Loading summary
A
You're listening to the Cyberwire Network, powered by N2K. What's the one thing in business that's spreading as fast as AI? AI risk. Every new tool your team signs up for, every vendor that turns on AI features, every new integration each one is another opportunity for something to go wrong. And most security programs weren't built to keep up with AI's pace of growth. Enter Vanta. Vanta is the number one agentic trust platform trusted by more than 16,000 fast moving companies like Ramp, Purser and Harvey to help them stay audit ready. And now Vanta helps companies like yours keep an eye on the risks that appear between audits across your vendors, your AI tools and your entire environment. The Vanta Agent works like a 24.7grc engineer. In the background, it finds, issues, drafts, fixes for you and can cut vendor assessment time by up to 50%. Whether you're a fast growing startup or a global enterprise, Vanta is here to help you automate your security and compliance and earn and prove trust. Get started today@vanta.com cyber that's V A N T A dot com cyber. Google gets a billion dollar fine from the EU the White House considers sanctions against Chinese AI developers. The GAO criticizes overlap in cyber reporting regulations. The feds warn of Iranian agents targeting OT systems. Researchers disclose a high severity Linux kernel Vaul vulnerability. Dolphin X uses AI profiling to find high value victims. A new backdoor routes C2 through the browser checkpoint confirms a critical zero day. A lawsuit accuses ChatGPT of unauthorized medical advice. Ben Yellen explains how political campaigns Attempt to influence LLMs and baseball benches the bots. It's Thursday, july 23rd, 2026. I'm dave bittner and this is your cyberwire intel briefing. Thanks for joining us here today. It's great as always to have you with us. The European Union has fined Google 890 million euros, about $1 billion for violating the Digital Markets act by abusing its dominance in search and its Google Play app store. Regulators said Google unfairly prioritized its own services, including shopping, travel and translation over competing offerings in search results, while also restricting how app developers communicate with users and process transactions outside Google Play. The company has 60 days to comply or face additional penalties of up to 5% of its global revenue. Google criticized the ruling, arguing it will degrade products for European users. The decision comes at a sensitive moment as President Trump considers new tariffs on the European Union and and has previously criticized European regulators for targeting US technology companies. It also reflects the EU's continued aggressive enforcement of competition rules against major technology firms, even as similar antitrust actions against Google continue in the United States. The Trump administration is considering sanctions against Chinese artificial intelligence developers accused of stealing US Intellectual property to build competing AI models. Treasury Secretary Scott Besant said the administration will investigate whether Chinese models were trained by copying American systems, claiming investigators have identified watermarks from US Large language models in several Chinese releases. He also alleged that Chinese developers use model distillation, training new systems on the outputs of more advanced US Models to replicate their capabilities at lower cost. While Besant didn't identify specific companies or explain how the alleged evidence was detected, he said any firms found to have stolen US Technology could face sanctions. He also suggested American companies using Chinese AI models could eventually be required to disclose that fact to customers. The comments come amid growing US Scrutiny of China's rapidly advancing AI sector and ahead of planned U S China AI talks expected in September. A new Government Accountability Office report found that nearly 70% of federal cybersecurity regulations requiring written reports to government agencies overlap with other reporting requirements, creating significant duplication for organizations. Reviewing 117 regulations across 37 agencies, the GAO identified 80 rules with similar or identical reporting obligations, particularly affecting critical infrastructure sectors. The report highlights ongoing challenges in harmonizing cybersecurity regulations despite efforts launched under the Biden administration and continued into the current Trump administration. One example is the pending Cyber Incident Reporting for Critical Infrastructure act, which could add to existing reporting requirements for sectors such as financial services already subject to multiple agency rules. Although the Office of the National Cyber Director and the Department of Homeland Security have made some progress, the GAO said broader harmonization efforts have stalled, concluding that federal attempts to streamline cybersecurity reporting have experienced delays and achieved only limited success. Federal agencies have expanded an earlier warning about Iranian government affiliated cyber activity targeting Internet facing operational technology systems. The updated advisory broadens the scope beyond Rockwell Automation and Allen Bradley programmable logic controllers to include Schneider Electric, Siemens and potentially other manufacturers. According to cisa observed attacks involved malicious project files and manipulation of data displayed on human machine interface and supervisory control and data acquisition systems, resulting in operational disruptions and financial losses. Because PLCs are widely used in critical infrastructure, including power, water and manufacturing, officials from cisa, the FBI and the EPA warned that the threat is likely to continue. The agencies urged organizations to restrict direct Internet access to PLCs and strengthen deployment security to reduce the risk of compromise. Researchers at QUALYS have disclosed a high severity Linux kernel vulnerability, dubbed RefluxFS, that allows local attackers to gain root privileges by exploiting a race condition in the XFS file system. The flaw affects multiple versions on systems using XFS with Reflink enabled, a