Three Buddy Problem
Three Buddy Problem
Three Buddy Problem·May 26, 2026·49m

Find 50,000 Bugs, Fix Zero: Gabriel Bernadett-Shapiro on the AI Vuln Trap

Show notes

(Presented by TLPBLACK: A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals.)

Three Buddy Problem x Ekoparty Miami: SentinelLabs researcher Gabriel Bernadett-Shapiro hops on the mic to unpack who gets to define what "security" even means in the age of AI, why venture capital keeps funding the wrong things, and how the frontier labs quietly ate everyone's coding harness.

Plus, how AI actually contributed to cracking the FAST 16 research, overcoming the guardrails, and why your domain expertise is the only thing keeping you out of full-blown rabbit-hole psychosis.

Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Gabriel Bernadett-Shapiro.

Timestamps:
0:00 Introductory banter
4:55 Gabe returns: how the models got scary-good at code
8:45 Bay Area short-termism and the "10x in 18 months" trap
11:35 VCs as tastemakers, and why that's broken
13:00 The unpaid-labor pipeline into the AI labs
18:00 The real misunderstanding about security's moat
20:18 Bug bounties: a net negative for the industry?
22:20 The great vuln fire sale — find 50,000, fix zero
27:28 Who will maintain vetted open-source libraries?
29:29 FAST 16: how AI actually broke the case open
35:05 The rabbit-holing machine and the path to "AI psychosis"
41:05 Stuxnet, Kim Zetter, and the story we'll never be told

Links: