惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

N
Netflix TechBlog - Medium
I
InfoQ
Engineering at Meta
Engineering at Meta
Jina AI
Jina AI
Recent Announcements
Recent Announcements
T
The Blog of Author Tim Ferriss
P
Proofpoint News Feed
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
D
Docker
Microsoft Security Blog
Microsoft Security Blog
宝玉的分享
宝玉的分享
Last Week in AI
Last Week in AI
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
GbyAI
GbyAI
博客园 - Franky
博客园 - 聂微东
Microsoft Azure Blog
Microsoft Azure Blog
博客园 - 叶小钗
酷 壳 – CoolShell
酷 壳 – CoolShell
B
Blog RSS Feed
WordPress大学
WordPress大学
MyScale Blog
MyScale Blog
月光博客
月光博客
罗磊的独立博客

Risky Business

Risky Business #839 -- TeamPCP stole GitHub's internal repos Risky Business #838 -- GitHub investigates possible breach Soap Box: Where does AI fit into cloud security? Risky Business #837 -- GitHub Actions footgun claims TanStack Risky Business #836 -- You can't patch the bugpocalypse Snake Oilers: Ent AI, Spacewalk and Mondoo Risky Business #835 -- Why the Fast16 malware is badass Risky Business #834 -- Vercel gets owned, Mozilla dumps hundreds of Mythos bugs Risky Business #833 -- The Great Mythos Freakout of 2026 Snake Oilers: Burp AI, Sondera and Truffle Security Risky Business #832 -- Anthropic unveils magical 0day computer God How the World Got Owned Episode 2: The 1990s, Part One Risky Business #831 -- The AI bugpocalypse begins Soap Box: Red teaming AI systems with SpecterOps Risky Business #830 -- LiteLLM and security scanner supply chains compromised Risky Business #829 -- Sneaky lobsters: Why AI is the new insider threat Risky Biz Soap Box: It took a decade, but allowlisting is cool again Risky Business #828 -- The Coruna exploits are truly exquisite Risky Business #827 -- Iranian cyber threat actors are down but not out Risky Business #826 -- A week of AI mishaps and skulduggery Risky Biz Soap Box: The lethal trifecta of AI risks Risky Business #825 -- Palo Alto Networks blames it on the boogie Risky Business #824 -- Microsoft's Secure Future is looking a bit wobbly Risky Business #823 -- Humans impersonate clawdbots impersonating humans Risky Business #822 -- France will ditch American tech over security risks Risky Business #821 -- Wiz researchers could have owned every AWS customer Risky Business #820 -- Asian fraud kingpin will face Chinese justice (pew pew!) How the World Got Owned Episode 1: The 1980s Risky Business #819 -- Venezuela (credibly?!) blames USA for wiper attack Risky Biz Soap Box: Graph the planet!
Risky Business #841 -- Microsoft gets owned and 0day'd
James Wilson · 2026-06-10 · via Risky Business

Risky Business Podcast

June 10, 2026

Presented by

James Wilson

James Wilson

Technology Editor

Patrick Gray

Patrick Gray

CEO and Publisher

On this week’s show special guest co-host Chris Wade, the founder of Corellium turned Cellebrite CTO, joins Patrick Gray and James Wilson to discuss the week’s cybersecurity news.

They cover:

  • Microsoft has repos owned, GitHub tokens popped, and a new 0day dropped on them
  • Meanwhile, researchers are choosing full disclosure instead of engaging MSRC
  • Meta’s AI support agent allowed a staggering 20,000 accounts to be stolen!
  • Apple pulls Russia’s MAX messenger from the App Store and disables notifications
  • Anthropic gives the public our first Mythos-class model but it won’t do cybersecurity work
  • Stripe and Google Tag Manager used in eCommerce website hack campaign
  • And much, much more!

This week’s show is brought to you by runZero. HD Moore, runZeros’ founder, drops by in this week’s sponsor interview to talk about the AI vibe shift. Everyone is very worried about getting owned all of a sudden, and it’s really changing the cybersecurity business.

This episode is also available on YouTube.

Your browser does not support the audio element.

Risky Business #841 -- Microsoft gets owned and 0day'd

0:00 / 63:02

Logo

Show notes

Microsoft Hacked to Deliver Malware to Claude and Gemini Users | 404.feed.press

Researcher publishes GitHub token-stealing exploit, blames Microsoft’s disclosure process | therecord.media

Microsoft Defender 'RoguePlanet' zero-day grants SYSTEM privileges | BleepingComputer

Microsoft breaks Patch Tuesday record with 206 vulnerabilities | CyberScoop

chompie1337 | X

WhatsApp says NSO targeted users with spearfishing attacks in violation of court order | therecord.media

Over 20,000 Instagram accounts stolen in Meta AI support hack | BleepingComputer

New Apple feature automatically changes your compromised passwords | BleepingComputer

Apple removes Russia’s state-backed messaging app Max from its store | therecord.media

Exclusive: Anthropic's Mythos can exploit new flaws in hours |

Anthropic’s new model is Mythos on a leash | CyberScoop

Anthropic Offers Mythos Upgrade for Cyber Partners and a ‘Safe’ Version for the Rest of You | wired.com

OpenClaw AI agent found falling for phishing attacks, spills user data | BleepingComputer

OpenAI unveils Lockdown Mode to protect sensitive data from prompt injection attacks | TechCrunch Security

Hands on with Intelligent Terminal, an AI-powered Windows Terminal | BleepingComputer

Seeking Counsel: Ongoing Targeted Campaign Against US Law Firms | Mandiant

Check Point warns of zero-day flaw targeted by ransomware affiliate | Cybersecurity Dive

ServiceNow discloses security incident exposing customer data | BleepingComputer

Credit card theft campaign abuses Stripe to host stolen payment info | BleepingComputer

CrowdStrike, Palo Alto Networks defy estimates as AI fuels cyber demand | Cybersecurity Dive

The U.S. Military Quietly Turned GPS Into a Global ‘Numbers Station,’ Evidence Suggests | 404.feed.press

New 'HTTP/2 Bomb' DoS attack crashes web servers in under a minute | BleepingComputer

Google has quietly cut staff across its Cloud business | businessinsider.com