AI Security Update

The Fake Baby That Hacked a Company: AI, OSINT & the New Face of Phishing with Hakeem Thomas

58 min · 12 de abr de 2026
portada del episodio The Fake Baby That Hacked a Company: AI, OSINT & the New Face of Phishing with Hakeem Thomas

Descripción

What if a simple baby photo could compromise an entire organization? In this episode, we sit down with cybersecurity professional Hakeem Thomas, a U.S. military veteran with nearly two decades of experience across penetration testing, digital forensics, incident response, and Zero Trust initiatives. Hakeem shares a real-world phishing campaign where AI-generated images—built from employee photos—were used to trick staff into clicking. The result? A highly effective social engineering attack that bypassed traditional red flags and exposed just how dangerous AI-powered OSINT has become. We dive into how attackers are now automating reconnaissance across thousands of sites in minutes, cloning identities, and crafting hyper-personalized attacks that are nearly impossible to detect. From fake baby photos to voice cloning and sock puppet accounts, the threat landscape is evolving faster than most organizations can keep up. But this isn’t just about tools—it’s about people. Why are these attacks so effective? And what does your digital footprint reveal to someone who knows how to look?

Comentarios

0

Sé la primera persona en comentar

¡Regístrate ahora y forma parte de la comunidad de AI Security Update!

Prueba gratis

Empieza 7 días de prueba

$99 / mes después de la prueba. · Cancela cuando quieras.

  • Podcasts solo en Podimo
  • 20 horas de audiolibros al mes
  • Podcast gratuitos

Todos los episodios

23 episodios

episode From API Security to AI Security: Inside the OWASP Exchange with Escape’s Yacine Souam artwork

From API Security to AI Security: Inside the OWASP Exchange with Escape’s Yacine Souam

What happens when AI agents start behaving like autonomous users inside your infrastructure? In this episode, we sit down with Yacine Souam, an R&D engineer at Escape — the Y Combinator-funded, Forbes 30 Under 30-recognized cybersecurity startup — to explore one of the fastest-growing frontiers in tech: the intersection of AI security and API security. Yacine shares his journey through cybersecurity and AI research, along with his work on the OWASP Exchange, an initiative helping bridge the gap between security professionals, developers, and AI practitioners. The conversation dives into why AI security is becoming inseparable from API security, especially as AI agents increasingly interact with internal systems, APIs, and sensitive data. We explore the emerging challenges companies face in securing AI models and autonomous agents, from observability gaps and permission scoping to adversarial machine learning and prompt injection attacks. Yacine explains why AI agents should be treated as non-human identities and how principles like least privilege and security-by-design are becoming essential for modern AI deployments. The episode also covers real-world security concerns, including supply chain risks in the AI ecosystem and lessons from the recent LiteLLM incident. Along the way, Yacine shares practical advice for engineers, founders, and security teams looking to safely adopt AI while maintaining innovation speed. Whether you’re building AI products, securing APIs, or simply trying to understand where the future of cybersecurity is headed, this episode offers a grounded and highly practical look into the rapidly evolving world of AI security. Stay curious, keep experimenting, and learn how security is evolving alongside AI.

25 de may de 202620 min
episode AI Security for Small Businesses: UK Perspectives and Neurodiversity with Lisa Ventura artwork

AI Security for Small Businesses: UK Perspectives and Neurodiversity with Lisa Ventura

AI security is increasingly relevant for small businesses, where limited resources and fast-moving adoption can create unique challenges and opportunities. In this episode, Lisa Ventura joins the conversation to share UK-focused perspectives on how organisations can better understand and approach AI security in practice. We explore how neurodiversity contributes valuable strengths to cybersecurity teams, particularly in identifying patterns, managing complexity, and improving resilience in AI-driven environments. The discussion also touches on the realities small businesses face as they adopt AI tools, from governance considerations to everyday security awareness. Rather than focusing on hype, this episode looks at practical, real-world considerations shaping how AI security is understood and applied across the UK small business landscape. This conversation is for anyone interested in how AI security is evolving in real-world business environments, and the human factors that shape it.

25 de abr de 202628 min
episode The Companies House Breach: AI, Accountability & Human Judgment with Michala Liavaag artwork

The Companies House Breach: AI, Accountability & Human Judgment with Michala Liavaag

In this episode, we’re joined by UK-based cybersecurity leader Michala Liavaag for a focused, real-world conversation on what the Companies House breach teaches us about modern security, AI, and accountability. With a background as a classical pianist turned security strategist, and now founder of Cybility Consulting, Michala brings a distinctive, human-centered lens to cybersecurity. We dive deep into the Companies House breach, which was a devastating breach in the UK, unpacking what happened, where controls and oversight fell short, and why incidents like this highlight the importance of cybersecurity awareness and education. Michala explains why AI can support detection and efficiency, but cannot replace human judgment, especially in complex, high-stakes scenarios. We also talk about accessibility considerations when traveling at airports and navigating security checkpoints which are now augmented by AI. Grounded in a real incident and expert insight, this episode provides great advice for charities, non-profits, and leaders.

12 de abr de 20261 h 1 min