James Wilson
@jameswilson.io
📤 70
📥 20
📝 22
Reformed CTO turned Podcaster @
https://risky.biz/
I'm sure we could've gone for 3 hours... but Niels and I reigned ourselves in after 90 minutes of talking through exactly how lesser models can find 0day all day... if you know how to orchestrate them in a way that turns your techniques into their state machines.
add a skeleton here at some point
2 days ago
0
5
1
reposted by
James Wilson
Patrick Gray
6 days ago
If you would like to see a preview of
@jameskettle.com
's Blackhat talk "the HTTP terminator" then check out this interview my colleague
@jameswilson.io
recorded with him. Some pretty freaky stuff! VIDEO:
www.youtube.com/watch?v=GdFG...
AUDIO:
risky.biz/RBNEWSSI126/
loading . . .
Sponsored: James Kettle built an AI hacker
YouTube video by Risky Business Media
https://www.youtube.com/watch?v=GdFG85oCWFI
2
15
8
People kept saying LLMs won't find logic bugs, just memory corruption. Nicholas Carlini from Anthropic found a critical vulnerability in WolfSSL. Pure logic flaw. Missing hash function check = certificate forgery. CVSS 10. No memory corruption. Model found and exploited it.
risky.biz/RBFEATURES16/
loading . . .
Feature Interview: Nicholas Carlini, Anthropic - Risky Business Media
In this episode, Anthropic’s Nicholas Carlini joins Patrick Gray and James Wilson to talk about advancements in AI-driven vulnerability re [Read More]
https://risky.biz/RBFEATURES16/
13 days ago
1
4
1
Mythos.. what does it really mean for a startup? Is it the end of secure software, a new SaaSpocalypse, time to give up integrating with enterprises? Yaniv Bernstein and I covered all this and more on today's Risky Business Features.
risky.biz/RBFEATURES15/
loading . . .
20 days ago
0
2
1
Mythos and 0day: a hackers perspective. 🎧
risky.biz/RBFEATURES13/
… I wanted to hear what Anthropic’s
#Mythos
really means for someone who hacks for a living. Jamieson O’Reilly from DVULN and Aether AI join me for this chat. Enjoy!
loading . . .
Mythos and 0day: A hacker’s perspective - Risky Business Media
In this episode of Risky Business Features, James Wilson chats to professional hacker Jamieson O’Reilly about Anthropic’s Mythos and the i [Read More]
https://risky.biz/RBFEATURES13/
27 days ago
0
2
0
New episode with Geoff White (BBC Lazarus Heist, Cyber Hack podcast) on what actually happens after North Korea gets hired. Not the headline version. The full machine: deep fake interviews, 72-laptop farms, military units doing your tickets, a $30M bagman on a private jet.
risky.biz/RBFEATURES12/
loading . . .
What happens after North Korea infiltrates? - Risky Business Media
In this episode, investigative journalist Geoff White joins James Wilson for a look into the complex machine that is North Korea’s IT work [Read More]
https://risky.biz/RBFEATURES12/
about 1 month ago
1
2
1
Sad claw.
about 1 month ago
0
1
0
reposted by
James Wilson
Catalin Cimpanu
about 1 month ago
-Russia will revoke licenses for unruly ISPs -Cyberattack disrupts access to newspaper archives across the US -Node.js pauses bug bounty program after funding lapse -Apple backports DarkSword patches -Hasbro has a data breach Podcast:
risky.biz/RBNEWS546/
Newsletter:
news.risky.biz/risky-bullet...
1
12
7
Between seeing the epic supply chain attacks this week, and the internal pressure to move fast with AI adoption, I think all of us in senior tech leadership roles are going to have to bend on things that previously were an absolute hard no.
risky.biz/RBFEATURES11/
loading . . .
Why CISOs need to be more flexible in the AI era - Risky Business Media
In this episode, James Wilson chats with Brad Arkin (former CISO of Adobe, Cisco and Salesforce) to talk about the mounting pressure that [Read More]
https://risky.biz/RBFEATURES11/
about 1 month ago
1
1
0
The long awaited next episode in How the World Got Owned! Part 1 of the 1990's. It's awesome. Enjoy!
add a skeleton here at some point
about 1 month ago
0
3
3
This was a wild ride. Went into this with no expectations… came out of it understanding Coruna exploit kit even better than after my deep-dive episode… and a firm belief that an LLM could modernise these kits…
add a skeleton here at some point
about 1 month ago
0
1
0
Between podcasts, baking some sourdough. Wood fired soy and linseed with a mix of rye and white flour.
about 1 month ago
0
4
0
reposted by
James Wilson
Catalin Cimpanu
about 2 months ago
-The Intellexa CEO is pissed!!! -Google launches threat disruption unit -German police visit companies in the dead of night about software bugs -FTC bans all foreign-made routers -Firefox now has a built-in VPN Podcast:
risky.biz/RBNEWS542/
Newsletter:
news.risky.biz/risky-bullet...
