{"podcast":{"title":"The Stack Overflow Podcast","slug":"the-stack-overflow-podcast","podcast_index_feed_id":450923,"rss_url":"https://rss.art19.com/the-stack-overflow-podcast","website_url":"https://art19.com/shows/the-stack-overflow-podcast","image_url":"https://content.production.cdn.art19.com/images/f1/4b/a2/43/f14ba243-6fa1-48bc-88bb-16b5e90e01cf/9ab8462ecb3182c5303998dc1a19385c2c816946f95a9fa658457e657e3ea170cac950b4c623a4447028d0e31bb3b3e2ec62ad0b4d3fe42f5bc0419c6d811c9d.jpeg","author":"The Stack Overflow Podcast","episode_count":939,"summary":"For well over a decade, the Stack Overflow Podcast has been exploring what it means to be a developer and how the art and practice of software engineering is changing our world. From creating code to running it in production, we host important conversations and fascinating guests that will help you understand how technology is made and where it’s headed. Hosted by Ryan Donovan, the Stack Overflow Podcast is your home for all things software.","last_synced_at":null,"page_url":"https://stenobird.com/podcast/the-stack-overflow-podcast"},"episode":{"title":"Multi-stage attacks are the Final Fantasy bosses of security","slug":"multi-stage-attacks-are-the-final-fantasy-bosses-of-security","published_at":"2026-03-24T04:30:00+00:00","page_url":"https://stenobird.com/podcast/the-stack-overflow-podcast/multi-stage-attacks-are-the-final-fantasy-bosses-of-security","show_page_url":"https://stenobird.com/podcast/the-stack-overflow-podcast","url":"https://rss.art19.com/episodes/52cd771a-7185-477f-b8fd-5e02677ec0bb.mp3?rss_browser=BAhJIg90cmFuc2NyaWJyBjoGRVQ%3D--952c5701c84ad333c69d5faa668f8177091704f0","audio_url":"https://rss.art19.com/episodes/52cd771a-7185-477f-b8fd-5e02677ec0bb.mp3?rss_browser=BAhJIg90cmFuc2NyaWJyBjoGRVQ%3D--952c5701c84ad333c69d5faa668f8177091704f0","summary":"Multi-stage attacks function like evolving bosses, where individual suspicious actions only reveal a critical threat when stitched together. This discussion explores how to detect these complex patterns and the new security challenges introduced by AI agents.","meta_description":"Learn how to identify multi-stage cyber attacks and navigate the security implications of AI agents and LLM-generated code in the cloud.","key_points":["Main idea: Multi-stage attacks rely on a sequence of seemingly minor anomalies that, when correlated, reveal a coordinated breach","Practical takeaway: Security teams must move beyond simple anomaly detection to 'stitching' together user behavior and traffic patterns","Failure mode: Treating AI-generated code or autonomous agents as trusted entities without monitoring for indirect prompt injection","Practical takeaway: Implement principle of least privilege and temporary access to mitigate the risk of 'insider' threats from autonomous agents","Main idea: Effective threat detection requires prioritizing signals based on the business criticality of the affected workload"],"chapters":[{"start_ms":65000,"title":"Defining Multi-Stage Attacks","summary":"An analogy comparing multi-stage attacks to evolving video game bosses and explaining how individual stages can be overlooked."},{"start_ms":215000,"title":"Correlating Threat Context","summary":"The difficulty of distinguishing between routine developer anomalies and actual malicious intent through traffic and user monitoring."},{"start_ms":350000,"title":"The Speed of Data Exfiltration","summary":"Why rapid response is critical as data theft can occur within minutes of a breach."},{"start_ms":475000,"title":"Establishing Malicious Intent","summary":"The challenge of differentiating between legitimate developer activity and 'smash and grab' attacks."},{"start_ms":605000,"title":"The New Frontier: AI Agents","summary":"How LLMs and autonomous agents introduce new attack vectors like indirect prompt injection and internal reconnaissance."},{"start_ms":860000,"title":"Managing Insider Threats and Privileges","summary":"Applying minimum privilege and managed access to handle the dynamic of agents operating inside the environment."},{"start_ms":1135000,"title":"Cloud Security Evolution","summary":"Reflecting on the shift from on-premises security to the foundational security principles of the cloud."},{"start_ms":1655000,"title":"Prioritizing Security Signals","summary":"Using workload context to prioritize threats, ensuring critical systems like billing receive immediate attention."}],"topics":["Cybersecurity","Multi-stage attacks","AWS","AI Security","LLM vulnerabilities","Threat detection","Cloud security","Software development"],"duration_seconds":1800,"processing_state":"processed","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/the-stack-overflow-podcast/episodes/multi-stage-attacks-are-the-final-fantasy-bosses-of-security/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/the-stack-overflow-podcast/multi-stage-attacks-are-the-final-fantasy-bosses-of-security.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}