Épisodes

  • Between Two Nerds: How NSA will use AI
    Feb 23 2026

    In this edition of Between Two Nerds Tom Uren and The Grugq talk about how ‘professional’ Five Eyes cyber espionage agencies like NSA will use AI. These agencies place a premium on stealth and won’t yolo AI.

    This episode is available on Youtube.

    Show notes
    • How AI-powered espionage will favour China
    • Google's AI threat tracker, February 2026
    Afficher plus Afficher moins
    27 min
  • Risky Bulletin: AI-driven hacking campaign breaches 600+ Fortinet devices
    Feb 23 2026

    An AI-driven hacking campaign breached 600 Fortinet devices, Ivanti was hacked via its own product, Wikipedia bans Archive-dot-Today for DDoS attacks, and Chinese hackers breached Italy’s police force.

    Show notes
    • Risky Bulletin: AI-driven hacking campaign breaches 600+ Fortinet devices
    Afficher plus Afficher moins
    6 min
  • Sponsored: The smouldering trashfire of AI and open source
    Feb 22 2026

    They discuss how AI is affecting open source, chat about a few attacks the company has seen in the wild and introduce Socket’s answer to the smouldering trashfire: Socket Firewall.

    Show notes
      Afficher plus Afficher moins
      25 min
    • Risky Bulletin: RPKI infrastructure sits on shaky ground
      Feb 20 2026

      RPKI relies on vulnerable servers, the French Ministry of Economy discloses a data breach, the UK gives tech platforms 48 hours to remove revenge porn, and ClickFix-attacks are responsible for 50% of malware infections.

      Show notes
      • Risky Bulletin: RPKI infrastructure sits on shaky ground
      Afficher plus Afficher moins
      9 min
    • Srsly Risky Biz: Cyber bullets can't replace political will
      Feb 19 2026

      Tom Uren and Amberleigh Jack talk about a groundswell of calls from European officials to build cyber capabilities to strike back against adversaries. There are good reasons that countries should have their own cyber capabilities, but if you don’t have the political will to strike back, having a magic cyber weapon doesn’t really make a difference.

      They also talk about ‘distillation attacks’. They are a way that AI developers can steal the secret sauce of advanced models just by asking questions. It looks like American companies need government assistance if the US wants to keep its AI lead.

      This episode is also available on Youtube.

      Show notes
        Afficher plus Afficher moins
        20 min
      • Risky Bulletin: Supply chain attack plants backdoor on Android tablets
        Feb 18 2026

        A supply chain attack plants backdoors on Android tablets, the EU blocks AI from lawmakers’ devices, Cellebrite was used against a Kenyan politician, and a Chinese APT is exploiting a Dell zero-day.

        Show notes
        • Risky Bulletin: Supply chain attack plants backdoor on Android tablets
        Afficher plus Afficher moins
        8 min
      • Between Two Nerds: Buying the magic weapon
        Feb 16 2026

        In this edition of Between Two Nerds Tom Uren and The Grugq discuss whether middle powers should be investing in military cyber capabilities.

        This episode is also available on Youtube

        Show notes
        • The Record on Iranian air defences
        • Max Smeets No Shortcuts
        • RunZero sponsor interview
        Afficher plus Afficher moins
        28 min
      • Risky Bulletin: Cambodia promises to dismantle scam compounds by April
        Feb 16 2026

        Cambodia promises to dismantle cyber scam compounds by April, CISA urges companies to adopt the OpenEoX standard, Linux gets post-quantum crypto support, and Palo Alto Networks avoids attributing an APT to China.

        Show notes
        • Risky Bulletin: Cambodia promises to dismantle scam networks by April
        Afficher plus Afficher moins
        9 min