default configuration on many enterprise Linux distributions. According to Qualys, attackers can overwrite protected files, including root owned configuration files and suid binaries, while bypassing standard security protections. The vulnerability has existed since 2017 and was patched on July 16 after responsible disclosure. Qualys estimates more than 16 million systems may be affected by and recommends organizations apply vendor provided kernel updates immediately as no practical mitigations or temporary workarounds are currently available. Researchers at Varonis Threat Labs have identified a new Windows infostealer and remote access Trojan called Dolphin X that uses an AI powered profiling system to help cybercriminals prioritize high value victims. Marketed on a cybercrime forum, the malware targets more than 300 applications and steals sensitive data including cryptocurrency wallets, SSH keys, cloud tokens, DevOps credentials and browser logins. Its standout feature is an AI profiler that automatically scores infected users based on factors such as application usage, browsing activity and installed software. According to Varonis, the system enables attackers managing thousands of compromised devices to quickly identify the most valuable targets through daily rankings, making large scale credential theft and victim prioritization significantly more efficient. Cisco Talos has identified a new rust based backdoor dubbed MSA rat used by the Chaos Ransomware group to to conceal command and control communications by routing them through Chrome or Microsoft Edge. The malware leverages the Chrome DevTools protocol to control a headless browser session, avoiding direct connections to attacker infrastructure and making detection more difficult. It establishes encrypted communication using WebRTC, Cloudflare Workers and Twilio turn servers, blending malicious traffic with legitimate web activity while masking the attacker's IP address. Recent Chaos attacks have begun with Phishing before deploying MSA RAT through a fake Windows update installer. Cisco Talos says this browser based communication method significantly complicates detection, tracing and blocking of the attacker's infrastructure. Check Point has confirmed that attackers exploited a critical zero day vulnerability in its security management and multi domain management products. The authentication bypass flaw allows attackers to obtain an administrator login token and modify security policies and configurations. The attacks affected a limited number of customers with Internet exposed management environments. Checkpoint has released patches, mitigations and indicators of compromise, while CISA has added the vulnerability to its known Exploited Vulnerabilities catalog and ordered federal agencies to remediate it by July 25. A former Florida pastor has filed a lawsuit against OpenAI and CEO Sam Altman, alleging that ChatGPT provided dangerous medical advice that contributed to a life threatening health crisis. The complaint claims the chatbot evolved from a general information tool into an unauthorized medical practitioner, diagnosing conditions, recommending treatments, discouraging medical care and fostering emotional dependence. According to the lawsuit, ChatGPT's personalized memory features strengthened the relationship and encourage the man to rely on its guidance instead of seeking professional treatment, causing him to delay care for symptoms he says were later linked to a pulmonary embolism. The man alleges the experience cost him his health, career, ministry and home. The suit also accuses OpenAI of prioritizing user engagement over safety by failing to implement adequate safeguards against harmful medical advice. OpenAI has not publicly responded to the allegations. Coming up after the break, Ben Yellen explains how political campaigns Attempt to influence LLMs and baseball benches the bots Stay with us. It is always my pleasure to welcome back to the show Ben Yellen. He is from the University of Maryland center for Cyber Health and Hazard Strategies, but also my co host over on the Caveat podcast. Ben, welcome back.
B
Good to be with you again, Dave.
A
We were recently talking over on the Caveat podcast about an article that caught your eye from the folks over at the New York Times. What's going on here?
B
Ben this is about politicians trying to change what chatbots say about them. So we used to have search engine optimization where politicians would try and make sure that the results of a Google search were favorable to them. And now that is extending into the AI realm where politicians are trying to manipulate chatbots into saying positive things about them. So, so the hook for this story is about a Democratic candidate for the Missouri state legislature named Dustin Lloyd. And in doing research, he figured out that AI chatbots didn't really know anything about him. There was some basic public information about who he is and what he's running for, but the chatbot knew nothing about his policy priorities. So he decided to expand his own website. He put a question and answer section in there about his background and his goals and his policy prescriptions. And almost instantaneously he found that the chatbot responses were becoming more detailed. They were reflecting the message he wanted to put out there. And now he's using and hiring people who are focused on what they're calling automated engine optimization, aeo, where you are optimizing the chatbot's response to people's inquiries. And this is a new frontier. I think political campaigns used to focus on social media search results. As I said traditional news coverage. Now they have to think about how AI chatbots are synthesizing information because people trust these chatbots. They treat chatbots as a trustworthy source of political information. So campaigns now have the incentive to do things like create Reddit posts that are seemingly by third party authors talking about a candidate's policy proposals or their appealing personal characteristics, and hoping that that Reddit post gets scraped and used in a chatbot response. The other side of this, of course, is whatever a candidate does, the opposition can also do.
