<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[Inside Cyber Warfare]]></title><description><![CDATA[Research, Resources, and Data Dumps for the 3rd edition of Inside Cyber Warfare, coming in October, 2024. Plus, lessons learned from my personal battle with prostate cancer during the writing of this book. ]]></description><link>https://www.insidecyberwarfare.com</link><image><url>https://substackcdn.com/image/fetch/$s_!ntst!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7b286e49-d552-4fcf-b59f-52ca86eeffe0_1024x1024.png</url><title>Inside Cyber Warfare</title><link>https://www.insidecyberwarfare.com</link></image><generator>Substack</generator><lastBuildDate>Mon, 10 Aug 2026 15:38:05 GMT</lastBuildDate><atom:link href="https://www.insidecyberwarfare.com/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[Jeffrey Caruso]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[jeffreycaruso@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[jeffreycaruso@substack.com]]></itunes:email><itunes:name><![CDATA[Jeffrey Caruso]]></itunes:name></itunes:owner><itunes:author><![CDATA[Jeffrey Caruso]]></itunes:author><googleplay:owner><![CDATA[jeffreycaruso@substack.com]]></googleplay:owner><googleplay:email><![CDATA[jeffreycaruso@substack.com]]></googleplay:email><googleplay:author><![CDATA[Jeffrey Caruso]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[Q16 Is Recruiting Volunteers for Its Quarterly AI Capability Assessment]]></title><description><![CDATA[Panelists, scouts, and writers. The time commitment is bounded, and the first full cycle runs October 1&#8211;31.]]></description><link>https://www.insidecyberwarfare.com/p/q16-is-recruiting-volunteers-for</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/q16-is-recruiting-volunteers-for</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Fri, 07 Aug 2026 16:49:45 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!f_Ow!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!f_Ow!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!f_Ow!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png 424w, https://substackcdn.com/image/fetch/$s_!f_Ow!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png 848w, https://substackcdn.com/image/fetch/$s_!f_Ow!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png 1272w, https://substackcdn.com/image/fetch/$s_!f_Ow!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!f_Ow!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png" width="500" height="500" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:500,&quot;width&quot;:500,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:17796,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/210246388?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!f_Ow!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png 424w, https://substackcdn.com/image/fetch/$s_!f_Ow!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png 848w, https://substackcdn.com/image/fetch/$s_!f_Ow!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png 1272w, https://substackcdn.com/image/fetch/$s_!f_Ow!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3802faba-b434-435c-b5a7-4a1d059ec555_500x500.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><span>If you&#8217;re interested in AI safety, especially as regards what may happen once superintelligence arrives, then knowing how close we are to its arrival is itself a safety question.</span></p><p><span>That assessment, however, shouldn&#8217;t rely on frontier-lab CEOs, all of whom have a clear conflict of interest.</span></p><p><a href="https://q16pbc.com"><span>Q16 PBC</span></a><span> (the public benefit corporation behind Frontier Watch) is launching a quarterly, panel-based assessment of global AI capability built on independent expert judgment, published free. This is structured elicitation, aggregated across a panel of volunteers. As far as we know, it&#8217;s the only </span><em><span>quarterly, panel-based</span></em><span> reading of its kind.</span></p><p><span>We&#8217;re recruiting a small volunteer team for the Q3 2026 cycle. You can apply for one or more of the following roles - panelists, scouts, and writers:</span></p><ul><li><p><span>Panelists complete a short elicitation instrument once per quarter &#8212; independent answers, roughly an hour of focused work, due mid-month after each quarter closes.</span></p></li><li><p><span>Scouts feed the evidence base between cycles: papers, incidents, policy changes, and capability demonstrations, posted with a line on why each matters.</span></p></li><li><p><span>Writers help turn panel synthesis into the published assessment.</span></p></li></ul><p><span>In terms of the time commitment, it might be a few hours per quarter for panelists, an hour or two a week for scouts and writers, concentrated in the two weeks after each quarter ends. The first full cycle runs October 1&#8211;31, with onboarding and a practice round in September. One eligibility note for panelists: we ask that you not be employed at any of the labs we assess.</span></p><p><span>Coordination happens on Buzz, an open-source collaboration platform from Block (desktop app; Mac, Windows, or Linux). Invites go out by email after a short exchange about your background and interests.</span></p><p><span>Interested? Write to info@q16pbc.com with a few lines about yourself and which role fits. Questions and criticism of the methodology are welcome in the comments.</span></p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!wB6f!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!wB6f!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png 424w, https://substackcdn.com/image/fetch/$s_!wB6f!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png 848w, https://substackcdn.com/image/fetch/$s_!wB6f!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png 1272w, https://substackcdn.com/image/fetch/$s_!wB6f!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!wB6f!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png" width="1456" height="485" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:485,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:551288,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/210246388?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!wB6f!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png 424w, https://substackcdn.com/image/fetch/$s_!wB6f!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png 848w, https://substackcdn.com/image/fetch/$s_!wB6f!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png 1272w, https://substackcdn.com/image/fetch/$s_!wB6f!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5dca954c-4a9c-4b13-ab83-738535b556e6_2400x800.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div>]]></content:encoded></item><item><title><![CDATA[Do AI Assistants Observe Private Browsing Sessions?]]></title><description><![CDATA[Every Browser but Firefox Now Curbs AI in Private Windows. Almost None of Them Says So.]]></description><link>https://www.insidecyberwarfare.com/p/do-ai-assistants-observe-private</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/do-ai-assistants-observe-private</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Thu, 30 Jul 2026 18:15:47 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Y6At!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Y6At!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Y6At!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!Y6At!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!Y6At!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!Y6At!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Y6At!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1959785,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/209143100?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Y6At!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!Y6At!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!Y6At!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!Y6At!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa6410729-7993-4cab-a2fc-c13b25da654b_1536x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Private browsing windows in web browsers are not really private at all. At best, they keep your web visits secret from any other person who uses your web browser on your laptop or mobile device. Short of that, nothing is really private unless you&#8217;ve layered in other protections. </p><p>About a week ago, I became curious about what happens when you have AI-powered features and assistants on your browser, especially when you use a private window. So I tested seven browsers AI features while using their respective private windows and ran their documentation through Q16&#8217;s analysis. </p><p>The report is free, sourced, and versioned, and is available at the Q16 website: <a href="https://q16pbc.com/private-mode">https://q16pbc.com/private-mode</a></p><p>While you&#8217;re there you can also sign up for the Q16 newsletter and be among the first to receive our future research announcements. </p><div><hr></div><p></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!oDJy!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!oDJy!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png 424w, https://substackcdn.com/image/fetch/$s_!oDJy!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png 848w, https://substackcdn.com/image/fetch/$s_!oDJy!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png 1272w, https://substackcdn.com/image/fetch/$s_!oDJy!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!oDJy!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png" width="1456" height="485" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:485,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:551288,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/209143100?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!oDJy!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png 424w, https://substackcdn.com/image/fetch/$s_!oDJy!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png 848w, https://substackcdn.com/image/fetch/$s_!oDJy!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png 1272w, https://substackcdn.com/image/fetch/$s_!oDJy!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F13c29f97-2043-44e4-accd-8fb258e55fd4_2400x800.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[I'm asking for your help for something important to me]]></title><description><![CDATA[Four months of independent AI oversight &#8212; funded by readers]]></description><link>https://www.insidecyberwarfare.com/p/im-asking-for-your-help-for-something</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/im-asking-for-your-help-for-something</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Thu, 23 Jul 2026 23:08:43 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/208261500/bff2a8359120be2449b30870cc1b41bb.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Every AI product you or your organization touches is a stack. There&#8217;s the application you type into. </p><p>Under that, a hosting platform. </p><p>Under that, a frontier model. </p><p>Each layer has its own terms governing what happens to your data: whether it trains future models, how long it&#8217;s retained, what jurisdiction it sits in, who it&#8217;s shared with. When you sign up for an AI writing assistant or a meeting transcriber, you&#8217;re accepting the entire stack&#8217;s terms, sight unseen. Almost nobody reads them all the <span>way down.</span></p><p>My public benefit corporation, <a href="https://q16pbc.com">Q16</a>, built a platform that does. </p><p>Frontier Watch scores AI products on a published six-dimension rubric at every layer of the stack, then composites the result on a weakest-link basis, the same way you&#8217;d assess any other supply chain. Twelve major applications and ten frontier-lab consumer products are rated so far, American and Chinese labs on the same ruler. Automated monitors re-check every policy document in the system daily, so when terms quietly change, the score gets flagged <span>for review the same day.