首页  >>  来自播客: a16z 更新   反馈  

a16z - Building Cyber Defense for the Agentic Era

发布时间:   原节目
在2026年10月6日发布的一期播客中,网络安全资深人士、Mandiant创始人Kevin Mandia讨论了他与Arminen的合作并重返该领域,其动力源于他认为将重新定义安全的深刻“AI转型变革”。在该行业深耕30年之后,Mandia觉得有必要参与到这种“前所未有的海啸”中,他表示不希望“袖手旁观AI转型变革”。他对Arminen的创始人David Slater、Travis Lanham和Evan Pena印象深刻,认可他们的跨时代才能以及他们解决方案的至关重要性。 Arminen利用前沿AI模型进行进攻性网络安全,这项服务他们称之为Arminen Red。核心理念是,强大的防御需要同样强大的进攻进行训练,这类似于一支橄榄球队需要强大的模拟进攻。Arminen旨在成为“进攻方面的全明星团队”,不断突破防御。Mandia强调了AI攻击无与伦比的规模和速度,指出“AI在一微秒内完成的工作,70个人也做不到”。AI擅长在代码等结构化语言中发现可利用的风险,使其在漏洞发现方面非常有效。Mandia警告说,开放模型已经具备能力,目前大规模犯罪AI攻击的主要障碍是GPU的匿名可用性。 将国家级攻击与AI进行比较,Mandia描述了从“狙击子弹”(有针对性、隐蔽的攻击)到“无人机蜂群”(更广泛、可能更粗糙但更全面的攻击)的转变。AI使攻击能力民主化,让技能较低的攻击者也能取得更大的成功,这将使归因变得复杂,模糊了国家、人类和AI来源之间的界限。 Arminen的方法涉及“超攻击”,即利用代理蜂群来绘制网络图,创建一个“元数据孪生”。这使得能够持续、经济高效地轮询变化并针对新漏洞进行定向攻击。Mandia将此与传统渗透测试区分开来,他认为传统渗透测试仅仅是针对已知问题的“卫生”扫描。相比之下,Arminen执行实际的漏洞利用来验证风险,实现远程代码执行,并在定制应用程序中发现逻辑缺陷。自2026年1月以来,Arminen已在财富500强客户的生产环境中发现了90多个零日漏洞,且无需访问源代码。Mandia强调,他们的模型经过真实红队人员的后期训练,现在可以自主发现零日漏洞。 展望未来,Arminen计划推出Arminen Blue,这是一种防御能力,旨在利用进攻情报创建自主、快速的补偿控制措施。Mandia断言,在AI时代,人类参与检测和响应循环将过于缓慢,因此需要自主防御。未来的安全运营中心(SOC)将实现显著的自动化,预防、检测和响应将越来越多地由AI处理,从而缩小人工干预的窗口。 Mandia承认,企业目前正处于一个“暴露窗口期”,攻击者和防御者都在孤注一掷地行动。他指出,“Mythos时刻”加速了人们对AI进攻能力的认识。回顾Hugging Face等事件,他强调了将AI专业知识与深厚的安全领域知识相结合,以安全地开发和部署AI模型的重要性,因为安全团队常常低估模型的能力。 在公司建设方面,Mandia将Mandiant的自筹资金、较慢增长与Arminen对快速、风险投资支持的扩张需求进行了对比。当前市场需要即时规模、强大的市场进入策略和持续创新。他强调,在这场变革的“海啸”中,差异化来自于客户满意度以及在所做领域成为“世界顶尖”。

In a podcast published on October 6, 2026, cybersecurity veteran Kevin Mandia, founder of Mandiant, discussed his return to the field with Arminen, driven by the profound "AI shift change" he believes will redefine security. Having spent 30 years in the industry, Mandia felt compelled to engage with this "tsunami like has never been seen before," stating he didn't want to "sit out the AI shift change." He was particularly impressed by Arminen's founders, David Slater, Travis Lanham, and Evan Pena, recognizing their generational talent and the critical need for their solution. Arminen leverages frontier AI models for offensive cybersecurity, a service they call Arminen Red. The core idea is that a strong defense requires an equally strong offense to train against, akin to a football team needing a robust practice offense. Arminen aims to be the "all-star team on offense," continuously pushing defenses. Mandia emphasizes the unparalleled scale and speed of AI attacks, noting that "what AI does in a microsecond would take 70 humans." AI excels at finding exploitable risk in structured languages like code, making it highly effective for vulnerability discovery. Mandia warns that open models are already capable, and the main barrier to widespread criminal AI attacks is currently the anonymous availability of GPUs. Comparing nation-state attacks to AI, Mandia describes a shift from "sniper rounds" (targeted, surreptitious attacks) to "drone swarms" (broader, potentially sloppier but more comprehensive attacks). AI democratizes attack capabilities, allowing less skilled attackers to achieve greater success, which will complicate attribution, blurring the lines between nation-state, human, and AI origins. Arminen's approach involves "hyperattacks" that use a swarm of agents to map a network, creating a "metadata twin." This allows for continuous, cost-effective polling for changes and targeted attacks on new vulnerabilities. Mandia differentiates this from traditional pen testing, which he views as mere "hygiene" scanning for known issues. Arminen, by contrast, carries out actual exploits to verify risk, achieving remote code execution and finding logic flaws in custom applications. Since January 2026, Arminen has found over 90 zero days at Fortune 500 customer sites, all in production, without source code access. Mandia highlights that their models, post-trained by real red teamers, are now finding zero days autonomously. Looking ahead, Arminen plans to introduce Arminen Blue, a defensive capability designed to use offensive intelligence to create autonomous, rapid compensating controls. Mandia asserts that human involvement in the detect and respond loop will be too slow in the AI age, necessitating autonomous defense. The future SOC will see significant automation, with prevention, detection, and response increasingly handled by AI, narrowing the window for human intervention. Mandia acknowledges that enterprises are currently in a "window of exposure," with both attackers and defenders operating with desperation. He notes that the "Mythos moment" accelerated awareness of AI's offensive capabilities. Reflecting on incidents like Hugging Face, he stresses the importance of combining AI expertise with deep security domain knowledge to safely develop and deploy AI models, as security teams often underestimate model capabilities. In terms of company building, Mandia contrasts Mandiant's self-funded, slower growth with Arminen's need for rapid, venture-backed expansion. The current market demands immediate scale, a robust go-to-market strategy, and continuous innovation. He emphasizes that in this "tsunami" of change, differentiation comes from customer satisfaction and becoming the "best in the world" at what they do.