 - A Threat Intelligence Journey with Doug Helton

Episode 51 - A Threat Intelligence Journey with Doug Helton

Can Threat Intelligence Analysts do the same in the professional space as the Threat Intel Analysts depicted in movies? Yes, as long as you have the same level of skills and tools as the characters in...

30 Maalis 202023min

Episode 50 - 50th Episode and Beyond with Ron and Chris

Episode 50 - 50th Episode and Beyond with Ron and Chris

🎊Happy 50th Episode! This episode couldn't have been possible without our amazing guests and listeners! Looking into the future, we are excited to share new content and resources that we've been work...

25 Maalis 202028min

Episode 49 - What is Your Superpower with Yael Nagler

Episode 49 - What is Your Superpower with Yael Nagler

Everyone has a superpower and it's not uncommon to have more than one. In this episode, Chris and Ron discover and share what their super powers are with Yael Nagler. Yael is a security tinkerer and h...

23 Maalis 202028min

Suosittua kategoriassa Koulutus

rss-murhan-anatomia
psykopodiaa-podcast
voi-hyvin-meditaatiot-2
adhd-podi
rss-rahamania
rss-laadukasta-ensihoitoa
rss-vapaudu-voimaasi
kesken
psykologia
rss-liian-kuuma-peruna
rss-narsisti
rss-niinku-asia-on
rss-arkea-ja-aurinkoa-podcast-espanjasta
rss-hereilla
dreamtalk
rss-keskeneraiset-aidit
ihminen-tavattavissa-tommy-hellsten-instituutti
rss-duodecim-lehti
rss-valo-minussa-2
rss-tfa-8020-podcast