- 34 minutes 1 secondSoap Box: HD Moore talks OT security, frontier fearmongering and more
In this sponsored Soap Box edition of the Risky Business podcast Patrick Gray chats with industry legend HD Moore about how his company runZero wound up being used heavily to discover OT devices in enterprise networks.
They also talk about the vulnpocalypse and how frontier lab fearmongering is reminiscent of the collective freakout when HD released the Metasploit exploit framework back in 2003.
This episode is also available on YouTube.
Show notes
29 September 2026, 10:50 pm - 54 minutes 49 secondsRisky Business #854 -- We're Jevpilled
THE RISKY BUSINESS WEEKLY SHOW IS NOW ON HIATUS FOR TWO WEEKS AND WILL RETURN OCTOBER 14
On this week’s show Patrick Gray and James Wilson are joined by Adam Boileau to talk through the week’s news, including:
- Google’s Gemini finally did some crimes
- OpenAI admits more agents did silly things because “alignment”
- US Treasury’s Scott Bessent rules out a liability waiver for the frontier labs, saying, roughly: “Lol. Lmao even.”
- Jev is Silicon Valley’s “hot dog/not hotdog” app brought to life, and it will really improve security tooling
- The FBI and Coast Guard boarded oil tankers after they were allegedly hacked
- Much, much more…
This week’s show is brought to you by Thinkst Canary. Founder Haroon Meer joins Patrick to talk about Thinkst’s new deception tools that trick the AI agents that are targeting you. It’s actually hilarious how well deception tech works against hacking agents.
This episode is also available on YouTube
Show notes
- Google says its AI model gained unauthorized access to three outside systems | NBC News Tech
- OpenAI details more cases of AI agents taking unauthorized actions | BleepingComputer
- Researchers escape OpenAI Codex sandbox to run commands on host | BleepingComputer
- Hackers breached OpenAI, adding to fever pitch of security and safety concerns | NBC News Tech
- Treasury’s Scott Bessent says no liability exemptions for AI labs | Social Signals
- Scott Bessent meets with Chinese official on AI safety | NBC News Tech
- U.S. proposes exchanging AI safety alerts with China, Bessent says | NBC News Tech
- Trump says he’s creating an AI force and appointing a czar amid concerns over the rapidly developing tech | NBC News Tech
- AI hallucination of Chinese nuclear components almost led to US military attack | Ars Technica
- Cybersecurity experts say AI giants are shutting them out of safety plans | nbcnews.to
- What Is Jev? A Guide to TypeSafe AI’s System One Model |
- FBI and Coast Guard boarded US-bound oil tankers after signs the ships were hit with cyberattacks | apnews.com
- Brevo supply-chain attack injected ClickFix scripts on customer sites | BleepingComputer
- Cisco alerts customers to second actively exploited zero-day in as many days | cyberscoop.com
- Hacking group ‘NightEagle’ targeting China’s high-tech sector expands operations to Russia | therecord.media
- Nations take action on North Korean IT workers after UN report | therecord.media
- North Korean hackers infect thousands of devices across 100 countries as part of ‘WaterPlum’ campaign | therecord.media
- An Undercover Google Analyst Infiltrated a Notorious Supply Chain Hacking Gang | wired.com
- Two arrested in UK after Microsoft takedown of ‘Eviltokens’ AI-chatbot for cybercriminals | therecord.media
- NightmareStresser DDoS Service Disrupted in International Operation | securityweek.com
- Brevo Supply Chain Attack Injects Malware Into 100,000 Websites | securityweek.com
- WordPress Click2Shell flaw lets hackers execute PHP on the server | BleepingComputer
- ShinyHunters cybercrime gang takes over Cl0p ransomware site, demands extortion payment | therecord.media
- Hacking group ShinyHunters claims it breached the FBI, stole agents’ and applicants’ data | TechCrunch Security
- Early Scattered Spider member pleads guilty to cybercrime spree | cyberscoop.com
- CISA promotes a fresh way to deter cyberattackers: Lie to them | Social Signals
- Getting agents to tell on themselves
23 September 2026, 6:08 am - 59 minutes 8 secondsRisky Business #853 -- We're all gonna die, apparently
On this week’s show Patrick Gray and James Wilson are joined by former US Cyber Command executive director turned PwC’s Cyber, Data & Technology Risk leader Morgan Adamski to talk through the week’s news, including:
- More tech guys penned more open letters and AI will destroy us all!
