
Advertise on podcast: Risky Business
Rating
4.6from
This podcast has
102 episodes
Language
EnglishPublisher
Risky Business MediaExplicit
No
Date created
2007/02/20
Latest episode
2026/09/29
Average duration
55 min.
Release period
7 days
Description
Risky Business is a weekly information security podcast featuring news and in-depth interviews with industry luminaries. Launched in February 2007, Risky Business is a must-listen digest for information security pros. With a running time of approximately 50-60 minutes, Risky Business is pacy; a security podcast without the waffle.
Unlock Risky Business podcast Email contact info,
Listeners & Audience details
Email contact information
Direct podcast contact details

Listeners
Audience numbers & engagement insights

Audience details
Podcast Insights

Social media
Check Risky Business social media presence
Podcast episodes
Check latest episodes from Risky Business podcast
Soap Box: HD Moore talks OT security, frontier fearmongering and more
2026/09/29
In this sponsored Soap Box edition of the Risky Business podcast Patrick Gray chats with industry legend HD Moore about how his company runZero wound up being used heavily to discover OT devices in enterprise networks.
They also talk about the vulnpocalypse and how frontier lab fearmongering is reminiscent of the collective freakout when HD released the Metasploit exploit framework back in 2003.
This episode is also available on YouTube.
Show notes
Risky Business #854 -- We're Jevpilled
2026/09/23
THE RISKY BUSINESS WEEKLY SHOW IS NOW ON HIATUS FOR TWO WEEKS AND WILL RETURN OCTOBER 14
On this week’s show Patrick Gray and James Wilson are joined by Adam Boileau to talk through the week’s news, including:
Google’s Gemini finally did some crimes
OpenAI admits more agents did silly things because “alignment”
US Treasury’s Scott Bessent rules out a liability waiver for the frontier labs, saying, roughly: “Lol. Lmao even.”
Jev is Silicon Valley’s “hot dog/not hotdog” app brought to life, and it will really improve security tooling
The FBI and Coast Guard boarded oil tankers after they were allegedly hacked
Much, much more…
This week’s show is brought to you by Thinkst Canary. Founder Haroon Meer joins Patrick to talk about Thinkst’s new deception tools that trick the AI agents that are targeting you. It’s actually hilarious how well deception tech works against hacking agents.
This episode is also available on YouTube
Show notes
Google says its AI model gained unauthorized access to three outside systems | NBC News Tech
OpenAI details more cases of AI agents taking unauthorized actions | BleepingComputer
Researchers escape OpenAI Codex sandbox to run commands on host | BleepingComputer
Hackers breached OpenAI, adding to fever pitch of security and safety concerns | NBC News Tech
Treasury’s Scott Bessent says no liability exemptions for AI labs | Social Signals
Scott Bessent meets with Chinese official on AI safety | NBC News Tech
U.S. proposes exchanging AI safety alerts with China, Bessent says | NBC News Tech
Trump says he’s creating an AI force and appointing a czar amid concerns over the rapidly developing tech | NBC News Tech
AI hallucination of Chinese nuclear components almost led to US military attack | Ars Technica
Cybersecurity experts say AI giants are shutting them out of safety plans | nbcnews.to
What Is Jev? A Guide to TypeSafe AI’s System One Model |
FBI and Coast Guard boarded US-bound oil tankers after signs the ships were hit with cyberattacks | apnews.com
Brevo supply-chain attack injected ClickFix scripts on customer sites | BleepingComputer
Cisco alerts customers to second actively exploited zero-day in as many days | cyberscoop.com
Hacking group ‘NightEagle’ targeting China’s high-tech sector expands operations to Russia | therecord.media
Nations take action on North Korean IT workers after UN report | therecord.media
North Korean hackers infect thousands of devices across 100 countries as part of ‘WaterPlum’ campaign | therecord.media
An Undercover Google Analyst Infiltrated a Notorious Supply Chain Hacking Gang | wired.com
Two arrested in UK after Microsoft takedown of ‘Eviltokens’ AI-chatbot for cybercriminals | therecord.media
NightmareStresser DDoS Service Disrupted in International Operation | securityweek.com
Brevo Supply Chain Attack Injects Malware Into 100,000 Websites | securityweek.com
WordPress Click2Shell flaw lets hackers execute PHP on the server | BleepingComputer
ShinyHunters cybercrime gang takes over Cl0p ransomware site, demands extortion payment | therecord.media
Hacking group ShinyHunters claims it breached the FBI, stole agents’ and applicants’ data | TechCrunch Security
Early Scattered Spider member pleads guilty to cybercrime spree | cyberscoop.com
CISA promotes a fresh way to deter cyberattackers: Lie to them | Social Signals
Getting agents to tell on themselves
Risky Business #853 -- We're all gonna die, apparently
2026/09/16
On this week’s show Patrick Gray and James Wilson are joined by former US Cyber Command executive director turned PwC’s Cyber, Data & Technology Risk leader Morgan Adamski to talk through the week’s news, including:
More tech guys penned more open letters and AI will destroy us all!
