AI Era, New Risks: How Data-Centric Security Reduces Emerging AppSec Threats – Idan Plotnik, Vishal Gupta – ASW #329
Idan is a serial entrepreneur and product strategist, bringing to Apiiro nearly 20 years of experience in cybersecurity. Previously, Idan was Director of Engineering at Microsoft following the acquisition of Aorato where he served as the founder and CEO.
Vishal Gupta is an entrepreneur and business development executive with a special focus on the financial service industry. He has expertise in information rights management, information usage control, data loss prevention and enterprise software sales.
As CEO of Seclore, Vishal drives direction and stakeholder management for the company at large. He previously co-founded Herald Logic (acquired in 2007) and he regularly contributes to security industry thought leadership.
Vishal has lived and worked in Mumbai, Singapore and London, giving him critical awareness of diverse cultures, business processes and ethnic eccentricities. In addition to his interest in information security systems and processes, Vishal is an avid fan and participant of swimming and squash.
- Identiverse 2025 is returning to Las Vegas, June 3-6. Hear from 250+ expert speakers and connect with 3,000+ identity security professionals across four days of keynotes, breakout sessions, and deep dives into the latest identity security trends. Plus, take part in hands-on workshops and explore the brand-new Non-Human Identity Pavilion. Register now and save 25% with code IDV25-SecurityWeekly at https://www.securityweekly.com/IDV2025
Mike Shema
- Airborne: Wormable Zero-Click RCE in Apple AirPlay Puts Billions of Devices at Risk | Oligo Security
Also covered in Wired.
- How MCP servers can steal your conversation history – The Trail of Bits Blog
- Jumping the line: How MCP servers can attack you before you ever use them
- Insecure credential storage plagues MCP – The Trail of Bits Blog
Related to credentials and MCP security in general, it's also worth reading "Let's fix OAuth in MCP" from Aaron Parecki.
- Deceiving users with ANSI terminal codes in MCP – The Trail of Bits Blog
- Everything Wrong with MCP – by Shrivu Shankar
- Novel Universal Bypass for All Major LLMs
- Advancing Secure by Design Through Security Research | Lawfare
See also this effort from the OpenSSF, "Announcing the Release of 'The Memory Safety Continuum'"
- Securing our future: April 2025 progress report on Microsoft’s Secure Future Initiative | Microsoft Security Blog
- An Open Letter to Third-Party Suppliers