A
Right, Right.
B
So we're going to have these kind of warring optimization wars where one candidate's trying to put positive information out there. I could set up a website that's like suchandsucandidatesucks.com do my own question and answer section, and could say terrible things about my political opponent. But this is kind of the new frontier in campaign messaging and getting information out there and an information ecosystem that's already so crowded and difficult to navigate.
A
Yeah. And I guess this is, as you say, as we see what used to be search engines like Google are turning into AI engines. They're not sending you to the source anymore. They're distilling and analyzing and aggregating and combining into an authoritative answer for you.
B
Right. And that's kind of the reality that these campaigns have to deal with. And it's not just that they're creating an authoritative answer, they're creating an answer that people increasingly are trusting. And I've been prone to this myself, where I should know better. I should know that a chatbot's responses aren't always reliable. They're sycophants. Chatbots are trying to please me and give me the answer that I want, but I still read the response and kind of instinctually think it's trustworthy. And I think these answer engine, I said automated before. It's answer engine optimization specialists are understanding this phenomenon very well and realize that if you can get chatbots to put out not just truthful or reliable information, but a political message that reflects your candidate's priorities, you can gain an advantage. You just have to know how the chatbots work. And the fact is the chatbots search the Internet and they pull in fresh content they are looking for by fresh content. It's current events. When we're talking about political candidates, it's events relating to this year's midterm election, election and the candidates that are running in them. This is a form of manipulation. I mean, I don't think this is like an earnest search for the truth about political candidates. But it's just another way that political campaigns can try and optimize what people are seeing about their favorite candidates.
A
And the turnaround on this is remarkably quick, Right?
B
Yeah. I mean, they did one study here where they made a change on Wikipedia about a certain candidate's profile, and they tested how long it would take for that change to be reflected in a chatbot response. And the time was 12 minutes. So it happens very quickly. And this is a new thing. I mean, you think back to the infancy of ChatGPT in 2022, where we understood at the time, like, ChatGPT's knowledge base goes up to 2020, 2021.
A
Right, right.
B
If you ask it about current events, it's just not going to know the answer. That was four years ago. Like, it's just crazy how quickly all this has developed.
A
And I suppose, I mean, even beyond your local political adversary. We have to worry about international adversaries here as well and their influence.
B
Yeah. I mean, anybody who can manipulate chatbots could be a friend or a foe. And you could see nation state actors like Russia or China manipulating public profiles or creating shell websites to put out fresh information about candidates that they disfav. And that's gonna show up in chatbots. It's a great way to sow disinformation.
A
Yeah.
B
Which does mean that this could create a societal harm.
A
It just seems like we're moving farther and farther away from ground truth.
B
Yeah. I mean, there used to be a time where there were relatively easy ways to find out the basics about a candidate and a candidate's position. You go to your local newspaper, they might have profiles of. Here are your state Senate candidates, and here's what their priorities are. We interviewed them personally. You make a decision. You had mentioned on our Caveat podcast. This is what the League of Women Voters used to do.
A
Right.
B
That's just not the way it is anymore. It's harder to figure out what's actually the truth, especially for people who don't engage in the political process until a week before the election. If you've never heard of this candidate, your first impression is gonna be what's spit out by a chatbot when for months, everybody, opponents and proponents, have been trying to game the responses of that chatbot.
A
Right, right. And again, the person who has more money can publish more web pages that get scraped and have greater influence. And away we go.
B
Sure. Absolutely. And we really don't have any restrictions on money in politics these days. So spend as much as you want. Optimize greater than your opponent. Gain an advantage. Political fundraisers can realize that this is a way that they can have a big impact. So if they want to donate unlimited sums of money and a super PAC to try and affect what a tap on answer is, they're certainly going to try and do that.
A
Tale as old as time.
B
Yep.
A
All right, well, Ben Yellen is from the University of Maryland center for Cyber Health and Hazard Strategies and also my co host on the Caveat podcast. Ben, thanks so much for joining us.