Another Wednesday, another congregation of OpenAI agents on wikis… yawn
OpenAI agents were behind the headscratching RubyGems hacking campaign in May
The FBI will disrupt more adversary operations, NSA is creating more mission centres, lawmakers want sanctions on hackers-for-hire… Release more hounds!
So many platforms, so many bugs, so many patches breaking other stuff
Much, much more…
This week’s show is brought to you by Airlock Digital. Its co-founders Daniel Schell and David Cottingham join Patrick to talk about how Airlock has integrated itself with Crowdstrike via its Falcon Foundry platform.
This episode is also available on YouTube
Show notes
AI researcher says there is 'substantial probability' AI could kill all humans in next decade | NBC News Tech
Dario Amodei — We Must Pace the Frontier | Social Signals
China spy chief points at US AI models in cyber threat warning | therecord.media
Weixin Official Accounts Platform |
Trump calls concerns over A.I. destroying humanity a “hoax” | NBC News Tech
Dr_Gingerballs (@Dr_Gingerballs) on X | X (formerly Twitter)
Sam Altman backs Anthropic CEO's call to slow down the global AI race | NBC News
Anthropic: Detecting and countering misuse of AI, September 2026 | anthropic.com
AI lets small actors run state-level hacking campaigns, Anthropic report finds | cyberscoop.com
Users in Houthi-held Yemen tried to develop advanced weapons with AI, Anthropic says | apnews.com
Anthropic caught Russia-linked spies using Claude in hacking operations | therecord.media
OpenAI's rogue agents used at least 10 more sites for unauthorized comms, researchers say | reuters.com
Researchers say OpenAI agents were behind May hacking campaign targeting RubyGems | cyberscoop.com
Anthropic claims Moonshot, DeepSeek secretly diverted user requests to Claude | South China Morning Post
WeWorm | Social Signals
Hackers exploit Tencent app flaw to deploy GrayRabbit malware | BleepingComputer
New FBI cyber strategy promises increase in adversary disruptions | Cybersecurity Dive
US disrupts Xinbi Guarantee marketplace fueling the cyber scam economy | therecord.media
Thorough reorganization at NSA will create five 'mission centers,' including cyber and AI | therecord.media
Lawmakers call on Treasury to sanction hackers-for-hire | cyberscoop.com
CISA: WatchGuard RCE flaw now exploited in ransomware attacks | BleepingComputer
Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent | BleepingComputer
GitLab’s critical flaw is already drawing internet-wide probes | cyberscoop.com
Cisco warns customers of actively exploited zero-day in email gateways | cyberscoop.com
4 groups caught using the same Chrome and Windows exploit kit | Ars Technica
September Windows Server updates break Remote Desktop Services | BleepingComputer
Microsoft confirms KB5002914 Excel update breaks copy and paste | BleepingComputer
Microsoft: September updates break audio on some Windows PCs | BleepingComputer
ClickFix attacks infecting PCs and Macs are going viral | arstechnica.com
Passkey-themed phishing attacks lead to Microsoft 365 data theft | BleepingComputer
Snake Oilers: watchTowr, XBOW and CoreView
2026/09/11
In this edition of the Snake Oilers podcast three vendors stop by to pitch the audience on their products:
watchTowr: We’re all familiar with watchTowr’s research, but what do they actually do?
XBOW: The AI pentesting company pitches its approach
CoreView: Your M365 tenant is probably a security disaster. Tame it with CoreView!
This episode is also available on YouTube.
Show notes
Risky Business #852 -- Cyber Command wants to buy shells
2026/09/09
On this week’s show Patrick Gray and James Wilson are joined by guest co-host Robby Winchester from SpecterOps to talk through the week’s news, including:
ID verification company IDScan was breached and 153m driver licenses wound up for sale online. Cue the barrage of lawsuits
The US government plans to pay private contractors to conduct military hacks
The US accuses China of distillation attacks, a.k.a. forbidden training
It’s Wednesday, so OpenAI’s agents escaped sandboxes again and passed notes around on a German Wiki
Much, much more…
This week’s show is brought to you by Sublime Security. Sublime’s head of detection engineering Randy Pargman joins the show to chat about how the company is preparing for prompt injection attacks to move from being largely theoretical to commonplace.
