Загрузка...

Mythos finds a curl vulnerability - 2026-05-18

This episode covers Mythos uncovering a vulnerability in cURL, a recent Google Threat Intelligence report on a zero-day exploit, and the growing impact of AI on capture-the-flag competitions and bug bounty programs. The hosts also discuss the economics of AI platforms like OpenAI, security research trends, and broader concerns around software vulnerabilities, automation, and defensive tooling.
Join us LIVE on Mondays, 4:30pm EST.
A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.
https://www.youtube.com/@BlackHillsInformationSecurity
Chat with us on Discord! -
https://discord.gg/bhis
🔴live-chat
Chapters
• (00:00) - PreShow Banter™ — Token CTFs


• (03:18) - Story # 1: Mythos finds a curl vulnerability


• (06:36) - Story # 2: Hackers Used AI to Develop First Known Zero-Day 2FA Bypass for Mass Exploitation


• (14:47) - Story # 3: The down fall of bug bounties


• (15:34) - Story # 3: Linus Torvalds says AI-powered bug hunters have made Linux security mailing list ‘almost entirely unmanageable’


• (40:52) - Story # 4: Germany to Flood Ukraine’s Front Lines With Hundreds of New GEREON Combat Robots


• (43:51) - Story # 4b: Wild Video Shows Delivery Robots Causing Havoc, Getting Obliterated


• (49:35) - Story # 5: Windows BitLocker zero-day gives access to protected drives, PoC released


• (56:09) - Story # 6: Deal reached with hackers to delete data stolen from the Canvas educational platform


• (58:07) - Story # 7: Celebrities’ and influencers’ private communications exposed in stalkerware data breach


• (58:54) - Story # 8: Exclusive: Hackers have breached tank readers at US gas stations; officials suspect Iran is responsible


• (01:00:29) - Threat Hunting Summit Talk: Threat Hunting in the Dark: A Practical Approach


• (01:04:47) - WEBCAST: Looking at A.I. Wrong with John Strand, BB King and Derek Banks


Links
Story # 1: Mythos finds a curl vulnerability (https://daniel.haxx.se/blog/2026/05/11/mythos-finds-a-curl-vulnerability/)
Story # 2: Hackers Used AI to Develop First Known Zero-Day 2FA Bypass for Mass Exploitation (https://thehackernews.com/2026/05/hackers-used-ai-to-develop-first-known.html?)
Story # 3: The down fall of bug bounties (https://shubs.io/the-down-fall-of-bug-bounties/)
Story # 3: Linus Torvalds says AI-powered bug hunters have made Linux security mailing list ‘almost entirely unmanageable’ (https://www.theregister.com/security/2026/05/18/linus-torvalds-says-ai-powered-bug-hunters-have-made-linux-security-mailing-list-almost-entirely-unmanageable/5241633)
Story # 4: Germany to Flood Ukraine’s Front Lines With Hundreds of New GEREON Combat Robots (https://united24media.com/war-in-ukraine/germany-to-flood-ukraines-front-lines-with-hundreds-of-new-gereon-combat-robots-18653)
Story # 4b: Wild Video Shows Delivery Robots Causing Havoc, Getting Obliterated (https://futurism.com/robots-and-machines/delivery-robot-fail-compilation)
Story # 5: Windows BitLocker zero-day gives access to protected drives, PoC released (https://www.bleepingcomputer.com/news/security/windows-bitlocker-zero-day-gives-access-to-protected-drives-poc-released/)
Story # 6: Deal reached with hackers to delete data stolen from the Canvas educational platform (https://apnews.com/article/canvas-outage-college-students-exams-grades-3d55b9399ae87d49276f354e1c34c180)
Story # 7: Celebrities’ and influencers’ private communications exposed in stalkerware data breach (https://www.expressvpn.com/blog/celebrities-stalkerware-data-exposed/)
Story # 8: Exclusive: Hackers have breached tank readers at US gas stations; officials suspect Iran is responsible (https://abc17news.com/news/2026/05/15/exclusive-hackers-have-breached-tank-readers-at-us-gas-stations-officials-suspect-iran-is-responsible/)
Threat Hunting Summit Talk: Threat Hunting in the Dark: A Practical Approach
(https://www.antisyphontraining.com/event/threat-hunting-summit-talk-threat-hunting-in-the-dark-a-practical-approach/) WEBCAST: Looking at A.I. Wrong with John Strand, BB King and Derek Banks (https://www.youtube.com/live/CVdsY2aX2Ew)

Creators & Guests


• John Strand (https://bhisnews.transistor.fm/people/john-strand-8c127856-b150-4e33-af6d-5b9f7f041a37) - Host


• Corey Ham (https://bhisnews.transistor.fm/people/corey-ham) - Host


• Wade Wells (https://bhisnews.transistor.fm/people/wade-wells) - Host


• Bronwen Aker (https://bhisnews.transistor.fm/people/bronwen-aker) - Host


• Ralph May (https://bhisnews.transistor.fm/people/ralph-may) - Host


• Shane Hartman (https://bhisnews.transistor.fm/people/shane-hartman) - Guest


• Meagan Bentley (https://bhisnews.transistor...

Видео Mythos finds a curl vulnerability - 2026-05-18 канала Podcasts by BHIS
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять