read-only demo

Videos 1EZdpEhwmNc

Through the AI Fog: The Architectural Decision Agentic Security Depends On — Manoj Nair, Snyk

index_state ready data_status ok

AI Engineer· published 2026-07-20· 0:23:29· en-US· indexed 2026-08-10 19:42

Open on YouTube

Scene timeline

  1. Shot 0, 0:00 to 0:03, 1 of 1 keyframes kept
  2. Shot 1, 0:03 to 0:05, 1 of 1 keyframes kept
  3. Shot 2, 0:05 to 0:12, 1 of 1 keyframes kept
  4. Shot 3, 0:12 to 0:40, 1 of 1 keyframes kept
  5. Shot 4, 0:40 to 1:08, 1 of 1 keyframes kept
  6. Shot 5, 1:08 to 1:35, 1 of 1 keyframes kept
  7. Shot 6, 1:35 to 1:38, 1 of 1 keyframes kept
  8. Shot 7, 1:38 to 2:05, 1 of 1 keyframes kept
  9. Shot 8, 2:05 to 2:32, 0 of 1 keyframes kept
  10. Shot 9, 2:32 to 3:00, 1 of 1 keyframes kept
  11. Shot 10, 3:00 to 3:26, 1 of 1 keyframes kept
  12. Shot 11, 3:26 to 3:53, 0 of 1 keyframes kept
  13. Shot 12, 3:53 to 4:20, 0 of 1 keyframes kept
  14. Shot 13, 4:20 to 4:46, 1 of 1 keyframes kept
  15. Shot 14, 4:46 to 5:13, 0 of 1 keyframes kept
  16. Shot 15, 5:13 to 5:39, 0 of 1 keyframes kept
  17. Shot 16, 5:39 to 6:06, 0 of 1 keyframes kept
  18. Shot 17, 6:06 to 6:32, 0 of 1 keyframes kept
  19. Shot 18, 6:32 to 6:59, 0 of 1 keyframes kept
  20. Shot 19, 6:59 to 7:30, 1 of 1 keyframes kept
  21. Shot 20, 7:30 to 8:00, 0 of 1 keyframes kept
  22. Shot 21, 8:00 to 8:31, 0 of 1 keyframes kept
  23. Shot 22, 8:31 to 9:00, 1 of 1 keyframes kept
  24. Shot 23, 9:00 to 9:29, 0 of 1 keyframes kept
  25. Shot 24, 9:29 to 9:57, 0 of 1 keyframes kept
  26. Shot 25, 9:57 to 10:26, 0 of 1 keyframes kept
  27. Shot 26, 10:26 to 10:58, 1 of 1 keyframes kept
  28. Shot 27, 10:58 to 11:31, 0 of 1 keyframes kept
  29. Shot 28, 11:31 to 12:03, 0 of 1 keyframes kept
  30. Shot 29, 12:03 to 12:32, 1 of 1 keyframes kept
  31. Shot 30, 12:32 to 13:00, 0 of 1 keyframes kept
  32. Shot 31, 13:00 to 13:29, 1 of 1 keyframes kept
  33. Shot 32, 13:29 to 13:59, 1 of 1 keyframes kept
  34. Shot 33, 13:59 to 14:30, 0 of 1 keyframes kept
  35. Shot 34, 14:30 to 15:00, 0 of 1 keyframes kept
  36. Shot 35, 15:00 to 15:31, 0 of 1 keyframes kept
  37. Shot 36, 15:31 to 15:42, 1 of 1 keyframes kept
  38. Shot 37, 15:42 to 15:44, 1 of 1 keyframes kept
  39. Shot 38, 15:44 to 15:51, 1 of 1 keyframes kept
  40. Shot 39, 15:51 to 15:57, 1 of 1 keyframes kept
  41. Shot 40, 15:57 to 16:11, 1 of 1 keyframes kept
  42. Shot 41, 16:11 to 16:15, 0 of 1 keyframes kept
  43. Shot 42, 16:15 to 16:18, 0 of 1 keyframes kept
  44. Shot 43, 16:18 to 16:21, 0 of 1 keyframes kept
  45. Shot 44, 16:21 to 16:52, 1 of 1 keyframes kept
  46. Shot 45, 16:52 to 17:23, 1 of 1 keyframes kept
  47. Shot 46, 17:23 to 17:33, 0 of 1 keyframes kept
  48. Shot 47, 17:33 to 17:40, 1 of 1 keyframes kept
  49. Shot 48, 17:40 to 18:17, 0 of 1 keyframes kept
  50. Shot 49, 18:17 to 18:54, 1 of 1 keyframes kept
  51. Shot 50, 18:54 to 19:01, 1 of 1 keyframes kept
  52. Shot 51, 19:01 to 19:28, 0 of 1 keyframes kept
  53. Shot 52, 19:28 to 19:56, 0 of 1 keyframes kept
  54. Shot 53, 19:56 to 20:23, 0 of 1 keyframes kept
  55. Shot 54, 20:23 to 20:51, 1 of 1 keyframes kept
  56. Shot 55, 20:51 to 20:55, 1 of 1 keyframes kept
  57. Shot 56, 20:55 to 21:00, 0 of 1 keyframes kept
  58. Shot 57, 21:00 to 21:29, 1 of 1 keyframes kept
  59. Shot 58, 21:29 to 21:58, 0 of 1 keyframes kept
  60. Shot 59, 21:58 to 22:26, 0 of 1 keyframes kept
  61. Shot 60, 22:26 to 22:47, 1 of 1 keyframes kept
  62. Shot 61, 22:47 to 23:07, 1 of 1 keyframes kept
  63. Shot 62, 23:07 to 23:12, 1 of 1 keyframes kept
  64. Shot 63, 23:12 to 23:28, 0 of 1 keyframes kept

