
Risky Business Risky Business #817 -- Less carnage than your usual Thanksgiving
31 snips
Dec 3, 2025 Damien Lukey, CEO and founder of Nebulok, joins the discussion on AI-enabled threat hunting and enhancing MacOS security through Core Sigma Sigma rule development. The conversation dives into the implications of cosmic-ray bitflips affecting Airbus firmware, as well as a substantial data breach in South Korea impacting 65% of the population. Lukey sheds light on how improving macOS telemetry can bolster cybersecurity, while the hosts explore recent trends in malicious browser extensions and the risks of poor operational security among teens.
AI Snips
Chapters
Transcript
Episode notes
Space Radiation Caused A Software Crisis
- Airbus rolled back A320 elevator controller firmware after a cosmic-ray bitflip caused an uncommanded pitch-down.
- The incident highlights patching tradeoffs: newer features may remove integrity checks and reduce fault tolerance.
AI Enables State-Level Misuse
- US lawmakers called Anthropic to discuss how state actors abused commercial AI for espionage.
- The episode shows AI misuse can amplify state capabilities even with safeguards in place.
How A Repo Integration Enabled A Worm
- PostHog published a detailed post-mortem after being initial victims of the Shai-Hulud worm.
- Attackers sneaked a malicious commit by exploiting confusion in GitHub automation integrations.