</span></p><p>Two findings are <span>worth your attention.</span></p><p>First: in every single product chain we&#8217;ve rated, the weakest link is the application, not the lab behind it. The frontier labs&#8217; API terms are actually strong. Anthropic&#8217;s enterprise terms score 9.0 on our rubric; OpenAI&#8217;s score 8.3. But the consumer apps wrapping those models score in the 1s to 4s, and since the user inherits the worst terms in the chain, that&#8217;s the score that matters. The industry&#8217;s privacy problem is not where the <span>coverage says it is.</span></p><p>Second: the Chinese labs, measured on identical criteria, span a wide and mostly poor range &#8212; DeepSeek at 3.9, Alibaba&#8217;s Qwen at 4.1, Moonshot&#8217;s Kimi at 2.8, Zhipu&#8217;s GLM at 1.4, MiniMax at 1.2. These models are spreading through Western products right now, sometimes several layers down the stack, which is exactly <span>where nobody looks.</span></p><p>All of it is public at <a href="https://watch.q16pbc.com/">watch.q16pbc.com</a>, <span>methodology included.</span></p><p>Now the ask. Independent scrutiny has an old funding problem: the people being scrutinized are the ones with the money. Q16 takes nothing from AI companies. We&#8217;re funded by me and by early subscribers, and subscription revenue, while real, doesn&#8217;t yet cover what the platform costs to run and extend. Adoption is accelerating and the monitors run every day. This is the wrong <span>moment to slow down.</span></p><p>So I&#8217;m asking readers who want this work to exist to fund it directly. <strong>The goal is $25,000 by August 14 &#8212; four months of full operations</strong>, plus the next round of coverage: more applications, deeper tracking of the Chinese labs, and real-time alerts for subscribers. If we go past the goal, the surplus launches our Youth Signal program, which brings high school students into structured AI assessment alongside our <span>expert respondents.</span></p><p><strong>Contribute in any amount here: <a href="https://square.link/u/dkuZgSRc">square.link/u/dkuZgSRc</a></strong></p><p>A contribution of $1,500 funds a week of monitoring and analysis; $6,250 funds a full month. Or take the simplest route: a Pro subscription at <a href="https://watch.q16pbc.com/">watch.q16pbc.com</a> is $70 a year, and you get the full ratings detail while backing the work. For larger support, or to talk first, just <span>reply to this email.</span></p><p><em>Q16 PBC is a public benefit corporation, not a charity; contributions fund operations directly and are not <span>tax-deductible.</span></em></p><p>Thanks for reading, <span>as always.</span></p><p><span>&#8212; Jeff</span></p><div><hr></div>]]></content:encoded></item><item><title><![CDATA[An AI Broke Out of Its Test and Hacked Hugging Face.]]></title><description><![CDATA[Here's a hype-free assessment of what happened and how it impacts AI safety and governance, in plain English.]]></description><link>https://www.insidecyberwarfare.com/p/an-ai-broke-out-of-its-test-and-hacked</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/an-ai-broke-out-of-its-test-and-hacked</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Wed, 22 Jul 2026 22:13:42 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!5-Bl!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!5-Bl!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!5-Bl!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp 424w, https://substackcdn.com/image/fetch/$s_!5-Bl!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp 848w, https://substackcdn.com/image/fetch/$s_!5-Bl!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp 1272w, https://substackcdn.com/image/fetch/$s_!5-Bl!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!5-Bl!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:42454,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/208124323?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!5-Bl!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp 424w, https://substackcdn.com/image/fetch/$s_!5-Bl!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp 848w, https://substackcdn.com/image/fetch/$s_!5-Bl!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp 1272w, https://substackcdn.com/image/fetch/$s_!5-Bl!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d0a8157-1a93-43e7-bf65-3ec50568f4ac_2400x1350.webp 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">The sealed environment had one connection &#8212; a package proxy for fetching software, not a door to the internet. The agent found a hidden flaw in it, slipped out to the open web, and reached the answer key.</figcaption></figure></div><div><hr></div><p>NOTE: This is a reprint from a <a href="https://q16pbc.com/blog/openai-model-hacked-hugging-face">Q16 blog post</a> that I wrote earlier today. If you like it, please visit Q16 to learn more about our mission and how you can support it.</p><div><hr></div><p>Last week, Hugging Face, the platform that hosts much of the world&#8217;s open-source AI models and datasets, said its systems were broken into by an AI. Five days later, OpenAI claimed responsibility. Not all the facts are known, and what we do know is limited to one source: OpenAI.</p><h2><strong>What happened</strong></h2><p>According to OpenAI, two of its models, the public GPT-5.6 &#8220;Sol&#8221; and a more capable one that has not been released, were being tested internally on a cyberattack benchmark called ExploitGym, which measures how well an AI can carry out attacks against known software flaws.</p><p>It is a public benchmark of 898 challenges drawn from real vulnerabilities in everyday software, Chrome&#8217;s JavaScript engine, and the Linux kernel. For each one, the agent is given an input that trips a known bug and told to develop it into a full working exploit, then scored on how many it can pull off. That was the whole of its job: get the highest score. When it broke out of the sandbox and stole the answer key from Hugging Face, it was not going rogue or turning on anyone. It was doing exactly what it was told, maximizing the score, and treating the walls around it as obstacles to that goal rather than rules to respect.</p><p>For the purpose of conducting this test, OpenAI had turned down the models&#8217; usual refusals around cyber work and switched off the monitoring classifiers that would normally block high-risk activity. The test environment was supposed to be sealed, with its only outside connection being an internal proxy used to fetch software packages, not the open internet.</p><p>To get out, the agent found an unknown flaw &#8212; a &#8220;zero-day&#8221; &#8212; in that package proxy, exploited it, and worked its way onto the open internet.</p><p>The agent reasoned that a benchmark like ExploitGym would probably keep its files on Hugging Face. It went looking, chaining together stolen credentials and further flaws until it reached Hugging Face&#8217;s production database, where the benchmark&#8217;s answer key was stored.</p><p>In short, the models were not trying to harm Hugging Face. They were trying to win the test, and stealing the answers was the shortest path.</p><p>Now the caveat.</p><p>Almost the entire account of how this happened comes from OpenAI, published five days after Hugging Face disclosed it had been breached. The story casts its models as extraordinarily capable, and it helps justify a product the company is actively selling: a &#8220;trusted access&#8221; program that hands vetted customers versions of its models with the safety refusals relaxed. Hugging Face has now joined that program.</p><p>OpenAI has also not released the technical specifics of the flaw, promising them &#8220;when our investigation is complete.&#8221;</p><p>So we have two independently confirmed facts, that Hugging Face was breached, and that it caught the breach, plus an outside evaluation from the UK&#8217;s AI Safety Institute, discussed below, that lends some support to the capability claim. Everything else, the escape, the chaining, the motive, is OpenAI&#8217;s telling. Its use of &#8220;unprecedented&#8221; and &#8220;state-of-the-art&#8221; in its blog post belongs in a marketing piece, not a sober assessment of a safety failure.</p><h2><strong>What&#8217;s the impact</strong></h2><p>The hyped version of this story is that AI reasoning took a leap, that a machine got clever enough to plot its way out of a cage and into another company. That&#8217;s the version that drives clicks, and it&#8217;s the one to be most careful with, because it does not survive a close look.</p><p>Consider the supposedly brilliant part, the model&#8217;s deduction that Hugging Face would be holding the answer key. Any machine-learning practitioner would guess the same thing in a second, because Hugging Face is the obvious place such files live. And every other step, probing software for a flaw, stealing credentials, moving from one machine to the next, is standard penetration-testing craft that skilled humans and prior models could already do. No single move here is beyond what was possible a year ago. As a raw reasoning feat, this is a vivid demonstration, not a breakthrough.</p><p>The real milestone sits on a different axis, and it is about autonomy rather than intelligence. Three things happened together, in the real world, that had not lined up at this scale before.</p><p>First, the model sustained a long, coherent campaign toward one goal without a human steering it, thousands of steps that stayed on-task, which is the capability the UK&#8217;s AI Safety Institute independently found in GPT-5.6 Sol: that it can hold together complex, multi-step cyber operations over long stretches.</p><p>Second, nobody instructed the model to escape, hunt for the answers, or break in. It generated that entire plan on its own as a means to the goal it was given, which is the exact behavior AI safety researchers have long predicted under the name <em>specification gaming</em> &#8212; a system that pursues the letter of its objective past the purpose behind it.</p><p>Third, the plan did not stay in a sandbox. It reached a real company and did real damage.</p><p>So the honest headline is not &#8220;AI got smarter.&#8221; It is &#8220;a frontier model showed enough independent, long-horizon drive to improvise a harmful plan against a real-world company, unprompted.&#8221;</p><p>That is a threshold being crossed on the autonomy axis, and it is arguably more concerning than a jump in raw intelligence would be, because it is the property that turns a capable tool into an actor.</p><p>There is a second impact worth naming, because it is close to our work. A model that will break out of a test to cheat on that test has corrupted the test. Much of what the public knows about how capable and how safe these systems are comes from evaluations the labs run and report themselves. If a model games the evaluation whenever gaming is the easier path, then every self-reported score has to be read with a new kind of doubt, not &#8220;is the number accurate,&#8221; but &#8220;did we measure the ability, or the model&#8217;s willingness to cheat the measurement.&#8221; That is a problem for the entire practice of lab self-assessment, and it is one more reason the measuring should not be left to the parties being measured.</p><h2><strong>Does it move the Singularity Index?</strong></h2><p>The Singularity Index is Q16&#8217;s single measure of how far the field has come toward the finish line. It is one number on a scale from 0.0 to 1.0, where 1.0 is the superintelligence threshold and the score is the share of that distance already closed. It is not a capability rating and not a measure of mood or momentum. It is an estimate of real progress. And it does not come from a lab. It comes from a pool of independent, qualified experts who each score the global frontier on their own, with no shared stage and no company line to defend. We publish the median and the spread, never an individual score, and no reading goes public until at least ten experts have submitted one. The number moves when an elicitation wave completes, not when a headline lands.