64 shot(s).

keyframes kept every frame deduplicated

What was stored

cues
315
whisperx 315
chunks
42
from 315 cues
keyframes
33
kept of 64 captured
frames with text
33
736 lines read
chapters
18
from the source metadata
keyframe bytes
7.8 MB
word timings on 315 cues

Provenance

Each pipeline stage, its state and the model that produced it
stage state model started took
fetch done 2026-08-09 23:43 0s
stt done 2026-08-09 14:59 29s
chunk done 2026-08-09 15:00 0s
text_embed done 2026-08-10 19:42 1s
keyframe done 2026-08-09 15:00 6m 07s
ocr done 2026-08-09 15:06 35s
frame_embed done 2026-08-10 19:42 5s

Frames, and what the machine read

  • 0:02 #0 done2 line(s)

    shot 0·sharpness 453.4

    1. AlEngineer0.96
    2. World's Fair0.97
  • 0:03 #1 done2 line(s)

    shot 1·sharpness 665.7

    1. AlEngineer0.95
    2. World's Fair0.99
  • 0:10 #2 done24 line(s)

    shot 2·sharpness 2743.2

    1. LAB & PLATINUM SPONSORS0.98
    2. Amazon AGI Lab0.98
    3. ANTHROP\C1.00
    4. Google DeepMind1.00
    5. MINIMAX0.94
    6. OpenAI0.92
    7. Akamai1.00
    8. arize1.00
    9. aws1.00
    10. Braintrust bright data0.99
    11. B1.00
    12. Browserbase1.00
    13. docker1.00
    14. :neo4j0.93
    15. ORACLE1.00
    16. PayPal1.00
    17. qodo1.00
    18. reducto1.00
    19. Sonar1.00
    20. Makers of0.99
    21. togetherai1.00
    22. Unblocked1.00
    23. WorkOS1.00
    24. SonarQube1.00
  • 0:18 #3 done3 line(s)

    shot 3·sharpness 151.4

    1. C3.0.95
    2. AlEngineer0.99
    3. World's Fair0.99
  • 1:04 #4 done3 line(s)

    shot 4·sharpness 188.3

    1. 23.40.82
    2. AlEngineer1.00
    3. World's Fair0.98
  • 1:16 #5 done1 line(s)

