Security Unlocked - AI & the Hunt for Hidden Vulnerabilities with Tobias Diehl

In this episode of The BlueHat Podcast, host Nic Fillingham and Wendy Zenone are joined by security researcher Tobias Diehl, a top contributor to the Microsoft Security Research Center (MSRC) leaderboards and a Most Valuable Researcher. Tobias shares his journey from IT support to uncovering vulnerabilities in Microsoft products. He discusses his participation in the upcoming Zero Day Quest hacking challenge and breaks down a recent discovery involving Power Automate, where he identified a security flaw that could be exploited via malicious URLs. Tobias explains how developers can mitigate such risks and the importance of strong proof-of-concept submissions in security research. 



In This Episode You Will Learn


  • Researching vulnerabilities in Power Automate, Power Automate Desktop, and Azure
  • The importance of user prompts to prevent unintended application behavior
  • Key vulnerabilities Tobias looks for when researching Microsoft products


Some Questions We Ask:


  • Have you submitted any AI-related findings to Microsoft or other bug bounty programs?
  • How does the lack of visibility into AI models impact the research process?
  • Has your approach to security research changed when working with AI versus traditional systems?

  

Resources:     

View Tobias Diehl on LinkedIn  

View Wendy Zenone on LinkedIn  

View Nic Fillingham on LinkedIn 



Related Microsoft Podcasts:  

 



Discover and follow other Microsoft podcasts at microsoft.com/podcasts  


Hosted on Acast. See acast.com/privacy for more information.

Code Story: Insights from Startup Tech Leaders - S10 E23: Ivan & Nick, Archetype AI (Part 1)

Ivan Poupyrev grew up in the Soviet Union, studying rocket science. He moved to the US in 2013 to pursue the early days of VR. He has worked at Disney and Google, and has been focused on merging the physical and digital world for many years. Prior to this latest revolution, Ivan was one of the skeptics towards the idea of AI. But at Google, he was convinced by one of his now co-founders, the value in this tech.

Nick Gillian has been working in real time Machine learning for nearly 2 decades - but path here was a bit different. His background is in music and audio engineering - think the math behind amps, studios, mixers, etc. During his masters studies, he fell in love with sensors, and participated in early development and advancement of this tech alongside machine learning. He built a toolkit, which eventually got the attention of Ivan.

Ivan was working at Google, and one of his team members began utilizing the toolkit built by Nick. Upon discovering this, Ivan reached out to Nick to see if he wanted to join the top secret team - and eventually, Nick convinced Ivan of the power of machine learning and AI.

This is the creation story of Archetype AI.

Sponsors

Links



Our Sponsors:
* Check out Vanta: https://vanta.com/CODESTORY


Support this podcast at — https://redcircle.com/code-story/donations

Advertising Inquiries: https://redcircle.com/brands

Privacy & Opt-Out: https://redcircle.com/privacy

The Stack Overflow Podcast - Boots on the ground: Holistic AI and Audioshake at HumanX

Holistic AI is an AI governance platform that helps the enterprise adopt and scale AI.

Audioshake uses AI to mix, master, and separate music and other audio content.

Learn more about HumanX here. Feeling the FOMO? The event takes place again on April 7-9, 2026 in San Francisco. Early birds can register here.

Connect with Raj on LinkedIn.

Connect with Jessica on LinkedIn.

Talk Python To Me - #499: BeeWare and the State of Python on Mobile

This episode is all about Beeware, the project that working towards true native apps built on Python, especially for iOS and Android. Russell's been at this for more than a decade, and the progress is now hitting critical mass. We'll talk about the Toga GUI toolkit, building and shipping your apps with Briefcase, the newly official support for iOS and Android in CPython, and so much more. I can't wait to explore how BeeWare opens up the entire mobile ecosystem for Python developers, let's jump right in.

Episode sponsors

Posit
Python in Production
Talk Python Courses

Anaconda open source team: anaconda.com
PEP 730 – Adding iOS: peps.python.org
PEP 738 – Adding Android: peps.python.org
Toga: beeware.org
Briefcase: beeware.org
emscripten: emscripten.org
Russell Keith-Magee - Keynote - PyCon 2019: youtube.com
Watch this episode on YouTube: youtube.com
Episode #499 deep-dive: talkpython.fm/499
Episode transcripts: talkpython.fm

--- Stay in touch with us ---
Subscribe to Talk Python on YouTube: youtube.com
Talk Python on Bluesky: @talkpython.fm at bsky.app
Talk Python on Mastodon: talkpython
Michael on Bluesky: @mkennedy.codes at bsky.app
Michael on Mastodon: mkennedy

Lex Fridman Podcast - #463 – Douglas Murray: Putin, Zelenskyy, Trump, Israel, Netanyahu, Hamas & Gaza

Douglas Murray is the author of On Democracies and Death Cults, The War on The West, and The Madness of Crowds.
Thank you for listening ❤ Check out our sponsors: https://lexfridman.com/sponsors/ep463-sc
See below for timestamps, transcript, and to give feedback, submit questions, contact Lex, etc.

