OODAcast

Episode 127: Chris Wysopal on Reducing Attack Surface in the Age of AI

Mar 24, 2025
Chris Wysopal, co-founder of Veracode and a pioneer in application security, shares his rich history in cybersecurity from the hacking collective 'The L0pht' to leading vulnerability research. He discusses the shift towards comprehensive application risk management and highlights the dual-edged sword of generative AI in development – amplifying speed while introducing new security challenges. Wysopal underscores the importance of automated remediation and deep security integration in the software lifecycle, all while cautioning against the rising threats from social engineering attacks.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

Early Cybersecurity Interest

  • Chris Wysopal's early cybersecurity interest stemmed from exploring BBSs and text files.
  • This led him to the computer underground and vulnerability research.
INSIGHT

L0pht's Impact

  • L0pht's vulnerability research was controversial but helped raise awareness.
  • Their tools, like L0phtcrack, demonstrated the need for stronger security practices.
ANECDOTE

L0pht's Congressional Testimony

  • L0pht's work gained attention, including a master's paper by Matt DeVoe highlighting their importance.
  • This led to their invitation to testify before Congress, legitimizing hackers in cybersecurity.
Get the Snipd Podcast app to discover more snips from this episode
Get the app