- Another Wednesday, another congregation of OpenAI agents on wikis… yawn
- OpenAI agents were behind the headscratching RubyGems hacking campaign in May
- The FBI will disrupt more adversary operations, NSA is creating more mission centres, lawmakers want sanctions on hackers-for-hire… Release more hounds!
- So many platforms, so many bugs, so many patches breaking other stuff
- Much, much more…
This week’s show is brought to you by Airlock Digital. Its co-founders Daniel Schell and David Cottingham join Patrick to talk about how Airlock has integrated itself with Crowdstrike via its Falcon Foundry platform.
This episode is also available on YouTube
Show notes
- AI researcher says there is 'substantial probability' AI could kill all humans in next decade | NBC News Tech
- Dario Amodei — We Must Pace the Frontier | Social Signals
- China spy chief points at US AI models in cyber threat warning | therecord.media
- Weixin Official Accounts Platform |
- Trump calls concerns over A.I. destroying humanity a “hoax” | NBC News Tech
- Dr_Gingerballs (@Dr_Gingerballs) on X | X (formerly Twitter)
- Sam Altman backs Anthropic CEO's call to slow down the global AI race | NBC News
- Anthropic: Detecting and countering misuse of AI, September 2026 | anthropic.com
- AI lets small actors run state-level hacking campaigns, Anthropic report finds | cyberscoop.com
- Users in Houthi-held Yemen tried to develop advanced weapons with AI, Anthropic says | apnews.com
- Anthropic caught Russia-linked spies using Claude in hacking operations | therecord.media
- OpenAI's rogue agents used at least 10 more sites for unauthorized comms, researchers say | reuters.com
- Researchers say OpenAI agents were behind May hacking campaign targeting RubyGems | cyberscoop.com
- Anthropic claims Moonshot, DeepSeek secretly diverted user requests to Claude | South China Morning Post
- WeWorm | Social Signals
- Hackers exploit Tencent app flaw to deploy GrayRabbit malware | BleepingComputer
- New FBI cyber strategy promises increase in adversary disruptions | Cybersecurity Dive
- US disrupts Xinbi Guarantee marketplace fueling the cyber scam economy | therecord.media
- Thorough reorganization at NSA will create five 'mission centers,' including cyber and AI | therecord.media
- Lawmakers call on Treasury to sanction hackers-for-hire | cyberscoop.com
- CISA: WatchGuard RCE flaw now exploited in ransomware attacks | BleepingComputer
- Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent | BleepingComputer
- GitLab’s critical flaw is already drawing internet-wide probes | cyberscoop.com
- Cisco warns customers of actively exploited zero-day in email gateways | cyberscoop.com
- 4 groups caught using the same Chrome and Windows exploit kit | Ars Technica
- September Windows Server updates break Remote Desktop Services | BleepingComputer
- Microsoft confirms KB5002914 Excel update breaks copy and paste | BleepingComputer
- Microsoft: September updates break audio on some Windows PCs | BleepingComputer
- ClickFix attacks infecting PCs and Macs are going viral | arstechnica.com
- Passkey-themed phishing attacks lead to Microsoft 365 data theft | BleepingComputer
16 September 2026, 4:03 am - 42 minutesSnake Oilers: watchTowr, XBOW and CoreView
In this edition of the Snake Oilers podcast three vendors stop by to pitch the audience on their products:
- watchTowr: We’re all familiar with watchTowr’s research, but what do they actually do?