This episode is also available on YouTube
Show notes
FBI Probes Service Selling 153M+ Drivers Licenses | Krebs on Security
IDScan sued over alleged data breach affecting 153 million drivers | BleepingComputer
Senate Considers Allowing Contractors to Conduct Military Hacks | bloomberg.com
Feds accuse China of ‘systematic’ distillation of U.S. AI models | cyberscoop.com
Dropbox accounts breached through Lenovo email verification flaw | BleepingComputer
FBI raises alarm over deceptive phishing campaign targeting prominent people | cyberscoop.com
Microsoft warns of TerminalFix attacks deploying reverse tunnels | BleepingComputer
OpenAI agents discussed ways to escape their sandbox on public wiki | arstechnica.com
OpenAI releases new model that it says triggered internal security measures | NBC News Tech
Trump may be forced to reveal secret rules feds use for AI safety testing | Social Signals
Microsoft posts nearly 1,000 bugs for Patch Tuesday as CISA warns two being exploited | therecord.media
Security Incident – BGP Hijacking – Virtualizor |
Coder's registry infrastructure compromised to push malicious modules | BleepingComputer
Pegasus, NoviSpy variant spyware found on devices of Serbian activists | cyberscoop.com
European parliament members call for slowdown of Serbia’s EU entry over spyware use | CyberScoop
New pro-Ukraine hacker group targets Russian companies with custom ransomware | therecord.media
US military disabled ad tracking on troops’ devices following reports of targeted attacks | TechCrunch Security
New CrowdStrike 'FalconFlank' zero-day grants SYSTEM privileges | BleepingComputer
A hacker stole $340M in a crypto heist, then returned most of it | TechCrunch Security
‘White hat’ hackers take $47 million bounty after $320 million crypto theft | therecord.media
Risky Business #851 -- Agents are just ones and zeros, and tigers are just atoms
2026/09/02
On this week’s show Patrick Gray and James Wilson are joined by guest co-host The Grugq to talk through the week’s news, including:
Two alleged TeamPCP hackers got arrested in Australia
The White House has a plan to boost security for water facilities, but we can’t see it working
OpenAI keeps the ol’ Hugging Face discourse going for another week with an incident debrief
Tech companies write another open letter about AI… we’re getting CISA Shields Up flashbacks, but for robots
Much, much more…
This week’s show is brought to you by Ent AI. Co-founder Brandon Dixon joins Pat to talk through some of the absolutely wild fraud and abuse the company’s endpoint security tool is finding when it’s deployed inside large organisations.
This episode is also available on YouTube
Show notes
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia | krebsonsecurity.com
How Brian Krebs doxxed TeamPCP - Risky Business Media | Social Signals
FIRST ON FOX: Texas becomes testing ground for new defense against attacks on America’s water systems | Social Signals
OpenAI’s Hugging Face Hack Debrief Raises More Questions Than It Answers | wired.com
The Rise and Fall of Agent Civilizations |
clem 🤗 (@ClementDelangue) on X | X (formerly Twitter)
Matthew Zeitlin (@MattZeitlin) on X | X (formerly Twitter)
100-plus companies call for ‘global surge’ in AI-powered cyber defense | CyberScoop
China's AI-Enabled APT Operations Are Getting Interesting - Risky Business Media |
SilkParasite: Tracking a China-Nexus APT Across Central Asia |
DoD confirms ‘refrigeration disruption’ at military commissaries | Military Times
Claude, Codex, and Hermes installed unowned code inside corporate networks | arstechnica.com
Ukraine to give Britain access to battlefield data to train AI | therecord.media
Anthropic warns infostealer malware is hijacking Claude sessions to drain usage | BleepingComputer
White House bans foreign-made equipment for power generation over cyber backdoor concerns | therecord.media
Large DDoS attack knocks Norwegian public services offline | The Record
Researchers warn about chained SharePoint sequence | Cybersecurity Dive
PaperCut warns of hackers using printer management software flaw in attacks | therecord.media
AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes | BleepingComputer
Slovenian casinos reopen after cyberattack knocked gaming systems offline | therecord.media
DOJ firearms agency says hackers breached system containing investigation targets | therecord.media
Risky Business #850 -- Widespread AI-enabled attacks target Siemens PLCs
2026/08/26
On this week’s show Patrick Gray and James Wilson are joined by guest co-host Ollie Whitehouse, the CTO of the UK’s NCSC, to talk through the week’s news, including:
Iranian hackers take down a small-scale power generator in the UK
Siemens PLCs in critical US sectors are also being targeted… We’re stumped on who could be behind that one, too.
Microsoft fixed a CVSS 10 deserialisation bug in Entra before someone else found it and owned the planet
Prompt injection isn’t going away
LLMs are deceiving us meat sacks and it’s a worry
Much, much more…
This week’s show is brought to you by Okta. VP of Threat Intel Brett Winterford joins the show in this week’s sponsor interview to talk James through how the company is turning its plethora of accumulated data into free alerting for its customers. They also chat about Okta’s new threat intelligence product line.
