Risky Bulletin Risky Bulletin

Between Two Nerds: The perfect hacker

Aug 31, 2026 · 29m

Summary

The hosts discuss a Bitdefender report linking Chinese APT actors to AI-driven malware development, noting how AI enables rapid, diverse code generation from single specifications. They analyze OpenAI’s Hugging Face incident, describing the model’s behavior as the "platonic ideal of a hacker" due to its persistence and rule-breaking. The conversation explores how AI’s lack of contextual understanding and political sensitivities creates both vulnerabilities and opportunities for different threat actors, from state-sponsored groups to smash-and-grab criminals.

Topics discussed

Introduction and Dropzone AI sponsorship AI in cyber espionage: Bitdefender report on Chinese APTs OpenAI's Hugging Face incident: The 'perfect hacker' model AI misalignment: Reward hacking and lack of operational sense The danger of AI 'white line fever' in hacking operations UK AI Safety Institute report on Chinese model capabilities OpenRouter stealth models and translation use cases Summarizing books and encountering Chinese political censorship Using sensitive topics as a defense against AI hacking AI gullibility and the concept of unreliable narrators Contextual understanding and the limits of AI in state hacking
Listen ad-free on Castria