Risky Business Video
February 12, 2025
Risky Business Weekly (779): DOGE staffer linked to The Com
Presented by
![Patrick Gray](/static/img/patrick-gray.jpg)
CEO and Publisher
![Adam Boileau](/static/img/adam-boileau.jpg)
Technology Editor
On this week’s show Patrick Gray and Adam Boileau discuss the week’s cybersecurity news, including:
- Musk’s DOGE kid has a history with The Com
- Paragon fires Italy as a spyware customer
- Thailand cuts power to scam compounds…
- … and arrests Phobos/8Base Russian cybercrims
- The CyberCX DFIR report shows non-U2F MFA is well and truly over
- And much, much more.
This week’s episode is sponsored by Dropzone.AI. They make an AI SOC analysis platform that relieves your analysts of the necessary but tedious work, so they can focus on the value of human insight. Dropzone’s founder and CEO Edward Wu joins to talk about how they approach the problem.
Show notes:
Teen on Musk’s DOGE Team Graduated from ‘The Com’ – Krebs on Security https://krebsonsecurity.com/2025/02/teen-on-musks-doge-team-graduated-from-the-com/
ACLU Warns DOGE’s ‘Unchecked’ Access Could Violate Federal Law | WIRED https://www.wired.com/story/aclu-doge-congress-musk-data/
Lawsuit accuses Trump administration of violating federal information security law | The Record from Recorded Future News https://therecord.media/doge-lawsuit-alleged-information-security-violations
The Recruitment Effort That Helped Build Elon Musk’s DOGE Army | WIRED https://www.wired.com/story/elon-musk-doge-recruiting-palantir/
States prepare privacy lawsuit against DOGE over access to federal data | The Record from Recorded Future News https://therecord.media/doge-privacy-lawsuit-state-attorneys-general
Union groups sue Treasury over giving DOGE access to sensitive data | The Record from Recorded Future News https://therecord.media/union-groups-sue-treasury-over-giving-doge-access-to-data
Student group sues Education Department over reported DOGE access to financial aid databases | The Record from Recorded Future News https://therecord.media/university-of-california-students-sue-education-department-doge
Hackers exploiting bug in popular Trimble Cityworks tool used by local gov’ts | The Record from Recorded Future News https://therecord.media/hackers-exploiting-trimble-cityworks-bug-used-by-local-govs
DeepSeek iOS app sends data unencrypted to ByteDance-controlled servers - Ars Technica https://arstechnica.com/security/2025/02/deepseek-ios-app-sends-data-unencrypted-to-bytedance-controlled-servers/
DeepSeek Is a Win for Chinese Hackers - Risky Business https://risky.biz/deepseek-is-a-win-for-chinese-hackers/
Owner of spyware used in alleged WhatsApp breach ends contract with Italy | WhatsApp | The Guardian https://www.theguardian.com/technology/2025/feb/06/owner-of-spyware-used-in-alleged-whatsapp-breach-ends-contract-with-italy
Another person targeted by Paragon spyware comes forward | TechCrunch https://techcrunch.com/2025/02/11/another-person-targeted-by-paragon-spyware-comes-forward/
Apple fixes security flaw allowing third-party access to locked devices | The Record from Recorded Future News https://therecord.media/apple-ios-vulnerability-citizen-lab
U.S. sanctions bulletproof hosting provider for supplying LockBit infrastructure | CyberScoop https://cyberscoop.com/zservers-bulletproof-hosting-sanctions-lockbit-ransomware/
Thailand cuts power supply to Myanmar scam hubs | The Record from Recorded Future News https://therecord.media/thailand-cuts-power-scam-compounds-myanmar
8Base ransomware site taken down as Thai authorities arrest 4 connected to operation | The Record from Recorded Future News https://therecord.media/8base-ransomware-site-taken-down-4-arrested
Two Russian nationals arrested in takedown of Phobos ransomware infrastructure | The Record from Recorded Future News https://therecord.media/phobos-ransomware-takedown-arrests-russian-nationals
The Company Man: Binance exec detained in Nigeria breaks his silence | The Record from Recorded Future News https://therecord.media/binance-exec-tigran-gambaryan-breaks-his-silence
Deloitte pays $5M in connection with breach of Rhode Island benefits site | Cybersecurity Dive https://www.cybersecuritydive.com/news/deloitte-5m-rhode-social-services/739309/
DFIR - Threat Report 2025 | CyberCX https://cybercx.com.au/resource/dfir-threat-report-2025/
Request a Demo | Dropzone AI https://www.dropzone.ai/request-a-demo?utm_campaign=7749659-2025-FQ1%20Risky%20Business&utm_source=Sponsorship&utm_medium=Podcast&utm_content=Risky%20Business