惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

小众软件
小众软件
博客园_首页
M
MIT News - Artificial intelligence
雷峰网
雷峰网
GbyAI
GbyAI
博客园 - 叶小钗
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
V
V2EX
S
SegmentFault 最新的问题
H
Help Net Security
Apple Machine Learning Research
Apple Machine Learning Research
H
Hackread – Cybersecurity News, Data Breaches, AI and More
博客园 - 【当耐特】
V
Visual Studio Blog
月光博客
月光博客
G
Google Developers Blog
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
腾讯CDC
云风的 BLOG
云风的 BLOG
美团技术团队
Microsoft Azure Blog
Microsoft Azure Blog
A
About on SuperTechFans
有赞技术团队
有赞技术团队

Risky Business

Risky Business #840 -- Microsoft walks back researcher threats Risky Business #839 -- TeamPCP stole GitHub's internal repos Risky Business #838 -- GitHub investigates possible breach Soap Box: Where does AI fit into cloud security? Risky Business #837 -- GitHub Actions footgun claims TanStack Risky Business #836 -- You can't patch the bugpocalypse Snake Oilers: Ent AI, Spacewalk and Mondoo Risky Business #835 -- Why the Fast16 malware is badass Risky Business #834 -- Vercel gets owned, Mozilla dumps hundreds of Mythos bugs Risky Business #833 -- The Great Mythos Freakout of 2026 Snake Oilers: Burp AI, Sondera and Truffle Security Risky Business #832 -- Anthropic unveils magical 0day computer God How the World Got Owned Episode 2: The 1990s, Part One Risky Business #831 -- The AI bugpocalypse begins Soap Box: Red teaming AI systems with SpecterOps Risky Business #830 -- LiteLLM and security scanner supply chains compromised Risky Business #829 -- Sneaky lobsters: Why AI is the new insider threat Risky Biz Soap Box: It took a decade, but allowlisting is cool again Risky Business #828 -- The Coruna exploits are truly exquisite Risky Business #827 -- Iranian cyber threat actors are down but not out Risky Business #826 -- A week of AI mishaps and skulduggery Risky Biz Soap Box: The lethal trifecta of AI risks Risky Business #825 -- Palo Alto Networks blames it on the boogie Risky Business #824 -- Microsoft's Secure Future is looking a bit wobbly Risky Business #823 -- Humans impersonate clawdbots impersonating humans Risky Business #822 -- France will ditch American tech over security risks Risky Business #820 -- Asian fraud kingpin will face Chinese justice (pew pew!) How the World Got Owned Episode 1: The 1980s Risky Business #819 -- Venezuela (credibly?!) blames USA for wiper attack Risky Biz Soap Box: Graph the planet!
Risky Business #821 -- Wiz researchers could have owned e...
Adam Boileau · 2026-01-21 · via Risky Business

Risky Business Podcast

January 21, 2026

Presented by

Adam Boileau

Adam Boileau

Co-host at large

Patrick Gray

Patrick Gray

CEO and Publisher

In this week’s show, Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, joined by a special guest. BBC World Cyber Correspondent Joe Tidy is a long time listener and he pops in for a ride-along in the news segment plus a chat about his new book.

This week news includes:

  • Did the US cyber Venezuela’s power grid, or do they just want us to think they coulda?
  • US govt might boycott the RSAC Conference ‘cause Jen Easterly being CEO makes them mad
  • MS Patch Tuesday fixes CVSS5.5 bug and … stops you shutting down
  • Wiz pulls off cloud stunt hack that ends with control of everyone’s AWS console
  • Millions of Bluetooth devices that use Google’s Fast Pairing will pair with anyone, any time
  • GNU inet-tools’ telnetd parties like it’s 2007, and brings -f root unauthed remote login back

Thinkst is this week’s sponsor, and long time friend of the show Haroon Meer joins. As always they’re polishing their Canary tokens - adding breadcrumbs to lead you to them - but they’re also a bunch of giant nerds who now run South Africa’s Computer Olympiad.

This episode is also available on Youtube.

Your browser does not support the audio element.

Risky Business #821 -- Wiz researchers could have owned every AWS customer

0:00 / 64:46

Subscribe  

Logo

Thinkst Logo

Brought to you by Thinkst

Know. When it Matters!

Show notes

Cyberattack in Venezuela Demonstrated Precision of U.S. Capabilities - The New York Times

Why I’m withholding certainty that “precise” US cyber-op disrupted Venezuelan electricity - Ars Technica

Layered Ambiguity: US Cyber Capabilities in the Raid to Extract Maduro from Venezuela | Royal United Services Institute

Former CISA Director Jen Easterly Will Lead RSAC Conference | WIRED

Trump officials consider skipping premier cyber conference after Biden-era cyber leader named CEO - Nextgov/FCW

Federal agencies ordered to patch Microsoft Desktop Windows Manager bug | The Record from Recorded Future News

Windows 11 shutdown bug forces Microsoft into damage control • The Register

CodeBreach: Supply Chain Vuln & AWS CodeBuild Misconfig | Wiz Blog

Critical flaw in AWS Console risked compromise of build environment | Cybersecurity Dive

Never-before-seen Linux malware is “far more advanced than typical” - Ars Technica

VoidLink: Evidence That the Era of Advanced AI-Generated Malware Has Begun - Check Point Research

Hundreds of Millions of Audio Devices Need a Patch to Prevent Wireless Hacking and Tracking | WIRED

Critical flaw in Fortinet FortiSIEM targeted in exploitation threat | Cybersecurity Dive

CVE-2025-64155: 3 Years of Remotely Rooting the FortiSIEM

A single click mounted a covert, multistage attack against Copilot - Ars Technica

Police raid homes of alleged Black Basta hackers, hunt suspected Russian ringleader | The Record from Recorded Future News

Jordanian initial access broker pleads guilty to helping target 50 companies | The Record from Recorded Future News

Supreme Court hacker posted stolen government data on Instagram | TechCrunch

oss-sec: GNU InetUtils Security Advisory: remote authentication by-pass in telnetd

How crypto criminals stole $700 million from people - often using age-old tricks

Ctrl + Alt + Chaos: How Teenage Hackers Hijack the Internet