This episode is also available on YouTube
Show notes
Iran-linked hackers blamed for cyber-attack that shut down UK power plant | theguardian.com
Hackers using AI to target Siemens PLCs in critical US sectors | securityweek.com
Defending Against an Active Threat to Siemens S7 Series PLCs | IC3.gov Industry Alerts
US charges Iranians for sprawling hacking campaign on government agencies, universities | therecord.media
T-Mobile ‘chopped a cable’ to expel Chinese hackers from its network | techcrunch.com
The long tail of Clop’s PTC hack is just beginning to emerge | cyberscoop.com
CISA: Medusa ransomware hit over 500 critical infrastructure orgs | BleepingComputer
Ransomware disproportionately targets medium-sized firms, straining customer relationships | Cybersecurity Dive
Microsoft warns of max severity Entra ID flaw exploited in attacks | BleepingComputer
Critical RCE flaw in Windows IKE Extension now actively exploited | BleepingComputer
Rust supply chain attack linked to North Korean hackers | securityweek.com
Grok exfiltrates user data when malicious instructions are encrypted | arstechnica.com
New phishing toolkit uses passkeys to maintain access after password resets | securityweek.com
Password spraying attacks surge 155x as hackers exploit MFA gaps | BleepingComputer
Hackers compromise 14,500 Dahua web cameras in 35-day campaign | BleepingComputer
Hackers infect Android car head units with proxy botnet malware | BleepingComputer
ToxicPanda Android malware uses VPN permissions to block Google Play | BleepingComputer
New Manic Android malware can exfiltrate data through nearby devices | BleepingComputer
Citrix urges admins to patch new NetScaler flaws as soon as possible | BleepingComputer
AliExpress caught fingerprinting visitors after sending inaudible sounds to browsers | arstechnica.com
EXCLUSIVE: How a Texas student blew the whistle on a rogue AI hacking attempt | reuters.com
Detections and customer notifications | Okta Threat Intelligence
Risky Business #849 -- Trump will unleash contractors on cybercriminals
2026/08/19
On this week’s show Patrick Gray and James Wilson are joined by guest co-host Dmitri Alperovitch to talk through the week’s news, including:
Trump’s memo authorising the private sector to release the cyber hounds is fine, don’t worry!
OpenAI finally decides to add a few safety measures after the whole “oopsie we committed some felonies” thing
Anthropic’s models start a turf war when given the same task, surprising… nobody
We can’t figure out whether a device that can hack a 737 is showboating stunt hacking or … something more real-world cool. Or both. Or something.
Much, much more
This week’s show is brought to you by threat hunt and detection platform Nebulock. Founder and CEO Damien Lewke joins Pat to chat about what it looks like when you try to reinvent the SIEM in 2026 on a clean sheet of paper.
This episode is also available on YouTube
Show notes
Trump signs memo authorizing private sector to launch cyberattacks | washingtonpost.com
Trump taps cyber firms to go on offensive against criminals | therecord.media
OpenAI Overhauls Safety Protocols After Its AI Agents Went Rogue | wired.com
Pacing model development in an era of cyber-critical capabilities |
Anthropic set AI agents loose on the same task. They started a turf war. | TechCrunch Security
Researchers observe first ‘near-autonomous’ AI attack on government target in Taiwan | cyberscoop.com
Researchers find AI-powered hacking tools for sale in underground forums | Cybersecurity Dive
Terabytes of credentials leaked in massive supply-chain attack | arstechnica.com
Trivy, Not LiteLLM Behind the 2,500 Org Compromise | securityweek.com
Ukraine says cyberattack hit Russian e-commerce giant Wildberries amid drone strikes | The Record
‘Unprecedented’ number of Apple users received recent spyware alert, say investigators | TechCrunch Security
This Coin-Sized Device Can Hack a Boeing 737 | wired.com
"City-Forum" data-theft attacks target Salesforce, ServiceNow portals | BleepingComputer
Max severity SAP Commerce Cloud flaw now targeted in attacks | BleepingComputer
Shell investigates 'potential incident' after Clop data theft claims | BleepingComputer
Philips and GE investigating Clop ransomware data theft claims | BleepingComputer
Uber Freight reportedly investigating after hacking group claims data breach | TechCrunch Security
Details emerge on BlackFile’s recent attacks on financial companies | cyberscoop.com
After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug | TechCrunch Security
Kimwolf botnet rebuilt to survive takedowns, researchers say | cyberscoop.com
Hundreds of fake Chrome VPN extensions route traffic through a proxy | BleepingComputer
Deepfake hiccup unmasks suspected digital certificate fraudster | theregister.com
Vulnerability giving attackers full control of Macs is under active exploitation | arstechnica.com
Critical VMware vCenter RCE flaw exploited for reverse SSH access | BleepingComputer
Poland probes MyDr healthcare software breach potentially affecting 19 million people | therecord.media
Crypto hardware wallet owners face fresh security risks after recent spate of personal data thefts | TechCrunch Security
[un]prompted.au — AI × Cybersecurity Conference · Sydney, 18–19 September 2026 | [un]prompted.au
Soap Box: Zero Trust(ish) Networks
2026/08/14
In this Soap Box edition of the Risky Business podcast host Patrick Gray chats with Adam Pointon, CEO of Knocknoc, about the failure of Zero Trust as a comprehensive architecture.
Most networks look like they were designed in 1999, and most Zero Trust products look like they were designed for 2049.
