公式動画ピックアップ

AAPL   ADBE   ADSK   AIG   AMGN   AMZN   BABA   BAC   BL   BOX   C   CHGG   CLDR   COKE   COUP   CRM   CROX   DDOG   DELL   DIS   DOCU   DOMO   ESTC   F   FIVN   GILD   GRUB   GS   GSK   H   HD   HON   HPE   HSBC   IBM   INST   INTC   INTU   IRBT   JCOM   JNJ   JPM   LLY   LMT   M   MA   MCD   MDB   MGM   MMM   MSFT   MSI   NCR   NEM   NEWR   NFLX   NKE   NOW   NTNX   NVDA   NYT   OKTA   ORCL   PD   PG   PLAN   PS   RHT   RNG   SAP   SBUX   SHOP   SMAR   SPLK   SQ   TDOC   TEAM   TSLA   TWOU   TWTR   TXN   UA   UAL   UL   UTX   V   VEEV   VZ   WDAY   WFC   WK   WMT   WORK   YELP   ZEN   ZM   ZS   ZUO  

  公式動画&関連する動画 [SecOps Weekly: AI tool security risks, misuse & detection]

In this episode of SecOps Weekly, Senior Malware Analyst Tony Lambert sits down with Senior Threat Researcher Jesse Griggs to demystify the real risks surrounding AI-driven cyber attacks, local endpoint AI tools, and LLM abuse. From alert fatigue caused by AI auto-modes to the financial and security implications of LLM jacking, we break down how adversaries are leveraging AI, what threat actors are actually capable of today, and why traditional security fundamentals remain your best defense. 00:00 - 00:48: Welcome to SecOps Weekly! 01:38 - 02:59: The AI attack surface: local tools (Claude Code, Gemini CLI, etc.) 03:00 - 04:12: Alert fatigue & permission gating in AI usage 04:13 - 05:59: Supply chain compromises & Model Context Protocol (MCP) risks 06:00 - 07:32: AI System Overview: The role of proxy services (e.g., LiteLLM, Azure Proxy) 07:33 - 09:38: Monitoring AI local execution via process & network telemetry 09:39 - 11:01: How Docker & containerization complicate process lineage 11:02 - 12:06: Leveraging prompt logging & chain-of-thought reasoning for detections 12:07 - 14:40: Analyzing detection telemetry & local log files 14:41 - 17:42: How AI changes the threat landscape 17:43 - 20:06: Machine-speed threats vs. dwell time gaps 20:07 - 22:16: Accelerating incident response & reviewing SOPs 22:17 - 24:01: Mitigation strategies: actionable telemetry over full ingestion 24:02 - 27:29: AI abuse vs. Living off the Land (LotL) ecosystems 27:30 - 28:14: LLM jacking & resource theft 28:15 - 20:38: Why security fundamentals, EDR, and Zero Trust still rule About Zscaler Zscaler (NASDAQ: ZS) is a pioneer and global leader in zero trust security. The world’s largest businesses, critical infrastructure organizations, and government agencies rely on Zscaler to secure users, branches, applications, data & devices, and to accelerate digital transformation initiatives. Distributed across 160+ data centers globally, the Zscaler Zero Trust Exchange™ platform combined with advanced AI combats billions of cyber threats and policy violations every day and unlocks productivity gains for modern enterprises by reducing costs and complexity. ©2025 Zscaler, Inc. All rights reserved. Zscaler, Zscaler Digital Exchange, Zscaler Internet Access, ZIA, Zscaler Private Access, and ZPA are either (i) registered trademarks or service marks or (ii) trademarks or service marks of Zscaler, Inc. in the United States and/or other countries. Any other trademarks are the properties of their respective owners. #AI #secops #threatintelligence #machinelearning #malwareanalysis
 275      3