팟캐스트

AI-Powered Threat Actors, Poison Pills & Cyber Sabotage with John Hultquist

On this episode of Crying Out Cloud, Eden Koby Naftali & Amitai Cohen sit down with John Hultquist, Chief Analyst at Google Threat Intelligence Group (ex-Mandiant, ex-FireEye, founder of CYBERWARCON & SLEUTHCON).

Drawing on over two decades of tracking state-sponsored adversaries like Sandworm, John cuts through the hype to explain what modern threat intelligence actually does: it keeps CISOs from burning millions of dollars on the wrong technology, spots adversary shifts before static IOCs exist, and bridges the gap between raw binary reverse-engineering and executive decision-making.

In this episode, John unpacks how threat actors are weaponizing AI and bypassing commercial costs entirely and traces the real shift underway: adversaries embedding adversarial prompt-injection payloads inside malware to shut down automated SOC scanners.

What's Inside:

  1. The economics of illicit AI: Underground access vs. hijacked enterprise compute
  2. Malware poison pills designed to neutralize automated LLM triage
  3. Why firmware and ICS layers are becoming primary targets for disruption
  4. Behavioral detection models when living-off-the-land means zero usable IOCs
  5. Lessons from tracking Sandworm and convincing leadership to act before the lights go out

Crying Out Cloud 뉴스레터

안전 및 정보 유지: 최신 클라우드 보안 뉴스, 실제 공격 인사이트 및 전문가 지침을 받아 환경을 보호하십시오.

클라우드 보안의 최신 업데이트를 받은 편지함으로 직접 받으려면 등록하십시오.

Wiz가 귀하의 개인 데이터를 처리하는 방법에 대한 자세한 내용은 다음을 참조하십시오. 개인정보처리방침.