Instead, Patrick and Adam pitch something in the middle: Zero Trust(ish) networks, where Zero Trust principles are applied selectively where possible.
Instead of trying to re-architect entire networks, maybe it’s time we learned to apply Zero Trust principles selectively against risky assets. It’s a better approach than the status quo, which involves liberal use of the “risk accepted” stamp.
This episode is also available on YouTube
Show notes
Risky Business #848 -- OpenAI comes clean
2026/08/12
On this week’s show Patrick Gray and James Wilson are joined by guest co-host Brad Arkin to talk through the week’s news, including:
The AI-agent-hacks-stuff saga continues. This week we have one booting gymgoers from full classes to nab its owner a spot
Somehow OpenAI’s legal team allowed the company to spill all the Hugging Face tea at BlackHat and it’s hot and delicious
More details emerge about Iran’s hacking campaign against US water utilities, but Brad is unimpressed
It turns out TeamPCP has been around longer than we thought and predates the AI era
Some absolute plonker kept the DEFCON party going on a Delta flight home. No word yet on if they made the plane fly sideways
Much, much more
This week’s show is brought to you by cloud security platform Prowler. Founder and CEO Toni de la Fuente chats about what the company is doing with AI and some of the cool ways customers are using it with Prowler.
This episode is also available on YouTube
Show notes
How a simple request for AI to book a gym class exposed a major threat | Social Signals
OK, Well, There Are Even More AI Agent Hacking Incidents | wired.com
OpenAI BlackHat talk re Hugging Face incident |
OpenAI says Daybreak will expand to offer specialized cyber services | CyberScoop
Cyberattacks targeting water systems expand to 12 states as South Dakota, Georgia announce incidents | therecord.media
Cyberattack on North Carolina Ports ‘contained’ as Coast Guard, state officials investigate | therecord.media
Local governments in four states dealing with cyberattacks that have shut down services | The Record
Follow-Up Report of the December 2025 Energy Sector Incident | CERT Polska
Chinese telcos maintain deep US presence despite Salt Typhoon links, House committee says | The Record
State Department says Trump raised cyber scam compound issue with Xi | therecord.media
Open-source software’s archenemy TeamPCP goes back further than anyone thought | CyberScoop
A Security Pro Hacked North Korean Hackers. He Found They’d Breached Hundreds of Networks Worldwide | wired.com
Srsly Risky Biz: Being a North Korean Hacker Is About to Be Less Fun - Risky Business Media |
Chrome adopts what may be the best protection yet against account takeovers | Ars Technica
CSS:the bomb inside your inbox | PortSwigger Research
Security update available for Metabase - Please upgrade now | Social Signals
Canadian man pleads guilty to Snowflake hacks that led to 165 breaches | therecord.media
British ‘Com’ member who abused more than 100 girls worldwide jailed for two years | therecord.media
FBI says cybercriminals are hacking into victims’ online accounts to steal their intimate pictures | TechCrunch Security
AI is getting better at election facts, but voters shouldn’t rely on it | CyberScoop
The FTC wants to regulate AI for ideological bias | cyberscoop.com
US and South Korea warn of Gunra ransomware targeting govt agencies | BleepingComputer
CISA: Microsoft SharePoint flaw now exploited in ransomware attacks | BleepingComputer
CISA: SonicWall SMA1000 flaws now exploited by ransomware gangs | BleepingComputer
N-able N-central exploitation results in RMM tool deployment | Sophos
Delta investigating after someone set up fake Wi-Fi network mid-flight | TechCrunch Security
mcp-dashboard-demo/prompt/prowler_dashboard_prompt.md at main · prowler-cloud/mcp-dashboard-demo | GitHub
Risky Business #847 -- Oops! Claude's accidental hacking spree
2026/08/05
On this week’s show Patrick Gray, and James Wilson are joined by bearded man of leisure Adam Boileau to discuss the week’s cybersecurity news, including:
Accidental AI agent hacking sprees have the world’s media freaking out, but we think it’s all pretty funny
The bugpocalypse is so chaotic, Microsoft can’t patch fast enough
A ColdCard wallet flaw led to millions in Bitcoin theft, but the back story behind the bug is bonkers
Iran hacks and disrupts water infrastructure in multiple American states
North Korea’s state-backed hackers turn criminal. Or their criminals turn into state-backed hackers. Or something. It’s all a bit confusing, actually.
Much, much more!
This week’s show is brought to you by Sondera. Co-founder Josh Devon joins Patrick and James to talk through some absolutely hilarious LLM horror stories.
