Skip to Content

Speaking

I talk about the unglamorous parts of security that decide whether organisations actually get safer: supply chain, containers, and the dependencies nobody reviews. I build this stuff at PayPal, so the talks come from production problems, not theory.

Topics

  • AI/agent supply chain security
  • Container security and vulnerability prioritisation
  • Software supply chain attacks
  • DevSecOps at scale

Beyond the Model: Securing What Your Agent Actually Depends On

AAIF Bengaluru·September 2026·Talk + live demo

An agent isn't one model. It's a model plus every MCP server, tool, and framework it calls, and none of those are things you built or can fully inspect. This talk maps that dependency chain, walks through what goes wrong (malicious model serialization, backdoored models, typosquatted model IDs, poisoned training data), and closes with a live demo of OpenSSF Model Signing: sign, verify, tamper with one byte, verify again.

Takeaways

  • An agent's attack surface is wider than the model itself
  • Why models need signing and provenance the way packages do
  • A secure inbound/transform/outbound model pipeline, plus three things to do the following Monday

Breaking Bad: Container Security is Broken

BSides Vizag·December 2025·Talk + live demo

A hacker’s guide to finding real threats in containers. Layer-aware vulnerability analysis combined with threat intelligence (CISA KEV, EPSS) to cut through scanner noise and focus on the vulnerabilities that matter. Includes a demo of running it in GitHub Actions, with the workflow available in the repo.

Takeaways

  • How to prioritize vulnerabilities in containers
  • How to use threat intelligence to focus on the vulnerabilities that matter
  • How to build a container security program that actually works