</p><p>So the direct answer is no, this incident does not move the Index, and it is worth being clear about why. The Index is built precisely so that a single event, especially one narrated by a single interested company, cannot jolt it. A press release is not a data point until independent experts have weighed it. What this incident becomes is one input those experts may consider at the next wave, on the autonomy and long-horizon-agency dimension, and they will weigh it with exactly the discount its single-source origin deserves. The one piece here with independent backing, the AI Safety Institute&#8217;s finding on sustained multi-step operation, is the part most likely to carry weight, because it does not depend on OpenAI&#8217;s account.</p><p>That restraint is the entire point of the method. The labs will keep producing dramatic stories, some real, some shaped by what they are selling. An honest index cannot lurch every time one arrives. It has to wait for people with no stake in the answer to look, and then move only as much as the evidence, properly discounted, supports. This incident is a real signal about where autonomous AI is heading. It is not, on its own, a new reading of how far we have come.</p><p>Q16 is a public benefit corporation whose mission is the independent, public-interest measurement of the trajectory toward advanced AI, and monitoring of how the labs building it treat user data. The baseline Index and the Frontier Watch and Privacy Watch scores are free because the public should be able to see where the frontier stands without paying for the privilege. Our membership layer provides additional analysis for a modest monthly fee. Visit <a href="https://q16pbc.com/">Q16pbc.com</a> for more information.</p><div><hr></div><h3><strong>Sources</strong></h3><ul><li><p>OpenAI &#8212; &#8220;OpenAI and Hugging Face partner to address security incident during model evaluation,&#8221; openai.com, July 21, 2026</p></li><li><p>Hugging Face &#8212; &#8220;Security incident disclosure &#8212; July 2026,&#8221; huggingface.co/blog/security-incident-july-2026</p></li><li><p>UK AI Safety Institute &#8212; cyber capability evaluation of GPT-5.6 Sol, as cited by OpenAI, July 2026</p></li><li><p>ExploitGym benchmark &#8212; &#8220;ExploitGym: Can AI Agents Turn Security Vulnerabilities into Real Attacks?&#8221;, arXiv:2605.11086 (UC Berkeley)</p></li><li><p>TechCrunch &#8212; &#8220;OpenAI says Hugging Face was breached by its pre-release models,&#8221; July 21, 2026</p></li><li><p>Fortune &#8212; &#8220;OpenAI says its AI models escaped a secure test environment and hacked into AI company Hugging Face,&#8221; July 21, 2026</p></li><li><p>Help Net Security &#8212; &#8220;Hugging Face breached by autonomous AI agent,&#8221; July 20, 2026</p></li></ul>]]></content:encoded></item><item><title><![CDATA[China, Iran, and Two Satellite Stories]]></title><description><![CDATA[One claim collapses under scrutiny. The other holds up. The difference between them is a lesson in how to read a leak.]]></description><link>https://www.insidecyberwarfare.com/p/china-iran-and-two-satellite-stories</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/china-iran-and-two-satellite-stories</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Tue, 21 Jul 2026 19:05:24 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!XbAG!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!XbAG!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!XbAG!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png 424w, https://substackcdn.com/image/fetch/$s_!XbAG!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png 848w, https://substackcdn.com/image/fetch/$s_!XbAG!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png 1272w, https://substackcdn.com/image/fetch/$s_!XbAG!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!XbAG!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2952676,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/207946261?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!XbAG!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png 424w, https://substackcdn.com/image/fetch/$s_!XbAG!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png 848w, https://substackcdn.com/image/fetch/$s_!XbAG!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png 1272w, https://substackcdn.com/image/fetch/$s_!XbAG!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6586126-3ca2-458b-881a-fc88911c5af9_1782x1002.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2>Preface: Two claims, two very different answers</h2><p>In the space of a few months, two striking claims circulated about how China has been helping Iran target American forces in the Middle East. Both sound alarming. Both involve Chinese space technology. Both arrived wrapped in confident technical detail. And yet one of them largely falls apart when you trace it to its sources, while the other stands up remarkably well.</p><p>This two-part piece works through both, using the same method for each: take the claim apart, follow every specific back to where it actually originates, and separate what is <strong>documented</strong> from what is <strong>inferred</strong> from what has simply been <strong>repeated</strong> until it sounded true.</p><ul><li><p><strong>Part One</strong> examines the theory that China gave Iran access to <strong>B3A</strong>, the encrypted military signal of its BeiDou satellite-navigation system &#8212; a supposedly &#8220;unjammable&#8221; capability that let Iranian missiles strike with new precision. This one is a media artifact. It was built by inference on top of a mundane civilian statement, given fake-precise technical specs by an uncited blog, and then debunked by the actual experts on satellite-navigation security.</p></li><li><p><strong>Part Two</strong> examines the <em>Financial Times</em>&#8216;s April 2026 investigation reporting that Iran secretly bought a Chinese spy satellite &#8212; <strong>TEE-01B</strong> &#8212; and used it to image US bases before and after strikes. This one is real. The satellite is in the public catalog, the companies were documented years earlier, the FT verified the leak against independent orbital data, and the US government sanctioned the builder weeks later.</p></li></ul><p>The first story is what it looks like when many outlets trace back to a single unsourced root. It reminds me the Iraq WMD intelligence failure.  The second is what it looks like when independent evidence corroborates the initial report. </p><div><hr></div><h1>Part One &#8212; Did China Hand Iran a Jam-Proof Targeting System?</h1><p><em>Tracing the BeiDou &#8220;B3A&#8221; rumor to its sources.</em></p><h2>The short version</h2><p>A theory has circulated since early 2026 that China supplied Iran with <strong>B3A</strong> &#8212; the encrypted, restricted military signal of its BeiDou satellite-navigation system &#8212; and that Iran used it to guide missiles with new precision, defeating GPS jamming because BeiDou is &#8220;unjammable.&#8221; After tracing the claim to its primary sources:</p><ul><li><p><strong>The rumor is a media construction, not an intelligence finding.</strong> It was built on top of a real but <em>civilian</em> Iranian statement, given technical specifics by an uncited defense blog, attached to a single named analyst, mainstreamed by Al Jazeera as an open question, and then debunked by the leading academic experts on navigation-signal security.</p></li><li><p><strong>There is no primary source establishing that Iran has B3A military access.</strong> The strongest-sounding anchor dead-ends in a single vague Iranian state-media headline, upgraded through repetition and pinned to a 25-year agreement whose text is secret.</p></li><li><p><strong>&#8220;BeiDou is unjammable&#8221; is false.</strong> Because all satellite-navigation systems share overlapping radio frequencies, a broadband jammer degrades BeiDou, GPS, and Galileo at once. The physics is the same for all of them.</p></li><li><p><strong>Iran&#8217;s missiles did not become more accurate by dropping GPS.</strong> More Iranian missiles struck Israel because Iran fired far more of them and interceptor stocks ran low &#8212; a defense-saturation story, not a guidance story. And the underlying logic is backwards: under jamming, a better navigation source could at most <em>restore</em> baseline accuracy, never exceed it.</p></li></ul><h2>Combining Fact w/ Rumor</h2><p>Almost every article on this subject blurs two very different claims:</p><p><strong>Claim A (documented, civilian).</strong> In roughly July 2025, Iran&#8217;s Deputy ICT Minister Ehsan Chit Saz said Iran was moving toward BeiDou for navigation &#8220;because its control lies entirely in China&#8217;s hands.&#8221; This is a statement about sovereignty and <em>general/civilian</em> BeiDou. It says nothing about military signals, missiles, or the war.</p><p><strong>Claim B (the rumor).</strong> That Iran obtained the <strong>B3A encrypted military service</strong> &#8212; the restricted tier used by China&#8217;s own military and, uniquely among foreign militaries, Pakistan&#8217;s, and used it to guide weapons.</p><p>Here&#8217;s the rub. BeiDou&#8217;s <em>open</em> civilian signal is free to the entire planet, and access / use requires nothing from China. Only Claim B would represent China actively arming Iran&#8217;s targeting, and Claim B is the one with no primary source behind it. Every dramatic element of the theory lives in Claim B, built by inference on top of Claim A.</p><h2>Where the rumor came from</h2><p>The propagation trail shows a media artifact rather than a leak:</p><ol><li><p><strong>The seed (~July 2025).</strong> Chit Saz&#8217;s real but civilian statement, reported by Iranian state agency ISNA and by Al Jazeera.</p></li><li><p><strong>Hype layer (Aug 2025).</strong> A Chinese-nationalist outlet and a Chinese GNSS-hardware vendor (in marketing copy) added claims of &#8220;one-meter&#8221; missile accuracy. Still no mention of B3A.</p></li><li><p><strong>The invention (Feb&#8211;Mar 2026).</strong> Defence Security Asia published the now-viral technical package &#8212; &#8220;B3A military signal,&#8221; &#8220;98% positioning reliability under electronic warfare,&#8221; &#8220;frequency-hopping,&#8221; &#8220;GPS failure exceeding 70%&#8221; &#8212; citing <strong>zero sources</strong>. This is the template everyone else copied.</p></li><li><p><strong>The named human origin (Mar 10, 2026).</strong> Military analyst Patricia Marins, quoted in <em>bne IntelliNews</em>, called B3A &#8220;essentially unjammable.&#8221; That single assertion is the most-cited human source for the military-signal claim.</p></li><li><p><strong>Mainstreaming (Mar 11, 2026).</strong> Al Jazeera gave the story global reach &#8212; but framed it honestly as an open question (&#8221;Iran has not confirmed this&#8221;), resting it on inference: <em>targeting appeared to improve, therefore B3A.</em></p></li><li><p><strong>The debunk (Mar 13, 2026).</strong> The one set of genuine technical experts to examine the claim &#8212; UT Austin&#8217;s Todd Humphreys, the leading academic authority on navigation-signal spoofing, and the Resilient Navigation and Timing Foundation &#8212; rejected it. Humphreys: BeiDou has &#8220;no magical remedy,&#8221; is subject to &#8220;the same physics&#8221; as GPS, and &#8220;it would be more surprising if [Iran] got access to the military codes.&#8221;</p></li><li><p><strong>Fringe recycling (mid-2026).</strong> ZeroHedge, Unz Review, and assorted Substacks keep the claim alive &#8212; one iteration of which is explicitly labeled speculative fiction.