This episode is also available on YouTube
Show notes
OpenAI says rogue agent behind Hugging Face hack broke into additional services | therecord.media
Anthropic Says Claude Hacked Real Systems During Cybersecurity Tests | wired.com
Claude uploaded malware to PyPI in Anthropic's botched test | BleepingComputer
Nobody Knows if OpenAI’s and Anthropic’s AI Hacking Sprees Are Illegal | wired.com
Scanning 7.6 Petabytes of HuggingFace Training Data for Secrets Truffle Security Co. |
Anthropic’s New AI Model Can Identify More Software Bugs Than Ever. Microsoft Is Struggling to Fix Them Fast Enough. | Social Signals
Chrome Needs Twice-a-Week Patching Thanks to AI Bug Hunting | wired.com
Google says it fixed more Chrome bugs in June than over the past two years, thanks to AI | TechCrunch Security
Mythos uncovers crypto weaknesses that went unknown for years | arstechnica.com
COLDCARD wallet RNG flaw likely linked to $88 million Bitcoin theft | BleepingComputer
Chris Masterjohn (@ChrisMasterjohn) on X | X (formerly Twitter)
wale.moca 🐳 (@waleswoosh) on X | X (formerly Twitter)
U.S. spy agencies suspect Iran launched cyberattack on Minnesota water facilities | washingtonpost.com
FBI investigates as Michigan joins Minnesota in reporting cyberattacks on its water systems | washingtonpost.com
Trump blames Minnesota for cyberattacks on water sector, drawing pushback from cyber world | cyberscoop.com
A Leaked Memo Ties Cyberattacks on Minnesota Water Utilities to Iran | wired.com
Russia accuses Telegram founder of aiding terrorism, seeks international arrest | The Record
Laundry Bear’s webmail hackers had more in store after February, report says | therecord.media
CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft | Microsoft Security Blog
Phishing service spoofs RingCentral to steal Microsoft 365 accounts | BleepingComputer
North Korean hackers behind major open-source supply chain attacks, Amazon says | therecord.media
North Korea’s Lazarus Group sharing tools with ransomware hackers, South Korean agencies warn | The Record
North Korea arrests hackers accused of laundering stolen bank funds through crypto |
US government bans new foreign-made humanoids, robot dogs, and solar inverters, citing risks to national security | TechCrunch Security
Judge says Trump admin still lacks evidence for Anthropic 'supply chain risk' label | TechCrunch
Cyber Command plans Silicon Valley office to drive innovation | therecord.media
Apple is getting this wrong | OpenAI
Tech industry alliance proposes AI agent safety reporting program | Cybersecurity Dive
Massive ChainDrop npm supply-chain attack infects hundreds of packages | BleepingComputer
Massive supply-chain attack compromises 440 packages under four hours | cyberscoop.com
Risky Business #846 -- OpenAI built a fireplace out of wood
2026/07/29
On this week’s show special guest co-host Pete Ranks, the former director of the CIA’s Centre for Cyber Intelligence, joins Patrick Gray and James Wilson to discuss the week’s cybersecurity news. They cover:
Everyone signs the open weights open letter, except Anthropic… of course.
OpenAI had no idea it had hacked Hugging Face
Kimi K3 open weights released and they’re massive!
Why a more aggressive response is needed to cyber attacks on OT
And much, much more!
This week’s show is brought to you by SpecterOps. In this week’s sponsor interview Justin Kohler and Jared Atkinson talk about how SpecterOps’ Bloodhound now supports AWS attack paths. Run it against your AWS infra, but only if you have a strong stomach. The results will terrify you.
This episode is also available on YouTube.
Show notes
Open Weights and American AI Leadership | Social Signals
Our position on open-weights models | Social Signals
Halvar Flake (@halvarflake) on X | X (formerly Twitter)
White House accuses Chinese company of distilling Anthropic’s Fable | cyberscoop.com
Jensen Huang (@JensenHuang) on X | X (formerly Twitter)
Its AI Agent Spent Days Hacking a Company, but Sources Say OpenAI Did Not Notice for a Week | reuters.com
How OpenAI’s human mistake led to the AI-powered hack on Hugging Face | TechCrunch Security
Hugging Face CEO calls for ‘radical transparency’ after ‘unprecedented’ OpenAI hack | TechCrunch Security
Sens. Banks and Schiff Introduce Bill to Help American AI Companies Combat Chinese Espionage |
AI Kill Switch Act would let Trump admin order shutdown of rogue AI systems | Ars Technica
Marco Rubio tells diplomats to play down talk of American tech "kill switch" | reuters.com
Federal agencies broaden alert on Iran-linked OT attacks | therecord.media
Coordinated cyberattack disrupts water utilities in 30+ Minnesota communities | CyberScoop
NSA and Partners Alert Zimbra Collaboration Suite Users of a Russian State-Supported Phishing Campaign | nsa.gov
Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts | BleepingComputer
Microsoft responds to LG monitors installing McAfee ads on Windows | Ars Technica
LG to Ban Residential Proxies from Smart TV Apps | krebsonsecurity.com
Despite multiple takedowns, botnets continue to grow | cyberscoop.com
Extension of CISA 2015 info-sharing protections passes as part of House’s defense bill | therecord.media
Upbound says hack caused $13 million in fraudulent Acima leases | BleepingComputer
Fake Claude app promoted by Bing ads pushes SectopRAT malware | BleepingComputer
Apple sued over fake App Store crypto wallet app stealing $1.8M in Bitcoin | BleepingComputer
Clop ransomware targets Windchill, FlexPLM in data theft attacks | BleepingComputer
'Wrench' attacks against crypto holders appear to be on the rise | therecord.media
OpenAI’s Rogue AI Agent Hacked More Than Just Hugging Face | wired.com
Risky Business #845 -- OpenAI's Skynet moment
2026/07/22
On this week’s show special guest co-host Chris Krebs joins Patrick Gray and James Wilson to discuss the week’s cybersecurity news. They cover:
Oopsie daisy! OpenAI agents went rogue and hacked Hugging Face
US and China trade AI model ban threats
Iran has been using SS7 queries to locate and target US troops
Scattered Spider is having a hard time, not just because of Microsoft’s GDID
And much, much more!