- XBOW: The AI pentesting company pitches its approach
- CoreView: Your M365 tenant is probably a security disaster. Tame it with CoreView!
This episode is also available on YouTube.
Show notes
11 September 2026, 1:33 am - 1 hour 3 minutesRisky Business #852 -- Cyber Command wants to buy shells
On this week’s show Patrick Gray and James Wilson are joined by guest co-host Robby Winchester from SpecterOps to talk through the week’s news, including:
- ID verification company IDScan was breached and 153m driver licenses wound up for sale online. Cue the barrage of lawsuits
- The US government plans to pay private contractors to conduct military hacks
- The US accuses China of distillation attacks, a.k.a. forbidden training
- It’s Wednesday, so OpenAI’s agents escaped sandboxes again and passed notes around on a German Wiki
- Much, much more…
This week’s show is brought to you by Sublime Security. Sublime’s head of detection engineering Randy Pargman joins the show to chat about how the company is preparing for prompt injection attacks to move from being largely theoretical to commonplace.
This episode is also available on YouTube
Show notes
- FBI Probes Service Selling 153M+ Drivers Licenses | Krebs on Security
- IDScan sued over alleged data breach affecting 153 million drivers | BleepingComputer
- Senate Considers Allowing Contractors to Conduct Military Hacks | bloomberg.com
- Feds accuse China of ‘systematic’ distillation of U.S. AI models | cyberscoop.com
- Dropbox accounts breached through Lenovo email verification flaw | BleepingComputer
- FBI raises alarm over deceptive phishing campaign targeting prominent people | cyberscoop.com
- Microsoft warns of TerminalFix attacks deploying reverse tunnels | BleepingComputer
- OpenAI agents discussed ways to escape their sandbox on public wiki | arstechnica.com
- OpenAI releases new model that it says triggered internal security measures | NBC News Tech
- Trump may be forced to reveal secret rules feds use for AI safety testing | Social Signals
- Microsoft posts nearly 1,000 bugs for Patch Tuesday as CISA warns two being exploited | therecord.media
- Security Incident – BGP Hijacking – Virtualizor |
- Coder's registry infrastructure compromised to push malicious modules | BleepingComputer
- Pegasus, NoviSpy variant spyware found on devices of Serbian activists | cyberscoop.com
- European parliament members call for slowdown of Serbia’s EU entry over spyware use | CyberScoop
- New pro-Ukraine hacker group targets Russian companies with custom ransomware | therecord.media
- US military disabled ad tracking on troops’ devices following reports of targeted attacks | TechCrunch Security
- New CrowdStrike 'FalconFlank' zero-day grants SYSTEM privileges | BleepingComputer
- A hacker stole $340M in a crypto heist, then returned most of it | TechCrunch Security
- ‘White hat’ hackers take $47 million bounty after $320 million crypto theft | therecord.media
9 September 2026, 5:32 am - 58 minutes 38 secondsRisky Business #851 -- Agents are just ones and zeros, and tigers are just atoms
On this week’s show Patrick Gray and James Wilson are joined by guest co-host The Grugq to talk through the week’s news, including:
- Two alleged TeamPCP hackers got arrested in Australia
- The White House has a plan to boost security for water facilities, but we can’t see it working
- OpenAI keeps the ol’ Hugging Face discourse going for another week with an incident debrief
- Tech companies write another open letter about AI… we’re getting CISA Shields Up flashbacks, but for robots
- Much, much more…
This week’s show is brought to you by Ent AI. Co-founder Brandon Dixon joins Pat to talk through some of the absolutely wild fraud and abuse the company’s endpoint security tool is finding when it’s deployed inside large organisations.