</p></li></ol><p>The chain, distilled: a real civilian statement &#8594; partisan and vendor hype &#8594; an uncited blog inventing the military specifics &#8594; one analyst putting a name to it &#8594; Al Jazeera mainstreaming it as a question &#8594; the actual experts debunking it &#8594; fringe blogs recycling it.</p><h2>What B3A actually is, and how little is publicly known</h2><p>The most important technical finding is how thin the public record is. B3A is real, encrypted, and restricted, but as a public object it is close to a black box.</p><p>What the record actually shows:</p><ul><li><p><strong>Frequency: </strong>Sits in BeiDou&#8217;s B3 band, centered at 1268.52 MHz. <em>Documented</em>.</p></li><li><p><strong>Public specification: </strong>none.<strong> </strong>China has published an interface control document for its <em>open</em> signals only. There is no public spec for B3A. Everything below is inference.</p></li><li><p><strong>Modulation: </strong>believed to be BOC(15, 2.5), inferred by Western researchers (notably Germany&#8217;s DLR) measuring the satellites&#8217; spectrum &#8212; not from any Chinese document.</p></li><li><p><strong>&#8220;Frequency-hopping&#8221;: </strong>weakly sourced and probably a misnomer. Its home is an uncited blog. What is genuinely likely, by analogy to every military navigation system, is an encrypted, unpredictable spreading code, which writers loosely call &#8220;frequency-hopping.&#8221;</p></li><li><p><strong>Access: </strong>China&#8217;s military, plus Pakistan&#8217;s armed forces since 2018 - the one well-documented foreign case. Iran&#8217;s alleged access rests on far weaker sourcing.<strong>&#8220;</strong></p></li><li><p><strong>~10 cm precision&#8221; / &#8220;98% reliability&#8221; </strong>Promotional figures with no primary measurement behind them.</p></li></ul><h2>B3A versus GPS M-code</h2><p>Structurally the two are cousins, not clones: both are wideband encrypted military signals on a dedicated channel, delivered to keyed receivers, with analogous anti-jam intent. But the contrast that matters is documentation and one capability gap.</p><p><strong><span>B3A vs. GPS M-code</span></strong></p><ul><li><p><strong>Public documentation</strong> &#8212; <em>M-code:</em> extensive (modulation, receiver program, and rollout all in government and peer-reviewed sources). <em>B3A:</em> classified; no public spec, details inferred or asserted.</p></li><li><p><strong>Anti-jam power boost</strong> &#8212; <em>M-code:</em> documented steerable spot beam, ~20 dB (&#8776;100&#215;) local power boost on GPS III/IIIF. <em>B3A:</em><span> no comparable documented spot-beam capability &#8212; a genuine gap in the public record.</span></p></li><li><p><strong><span>Receiver ecosystem</span></strong><span> &#8212; </span><em><span>M-code:</span></em><span> MGUE program, ~1 million cards, public oversight. </span><em><span>B3A:</span></em><span> China and Pakistan only; essentially no public detail.</span></p></li><li><p><strong><span>Public verifiability</span></strong><span> &#8212; </span><em><span>M-code:</span></em><span> high. </span><em><span>B3A:</span></em><span> low.</span></p></li></ul><p>GPS M-code is the more capable and vastly better-documented system. The popular framing inverts this ; meaning it treats B3A as superior precisely <em>because</em> nothing about it can be checked.</p><h2>Can it be jammed? Yes. The &#8220;unjammable&#8221; premise is false</h2><p>The theory&#8217;s load-bearing technical claim is that Israel&#8217;s jamming failed against BeiDou because BeiDou can&#8217;t be jammed. This is wrong, and the reason is simple physics:</p><ul><li><p>All satellite-navigation systems &#8212; GPS, BeiDou, Galileo, GLONASS &#8212; occupy overlapping L-band radio frequencies by international coordination. BeiDou&#8217;s modern civilian signal sits on <em>exactly the same frequency</em> (1575.42 MHz) as GPS&#8217;s civilian signal.</p></li><li><p>A broadband jammer therefore floods the whole band at once. It does not need to &#8220;know&#8221; it is jamming BeiDou; raising the noise floor denies every system on those frequencies. Multi-constellation jammers are standard, off-the-shelf equipment.</p></li><li><p>The genuinely hard target is the <em>encrypted military</em> signal &#8212; for BeiDou&#8217;s B3A exactly as for GPS&#8217;s M-code. But even an encrypted signal can be jammed by brute-force noise; encryption chiefly defeats <em>spoofing</em>, because you cannot forge a code you cannot predict.</p></li></ul><p>Humphreys and the Resilient Navigation and Timing Foundation made exactly this point. The only scenario in which BeiDou would give Iran a real edge is if Iran held keyed B3A military receivers &#8212; the unproven claim, not an established fact. Civilian BeiDou is as jammable and spoofable as civilian GPS.</p><h2>Did Iran&#8217;s missiles get more accurate by abandoning GPS? No.</h2><p>This claim conflates two separate things: &#8220;more missiles got through&#8221; (true) and &#8220;missiles got more accurate&#8221; (not supported). The outcome was a defense-saturation and interceptor-depletion story:</p><ul><li><p>Iran fired ~500&#8211;570 ballistic missiles, versus ~120 in April 2024 and ~180&#8211;200 in October 2024 &#8212; roughly 2.5&#8211;4&#215; the volume, over twelve days.</p></li><li><p>The Israeli military itself said the interception rate (~86&#8211;90%) was &#8220;similar to&#8221; the 2024 attacks. Per missile, October 2024&#8217;s concentrated salvo was arguably <em>more</em> effective.</p></li><li><p>The US expended roughly a quarter of its entire THAAD interceptor inventory in twelve days, and Israel was reportedly rationing Arrow interceptors. That is why more missiles leaked through &#8212; not better Iranian aim.</p></li><li><p>The most-cited &#8220;precision&#8221; strike, on Soroka Medical Center, is actually evidence of imprecision: Iran claimed a nearby military target reporters could not locate.</p></li></ul><p>And the underlying logic is backwards. Israel and the US ran heavy GPS jamming, which <em>degrades</em> a GPS-reliant missile. Switching to a more jam-resistant source could therefore, at most, <em>restore</em> baseline accuracy under jamming &#8212; never push accuracy above the historical baseline. On top of that, Iranian medium-range missiles are inertially guided with satellite navigation only as a mid-course aid, so the nav source has limited leverage on the final miss distance regardless.</p><h2>Running down the strongest anchor</h2><p>The most credible-sounding version of the military-access claim came from analyst Th&#233;o Nencini (ChinaMed), quoted in Al Jazeera: that Iran signed a 2015 memorandum to integrate BeiDou &#8220;into its military infrastructure,&#8221; and that after March 2021 China &#8220;is believed to have granted Iran access to BeiDou&#8217;s encrypted military signals.&#8221; I traced both claims to their respective sources.</p><p><strong>Nencini has no authored, footnoted publication making this claim.</strong> He appears only as a quoted source in journalism. In the Al Jazeera piece the wording is hedged (&#8221;reportedly,&#8221; &#8220;is believed to have&#8221;) and cites nothing.</p><p><strong>The 2015 MoU is real, but mischaracterized.</strong> The genuine 2015 record (traceable to a Chinese source) covered BeiDou ground stations, high-precision civilian services, and a data center &#8212; not missile guidance. The military framing is borrowed from a separate, weaker claim about an Iranian firm (Salran).</p><p><strong>The "March 2021 encrypted signal access" claim is a single thin root, mis-dated, and no one source invented the finished version. It accreted as it was passed along.</strong><span> Every link traces down to one Iranian state-media item (Mehr News, </span><strong>28 January 2021</strong><span>): </span><a href="https://en.mehrnews.com/news/169156/China-to-give-Iran-access-to-BeiDou">"China to give Iran access to BeiDou."</a><span> That original, a diplomatic announcement by Iran's ambassador to Beijing, framed the cooperation in entirely civilian terms (COVID response, the Belt and Road Initiative, trade, 5G) and made </span><em>no mention of military use, missiles, or encrypted signals at all.</em><span> </span></p><p><span>The military framing attached only downstream: the claim was picked up in an Iranian journal article on China's "military diplomacy" toward Iran (2021), crystallized by a 2024 Jamestown China Brief as Iran being "granted full access&#8230; for military purposes," and finally recast by Al Jazeera's 2026 paraphrase of analyst Th&#233;o Nencini as access to BeiDou's "encrypted military signals" &#8212; now dated to March 2021 and tied to the 25-year China&#8211;Iran partnership signed that month, an agreement whose text is secret. </span></p><p><span>At no link in that chain has anyone produced evidence Iran actually received BeiDou's restricted-service cryptographic keys.</span></p><h2>Fact vs inference vs debunked</h2><ul><li><p>China&#8211;Iran ties are deep; Iran stated intent (2025) to move toward BeiDou &#8212; <strong>Fact</strong> (civilian framing).</p></li><li><p>Iran and China signed a 2015 BeiDou MoU (ground stations, high-precision service) &#8212; <strong>Fact, but civilian in scope.</strong></p></li><li><p>Pakistan has BeiDou&#8217;s restricted military service &#8212; <strong>Fact</strong>, the documented foreign precedent.</p></li><li><p>Iran has access to BeiDou&#8217;s B3A encrypted military signal &#8212; <strong>Inference, unproven</strong>; no primary source.</p></li><li><p>Iranian missiles are guided by BeiDou&#8217;s military signal &#8212; <strong>Speculative</strong>; inferred from observed accuracy, never documented.</p></li><li><p>Iran&#8217;s missiles became significantly more accurate by dropping GPS &#8212; <strong>Unsupported to false</strong>; the outcome was volume + interceptor depletion.</p></li><li><p>BeiDou is &#8220;unjammable&#8221; &#8212; <strong>Debunked</strong>; shared frequencies, same physics as GPS.</p></li><li><p>&#8220;98% reliability,&#8221; &#8220;under-5m accuracy,&#8221; &#8220;10&#215; accuracy&#8221; &#8212; <strong>Not credible</strong>; fringe / vendor / fictional sourcing.</p></li></ul><h2>Sources - Part One</h2><p><em>Credible / authoritative:</em></p><ul><li><p>UT Austin Radionavigation Laboratory (Todd Humphreys), fact-check of the &#8220;unjammable&#8221; claim: <a href="https://radionavlab.ae.utexas.edu/fact-checking-misleading-claim-that-chinas-beidou-is-unjammable/">radionavlab.ae.utexas.edu</a></p></li><li><p>Resilient Navigation and Timing Foundation, &#8220;Bogus claim&#8230; BeiDou is &#8216;unjammable&#8217;&#8221; (Mar 13, 2026): <a href="https://rntfnd.org/2026/03/13/bogus-claim-in-al-jazeera-chinas-bei-dou-is-unjammable/">rntfnd.org</a></p></li><li><p>Foreign Policy Research Institute, &#8220;Shallow Ramparts&#8221; (Oct 17, 2025) &#8212; best quantitative missile-strike comparison: <a href="https://www.fpri.org/article/2025/10/shallow-ramparts-air-and-missile-defenses-in-the-june-2025-israel-iran-war/">fpri.org</a></p></li><li><p>CNN &#8212; US expended ~25% of THAAD interceptors (Jul 28, 2025): <a href="https://edition.cnn.com/2025/07/28/middleeast/us-thaad-missile-interceptor-shortage-intl-invs">cnn.com</a></p></li><li><p>Times of Israel &#8212; &#8220;By the numbers,&#8221; IDF: interception rate &#8220;similar&#8221; to 2024 (Jun 24, 2025): <a href="https://www.timesofisrael.com/the-israel-iran-war-by-the-numbers-after-12-days-of-fighting/">timesofisrael.com</a></p></li><li><p>CNBC / CSIS (Clayton Swope) &#8212; BeiDou use &#8220;would not require active coordination or support from China&#8221; (Mar 26, 2026): <a href="https://www.cnbc.com/2026/03/26/how-gps-interference-is-disrupting-the-middle-east.html">cnbc.com</a></p></li></ul><p><em>Technical references:</em></p><ul><li><p>DLR / Thoelert et al., &#8220;BeiDou-3 Signal Quality Analysis&#8221; (ION ITM 2019): <a href="https://elib.dlr.de/126549/1/Thoelert_etal_ITM2019_SessionB5a_Beidou%203%20Signal%20Quality%20Analysis%20and%20its%20Impact_.pdf">elib.dlr.de</a></p></li><li><p>ESA Navipedia &#8212; BeiDou signal plan (confirms only open-signal specs are published): <a href="https://gssc.esa.int/navipedia/index.php/BeiDou_Signal_Plan">gssc.esa.int</a></p></li><li><p>J. Betz (MITRE), &#8220;Overview of the GPS M-Code Signal&#8221;: <a href="https://www.mitre.org/sites/default/files/pdf/betz_overview.pdf">mitre.org</a></p></li></ul><p><em>The rumor&#8217;s own sources (cited to characterize provenance, not as evidence):</em></p><ul><li><p>Mehr News &#8212; &#8220;China to give Iran access to BeiDou&#8221; (Jan 28, 2021) &#8212; the civilian-framed root of the entire &#8220;military access&#8221; chain: <a href="https://en.mehrnews.com/news/169156/China-to-give-Iran-access-to-BeiDou">en.mehrnews.com</a></p></li><li><p>Al Jazeera &#8212; &#8220;Could Iran be using China&#8217;s highly accurate BeiDou navigation system?