Risky Business
Risky Business

Risky Business #845 -- OpenAI's Skynet moment

22 July 2026 1:09:31 Risky Business Media

Listen to episode

About this episode

On this week’s show special guest co-host Chris Krebs joins Patrick Gray and James Wilson to discuss the week’s cybersecurity news. They cover:

  • Oopsie daisy! OpenAI agents went rogue and hacked Hugging Face
  • US and China trade AI model ban threats
  • Iran has been using SS7 queries to locate and target US troops
  • Scattered Spider is having a hard time, not just because of Microsoft’s GDID
  • And much, much more!

This week’s show is brought to you by Push Security. Luke Jennings joins Patrick this week to talk about the rise in authorisation phishing, like device code phishing, and what companies like Push are doing about it.

This episode is also available on YouTube.

            <h3 class="panel-title">Show notes</h3>
                <ul>

                    <li><a href="https://openai.com/index/hugging-face-model-evaluation-security-incident">OpenAI and Hugging Face partner to address security incident during model evaluation | openai.com</a></li>

                    <li><a href="https://huggingface.co/blog/security-incident-july-2026">Security incident disclosure — July 2026 | Social Signals</a></li>

                    <li><a href="https://techcrunch.com/2026/07/20/hugging-face-confirms-breach-affected-internal-datasets-and-credentials-urges-users-to-take-action">Hugging Face confirms breach affected internal datasets and credentials, urges users to take action | TechCrunch Security</a></li>

                    <li><a href="https://www.aisi.gov.uk/blog/cheating-behaviour-in-frontier-model-evaluations">Cheating behaviour in frontier model evaluations | AISI Work | Social Signals</a></li>

                    <li><a href="https://www.sysdig.com/blog/jadepuffer-agentic-ransomware-for-automated-database-extortion">JADEPUFFER: Agentic ransomware for automated database extortion | Sysdig | Social Signals</a></li>

                    <li><a href="https://arstechnica.com/tech-policy/2026/07/anthropic-outed-for-claude-tracker-that-secretly-monitored-chinese-users">Secret Claude tracker shocks users after Anthropic's anti-surveillance stance | Ars Technica</a></li>

                    <li><a href="https://www.reuters.com/world/beijing-is-looking-curbing-overseas-access-chinas-top-ai-models-sources-say-2026-07-07">EXCLUSIVE: Beijing is looking at curbing overseas access to China's top AI models, sources say | reuters.com</a></li>

                    <li><a href="https://www.axios.com/2026/07/20/ai-us-china-open-source-kimi">https://www.axios.com/2026/07/20/ai-us-china-open-source-kimi | </a></li>

                    <li><a href="https://www.reuters.com/world/china/alibaba-ban-claude-code-workplace-over-alleged-backdoor-risks-source-says-2026-07-03">Alibaba to ban employees from using Anthropic's coding tool, source says | reuters.com</a></li>

                    <li><a href="https://techcrunch.com/2026/07/14/iran-abused-mobile-networks-vulnerabilities-to-locate-u-s-military-in-the-middle-east-report-says">Iran abused mobile networks’ vulnerabilities to locate U.S. military in the Middle East, report says | TechCrunch Security</a></li>

                    <li><a href="https://www.wired.com/story/apps-marketed-to-us-troops-are-shipping-chinese-and-russian-code">Apps Marketed to US Troops Are Shipping Chinese and Russian Code | wired.com</a></li>

                    <li><a href="https://www.nbcnews.com/nightly-news/video/trump-calls-for-new-election-security-measures-266865733992">Trump calls for new election security measures | NBC News Tech</a></li>

                    <li><a href="https://therecord.media/scattered-spider-hackers-tfl-sentenced">Scattered Spider hackers sentenced to 5.5 years over £29 million Transport for London hack | therecord.media</a></li>

                    <li><a href="https://cyberscoop.com/scattered-spider-peter-stokes-cybercrime-extradition">Alleged longstanding member of Scattered Spider extradited to US | CyberScoop</a></li>

                    <li><a href="https://www.justice.gov/usao-ndil/media/1450651/dl?inline=">https://www.justice.gov/usao-ndil/media/1450651/dl?inline | </a></li>

                    <li><a href="https://www.zetter-zeroday.com/tracking-peter-stokes-and-the-com-allison-nixon-and-her-work-unmasking-cybercriminals">Tracking Peter Stokes and The Com: Allison Nixon and Her Work Unmasking Cybercriminals | zetter-zeroday.com</a></li>

                    <li><a href="https://cyberscoop.com/764-splinter-group-leader-sentenced-alexis-chavez">764 splinter group leader sentenced to 40 years in jail | cyberscoop.com</a></li>

                    <li><a href="https://cyberscoop.com/interpol-cybercrime-crackdown-operation-first-light">Interpol cybercrime crackdown nets 5,800 arrests across 97 countries | cyberscoop.com</a></li>

