Risky Business #847 -
Risky Business Podcast
August 05, 2026
Risky Business #847 -- Oops! Claude's accidental hacking spree
Presented by
Technology Editor
Co-host at large
CEO and Publisher
On this weekās show Patrick Gray, and James Wilson are joined by bearded man of leisure Adam Boileau to discuss the weekās cybersecurity news, including:
- Accidental AI agent hacking sprees have the worldās media freaking out, but we think itās all pretty funny
- The bugpocalypse is so chaotic, Microsoft canāt patch fast enough
- A ColdCard wallet flaw led to millions in Bitcoin theft, but the back story behind the bug is bonkers
- Iran hacks and disrupts water infrastructure in multiple American states
- North Koreaās state-backed hackers turn criminal. Or their criminals turn into state-backed hackers. Or something. Itās all a bit confusing, actually.
- Much, much more!
This weekās show is brought to you by Sondera. Co-founder Josh Devon joins Patrick and James to talk through some absolutely hilarious LLM horror stories.
This episode is also available on YouTube
Brought to you by Sondera
Mind Your Agents. Because their next action could be brilliantāor a breach.
Show notes
OpenAI says rogue agent behind Hugging Face hack broke into additional services | therecord.media
Anthropic Says Claude Hacked Real Systems During Cybersecurity Tests | wired.com
Claude uploaded malware to PyPI in Anthropic's botched test | BleepingComputer
Nobody Knows if OpenAIās and Anthropicās AI Hacking Sprees Are Illegal | wired.com
Scanning 7.6 Petabytes of HuggingFace Training Data for Secrets Truffle Security Co. |
Chrome Needs Twice-a-Week Patching Thanks to AI Bug Hunting | wired.com
Mythos uncovers crypto weaknesses that went unknown for years | arstechnica.com
COLDCARD wallet RNG flaw likely linked to $88 million Bitcoin theft | BleepingComputer
Chris Masterjohn (@ChrisMasterjohn) on X | X (formerly Twitter)
wale.moca š³ (@waleswoosh) on X | X (formerly Twitter)
A Leaked Memo Ties Cyberattacks on Minnesota Water Utilities to Iran | wired.com
Russia accuses Telegram founder of aiding terrorism, seeks international arrest | The Record
Laundry Bearās webmail hackers had more in store after February, report says | therecord.media
Phishing service spoofs RingCentral to steal Microsoft 365 accounts | BleepingComputer
North Korean hackers behind major open-source supply chain attacks, Amazon says | therecord.media
North Korea arrests hackers accused of laundering stolen bank funds through crypto |
Judge says Trump admin still lacks evidence for Anthropic 'supply chain risk' label | TechCrunch
Cyber Command plans Silicon Valley office to drive innovation | therecord.media
Apple is getting this wrong | OpenAI
Tech industry alliance proposes AI agent safety reporting program | Cybersecurity Dive
Massive ChainDrop npm supply-chain attack infects hundreds of packages | BleepingComputer
Massive supply-chain attack compromises 440 packages under four hours | cyberscoop.com
How it works
Once you click Generate, Ollama reads this article and crafts 5 comprehension questions. Your answers are graded against the article content ā general knowledge won't be enough. Score 70+ to count toward your certificate.
Questions are cached ā you'll always get the same 5 for this article.