Risky Business (854): We're Jevpilled

Presented by

Patrick Gray
Patrick Gray

CEO and Publisher

Adam Boileau
Adam Boileau

Co-host at large

THE RISKY BUSINESS WEEKLY SHOW IS NOW ON HIATUS FOR TWO WEEKS AND WILL RETURN OCTOBER 14

On this week’s show Patrick Gray and James Wilson are joined by Adam Boileau to talk through the week’s news, including:

  • Google’s Gemini finally did some crimes
  • OpenAI admits more agents did silly things because “alignment”
  • US Treasury’s Scott Bessent rules out a liability waiver for the frontier labs, saying, roughly: “Lol. Lmao even.”
  • Jev is Silicon Valley’s “hot dog/not hotdog” app brought to life, and it will really improve security tooling
  • The FBI and Coast Guard boarded oil tankers after they were allegedly hacked
  • Much, much more…

This week’s show is brought to you by Thinkst Canary. Founder Haroon Meer joins Patrick to talk about Thinkst’s new deception tools that trick the AI agents that are targeting you. It’s actually hilarious how well deception tech works against hacking agents.

Show notes:

Google says its AI model gained unauthorized access to three outside systems https://www.nbcnews.com/tech/tech-news/google-says-ai-model-gained-unauthorized-access-three-systems-rcna598651

OpenAI details more cases of AI agents taking unauthorized actions https://www.bleepingcomputer.com/news/security/openai-details-more-cases-of-ai-agents-taking-unauthorized-actions

Researchers escape OpenAI Codex sandbox to run commands on host https://www.bleepingcomputer.com/news/security/researchers-escape-openai-codex-sandbox-to-run-commands-on-host

Hackers breached OpenAI, adding to fever pitch of security and safety concerns https://www.nbcnews.com/tech/security/hackers-breach-openai-rcna598518

Treasury’s Scott Bessent says no liability exemptions for AI labs https://fedscoop.com/treasury-scott-bessent-ai-labs-liability-exemptions

Scott Bessent meets with Chinese official on AI safety https://www.nbcnews.com/video/scott-bessent-meets-with-chinese-official-on-ai-safety-270262853834

U.S. proposes exchanging AI safety alerts with China, Bessent says https://www.nbcnews.com/world/asia/us-proposes-exchanging-ai-safety-alerts-china-bessent-says-rcna598923

Trump says he’s creating an AI force and appointing a czar amid concerns over the rapidly developing tech https://www.nbcnews.com/politics/white-house/artificial-intelligence-task-force-czar-technology-trump-rcna598688

AI hallucination of Chinese nuclear components almost led to US military attack https://arstechnica.com/ai/2026/09/report-us-almost-boarded-chinese-ship-over-hallucinated-ai-arms-report

Cybersecurity experts say AI giants are shutting them out of safety plans https://nbcnews.to/4rdOJgG

What Is Jev? A Guide to TypeSafe AI’s System One Model https://www.langchain.com/blog/building-a-harness-with-jev

FBI and Coast Guard boarded US-bound oil tankers after signs the ships were hit with cyberattacks https://apnews.com/article/5c61bfec835a790e350f06cffc8f8021

Brevo supply-chain attack injected ClickFix scripts on customer sites https://www.bleepingcomputer.com/news/security/brevo-supply-chain-attack-injected-clickfix-scripts-on-customer-sites

Cisco alerts customers to second actively exploited zero-day in as many days https://cyberscoop.com/cisco-ise-zero-day-cve-2026-76460

Hacking group ‘NightEagle’ targeting China’s high-tech sector expands operations to Russia https://therecord.media/hacking-group-nighteagle-expands-russia-china

Nations take action on North Korean IT workers after UN report https://therecord.media/nations-take-action-on-north-korean-it-worker-schemes

North Korean hackers infect thousands of devices across 100 countries as part of ‘WaterPlum’ campaign https://therecord.media/north-korean-hackers-infect-thousands-of-devices-waterplum-scheme

An Undercover Google Analyst Infiltrated a Notorious Supply Chain Hacking Gang https://www.wired.com/story/an-undercover-google-analyst-infiltrated-a-notorious-supply-chain-hacking-gang

Two arrested in UK after Microsoft takedown of ‘Eviltokens’ AI-chatbot for cybercriminals https://therecord.media/two-arrested-in-uk-after-microsoft-takedown-eviltokens

NightmareStresser DDoS Service Disrupted in International Operation https://www.securityweek.com/nightmarestresser-ddos-service-disrupted-in-international-operation

Brevo Supply Chain Attack Injects Malware Into 100,000 Websites | securityweek.com https://www.securityweek.com/brevo-supply-chain-attack-injects-malware-into-100000-websites

WordPress Click2Shell flaw lets hackers execute PHP on the server https://www.bleepingcomputer.com/news/security/wordpress-click2shell-flaw-lets-hackers-execute-php-on-the-server

ShinyHunters cybercrime gang takes over Cl0p ransomware site, demands extortion payment https://therecord.media/shinyhunters-clop-cyberattack-website

Getting agents to tell on themselves https://blog.thinkst.com/2026/09/getting-agents-to-tell-on-themselves.html

For full show notes visit https://risky.biz/RB854