FCC Blocks Foreign-Made Routers – 2026-03-30 - podcast episode cover

FCC Blocks Foreign-Made Routers – 2026-03-30

Apr 01, 20261 hr 7 minSeason 6Ep. 13
--:--
--:--
Download Metacast podcast app
Listen to this episode in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episode description

This episode covers the FCC’s move to restrict or ban certain foreign-made networking equipment—especially routers tied to Chinese manufacturers—highlighting the potential cybersecurity risks, supply chain implications, and how the rule could affect ISPs and consumers. The hosts also discuss broader concerns around hardware trust, existing infrastructure, and what qualifies as “approved” devices under FCC guidelines, along with a brief, lighter mention of a viral robot incident making the rounds online.

Join us LIVE on Mondays, 4:30pm EST.
A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.
https://www.youtube.com/@BlackHillsInformationSecurity

Chat with us on Discord! -
https://discord.gg/bhis
🔴live-chat


Chapters

  • (00:00) - PreShow Banter™ — Robot Handlers
  • (05:11) - FCC Blocks Foreign-Made Routers – 2026-03-30
  • (06:44) - Story # 1: FCC moves to block new foreign-made routers
  • (17:00) - Story # 2: FBI Chief Kash Patel’s Gmail Account was Hacked by Iranian Hackers
  • (20:07) - Story # 3: FancyBear Exposed: Major OPSEC Blunder Inside Russian Espionage Ops
  • (24:18) - Story # 4: LiteLLM and Telnyx compromised on PyPI: Tracing the TeamPCP supply chain campaign
  • (27:49) - Story # 4b: TeamPCP Supply Chain Campaign
  • (42:45) - Story # 5: Spylandia: How a Stretch of Florida Real Estate Has Become a Covert Corridor for Chinese and Russian Spies
  • (45:51) - Story # 6: Anthropic readies Mythos model with high cybersecurity risk
  • (57:31) - Story # 7: Google Ships WebMCP, The Browser-Based Backbone For The Agentic Web
  • (01:02:24) - Story # 8: DDR5 Memory Prices Just Took a Noticeable Dive for the First Time in Months, and Google’s TurboQuant Might Be Behind It
  • (01:04:03) - Securing the Cloud: Foundations by Andrew Krug
  • (01:04:47) - Incident Response Simplified by Patterson Cake


News Links
Story # 1: FCC moves to block new foreign-made routers
Story # 2: FBI Chief Kash Patel’s Gmail Account was Hacked by Iranian Hackers
Story # 3: FancyBear Exposed: Major OPSEC Blunder Inside Russian Espionage Ops
Story # 4: LiteLLM and Telnyx compromised on PyPI: Tracing the TeamPCP supply chain campaign
Story # 4b: TeamPCP Supply Chain Campaign
Story # 5: Spylandia: How a Stretch of Florida Real Estate Has Become a Covert Corridor for Chinese and Russian Spies
Story # 6: Anthropic readies Mythos model with high cybersecurity risk
Story # 7: Google Ships WebMCP, The Browser-Based Backbone For The Agentic Web
Story # 8: DDR5 Memory Prices Just Took a Noticeable Dive for the First Time in Months, and Google’s TurboQuant Might Be Behind It

Securing the Cloud: Foundations by Andrew Krug
Incident Response Simplified by Patterson Cake

Creators & Guests


Click here to watch this episode on YouTube.

Click here to view the episode transcript.

🔗 Register for FREE Infosec Webcasts, Anti-casts & Summits 

https://poweredbybhis.com


Brought to you by:

Black Hills Information Security 

https://www.blackhillsinfosec.com


Antisyphon Training

https://www.antisyphontraining.com/


Active Countermeasures

https://www.activecountermeasures.com


Wild West Hackin Fest

https://wildwesthackinfest.com

Transcript

PreShow Banter™ — Robot Handlers

Andy Pettit (Nerf)

What what percentage of people even buy a router? Z like, minority, 25%. Eight per no. That's way too high. That's way too high.

Corey HamCorey Ham

90 might be closer.

Andy Pettit (Nerf)

Yeah. Like Well, it just wraps up ISP. Yeah.

Ralph MayRalph May

Yeah. What are the ISPs? Like that.

Corey HamCorey Ham

But all those are banned too, by the way.

Andy Pettit (Nerf)

So Well, only new versions. So really the ISPs can just be like, oh, sorry. We can't give you a newer one here. Have another one

Ralph MayRalph May

Well, they haven't given new ones in years anyways. This

Wade WellsWade Wells

one's only got doesn't even have four gigahertz on it or five.

Andy Pettit (Nerf)

But yeah. So it's all of they can't import, like, new new. They just can't do new models, like new versions.

Corey HamCorey Ham

Yeah. Let's hope Xfinity or Comcast has a back stock of 600,000 routers that they now get to burn through over the next

Ralph MayRalph May

ten years.

Andy Pettit (Nerf)

But they I mean, they can keep buying the ones that they're already getting is what I'm saying.

Corey HamCorey Ham

Oh, they can't?

Andy Pettit (Nerf)

Yes, they can.

Corey HamCorey Ham

Only if they won't

Andy Pettit (Nerf)

It's not new production. It's new models.

Ralph MayRalph May

Yeah. So they actually Well,

Wade WellsWade Wells

let's not talk about articles when we're live. Right. Right. Banter. Gosh. All of you. It's like your children never podcast before.

Corey HamCorey Ham

Sorry. I'm sorry, guys. I took last week off, so I forgot everything I know about podcasting.

Ralph MayRalph May

That's all. It's okay. You knew something about podcasting? Apparently not. I'm not Does that have any better news article today? I thought we were all

Corey HamCorey Ham

rookies here. There's not a chicken news article, is there?

Wade WellsWade Wells

No. There isn't. Someone's trolling me and put something in there.

Corey HamCorey Ham

Made you click.

Bronwen AkerBronwen Aker

Something's in there, and it's definitely not chicken related, and there's no attempt to pretend it's chicken related.

Corey HamCorey Ham

How did we end up with a article from brobible.com that has a video of a robot slapping a kid in the face.

Bronwen AkerBronwen Aker

Wait. What?

Wade WellsWade Wells

What is that? And everything else.

Bronwen AkerBronwen Aker

How did I miss that?

Corey HamCorey Ham

We're gonna skip that one on The Real News, but it's it's an article, I guess.

Wade WellsWade Wells

It's definitely worth mentioning.

Corey HamCorey Ham

Is it though? Because it's just a robot trying to dance and then some stupid kid gets in the way. It's not the robot's fault.

Wade WellsWade Wells

No. I just meant like right now. That's it.

Corey HamCorey Ham

Right now.

Andy Pettit (Nerf)

Yeah. The video is pretty great.

Corey HamCorey Ham

The video

Andy Pettit (Nerf)

is love the video. I I recommend it.

Wade WellsWade Wells

There's another robot.

Corey HamCorey Ham

It's clearly accidental. I'm sorry. I'm gonna link to bro bible. I I don't know about bro bible. I do not endorse this website at in any way shape or form. I don't know where this falls in the political spectrum or if it's just a malware site. I'm sorry.

Wade WellsWade Wells

This is

Andy Pettit (Nerf)

My favorite part is the guy with, like, the herding stick. That a robot? Yeah. Like, one of these, you know, robot handlers, and he's just got, like, a big stick that is clearly there to, you know, hit or poke the robot in case, I don't know, hits a kid or something.

Corey HamCorey Ham

It's like one of those high voltage electricity hooks for like when people are flipping big switches and it like has you know, just like grab someone and pull them.

Wade WellsWade Wells

He he throws it up and it immediately moves away from the stick. So they've obviously done some training on stick based discipline.

Corey HamCorey Ham

Carrot carrot and stick based.

Wade WellsWade Wells

Negative one negative one point to stick stick scene.

Bronwen AkerBronwen Aker

Now we're not only gonna have robots and AIs, like, doing things to sabotage their their programmers or handlers. Now they're gonna be programmed to be afraid of sticks? Oh, that's not gonna end well.

Wade WellsWade Wells

That's the perfect thing. We've programmed them now to be scared of sticks. We'll be fine. That's it.

Bronwen AkerBronwen Aker

Right? Long before they turn those against us? Come on.

Wade WellsWade Wells

Roboapocalypse, you just run into the forest. Movies. You're good. It's like it's it'll be similar to, like, vampires or, like, stakes but sticks.

Andy Pettit (Nerf)

I mean, of the things that robots could turn against us, I feel like sticks is the least harmful.

Wade WellsWade Wells

I guess it depends on how big the stick is and what the stick is made of.

Ralph MayRalph May

Yeah. Maybe they make it into a sphere.

Wade WellsWade Wells

A neutron stick that blows the sun up.

Andy Pettit (Nerf)

That kid should've just got out of the way. He he saw it coming. He literally did he see it coming? I don't know if he saw that coming. He saw it coming. Look. Look. Look. He's like, oh, no. Boom. I feel bad for laughing.

Corey HamCorey Ham

Nah. Kids what is it? What is the subreddit? Kids falling over or whatever? It's one of the best ones. Alright.

