Every Website With AI Is Vulnerable Pen Testing the AI Attack Surface - Hackers On The Rocks Podcast

Ofir Hamam pours an arak with lemon juice, raises a glass from Tel Aviv, and opens with a claim worth unpacking: every website using AI is vulnerable at some level. Ofir is Head of Offensive Security at Terra Security, where his team does two things: pen tests organizations' AI-powered systems, and uses AI agents to conduct those assessments at scale. In this episode, we dig into both. On the target side — the non-deterministic nature of AI agents means traditional testing logic breaks down. You can't just throw a single quote character at the input and wait for an error. Every query might behave differently. And most engineers building these systems don't yet know how to test them, let alone secure them. Ofir walks through a real example: convincing a medical chatbot's agent that it had switched from production to staging — a completely reasonable instruction to the model — and using that to extract credentials it was never supposed to hand over. On the tooling side — Terra treats AI agents like junior pen testers. Broad knowledge, needs guidance. The key insight: don't give a single agent too much context. More context means more hallucination. Break the process into focused pieces, keep humans in the loop at the critical decision points, and accept that some things still need to be handled deterministically. The closing argument is worth sitting with: stop relying on the model to correct malicious intent. 99% compliance is not a security posture. 🥃 Drink of the Episode: Arak with Lemon Juice (L'chaim 🥂) Links: Ofir Hamam on LinkedIn:   / ofir-hamam-b88358a0   Terra Security: https://www.terra.security/ Website - https://www.desiredeffect.io/hackers-... Spotify - https://open.spotify.com/show/4A11X2N... About The Show: Hackers On The Rocks mixes refreshing conversation with potent cybersecurity insights. Each episode tackles a specific software vulnerability class and a cocktail. Both go down easy. Cheers! The cybersecurity world is a vibrant mix of technical talent and strategic minds. Here at Hackers on the Rocks, we raise a glass to the unsung heroes: the practitioners. While the broader community encompasses diverse roles including governance, risk, and compliance managers, network analysts, and incident responders, our podcast celebrates the hackers on the front lines. It is researchers who are deciphering code, digging into products, and finding unintended consequences within design implementations. Join us as we raise a glass to their expertise and translate their knowledge into clear, actionable insights for everyone. Hosted by Evan Dornbush, founder of Desired Effect — a cybersecurity consultancy helping organizations understand and act on complex threats. 🌐 https://desiredeffect.io

Attacking AI - Jason Haddix - NDC Security 2026
▶︎

Attacking AI - Jason Haddix - NDC Security 2026

Inside the Mind of Anthropic CEO Dario Amodei | The Circuit | Extended Interview
▶︎

Inside the Mind of Anthropic CEO Dario Amodei | The Circuit | Extended Interview

Interview with Oded Noy and Tony Karrer:25th Anniversary of the LA CTO Forum
▶︎

Interview with Oded Noy and Tony Karrer:25th Anniversary of the LA CTO Forum

The AI Bubble Crash Will Be Worse… | Ed Zitron | TMR
▶︎

The AI Bubble Crash Will Be Worse… | Ed Zitron | TMR

How to Hide in Plain Sight: Next-Level Digital Privacy | Ivan Banov at BSidesCache 2025
▶︎

How to Hide in Plain Sight: Next-Level Digital Privacy | Ivan Banov at BSidesCache 2025

Why Building Trusted Customer Relationships Is the Secret to Healthcare Startup Success
▶︎

Why Building Trusted Customer Relationships Is the Secret to Healthcare Startup Success

How a Free Error Leads to Root Access (Uninitialized Variables) - Hackers On The Rocks Podcast
▶︎

How a Free Error Leads to Root Access (Uninitialized Variables) - Hackers On The Rocks Podcast

Andrej Karpathy: From Vibe Coding to Agentic Engineering w/ Stephanie Zhan
▶︎

Andrej Karpathy: From Vibe Coding to Agentic Engineering w/ Stephanie Zhan

Inside Anthropic, the $965 Billion AI Juggernaut | The Circuit
▶︎

Inside Anthropic, the $965 Billion AI Juggernaut | The Circuit

Your Wi-Fi Is Watching: How SNR Turns Devices Into Human Detectors - Hackers On The Rocks Podcast
▶︎

Your Wi-Fi Is Watching: How SNR Turns Devices Into Human Detectors - Hackers On The Rocks Podcast

CLAUDE CODE ADVANCED FULL COURSE (3 HOURS)
▶︎

CLAUDE CODE ADVANCED FULL COURSE (3 HOURS)

AI is MUTATING: And We Don't Know What It is Doing | Connor Leahy
▶︎

AI is MUTATING: And We Don't Know What It is Doing | Connor Leahy

AI Wants Your Life: Tech Boss Meredith Whittaker Says No | The Mishal Husain Show
▶︎

AI Wants Your Life: Tech Boss Meredith Whittaker Says No | The Mishal Husain Show

Building the PERFECT Linux PC with Linus Torvalds
▶︎

Building the PERFECT Linux PC with Linus Torvalds

Keynote: After the AI Hype – What’s Real, and What’s Next - Richard Campbell - 2026
▶︎

Keynote: After the AI Hype – What’s Real, and What’s Next - Richard Campbell - 2026

The #1 AI Vulnerability Nobody Knows How to Fix (Prompt Injection) - Hackers On The Rocks Podcast
▶︎

The #1 AI Vulnerability Nobody Knows How to Fix (Prompt Injection) - Hackers On The Rocks Podcast

Unlearn Negative Thoughts & Behaviors Patterns | Dr. Alok Kanojia (Healthy Gamer)
▶︎

Unlearn Negative Thoughts & Behaviors Patterns | Dr. Alok Kanojia (Healthy Gamer)

Why AI Agents are either the best or worst thing we’ve ever built
▶︎

Why AI Agents are either the best or worst thing we’ve ever built

Top 13 Hacking Tools for 2026 (ft. OTW)
▶︎

Top 13 Hacking Tools for 2026 (ft. OTW)

How To Think SO CLEARLY People Assume You're A Genius
▶︎

How To Think SO CLEARLY People Assume You're A Genius