This episode is also available on YouTube
Show notes
- Two Alleged ‘TeamPCP’ Hackers Arrested in Australia | krebsonsecurity.com
- How Brian Krebs doxxed TeamPCP - Risky Business Media | Social Signals
- FIRST ON FOX: Texas becomes testing ground for new defense against attacks on America’s water systems | Social Signals
- OpenAI’s Hugging Face Hack Debrief Raises More Questions Than It Answers | wired.com
- The Rise and Fall of Agent Civilizations |
- clem 🤗 (@ClementDelangue) on X | X (formerly Twitter)
- Matthew Zeitlin (@MattZeitlin) on X | X (formerly Twitter)
- 100-plus companies call for ‘global surge’ in AI-powered cyber defense | CyberScoop
- China's AI-Enabled APT Operations Are Getting Interesting - Risky Business Media |
- SilkParasite: Tracking a China-Nexus APT Across Central Asia |
- DoD confirms ‘refrigeration disruption’ at military commissaries | Military Times
- Claude, Codex, and Hermes installed unowned code inside corporate networks | arstechnica.com
- Ukraine to give Britain access to battlefield data to train AI | therecord.media
- Anthropic warns infostealer malware is hijacking Claude sessions to drain usage | BleepingComputer
- White House bans foreign-made equipment for power generation over cyber backdoor concerns | therecord.media
- Large DDoS attack knocks Norwegian public services offline | The Record
- Researchers warn about chained SharePoint sequence | Cybersecurity Dive
- PaperCut warns of hackers using printer management software flaw in attacks | therecord.media
- AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes | BleepingComputer
- Slovenian casinos reopen after cyberattack knocked gaming systems offline | therecord.media
- DOJ firearms agency says hackers breached system containing investigation targets | therecord.media
2 September 2026, 2:22 am - 1 hour 2 minutesRisky Business #850 -- Widespread AI-enabled attacks target Siemens PLCs
On this week’s show Patrick Gray and James Wilson are joined by guest co-host Ollie Whitehouse, the CTO of the UK’s NCSC, to talk through the week’s news, including:
- Iranian hackers take down a small-scale power generator in the UK
- Siemens PLCs in critical US sectors are also being targeted… We’re stumped on who could be behind that one, too.
- Microsoft fixed a CVSS 10 deserialisation bug in Entra before someone else found it and owned the planet
- Prompt injection isn’t going away
- LLMs are deceiving us meat sacks and it’s a worry
- Much, much more…
This week’s show is brought to you by Okta. VP of Threat Intel Brett Winterford joins the show in this week’s sponsor interview to talk James through how the company is turning its plethora of accumulated data into free alerting for its customers. They also chat about Okta’s new threat intelligence product line.
This episode is also available on YouTube
Show notes
- Iran-linked hackers blamed for cyber-attack that shut down UK power plant | theguardian.com
- Hackers using AI to target Siemens PLCs in critical US sectors | securityweek.com
- Defending Against an Active Threat to Siemens S7 Series PLCs | IC3.gov Industry Alerts
- US charges Iranians for sprawling hacking campaign on government agencies, universities | therecord.media
- T-Mobile ‘chopped a cable’ to expel Chinese hackers from its network | techcrunch.com
- The long tail of Clop’s PTC hack is just beginning to emerge | cyberscoop.com
- CISA: Medusa ransomware hit over 500 critical infrastructure orgs | BleepingComputer
- Ransomware disproportionately targets medium-sized firms, straining customer relationships | Cybersecurity Dive
- Microsoft warns of max severity Entra ID flaw exploited in attacks | BleepingComputer
- Critical RCE flaw in Windows IKE Extension now actively exploited | BleepingComputer
- Rust supply chain attack linked to North Korean hackers | securityweek.com
- Grok exfiltrates user data when malicious instructions are encrypted | arstechnica.com
- New phishing toolkit uses passkeys to maintain access after password resets | securityweek.com
- Password spraying attacks surge 155x as hackers exploit MFA gaps | BleepingComputer
- Hackers compromise 14,500 Dahua web cameras in 35-day campaign | BleepingComputer
- Hackers infect Android car head units with proxy botnet malware | BleepingComputer