Bronwen AkerBronwen Aker

Yeah. I'm I'm sorry. I've been just as discombobulated and accidentally hit people. I'm not buying it.

Corey HamCorey Ham

Really? Was anyone there with a stick?

Bronwen AkerBronwen Aker

Well, the human had the stick.

Wade WellsWade Wells

So at your like dance recital, someone was carrying a stick just like the guy in the video. Just like

Bronwen AkerBronwen Aker

Dude, wasn't a dance recital. It was one hell of a party though.

Wade WellsWade Wells

Oh, was it was one of those weddings,

Corey HamCorey Ham

Alright. Let's roll the finger. Let's do this.

Andy Pettit (Nerf)

Alright. Here we go. Maybe. Here we go. Oh, sorry. I was I was typing. Excuse me. Here we go.

Corey HamCorey Ham

Sorry. No typing allowed during the show. One. Hello, and welcome to Black Hills Information Security's talkin' about news. It's 03/30/2026.

FCC Blocks Foreign-Made Routers – 2026-03-30

We're here on Zoom. I'm scared. I know I wasn't here last week. Everyone switched to Zoom while I was gone. This is some kind of elaborate April fool's day prank two weeks in advance as far as I'm concerned.

Ralph MayRalph May

You gotta start early.

Corey HamCorey Ham

You gotta start early these days. How's it going, everyone? We got Ralph, the cofounder of US based routers for what would it be? Routers for Ragers? I don't know what it what would

Bronwen AkerBronwen Aker

your company name be? Routers.

Ralph MayRalph May

Routers for Rooters? Routers for Rooters. Yeah.

Corey HamCorey Ham

We got Wade who just came back from paternity and is growing his mustache out again. It's gonna

Wade WellsWade Wells

be Takes takes three weeks to grow mustache everyone. Just for me. That's that's the That's

Corey HamCorey Ham

good to know.

Wade WellsWade Wells

Right.

Corey HamCorey Ham

We got Bronwen who is coming to us from debatably the only approved router that you can use in The US now. We got Andy who's wearing his record shirt. We got Patterson, our own incident responder ready ready for us to get breached live on the show and respond to it, hopefully.

Ralph MayRalph May

Wow. That would be interesting.

Corey HamCorey Ham

And then we got Andrew here to talk about his supply chain experience. I hope we'll put him on the spot.

Story # 1: FCC moves to block new foreign-made routers

Ralph MayRalph May

Alright.

Corey HamCorey Ham

I feel like the first thing we should probably dive into is the whole router ban thing. There's like 10 articles about this. So There's kind of

Ralph MayRalph May

a lot of articles.

Corey HamCorey Ham

Yeah. So basically for those out of the loop, the FCC, our favorite net neutrality eraser people have updated their covered list, which I don't really know what the covered list is. From what I understand, it's essentially a list of authorized devices that can't be authorized? Like, what does anyone know what the covered list actually is? No. I didn't I didn't

Ralph MayRalph May

see the

Bronwen AkerBronwen Aker

covered list. According to the fcc.gov website, the FCC is going to work with public safety and homeland security to publish a list of equipment and services covered that are deemed to pose unacceptable risk to the national security of The United States. So, supposedly, the covered list is the list of bad routers or other devices.

Corey HamCorey Ham

Right. And the thing is they

Bronwen AkerBronwen Aker

It sounds like they're still figuring out which specific names are gonna go on the covered list.

Corey HamCorey Ham

No. No. So this is what happened. Today or on March 23, they added all consumer grade routers produced in foreign countries to the covered list. So basically, if your router has any components that were manufactured overseas, if the router itself manufactured overseas or it was produced in a foreign country, it's not covered or it's on the covered list, which means it's not allowed to be used.

It's It's not allowed to receive FCC approval, which means it can't be used because FCC is the people who regulate what can wirelessly transmit.

Ralph MayRalph May

They can get a conditional approval from the Department of War or Department of Homeland Security. So it's more political grandstand

Corey HamCorey Ham

Oh, similar to what we saw with Anthropic where now every company has to bend the knee to whoever is in charge.

Bronwen AkerBronwen Aker

Mhmm. Is this another tweet first, lawyers later routine?

Ralph MayRalph May

I think so. I I

Corey HamCorey Ham

don't know. I honestly don't really see what the point of this is. Like, if we're okay. So the details aside and and for those that are curious, yes, there are no routers that meet this criteria currently. You could argue a Starlink does vaguely meet the criteria because it's manufactured in The US, but the the wireless components of Starlink are manufactured overseas.

So it's like might meet the criteria, might not. The obviously, it doesn't cover existing routers. So in like, your router that you're using right now isn't covered. Like, that's still allowed. It's grandfathered in.

And existing, like, retail stock is also grandfathered in. So at the very least, we know people replace their routers all the time. Not not really. They probably never replace their routers. And so this, like, probably won't have any real effect in the next three to five years or probably won't have any effect now.

Most companies will apply for exemptions and there's a lot of back stock. Arguably, it's probably an okay move. Although, it is worth noting that the previous compromise we've seen of network devices by Volt Typhoon have not been of overseas routers. They've been of NETGEAR and Cisco routers.

Ralph MayRalph May

Well, weren't the most popular ones too, especially like the

Corey HamCorey Ham

Yeah.

Ralph MayRalph May

You know, the Fortinet the Fortinet's with, like, the 55,000 CBEs they've had in, like, the last three days. I mean, I'm being hyper verbal, but, you know,

Corey HamCorey Ham

like Yeah. Ralph, a 100%

Andy Pettit (Nerf)

only applies to consumer electronics. So Fortinet being enterprise, I think, would be exempt.

Ralph MayRalph May

They shouldn't.

Corey HamCorey Ham

Yeah. Well I don't I

Andy Pettit (Nerf)

don't think this goes into, like, the secure when I first read this article or or heard of this, I was like, you know, oh, well, good. Maybe they'll do something. Like, maybe they will actually enforce some kind of product security on this stuff. But it doesn't look like that's what's happening.

Ralph MayRalph May

No. This has nothing to do with security though. That's the thing.

Corey HamCorey Ham

You know? That No. Years ago though, SZA told everyone to rewrite everything in Rust. So that should have solved security a while ago, but somehow it didn't. Right.

I mean, basically, this is creating this is like a solution looking for a problem. Because if we're talking about real world we're talking about real world hacking of routers, it's just stuff that's outdated, and this honestly encourages people to run their existing outdated routers for even longer than they normally would. Yeah. And there is no maybe there's gonna be some company that stands up specifically to make this exist, but having some friends in the semiconductor industry, you don't just spin up a fab in a weekend. Like, that that takes decades.

You can't just be like, oh, yeah. We can manufacture things here now because we have a three d printer and a dream. Like, it it's a huge effort. So we'll see how this goes. I'm guessing every company just applies for an exemption and then

Andy Pettit (Nerf)

Corey, what if you have a three d printer, a dream, and AI?

Corey HamCorey Ham

It might be possible to make a You could make a router shaped object. I will say ironically, we were talking about this before the show, wired isn't covered. So you could still run your, you know, toilet paper link wired router.

Bronwen AkerBronwen Aker

Doesn't seem to have an exclusion on wired versus wireless.

Corey HamCorey Ham

Well, that's easy right now.

Bronwen AkerBronwen Aker

It says flat out. I mean, they they quote, volt flax, salt typhoon, cyberattacks, and they basically say that routers from other countries are not considered trustworthy.

Ralph MayRalph May

What what if you take Right. The computer.

Andy Pettit (Nerf)

Aren't they aren't they doing this via the the radio frequency certification process? Like, that's what the FCC is using for their enforcement. So if you have Yeah. I don't know what the scope is. Wireless, then I don't think it would apply.

Ralph MayRalph May

I I think FCC does other kinds of certifications outside of just wireless devices.

Bronwen AkerBronwen Aker

They do.

Ralph MayRalph May

I I I think Communications covers wired and wireless. Yeah.

Corey HamCorey Ham

Yeah. Okay. So it says here the definition of router's router, it's NIST internal report eight four two five a, which is the most government sounding thing ever, which defines routers as consumer grade networking devices that are primarily intended for residential use and can be installed by a consumer. It doesn't differentiate between wired and wireless.

Ralph MayRalph May

So So the wireless and wired aside. Here's my hacker brain. I'm like, well, I'll just get a computer, maybe like a Raspberry Pi or some other device that has two ethernet ports, tons of those, and I'll turn it into a router. Right?

Corey HamCorey Ham

Correct. Also, by the way, the only real carrot and stick that they have is FCC approval, which I'm sure I bet money you can go on Alibaba right now and buy a non FCC approved wireless router. I mean, I know you can buy a Baofeng. Right? Like, it's the same thing. And then with

Ralph MayRalph May

and with with AI now, you could probably start your own router company. I'm not saying you should, and I'm also not saying it wouldn't take a little bit of work. But my last, like, cautionary tale about three d printing and having AI write all your code is you still have to make a board. Right? And those all come from China.

