Speaker
Ezra Tanzer
3 sessions in this library.
- Agentic Development Security — Ezra Tanzer, Snyk
This talk addresses the security implications of agentic development, a paradigm shift where AI agents assist in the software development lifecycle. It highlights the potential risks introduced by these agents, such as new attack vectors and vulnerabilities, and emphasizes the need for robust security practices tailored to this evolving landscape. The core thesis is that securing agentic development requires a proactive and specialized approach to mitigate emerging threats.
- What to do when 1 in 8 Skills have critical vulns and tries to steal your keys — Ezra Tanzer, Snyk
This talk addresses the significant security risks present in AI agent skills, highlighting that approximately one in eight skills contain critical vulnerabilities. These risks include the potential for malicious actors to exploit these weaknesses to gain unauthorized access to sensitive information, such as API keys. The presentation emphasizes the urgent need for robust security practices and thorough vetting of AI agent components.
- Why Securing Generated Code is Not Enough — Ezra Tanzer, Snyk
This talk addresses the critical need to secure code generated by AI, arguing that traditional security measures are insufficient. It emphasizes that the focus must shift beyond simply scanning the output to understanding and mitigating the risks inherent in the AI development process itself. The core thesis is that securing the *process* of AI code generation is paramount, not just the resulting code.