CXOTalk

SANS Institute: AI Agents Are an Attack Surface. Does your CISO know? | CXOTalk #910

11 snips
Mar 3, 2026
David A. Bray, public-interest technologist focused on strategy and policy, and Rob T. Lee, SANS Chief AI Officer and cyber expert, discuss AI agents as a new attack surface. They cover AI-driven offensive velocity, federated learning for shared threat intel, hallucination-based supply-chain attacks, rapid incident response needs, and hiring for learning velocity and a hacking mindset.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

AI Shrinks Attack Timelines Dramatically

  • AI and autonomous agents dramatically increase attack velocity so tasks that took months can now occur in minutes or seconds.
  • Rob T. Lee cites Claude code automating offensive capabilities as an example that shortens reconnaissance and execution timelines.
INSIGHT

History Shows Tactics Change With New Tech

  • The historical pattern: new technology forces new tactics and strategy, like blitzkrieg in warfare.
  • Rob T. Lee warns defenders must redefine strategy to match AI-driven offensive shock and awe.
ADVICE

Share Threats With Federated Learning

  • Use federated learning to share threat intelligence without exposing raw data or vulnerabilities.
  • David A. Bray suggests algorithms learn on-site so organizations get collective TTP awareness without sending sensitive logs outward.
Get the Snipd Podcast app to discover more snips from this episode
Get the app