There there's only, like, two fabs that really make most of this electronics, and all of that is in China. You can, as an individual, you can buy from maybe one there's one fab in The US, and it's, like, 10 times the price of the Chinese competition. And the Chinese fabs are better at developing, like, electronics board, whatever you want.

Wade WellsWade Wells

So Ralph, you haven't got the ad for that three d printer micro board thing. I keep getting ads for it. It's like, oh, print your own boards. And I'm like, oh, it's only $8? Like, oh, that's that's and maybe I should.

Ralph MayRalph May

But For somebody for somebody who's done board production at scale, it's definitely something you wanna hand off to somebody who can build tons of them at scale and has the parts to do that. You know, building, like, one off or two off or, like, three things, that's, like, okay. But if you wanna build hundreds or thousands of these things, you're you're definitely gonna wanna send that to a a batch.

Corey HamCorey Ham

By the way, as Ralph already said, your your pick and place your pick and place machine at home is still picking and placing chips that are made overseas. That's the bigger problem. You need the actual microprocessor that is made in The US to hit the criteria for this. So basically, it's just another day where the government drops a big turd in the punch bowl and we're all gonna have to figure out what happens. Classic.

Andrew KrugAndrew Krug

Yeah. I would I would predict we're gonna green check mark this. Like, they're gonna announce this, and then as the vendor in a foreign country, you're going to be able to buy a green check mark that you've gone through a compliance process in The US. That's where effectively, like, tariff on cybersecurity or routers. Yeah.

Corey HamCorey Ham

Yeah. I could see it. I could see it. Verified on

Bronwen AkerBronwen Aker

basically, it's more grift.

Corey HamCorey Ham

I just Sorry.

Ralph MayRalph May

All all I could think about was Ubiquiti and that you're they're a US company, but all their gear is not made in The US. Right?

Corey HamCorey Ham

I mean, dude, that's true for Cisco and Netgear and every other US company. Right? Right.

Ralph MayRalph May

Yeah. No. It's so it's yeah. Let's just let's just put it at that. Everything's already made in China or some other so Vietnam. Also, there's other places that do have some electronics. But, yeah, it's all getting imported in.

Corey HamCorey Ham

Do you all or here?

Andy Pettit (Nerf)

If your cell phone can be a hotspot, is it technically a router?

Corey HamCorey Ham

Oh. Yes. It is. It's definitely manufactured overseas. Whoopsie.

Ralph MayRalph May

China's the only one producing these suckers.

Corey HamCorey Ham

Yeah. So while we're here in networking device corner, There's been a couple back doors in wait. What why is there an article? Someone someone fished me with an article in this in the news for this week that's from 2018. Whoever you are, you suck. Whoever you are, I don't like you, you suck.

Ralph MayRalph May

I don't like you.

Corey HamCorey Ham

So let's not talk about an article from 2018.

Ralph MayRalph May

I mean, was afro, po.

Corey HamCorey Ham

Are there any other networking I mean, are there any other networking news? I don't think there are.

Story # 2: FBI Chief Kash Patel’s Gmail Account was Hacked by Iranian Hackers

Ralph MayRalph May

Alright.

Wade WellsWade Wells

We could talk could talk about how people are networking into Kash Patel's email.

Corey HamCorey Ham

Yes. Let's talk about that. What's going on with that? Was his password ILoveTrump?

Ralph MayRalph May

It I mean, I bet you was I bet you was in some list. I bet you was

Corey HamCorey Ham

in It had to be. Yeah. So what's going on here? Cash Patel, the current chief, who is a big fan of from what we understand, a big fan of hockey. He his Gmail was compromised by Iranian hackers. What like, what is there I guess, there's some leaks. How how bad is this? Like, I'm assuming he's not doing government communications using his Gmail. Right? No. Whatever.

Wade WellsWade Wells

I didn't see any reports of that, which is also fairly good. Right? Like, it was all personal stuff of him, like, smoking cigars in Cuba, which I was like, alright.

Corey HamCorey Ham

He's Yeah. Going to Who could have predicted this?

Wade WellsWade Wells

Right.

Corey HamCorey Ham

So is that why we let that ship into Cuba?

Ralph MayRalph May

Yeah. Mainly, it's for the cigars.

Corey HamCorey Ham

It's for the cigar. I mean, I I will say, like, honestly, kudos for not leaking your personal stuff into your or your work stuff into your Gmail. Like, that's good good good on him. Yeah.

Ralph MayRalph May

I mean, do you think here's my question. Do you think he had so wait. Hold on. I'm just thinking about this. Isn't two factor kind of enabled on your Google account anyways? So nowadays, if you set up a Google account and you don't go in and, like, turn on those things, if you log in from anywhere that you've never been from before, it usually prompts up to do like an SMS or some other kind of authentication. Right?

Corey HamCorey Ham

It seems like it probably wasn't his primary Gmail, but there is no details in the disclosure of what, like, how they got this information. It appears to be mostly going back from 2010 to 2019. So maybe it was like a secondary Gmail that he hasn't used since 2019 and

Ralph MayRalph May

Is old is it old like Cuban cigar

Corey HamCorey Ham

handle? Handle? Yeah. Yeah. Yeah. Yeah. It's It's likelikecigarcigarboyboy202019nineteen.@gmail.com

Wade WellsWade Wells

or whatever. These are our these are also state backtackers. Right? So it's not like something on the lower end for them to do whether, like, they send them a fake fake push or something like that.

Ralph MayRalph May

Yeah. No. I mean, I wonder if they did actually interact with him. I guess that's the question I I was really kinda getting at is if, like, he really got duped or if, you know, it was just something as simple as, you know, what do you call it? Dealer. Yeah. Infose dealer.

Corey HamCorey Ham

Yeah. Password stuffing or yeah. I got you. Something like that. I don't know. I mean, we don't know. There's no information. They basically announced it on their website and didn't provide any specific info. We'll we'll stay stay tuned on this show for, you know, what how it happened if that ever gets published.

Ralph MayRalph May

It probably will never get published just because he's already probably a little upset about the scenarios.

Wade WellsWade Wells

I thought they did publish it. They posted it somewhere so you could download it all.

Corey HamCorey Ham

They know yeah. They published the data, but I'm saying an incident response, like a full I r right now. It got free.

Wade WellsWade Wells

A k

Ralph MayRalph May

I was like, I looked

Wade WellsWade Wells

at so many pictures. I'm

Ralph MayRalph May

You're still scrolling through them. Wow. That's impressive.

Story # 3: FancyBear Exposed: Major OPSEC Blunder Inside Russian Espionage Ops

Corey HamCorey Ham

So okay. Choose your own adventure. Do we wanna go into trivia stuff, or do we wanna talk about the Fancy Bear stuff? To

Bronwen AkerBronwen Aker

to we're already talking about Go ahead, Wade.

Wade WellsWade Wells

I was gonna say we're already talking about states state sponsored, but I I

Corey HamCorey Ham

Yeah. Let's go into it. I feel like Patterson will have some interesting knowledge to share on this. So basically, there's an article posted on control alt intel, which I've never heard of. Is this like a Wade Wade and Patterson, is this like a reputable site? Have you guys ever heard of this?

Wade WellsWade Wells

I've seen them recently, but not long running something like the Differ report. Patterson,

Corey HamCorey Ham

have

Patterson CakePatterson Cake

you I'm seen familiar. Alright.

Corey HamCorey Ham

Okay. On March 11, I guess it's also associated with hunt.io, which I've also not really heard of. I don't know if you guys have heard of that. But anyway, there's a opsec fail from a fancy bear Russian state sponsored threat actor that resulted in some exposed open directories, like basically directory indexing, classic, and a ton of information about their targets, their, you know, harvested information, 11,000 emails, credentials, forwarding rules. I guess from a business email compromise perspective, Patterson, is this kinda the like standard that people do?

They're using sieve forwarding rules? Is that like a normal business email compromise, or is this, like, something special to be gained from this write up?

Patterson CakePatterson Cake

I am honestly catching up and reading this right now. So, yeah, definitely it it definitely seems a little bit unique to me, at least compared to typical business email compromise. Typical.

Corey HamCorey Ham

Is it also typical for threat actors to just leave open directory indexes

Patterson CakePatterson Cake

on their servers? Clearly, depends on the threat actors and what type of router they're using. But yeah.

Corey HamCorey Ham

Nice. Yeah. I think it's probably worth a read. I mean, it's an interesting, you know, interesting concept. I can only imagine I'm assuming an Intel analyst was just digging through stuff and found way more than they ever could have imagined or expected based on an exposed directory index. Like, that's kind of a gold gold mine.

Wade WellsWade Wells

Dave never heard the term civ forwarding before.

Andy Pettit (Nerf)

I wonder if that's like the the email server or something?

Wade WellsWade Wells

It says it's some JavaScript that they ran that does a redirect, but I would imagine it still would have to be something in the forwarding rules. Right? Which, like, mo general practice for most organizations is you eliminate all forwarding, email forwarding, just because of this particular situation, and then you only turn it on if someone gets, like, let go, and then the emails from that all emails get forwarded to that user's boss.

