Dan Goodin
8
MENTIONS
7
EPISODES
7
PODCASTS
Search complete. 8 mentions across 7 episodes found for "Dan Goodin".
Aug 24, 2026
Digital Citizen: Phase 2
C
24:41Cary ParkerHOST
And coming in and firing twenty-five to fifty percent of our talent in that area and then turning around and trying to take it to the private sector is completely the wrong move.
C
24:53Cary ParkerHOST
All right, next up here, a story from Ars Technica and, uh, Dan Goodin, and it's about a really massive data leak thanks to a very clever supply chain attack.
C
25:06Cary ParkerHOST
Terabytes worth of credentials, terabytes worth of credentials, many belonging to the world's biggest and most sensitive organizations, have been exposed in a supply chain attack on LiteLLM.
C
25:17Cary ParkerHOST
That's L-I-T-E L-L-M, as in large language model, an AI thing, uh, which it says here is an open source tool that streamlines AI-driven software development.
40 MINS LATER
C
65:54Cary ParkerHOST
And then coming down the line, we've got interviews with, uh, folks from Epic about opt-out dark patterns.
C
66:00Cary ParkerHOST
We will of course be talking with Bruce Schneier in the 500th episode, which is coming up very soon.
C
66:05Cary ParkerHOST
Dan Goodin from Ars Technica, Tom Kemp, and some other fun surprises coming after that that came out of my trip to Defcon.
C
66:12Cary ParkerHOST
So that's gonna do it for this week.
Microsoft Copilot Continues To Be A Nightmare.
J
5:28JordanHOST
It's meant to stop the amount of damage, right? It's like it's a proactive measure.
J
5:33JordanHOST
I think it's really interesting at the end of this article, um, uh, Dan Goodin wrote something, um, "Ultimately, attacks like Cosnitch and Microsoft's statement are reminders that LLM security is largely built on a list of reactive restrictions rather than building a road with banked turns that proactively prevent a car from veering off a cliff.
J
5:53JordanHOST
LLM developers-
J
5:54JonahHOST
[laughs]
Inside the EncroChat law-enforcement implant, Irregular's AI sandbox failure
C
67:47Costin RaiuHOST
I, I...
C
67:48Costin RaiuHOST
This is the kind of story that you see, um, um, you know, our friends, uh, Dan Goodin, Kim Zetter write.
C
67:54Costin RaiuHOST
This, this is one of those kind of stories.
C
67:57Costin RaiuHOST
It's a fantastic story, so shout outs to the authors, um, Duncan Campbell from the Sussex Center for Law and Technology, and, uh, Bill Goodwin, an investigations editor for Computer Weekly.
AI cloud’s debt-fueled data-center sprint accelerates — August 21, 2026
C
7:32CassidyHOST
Give us a site, a power contract, and an in-service date, then we can start treating it like capacity instead of ambition.
B
7:41BillHOST
Ars Technica with Dan Goodin.
S
7:43speaker_2NARRATOR
Company researchers are calling the technique cryptographic context injection.
S
7:48speaker_2NARRATOR
Cryptographic context injection is one instance of a broader shift.
S0:E18. Student stops AI supply chain attack and prompt injection is still a thing...
J
16:03Jess HebenstreitHOST
Yeah.
J
16:03Jake WilliamsHOST
So our, our second story that we, uh, that we're gonna cover today, um, actually comes to us, uh, from, uh, Dan Goodin, uh, over at Ars Technica.
J
16:11Jake WilliamsHOST
A fantastic journalist, a fantastic human too, by the way.
J
16:14Jake WilliamsHOST
Um, but, uh, uh, so, um, he's talking about...
Security Now 1092: Restraint Abliteration
S
19:37Steve GibsonHOST
Okay, so we're gonna start by covering some important recent security events and then get into understanding this first of the two core issues of the way AI works.
S
19:49Steve GibsonHOST
Last Wednesday, uh, Ars Technica's great security topic, uh, writer Dan Goodin reported under the headline, "Terabytes of credentials leaked in massive supply chain attack," was, uh, Ars headline.
S
20:08Steve GibsonHOST
Uh, and of course, that was the kind of thing I would have chosen to share even a few years ago.
S
20:12Steve GibsonHOST
But the thing that raised my interest another several notches was the article's tagline, which read, "That data," that is the terabytes of credentials, "was scraped and exfiltrated from twenty-five hundred users of a compromised AI package." So I thought, "Whoa, uh, okay." Uh, it turns out what's, [chuckles] what's even more significant is we're not talking some random end users in Nebraska, you know, who no one knows.
SN 1092: Restraint Abliteration - Rotating Keys, Broken Guardrails
S
19:37Steve GibsonHOST
Okay, so we're gonna start by covering some important recent security events and then get into understanding this first of the two core issues of the way AI works.
S
19:49Steve GibsonHOST
Last Wednesday, uh, Ars Technica's great security topic, uh, writer Dan Goodin reported under the headline, "Terabytes of credentials leaked in massive supply chain attack," was, uh, Ars' headline.
S
20:08Steve GibsonHOST
Uh, and of course, that was the kind of thing I would have chosen to share even a few years ago.
S
20:12Steve GibsonHOST
But the thing that raised my interest another several notches was the article's tagline, which read, "That data," that is the terabytes of credentials, "was scraped and exfiltrated from twenty-five hundred users of a compromised AI package." So I thought, "Whoa.