
Episode #242
Why You Can't Commit to One AI Provider Anymore with Matthew Sanders - Ep 242
Guest Introduction Matthew Sanders is the CISO at Slingshot Aerospace , a company that combines a global sensor network with AI and advanced analytics to help government and commercial customers understand what's happening in space and operate safely. Because of the nature of Slingshot's work, Matthew's biggest concern isn't financially motivated criminals, it's patient nation-state actors willing to linger inside a system undetected for extended periods. He joins the show to talk through prompt injection and model poisoning risk, a striking recent Anthropic threat intelligence report on real world misuse of its own models, and why depending on a single AI provider has become a genuine supply chain risk for organizations in the defense industrial base. Here's a Glimpse of What You'll Learn Why Matthew says nation-state actors, not financially motivated criminals, are his top concern at Slingshot How a recent Anthropic security report revealed threat actors building entire phishing campaigns with minimal prompting Why Matthew believes patching no longer means what it used to against AI-discovered zero days How Matthew uses Claude daily as a second opinion to catch his own team's missed security settings Why defense industrial base policy shifts are forcing security teams away from single-provider AI lock-in How Matthew thinks AI assisted testing could finally solve the oldest blocker in patch management Why Matthew believes the tide in the AI arms race may finally be shifting toward defenders In This Episode Matthew opens by laying out just how much AI has reshaped the security conversation at a company built entirely around AI-driven space intelligence. He walks through the layered risk: prompt injection and model poisoning inside Slingshot's own products, attackers using AI to iterate on attacks faster than ever, and a governance challenge every security leader now faces, trying to understand what tools employees are actually using without slowing the business down. He references a security report Anthropic published just before the recording, detailing how threat actors, including a Russian group targeting Ukraine-based companies, used Claude with only basic instructions to build complete phishing campaigns, compromise hotel Wi-Fi, and create malware targeting iOS, all capability that would have required far more sophistication just a year earlier. He also points back to the MGM breach as a reminder that attackers don't need to target end users at all, since in that case it was a sophisticated IT team itself that got socially engineered. The conversation turns to where Matthew sees real opportunity rather than just risk. He's candid that watching Darktrace's Secure AI product gives him a genuine glimpse of the future, tools that let security professionals finally see what their own organization is doing with AI in real time, the same visibility advantage attackers have enjoyed for longer than defenders have. He argues the fundamentals, zero trust, least privilege, patching, matter more than ever precisely because AI defense tools don't replace them, and describes using Claude personally as a daily second opinion, feeding in his own SSP and compliance documentation to check whether his team is actually doing what they claim to be doing, catching missed settings in minutes rather than letting them slip through unnoticed. He also sees a major unsolved opportunity in AI-assisted testing, arguing the oldest blocker in patch management, the fear that an update will quietly break something else, could finally be addressed if AI could validate changes before they ship rather than after. The back half of the episode gets into the operational realities of running security in the defense industrial base during a moment of real policy upheaval. Matthew describes watching organizations get caught flat-footed when a model provider gets restricted for supply chain reasons overnight, forcing a scramble to alternative tools like Cursor or Codex, and argues this volatility means security leaders can no longer commit to a single AI provider the way they once committed to a single cloud vendor. He connects this to the ongoing pause on CMMC Level 2 requirements and the broader shift toward FedRamp's newer, more automation-driven approach, predicting that continuous AI monitoring will eventually replace much of the paperwork-heavy compliance process entirely. He closes on what he calls a genuinely exciting use case: feeding a full SSP into Claude to get instant gap analysis and self-auditing that used to take a human auditor a full week, compressed down to hours. Sponsor for this episode This episode is brought to you by Cyberlynx CyberLynx is a Bethesda managed IT and cybersecurity company. Local techs you know, not a call center. Month-to-month. 24/7 intrusion detection. We help growing companies with managed IT, help desk, backup and recovery, and a fractional CIO. Talk to us at https://cyberlynx.com/contact , info@cyberlynx.com , or 301-798-9170.