Andy Pettit (Nerf)

If if we wanna talk about, like, normal practices, though, I I think I read in there that, like, half of the accounts that they had creds for that were compromised didn't have any sort of 2FA at all. Just none. So I don't know that we can really fall on standard practices here.

Patterson CakePatterson Cake

Well and we should we should comment that that, Wade's suggestion should be best practice for every business. But having worked a couple business email compromises of late, yeah, it's well, it won't surprise any of us that best practices are often not in place, even external forwarding, sadly. But

Corey HamCorey Ham

it looks like SIV is just like an open standard for how to design an email filter, basically. Yeah. RFC five two two eight.

Wade WellsWade Wells

Outlook and Apple Mail.

Corey HamCorey Ham

It looks like pretty much everything every mail server supports it or most do. So yeah. I don't know. Interesting write up. Obviously, we you know, we've seen this before. The the NSA did this famously. Right? That's where we got all the Shadow Brokers stuff. So this has happened before. It'll probably happen again. It's pretty spooky.

Story # 4: LiteLLM and Telnyx compromised on PyPI: Tracing the TeamPCP supply chain campaign

Bronwen AkerBronwen Aker

Kind of like what happened with the team PCP thing?

Corey HamCorey Ham

Yeah. Let's talk about that. Sure Andrew has many hot takes on So Team PCP is a recent a recent threat actor. Their main thing is that supply chain compromise of what is it? Trivy or whatever? Trivy? I don't know.

Bronwen AkerBronwen Aker

It's lite l l m. L I t e l l m. It's a Lite LLM. Library.

Andy Pettit (Nerf)

That was one of the knock ons. Trivy was the first was the initial, which is the the open source product from Aqua Security.

Corey HamCorey Ham

Ah, okay. I just got start through this? I'm sure Andrew has, like, a full on long, marketing approved pitch for this so far. You wanna run us through this?

Andrew KrugAndrew Krug

There's no marketing approved pitch for this because this all actually happened while everybody was at RSA. So, like, that's the other thing about this is, like, all the action on this happened while, like, all the CSOs are somewhere in California at a bunch of parties or something. So, like, the interesting thing is first they compromise Trivy. Right?

Corey HamCorey Ham

And then a software supply chain scanner. Right?

Andrew KrugAndrew Krug

Trivy is a vulnerability scanner by Aqua Security. And a lot of other security vendors might not admit this, but they probably just take Trivy and embed this in their vulnerability management scanner, and then they provide

Corey HamCorey Ham

a

Andrew KrugAndrew Krug

dash around this. So because Trivy is provides a bunch

Andy Pettit (Nerf)

of integrate this into, like, GitHub actions? That Yeah. Pretty much the only way to do it? Okay.

Andrew KrugAndrew Krug

So, people put trivia in GitHub actions. They also put it a lot of other places as well. So, like, really, really interesting from a initial compromise perspective. So, like, because Trivia is compromised, we could assume on March 20 when canister worm and GitHub like, other GitHub actions are abused, that is a result of potentially pivoting from Trivia, like, in CI. So most companies, when they saw this, they just completely stopped building everything.

Right? That's, like, the the initial response wherever you just disable all your runners across, like, GitHub, GitLab, like, whatever your build pipeline is. And then we see the compromise in, OpenVSX on March 23, so four days afterwards. Light LLM, one day after that, and then Telenix, the, package right after that.

Corey HamCorey Ham

So the worm, like, the worm functionality here is just dump your secrets and move on. Right? Like, that's the worming. Like, it's like, give me all the secrets that you can access and and Don't wait. There's more

Andy Pettit (Nerf)

unless you're from a RAM. It it is it's got, an RMRF built in for anybody that it thinks is Iranian.

Ralph MayRalph May

I gotta change my So what

Corey HamCorey Ham

what this is, like, what I I'm, like, reading between the geo lot like, the geopolitical tea leaves. This is Israel going after Iran through Trivy. They're like, Trivy, Iran's really good at scanning for vulnerabilities, so we'll go after them. Like, I I

Andy Pettit (Nerf)

I I don't know. I feel like it's gotta just be, you know, some kids, and they thought it'd be funny.

Corey HamCorey Ham

They're like, we read the news.

Wade WellsWade Wells

This has this has more of a shiny hunters thing, like, theme to me. Right? Looking for secrets and then using those secrets to then pivot into a different environment.

Ralph MayRalph May

So where does this Palinex? I saw that on there. Was I looking

Story # 4b: TeamPCP Supply Chain Campaign

Wade WellsWade Wells

Look at look at the link that I provided in our chat. It has a timeline of, like, the different different repos or the different Yeah. All the things that they

Corey HamCorey Ham

It's a lot. Yeah. It's a long chain of exploits for sure.

Wade WellsWade Wells

The three are trivia aqua

Bronwen AkerBronwen Aker

five ecosystems. Yeah. GitHub actions, Docker Hub, NPM, OpenVSX, and PyPI.

Corey HamCorey Ham

Well, packages on those, not the actual Yeah.

Bronwen AkerBronwen Aker

Right. What I mean.

Andrew KrugAndrew Krug

That

Corey HamCorey Ham

This is why nobody can

Bronwen AkerBronwen Aker

mute and pipe on in that has crossed into those five

Wade WellsWade Wells

ecosystems. We shoulda we shoulda went rust.

Ralph MayRalph May

Yeah. If you guys would have written this in rust, this never woulda happened.

Corey HamCorey Ham

Don't worry though. Every company has they they every company fully understands their CICD pipelines start to finish, and they have software bills and materials so they know exactly what packages are being used exactly where. Right, Andrew?

Ralph MayRalph May

Yes. And and they have

Bronwen AkerBronwen Aker

an ongoing patch management program.

Andrew KrugAndrew Krug

There's there's a great rant from the, I think it's, like, one of the founders of ChainGuard, how this just kind of, like, unearthed a whole bunch of things in the GitHub actions ecosystem that we have all thought of as blind spots for, like, the last I don't know how long they've had GitHub actions, but it's been forever. You know? There's just not a lot of visibility into what goes on in a GitHub action when the action is updated. Most people don't do basic things like even pinning GitHub actions to specific hash versions and things like they should be doing. So, like, this is an area that is pretty ripe for some good security hygiene, and hopefully, a few more features that we'll see come out from GitHub that won't be limited to, like, the enterprise tier.

Corey HamCorey Ham

Yeah. I mean, it makes sense. Like, basically, don't use the latest version of whatever thing is is, like, the simplest possible fix here. It's, like, pin your version that you're using. Well, tell me

Ralph MayRalph May

you wanna use the latest version, though, for security?

Andy Pettit (Nerf)

They replaced all the tags. They they repointed the tags to a different commit. So you'd have to you you you can't just pin by version. You have to pin by commit hash, which I've never heard of before, but apparently, it's a thing.

Andrew KrugAndrew Krug

Yeah. And this this is one of the things that everybody considers a nightmare scenario. Right? Because you should not be able to go back in time and overwrite a release. Like, releases should be releases, and those should be, immutable as a point in time, and you should not be able to go back and just, like, say, oh, version one zero one now is version one zero one plus, like, a 100 more bytes.

Like, that just violates the contract. No. No. No. You can do that because it's it's just the way that that Git works and then GitHub doesn't provide any guardrails around how they bundle up the the final artifact as a release, which is a specific to GitHub thing. Right? It's not part of Git protocol.

Ralph MayRalph May

Isn't are are those releases tags too, essentially? Right? So they're tagging the release and then putting it into a release package. And then, I mean, you can essentially rerelease the same version package if you want. I mean, I've done it myself. Right? Instead of, like, just continuing to re rev a version up if you're testing, you can just rerelease it.

Andrew KrugAndrew Krug

Yeah. So tags are part of the the Git standard. What GitHub does is they pull that tag in as metadata of a release. A re releases effectively, in this case, a publicly downloadable file.

Corey HamCorey Ham

It's crazy. This is a really, really interesting compromise and super spooky. I guess, do we have a source? Andy, you mentioned before the show that, like, they have the the implication here is there's so many creds that they don't know what to do with them. Like, they're they're soliciting affiliates.

Andy Pettit (Nerf)

Where I read it. But, yeah, they were solicited. I I read somewhere or heard on one of the other many podcasts that they were soliciting ransomware affiliates because they

Corey HamCorey Ham

just had too many use these creds or secrets. I mean, it's gonna be secrets. Every sys admin right now is rolling secrets that were impacted by this, and the scope is gonna mad.

Andy Pettit (Nerf)

Percent of sys admins that were affected by this are rolling secrets, and that's why we're gonna have a problem.

Corey HamCorey Ham

Yeah. I thought it would be funny. You know, this is a more aggressive version, but it'd be funny if, like, instead of doing this, they just had, like the vulnerability scanner just never reports any vulnerabilities. It just, like, siphons them off to this threat group. And it's like, the vulnerabilities go only to us instead of actually, you know, this is a more noisy You're a more noisy man.

Andy Pettit (Nerf)

There was a there was one other cool thing. Well, I I thought it was kinda cool. The apparently, like, the second version of the Lite LLM package. So, like, they they've already iterated on it. But instead of just having it in Light LLM, they had it write to, like, the the root Python, and it would rerun the compromise package anytime the Python interpreter was activated. Ugh. So

Corey HamCorey Ham

if if it's me Claude helping me

Andy Pettit (Nerf)

the system at all.

