Securing Software at AI Speed with Varun Badhwar

Securing Software at AI Speed with Varun Badhwar

The biggest security threat isn’t in the cloud, it’s hidden in the code you trust the most.

In this episode, Ron sits down with Varun Badhwar, Co-Founder & CEO of Endor Labs, who shares why research shows that nearly 80–90% of application code comes from open source and third-party libraries, not your own developers. Varun discusses the unseen risks of AI-generated software, how attackers can now weaponize vulnerabilities in hours, and why precision in security matters more than ever. He also reveals how AI can be both the ultimate accelerator and the ultimate weakness in modern development.

Impactful Moments: 00:00 - Introduction 02:00 - Varun’s journey from RedLock to Endor Labs 04:00 - Why the software supply chain is broken 07:00 - AI coding assistants and insecure code risks 10:00 - The NPM self-replicating worm discovery 13:00 - Simple controls to enforce Zero Trust in code 16:00 - Pairing AI with security to prevent slop 19:00 - AI-powered security code reviews explained 22:00 - Why 88% of code goes unused 26:00 - Developer efficiency as the new security metric 29:00 - The next wave of AI-driven software threats

Links: Connect with our Endor on LinkedIn: https://www.linkedin.com/in/vbadhwar/

Check out our upcoming events: https://www.hackervalley.com/livestreams

Join our creative mastermind and stand out as a cybersecurity professional: https://www.patreon.com/hackervalleystudio

Love Hacker Valley Studio? Pick up some swag: https://store.hackervalley.com

Continue the conversation by joining our Discord: https://hackervalley.com/discord

Become a sponsor of the show to amplify your brand: https://hackervalley.com/work-with-us/

Avsnitt(404)

Episode 28 - Talking Tech: Speaking For SANS with Jennifer Santiago

Episode 28 - Talking Tech: Speaking For SANS with Jennifer Santiago

While progressing through a career in Cybersecurity (Or Technology), there will be opportunities to present research at conferences and events. In this episode, Ron and Chris chat with Jennifer Santiago - Director of Content Development and Speaker Management at SANS Institute. Jennifer shares insight on selecting conference topics and how to make an impact while giving a presentation at SANS.   SANS CTI Summit is right around the corner and would love to meet. Sign up with the following link:http://www.sans.org/u/XJ4 Use the code "CTIPOD20" to get 20% off.

7 Jan 202024min

Episode 27 - Mark Metry Podcasting with Purpose

Episode 27 - Mark Metry Podcasting with Purpose

Upgrading the human is critical to cybersecurity and life. In this episode, host of Humans 2.0 - Mark Metry joins Ron and Chris to discuss the evolution of technology and purpose.

13 Dec 201935min

Episode 26 - Exploring the Financial Playbook with Kimberly Hodgdon

Episode 26 - Exploring the Financial Playbook with Kimberly Hodgdon

Information Security / Cybersecurity can be an extremely lucrative path. In this episode, Chris and Ron explore the financial playbook with Kimberly Hodgdon - Stock Plan Manager @ Netflix

12 Dec 201926min

Episode 25 - Underrepresented

Episode 25 - Underrepresented

In this webcast/podcast series simply called "Underrepresented"—a series recorded and produced in conjunction with our good friends, Sean Martin and Marco Ciappelli —we want to merge conversations and actions. In this first episode, we get to speak with someone well outside of the InfoSec industry, Chris’ dad, Doug Cochran. Doug is joined by someone that does amazing things for the greater community and helping those less fortunate to get a voice and to be heard - co-founder of the ICMCP, Larry Whiteside Jr.

10 Dec 201958min

Episode 24 - Decoding LinkedIn with Brynne Tillman

Episode 24 - Decoding LinkedIn with Brynne Tillman

Your most reputable source of marketing is YOU! With Today's tools like LinkedIn this becomes a realistic task and something that every professional should take advantage of. During this episode, Brynne Tillman gives invaluable insight for enhancing presence on LinkedIn.

3 Dec 201938min

Episode 23 - Operating in High Performance Environments with Markus De Shon

Episode 23 - Operating in High Performance Environments with Markus De Shon

Ever met someone with a Nuclear Physics and Cybersecurity background? If not, meet Markus De Shon - Detection Engineering Lead @ Netflix. In this episode, Markus shares experience moving from one industry to another and operating in high performance environments

19 Nov 20191h 29min

Episode 22 - Road To The DevGuild Conference with Ody Lupescu

Episode 22 - Road To The DevGuild Conference with Ody Lupescu

In this episode, Ody Lupescu joins Chris and Ron to discus building Security Programs and Onboarding Third Party Vendors Looking for more content and interaction from industry experts? Join Hacker Valley Studio at the DevGuild Conference Nov 14 with promo code hackervalley15

12 Nov 201938min

Episode 21 - Changing the AppSec Game with Tanya Janca

Episode 21 - Changing the AppSec Game with Tanya Janca

Notice something new? What better to way unveil the new podcast name Hacker Valley Studio with an amazing guest - Tanya Janca. Tanya has made a huge impact to Application Security and to many other infosec domains. I'd highly recommend staying in touch with Tanya and following her work.   Tanya Janca: https://twitter.com/shehackspurple https://dev.to/shehackspurple https://medium.com/@shehackspurple    https://www.youtube.com/shehackspurple    https://www.twitch.tv/shehackspurple https://www.linkedin.com/in/tanya-janca   Security Sidekick: https://securitysidekick.dev https://twitter.com/SecSidekick https://www.youtube.com/channel/UC3KyuI83jt0l14q8xyffC2A   WoSEC (Women of Security) https://twitter.com/WoSECtweets  #SecurityWin  https://twitter.com/shehackspurple/status/1183483366592503808

22 Okt 201951min

Populärt inom Utbildning

rss-bara-en-till-om-missbruk-medberoende-2
historiepodden-se
det-skaver
nu-blir-det-historia
harrisons-dramatiska-historia
johannes-hansen-podcast
alska-oss
sektledare
allt-du-velat-veta
roda-vita-rosen
not-fanny-anymore
rss-sjalsligt-avkladd
sa-in-i-sjalen
vi-gar-till-historien
rss-npf-podden
rss-relationsrevolutionen
polisutbildningspodden
rss-max-tant-med-max-villman
rss-om-vi-ska-vara-arliga
psykologsnack