Risky Business

Risky Business #817 -- Less carnage than your usual Thanksgiving

31 snips
Dec 3, 2025
Damien Lukey, CEO and founder of Nebulok, joins the discussion on AI-enabled threat hunting and enhancing MacOS security through Core Sigma Sigma rule development. The conversation dives into the implications of cosmic-ray bitflips affecting Airbus firmware, as well as a substantial data breach in South Korea impacting 65% of the population. Lukey sheds light on how improving macOS telemetry can bolster cybersecurity, while the hosts explore recent trends in malicious browser extensions and the risks of poor operational security among teens.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Space Radiation Caused A Software Crisis

  • Airbus rolled back A320 elevator controller firmware after a cosmic-ray bitflip caused an uncommanded pitch-down.
  • The incident highlights patching tradeoffs: newer features may remove integrity checks and reduce fault tolerance.
INSIGHT

AI Enables State-Level Misuse

  • US lawmakers called Anthropic to discuss how state actors abused commercial AI for espionage.
  • The episode shows AI misuse can amplify state capabilities even with safeguards in place.
ANECDOTE

How A Repo Integration Enabled A Worm

  • PostHog published a detailed post-mortem after being initial victims of the Shai-Hulud worm.
  • Attackers sneaked a malicious commit by exploiting confusion in GitHub automation integrations.
Get the Snipd Podcast app to discover more snips from this episode
Get the app