BSidesCharm2025

Threat Modeling Meets Model Training: Web App Security Skills for AI
2025-04-13 , Track 1

New specializations have emerged in this AI-adoring age, but where does that leave security practitioners? Good news: if you know web application security, you can secure AI applications too! This talk explores common web app security concerns that are relevant to any LLM-based app—and the handful of issues unique to AI—guiding the audience through ways to detect and mitigate them.

Breanne Boland is a product security engineer at Gusto. She's also done vendor security at Salesforce and spent time in the infra mines. Before that, she had a whole other career in online content, and she may never recover. When she's not encouraging engineers to do things a little differently than planned, she's writing speculative fiction novels, taking long walks around New York City, or saying hi to your pet on Zoom. She lives in Brooklyn, and you can find her @toxoplasmosis@mastodon.social