{"podcast":{"title":"Research Saturday","slug":"research-saturday-1377435","podcast_index_feed_id":1377435,"rss_url":"https://feeds.megaphone.fm/cyberwire-research-saturday","website_url":"https://thecyberwire.com/podcasts/research-saturday","image_url":"https://megaphone.imgix.net/podcasts/720fb496-dcfb-11ea-a475-bbdae30535a9/image/8f3cd4038c81bba2a8ea4ca89f3e23c4.png?ixlib=rails-4.3.1&max-w=3000&max-h=3000&fit=crop&auto=format,compress","author":"N2K Networks Inc.","episode_count":458,"summary":"Every Saturday, we sit down with cybersecurity researchers to talk shop about the latest threats, vulnerabilities, and technical discoveries.","last_synced_at":"2026-07-26T04:20:01.844149+00:00","page_url":"https://stenobird.com/podcast/research-saturday-1377435"},"episode":{"title":"When “safe” documents aren’t.","slug":"when-safe-documents-aren-t","published_at":"2026-03-28T05:00:00+00:00","page_url":"https://stenobird.com/podcast/research-saturday-1377435/when-safe-documents-aren-t","show_page_url":"https://stenobird.com/podcast/research-saturday-1377435","url":"https://thecyberwire.com/podcasts/research-saturday/418/notes","audio_url":"https://pdst.fm/e/pdrl.fm/6ec23a/traffic.megaphone.fm/CYBW2925735484.mp3?updated=1774547657","summary":"Omer Ninburg, CTO of Novee Security, joins us on this episode of Research Saturday to discuss their work on \"From PDF to Pwn: Scalable 0day Discovery in PDF Engines and Services Using Multi-Agent LLMs.\" Historically, Portable Document Formats – the immutable, localized PDF – was once considered a “safe” component inside enterprise environments. That is no longer the case. To demonstrate how PDF services and engines can be exploited, the team at Novee used their proprietary, multi-agent LLM system to uncover vulnerability patterns, and systematically scale them into a broad discovery campaign across two PDF vendor ecosystems. The research uncovered 16 verified vulnerabilities across client-side PDF viewers, embedded plugins, and server-side PDF services. The research and executive brief can be found here: ⁠From PDF to Pwn: Scalable 0day Discovery in PDF Engines and Services Using Multi-Agent LLMs Hacker-Trained AI Discovers 16 New 0-Day Vulnerabilities in PDF Engines","meta_description":"Omer Ninburg, CTO of Novee Security, joins us on this episode of Research Saturday to discuss their work on \"From PDF to Pwn: Scalable 0day Discovery in P…","key_points":[],"chapters":[],"topics":[],"duration_seconds":1263,"processing_state":"not_requested","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/research-saturday-1377435/episodes/when-safe-documents-aren-t/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/research-saturday-1377435/when-safe-documents-aren-t.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}