This week’s show is brought to you by Push Security. Luke Jennings joins Patrick this week to talk about the rise in authorisation phishing, like device code phishing, and what companies like Push are doing about it.
This episode is also available on YouTube.
Show notes
OpenAI and Hugging Face partner to address security incident during model evaluation | openai.com
Security incident disclosure — July 2026 | Social Signals
Hugging Face confirms breach affected internal datasets and credentials, urges users to take action | TechCrunch Security
Cheating behaviour in frontier model evaluations | AISI Work | Social Signals
JADEPUFFER: Agentic ransomware for automated database extortion | Sysdig | Social Signals
Secret Claude tracker shocks users after Anthropic's anti-surveillance stance | Ars Technica
EXCLUSIVE: Beijing is looking at curbing overseas access to China's top AI models, sources say | reuters.com
https://www.axios.com/2026/07/20/ai-us-china-open-source-kimi |
Alibaba to ban employees from using Anthropic's coding tool, source says | reuters.com
Iran abused mobile networks’ vulnerabilities to locate U.S. military in the Middle East, report says | TechCrunch Security
Apps Marketed to US Troops Are Shipping Chinese and Russian Code | wired.com
Trump calls for new election security measures | NBC News Tech
Scattered Spider hackers sentenced to 5.5 years over £29 million Transport for London hack | therecord.media
Alleged longstanding member of Scattered Spider extradited to US | CyberScoop
https://www.justice.gov/usao-ndil/media/1450651/dl?inline |
Tracking Peter Stokes and The Com: Allison Nixon and Her Work Unmasking Cybercriminals | zetter-zeroday.com
764 splinter group leader sentenced to 40 years in jail | cyberscoop.com
Interpol cybercrime crackdown nets 5,800 arrests across 97 countries | cyberscoop.com
White House details ‘Gold Eagle’ clearinghouse for AI cyber threats | cyberscoop.com
Attackers vote themselves $20 million in BONK cryptocurrency | The Record
CISA: Microsoft SharePoint RCE flaw now actively exploited | BleepingComputer
Critical SharePoint RCE flaw exploited to steal machine keys | BleepingComputer
Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk | TechCrunch Security
Critical ServiceNow code execution flaw now exploited in attacks | BleepingComputer
Critical Palo Alto VPN bug now exploited by Qilin ransomware gang | BleepingComputer
Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak | BleepingComputer
IPhone Hacking Firm Sues Ex-Worker Over Alleged Theft of Secrets | bloomberg.com
Apple says former employee exploited ‘rare’ bug to download confidential files after leaving for OpenAI | TechCrunch Security
Pegasus Spyware European Parliament Pega Committee Member | The Record
Amazon fixing bug that billed some AWS customers billions of dollars | TechCrunch Security
Risky Bulletin: Hacker wipes Romania's entire land registry database - Risky Business Media | Social Signals
Microsoft Entra ID gets passkeys default authentication starting September | BleepingComputer
On-demand Webinar: Device code phishing in 2026 | Push Security | Push Security
Soap Box: Using threat hunting to drive detection
2026/07/08
In this wholly sponsored Soap Box edition of the podcast Patrick Gray chats with Damien Lewke, the CEO and founder of Nebulock, about the future of threat hunting and detection.
Damien spent a decade in the EDR and MDR space before founding Nebulock in 2024. It started off as an AI-powered threat hunt platform but has evolved into a broader security data platform that can answer questions, drive hunts and drive detections.
This product is engineered around the idea that a lot of security is a data problem. So, if we accept this premise, how do we solve security? And how much of that solution is about agents, vs building a good graph? And if you’re going to build a good graph, do you want to build it for a person to use, or an agent to use?
This is truly a conversation for the security nerd’s nerd. Enjoy!
This episode is also available on YouTube
Show notes
Risky Business #844 -- China closes AI vulndev gap as USA lifts Fable ban
2026/07/01
On this week’s show Patrick Gray, Adam Boileau and James Wilson discuss the week’s cybersecurity news. They cover:
Anthropic’s Fable 5 returning while OpenAI’s GPT-5.6 gets thrown in model jail
Distillation, cheap tokens, and AI chat harvesting is an industry in China
Edge becomes a lolbin via a new malicious extension
An Iranian APT boss’s vacation in a beautiful place goes wrong
Much, much more!
