Navigated to Shai-Hulud 2.0, Russia GRU Intrusions, and Microsoft’s Regulatory Capture

Shai-Hulud 2.0, Russia GRU Intrusions, and Microsoft’s Regulatory Capture

Nov 29, 2025
1h 57m

View Transcript

Episode Description

(Presented by Material Security: We protect your company’s most valuable materials -- the emails, files, and accounts that live in your Google Workspace and Microsoft 365 cloud offices.)

Three Buddy Problem - Episode 74: We attempt to parse the rumor-fog around Microsoft’s CISO at CYBERWARCON and what it reveals about the company’s shifting posture on intel sharing, regulation, and its outsized grip on the security ecosystem. Plus, coverage of the Shai-Hulud npm supply-chain mess, CISA’s mobile spyware guidance, NSO’s legal contortions, a sharp new GRU-linked intrusion from Arctic Wolf.

We also discuss the FCC retreating on telco security rules, and the emerging AI arms race shaping how cloud giants hunt threats and how Washington misunderstands all of it.

Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.

Links:

See all episodes

Never lose your place, on any device

Create a free account to sync, back up, and get personal recommendations.