⚠️ Malware / Trojaner / VirenVPN deal of the week: Save $30 with Windscribe's back-to-school discount(03.09.2026 um 17:22 Uhr)
🔧 AI Nachrichten OpenAI’s Astra Is Here: What to Know About GPT-6(03.09.2026 um 20:00 Uhr)
🔧 AI Nachrichten AI-Guided Hike Ends in Emergency Rescue at 11,000 Feet(03.09.2026 um 21:28 Uhr)
⚠️ Malware / Trojaner / VirenVPN deal of the week: Save $30 with Windscribe's back-to-school discount(03.09.2026 um 17:22 Uhr)
🔧 AI Nachrichten OpenAI’s Astra Is Here: What to Know About GPT-6(03.09.2026 um 20:00 Uhr)
🔧 AI Nachrichten AI-Guided Hike Ends in Emergency Rescue at 11,000 Feet(03.09.2026 um 21:28 Uhr)

10 🕛 kürzlich 3 Min Lesezeit CVE-RADAR
0

Fixing Software Weaknesses Rather Than Just Finding More Flaws - Gil Geron, Nidhi Aggarwal, Braden Russell - ASW #398

↗ Quelle (Security Weekly Podcast Network (Audio))
🗣️ Stimme:

AppSec has always emphasized techniques and tools for discovering vulns, along with taxonomies and lists for describing them. But just piling up more CVEs into a prioritized patching queue has never been an effective strategy. Nidhi Aggarwal talks about some of the economics and decisions that orgs evaluate when figuring out how to improve and protect their software. LLMs might be effective assistants in generating code, but only when they have the context of secure patterns to follow. We also talk about what some of the bug bounty data reveals in terms of successful researchers finding more impactful vulns and why the combination of domain expertise and curiosity remains profitable.

Segment Resources

  • to learn more about them!

    Bugcrowd Launches Pathseeker: Flipping the Script on Traditional Pentesting: Black Hat Interview with Braden Russell, CTO of Bugcrowd

    Bugcrowd is launching Savant Pathseeker, the first product in its new Agentic Offensive Testing line, which combines continuous agentic pentesting with on-demand human validation. The launch comes as the security industry grapples with a growing "AI slop" problem, where unchecked AI-generated vulnerability reports have overwhelmed bug bounty programs and even forced some, like Curl, to shut theirs down. Braden will unpack how Bugcrowd is positioning Savant Pathseeker as a response to that industry-wide trust problem, not just a new product launch.

    Segment Resources:

    Apply for early access at for all the latest episodes!

    Show Notes: https://securityweekly.com/asw-398

    Vollständiger Original-Bericht
    Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf podcast.securityweekly.com.
    ↗ Original-Artikel auf podcast.securityweekly.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 49%
🟡 In Evaluierung 33%
🟢 Keine Auswirkung 11%
Spannende Innovation 7%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
3 Quellen
Windows 11: Microsoft aktiviert ab 13. Oktober 2026 die Speicherintegrität (Memory Integrity)
1 Quelle
Führt Vibe-Coding und AI-Slop zu Windows 11-Problemen (Desktop-Background, Mauszeiger etc.)?
1 Quelle
Windows 11 teilt Apps künftig das Alter des Nutzers per API mit