
TBPN Meta Drops New Model, Mythos, RoboLamp | Luther Lowe, Dan Primack, Lior Susan, Feross Aboukhadijeh, Qasim Mithani, Jaleh Rezaei, Jeremy Philip Galen
154 snips
Apr 8, 2026 
Guest
Jeremy Philip Galen

Guest
Jaleh Rezaei

Guest
Feross Aboukhadijeh

Guest
Lior Susan

Guest
Dan Primack

Guest
Luther Lowe
Luther Lowe, YC policy lead, takes on Apple and Google’s app store grip. Dan Primack, Axios finance reporter, digs into prediction markets and the legal fight around Kalshi. Lior Susan, Eclipse Ventures investor, talks chips, robotics, and industrial tech. Feross Aboukhadijeh, Socket security founder, breaks down a poisoned npm package, while Jaleh Rezaei and Jeremy Philip Galen explore AI sales agents and AI-powered scam defense.
AI Snips
Chapters
Transcript
Episode notes
Open Source Security Fails Because Trust Is Blind
- Open-source supply chains are fragile because developers routinely execute code from strangers with near-total system access.
- Feross Aboukhadijeh said organizations now pull in thousands of dependencies, so attackers only need one poisoned package to get inside.
AI Agents Need Package Guardrails By Default
- AI coding agents create a new control point where security products can block dangerous dependencies before they reach production.
- Feross Aboukhadijeh said Socket now acts as a guardrail when agents install packages, a critical gap exposed by the three-hour Axios attack window.
DepthFirst Trained Security Models With Planted Flags
- DepthFirst built a specialized security model by planting synthetic vulnerability flags and reinforcing the model when it successfully found them.
- Qasim Mithani said the team started from GPT-OSS, then used an RL loop to beat Opus 4.6 on their benchmark at lower cost.
