A new take on bug bounties, AI red teams and our New Year’s resolutions
Explore the podcast → https://ibm.biz/Bdb6NZ Learn more about cybersecurity → https://ibm.biz/Bdb6NY Microsoft is trying to clear some of the smog obscuring the software supply chain by expanding its bug bounty program to include some third-party code that affects it services. In this episode of Security Intelligence, panelists Jeff Crume, Nick Bradley and Claire Nuñez discuss what that move means for cybersecurity responsibility models going forward. We also analyze how a three-year-old LastPass breach is still giving cybercriminals new credentials to steal. Turns out “harvest now, decrypt later” isn’t just a quantum concern. Plus: OpenAI fights prompt injections with an automated, AI-powered red team, hackers have a new tool to make ClickFix attacks even easier and we share the New Year’s Resolutions we hope organizations will make in 2026. All that and more on Security Intelligence. 00:00 -- Introduction 1:11 -- Cybersecurity resolutions 6:51 -- Microsoft’s new bug bounties 14:00 -- The LastPass breach’s long tail 26:07 -- Automated red teaming 33:22 -- ClickFix-as-a-service The opinions expressed in this podcast are solely those of the participants and do not necessarily reflect the views of IBM or any other organization or entity. #cybersecurity #openai #clickFix