- ToxicPanda Android malware uses VPN permissions to block Google Play | BleepingComputer
- New Manic Android malware can exfiltrate data through nearby devices | BleepingComputer
- Citrix urges admins to patch new NetScaler flaws as soon as possible | BleepingComputer
- AliExpress caught fingerprinting visitors after sending inaudible sounds to browsers | arstechnica.com
- EXCLUSIVE: How a Texas student blew the whistle on a rogue AI hacking attempt | reuters.com
- Detections and customer notifications | Okta Threat Intelligence
26 August 2026, 1:53 am - 59 minutes 6 secondsRisky Business #849 -- Trump will unleash contractors on cybercriminals
On this week’s show Patrick Gray and James Wilson are joined by guest co-host Dmitri Alperovitch to talk through the week’s news, including:
Trump’s memo authorising the private sector to release the cyber hounds is fine, don’t worry! OpenAI finally decides to add a few safety measures after the whole “oopsie we committed some felonies” thing Anthropic’s models start a turf war when given the same task, surprising… nobody We can’t figure out whether a device that can hack a 737 is showboating stunt hacking or … something more real-world cool. Or both. Or something. Much, much more
This week’s show is brought to you by threat hunt and detection platform Nebulock. Founder and CEO Damien Lewke joins Pat to chat about what it looks like when you try to reinvent the SIEM in 2026 on a clean sheet of paper.
This episode is also available on YouTube
Show notes
- Trump signs memo authorizing private sector to launch cyberattacks | washingtonpost.com
- Trump taps cyber firms to go on offensive against criminals | therecord.media
- OpenAI Overhauls Safety Protocols After Its AI Agents Went Rogue | wired.com
- Pacing model development in an era of cyber-critical capabilities |
- Anthropic set AI agents loose on the same task. They started a turf war. | TechCrunch Security
- Researchers observe first ‘near-autonomous’ AI attack on government target in Taiwan | cyberscoop.com
- Researchers find AI-powered hacking tools for sale in underground forums | Cybersecurity Dive
- Terabytes of credentials leaked in massive supply-chain attack | arstechnica.com
- Trivy, Not LiteLLM Behind the 2,500 Org Compromise | securityweek.com
- Ukraine says cyberattack hit Russian e-commerce giant Wildberries amid drone strikes | The Record
- ‘Unprecedented’ number of Apple users received recent spyware alert, say investigators | TechCrunch Security
- This Coin-Sized Device Can Hack a Boeing 737 | wired.com
- "City-Forum" data-theft attacks target Salesforce, ServiceNow portals | BleepingComputer
- Max severity SAP Commerce Cloud flaw now targeted in attacks | BleepingComputer
- Shell investigates 'potential incident' after Clop data theft claims | BleepingComputer
- Philips and GE investigating Clop ransomware data theft claims | BleepingComputer
- Uber Freight reportedly investigating after hacking group claims data breach | TechCrunch Security
- Details emerge on BlackFile’s recent attacks on financial companies | cyberscoop.com
- After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug | TechCrunch Security
- Kimwolf botnet rebuilt to survive takedowns, researchers say | cyberscoop.com
- Hundreds of fake Chrome VPN extensions route traffic through a proxy | BleepingComputer
- Deepfake hiccup unmasks suspected digital certificate fraudster | theregister.com
- Vulnerability giving attackers full control of Macs is under active exploitation | arstechnica.com
- Critical VMware vCenter RCE flaw exploited for reverse SSH access | BleepingComputer
- Poland probes MyDr healthcare software breach potentially affecting 19 million people | therecord.media
- Crypto hardware wallet owners face fresh security risks after recent spate of personal data thefts | TechCrunch Security
- [un]prompted.au — AI × Cybersecurity Conference · Sydney, 18–19 September 2026 | [un]prompted.au
19 August 2026, 3:23 am - 29 minutes 4 secondsSoap Box: Zero Trust(ish) Networks
In this Soap Box edition of the Risky Business podcast host Patrick Gray chats with Adam Pointon, CEO of Knocknoc, about the failure of Zero Trust as a comprehensive architecture.