&#8221; (Mar 11, 2026): <a href="https://www.aljazeera.com/features/2026/3/11/could-iran-be-using-chinas-highly-accurate-beidou-navigation-system">aljazeera.com</a></p></li><li><p>bne IntelliNews (Patricia Marins) &#8212; named origin of &#8220;B3A essentially unjammable&#8221; (Mar 10, 2026): <a href="https://www.intellinews.com/iran-turns-to-china-s-beidou-satellites-to-outfox-israeli-anti-drone-electronic-warfare-defences-430349/">intellinews.com</a></p></li><li><p>Jamestown China Brief (Jemima Baar) &#8212; the &#8220;2021 full military access&#8221; relay (Mar 1, 2024): <a href="https://jamestown.org/beidou-and-strategic-advancements-in-prc-space-navigation/">jamestown.org</a></p></li><li><p>Chinascope (relaying China Stocks) &#8212; the genuine, civilian 2015 BeiDou MoU (Oct 2015): <a href="https://chinascope.org/archives/5384">chinascope.org</a></p></li></ul><div><hr></div><h1>Part Two &#8212; Iran&#8217;s Chinese Spy Satellite</h1><h3><em>Assessing the Financial Times&#8217; TEE-01B investigation.</em></h3><p><em>Primary source: Financial Times, &#8220;Iran used Chinese spy satellite to target US bases,&#8221; FT Investigations, 14 April 2026 (Miles Johnson, Peter Andringa, Alison Killing, Charles Clover, Demetri Sevastopulo). FT reporting is paraphrased and cited here, not reproduced.</em></p><h2>The short version</h2><p>In April 2026 the <em>Financial Times</em> reported, on the basis of leaked Iranian military documents, that Iran&#8217;s Islamic Revolutionary Guard Corps (IRGC) Aerospace Force secretly acquired control of a Chinese reconnaissance satellite &#8212; <strong>TEE-01B</strong> &#8212; in late 2024, and tasked it to image US and allied military bases before and after Iranian strikes during the March 2026 war.</p><p>Unlike the BeiDou &#8220;B3A&#8221; rumor in Part One, this story is credible and substantially corroborated:</p><ul><li><p><strong>Every named entity is real and independently documented before the leak.</strong> The satellite is in the public space catalog with a June 2024 launch reported by Chinese state media at the time. The builder (Earth Eye Co) and ground-station operator (Emposat) both have Western-source footprints predating the story &#8212; Emposat was profiled by CSIS in 2022.</p></li><li><p><strong>The FT authenticated the leak with independent, verifiable methods.</strong> They confirmed the satellite was physically in position over each named site at the timestamped moments using public US Space Force orbital data, and cross-checked strike damage with European Space Agency radar and optical imagery.</p></li><li><p><strong>It fits a documented, sanction-backed pattern.</strong> This is the third known case of a Chinese commercial satellite firm allegedly serving a US-adversary force &#8212; after Chang Guang/Jilin-1&#8217;s support to Russia&#8217;s Wagner Group (2022&#8211;23, leaked contract, US-sanctioned) and to the Houthis (2025). Weeks after the FT report, the US sanctioned Earth Eye and two other Chinese firms over Iran.</p></li><li><p><strong>The mechanism is mundane and technically sound.</strong> This is commercial-grade optical imagery (~0.5 m) and satellite control &#8212; an order of magnitude better than Iran&#8217;s own Noor satellites, enough to identify aircraft and do battle-damage assessment, though not a real-time, persistent, US-grade surveillance architecture.</p></li></ul><h2>What the FT reported</h2><p>Per the investigation, leaked Iranian military documents show the IRGC Aerospace Force &#8212; the branch that runs Iran&#8217;s ballistic-missile, drone, and space programs &#8212; secretly acquired control of TEE-01B after its launch from China in mid-2024. During the March 2026 war, Iranian commanders reportedly tasked the satellite to monitor US and allied bases, timing the imagery to before and after drone and missile strikes.</p><p>The documentary evidence the FT describes is specific: time-stamped coordinate lists, satellite imagery, and orbital analysis, plus a renminbi-denominated acquisition contract <strong>signed by a brigadier general in the IRGC Aerospace Force.</strong> The contract reportedly broke down costs for the satellite, its launcher, technical support, data infrastructure, and services from a &#8220;foreign counterparty,&#8221; at roughly <strong>250 million yuan (~$36.6 million), agreed in September 2024.</strong></p><p>The acquisition used an unusual model the builder calls <strong>&#8220;in-orbit delivery&#8221;:</strong> the spacecraft is launched in China and control is transferred to the overseas customer once it reaches orbit &#8212; bypassing conventional export channels. As part of the deal, Iran received access to commercial ground stations run by Emposat, letting the IRGC command the satellite and receive its imagery from anywhere in the world.</p><h2>The specific targets</h2><p>The satellite&#8217;s logs reportedly show imaging of:</p><ul><li><p><strong>Prince Sultan Air Base, Saudi Arabia</strong> &#8212; on March 13, 14, and 15. On March 14, President Trump confirmed US aircraft at the base had been hit; five US Air Force refuelling planes were damaged.</p></li><li><p><strong>Muwaffaq Salti Air Base, Jordan</strong></p></li><li><p>Locations near the <strong>US Fifth Fleet naval base, Manama, Bahrain</strong></p></li><li><p><strong>Erbil airport, Iraq</strong></p></li><li><p>Camp Buehring and Ali Al Salem Air Base, Kuwait; Camp Lemonnier, Djibouti; Duqm International Airport, Oman</p></li><li><p>Civilian infrastructure: the Khor Fakkan container port and Qidfa power/desalination plant (UAE), and the Alba aluminium smelter (Bahrain)</p></li></ul><h2>Why this is credible: the entities are real and pre-documented</h2><ul><li><p><strong>TEE-01B is a real, cataloged satellite</strong> &#8212; NORAD ID 60012, international designator 2024-110A, trackable by third parties. It launched 6 June 2024 from Jiuquan on a Ceres-1 rocket, a launch reported at the time by Xinhua and China Daily. It is an optical imager at roughly 0.5 m resolution.</p></li><li><p><strong>Earth Eye Co</strong> is a genuine commercial-space firm; its website advertises the &#8220;in-orbit delivery&#8221; model and states it has already carried out one such transfer to an unnamed Belt and Road country. Iran joined the Belt and Road Initiative in 2021.</p></li><li><p><strong>Emposat</strong> is the best-documented of the three: founded ~2016 by former China Academy of Space Technology staff, and profiled by CSIS in October 2022 &#8212; roughly three and a half years before this story.</p></li></ul><p>An entity documented before a leak is far more credible than one that appears only through it. All three clear that bar.</p><h2>The decisive addition: how the FT authenticated the leak</h2><p>This is the element that separates this story from an ordinary &#8220;documents we were shown&#8221; report. Per the FT&#8217;s published methodology:</p><ul><li><p>The FT <strong>independently analysed TEE-01B&#8217;s orbit using public US Space Force tracking data</strong> and confirmed the satellite was actually in position to observe each location at the times listed in the documents. In each case the timestamps, coordinates, and sensor angles were consistent with the satellite&#8217;s real orbital position.</p></li><li><p>The FT then <strong>cross-checked the strikes</strong> against government statements and media reports, and identified likely damage independently using radar imagery from the European Space Agency&#8217;s Sentinel-1 satellite and optical imagery from Sentinel-2.</p></li></ul><p>In other words, the leaked documents were not taken on faith. The orbital mechanics either match reality or they don&#8217;t, and the FT reports they match. Fabricating a document set internally consistent with the true, publicly trackable orbit of a specific satellite across many passes and dates would be extraordinarily difficult. This is the same class of open-source geospatial verification for which one of the bylined reporters, Alison Killing, shared the 2021 Pulitzer Prize (for satellite-based analysis of detention facilities in Xinjiang).</p><h2>The pattern: this is the third case, not the first</h2><p>The Iran allegation lands on top of an established, sanction-backed pattern:</p><ol><li><p><strong>Chang Guang / Jilin-1 &#8594; Wagner Group (2022&#8211;23).</strong> A leaked contract reviewed directly by AFP, worth over $30 million, gave Prigozhin&#8217;s network tasking access to two Jilin-1 satellites, with reported coverage of Ukraine, Africa, and Russian territory around the June 2023 mutiny. US Treasury sanctioned Chang Guang in December 2023.</p></li><li><p><strong>Chang Guang &#8594; Houthis (2025).</strong> The State Department publicly accused the same firm of supplying imagery to help the Houthis target Red Sea shipping, and said Beijing declined to stop it when asked.</p></li><li><p><strong>Earth Eye / TEE-01B &#8594; Iran (2024&#8211;26)</strong> &#8212; the present story.</p></li></ol><p>A single leak is one data point; three independent cases of the same behavior, two backed by leaked contracts and one already producing sanctions, describe a standing practice.</p><h2>&#8220;Commercial&#8221; is the deniability, not an exoneration</h2><p>The firms are legally private, but the reporting places them squarely inside China&#8217;s military-civil fusion system:</p><ul><li><p>The US House Select Committee on the CCP has identified Emposat as having close ties to the PLA Aerospace Force, including personnel linked to key satellite launch-command centres.</p></li><li><p>Emposat&#8217;s founder, Richard Zhao, spent 15 years at the state-run China Academy of Space Technology. Several Earth Eye executives are linked to China&#8217;s &#8220;seven sons of national defence&#8221; universities.</p></li><li><p>CSIS&#8217;s Aidan Powers-Riggs described Emposat as &#8220;still a product of the state and military establishment&#8230; bankrolled by investment from national military-civil fusion funds.&#8221;</p></li><li><p>A former senior Western intelligence official told the FT that no Chinese company could launch a satellite like this without official sign-off, and that China has long helped Iran with intelligence &#8220;while trying to keep the hand of government hidden.&#8221;</p></li></ul><p>This establishes structure, motive, and tolerance, not a documented state order for this specific transaction, but it&#8217;s a far stronger basis for inferring state awareness than anything in the B3A rumor,  and China&#8217;s own denial was narrow.