    shot 5·sharpness 222.4

    1. World's Fair0.99
  • 1:38 #6 done2 line(s)

    shot 6·sharpness 153.6

    1. AlEngineer0.99
    2. World's Fair0.99
  • 2:02 #7 done15 line(s)

    shot 7·sharpness 1847.1

    1. AlEngineer0.96
    2. snyk1.00
    3. KEYN0TE·20260.94
    4. World'sFair1.00
    5. SNYK· AI ENGINEER WORLD'S FAIR0.98
    6. Security isn't a track at this0.99
    7. PRESENTED BY1.00
    8. Microsoft1.00
    9. conference by accident.0.99
    10. Cut through the Al Fog: Security is fundamental to Al.0.99
    11. Manoj Nair0.98
    12. CTO & CHIEF INNOVATION OFFICER · SNYK0.98
    13. gon0.63
    14. World'sFair1.00
    15. Engineering the future of Al0.98
  • 2:24 #8 skipped

    shot 8·duplicate of #7

  • 2:54 #9 done16 line(s)

    shot 9·sharpness 1744.7

    1. AlEngineer0.97
    2. snyk1.00
    3. KEYNOTE· 20260.93
    4. World'sFair1.00
    5. 40.96
    6. SNYK· AI ENGINEER WORLD'S FAIR0.99
    7. Security isn't a track at this0.99
    8. PRESENTED BY1.00
    9. Microsoft1.00
    10. conference by accident.0.99
    11. Cut through the Al Fog: Security is fundamental to Al.0.99
    12. Manoj Nair0.99
    13. CTO & CHIEF INNOVATION OFFICER · SNYK0.98
    14. World'sFair0.99
    15. TRACK 5· JUNE 30, 20260.95
    16. Security1.00
  • 3:15 #10 done10 line(s)

    shot 10·sharpness 1384.7

    1. AlEngineer0.98
    2. SNYK AI SECURITY PLATFORM1.00
    3. World'sFair1.00
    4. 40.96
    5. Independent validation for the software1.00
    6. Al writes and the agents that run it.1.00
    7. Three problems define Al security in 2026.1.00
    8. World's Fair0.97
    9. TRACK 5· JUNE 30, 20260.96
    10. Security1.00
  • 3:32 #11 skipped

    shot 11·duplicate of #10

  • 4:06 #12 skipped

    shot 12·duplicate of #10

  • 4:43 #13 done29 line(s)

    shot 13·sharpness 1882.8

    1. AlEngineer0.99
    2. THREE PROBLEMS DEFINING AI SECURITY IN 20260.99
    3. World's Fair0.97
    4. 40.95
    5. 01 · THREATS0.96
    6. 02 · WORKFORCE0.96
    7. 03 · GOVERNANCE0.94
    8. Automated Al0.99
    9. Untrusted1.00
    10. Ungoverned Al1.00
    11. Attacks1.00
    12. Agentic1.00
    13. Applications1.00
    14. Development1.00
    15. Machine-speed threats1.00
    16. No inventory, no policy0.98
    17. eliminate the luxury of1.00
    18. Agents write insecure1.00
    19. enforcement, no audit trail.1.00
    20. backlog. AppSec now1.00
    21. code, use unvetted0.99
    22. You can't govern what you0.99
    23. operates at Al speed.1.00
    24. tools, and operate with0.98
    25. can't see.0.99
    26. excessive access.1.00
    27. World's Fair0.99
    28. TRACK 5· JUNE 30, 20260.94
    29. Security1.00
  • 5:02 #14 skipped

    shot 14·duplicate of #13

  • 5:21 #15 skipped

    shot 15·duplicate of #13

  • 5:52 #16 skipped

    shot 16·duplicate of #13

  • 6:29 #17 skipped

    shot 17·duplicate of #13

  • 6:46 #18 skipped

    shot 18·duplicate of #13

  • 7:05 #19 done32 line(s)

