Web3 CISO Open Source Dilemma: Why AI May Force Code To Go Dark | Haim Krasniker episode artwork

EPISODE · Apr 14, 2026 · 1H 1M

Web3 CISO Open Source Dilemma: Why AI May Force Code To Go Dark | Haim Krasniker

from The Web3 Security Podcast · host TheWeb3SecurityPodcast

StarkWare's CISO bootstrapped the Israeli Air Force's penetration testing team before spending years across mobile forensics at Cellebrite, email security at Proofpoint, and enterprise DevSecOps at Red Hat. That depth across offensive and defensive disciplines is rare in Web3, and it shows in how Haim Krasniker thinks about protocol security.In this episode, Haim gets specific about the tradeoffs most CISOs won't say out loud: why real-time monitoring is nearly useless without pre-built enforcement mechanisms, why checking compliance boxes in Web3 is actively dangerous, and why the open source model for smart contracts may not survive the next wave of AI-assisted exploitation. He also shares a take on the future of bug bounty programs that Sherlock happens to agree with.Topics discussed:Postmortem culture from the Israeli Air Force as a blueprint for proactive securityWhy Web3 incident response windows are measured in minutes, not hoursDesigning withdrawal limits against false positive rates to protect users without censoring themRunning 300+ custom monitoring rules internally instead of relying on vendor defaultsDev sandboxes as the security architecture for AI coding tools and CICD supply chain riskStaked bug bounty submissions as a filter against AI-generated report floodingThe open source versus closed source debate as AI lowers the cost of smart contract exploitationNative on-chain privacy through STRK20 as an institutional adoption prerequisite

Episode metadata supplied by the publisher feed · Published Apr 14, 2026

Embed this episode

Ready to play

Web3 CISO Open Source Dilemma: Why AI May Force Code To Go Dark | Haim Krasniker

0:00 1:01:56

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of The Web3 Security Podcast?

This episode is 1 hour and 1 minute long.

When was this The Web3 Security Podcast episode published?

This episode was published on April 14, 2026.

Can I download this The Web3 Security Podcast episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!