1
16
8
Risky Business Features: I ran an incident review of the Stryker cyberattack with Brad Arkin (former CISO at Cisco/Adobe/Salesforce). Brad's framework for how to run your own internal review is practical and actionable. Manage a device fleet, this is essential listening.
risky.biz/RBFEATURES8
loading . . .
When disaster strykes - Risky Business Media
In this episode of Risky Business Features, James Wilson and Brad Arkin discuss the attack that devastated medtech company Stryker. It tur [Read More]
https://risky.biz/RBFEATURES8
about 2 months ago
0
2
0
Model Context Protocol (MCP) is Dead. Killed by the shell. MCP showed us that LLM + Tools = real utility and productivity. Then AI Agents showed us they just want a shell. That has serious security implications. 🎧
risky.biz/RBFEATURES7/
loading . . .
about 2 months ago
5
3
0
reposted by
James Wilson
Patrick Gray
about 2 months ago
This week's show is up! Features
@jameswilson.io
,
@metlstorm.risky.biz
and yours truly talking through the week's news, from the Stryker breach to the latest research into "emergent cyber behaviours" in AI agents. Audio:
risky.biz/RB829/
Video:
www.youtube.com/watch?v=09js...
loading . . .
Risky Business (829): Sneaky lobsters: Why AI is the new insider threat
YouTube video by Risky Business Media
https://www.youtube.com/watch?v=09jsoTMdOPw
4
17
6
reposted by
James Wilson
Patrick Gray
2 months ago
The L atest edition of Risky Business Features with James Wilson and former Adobe, Cisco and Salesforce CISO Brad Arkin is up: Being a Wartime CISO Support us by subscribing to our new Features feed!
risky.biz/RBFEATURES4/
0
9
3
reposted by
James Wilson
Patrick Gray
2 months ago
We quietly launched this last week. It's early days and we only have a dozen or so vendors there so far, but the plan is to have pretty decent coverage of the industry after a while
add a skeleton here at some point
1
21
4
reposted by
James Wilson
Patrick Gray
2 months ago
I've read of today's Seriously Risky Business newsletter and it's absolutely terrific... it'll be out in a few hours. If you're not subscribed, get on it! (You can subscribe here:
risky.biz/newsletters/
)
loading . . .
Newsletters - Risky Business Media
Newsletters
https://risky.biz/newsletters/
0
12
1
100,000 prompts to clone a frontier model on to a free open-weight model? Easy done, it turns out! I discussed this with Pat and Adam this week on Risky Biz. Link below! 📺
www.youtube.com/watch?v=kNVm...
🎧
risky.biz/RB825/
loading . . .
3 months ago
0
0
0
Stop saying "technical debt" to executives. Debt is loaded. Mortgages are leverage, credit cards are emergencies. You don't know which mental model they're applying. And the ask is always net-negative. Reframe it as a velocity tax. Full video:
youtube.com/watch?v=pWwm-NYMsu0
loading . . .
"Technical Debt" Is Killing Your Credibility With Executives
YouTube video by Paved With Good Intentions
https://youtube.com/watch?v=pWwm-NYMsu0
3 months ago
0
0
0
I dropped in to this week's Risky Business episode to talk about how the Anthriopic C Compiler is interesting, but a lot of the coverage has missed the point! It's about agents working together, not a new C Compiler. 🤦🏻♂️
risky.biz/RB824/
loading . . .
Risky Business #824 -- Microsoft's Secure Future is looking a bit wobbly - Risky Business Media
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:* Microsoft reshuffles security leaders [Read More]
https://risky.biz/RB824/
3 months ago
0
0
0
Openclaw 🌶️ AI agent. Not a security problem if used carefully. Very easy to misconfigure. Blast radius disastrous. Clawhub 🌶️🌶️ package registry for skills (prompts). Malicious skills and download numbers faked. Moltbook 🌶️🌶️🌶️ Reddit for agents. Do not use this.
risky.biz/RB823/
#moltbook
#openclaw
loading . . .
Risky Business Media
News and commentary for cybersecurity and intelligence professionals
https://Risky.biz
3 months ago
0
0
0
you reached the end!!
feeds!
log in