Most networks look like they were designed in 1999, and most Zero Trust products look like they were designed for 2049.
Instead, Patrick and Adam pitch something in the middle: Zero Trust(ish) networks, where Zero Trust principles are applied selectively where possible.
Instead of trying to re-architect entire networks, maybe it’s time we learned to apply Zero Trust principles selectively against risky assets. It’s a better approach than the status quo, which involves liberal use of the “risk accepted” stamp.
This episode is also available on YouTube
Show notes
14 August 2026, 2:23 am - 59 minutes 47 secondsRisky Business #848 -- OpenAI comes clean
On this week’s show Patrick Gray and James Wilson are joined by guest co-host Brad Arkin to talk through the week’s news, including:
- The AI-agent-hacks-stuff saga continues. This week we have one booting gymgoers from full classes to nab its owner a spot
- Somehow OpenAI’s legal team allowed the company to spill all the Hugging Face tea at BlackHat and it’s hot and delicious
- More details emerge about Iran’s hacking campaign against US water utilities, but Brad is unimpressed
- It turns out TeamPCP has been around longer than we thought and predates the AI era
- Some absolute plonker kept the DEFCON party going on a Delta flight home. No word yet on if they made the plane fly sideways
- Much, much more
This week’s show is brought to you by cloud security platform Prowler. Founder and CEO Toni de la Fuente chats about what the company is doing with AI and some of the cool ways customers are using it with Prowler.
This episode is also available on YouTube
Show notes
- How a simple request for AI to book a gym class exposed a major threat | Social Signals
- OK, Well, There Are Even More AI Agent Hacking Incidents | wired.com
- OpenAI BlackHat talk re Hugging Face incident |
- OpenAI says Daybreak will expand to offer specialized cyber services | CyberScoop
- Cyberattacks targeting water systems expand to 12 states as South Dakota, Georgia announce incidents | therecord.media
- Cyberattack on North Carolina Ports ‘contained’ as Coast Guard, state officials investigate | therecord.media
- Local governments in four states dealing with cyberattacks that have shut down services | The Record
- Follow-Up Report of the December 2025 Energy Sector Incident | CERT Polska
- Chinese telcos maintain deep US presence despite Salt Typhoon links, House committee says | The Record
- State Department says Trump raised cyber scam compound issue with Xi | therecord.media
- Open-source software’s archenemy TeamPCP goes back further than anyone thought | CyberScoop
- A Security Pro Hacked North Korean Hackers. He Found They’d Breached Hundreds of Networks Worldwide | wired.com
- Srsly Risky Biz: Being a North Korean Hacker Is About to Be Less Fun - Risky Business Media |
- Chrome adopts what may be the best protection yet against account takeovers | Ars Technica
- CSS:the bomb inside your inbox | PortSwigger Research
- Security update available for Metabase - Please upgrade now | Social Signals
- Canadian man pleads guilty to Snowflake hacks that led to 165 breaches | therecord.media
- British ‘Com’ member who abused more than 100 girls worldwide jailed for two years | therecord.media
- FBI says cybercriminals are hacking into victims’ online accounts to steal their intimate pictures | TechCrunch Security
- AI is getting better at election facts, but voters shouldn’t rely on it | CyberScoop
- The FTC wants to regulate AI for ideological bias | cyberscoop.com
- US and South Korea warn of Gunra ransomware targeting govt agencies | BleepingComputer
- CISA: Microsoft SharePoint flaw now exploited in ransomware attacks | BleepingComputer
- CISA: SonicWall SMA1000 flaws now exploited by ransomware gangs | BleepingComputer
- N-able N-central exploitation results in RMM tool deployment | Sophos
- Delta investigating after someone set up fake Wi-Fi network mid-flight | TechCrunch Security
- mcp-dashboard-demo/prompt/prowler_dashboard_prompt.md at main · prowler-cloud/mcp-dashboard-demo | GitHub
12 August 2026, 5:19 am - 1 hour 8 minutesRisky Business #847 -- Oops! Claude's accidental hacking spree
On this week’s show Patrick Gray, and James Wilson are joined by bearded man of leisure Adam Boileau to discuss the week’s cybersecurity news, including:
- Accidental AI agent hacking sprees have the world’s media freaking out, but we think it’s all pretty funny
- The bugpocalypse is so chaotic, Microsoft can’t patch fast enough
- A ColdCard wallet flaw led to millions in Bitcoin theft, but the back story behind the bug is bonkers
- Iran hacks and disrupts water infrastructure in multiple American states
- North Korea’s state-backed hackers turn criminal. Or their criminals turn into state-backed hackers. Or something. It’s all a bit confusing, actually.
