Search a title or topic

Over 20 million podcasts, powered by 

Player FM logo
Artwork

Content provided by Evan Kirstel. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Evan Kirstel or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Self-Healing Code: How AI Transforms Software Supply Chain Security

15:30
 
Share
 

Manage episode 497423728 series 3499431
Content provided by Evan Kirstel. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Evan Kirstel or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

Interested in being a guest? Email us at [email protected]

The invisible layers of software beneath our applications harbor unseen risks that could compromise entire organizations. Nick Mistry CISO from Lineaje Inc pulls back the curtain on why software supply chain attacks like SolarWinds and Log4j caught so many companies unprepared—despite having robust security programs in place.
Software today can contain dependencies that run 60 layers deep, creating a perfect hiding place for malicious code or vulnerabilities. As Nick explains, "Open source people who develop open source are in it to drive innovation. They're not necessarily in it to maintain that software over time." This fundamental tension sets the stage for the security challenges we're witnessing.
What makes Lineaje approach different is their comprehensive scanning of both source code and compiled binaries to detect tampering, combined with their "Gold Open Source" program that provides pre-vetted, secure components. Most exciting is their "agentic AI" technology that automatically remediates vulnerabilities without breaking applications—completing in minutes what would take developers weeks to accomplish manually, all while keeping sensitive code within your environment.
The conversation takes a fascinating turn when Nick discusses how AI is transforming the threat landscape itself. "The old world of prioritizing vulnerabilities based on exploitability is quickly becoming outdated," he warns. "Threat actors can now use AI to get any vulnerability, whether it has an exploit or not, and create an exploit almost overnight with very little skill." This reality demands a fundamental shift in how we approach software security.
Want to take immediate action? Start by creating a comprehensive Software Bill of Materials (SBOM) for your applications. Join us at the Lineaje Software Supply Chain Summit on August 4th at #BlackHat to learn more about using AI for security and securing AI itself.

Support the show

More at https://linktr.ee/EvanKirstel

  continue reading

Chapters

1. Introduction to Software Supply Chain Risks (00:00:00)

2. Understanding the Open Source Challenge (00:01:47)

3. Lineage's Solution and Technology Approach (00:03:25)

4. Agentic AI for Self-Healing Code (00:07:16)

5. DevSecOps Team Impact and Benefits (00:09:03)

6. Future of AI in Software Security (00:11:24)

7. Upcoming Events and Closing (00:14:17)

489 episodes

Artwork
iconShare
 
Manage episode 497423728 series 3499431
Content provided by Evan Kirstel. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Evan Kirstel or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

Interested in being a guest? Email us at [email protected]

The invisible layers of software beneath our applications harbor unseen risks that could compromise entire organizations. Nick Mistry CISO from Lineaje Inc pulls back the curtain on why software supply chain attacks like SolarWinds and Log4j caught so many companies unprepared—despite having robust security programs in place.
Software today can contain dependencies that run 60 layers deep, creating a perfect hiding place for malicious code or vulnerabilities. As Nick explains, "Open source people who develop open source are in it to drive innovation. They're not necessarily in it to maintain that software over time." This fundamental tension sets the stage for the security challenges we're witnessing.
What makes Lineaje approach different is their comprehensive scanning of both source code and compiled binaries to detect tampering, combined with their "Gold Open Source" program that provides pre-vetted, secure components. Most exciting is their "agentic AI" technology that automatically remediates vulnerabilities without breaking applications—completing in minutes what would take developers weeks to accomplish manually, all while keeping sensitive code within your environment.
The conversation takes a fascinating turn when Nick discusses how AI is transforming the threat landscape itself. "The old world of prioritizing vulnerabilities based on exploitability is quickly becoming outdated," he warns. "Threat actors can now use AI to get any vulnerability, whether it has an exploit or not, and create an exploit almost overnight with very little skill." This reality demands a fundamental shift in how we approach software security.
Want to take immediate action? Start by creating a comprehensive Software Bill of Materials (SBOM) for your applications. Join us at the Lineaje Software Supply Chain Summit on August 4th at #BlackHat to learn more about using AI for security and securing AI itself.

Support the show

More at https://linktr.ee/EvanKirstel

  continue reading

Chapters

1. Introduction to Software Supply Chain Risks (00:00:00)

2. Understanding the Open Source Challenge (00:01:47)

3. Lineage's Solution and Technology Approach (00:03:25)

4. Agentic AI for Self-Healing Code (00:07:16)

5. DevSecOps Team Impact and Benefits (00:09:03)

6. Future of AI in Software Security (00:11:24)

7. Upcoming Events and Closing (00:14:17)

489 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play