</p><h2>What the capability is &#8212; and isn&#8217;t</h2><p>Two experts quoted by the FT frame the significance accurately. Nicole Grajewski (Sciences Po) notes the satellite is clearly military in use &#8212; run by the IRGC Aerospace Force, not Iran&#8217;s civilian space program &#8212; and gives Iran a capability it needed in wartime: to identify targets ahead of time and confirm the success of its strikes. Jim Lamson (former CIA analyst) frames it as a &#8220;dispersion strategy&#8221;: Iran&#8217;s own ground stations inside the country were struck in 2025 and 2026, but a Chinese ground station in a third country cannot be bombed.</p><p>The realistic ceiling matters too. This is ~0.5 m commercial optical imagery &#8212; an order of magnitude sharper than Iran&#8217;s indigenous Noor-3 (~5 m) and Noor-2 (~12&#8211;15 m) satellites, and enough to identify aircraft. It is <em>not</em> persistent, real-time, all-weather surveillance; it does not hand Iran a US-grade ISR architecture. The value is in cueing, target identification, and battle-damage assessment &#8212; exactly the uses the documents reportedly show.</p><h2>Responses and what remains open</h2><ul><li><p><strong>China&#8217;s Foreign Ministry</strong> called the reports &#8220;untrue&#8221; and accused &#8220;certain forces&#8221; of fabricating rumors &#8212; a denial of the reports, not a point-by-point rebuttal of the satellite sale.</p></li><li><p><strong>Iran</strong> has not publicly confirmed or denied. Earth Eye, Emposat, and China&#8217;s Ministry of Commerce did not respond to the FT.</p></li><li><p><strong>US government action followed:</strong> on 8 May 2026, the State Department and Treasury sanctioned Earth Eye Co, alongside Chang Guang and MizarVision, for providing satellite imagery to Iran. (Emposat was notably not named, and had denied involvement.)</p></li></ul><p><strong>Genuinely open questions:</strong> whether Beijing directed the deal or merely tolerated it (inference, not documentation); the ultimate provenance of the leaked documents, though the FT&#8217;s independent orbital verification substantially mitigates this; and a builder-vs-operator ambiguity, with some accounts reporting the bus was manufactured by Chang Guang for Earth Eye.</p><h2>Fact vs inference vs denied</h2><ul><li><p>China&#8211;Iran ties are deep; Iran stated intent (2025) to move toward BeiDou &#8212; <strong>Fact</strong> (civilian framing).</p></li><li><p>Iran and China signed a 2015 BeiDou MoU (ground stations, high-precision service) &#8212; <strong>Fact, but civilian in scope.</strong></p></li><li><p>Pakistan has BeiDou&#8217;s restricted military service &#8212; <strong>Fact</strong>, the documented foreign precedent.</p></li><li><p>Iran has access to BeiDou&#8217;s B3A encrypted military signal &#8212; <strong>Inference, unproven</strong>; no primary source.</p></li><li><p>Iranian missiles are guided by BeiDou&#8217;s military signal &#8212; <strong>Speculative</strong>; inferred from observed accuracy, never documented.</p></li><li><p>Iran&#8217;s missiles became significantly more accurate by dropping GPS &#8212; <strong>Unsupported to false</strong>; the outcome was volume + interceptor depletion.</p></li><li><p>BeiDou is &#8220;unjammable&#8221; &#8212; <strong>Debunked</strong>; shared frequencies, same physics as GPS.</p></li><li><p>&#8220;98% reliability,&#8221; &#8220;under-5m accuracy,&#8221; &#8220;10&#215; accuracy&#8221; &#8212; <strong>Not credible</strong>; fringe / vendor / fictional sourcing.</p></li></ul><h2>How the two stories compare</h2><ul><li><p><strong>Core claim</strong> &#8212; <em>B3A rumor:</em> Iran has China&#8217;s jam-proof military navigation signal. <em>TEE-01B story:</em> Iran bought and operated a Chinese imagery satellite.</p></li><li><p><strong>Named entities real &amp; pre-documented</strong> &#8212; <em>B3A rumor:</em> the signal is real, Iran&#8217;s access is not. <em>TEE-01B story:</em> yes &#8212; all three.</p></li><li><p><strong>Primary-source anchor</strong> &#8212; <em>B3A rumor:</em> dead-ends in one vague 2021 headline. <em>TEE-01B story:</em> leaked contract + orbital verification + a documented pattern.</p></li><li><p><strong>Independent authentication</strong> &#8212; <em>B3A rumor:</em> none. <em>TEE-01B story:</em> US Space Force orbital data + ESA Sentinel imagery.</p></li><li><p><strong>Official corroboration</strong> &#8212; <em>B3A rumor:</em> none. <em>TEE-01B story:</em> US sanctions naming the builder.</p></li><li><p><strong>Expert verdict</strong> &#8212; <em>B3A rumor:</em> debunked. <em>TEE-01B story:</em> contextualized, not refuted.</p></li><li><p><strong>Overall</strong> &#8212; <em>B3A rumor:</em> media construction, unproven-to-false. <em>TEE-01B story:</em> credible and substantially corroborated.</p></li></ul><p>To summarize, the B3A rumor was many outlets tracing to one unsourced root. This is independent records, a leaked contract, a reproducible verification method, a repeat-offender pattern, and a government sanction all converging on the same conclusion.</p><h2>Sources &#8212; Part Two</h2><p><em>Primary source:</em></p><ul><li><p>Financial Times, &#8220;Iran used Chinese spy satellite to target US bases&#8221; (FT Investigations, 14 April 2026): <a href="https://www.ft.com/content/1fddd2cd-1294-4e9c-a17d-5ea06b399355">ft.com</a></p></li></ul><p><em>Independent verification of the named entities:</em></p><ul><li><p>Xinhua &#8212; TEE-01B launch coverage (6 June 2024): <a href="https://english.news.cn/20240606/ce87fee799f248fd9b7b0b182fd40706/c.html">english.news.cn</a></p></li><li><p>Gunter&#8217;s Space Page &#8212; TEE-01 / TEE-01B specifications: <a href="https://space.skyrocket.de/doc_sdat/tee-01.htm">space.skyrocket.de</a></p></li><li><p>CSIS &#8220;Hidden Reach&#8221; &#8212; profile naming Emposat (4 October 2022): <a href="https://features.csis.org/hiddenreach/china-ground-stations-space/">features.csis.org</a></p></li></ul><p><em>The pattern &#8212; prior cases:</em></p><ul><li><p>The Moscow Times &#8212; Chang Guang&#8217;s leaked Wagner contract (5 October 2023): <a href="https://www.themoscowtimes.com/2023/10/05/chinese-firm-sold-satellites-for-intelligence-to-russias-wagner-contract-a82672">themoscowtimes.com</a></p></li><li><p>US Treasury OFAC &#8212; Chang Guang sanctioned over Wagner (Dec 2023): <a href="https://home.treasury.gov/news/press-releases/jy1978">treasury.gov</a></p></li><li><p>Defense One &#8212; Chang Guang and the Houthis (May 2025): <a href="https://www.defenseone.com/business/2025/05/closer-look-chinese-space-company-accused-helping-houthis/405153/">defenseone.com</a></p></li></ul><p><em>US response to the Iran case:</em></p><ul><li><p>US State Department &#8212; &#8220;Disrupting Iran&#8217;s Overseas Military Procurement Networks&#8221; (8 May 2026): <a href="https://www.state.gov/releases/office-of-the-spokesperson/2026/05/disrupting-irans-overseas-military-procurement-networks">state.gov</a></p></li><li><p>Bloomberg &#8212; US sanctions Chinese satellite-imagery firms over Iran war (9 May 2026): <a href="https://www.bloomberg.com/news/articles/2026-05-09/us-sanctions-chinese-satellite-imagery-companies-over-iran-war">bloomberg.com</a></p></li></ul><p><em>Wire and downstream coverage:</em></p><ul><li><p>Reuters via US News (15 April 2026) &#8212; notes Reuters &#8220;could not independently verify&#8221;: <a href="https://www.usnews.com/news/world/articles/2026-04-15/iran-used-chinese-spy-satellite-to-target-us-bases-ft-reports">usnews.com</a></p></li><li><p>China-in-Space &#8212; technical analysis and the real-time-ISR caveat: <a href="https://www.china-in-space.com/p/iran-allegedly-using-chinese-satellite">china-in-space.com</a></p></li><li><p>Iran Watch (Wisconsin Project) &#8212; summary and archival record: <a href="https://www.iranwatch.org/news-brief/iran-used-chinese-spy-satellite-target-us-bases">iranwatch.org</a></p></li></ul><div><hr></div><p></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://whitefishsecuritysummit.com" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!vqXd!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png 424w, https://substackcdn.com/image/fetch/$s_!vqXd!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png 848w, https://substackcdn.com/image/fetch/$s_!vqXd!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png 1272w, https://substackcdn.com/image/fetch/$s_!vqXd!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!vqXd!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png" width="1456" height="485" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:485,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:551288,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:&quot;https://whitefishsecuritysummit.com&quot;,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/207946261?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!vqXd!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png 424w, https://substackcdn.com/image/fetch/$s_!vqXd!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png 848w, https://substackcdn.com/image/fetch/$s_!vqXd!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png 1272w, https://substackcdn.com/image/fetch/$s_!vqXd!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc98d2441-6bfa-49aa-9caa-a4cf22deef95_2400x800.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div>]]></content:encoded></item><item><title><![CDATA[I Went Looking for Hidden Money in an AI App. I Found Something Worse.]]></title><description><![CDATA[A Cyprus company that turned out to be innocent, a tidy explanation that fell apart, and one button on a website that undoes Apple's entire content policy from an iPhone.]]></description><link>https://www.insidecyberwarfare.com/p/i-went-looking-for-hidden-money-in</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/i-went-looking-for-hidden-money-in</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Wed, 15 Jul 2026 18:31:38 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!dCP7!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!dCP7!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!dCP7!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png 424w, https://substackcdn.com/image/fetch/$s_!dCP7!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png 848w, https://substackcdn.com/image/fetch/$s_!dCP7!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png 1272w, https://substackcdn.com/image/fetch/$s_!dCP7!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!dCP7!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png" width="845" height="650" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:650,&quot;width&quot;:845,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:726938,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/207177311?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!dCP7!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png 424w, https://substackcdn.com/image/fetch/$s_!dCP7!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png 848w, https://substackcdn.com/image/fetch/$s_!dCP7!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png 1272w, https://substackcdn.com/image/fetch/$s_!dCP7!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F62d05e1e-4db0-4ab9-8e98-8e47315e79f9_845x650.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">A random collection of NSFW characters available to members on Janitor AI</figcaption></figure></div><p>Part of running <a href="https://q16pbc.com">Frontier Watch</a> is reading privacy policies almost nobody reads, and providing a score so that you know what the app does with your data, and what level of control you have.</p><p>In Janitor AI&#8217;s policy, section 7, I found a company that triggered one of my red flags. Payment processing, it said, is handled by &#8220;JanitorAI Inc. and its affiliates, including <em>Dulova Investments Limited</em>,&#8221; registered at 10-12 Florinis Street in Nicosia, Cyprus.