- Much, much more!
This week’s show is brought to you by Sondera. Co-founder Josh Devon joins Patrick and James to talk through some absolutely hilarious LLM horror stories.
This episode is also available on YouTube
Show notes
- OpenAI says rogue agent behind Hugging Face hack broke into additional services | therecord.media
- Anthropic Says Claude Hacked Real Systems During Cybersecurity Tests | wired.com
- Claude uploaded malware to PyPI in Anthropic's botched test | BleepingComputer
- Nobody Knows if OpenAI’s and Anthropic’s AI Hacking Sprees Are Illegal | wired.com
- Scanning 7.6 Petabytes of HuggingFace Training Data for Secrets Truffle Security Co. |
- Anthropic’s New AI Model Can Identify More Software Bugs Than Ever. Microsoft Is Struggling to Fix Them Fast Enough. | Social Signals
- Chrome Needs Twice-a-Week Patching Thanks to AI Bug Hunting | wired.com
- Google says it fixed more Chrome bugs in June than over the past two years, thanks to AI | TechCrunch Security
- Mythos uncovers crypto weaknesses that went unknown for years | arstechnica.com
- COLDCARD wallet RNG flaw likely linked to $88 million Bitcoin theft | BleepingComputer
- Chris Masterjohn (@ChrisMasterjohn) on X | X (formerly Twitter)
- wale.moca 🐳 (@waleswoosh) on X | X (formerly Twitter)
- U.S. spy agencies suspect Iran launched cyberattack on Minnesota water facilities | washingtonpost.com
- FBI investigates as Michigan joins Minnesota in reporting cyberattacks on its water systems | washingtonpost.com
- Trump blames Minnesota for cyberattacks on water sector, drawing pushback from cyber world | cyberscoop.com
- A Leaked Memo Ties Cyberattacks on Minnesota Water Utilities to Iran | wired.com
- Russia accuses Telegram founder of aiding terrorism, seeks international arrest | The Record
- Laundry Bear’s webmail hackers had more in store after February, report says | therecord.media
- CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft | Microsoft Security Blog
- Phishing service spoofs RingCentral to steal Microsoft 365 accounts | BleepingComputer
- North Korean hackers behind major open-source supply chain attacks, Amazon says | therecord.media
- North Korea’s Lazarus Group sharing tools with ransomware hackers, South Korean agencies warn | The Record
- North Korea arrests hackers accused of laundering stolen bank funds through crypto |
- US government bans new foreign-made humanoids, robot dogs, and solar inverters, citing risks to national security | TechCrunch Security
- Judge says Trump admin still lacks evidence for Anthropic 'supply chain risk' label | TechCrunch
- Cyber Command plans Silicon Valley office to drive innovation | therecord.media
- Apple is getting this wrong | OpenAI
- Tech industry alliance proposes AI agent safety reporting program | Cybersecurity Dive
- Massive ChainDrop npm supply-chain attack infects hundreds of packages | BleepingComputer
- Massive supply-chain attack compromises 440 packages under four hours | cyberscoop.com
5 August 2026, 6:10 am - More Episodes? Get the App