54 subscribers
Pergi ke luar talian dengan aplikasi Player FM !
Podcast Berbaloi untuk Didengar
DITAJA


1 You Can Visit All Seven Continents. But Should You? 26:46
Steve Wilson -- The Developer's Playbook for Large Language Model Security: Building Secure AI Applications
Manage episode 442999686 series 2408745
Steve Wilson, the author of 'The Developer's Playbook for Large Language Model Security’ is back to dive into topics from his book like AI hallucinations, trust, and the future of AI. Steve has been at the forefront of the explosion of activity at the intersection of AppSec, LLM, and AI. We discuss the biggest fears surrounding LLMs and AI, and explore advanced concepts like Retrieval Augmented Generation and prompt injection.
Links:
The Developer’s Playbook for Large Language Model Security by Steve Wilson
Find Steve on LinkedIn
Previous Episodes:
Steve Wilson -- OWASP Top Ten for LLMs
Steve Wilson and Gavin Klondike -- OWASP Top Ten for LLM Applications Release
Two people Steve recommends you look up:
Chris Voss, Former FBI Negotiator and author of “Never Split the Difference”
FOLLOW OUR SOCIAL MEDIA:
➜Twitter: @AppSecPodcast
➜LinkedIn: The Application Security Podcast
➜YouTube: https://www.youtube.com/@ApplicationSecurityPodcast
Thanks for Listening!
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
309 episod
Manage episode 442999686 series 2408745
Steve Wilson, the author of 'The Developer's Playbook for Large Language Model Security’ is back to dive into topics from his book like AI hallucinations, trust, and the future of AI. Steve has been at the forefront of the explosion of activity at the intersection of AppSec, LLM, and AI. We discuss the biggest fears surrounding LLMs and AI, and explore advanced concepts like Retrieval Augmented Generation and prompt injection.
Links:
The Developer’s Playbook for Large Language Model Security by Steve Wilson
Find Steve on LinkedIn
Previous Episodes:
Steve Wilson -- OWASP Top Ten for LLMs
Steve Wilson and Gavin Klondike -- OWASP Top Ten for LLM Applications Release
Two people Steve recommends you look up:
Chris Voss, Former FBI Negotiator and author of “Never Split the Difference”
FOLLOW OUR SOCIAL MEDIA:
➜Twitter: @AppSecPodcast
➜LinkedIn: The Application Security Podcast
➜YouTube: https://www.youtube.com/@ApplicationSecurityPodcast
Thanks for Listening!
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
309 episod
Semua episod
×
1 Javan Rasokat and Andra Lezza -- When Chatbots Go Rogue - Lessons Learned from Building and Defending LLM Applications 47:31

1 Jim Routh -- The CISO Transition to the rest of life 49:36

1 Henrik Plate -- OWASP Top 10 Open Source Risks 38:26

1 Tanya Janca -- A Secure SDLC from a Developer's Perspective 48:54

1 Mehran Koushkebaghi -- Security as a Systemic Concern: How to develop Anti-Requirements 45:08

1 Kalyani Pawar -- Shaping AppSec at Startups 39:52


1 MO Sadek -- Building an AppSec Program from Scratch 48:50

1 Brett Crawley -- Threat Modeling Gameplay with EoP 45:28

1 Matin Mavaddat - Understanding Security as a Systemic Concern: The Role of Anti-Requirements 50:20


1 François Proulx - Arbitrary Code Execution 0-day in Build Pipeline of Popular Open Source Packages 45:31

1 Steve Wilson -- The Developer's Playbook for Large Language Model Security: Building Secure AI Applications 36:32

1 Jeff Williams -- Application Detection & Response (ADR) 51:28

1 Phillip Wylie -- Pen Testing from Somebody who Knows about Pen Testing 52:08

1 Steve Springett -- Software and System Transparency 48:13

1 Irfaan Santoe -- The Power of Strategy in AppSec 40:14

1 Andrew Van Der Stock -- The New OWASP Top Ten 51:51

1 Derek Fisher -- Hiring in Cyber/AppSec 1:01:45

1 Tanya Janca -- Secure Guardrails 1:04:50

1 Jahanzeb Farooq -- Launching and executing an AppSec program 49:44

1 David Quisenberry -- Building Security, People, and Programs 56:54

1 Matt Rose -- Software Supply Chain Security Means Many Different Things to Different People 46:14

1 James Berthoty -- Is DAST Dead? And the future of API security 44:56

1 Mark Curphey and Simon Bennetts -- Riding the Coat Tails of ZAP, without Open Source Funding 42:32

1 Devin Rudnicki -- Expanding AppSec 35:57

1 Dustin Lehr -- Culture Change through Champions and Gamification 45:10

1 Francesco Cipollone -- Application Security Posture Management and the Power of Working with the Business 38:11

1 Mukund Sarma -- Developer Tools that Solve Security Problems 46:32

1 Meghan Jacquot -- Assumed Breach Red Team Engagements for AppSec 40:55

1 Bill Sempf -- Development, Security, and Teaching the Next Generation 39:44

1 Hendrik Ewerlin -- Threat Modeling of Threat Modeling 33:50

1 Jason Nelson -- Three Pillars of Threat Modeling Success: Consistency, Repeatability, and Efficacy 53:52

1 Erik Cabetas -- Cracking Codes on Screen and in Contests: An Expert's View on Hacking, Vulnerabilities, and the Evolution of Cybersecurity Language 51:12

1 Justin Collins -- Enabling the Business to Move Faster, Securely 47:19

1 Kyle Kelly -- The Dumpster Fire of Software Supply Chain Security 41:17

1 Chris Hughes -- Software Transparency 39:10

1 Jay Bobo & Darylynn Ross -- App Sec Is Dead. Product Security Is the Future. 52:25

1 Eitan Worcel -- Is AI a Security Champion? 48:41

1 Björn Kimminich -- OWASP Juice Shop 39:17

1 Arshan Dabirsiaghi -- Security Startups, AI Influencing AppSec, and Pixee/Codemodder.io 57:36

1 Dr. Jared Demott -- Cloud Security & Bug Bounty 44:29

1 Katharina Koerner -- Security as Responsible AI 50:40

1 Ray Espinoza -- The AppSec CISO, Vendor Relationships, and Mentoring 50:37

1 Chris John Riley -- MVSP: Minimum Viable Secure Product 50:13
Selamat datang ke Player FM
Player FM mengimbas laman-laman web bagi podcast berkualiti tinggi untuk anda nikmati sekarang. Ia merupakan aplikasi podcast terbaik dan berfungsi untuk Android, iPhone, dan web. Daftar untuk melaraskan langganan merentasi peranti.