Three Buddy Problem

Lazarus ByBit $1.4B heist was supply chain attack on developer

40 snips
Mar 1, 2025
Dive into the thrilling world of cybersecurity as experts discuss the art of bug hunting, highlighting the mental resilience needed in the face of setbacks. Explore the shocking $1.4 billion Bybit heist linked to the Lazarus Group, examining the mechanics of supply chain attacks. The impact of AI on vulnerability discovery sparks debate on the balance of technology and human storytelling. Ethics in exploiting vulnerabilities and the changing U.S. cyber policy landscape are also key topics, revealing the complex interplay between security, privacy, and global dynamics.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

Paleontology Ls

  • Ryan Naraine asks about experiencing "taking Ls" in malware paleontology, similar to bug hunters.
  • Costin Raiu describes spending months reversing a library, finding nothing, then seeing an exploit emerge later.
INSIGHT

Dopamine Hit

  • There's a dopamine rush for bug hunters when exploit code works.
  • This thrill motivates them through losses.
INSIGHT

AI in Bug Discovery

  • Juan Guerrero-Saade discusses AI's potential for vulnerability discovery.
  • He highlights Google's success using fuzzing to identify and patch vulnerabilities, surpassing human capabilities.
Get the Snipd Podcast app to discover more snips from this episode
Get the app