

Lazarus ByBit $1.4B heist was supply chain attack on developer
40 snips Mar 1, 2025
Dive into the thrilling world of cybersecurity as experts discuss the art of bug hunting, highlighting the mental resilience needed in the face of setbacks. Explore the shocking $1.4 billion Bybit heist linked to the Lazarus Group, examining the mechanics of supply chain attacks. The impact of AI on vulnerability discovery sparks debate on the balance of technology and human storytelling. Ethics in exploiting vulnerabilities and the changing U.S. cyber policy landscape are also key topics, revealing the complex interplay between security, privacy, and global dynamics.
AI Snips
Chapters
Transcript
Episode notes
Paleontology Ls
- Ryan Naraine asks about experiencing "taking Ls" in malware paleontology, similar to bug hunters.
- Costin Raiu describes spending months reversing a library, finding nothing, then seeing an exploit emerge later.
Dopamine Hit
- There's a dopamine rush for bug hunters when exploit code works.
- This thrill motivates them through losses.
AI in Bug Discovery
- Juan Guerrero-Saade discusses AI's potential for vulnerability discovery.
- He highlights Google's success using fuzzing to identify and patch vulnerabilities, surpassing human capabilities.