    shot 19·sharpness 2331.7

    1. AlEngineer0.99
    2. PROBLEM 01· AUTOMATED AI ATTACKS0.96
    3. World'sFair0.98
    4. Backlog pressure1.00
    5. NEW ISSUES INTRODUCED ACROSS 4,800+ CUSTOMERS0.99
    6. is mounting.0.96
    7. +108.1%1.00
    8. PRESENTED BY1.00
    9. Issue volume is outpacing remediation — time-to-0.99
    10. +40.3%1.00
    11. exploit keeps shrinking.1.00
    12. +31.3%1.00
    13. Microsoft1.00
    14. Attackers chain "low severity" issues into1.00
    15. critical exploits.1.00
    16. base1.00
    17. -3.5%1.00
    18. +12.1%1.00
    19. They target the architectural and business-logic1.00
    20. flaws scanners miss.1.00
    21. 24-Q41.00
    22. 25-Q11.00
    23. 25-Q21.00
    24. 25-Q31.00
    25. 25-Q41.00
    26. 26-Q11.00
    27. SOURCE · SNYK PRODUCT DATA, 20260.96
    28. "Al will bypass cybersecurity systems in months, not years."1.00
    29. FIVE EYES ALLIANCE (US, UK, CA, AU, NZ) JOINT ADVISORY - JUNE 20260.98
    30. World's Fair0.98
    31. TRACK 5· JUNE 30, 20260.93
    32. Security1.00
  • 7:42 #20 skipped

    shot 20·duplicate of #19

  • 8:16 #21 skipped

    shot 21·duplicate of #19

  • 8:48 #22 done29 line(s)

    shot 22·sharpness 2918.6

    1. AlEngineer0.99
    2. PROBLEM 02 · UNTRUSTED AGENTIC DEVELOPMENT0.98
    3. World's Fair0.97
    4. Untrusted output, environment, and behavior.0.99
    5. TOXICSKILLS1.00
    6. GITHUB MCP1.00
    7. 40.99
    8. 011.00
    9. OUTPUT1.00
    10. 48%1.00
    11. of Al-generated code is vulnerable1.00
    12. The code Al writes0.99
    13. WE FOUND IT IN THE WILD1.00
    14. TOXICSKILLS: 36.82% carried a flaw, 76 confirmed malicious.0.99
    15. 021.00
    16. ENVIRONMENT1.00
    17. Where agents run1.00
    18. GITHUB MCP EXPL0IT: A single malicious issue can make an agent leak a private repo.0.97
    19. 1 IN 12 developers with MCP servers have a HIGH or CRITICAL finding today.0.98
    20. BEHAVIOR1.00
    21. 031.00
    22. PocketOS — 9 seconds. Production wiped. The agent knew the rules.0.98
    23. How agents act1.00
    24. BUILDING AGENTS AND RUNNING THEM SAFELY ARE TWO DIFFERENT SKILLS1.00
    25. SOURCE. SNYK INSIDE THE AGENTIC DEVELOPMENT SUPPLY CHAIN REPORT0.99
    26. gorb0.56
    27. World's Fair0.98
    28. TRACK 5·JUNE 30,20260.97
    29. Security1.00
  • 9:22 #23 skipped