Corey HamCorey Ham

Yeah. Yeah. Yeah. I mean, that is like, right now, some sources are claiming over 500,000 corporate identities are compromised. There are some secrets were compromised of for 500,000 corporate entities and 300 gigabytes of compressed credentials, which is that's like in post dealer levels of credentials. That's a lot. Yeah. I mean, watch for like, I guess, Patterson, anyone? Does anyone have tips? Like, what do I do?

Watch for secrets abuse, get my audit logs in order. Like, what what do I do if I'm worried about this?

Wade WellsWade Wells

Right. It's okay. We Cry.

Ralph MayRalph May

This is valid accounts.

Wade WellsWade Wells

Right? Like, valid accounts is probably one of the more harder things to detect. Right? Because they're they're valid credentials. Well, I'm thinking I'm thinking MITRE attacks.

Corey HamCorey Ham

Right? Yeah.

Wade WellsWade Wells

MITRE attacks. So they have a valid account already to your system. So you wanna look for, like, irregular network connections, maybe, like, IPs that are coming out, maybe weird timing. Patterson, you got anything?

Patterson CakePatterson Cake

Rotate all the creds. I mean, yeah, let's sorry. Incident response out of an abundance of caution. Change them all. Change them now.

Corey HamCorey Ham

Our cloud will keys. Right? Yeah. Cloud cloud if if you do stuff in GitHub, if you use this tool, any credentials this tool had access to it at in during the last I mean, what? The last week? It was like If you're I don't know.

Wade WellsWade Wells

If you're in GitHub, just quickly migrate to GitLab real quick, and you'll be fine. Alright? So

Ralph MayRalph May

the other thing that it made me think about is that, like, maybe have a plan for how to quickly rotate your keys without, like, having a pants on fire moment. Right? You know? Because some of these things that it obviously these organizations didn't have control over it. They were kind of a victim of a of a bigger of a bigger play.

Of course, right, there's some layers in defense that you could have done, and maybe those are things you should look at as well. But also thinking about quickly being able to rotate your keys and how that works is probably a good play overall so that if this happens in the future, it probably will. Maybe you are affected, maybe you're not, but at least you have a a playbook for how to rotate your keys.

Corey HamCorey Ham

Yeah. And by the way, your developers are putting your keys into LLMs already. I guarantee you. So you should probably be rotating them on a regular basis.

Ralph MayRalph May

Yeah. Just get, like, an automatic rotation system, right, that just freaking rotates these things out all the time or every 30 days. Right? Mean, I they're already moving that with SSL certificates. I mean, they're they were like, you know what? Certificate revocation, it's broken. So guess what? Everyone's gonna get thirty day certificates now, and you just gotta rotate them over over and over again. So.

Corey HamCorey Ham

Yeah. I mean yeah. And also least privilege applies here. Right? If if they compromise the key that can only read an s three bucket, that's better than a key that can write an s three bucket or create a new one or whatever. So like Sure.

Andy Pettit (Nerf)

You know.

Corey HamCorey Ham

But it's least privilege on keys and identities and things. I'm sure no one's just using an IAM role that's just like AWS global admin.

Andy Pettit (Nerf)

No one

Corey HamCorey Ham

would ever do that.

Ralph MayRalph May

No one is doing that. Everyone is doing that, Corey.

Andy Pettit (Nerf)

Leastprivilege.passwords.text is in that s three bucket.

Ralph MayRalph May

Yes. Yes.

Wade WellsWade Wells

This is why I use canary tokens, right, all

Ralph MayRalph May

over the place. Another good one too. Canary tokens could be useful in this scenario. Right? You might get some hits, especially if you, you know

Andy Pettit (Nerf)

Now it wouldn't it wouldn't help in this, but what about, like, having a, you know, NPM or PyPI clone on prem that, you know, you're you're lagging yeah. And you're you're lagging behind. Like, has anybody actually set one of those up? Like, in theory, it sounds like a good idea. In practice, it kinda sounds like a nightmare.

Corey HamCorey Ham

There's no I I mean, I I have no idea. That would be a question for Andrew. I I I can't even begin to imagine how that would be set up.

Andy Pettit (Nerf)

You're muted, Andrew. Andrew.

Ralph MayRalph May

Oh. Uh-oh. Uh-oh.

Corey HamCorey Ham

Maybe just use sign language to explain CIC security. It'll be fine.

Andrew KrugAndrew Krug

My back? My I'm back.

Corey HamCorey Ham

I'm out there.

Andrew KrugAndrew Krug

So a lot of people do build the node in the Python proxy. Right? But we also have an open source project that's called supply chain firewall that just wraps the node to Python commands with a bunch of some rep rules that scan for malicious code. And if they detect it, they will block the installation of that, which is I I like that approach versus, like, kind of a, a node proxy approach because oftentimes, as we all know with egress proxies, people find a way around them or stuff sneaks into the environment in other artifact forms. So having the, like, kind of some heuristics for detecting, malicious code, especially in dynamic languages, way better.

Corey HamCorey Ham

Yeah. I mean, there's a it's a good point. Basically, have some heuristic methods running on whatever programs you're using. If you're using programs that are constantly hitting a bunch of heuristic checks, maybe look into that. Right?

Like in this case, if you're looking at the post x that the tools did, they did a lot of memory scraping, you know, reading proc mem. They looked at the metadata service. They looked at a w s dot credentials files, kubernetes configs. Basically, these would hit a lot of yar rules or semgrep rules for like secrets abuse and other like sketchy things. I don't wanna download a tool whether it's been supply chain compromised or not that just looks in all my credentials files.

Ralph MayRalph May

Right? Like probably not

Corey HamCorey Ham

that's not good. Whether it's intentionally malicious or whether it's been supply chained, I still wanna know this tool is looking in all my credential files. Although in this case with trivy, it probably was exempt from a lot of those, you know, because it's supposed to be doing that. Right? That's what its job is is to look for exposed credentials and bad things. So it's kind

Andy Pettit (Nerf)

of a perfect storm. It's it's a GitHub action. So like it's not even running in your environment so much. Right?

Corey HamCorey Ham

Well, it depends on how how how you have your runners set up. But yeah. For sure.

Wade WellsWade Wells

I would use I would if I would see it and I had some type of false positives, right, going off on it, I would immediately allow list that not thinking

Corey HamCorey Ham

Because it's a vulnerability scanner. Of course, it's looking in the secrets.

Andrew KrugAndrew Krug

Yeah. Visibility of GitHub actions is so hard, though. Because, like, if you think about it, if you're building on prem or something with, like, a Jenkins box, you can at least do EBPF, like, for observability. In GitHub actions, we don't really have any way to monitor what's going on inside of the action. It's like a neutral third party and then ship telemetry from that. So people have all these hacks, but none of them are good.

Corey HamCorey Ham

So it might be time for GitHub to spin up some more telemetry for actions, it sounds like.

Wade WellsWade Wells

So this is when Andrew pitches his visible actions product right now.

Andrew KrugAndrew Krug

And It'll be behind a a pay paywall. You know? And and that's the thing that is my big rent is that every cool feature for security, you have to pay for a very expensive tier GitHub just to gain access. So for a long time I don't know. Is it still the case that you have to pay just to get access to org logs?

Wade WellsWade Wells

Does anybody know? They I thought I thought they allow they stopped that. My because there was such a big uproar from the community that they do Microsoft did buy buy them.

Corey HamCorey Ham

Right? Microsoft yeah. Yeah. I was gonna say that's Microsoft's play.

Ralph MayRalph May

That is Microsoft's, like, play. Right?

Corey HamCorey Ham

Yeah. That's their play. Arguably that e nine license. Yeah.

Wade WellsWade Wells

I know I know the GitHub logs too, you get different things where if you run, what, like, integrations with certain tools versus you writing some code to hit the API too. It's a different log set, which is also scary. Right? Because you think you're you have all the logs, and then next thing you know, it's like, oh, no. These logs don't exist in this pipeline. So

Corey HamCorey Ham

Well, the okay. So Go ahead.

Andrew KrugAndrew Krug

In in 2017, when I was at Mozilla, we actually had to write web bots that would, like, log in to GitHub and would pat page through the logs and then scrape them with beautiful soup just to get them into the SIEM because all of our repositories are free repositories. So, like, the I think the thing that I'm I'm trying to say is the open source projects that we depend on the most oftentimes have the lowest level of access to the security tools

Wade WellsWade Wells

Mhmm.

Andrew KrugAndrew Krug

Because they are free open source tools.

Corey HamCorey Ham

Yeah. Yeah. That's a good point. That's a really good point. I I guess last question I have on this. Does anyone know who Team PCP is? Do we have any idea who this threat actor is? They just came out of nowhere and said, hey. We just crushed, you know, 500,000 companies overnight while everyone was at RSA. It feels pretty significant, but I guess does anyone have any intel on that? Do we know who this is? It could be shiny hunters, I guess. But Or wouldn't they just branded a

Wade WellsWade Wells

shiny hunters? My feeling, but also only CSOs go to RSA. Right? Like, the people in the trenches were

Ralph MayRalph May

still Only CSOs.