Transcript:
https://lexfridman.com/douglas-murray-2-transcript

CONTACT LEX:
Feedback – give feedback to Lex: https://lexfridman.com/survey
AMA – submit questions, videos or call-in: https://lexfridman.com/ama
Hiring – join our team: https://lexfridman.com/hiring
Other – other ways to get in touch: https://lexfridman.com/contact

EPISODE LINKS:
Douglas’s X: https://x.com/DouglasKMurray
Douglas’s YouTube: https://www.youtube.com/@douglasmurray
Douglas’s Instagram: https://instagram.com/douglaskmurray
Douglas’s Website: https://douglasmurray.net
On Democracies and Death Cults (book): https://amzn.to/4jahsxL
The War on the West (book): https://amzn.to/38L7B36

SPONSORS:
To support this podcast, check out our sponsors & get discounts:
Call of Duty: First-person shooter video game.
Go to https://callofduty.com/warzone
Oracle: Cloud infrastructure.
Go to https://oracle.com/lex
LMNT: Zero-sugar electrolyte drink mix.
Go to https://drinkLMNT.com/lex
AG1: All-in-one daily nutrition drink.
Go to https://drinkag1.com/lex

OUTLINE:
(00:00) – Introduction
(02:04) – Sponsors, Comments, and Reflections
(09:31) – War in Ukraine
(13:17) – Trump and Zelenskyy
(27:47) – Putin
(48:40) – Peace
(58:31) – Zelenskyy
(1:13:11) – Israel-Palestine
(1:23:57) – Hamas
(1:38:30) – Corruption
(1:41:40) – Gaza
(2:02:18) – Benjamin Netanyahu
(2:19:29) – Hate
(2:43:59) – Iran
(2:54:48) – Interview advice
(3:09:12) – War

PODCAST LINKS:
– Podcast Website: https://lexfridman.com/podcast
– Apple Podcasts: https://apple.co/2lwqZIr
– Spotify: https://spoti.fi/2nEwCF8
– RSS: https://lexfridman.com/feed/podcast/
– Podcast Playlist: https://www.youtube.com/playlist?list=PLrAXtmErZgOdP_8GztsuKi9nrraNbKKp4
– Clips Channel: https://www.youtube.com/lexclips

SOCIAL LINKS:
– X: https://x.com/lexfridman
– Instagram: https://instagram.com/lexfridman
– TikTok: https://tiktok.com/@lexfridman
– LinkedIn: https://linkedin.com/in/lexfridman
– Facebook: https://facebook.com/lexfridman
– Patreon: https://patreon.com/lexfridman
– Telegram: https://t.me/lexfridman
– Reddit: https://reddit.com/r/lexfridman

The Government Huddle with Brian Chidester - 176: The One with the “Becoming Digital Nations” Author

Mohammad J. Sear, Global Public Sector Consulting Leader at EY and Author of “Becoming Digital Nations,” joins the show for a deep dive into his new book while also sharing his inspiration behind the book and the bold ideas that drive his vision for rethinking governance, service delivery, and nation-building in a digital-first world. We also explore the difference between digitizing legacy systems and truly reimagining government operating models from the ground up—touching on examples like smart passports, citizen identity platforms, and one-click, zero-documentation government services. Finally, we talk about why disruption, not just innovation, is critical for meaningful change.

Big Technology Podcast - OpenAI’s Ghibli Moment, CoreWeave’s IPO Letdown, End of Silicon Valley’s Monopoly?

Brian McCullough is the host of Techmeme Ride Home. He's back for our weekly discussion of the latest tech news. We cover: 1) Why everyone's using ChatGPT to make Ghibli art 2) What is Ghibli 3) OpenAI's product dominance stands out 4) The Studio Ghibli copyright question 5) The AI servers are at capacity 6) The AI datacenters are still probably built out too early 7) What's CoreWeave? 8) CoreWeave's IPO disappoints 9) OpenAI eyes $40 billion fundraise 10) Is Silicon Valley about to lose its monopoly on tech?


---


Enjoying Big Technology Podcast? Please rate us five stars ⭐⭐⭐⭐⭐ in your podcast app of choice.


For weekly updates on the show, sign up for the pod newsletter on LinkedIn: https://www.linkedin.com/newsletters/6901970121829801984/


Want a discount for Big Technology on Substack? Here’s 40% off for the first year: https://tinyurl.com/bigtechnology


Questions? Feedback? Write to: bigtechnologypodcast@gmail.com

The Stack Overflow Podcast - “Are AI agents ready for the enterprise?”

Deepak works on Amazon Q Developer, a GenAI-powered coding assistant that includes autonomous agents.

Thinking, Fast and Slow by psychologist Daniel Kahneman is one of those books that’s a classic for a reason—and it’s more relevant to today’s AI landscape than you might think.

Connect with Deepak on LinkedIn

Congrats to Stack Overflow user Morten Zilmer, who earned a Lifeboat badge by explaining Multiplication of two different bit numbers in VHDL.

The Stack Overflow Podcast - AI is shifting focus from syntax to critical thinking

They also:

  • Emphasize the critical role of customer feedback in shaping products, highlighting how continuous feedback loops drive innovation and improvement.
  • Explore how AI is empowering non-technical team members and enabling meaningful collaboration between developers and other departments.
  • Discuss the potential of GenAI as a learning tool and the importance of prompt engineering as a key skill for future developers.

Episode notes:

  • Connect with Lee Faus on LinkedIn, X, and learn more about GitLab.
  • Learn more about creating a private instance of Stack Overflow for your team or org with Stack Overflow for Teams.
  • Read about Knowledge Solutions, a subscription-based API service that provides continuous access to Stack Overflow’s public dataset to train and fine-tune large language models.