Episode #328 - Wordpress RCE, Vuln Prioritization, AI Memory Exfiltration
Ken and Seth cover a WordPress core RCE ("WP2Shell") and Alex Gaynor’s article on AI-driven vulnerabilities, arguing teams should eliminate vulnerability classes using framework-level fixes rather than fixing bugs individually. They also evaluate bug prioritization and analyze a "Memory Heist" attack on Claude AI, noting LLM security resembles anti-social engineering.