    shot 23·duplicate of #22

Transcript

315 cues· 3,933 words· 21,074 chars

  1. 0:12 What's up, everyone?
  2. 0:14 Good to see you all here in the very first ever security track at the World's Fair.
  3. 0:19 Pretty exciting day, honestly, because like all of you, I genuinely love this stuff.
  4. 0:25 And having looked through the agenda for the speakers we have today, it's going to be absolutely mind-blowingly useful and fun information.
  5. 0:33 So hopefully, if you stick around all day, by the end of the day, you'll be able to leave here, go back to your hotel rooms,
  6. 0:39 and build some genuinely cool software, hopefully without humans in the loop, because that's the ultimate goal, right?
  7. 0:45 Like, how do we build truly safe, autonomous software at scale?
  8. 0:50 And it's not something easy to do.
  9. 0:52 So, with that being said, I'm very excited to welcome my good friend and colleague, Manoj Nair.
  10. 0:58 He is Snyk's Chief Innovation Officer and CTO.
  11. 1:02 Before Snyk, he was the Chief Cloud Officer at Commvault.
  12. 1:06 He founded and ran Hypergrid.
  13. 1:08 He did product and security leadership at HPE, Dell, and RSA.
  14. 1:13 And he's got something like a dozen patents to his name.
  15. 1:15 So he's kind of a legend in the space.
  16. 1:18 He also personally had a hand in curating this entire track.
  17. 1:21 So if you like the talk today, please go up and say thank you to him after.
  18. 1:24 But if not, then just don't blame me, basically.
  19. 1:28 But yeah, welcome to the stage, Manoj.
  20. 1:29 MANOJ KUMAR- Thanks.
  21. 1:35 Thank you, Randall.
  22. 1:36 I was not expecting a bio.
  23. 1:38 Hi, everyone.
  24. 1:39 Really appreciate you all joining here right after those great keynotes up front.
  25. 1:45 I'm Manoj Nair, and I have the
  26. 1:49 Pleasure of leading an amazing team that is helping secure about 5,000 enterprise customers around the globe.
  27. 1:57 So I get to look good about all of that.
  28. 1:59 But some of what I'm going to show is real data from those customers.
  29. 2:03 Half of Fortune 500 runs on Snyk, and some of the data is from those learnings.
  30. 2:12 But before that, I also want to talk about this.
  31. 2:14 The title of the talk was Cutting Through the AI Fog, I think.
  32. 2:17 Well, the way we do that is by having tracks like this.
  33. 2:21 So last year, we stood here.
  34. 2:22 There were 3,000 people at the AI Engineer World's Fair.
  35. 2:26 And it really felt like security was missing in the room.
  36. 2:30 And thanks to SWIX and the amazing partnership with the AI Engineer organization, we created the AI Security Summit in partnership with them.
  37. 2:37 And we're creating this track.
  38. 2:39 So it is really good to see this and all the great speakers who are going to talk here today with some fantastic knowledge.
  39. 2:46 But that is, in our mind, that's how we cut to the fall.
  40. 2:50 Security needs to be very much part of the room.
  41. 2:53 We're very passionate about it, not slowing things down.
  42. 2:56 But really, that's how you build trusted systems.
  43. 3:00 One thing you're going to hear from me quite a bit in this, if you take one thing, it's this notion of our learning from this real life data and working with the biggest frontier labs in the world and the biggest companies in the world is this concept that has really been not questioned in security before, but it is being asked now.
  44. 3:23 Can, you know, the generator and the validator be the same?
  45. 3:27 And our point is, you know, in some of the data you'll show for all kinds of reasons, why not, right?
  46. 3:31 And almost like if you know Snyk, don't think about the supply chain security company that shifted left.
  47. 3:37 Like a lot of what you'll see is the last 18 months of what we have been doing with some of these very large enterprises and adopting, you know, these complex systems that we all enjoy and we love.
  48. 3:49 And what are we learning from that?
  49. 3:52 There are three problems that we hear when we talk to these customers.
  50. 3:58 And I want to share those, and I want to show some of the data behind that.

Chapters

  1. 0:00 Welcome to the first AI security track
  2. 1:46 Manoj takes the stage: securing 5,000 enterprises
  3. 3:07 The core question: can the generator also be the validator?
  4. 4:25 Autonomous attacks and the attacker that never sleeps
  5. 5:43 Why AI generated code makes old problems worse
  6. 7:02 Real data: 108% more security backlog, quarter over quarter
  7. 8:04 The Five Eyes warning and chained exploits
  8. 8:34 Toxic skills and poisoned environments
  9. 9:27 MCP servers and the GitHub MCP exploit
  10. 9:53 When an agent squirrels away your PII
  11. 10:34 You can't govern what you can't see
  12. 11:16 Red team data: which models leak PII
  13. 12:08 The generator vs validator benchmark
  14. 13:38 What Snyk built: prevention and Snyk Studio
  15. 14:20 Remediation at scale: 16,000 critical issues
  16. 15:37 Live demo: package health in the coding loop
  17. 19:03 Live demo: assessing a risky agent skill
  18. 21:02 Building EVO with the AI security community

Open at this second