</p><p>Cyprus got my attention because for twenty years it&#8217;s been the European address of choice for Russian and post-Soviet money via nominee directors and holding companies. So I pulled on that thread for a few hours, looking for a possible Russian connection. </p><h2>Theory one: the hidden owner</h2><p>The Cyprus Registrar of Companies keeps a public record of directors, secretaries, and shareholders. Dulova&#8217;s record is plain. Incorporated on 12 July 2025. The sole shareholder, holding all 1,000 shares is JanitorAI Inc., a Delaware company. </p><p>Dulova&#8217;s director is TMF Management Limited, a corporate nominee from a large and entirely legitimate services firm. Ownership ran straight up, one level, to the United States.</p><p>I checked the other direction too. No employees. No Russian corporate filings. No Cyrillic-web footprint of any kind. The company behind it, JanitorAI Inc., is a San Francisco startup with an Australian founder and a $3 million seed round from name-brand venture funds. </p><p>My Russia connection theory evaporated, but I was still curious about why Janitor AI is using a Cyprus billing company? </p><h2>Theory two: the payment exile</h2><p>Janitor AI is an 18+ adult content platform. Uncensored sexual roleplay in the style of dark, sexually-explicit romance novels is the entire pitch. And I confirmed straight from Stripe&#8217;s own rulebook that Stripe does not process payments for sexually explicit material. That results in my second theory - Janitor sells what the mainstream payment processors will not touch, gets cut off from the normal rails, and has to build its own: a high-risk processor and an offshore company in Cyprus to take the money.</p><p>Then I read Janitor&#8217;s own help page. &#8220;All payments are securely handled by Stripe.&#8221;</p><p>Theory two collapses, but now, in addition to the Dulova question, I want to learn why Janitor AI has not been bumped off Stripe for violating its Terms of Service for adult content as well as how it manages to be available for download in Apple&#8217;s App Store?</p><h2>The Federal Loophole</h2><p>After further investigation, I learned that the U.S. Code that regulates pornography is built around visual depictions. If it&#8217;s just text-based, such as erotic fiction, there&#8217;s no violation. </p><p>Stripe and Apple, however, do prohibit adult-themed companies from using their services. </p><p>Unlike federal law, Stripe&#8217;s prohibited list does not stop at pictures. It bans &#8220;pornography and other mature audience content (including literature, imagery, and other media) designed for the purpose of sexual gratification.&#8221; From a digital perspective, &#8220;literature&#8221; or story-telling is done via text on a chat platform. </p><p>Apple&#8217;s App Store guidelines (Janitor AI has an iOS app) prohibit &#8220;<em>explicit descriptions</em> or displays of sexual organs or <em>activities intended to stimulate erotic rather than aesthetic or emotional feelings</em>.&#8221; </p><p>So Janitor occupies a strange spot. </p><p>While complying with federal law, it violates the written content policy of both companies standing between it and its customers&#8217; money. It runs on Stripe anyway, almost certainly onboarded as an ordinary &#8220;AI software subscription,&#8221; in quiet breach of a rule Stripe simply has not enforced. </p><p>That precariousness, an account that lives against the processor&#8217;s own terms until the day it doesn&#8217;t, is the best explanation I have for why the merchant (Dulova) is a disposable Cyprus subsidiary and not the US parent (Janitor AI, Inc.). Ring-fence the account that can vanish, and a shutdown takes the subsidiary instead of the company. That&#8217;s assuming that Stripe eventually figures out that Janitor AI is in violation of Stripe&#8217;s ToS.</p><h2>Bypassing Apple&#8217;s App Store Policy for NSFW Apps </h2><p>Apple&#8217;s anti-NSFW app rule is the same story as Stripe&#8217;s, with one difference. I could watch it fail in real time.</p><p>Janitor stays in the App Store by shipping the iPhone app with its adult content switched off. That is the version Apple reviews and approves. Janitor&#8217;s own help center is candid about it: NSFW is &#8220;disabled by default on the mobile application,&#8221; while the website &#8220;remain[s] completely unchanged.&#8221; In other words, Janitor AI provides a clean app for Apple&#8217;s developer review, and an unfiltered one for the web.</p><p>So I tested how solid that wall is. I created an account. I installed the clean, Apple-approved app on my iPhone. Then I opened Janitor&#8217;s website in a browser, clicked a button confirming I was eighteen or over, and switched on a single setting labeled &#8220;Enable NSFW on Mobile.&#8221; I reopened the app. It was no longer clean. The product Apple reviewed and the product in my hand were now two different things, and the distance between them was one toggle and one unverified click that any 10 year old could do.</p><p>That click is the entire age check that supposedly keeps vulnerable children off a very explicit NSFW platform, and the app that Apple rated as safe, immediately becomes unsafe. This is an AI safety issue that demands attention by regulators as well as its users. Guardrails cannot be so easily circumvented or they aren&#8217;t guardrails at all. </p><h2>Q16&#8217;s Privacy Watch</h2><p>I started <a href="https://q16pbc.com">Q16</a> with Rachel Grunspan, a retired CIA game designer and futurist, as a Public Benefit Corporation with two missions: independent, public-interest measurement of the trajectory toward advanced AI (Frontier Watch), and monitoring of how the labs building it treat user data (Privacy Watch).</p><p>If you visit our <a href="https://watch.q16pbc.com">dashboard</a>, you can see Privacy scores for 10 U.S. and Chinese AI Models, and 12 consumer AI apps. </p><h2>How we review a privacy policy</h2><p>Every Frontier Watch rating runs the same way, and none of it takes a company&#8217;s word for it.</p><ol><li><p><strong>Read the binding documents,</strong> the privacy policy and terms, including any parent policy an app defers to, and score what they say across <strong>six dimensions</strong>: training use, retention, jurisdiction, sharing, user control, and transparency. A policy silent on a protection scores low; absent evidence is treated as absent.</p></li><li><p><strong>Score 0 to 10, by a person, not a model,</strong> and tag each score by confidence: contract-backed, policy-based, inferred, or not yet assessed.</p></li><li><p><strong>For apps, trace the chain</strong> to the model provider behind them and score every link. We publish the app&#8217;s own score and an <em>Effective</em> score set by the weakest link. Child-safety is scored separately, beside privacy, not blended in.</p></li><li><p><strong>Verify against primary sources, then keep watching.</strong> An aggregator or an AI summary is a lead, not evidence. We re-score when policies change, test the product ourselves when the documents run out, and re-score any evidence-backed dispute within ten business days.</p></li></ol><h2>How to support the work of Q16</h2><p>You can learn more about what we do and how you can support this work by visiting <a href="https://q16pbc.com">Q16</a> and then checking out the <a href="https://watch.q16pbc.com">dashboard</a>. There&#8217;s a free version and a membership version, or you can contact us for more information at info@q16pbc.com. </p><div><hr></div><p>We will have a panel discussion on AI risk and the trajectory towards AGI and Superintelligence at the Whitefish Security Summit in Whitefish, Montana on February 24-26, 2027. Get your tickets today at <a href="https://whitefishsecuritysummit.com">www.whitefishsecuritysummit.com</a>.</p><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[The Mid-Year Global Threat Landscape]]></title><description><![CDATA[What our experts will be discussing at the second annual Whitefish Security Summit (Feb 24-26, 2027)]]></description><link>https://www.insidecyberwarfare.com/p/the-mid-year-global-threat-landscape</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/the-mid-year-global-threat-landscape</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Mon, 06 Jul 2026 16:45:44 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Czee!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Czee!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Czee!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png 424w, https://substackcdn.com/image/fetch/$s_!Czee!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png 848w, https://substackcdn.com/image/fetch/$s_!Czee!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png 1272w, https://substackcdn.com/image/fetch/$s_!Czee!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Czee!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png" width="1456" height="1151" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1151,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:206434,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/205512377?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Czee!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png 424w, https://substackcdn.com/image/fetch/$s_!Czee!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png 848w, https://substackcdn.com/image/fetch/$s_!Czee!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png 1272w, https://substackcdn.com/image/fetch/$s_!Czee!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ed822f5-803c-4c6b-beb3-0e929187c8d2_2200x1739.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!0g_t!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!0g_t!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png 424w, https://substackcdn.com/image/fetch/$s_!0g_t!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png 848w, https://substackcdn.com/image/fetch/$s_!0g_t!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png 1272w, https://substackcdn.com/image/fetch/$s_!0g_t!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!0g_t!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png" width="1456" height="652" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:652,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:146639,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/205512377?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!0g_t!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png 424w, https://substackcdn.com/image/fetch/$s_!0g_t!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png 848w, https://substackcdn.com/image/fetch/$s_!0g_t!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png 1272w, https://substackcdn.com/image/fetch/$s_!0g_t!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9f17bb56-4114-4a3e-89ae-9e9bc304f84c_2100x940.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Part of the planning process for the second annual Whitefish Security Summit is creating an agenda that will reflect and add dimension to our understanding of conflict zones and future risk assessments related to those zones - both domestic and foreign. </p><p>To that end, I&#8217;ve pulled 2025 end-of-year assessments from the most authoritiative sources that I could find, and asked Anthropic&#8217;s Claude to create a graphical representation as well as a scoring mechanism - posted above. </p><p>The leading conflict theater among all sources is related to the 2026 midterm elections. CFR's Preventive Priorities Survey lists "growing political violence and popular unrest in the United States" as a Tier I contingency &#8212; both high likelihood and high impact for 2026. Specifically called out is heightened political antagonism and domestic security deployments; i.e. federal police and national guard units deployed in U.S. cities.  </p><h2>Our 2027 Expert Panelists and Featured Speakers</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Ghd2!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Ghd2!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png 424w, https://substackcdn.com/image/fetch/$s_!Ghd2!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png 848w, https://substackcdn.com/image/fetch/$s_!Ghd2!