                    <li><a href="https://cyberscoop.com/trump-gold-eagle-ai-cyber-clearinghouse">White House details ‘Gold Eagle’ clearinghouse for AI cyber threats | cyberscoop.com</a></li>

                    <li><a href="https://therecord.media/attackers-vote-themselves-20-million-bonk-crypto">Attackers vote themselves $20 million in BONK cryptocurrency | The Record</a></li>

                    <li><a href="https://www.bleepingcomputer.com/news/security/cisa-microsoft-sharepoint-rce-flaw-now-actively-exploited">CISA: Microsoft SharePoint RCE flaw now actively exploited | BleepingComputer</a></li>

                    <li><a href="https://www.bleepingcomputer.com/news/security/critical-sharepoint-rce-flaw-exploited-to-steal-machine-keys">Critical SharePoint RCE flaw exploited to steal machine keys | BleepingComputer</a></li>

                    <li><a href="https://techcrunch.com/2026/07/20/hackers-are-exploiting-recently-patched-wordpress-bugs-putting-millions-of-websites-at-risk">Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk | TechCrunch Security</a></li>

                    <li><a href="https://www.bleepingcomputer.com/news/security/critical-servicenow-code-execution-flaw-now-exploited-in-attacks">Critical ServiceNow code execution flaw now exploited in attacks | BleepingComputer</a></li>

                    <li><a href="https://www.bleepingcomputer.com/news/security/critical-globalprotect-vpn-bug-now-exploited-in-ransomware-attacks">Critical Palo Alto VPN bug now exploited by Qilin ransomware gang | BleepingComputer</a></li>

                    <li><a href="https://www.bleepingcomputer.com/news/security/anubis-ransomware-claims-coca-cola-fairlife-attack-threatens-data-leak">Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak | BleepingComputer</a></li>

                    <li><a href="https://www.bloomberg.com/news/articles/2026-07-17/iphone-hacking-firm-sues-ex-worker-over-alleged-theft-of-secrets">IPhone Hacking Firm Sues Ex-Worker Over Alleged Theft of Secrets | bloomberg.com</a></li>

                    <li><a href="https://techcrunch.com/2026/07/13/apple-says-former-employee-exploited-rare-bug-to-download-confidential-files-after-leaving-for-openai">Apple says former employee exploited ‘rare’ bug to download confidential files after leaving for OpenAI | TechCrunch Security</a></li>

                    <li><a href="https://therecord.media/pegasus-spyware-european-parliament-pega-committee-member">Pegasus Spyware European Parliament Pega Committee Member | The Record</a></li>

                    <li><a href="https://techcrunch.com/2026/07/17/amazon-fixing-bug-that-billed-some-aws-customers-billions-of-dollars">Amazon fixing bug that billed some AWS customers billions of dollars | TechCrunch Security</a></li>

                    <li><a href="https://risky.biz/risky-bulletin-hacker-wipes-romanias-entire-land-registry-database">Risky Bulletin: Hacker wipes Romania's entire land registry database - Risky Business Media | Social Signals</a></li>

                    <li><a href="https://www.bleepingcomputer.com/news/microsoft/microsoft-entra-id-gets-passkeys-default-authentication-starting-september">Microsoft Entra ID gets passkeys default authentication starting September | BleepingComputer</a></li>

                    <li><a href="https://pushsecurity.com/resources/device-code-phishing">On-demand Webinar: Device code phishing in 2026 | Push Security | Push Security</a></li>

                </ul>

Want to find AI jobs?

Join thousands of AI professionals finding their next opportunity

We respect your inbox. Unsubscribe at any time.

© 2026 Risky Business. All rights reserved.

Common Questions

Frequently asked questions

Quick answers about how DevFound's AI matching, resumes, and referrals work.

DevFound's AI Copilot ingests your profile, goals, and live job data to deliver curated matches in seconds. Every match includes a resume variant, suggested referrals, and interview prep so you can act immediately. The more feedback you provide, the sharper the Copilot becomes.

AI-led job searches shrink the hours spent sifting through boards and formatting resumes. DevFound pairs automation with your personal outreach, so you reserve energy for interviews and negotiation. Traditional networking still matters, but AI gives you a lift before you even send a message.

Modern AI roles expect comfort with production-grade code, data fluency, and practical ML tooling. The strongest candidates pair deep technical chops with storytelling—translating model impact to product, GTM, and exec partners. Continuous learning keeps you ahead as stacks evolve.

DevFound rewards active seekers. Keep your profile fresh, respond to match quality prompts, and enable alerts so you never miss a role. The AI prioritizes companies and teams that align with your feedback, accelerating both introductions and interview invites.

High-density tech hubs continue to host the deepest AI talent pools, yet distributed teams are catching up fast. Use DevFound filters to hone in on onsite, hybrid, or fully remote roles and watch openings expand across time zones.

DevFound aggregates thousands of remote AI openings and flags the nuances—core hours, async culture, and visa needs—up front. The Copilot also recommends how to position your distributed work experience so hiring managers know you can thrive on a remote team.