Risky Business Podcast
November 05, 2025
Presented by

Adam Boileau
Technology Editor

Patrick Gray
CEO and Publisher
In this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- We love some good vulnerability reporting drama, this time FFmpeg’s got beef with Google
- OpenAI announces its Aardvark bug-gobbling system
- Two US ransomware responders get arrested for… ransomware
- Memento (nee HackingTeam) CEO says: Sì, those are totally our tools getting snapped in Russia
- Hackers help freight theft gangs steal shipments to resell
- A second Jabber Zeus mastermind gets his comeuppance 15 years on
Th…
Risky Business Podcast
November 05, 2025
Presented by

Adam Boileau
Technology Editor

Patrick Gray
CEO and Publisher
In this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- We love some good vulnerability reporting drama, this time FFmpeg’s got beef with Google
- OpenAI announces its Aardvark bug-gobbling system
- Two US ransomware responders get arrested for… ransomware
- Memento (nee HackingTeam) CEO says: Sì, those are totally our tools getting snapped in Russia
- Hackers help freight theft gangs steal shipments to resell
- A second Jabber Zeus mastermind gets his comeuppance 15 years on
This week’s episode is sponsored by Nucleus Security, who make a vulnerability information management system. Co-founder Scott Kuffer says that approaches for triaging vulnerabilities have started to fall apart, given there are just. So. Many. And they’re all important!
This episode is also available on Youtube.
Risky Business #813 – FFmpeg has a point
0:00 / 65:08
**Subscribe **
Brought to you by Nucleus Security
Unified Vulnerability Management | Application Security
Show notes
vx-underground on X: “Yeah, so pretty much this entire drama thing is FFmpeg are a bunch of nerds…”
FFmpeg on X: “@DavidEGrayson It’s someone’s hobby project of an obscure 1990s decoder…”
Halvar Flake on X: “Given the extremely big role ffmpeg has played historically...”
Robert Graham on X: “Current status: There’s a conflict between Google…”
Introducing Aardvark: OpenAI’s agentic security researcher | OpenAI
Bugcrowd acquires Mayhem Security to advance AI-powered security testing | CyberScoop
How an ex-L3Harris Trenchant boss stole and sold cyber exploits to Russia | TechCrunch
Operation Zero — A Zero-Day Vulnerability Platform
John Scott-Railton on X: “7/ There’s a push to scale up America’s offensive industry right now…”
Remote access, real cargo: cybercriminals targeting trucking and logistics | Proofpoint US
Alleged Jabber Zeus Coder ‘MrICQ’ in U.S. Custody – Krebs on Security
Windows Server Update Service exploitation ensnares at least 50 victims | Cybersecurity Dive
[Post by @paulschnack.bsky.social — Bluesky](https://bsky.app/profile/paulschnack.bsky.s ocial/post/3m4hfefzm5c2w)