惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Google DeepMind News
Google DeepMind News
人人都是产品经理
人人都是产品经理
S
Securelist
P
Proofpoint News Feed
H
Help Net Security
S
Schneier on Security
T
Tenable Blog
C
Cisco Blogs
S
Security @ Cisco Blogs
博客园 - 司徒正美
博客园 - 叶小钗
Cisco Talos Blog
Cisco Talos Blog
Google DeepMind News
Google DeepMind News
C
Cybersecurity and Infrastructure Security Agency CISA
Google Online Security Blog
Google Online Security Blog
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
Hacker News: Ask HN
Hacker News: Ask HN
NISL@THU
NISL@THU
云风的 BLOG
云风的 BLOG
V
Vulnerabilities – Threatpost
T
The Blog of Author Tim Ferriss
aimingoo的专栏
aimingoo的专栏
W
WeLiveSecurity
www.infosecurity-magazine.com
www.infosecurity-magazine.com
Jina AI
Jina AI
腾讯CDC
WordPress大学
WordPress大学
Simon Willison's Weblog
Simon Willison's Weblog
Vercel News
Vercel News
小众软件
小众软件
N
Netflix TechBlog - Medium
有赞技术团队
有赞技术团队
AWS News Blog
AWS News Blog
雷峰网
雷峰网
Forbes - Security
Forbes - Security
The Hacker News
The Hacker News
博客园 - 聂微东
F
Full Disclosure
量子位
Scott Helme
Scott Helme
宝玉的分享
宝玉的分享
A
About on SuperTechFans
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
Schneier on Security
Schneier on Security
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
K
Kaspersky official blog
AI
AI
SecWiki News
SecWiki News
Webroot Blog
Webroot Blog
Martin Fowler
Martin Fowler

Risky Business Media

Risky Bulletin: Western cyber agencies warn of Russian hacks of Zimbra servers Srsly Risky Biz: Knives are out for open-weight AI models Risky Bulletin: Rogue OpenAI models were behind the Hugging Face breach Between Two Nerds: What China gets wrong about Russia's cyber war in Ukraine Risky Bulletin: Hacker wipes Romania's entire land registry database Sponsored: Thinkst on building companies that don’t suck Srsly Risky Biz: Ransomware uses AI to amp up negotiations Fortibleed: The bleeding edge of AI cybercrime Between Two Nerds: Exploits are not cyber power What to do 'til the bugpocalypse gets here Risky Bulletin: NSA Tailored Access Operations is back Sponsored: Why Sublime doesn’t toss AI at every email Srsly Risky Biz: US Supreme Court undermines Section 702 intel Risky Bulletin: DHS IG investigates forced CISA reassignments Soap Box: Using threat hunting to drive detection Between Two Nerds: Why AI has not meant more hacks. Yet. Risky Bulletin: EU official’s phone infected with Pegasus Risky Bulletin: FatFs bugs enable physical access attacks on a load of devices Srsly Risky Biz: America won't beat the distillation ecosystem Risky Bulletin: Researcher drops giant cache of zero-days Risky Business #844 -- China closes AI vulndev gap as USA lifts Fable ban Mythos on your desk? Using local LLMs for code reviews Between Two Nerds: Set cyberspace ablaze Risky Bulletin: White House asks OpenAI to restrict GPT 5.6 Sponsored: Corelight’s blueprint for AI-era defence Risky Bulletin: Operation Endgame dismantles Amadey and StealerC Srsly Risky Biz: Open weight models make the Mythos debate moot Risky Bulletin: FortiBleed hacks involved a lot of traffic sniffing Risky Business #843 -- Fortibleed is kinda awesome, actually Pitching security startups to VCs in the AI era Sponsored: Trail of Bits and OpenAI patch the planet Between Two Nerds: The PRC vs AI Risky Bulletin: Klue breach impacts security firms How using open weight models can blow up in your face Risky Bulletin: Creds for 74,000 Fortinet devices leaked Srsly Risky Biz: Anthropic has artificial, but not emotional, intelligence Risky Bulletin: China arrests Silver Fox cybercrime group suspects Risky Business #842 -- Anthropic needs an adult in the C suite The state of the art in AI model jailbreaks Between Two Nerds: Why NATO and cyber don't mix Risky Bulletin: Arch Linux supply chain attack hits 1,900 packages Sponsored: Ent on using AI to track human behavior on the endpoint Why NPM v12 won’t stop supply chain attacks Risky Bulletin: CISA tightens patching rules amid bug deluge Sponsored: Understanding CI/CD attack paths Srsly Risky Biz: Europe wants to wean itself off US tech Risky Bulletin: Nightmare Eclipse drops fresh 0day Risky Business #841 -- Microsoft gets owned and 0day'd Between Two Nerds: Nerds at NATO Risky Bulletin: RubyGems adds dependency cooldowns to counter supply chain attacks Everything is getting much worse, much faster Soap Box: Detection and response in the AI age Risky Bulletin: EU unveils digital sovereignty plan Srsly Risky Biz: NATO's cyber approach needs to change Risky Bulletin: FSB calls out Western spyware operation Risky Business #840 -- Microsoft walks back researcher threats Solo podcast: A deep dive on TeamPCP Between Two Nerds: The intelligence cult Risky Bulletin: Recently patched PAN 0day exploited in the wild Sponsored: Inside CISA's disastrous secrets leak Risky Bulletin: Dutch police take down 17m device botnet Risky Bulletin: Iran to reconnect to the Internet Risky Business #839 -- TeamPCP stole GitHub's internal repos How to survive supply chain attacks Risky Bulletin: Mythos has found thousands of critical bugs Sponsored: Teaching AI agents the rules of the road Risky Bulletin: Microsoft ends SMS MFA for personal accounts How the CopyFail disclosure went sideways Risky Business #838 -- GitHub investigates possible breach
Risky Business #845 -- OpenAI's Skynet moment
James Wilson · 2026-07-22 · via Risky Business Media

