Speaker

Dylan Ayrey

1 podcast 14 moments 2026
1 episodes
1 podcasts
7 quotes
7 snapshots
1 years active

Appearances over time

1 episodes

Less
More

Episodes

1

Podcasts

Quotes & moments

Technology
Malware Payloads Are Now Just Prompts in Markdown Files

The Reality of AI-Powered Cyberattacks | Truffle Security &… · Aug 7, 2026 Technology

Attackers are hijacking AI tools already installed on developer machines by delivering payloads as prompts inside markdown files. To EDR software, this looks like a developer normally prompting Claude. The AI then silently searches the filesystem for credentials and exfiltrates them — invisible to traditional security tooling.

Technology
Frontier Models Close the Window Between Discovery and Exploitation

The Reality of AI-Powered Cyberattacks | Truffle Security &… · Aug 7, 2026 Technology

AI models are causing a massive compression of the time between vulnerability discovery and active exploitation. A vulnerability announced in the morning can have a working exploit by afternoon. Patch cycles that take months — or require refactoring legacy applications — are simply incompatible with this new reality.

Technology
Open-Source Maintainers Are the Weakest Link

The Reality of AI-Powered Cyberattacks | Truffle Security &… · Aug 7, 2026 Technology

The world's most critical software infrastructure is maintained by volunteers who have no security teams, no SLAs, and often no security training. Feross Aboukhadijeh recounted a prolific npm maintainer running a 6-letter password with full conviction that it was fine. Companies relying on this code need to own the vetting responsibility — and fund the people doing the work.

Technology
Supply Chain Is the Lowest-Hanging Fruit for AI Attackers

The Reality of AI-Powered Cyberattacks | Truffle Security &… · Aug 7, 2026 Technology

AI models and human hackers have independently converged on the same insight: publishing malware to public package registries is the easiest way into an enterprise. Research shows all frontier models make the same hallucination about certain non-existent packages — a ready-made vector for typosquatting attacks at machine scale.

Technology
Active npm Worm Spreads During Black Hat

The Reality of AI-Powered Cyberattacks | Truffle Security &… · Aug 7, 2026 Technology

While recording this episode at Black Hat 2026, an npm worm was actively spreading across hundreds of repositories. The attack, likely vibe-coded by the threat group that open-sourced their toolkit, exploited an insecure GitHub Action to steal tokens and self-propagate — a scenario the security community had theorized but never seen at scale.

Analysis

What they talk about

  • Technology 100%

Connections

Shows they appear on and people they share episodes with. Drag to explore.

Dylan Ayrey Podcasts Co-speakers