Wade WellsWade Wells

We're still we're still at work. The real people doing the analysts, freaking out the alerts, very little of them get the privilege to go spend a very expensive hotel and to sit in a TSA line and hope your flight hopefully, you get your flight soon enough.

Corey HamCorey Ham

So no one knows who this is or what nation state they're affiliated with, if any. They're just it's the next lapses, I guess. I don't know.

Wade WellsWade Wells

You can also tell that I'm a little I didn't go to TSR or RSA.

Ralph MayRalph May

No. The result Do you wanna go?

Wade WellsWade Wells

Maybe maybe. No one asked me. No.

Ralph MayRalph May

I mean, I wouldn't mind going to the parties, but I don't know about, like, the conversation.

Wade WellsWade Wells

I wanna go win a Switch two at a booth or something like that, you know, like

Ralph MayRalph May

Switch two.

Corey HamCorey Ham

For the price of one night in San Francisco hotel.

Ralph MayRalph May

San Francisco hotel, you get, like, three Switches, dude.

Corey HamCorey Ham

You can get a Switch two for it. You can just expense a switch too for supply chain reasons. It's fine.

Ralph MayRalph May

Yes.

Corey HamCorey Ham

Alright. Let's move on. What's next? You wanna talk about Florida? Yeah.

Story # 5: Spylandia: How a Stretch of Florida Real Estate Has Become a Covert Corridor for Chinese and Russian Spies

Wade WellsWade Wells

Let's talk about Florida because Ralph and What?

Corey HamCorey Ham

Ralph's here. And because like

Wade WellsWade Wells

Ralph and I have been in in this exact spot together.

Corey HamCorey Ham

Oh, yeah. Us about the Space Coast.

Wade WellsWade Wells

The Space Coast. Right? Space Coast. Right? When I look at this, I think of, like, Hack Space Con. That that was that was my first thing. That that's why. But pretty much, this article is just describing how the Space Coast Of Florida, right, all of where Blue Origin, SpaceX, NASA, all just have a bunch of top name scientists and has become a hotbed for espionage, both Chinese and Russian.

Corey HamCorey Ham

So what are they doing? Just driving around war driving, looking for people's Wi Fi passwords?

Wade WellsWade Wells

It's like next level going after people too. Sit in bars, getting people drunk, trying to get people to to talk about secrets. The old ways. Of one of the interesting is they're using real estate as a weapon. So federal authorities are tracking suspicious property buyers, right, in order to find sensitive sites.

They're finding the local governments or Russian or Chinese actually buying property around the base is one of the ways they're doing it. There's also a couple influence campaigns that have been discovered down there. So if you ever want to date a spy, go buy go down to Florida or So maybe

Corey HamCorey Ham

where exactly can you get in the world of Florida? What where is this? This is the like, give me a

Ralph MayRalph May

geographical It's called Canaveral. It's on the Okay. Pacific.

Bronwen AkerBronwen Aker

Atlantic.

Wade WellsWade Wells

Right? The the South or no. The, yeah, the Southeast Tampa, Florida?

Ralph MayRalph May

It's close to it's on the other other other coast. Right? Middle of middle of the state, near Orlando, probably about an hour and a half.

Corey HamCorey Ham

So So if you live in the Space Coast and you've recently made a new friend who's way out of your league. It might be time to it might be time to question question

Ralph MayRalph May

their intentions. Speaking speaking of the Space Coast, they're gonna be launching the Armenis.

Wade WellsWade Wells

Wednesday. Right?

Ralph MayRalph May

Wednesday. Yeah. So we're going back to the moon. Way to

Corey HamCorey Ham

leak the launch date to the foreign enemy.

Wade WellsWade Wells

I know. A little bumpy.

Bronwen AkerBronwen Aker

In May, we've got SpaceTechCon.

Ralph MayRalph May

Hack space.

Wade WellsWade Wells

Hack space. Space. Space. Space.

Corey HamCorey Ham

Space I like space can we go can we go back to Spacehat? I like SpacehatCon. I know you said hack, but I like Spacehat.

Wade WellsWade Wells

Hack spacecon is a good conference. Like, one of the few conferences I've been multiple times on the East Coast and, like, highly recommend it. One of the more cool one of the more interesting talks I heard there was a dude talking about all the satellite hacks and how you don't hear about anything because the government doesn't want you to know how many satellites have been hacked. That is

Corey HamCorey Ham

Don't worry. All those satellites are FCC compliant to the latest standards. It's fine.

Ralph MayRalph May

They've all

Bronwen AkerBronwen Aker

been It should be fun. One of one of my to do list items when I go to hack space con will be to get chatted up by a spy.

Ralph MayRalph May

Oh, there you go.

Corey HamCorey Ham

So

Wade WellsWade Wells

My goal every year is just to see Ralph. You know?

Corey HamCorey Ham

Oh, that's a really good goal. You gotta see Ralph. Yeah. So while we're on the topic of AI that I just started, Anthropic came up with these cool. Accidentally released these mythos models, maybe?

Story # 6: Anthropic readies Mythos model with high cybersecurity risk

Ralph MayRalph May

They did accidentally release it. They left an open database of sorts. Right? Yeah.

Corey HamCorey Ham

It's like they like leaked unintentionally. Their CMS left 3,000 unpublished assets in a data store.

Ralph MayRalph May

Why did they have so many articles pre written? I mean like are they like

Corey HamCorey Ham

Why AI? Nature?

Wade WellsWade Wells

All AI. Never mind.

Ralph MayRalph May

Alright. Fine. Alright. Fine. You know what? I deserve that. You're correct.

Corey HamCorey Ham

Yeah. So basically, this is I don't know. It's kinda cool. Like, I don't know. The claim is March 2026. They just released Opus

Ralph MayRalph May

I know. Two months ago. Read all into this because I'm like, I'm all deep into like the next drug addiction. But so

Corey HamCorey Ham

Ralph's like, give me give me some more extra usage. I need some more extra usage.

Wade WellsWade Wells

More tokens. More tokens.

Bronwen AkerBronwen Aker

People are starting to ask in job interviews, can I get paid in tokens?

Ralph MayRalph May

Oh my god. No. So alright. Here's the wild part. So, again, let let me be crystal clear. This is all claims probably written by AI. Okay? But and every time they say it's the best and the fastest and all this other stuff. Okay? So, like, let let me get it will clear the air.

But so the we the the alright. The most interesting part of this article, specifically to our audience, is that what Anthropic was saying in the article in their blog post was that they wanted more time for people to research how these new models would affect cybersecurity. Specifically, they are afraid that these models will be so good at attacking. They want other organizations to be able to implement AI for defense. Right?

The argument being that if AI is or if there this model is very fast at creating novel, especially, or just generic attacks, then it's faster if it's faster than a human, then it's one of those arms race where you need AI to defend, if that makes sense.

Corey HamCorey Ham

Right? And by the way, that ship has already is sailing right now. Like, right now, we are burning massive stacks of cash to try to use AI to attack our customers, and every other threat actor is doing the same thing. Like like last week, we spent and I'm not these are real numbers. We spent $4,000 on Amazon Bedrock trying to find a zero a critical vulnerability, and we actually did get one for a customer.

And and, basically, I told the person who burned that money. I was like, I would pay $4,000 for a critical vulnerability in one of our customers every day of the week. Like, so it is definitely a thing. Like, we are I am very nervous with new models, the impact they can generate, and this is currently the arms race is like, who has the most tokens to throw at attacking entity a, b, or c? Yeah.

Wade WellsWade Wells

Wasn't there a recent article? So I got sent an article talking about it, but I don't even know where it was from. But there was a talk at someone Anthropic that was running Claude finding zero day vulnerability live at a conference.

Ralph MayRalph May

That also did happen. Yes.

Wade WellsWade Wells

Alright? Which man. Yeah. Like Yeah.

Corey HamCorey Ham

Yeah. It's it's definitely I mean, it really is. It's the new like, that I mean, it's just the new thing that people are doing. I will say looking at the like, this is a template page, and I know there's template content. But it says here, Ralph, as with all of our models, we have tested Claude with those on a wide variety of safety and capability evaluation. So it's fine. Don't worry

Ralph MayRalph May

about it. Fine. Yeah. No. It's it's super interesting. So, like, the one thing that a lot of researchers have kind of put into place is that anytime you can get a known output and you give enough credits at these models, you can get to the to the if it knows what the answer is supposed to be, it it can pretty much get its way there. Right? Yes. That's why benchmarks always keep adjusting. They're like, well, no.

We have a new benchmark because they crushed the last one, and now we have a new one in whatever category it is. It could be in code. It could be in, you know, college math or what whatever it is. Right? So they have to keep adjusting it.

And what what they're finding is that anytime you can get an output that it can search for, that it usually will start to make their make the answer or find the answer in a certain amount of time, enough credits, you know, so on and so forth. And, you know, as they get better, regretfully, you know, when Apple gets on stage and goes, this is the fastest processor ever. You're like, cool. I didn't need it to be faster. But when they say this is the most intelligent AI ever, it it does more matters.