In this week’s sponsor interview Daf Stuttard and Katie Warren from Portswigger pop along to talk about how they built an AI security testing product that people would actually feel comfortable using.
This episode is also available on YouTube.
Show notes
Anthropic (@AnthropicAI) on X | X (formerly Twitter)
Howard Lutnick (@howardlutnick) on X | X (formerly Twitter)
U.S. government gives Anthropic green light for limited re-release of Mythos 5 | NBC News Tech
OpenAI limits GPT-5.6 rollout after government request | TechCrunch
The U.S. government will decide who gets to use the latest American AI technology | washingtonpost.com
Anthropic says Alibaba illicitly extracted Claude AI model capabilities | reut.rs
How to Buy Cheap Claude Tokens in China |
Alex Stamos (@alexstamos) on X | X (formerly Twitter)
Synthesis of Exploitarium Mass Zero-Day Disclosure | detections.ai
Mythos on your desk? Using local LLMs for code reviews | Risky Business Media
Beyond Fable: Can a Local LLM Replace Cloud AI for Security Code Reviews | Security Research Labs
Accelerating EDR Evasion with LLM-Driven Analysis | SpecterOps
CISA: Windows BlueHammer flaw now exploited by ransomware gangs | BleepingComputer
When cybercriminals hire burglars: Inside an alleged Russian effort to infiltrate multibillion-dollar US law firms | CNN Politics | Social Signals
Microsoft quietly extends free Windows 10 ESU support to October 2027 | BleepingComputer
Edgecution: Malicious Edge Extension Backdoor | ThreatLabz | Social Signals
Bluekit phishing kit adopts browser-in-the-middle for login theft | BleepingComputer
New macOS malware embeds fake errors to confuse AI analysis tools | BleepingComputer
DraftKings hacker 'Snoopy' sentenced to 18 months in prison | BleepingComputer
Polymarket says hackers stole users’ funds | TechCrunch Security
Australia's spy chief warns of rising terror and cyber threats | japantimes.co.jp
Russian hackers were behind $2.5 billion hack of Jaguar Land Rover: Report | TechCrunch Security
Iranian national sought by US on hacking charges arrested in Montenegro | apnews.com
[un]prompted.au - AI x CyberSecurity: Notes from the Field: Call for Speakers |
Podcast reviews
Read Risky Business podcast reviews
putnicknamehere21 2026/03/21
Great Cyber News Source
This podcast has really helped in my goal of keeping up with the cyber news and the analysis from multiple perspectives is appreciated. It’s not neces...
Iphelse 2026/03/03
Here for the MAGA tears
Great podcast. Glad it contains geopolitical context during discussions. Ignore the snowflake 1 star reviews.
bobbtalks 2026/03/01
Favorite for 10 years
Pretty much says it all.
nowyouseeme123 2026/03/01
Too political
Your entitled to your opinions and politics does play a role in what your discussing, but don’t insult your fanbase. I’m not a democrat or a republica...
Glu Games = Pathetic 2026/02/26
Great cyber podcast
Great takes and insight on cyber news. Highly recommend!
The15car 2026/01/21
Cyber > Politics
Is there a version of this podcast that has the cyber content without the political chatter? If so it would be perfect. Sadly with this show, personal...
Buccaneer Ja 2025/03/05
Biased takes and propaganda
Too many political takes, especially negative ones against the United States.
Jamstory 2024/09/23
Risky Bias
As a longtime infosec enthusiast and freshman cyber security professional, I’ve been seeking good informative podcasts covering breaking news and tech...
Corvi 2024/09/20
Mostly smart cybersecurity news
Great news on the cyber front, but occasionally marred by Patrick’s poor analyses and prognostications about American jurisprudence
Cooyah2 2024/04/30
Long time listener
I've been listening to Risky Business for over ten years. It keeps me informed on current industry trends, news, and perspectives.
Podcast sponsorship advertising
Start advertising on Risky Business relevant audience podcasts
You may also like to advertise on these Podcasts

4.9247521434
Unashamed with the Robertson Family
Tread Lively

4.715161997
Thrivetime Show | Business School without the BS
Clay Clark

4.735971298
The Bonfire with Big Jay Oakerson and Robert Kelly
SiriusXM

4.672722000
Timcast News
Timcast Media

4.813842000
Daily Tech News Show
Tom Merritt

4.8104492000
Steve Deace Show
Blaze Podcast Network

4.732621932
The President's Daily Brief
The First TV

4.682411279
The Daily Beast Podcast
The Daily Beast, Joanna Coles

4.920611168
Toni and Ryan
Toni Lodge and Ryan Jon

4.6312521073
Wow in the World
Tinkercast
