SANS Stormcast Wednesday, August 19th, 2026: Copilot as Whitstleblower; GEEKOM Bad Driver; Medusa Update; Encrypted AI
Aug 19, 2026 · 8m
Summary
This episode covers a Microsoft Copilot vulnerability enabling data exfiltration via pre-filled prompts and SSRF, highlighting AI access control challenges. It discusses an updated FBI report on the Medusa ransomware, noting its opportunistic nature and the use of OS.site for detection. The show also introduces Google’s HAIR homomorphic encryption for secure AI processing and reports on malware distributed via a legacy Geekom support website.
Topics discussed
Introduction and SANS ISC Stormcast welcome
Microsoft Copilot data exfiltration vulnerability
AI access control challenges and SSRF risks
Medusa ransomware update and OS.site IOC
Google's HAIR homomorphic encryption for AI
Geekom malware distribution via network driver
Listen ad-free on Castria