It matters more.

Corey HamCorey Ham

Yes. No. A 100%.

Wade WellsWade Wells

Yeah. I will say I did I'd ran, like, two very very large queries and completely ran out of tokens last night. And I did the Ralph and I was like, fuck it. I'm upgrading. Like, I I threw money at it. Like, give me the next tier, more tokens.

Corey HamCorey Ham

There you go. Dude, the last last week of having double usage on Anthropic, like, I I I don't know if I can go back, guys. Did

Andy Pettit (Nerf)

did you go the five x or 20 x, Wade?

Ralph MayRalph May

I'm not you know what?

Wade WellsWade Wells

I probably can go the 20 x with

Ralph MayRalph May

Just go just go the

Wade WellsWade Wells

two I went five.

Ralph MayRalph May

Just go to $200 and just let it go because Bro,

Corey HamCorey Ham

I went

Andy Pettit (Nerf)

I went pro to 20. I was just like, I mean, five times as much money for five times as much usage. I mean And then for only double that, I another

Wade WellsWade Wells

four or five times. Times usage, I'll upgrade again. We'll see. We'll see. I'm not made of money over here.

Ralph MayRalph May

I'm not made of money over here.

Wade WellsWade Wells

I'm not using it for I am not really using it for business stuff. This is me, like, building my app. Like

Corey HamCorey Ham

I will say, though, I I do think, like, we talked about GitHub and open source, and now we're talking about AI, and I wanna bring it back to open source. I do think that they Anthropic or, you know, whatever, they're kind of the leader right now, but any other AI model producer, they should have a free or low cost option for people to use AI tools to attack their own open source projects and find vulnerabilities in them. Like, just like GitHub for these high, you know, high importance open source projects like Trivy, they should be providing enterprise level, you know, logging in capabilities for them. Anthropic or other other companies should be providing open source software developers with the ability to assess their own tools using Claude or using whatever models. Like, talk about how what you should do before you release the latest model.

Give early access to open source developers so they can find and fix the vulnerabilities in their stuff before it goes public and some random bug bounty hunter does it. My hot take. I don't know if anyone's gonna disagree with me.

Andy Pettit (Nerf)

I think both of the frontier labs have kind of been doing that. So Claude had whatever their security thing was, and then open I OpenAI had Aardvark. And I believe that they were they weren't publishing everything, but they were going through and testing a lot of this on open source things and finding it and, you know, doing responsible disclosure with them beforehand. And I know Google's doing it through through DeepMind as well. So, I mean, they they're not just giving they're not just giving it to open source devs and saying, hey.

You can use it. But they're doing something. Like, they're contributing.

Corey HamCorey Ham

Yeah. I mean, at the very least, it's just something that we need to be aware of is that as these tools get more advanced that production are gonna use them, we should beat them to the punch if it's a matter of dollars. Like, I would donate a, you know, pile of tokens to for someone to go look at, you know, an open source tool and find vulnerabilities. That that's like easy money to spend versus doing this huge incident response because it had a vulnerability and I'm dependent on it. So basically, if you're a company who used an open source tool, throw it through your throw it through your AI, burn some tokens on it, and report the vulnerability to the developer.

Ralph MayRalph May

Honestly, what we what I do with my own software, I have a pipeline that runs every week that will run through a whole essentially prompt to look for security issues. Right? And then makes issues related to those. And if they've already been addressed or moved, then it just it just keep on going. So you can build that into your own into own setup. Yeah. It does take tokens, though, back to Corey's point.

Corey HamCorey Ham

Yeah. And if you're wondering why we're all fiending for Claude tokens, the biggest reason why is because they have a million context length. Yeah. That's why that's what makes Opus so killer. That million context length means you can go significantly further and deeper than you could with a two fifty k or a smaller context. That's just

Andy Pettit (Nerf)

Well, and it's Opus. I mean, Gemini

Wade WellsWade Wells

had Yeah.

Bronwen AkerBronwen Aker

It is Opus.

Andy Pettit (Nerf)

1,000,000 context, and I was still using Claude.

Wade WellsWade Wells

Yeah. I I have a good so I was playing I've been playing around with Cloud Code for the past five weeks. Like, that's all I've been doing.

Ralph MayRalph May

He's he's on the drug. He's

Corey HamCorey Ham

straight up.

Ralph MayRalph May

Completely. Completely. They're restraining on be able to get on. Yeah.

Wade WellsWade Wells

But the amount of utilities that it has that are similar to RMM tools is semi scary. So if I were to keep several remote remote control sessions open on different servers throughout my enterprise, right, and then I get, like, hacked. That pretty much just completely bypasses whatever security you had between that end user and the servers. I'm waiting for something to use that mechanism, and I think it'll be really interesting.

Corey HamCorey Ham

Yeah. Right now Yeah. Yeah. It makes sense. I mean, dude, even now we're building, like, MCP c twos in house. Yeah. That like, you know, it's a it's a thing for sure.

Ralph MayRalph May

I put together a

Corey HamCorey Ham

c two

Ralph MayRalph May

with one passport. Works great. Did you do I was gonna ask, did

Wade WellsWade Wells

you do it? Did you do it? Send it to me, please.

Ralph MayRalph May

It works. No. You did. Yes.

Wade WellsWade Wells

He did. Yes. I agree. Corey wasn't on the news last week. We were talking about c twos, and I've been saying I wanted to build one for a while.

Ralph MayRalph May

That's amazing. Very fast, but it it is efficient.

Corey HamCorey Ham

That's awesome.

Wade WellsWade Wells

Please send it.

Bronwen AkerBronwen Aker

Efficient is good.

Corey HamCorey Ham

Yeah. There's Ralph's talk at hack space code.

Bronwen AkerBronwen Aker

There we go.

Ralph MayRalph May

I hacked your password manager, and I don't know the key.

Andrew KrugAndrew Krug

Has anybody tried Claude Cowork, like the new Claude Code Dispatch Hunter, which requires you to disable pretty much every single security control on a MacBook?

Corey HamCorey Ham

It's like Claude wants access to the outlets.

Bronwen AkerBronwen Aker

Without disabling security controls on Windows.

Corey HamCorey Ham

Cloud wants to access your files. Cloud wants to access no. Absolute I mean, yes, but no. Yes.

Ralph MayRalph May

You know what? Ask so many questions, and I just turn them all off. Just say, you

Corey HamCorey Ham

know Always allow. What could go wrong?

Ralph MayRalph May

What could go wrong? I'm good for this.

Wade WellsWade Wells

I did that, and it it did a git push that I wasn't expecting. I'm like, wait. Wait. What's going on?

Ralph MayRalph May

That that was an article a couple weeks ago, or maybe it should have been. Yeah. Was should have been. Yeah. I do. Okay. Yeah.

Corey HamCorey Ham

We were just talking about heuristics, you know, like Andrew was bringing up, like, oh, you can have a heuristic tool that analyzes your the software you're running. I think it's funny that Claude, the code that it writes oftentimes, it'll say, you should review this because it looks like obfuscated code. Like, it it'll write a Python, like, a Python one liner, and it'll put it in quotes. It'll be like, hey. This looks like obfuscated code.

Warning. Are you sure you wanna run this? And it's like, you wrote this, dude. Like, you should write code that you don't think is obfuscated. Right?

Ralph MayRalph May

That was my cousin. You closed the window. I'm a new

Corey HamCorey Ham

It's like

Story # 7: Google Ships WebMCP, The Browser-Based Backbone For The Agentic Web

Bronwen AkerBronwen Aker

Speaking of MCP, did you guys catch the fact that Google has shipped web MCP?

Corey HamCorey Ham

No. Did you

Bronwen AkerBronwen Aker

see that article?

Corey HamCorey Ham

What is this? Please. Yeah. Scare me. Well, okay.

Bronwen AkerBronwen Aker

So MCP is a protocol for working with agents.

Wade WellsWade Wells

Mhmm.

Bronwen AkerBronwen Aker

And Google has apparently shipped through Chrome one forty six Canary a new protocol that allows websites to expose structured functions directly to AI agents.

Ralph MayRalph May

So the I like this.

Corey HamCorey Ham

So that this as a concept?

Ralph MayRalph May

The the idea being that if you want to browse a website, traditionally, you would have to read the DOM and then execute the page in the Yes. In the screen,

Andrew KrugAndrew Krug

the code. Click.

Ralph MayRalph May

The code. The the JavaScript, the HTML, that's all for us. That's not for the computer. Right? Yeah. Yeah. That's for the MCP, if I'm correct, is to make it easier for the AI agent to browse. Right?

Bronwen AkerBronwen Aker

Well, here's the really twisted thing, though. So now they've they've shipped this web MCP that allows this new interaction directly machine to machine between the agents. But they've also just patented a tool where you can basically, if your website website is coming up in searches, but their analytics decide that it doesn't have enough content, they'll have AI rewrite your website on the fly and that's what they present to the client.

