Podcast summary
Risky Business #841 — Microsoft Breach: Zero-Day Exposed
AI speeds exploitation, making blast-radius control vital
AI-driven research and automation mean prevention can’t reliably stop first access; organizations must assume compromise, map exposure, and harden segmentation to limit lateral spread and impact.
Repo “remediated” twice still fails
Microsoft’s response to repeatedly compromised GitHub repos wasn’t rollback but full takedown, implying remediation can miss root causes—especially when attackers may forge which account “owns” the breach.
Exploit pipelines compress time below patch cycles
Claims that LLM agents can reverse patches into working exploits within hours compress the exploit window, so “patch later” becomes unsafe; reliability and guardrails still lag.
Get smarter in 10 seconds
Koficast is a free newsletter delivering clear, high-signal takeaways like these from the best podcasts, picked for you.
Zero spam. Emails auto-pause if you’re not opening.

