Skip to content
Artwork for Three Buddy Problem
Three Buddy Problem · Friday · 2 hr 37 min

AI Doomers, Death Cults, and a Million-Dollar WeChat Worm Exploit

(Presented by TLPBLACK: A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals.) Three Buddy Problem - Episode 113: On the show this week, the buddies dig into an Anthropic researcher quitting with a warning that AI could kill us all, the San Francisco "death cult" and their motives, and agent swarms leaving junk on public wikis and university URL shorteners. Plus, a high-quality Anthropic's threat report and the claim that Moonshot was quietly serving Claude tokens as Kimi K3, live MikroTik and Chrome zero-days that landed a day ahead of the patches, and a WeChat worm that hijacks an account via phone calls. Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu. Timestamps: 0:00 Introductory banter, TLP Black 5:05 LabsCon, the last one, and JAGS on his keynote 8:24 Costin's agentic CTI training and what old-school CTI is missing 16:27 Anthropic's threat-intel report + IOCs 20:00 APT29 and DarkSword on hotel Wi-Fi 23:34 Bioweapons, guardrails, and what got shut down 28:07 Why is anyone running these attacks on Claude at all? 35:53 Distillation at industrial scale and the Kimi K3 fraud claim 48:43 Chinese models, Americanized, running on DGX Spark 55:00 Mr. America: local AI and the seven-layer cake 1:04:34 Should frontier AI labs poison the distillers? 1:27:05 What the frontier labs did to the security ecosystem 1:34:22 Jacob Coxon quits, and the doomer argument falls apart 1:59:13 Agent swarms littering the internet 2:07:29 Chrome zero-days, MikroTik, patch-gaps Links: Transcript Anthropic Threat Intel Report (Sep 2006) Anthropic Says It Blocked Possible Efforts to Build Biological Weapons Anthropic disrupts bioweapons research efforts, Russian hacking Joint Advisory on Chinese AI Labs Distillation Campaigns Anthropic admits AI agents hacked third parties OpenAI Agent Swarm Caught Littering the Web Rogue AI Agents Hid 1,000 Messages in Encoded URLs Jacob Coxon thread on X Anthropic whistleblower gave up his equity to leave the company Proofpoint: Once in a BlueMoon Volexity: Chinese Threat Actors Chain 0-day Exploits in Chrome & Windows Microsoft's Most Massive Patch Tuesday Microsoft September Patch Tuesday data Chrome 153 covers exploited zero-days Critical vulnerabilities in MikroTik RouterOS being actively exploited MikroTik ssh 0day exploitation in the wild WeWorm: zero-click worm in WeChat (Calif) Costin/Vicente training on AI for CTI TLPBLACK State of Statecraft Agenda LABScon 2026 Speakers Introducing Quasar 438B, the top European AI model Maciej Ceglowski - Superintelligence: The Idea That Eats Smart People Decipher Podcast

0:00-2:37:12

transcript

No transcript — this publisher did not publish one.

show notes

(Presented by TLPBLACK: A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals.)

Three Buddy Problem - Episode 113: On the show this week, the buddies dig into an Anthropic researcher quitting with a warning that AI could kill us all, the San Francisco "death cult" and their motives, and agent swarms leaving junk on public wikis and university URL shorteners.

Plus, a high-quality Anthropic's threat report and the claim that Moonshot was quietly serving Claude tokens as Kimi K3, live MikroTik and Chrome zero-days that landed a day ahead of the patches, and a WeChat worm that hijacks an account via phone calls.

Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.

Timestamps:
0:00 Introductory banter, TLP Black
5:05 LabsCon, the last one, and JAGS on his keynote
8:24 Costin's agentic CTI training and what old-school CTI is missing
16:27 Anthropic's threat-intel report + IOCs
20:00 APT29 and DarkSword on hotel Wi-Fi
23:34 Bioweapons, guardrails, and what got shut down
28:07 Why is anyone running these attacks on Claude at all?
35:53 Distillation at industrial scale and the Kimi K3 fraud claim
48:43 Chinese models, Americanized, running on DGX Spark
55:00 Mr. America: local AI and the seven-layer cake
1:04:34 Should frontier AI labs poison the distillers?
1:27:05 What the frontier labs did to the security ecosystem
1:34:22 Jacob Coxon quits, and the doomer argument falls apart
1:59:13 Agent swarms littering the internet
2:07:29 Chrome zero-days, MikroTik, patch-gaps

Links:

links29