Podcast· Software Engineering Daily
Security in the Age of Instant Exploits
Oct 6, 2026 · 49 min · Clio 79
Clio listened
Alon Shindel, VP of AI and Threat Research at Wiz, and host Gregor Vande discuss how AI has collapsed the time from vulnerability disclosure to exploit generation and how defenders can use the same models to respond faster. The episode is useful for CIOs because it covers attack-surface reduction, AI-driven scanning, open-source triage overload, and practical steps toward automated remediation.
Key points
- AI can turn a public vulnerability report into a working exploit almost instantly, shrinking patch windows from months to hours.
- Wiz says its AI red-team features found strong adoption because they scan HTML and JavaScript for exposed secrets and flaws.
- Defenders may have an advantage because they possess more context about assets, ownership, sensitivity, and critical systems.
- Open-source maintainers are getting flooded with AI-generated reports, creating triage bottlenecks and noisy disclosures.
- Wiz recommends continuous scanning across web assets, GitHub repos, CI/CD pipelines, and SBOMs, then prioritizing exposure reduction.
- Automated remediation still needs testing and root-cause mapping from cloud to code; full auto-patching remains hard.