Risky Business Podcast

July 22, 2026

Presented by

James Wilson

James Wilson

Technology Editor

Patrick Gray

Patrick Gray

CEO and Publisher

On this week’s show special guest co-host Chris Krebs joins Patrick Gray and James Wilson to discuss the week’s cybersecurity news. They cover:

  • Oopsie daisy! OpenAI agents went rogue and hacked Hugging Face
  • US and China trade AI model ban threats
  • Iran has been using SS7 queries to locate and target US troops
  • Scattered Spider is having a hard time, not just because of Microsoft’s GDID
  • And much, much more!

This week’s show is brought to you by Push Security. Luke Jennings joins Patrick this week to talk about the rise in authorisation phishing, like device code phishing, and what companies like Push are doing about it.

This episode is also available on YouTube.

Your browser does not support the audio element.

Risky Business #845 -- OpenAI's Skynet moment

0:00 / 69:31

Logo

Show notes

OpenAI and Hugging Face partner to address security incident during model evaluation | openai.com

Security incident disclosure — July 2026 | Social Signals

Hugging Face confirms breach affected internal datasets and credentials, urges users to take action | TechCrunch Security

Cheating behaviour in frontier model evaluations | AISI Work | Social Signals

JADEPUFFER: Agentic ransomware for automated database extortion | Sysdig | Social Signals

Secret Claude tracker shocks users after Anthropic's anti-surveillance stance | Ars Technica

EXCLUSIVE: Beijing is looking at curbing overseas access to China's top AI models, sources say | reuters.com

https://www.axios.com/2026/07/20/ai-us-china-open-source-kimi |

Alibaba to ban employees from using Anthropic's coding tool, source says | reuters.com

Iran abused mobile networks’ vulnerabilities to locate U.S. military in the Middle East, report says | TechCrunch Security

Apps Marketed to US Troops Are Shipping Chinese and Russian Code | wired.com

Trump calls for new election security measures | NBC News Tech

Scattered Spider hackers sentenced to 5.5 years over £29 million Transport for London hack | therecord.media

Alleged longstanding member of Scattered Spider extradited to US | CyberScoop

https://www.justice.gov/usao-ndil/media/1450651/dl?inline |

Tracking Peter Stokes and The Com: Allison Nixon and Her Work Unmasking Cybercriminals | zetter-zeroday.com

764 splinter group leader sentenced to 40 years in jail | cyberscoop.com

Interpol cybercrime crackdown nets 5,800 arrests across 97 countries | cyberscoop.com

White House details ‘Gold Eagle’ clearinghouse for AI cyber threats | cyberscoop.com

Attackers vote themselves $20 million in BONK cryptocurrency | The Record

CISA: Microsoft SharePoint RCE flaw now actively exploited | BleepingComputer

Critical SharePoint RCE flaw exploited to steal machine keys | BleepingComputer

Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk | TechCrunch Security

Critical ServiceNow code execution flaw now exploited in attacks | BleepingComputer

Critical Palo Alto VPN bug now exploited by Qilin ransomware gang | BleepingComputer

Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak | BleepingComputer

IPhone Hacking Firm Sues Ex-Worker Over Alleged Theft of Secrets | bloomberg.com

Apple says former employee exploited ‘rare’ bug to download confidential files after leaving for OpenAI | TechCrunch Security

Pegasus Spyware European Parliament Pega Committee Member | The Record

Amazon fixing bug that billed some AWS customers billions of dollars | TechCrunch Security

Risky Bulletin: Hacker wipes Romania's entire land registry database - Risky Business Media | Social Signals

Microsoft Entra ID gets passkeys default authentication starting September | BleepingComputer

On-demand Webinar: Device code phishing in 2026 | Push Security | Push Security