Corey HamCorey Ham

Basically, you're talking about an an AI generated parking page. They pat they patented this. This is not a tech release. But basically, it's an AI generated parking page that will just make up whatever it thinks the person searching for the page was trying to get to.

Wade WellsWade Wells

It sounds like a fishing dream.

Bronwen AkerBronwen Aker

The the combination is just nuts.

Corey HamCorey Ham

The new four zero four page is an AI generated version of the page you were trying to reach.

Bronwen AkerBronwen Aker

Yeah. If for some reason Google's AI decides that you didn't put enough content or the right content or, you know, you're not gonna get any any click throughs on this, it'll redesign what it presents as if it in presented on your behalf.

Corey HamCorey Ham

I'm glad that we're ratcheting up AI gaslighting us to one new level. That's great.

Andy Pettit (Nerf)

So here's here's the question though. Does this make malvertising better or worse?

Andrew KrugAndrew Krug

That's a

Corey HamCorey Ham

really good question. Makes typosquatting worse, but it it also makes typosquatting better at the same time.

Andy Pettit (Nerf)

I mean, does it

Bronwen AkerBronwen Aker

make Depends on whether the AI removes the malicious code embedded in the websites websites or whether it's going to propagate it.

Corey HamCorey Ham

Yeah. I don't know. I mean, it it to be clear, it will depend on the implementation. This is just a patent. This is just, you know Yep.

Them cornering a part of the Internet. But it makes sense. Also, think that, you know, to go back to the MCP thing, I think this is just developers, especially front end developers, are sick of having watching the logs of like, using Claude CoWork when I was using it I okay. So my use case was I was trying to get it to read comments on a website about a trip I was trying to go on and read all the people's trip reports and be like, is it a good idea to go to this place at this time or is it gonna be closed or whatever. And it took Claude, like, I'm gonna say twenty minutes to read all the comments.

Like, it was like, okay. I found the div. Okay. I found an iframe inside the div. Oh, no. There's a paywall. What do I do? Oh, no. I have to click the x. Oh, no.

Ralph MayRalph May

I signed you up for a subscription. You owe $20.

Corey HamCorey Ham

It it was so painful. And of course, the worst part is you can watch Claude. Like, you can watch its browser window, and I'm like, dude, this is worse than the one I worked tech support in college. And I would watch a professor. I'd be like, okay.

Click on the start menu, and it's like three minutes, and they're like, which one is that? I'm like, bottom left. Like, dude, I watching we need a better solution than watching Claude, like, sloppily click through a website and try to find iframes and bypass paywalls and stuff.

Bronwen AkerBronwen Aker

Claude or Gemini because you can use Gemini in the browser, or you can load the Claude extension to get agentic in the browser now.

Wade WellsWade Wells

Yeah. Yeah. I think

Corey HamCorey Ham

if if it if it

Andrew KrugAndrew Krug

can't figure out what to do, it actually will just take a screenshot of the page, and then it will start to

Bronwen AkerBronwen Aker

screenshot, see our

Andrew KrugAndrew Krug

which just chews through a ton of tokens.

Corey HamCorey Ham

Correct.

Ralph MayRalph May

Like, that's

Corey HamCorey Ham

what it did.

Andrew KrugAndrew Krug

You're lighting your tokens on fire.

Corey HamCorey Ham

Yes. That is exactly what it did. It it did screenshot it OCR, and then it had the entire web page in every response. And so, yes, it burned through all my usage. Yep.

Ralph MayRalph May

And this is why RAM is so expensive, everybody. Just to let you know.

Andy Pettit (Nerf)

What? No.

Story # 8: DDR5 Memory Prices Just Took a Noticeable Dive for the First Time in Months, and Google’s TurboQuant Might Be Behind It

Wade WellsWade Wells

RAM prices are going down. You didn't see that article?

Corey HamCorey Ham

What's up? Will say it's worth it. I I it was so funny having AI be like, oh, no. Evan got lost on his way to the restaurant. And I was like, I don't know. I'm not invested in this at all, but it's like AI is, like, in-depth researching all these people and telling me what their trip experience was. So silly.

Andy Pettit (Nerf)

See? I I found a receipt earlier today. I bought a 128 gigs of RAM and a four terabyte hard drive, like, almost exactly a year ago. It was $560. I went on Micro Center's website, pulled up the same stuff today, 1,700.

Ralph MayRalph May

Yeah. So that that the this article that you just posted was about the the drop in memory prices. And this was actually to one other notable thing. This is not necessarily security related, but Google's new quad or turbo quad int or whatever you wanna call it. Like, it's essentially a compression algorithm for AI.

Right? And so the argument is here, like, putting Google's compression algorithm aside and whether it actually succeeds or not is that if they change how the models are actually used and they're able to enable a lot more compression, then you could see a radical price shift and drop. But it's probably not gonna be as much as you think because all these people ordered all this stuff in these data centers are still gonna get built out, which is what we're seeing in our in that whole supply chain.

Corey HamCorey Ham

Yeah. Alright. There's no there's no chicken news this week. Does anyone have any final articles before we end the show? Any last last thoughts? Last feelings?

Andrew KrugAndrew Krug

Yeah. The I think some of us have classes coming up.

Securing the Cloud: Foundations by Andrew Krug

Corey HamCorey Ham

Yeah. Let's plug. Let's do some plugs. Plug it. Who's teaching? When are they teaching? Andrew, you go first because it's yeah. I don't know. Ryan should bring up some little graphics and things, but go ahead.

Andrew KrugAndrew Krug

Yeah. April, securing the cloud, which has a ton of AI based content. If you wanna hear my spicy take, which is that MCP is already dead, and we'll be talking about something different, like, two months from now.

Ralph MayRalph May

Spicy. You can hear it in my class.

Andrew KrugAndrew Krug

I may have to

Corey HamCorey Ham

sign up that one.

Patterson CakePatterson Cake

Now I have

Corey HamCorey Ham

to have my AI go and then summarize the entire thing.

Ralph MayRalph May

I'm actually getting my AI to find your class right now.

Corey HamCorey Ham

Alright. By the the

Andrew KrugAndrew Krug

day, dispatch might be done.

Corey HamCorey Ham

Patterson, do you have a course coming up?

Incident Response Simplified by Patterson Cake

Patterson CakePatterson Cake

I I have a course coming up on Friday, this Friday. Yeah. And so when all of these things go horribly wrong, you're gonna wanna come to this class. Oh.

Ralph MayRalph May

So then

Patterson CakePatterson Cake

you know what to do next.

Corey HamCorey Ham

Yeah. I mean this I mean with all this trivia stuff with all like oh my goodness. There's so many IR scenarios to get into.

Patterson CakePatterson Cake

It's crazy. Here I'm here for you. Dedicated day on Friday.

Corey HamCorey Ham

Nice. That's awesome. I like that it's simplified. I need that. I'm with you.

Andy Pettit (Nerf)

And John's got sock course skills, pay what you can starting next Monday.

Corey HamCorey Ham

Bring your socks, and they'll be knocked off by John Strand's ranting. Sock off. Anyone else have anything to plug while we're here? Wade, do you wanna plug your mustache oh, no. Beside San Diego's this week. Right? Or

Wade WellsWade Wells

We were we sold out tickets. Don't email me, please. There's been so many people.

Corey HamCorey Ham

So Wade would like to plug not going to be

Ralph MayRalph May

Not going to be asides because everyone else will be there.

Wade WellsWade Wells

You can't can you see it? Let's see. Hopefully, nothing. If you move my camera and then this box over here is full of all of the raffle gifts. Extreme

Ralph MayRalph May

fun stuff. Nice.

Wade WellsWade Wells

There's books. There's dude, Raspberry Pis are expensive nowadays. Like, for a whole kit, it was gnarly. And then portable monitors, Legos, some Game Boy things.

Ralph MayRalph May

It's

Wade WellsWade Wells

fine. Those should be good times. If you didn't buy a ticket, I'm sorry. But

Corey HamCorey Ham

Next year.

Wade WellsWade Wells

If you did, come sit Yeah. 600 tickets sold out.

Andrew KrugAndrew Krug

Still tickets for b sides Tampa, which is coming up May 15. You know, there's Okay. Spy stuff in Florida.

Ralph MayRalph May

It's actually

Wade WellsWade Wells

B sides Tampa is one

Ralph MayRalph May

of It's actually a pretty big conference.

Wade WellsWade Wells

It is.

Ralph MayRalph May

A b of a

Corey HamCorey Ham

Russian spy too. It is. Tampa? Weather.

Ralph MayRalph May

It's the weather.

Wade WellsWade Wells

Florida Florida has really good cons. Like, they have Tampa and or b sides of Tampa and Orlando are both really good. Hack space con's pretty good, and there's a couple others too.

Corey HamCorey Ham

Go now before it turns into a swamp. Before hurricane season gets underway and Yeah. That's why

Ralph MayRalph May

they do it early. Just, you know, Yeah.

Corey HamCorey Ham

I'm sure it's really nice there. Alright. Cool. Well, thanks y'all. Thanks for coming and we'll see you next week. Bye bye.

Transcript source: Provided by creator in RSS feed: download file
For the best experience, listen in Metacast app for iOS or Android