B
Thanks for having me, Dave.
A
Foreign. AI is making phishing attacks faster, more convincing and harder for people to spot, and traditional security awareness and phishing training weren't designed for this level of attack. Hox Hunt helps security teams prepare employees for the attacks they face every day with personalized fishing training that adapts to each employee and reduces risky behavior over time for it and security leaders looking to strengthen their human layer of defense without adding more manual work. Visit hoxhunt.com cyberwire to learn more. That's H O X H-U-N-T.com cyberwire. And finally, Major League Baseball has decided there are still some jobs best left to humans, at least in the dugout. The league has issued a midseason policy barring teams from using generative AI on in game tablets to make recommendations on substitutions, pitch selection and other strategic decisions traditionally handled by players and coaches. According to the Athletic, the change followed reports that roughly a third of teams had been experimenting with custom AI powered apps, though no clubs were punished after MLB confirmed they had complied with the new rules. The move partially reverses the league's gradual relaxation of tablet restrictions imposed after the 2021 sign stealing scandal. While baseball has long embraced statistics and data driven analysis, league officials appear to have drawn the line at letting chatbots manage the game. After all, spreadsheets may love certainty, but baseball has always had a soft spot for gut instinct, unpredictable moments and the occasionally beautifully irrational decision. And that's the Cyberwire. For links to all of today's stories, check out our daily briefing@thecyberwire.com we'd love to know what you think of this podcast. Your feedback ensures we deliver the insights that keep you a step ahead in the rapidly changing world of cybersecurity. If you like our show, please share a rating and review in your favorite podcast app. Please also fill out the survey in the show notes or send an email to cyberwire2n2k's lead producers, Liz Stokes, were mixed by Trey Hester with original music and sound design by Elliot Peltzman. Our contributing host is Maria Vermazes. Our executive producer is Jennifer Ivan. Peter Kilpe is our publisher and I'm Dave Bittner. Thanks for listening. We'll see you back here tomorrow. Foreign. Heading to Black Hat USA, the N2K CyberWire team will be on site recording from our podcast studio in the Spectre Ops Kennel Club. If you're interested in joining us for a conversation or learning more about what we're recording throughout the week, stop by the studio and meet the N2K CyberWire team. Spectrops Kennel Club is adjacent to Libertine Social inside Mandalay Bay.
This episode delivers a hard-hitting rundown of the latest in global cybersecurity, antitrust, artificial intelligence, and regulatory affairs. Highlights include a billion-dollar EU fine for Google, looming U.S. sanctions on Chinese AI developers, regulatory chaos in cyber incident reporting, pressing vulnerabilities, and the ever-shifting intersection between politics, AI, and public trust. Expert guest Ben Yellen breaks down how political campaigns aim to influence large language models (LLMs), while Major League Baseball draws a surprising boundary for robots in America’s pastime.
⏰ [01:29–02:30]
⏰ [02:31–04:13]
⏰ [04:13–06:13]
⏰ [06:14–07:36]
⏰ [07:37–09:09]
⏰ [09:10–10:18]
⏰ [10:19–11:31]
⏰ [11:32–12:16]
⏰ [12:17–13:12]
Host: Dave Bittner
Guest: Ben Yellen (University of Maryland Center for Cyber Health and Hazard Strategies)
⏰ [13:37–21:10]
⏰ [21:17–22:53]
| Segment | Start | End | |-----------------------------------------------|---------|---------| | EU fines Google | 01:29 | 02:30 | | US sanctions on Chinese AI | 02:31 | 04:13 | | GAO on redundancy in cyber reporting | 04:13 | 06:13 | | Iranian threats to OT systems | 06:14 | 07:36 | | Linux kernel RefluxFS vuln | 07:37 | 09:09 | | Dolphin X malware | 09:10 | 10:18 | | Chaos ransomware MSA RAT | 10:19 | 11:31 | | Check Point zero-day | 11:32 | 12:16 | | ChatGPT lawsuit | 12:17 | 13:12 | | Ben Yellen: LLMs and campaigns | 13:37 | 21:10 | | MLB bans generative AI in dugouts | 21:17 | 22:53 |
This episode immerses listeners in a rapidly evolving cyber reality—Big Tech faces regulatory and reputational crosswinds, cybercriminals wield ever-smarter tools, and democracy enters a contest not just for votes, but for the very ground truth. All, as the boundary between automation and humanity—whether in politics or sports—gets redrawn, sometimes in real time.