
Chris Wysopal was one of the original vulnerability researchers at the L0pht, the Boston hacker collective that told the US Senate in 1998 it could take down the internet in 30 minutes. He went on to co-found Veracode in 2006 and is now its Chief Security Evangelist.
Tobi and Chris discuss how AI makes sophisticated attacks cheaper and faster, and why Chris still doesn't expect a cyber doomsday as long as defenders adopt the same tools. They also cover prompt injection in agents and MCPs, zero trust, and how to handle security debt when acquiring a small SaaS company.
CTOs get a practical checklist for "secure on first write": memory-safe languages, package firewalls, AI-assisted static analysis with context, and explicit security intent for coding agents.