w/ Patrick Debois, The Godfather of DevOps
In this episode of Secure Disclosure, host Mackenzie Jackson explores the growing threat of malicious VS Code extensions with Rami McCarthy from Wiz and Charlie Eriksen from Aikido Security, diving into how leaked secrets and clever obfuscation put developers at risk. Later, Patrick Debois, the “Godfather of DevOps,” joins to discuss the rise of AI-native development, how it mirrors past DevOps shifts, and what it means for the future of secure software. Links: Original Post from Aikido: https://www.linkedin.com/feed/update/urn:li:activity:7384986044867256320 Wiz Security Research on VS Code https://www.wiz.io/blog/supply-chain-risk-in-vscode-extension-marketplaces Rami McCarthy LinkedIn: https://www.linkedin.com/in/ramimac/ Patrick Debois LinkedIn: https://www.linkedin.com/in/patrickdebois/ Charlie Erkson Linkedin: https://www.linkedin.com/in/charlie-eriksen-a318578/ Chapters 00:00 — Introduction 01:10 — Malicious VS Code Extensions 06:00 — Leaked Secrets & Supply Chain Risk 15:00 — npm Security Updates & SafeChain 19:00 — The Future of AI Development
Tell us who, why, and how to reach them. We read every submission.