Risky Bulletin: Russian hackers jump on the fake job interview train
Aug 12, 2026 · 9m
Summary
This episode covers Sandworm’s fake job interview malware campaign, a Delta Wi-Fi jamming incident, and major breaches at Siva and Poland’s MyDoctor. It highlights Thailand’s password resets, a US agency hiring a North Korean worker, and FTC AI bias proposals. Other topics include OpenAI’s cybersecurity tools, an AI-hacked gym, arrests for WormGPT and state-sponsored hacking, and critical zero-day patches for Windows, Cisco, and Zoom.
Topics discussed
Intro: Russian hackers, AI chatbot trial, and OpenAI cyber models
Russian Sandworm group targets IT pros with fake job interviews
Delta flight Wi-Fi jammed by DEFCON attendee
Siva logistics breach impacts European freight deliveries
Polish healthcare platform MyDoctor breached via XXE vulnerability
Thailand resets passwords after wave of government hacks
UK Navy removes internet from drones due to China data leak
US agency hires North Korean remote worker
FTC proposes regulating AI models for ideological bias
NIST seeks feedback on using AI for vulnerability management
Water Cyber Shield Act proposes funding for utility security
OpenAI splits Daybreak program for red and blue teams
AI assistant hacks Australian gym booking system
Portuguese man on trial for creating malicious WormGPT
Serbian state-sponsored hacker detained in Croatia
UK man sentenced for coercing girls via online community
FBI warns against storing explicit content in cloud
Lazarus group uses Windows zero-day in job interview scams
Cisco, Zoom patch zero-days; Cloudflare sees DDoS surge
Microsoft disables MV2 extensions; Mozilla rotates GPG key
Listen ad-free on Castria