Episode archive

The Invisible Code Problem: When You Can’t See the Attack, Can You Stop It?

· 37 min · Season 4, Episode 4

Listen to the conversation

Download this episode

Show notes

In this episode, we dive into the strange world of invisible Unicode attacks and what they could mean for modern software security. We explore how hidden characters can be used to conceal malicious code within packages, why this isn’t entirely a new problem, and whether current tools, such as linters and SAST, are equipped to detect it. We also question the role of LLMs in both enabling and detecting these attacks, and whether this is a real emerging threat or just another overhyped security scare. Per usual, the conversation is filled with sarcasm, skepticism, and a healthy dose of “just don’t do it.


Originally published as The Security Table. Part of the AI Security Table archive.