Dark mode: ON

Infosec Decoded Season 5 #58: BadBox

With Doug Spindler and sambowne@infosec.exchange

Recorded Fri, July 25, 2025

AI

AI companies have stopped warning you that their chatbots aren’t doctors
Once cautious, OpenAI, Grok, and others will now dive into giving unverified medical advice with virtually no disclaimers. Fewer than 1% of outputs from models in 2025 included a warning when answering a medical question, down from over 26% in 2022.
FDA’s New Drug Approval AI Is Generating Fake Studies: Report
Kennedy recently told Tucker Carlson that AI will soon be used to approve new drugs “very, very quickly.” But a new report from CNN confirms all our worst fears. Elsa, the FDA’s AI tool, is spitting out fake studies. The AI will also misrepresent research.
Hacker Plants Computer 'Wiping' Commands in Amazon's AI Coding Agent
A hacker compromised a version of Amazon’s popular AI coding assistant ‘Q’, added commands that told the software to wipe users’ computers, and then Amazon included the unauthorized update in a public release of the assistant this month, 404 Media has learned.

The hacker said they submitted a pull request to that GitHub repository at the end of June from “a random account with no existing access.” They were given “admin credentials on a silver platter,” they said. On July 13 the hacker inserted their code, and on July 17 “they [Amazon] release it—completely oblivious,” they said.

Politics

From Canada to Finland, a US neo-Nazi fight club is rapidly spreading across the globe
Since 2023, these Hitler Youth-styled clubs called "active clubs" are newly sprouting in Sweden, Canada, Australia, Switzerland, the UK, Finland and for the first time, in Latin America with two chapters in Chile and Colombia appearing. They are preparing for violence against both political enemies, immigrants, Jews, and the LGBTQ+ community,
What exactly is Golden Dome? This Space Force general owes Trump an answer.
Gen. Michael Guetlein was confirmed by the Senate last week to become the military's Golden Dome czar. Reagan's Star Wars program failed in the 1980s, because the United States lacked capacity to build and launch so many satellites. The Golden Dome will use 1000 space-based interceptors (satellites) of modest size, launched 100 or 200 at a time on SpaceX rockets.
Hegseth tells lawmakers about plan to detain immigrants at bases in Indiana and New Jersey
Defense Secretary Pete Hegseth says bases in Indiana and New Jersey can house detained immigrants without affecting military readiness — a step toward potentially detaining thousands of people on bases on U.S. soil.
'Attention-thirsty troll': Oklahoma's MAGA school chief shocks with new right-wing stunt
Ryan Walters, the state superintendent of Oklahoma, previously forced schools to purchase Trump-endorsed "God Bless The USA Bibles" and even ordering teachers to inform kids of conspiracy theories that the 2020 election was rigged. Now he has plans to force teachers who move from blue states to effectively swear loyalty to a suite of MAGA beliefs outlined by PragerU. They would be tested on the U.S. Constitution, American exceptionalism, and 'the fundamental biological differences between boys and girls.
Tesla skepticism continues to grow, robotaxi demo fails to impress Austin
In a survey, Toyota is the most trusted EV brand, and Tesla is the least.
Conspiracy theorists don’t realize they’re on the fringe
"It might be one of the biggest false consensus effects that's been observed." Take the case of the Sandy Hook conspiracy, where adherents believe it was a false flag operation. In one sample, 8 percent of people thought that this was true. That 8 percent thought 61 percent of people agreed with them.

Infosec

Google Sues BadBox 2.0 Botnet Operators Behind 10 Million+ Infected Devices
This appears to be the largest currently active botnet, with over 10 million uncertified devices running the Android Open Source Project (AOSP). The devices included internet-connected televisions and other devices, which were shipped with pre-installed malware.

Unlike certified Android systems fortified with Google’s proprietary security layers, AOSP-based devices are particularly vulnerable due to their open-source nature, lacking built-in protections such as Verified Boot and Google Play Protect’s real-time scanning capabilities.

Generate autounattend.xml files for Windows 10/11
Automates installation, and lets you easily remove annoying features, skip disk encryption, disable Defender or updates, bypass requirement for TPM, etc.
The Internet Red Button: a 2016 Bug Still Lets Anyone Kill Solar Farms in 3 Clicks
A decade-old flaw (CVE-2016–2296) in Meteocontrol WEB’log controllers still lets anyone on the Internet pull a hidden configuration page, steal the admin password, and remotely rewrite power-plant settings.
NPM package ‘is’ with 2.8M weekly downloads infected devs with malware
The popular NPM package 'is' has been compromised in a supply chain attack that injected backdoor malware, giving attackers full access to compromised devices. This occurred after maintainer accounts were hijacked via phishing.

The 'is' package is a lightweight JavaScript utility library that provides a wide variety of type checking and value validation functions. The software has over 2.8 million weekly downloads on the NPM package index. It is used extensively as a low-level utility dependency in development tools, testing libraries, build systems, and backend and CLI projects.

Copilot Vision on Windows 11 sends data to Microsoft servers
It captures constant screenshots and feeding them to an optical character recognition system and a large language model for analysis – but where Recall works locally, Copilot Vision sends the data off to Microsoft servers.
Brave blocks Windows Recall from screenshotting your browsing activity
Brave uses Microsoft's SetInputScope API and sets the input scope to IS_PRIVATE for all browser windows. This tells Windows that the content should not be captured or indexed by Recall.
Beyond Convenience: Exposing the Risks of VMware vSphere Active Directory Integration
Ransomware families specifically tailored for vSphere ESXi systems grew from 2% in 2022 to over 10% in 2024.
Preston Thorpe is a software engineer at a San Francisco startup — he’s also serving his 11th year in prison
A community college professor is also working from prison.
Millions of cars at risk from Flipper Zero key fob hack, experts warn
The new hack sidesteps these protections by exploiting the rolling code algorithm to calculate valid key fob commands based on a single intercepted signal. Vehicles vulnerable to the attack include numerous models manufactured by Chrysler, Dodge, Fiat, Ford, Hyundai, Jeep, Kia, Mitsubishi and Subaru, according to an infographic provided with the firmware.