Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Gen's Curtis Koenig on treating AI agents like human users to prevent security failures

Your backlog of low and medium severity vulnerabilities just became a real threat. AI can now chain them into critical exploits, and the window between exploit discovery and active use is around eight hours. Curtis Koenig, Head of Application Security at Gen, joins the show to explain why treating AI agents like human users is the single most important step security teams can take this year. CHAPTERS.

Cybersecurity ROI Calculator: Measure Your Investment

Security teams have always had to justify their budgets, and the bar for that justification keeps rising. Boards and CFOs want proof that security spending delivers measurable business value: reduced risk translated into financial language. That pressure has made cybersecurity ROI calculators a standard part of the security leader’s toolkit, a way to convert threat prevention, automation efficiency, and incident response improvements into the numbers executives understand.

From Isolated Attacks to Continuously Optimized Operations

Security teams have spent years improving their ability to detect and respond to cyber threats. More visibility, better tools, and richer telemetry have helped organizations identify suspicious activity across users, devices, applications, and infrastructure. But the nature of the challenge is changing. Modern attacks are rarely defined by a single event.

CTEM Validation: How to Confirm What's Really Exploitable

CTEM validation is the fourth stage of continuous threat exposure management. It confirms whether a prioritized exposure is actually exploitable in your environment and whether existing defenses would stop an attack. Common methods include penetration testing, breach and attack simulation, attack path analysis, and automated exploitability analysis.

Session on Metabolic Disorder Prevention at CIO500 Awards by our Founder & CEO Mr. Anirban Mukherji

In this session, our founder and CEO Anirban Mukherji explained how to master metabolic fasting to optimize your health. Learn the practical steps to reset your body and improve daily energy levels. It breaks down the core science behind how your body processes fuel. He examined the hunger code to help you understand why you feel hungry at specific times and how to regain control over your eating patterns. By implementing these strategies, you can begin managing cravings effectively without feeling deprived or overwhelmed.

The Cyber Loss Where the Stolen Records Belong to Other Companies

A breach response begins with a record count and a notification assessment. How many individuals, in which jurisdictions, under which statute. ‍ Some organizations hold almost no personal data and enormous quantities of other companies' commercial confidences. An insurer's claims files contain policyholders' loss histories, control failures and settlement amounts. The statutory machinery may not engage at all, and what engages instead is a contract portfolio. ‍

Which AI Signals Carry a Finding and Which Only Size It

A correlation rule joins several telemetry sources and fires when they agree. Guidance on writing them concentrates on thresholds, ordering and tuning for noise. ‍ The decision that determines whether a rule works is upstream of all of that. Each source in a rule plays one of three roles, and treating them interchangeably is what produces a rule that misses real events or fires on ones nobody can act on. ‍

If AI Can Build the Exploit, It Can Write the Patch

The window between an exploit being discovered and actively used is around eight hours. Curtis Koenig, Head of Application Security at Gen, explains why zero trust and a prepared incident response process remain the foundation for security teams navigating this new threat landscape. "The good news is that if the tool can find a vulnerability and create an exploit, it can find a vulnerability and write a patch as well.".

Why Open Source Is the Easiest Target for Supply Chain Attacks

Attackers targeting open source dependencies already have all the code they need. Curtis Koenig, Head of Application Security at Gen, explains the fundamental asymmetry and why building quality fixes at speed is the real challenge for defenders. "An attacker can produce very fast, very ugly code that propagates through as an attack. When we're trying to fix something, the challenge we have is we're always trying to build for quality.".