公式動画ピックアップ
AAPL
ADBE
ADSK
AIG
AMGN
AMZN
BABA
BAC
BL
BOX
C
CHGG
CLDR
COKE
COUP
CRM
CROX
DDOG
DELL
DIS
DOCU
DOMO
ESTC
F
FIVN
GILD
GRUB
GS
GSK
H
HD
HON
HPE
HSBC
IBM
INST
INTC
INTU
IRBT
JCOM
JNJ
JPM
LLY
LMT
M
MA
MCD
MDB
MGM
MMM
MSFT
MSI
NCR
NEM
NEWR
NFLX
NKE
NOW
NTNX
NVDA
NYT
OKTA
ORCL
PD
PG
PLAN
PS
RHT
RNG
SAP
SBUX
SHOP
SMAR
SPLK
SQ
TDOC
TEAM
TSLA
TWOU
TWTR
TXN
UA
UAL
UL
UTX
V
VEEV
VZ
WDAY
WFC
WK
WMT
WORK
YELP
ZEN
ZM
ZS
ZUO
公式動画&関連する動画 [SecOps Weekly: AI tool security risks, misuse & detection]
In this episode of SecOps Weekly, Senior Malware Analyst Tony Lambert sits down with Senior Threat Researcher Jesse Griggs to demystify the real risks surrounding AI-driven cyber attacks, local endpoint AI tools, and LLM abuse.
From alert fatigue caused by AI auto-modes to the financial and security implications of LLM jacking, we break down how adversaries are leveraging AI, what threat actors are actually capable of today, and why traditional security fundamentals remain your best defense.
00:00 - 00:48: Welcome to SecOps Weekly!
01:38 - 02:59: The AI attack surface: local tools (Claude Code, Gemini CLI, etc.)
03:00 - 04:12: Alert fatigue & permission gating in AI usage
04:13 - 05:59: Supply chain compromises & Model Context Protocol (MCP) risks
06:00 - 07:32: AI System Overview: The role of proxy services (e.g., LiteLLM, Azure Proxy)
07:33 - 09:38: Monitoring AI local execution via process & network telemetry
09:39 - 11:01: How Docker & containerization complicate process lineage
11:02 - 12:06: Leveraging prompt logging & chain-of-thought reasoning for detections
12:07 - 14:40: Analyzing detection telemetry & local log files
14:41 - 17:42: How AI changes the threat landscape
17:43 - 20:06: Machine-speed threats vs. dwell time gaps
20:07 - 22:16: Accelerating incident response & reviewing SOPs
22:17 - 24:01: Mitigation strategies: actionable telemetry over full ingestion
24:02 - 27:29: AI abuse vs. Living off the Land (LotL) ecosystems
27:30 - 28:14: LLM jacking & resource theft
28:15 - 20:38: Why security fundamentals, EDR, and Zero Trust still rule
About Zscaler
Zscaler (NASDAQ: ZS) is a pioneer and global leader in zero trust security. The world’s largest businesses, critical infrastructure organizations, and government agencies rely on Zscaler to secure users, branches, applications, data & devices, and to accelerate digital transformation initiatives. Distributed across 160+ data centers globally, the Zscaler Zero Trust Exchange™ platform combined with advanced AI combats billions of cyber threats and policy violations every day and unlocks productivity gains for modern enterprises by reducing costs and complexity.
©2025 Zscaler, Inc. All rights reserved. Zscaler, Zscaler Digital Exchange, Zscaler Internet Access, ZIA, Zscaler Private Access, and ZPA are either (i) registered trademarks or service marks or (ii) trademarks or service marks of Zscaler, Inc. in the United States and/or other countries. Any other trademarks are the properties of their respective owners.
#AI #secops #threatintelligence #machinelearning #malwareanalysis
275
3