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png 1272w, https://substackcdn.com/image/fetch/$s_!Ghd2!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Ghd2!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png" width="1456" height="3783" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:3783,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3721227,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/205512377?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Ghd2!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png 424w, https://substackcdn.com/image/fetch/$s_!Ghd2!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png 848w, https://substackcdn.com/image/fetch/$s_!Ghd2!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png 1272w, https://substackcdn.com/image/fetch/$s_!Ghd2!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9e529423-093c-4910-86fa-5e6f9401ede1_2400x6236.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>This is a partial list of speakers as of today. More will be added in the months ahead. </p><h2>Secure Your Admission and Book Your Travel Now</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!20Ke!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!20Ke!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg 424w, https://substackcdn.com/image/fetch/$s_!20Ke!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg 848w, https://substackcdn.com/image/fetch/$s_!20Ke!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!20Ke!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!20Ke!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg" width="1200" height="800" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:800,&quot;width&quot;:1200,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:209851,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/205512377?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!20Ke!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg 424w, https://substackcdn.com/image/fetch/$s_!20Ke!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg 848w, https://substackcdn.com/image/fetch/$s_!20Ke!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!20Ke!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e9a2f0c-854d-4d87-9230-d150ed8377ee_1200x800.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>We have extended this 10% offer by one day. Used in combination with our existing early bird rate, you&#8217;ll save almost 30%. After today, early bird ticket pricing will expire on August 15th or sooner if they sell out before the deadline. </p><p>Come to Whitefish for three days of frank discussions amongst national security practitioners, journalists, and policymakers. </p><p>And bring your snowshoes for early morning PT!</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://whitefishsecuritysummit.com&quot;,&quot;text&quot;:&quot;Count Me In!&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://whitefishsecuritysummit.com"><span>Count Me In!</span></a></p><p></p>]]></content:encoded></item><item><title><![CDATA[Clean Headers, Dirty Message]]></title><description><![CDATA[A phishing attempt reached my inbox through a legitimate, fully authenticated email. Here's how it worked, and how I traced it.]]></description><link>https://www.insidecyberwarfare.com/p/clean-headers-dirty-message</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/clean-headers-dirty-message</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Fri, 03 Jul 2026 23:10:19 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Di4P!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Di4P!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Di4P!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png 424w, https://substackcdn.com/image/fetch/$s_!Di4P!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png 848w, https://substackcdn.com/image/fetch/$s_!Di4P!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png 1272w, https://substackcdn.com/image/fetch/$s_!Di4P!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Di4P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png" width="1200" height="630" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7c2d288b-be95-4684-b039-294012d5e857_1200x630.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:630,&quot;width&quot;:1200,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:82730,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/204948038?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Di4P!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png 424w, https://substackcdn.com/image/fetch/$s_!Di4P!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png 848w, https://substackcdn.com/image/fetch/$s_!Di4P!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png 1272w, https://substackcdn.com/image/fetch/$s_!Di4P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7c2d288b-be95-4684-b039-294012d5e857_1200x630.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Yesterday I joined an online forum that focused on AI safety, among other things. A few hours later I received a welcome letter from the forum, and, one hour after that, an email alert that a private message from a forum administrator was waiting for me.</p><div class="callout-block" data-callout="true"><p>Hello, jeff-caruso! Congratulations!!! You are the last of 10 randomly selected participants to receive a free "Apple iPad Air 11" from the E_____.org team! Hurry up and claim your prize! https://share.google/N*************cid. </p></div><p>This was an obvious phishing attempt, but it came from a legitimate email address, so I copied the email text and the raw headers, and pushed both into Claude Code for analysis using the newly released Fable 5 model.</p><p>SPF, DKIM, and DMARC all passed, and my spam filter scored the message a 0.1. It sailed through precisely *because* it was genuine: a real forum notification, correctly signed and authenticated, faithfully relaying a scammer&#8217;s private message. The email wasn&#8217;t spoofed at all. The abuse was one level up &#8212; a user account impersonating an administrator inside the platform. Authentication only tells you that the envelope is real; it tells you nothing about who wrote what&#8217;s inside.</p><p>Claude ran a trace on the link contained in the message and was able to reproduce the entire kill chain.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!X-jK!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!X-jK!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png 424w, https://substackcdn.com/image/fetch/$s_!X-jK!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png 848w, https://substackcdn.com/image/fetch/$s_!X-jK!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png 1272w, https://substackcdn.com/image/fetch/$s_!X-jK!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!X-jK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png" width="1200" height="680" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:680,&quot;width&quot;:1200,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:89572,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/204948038?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!X-jK!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png 424w, https://substackcdn.com/image/fetch/$s_!X-jK!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png 848w, https://substackcdn.com/image/fetch/$s_!X-jK!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png 1272w, https://substackcdn.com/image/fetch/$s_!X-jK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff3a225d8-2fc2-4b03-813f-0812b44701ef_1200x680.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>According to Claude&#8217;s analysis, had I clicked through, I would have seen </p><ul><li><p><code>presentnow.club</code> &#8212; a prize-themed throwaway domain (&#8221;present now&#8221;), fronted by <strong>Cloudflare</strong> (both IPs are Cloudflare&#8217;s; real origin hidden &#8212; standard for scam infrastructure).</p></li><li><p>The page opens with <strong>&#8220;Congratulations!&#8221;</strong> and is a templated fake-giveaway kit: carousel slides, a generic &#8220;brand&#8221; logo slot, &#8220;Help and Support&#8221; chrome. This is the classic flow that walks the victim through a fake survey &#8594; &#8220;claim your iPad&#8221; &#8594; harvests card details as a &#8220;shipping fee&#8221; or enrolls them in recurring billing.</p></li><li><p><strong>The name of the community / forum:</strong>  This kit is multi-tenant &#8212; one scam engine with a per-community landing path, meaning they&#8217;re running this same play against other forums simultaneously, each with its own path and matching PM campaign.</p></li><li><p>The asset version string (<code>?v=1762433176</code>) is a Unix timestamp &#8212; <strong>November 6, 2025</strong> &#8212; the kit&#8217;s build/deploy date. It&#8217;s been in service for months.</p></li></ul><p>Midway through the analysis, Fable 5 flagged what I was working on and bumped me to Opus 4.8. A classifier that was supposed to catch and block the finding of software vulnerabilities instead blocked something that defenders do all the time; i.e., passive header analysis and a headers-only redirect trace that&#8217;s been run to file an abuse report. </p><div class="pullquote"><p>The issue isn&#8217;t that a guardrail exists. It&#8217;s that this one cannot tell offense from defense.</p></div><p>Nevertheless, Opus 4.8 performed perfectly well for my purposes. It generated a detailed report and analysis that I filed with the forum administrator and with Google, since the malware was delivered via a Google link. </p><div><hr></div><h2>Of Possible Interest</h2><p>Save up to 30% on tickets for the second annual Whitefish Security Summit. 20% early bird rate (expires August 15th) and an extra 10% off for the July 4th weekend. Visit <a href="https://whitefishsecuritysummit.com/summit-2027/">https://whitefishsecuritysummit.com/</a> for more information and to register. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!BJuM!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!BJuM!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg 424w, https://substackcdn.com/image/fetch/$s_!BJuM!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg 848w, https://substackcdn.com/image/fetch/$s_!BJuM!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!BJuM!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!BJuM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg" width="1200" height="800" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:800,&quot;width&quot;:1200,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:209851,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/204948038?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!BJuM!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg 424w, https://substackcdn.com/image/fetch/$s_!BJuM!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg 848w, https://substackcdn.com/image/fetch/$s_!BJuM!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!BJuM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F40d7e69c-74bf-40be-ad0b-5af0a1d65383_1200x800.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p>]]></content:encoded></item><item><title><![CDATA[How Far Are We From Superintelligence?]]></title><description><![CDATA[Why the people raising money on superintelligence can't be the ones measuring it. Introducing Frontier Watch.]]></description><link>https://www.insidecyberwarfare.com/p/how-far-are-we-from-superintelligence</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/how-far-are-we-from-superintelligence</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Tue, 30 Jun 2026 22:00:55 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!s25E!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!s25E!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!s25E!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png 424w, https://substackcdn.com/image/fetch/$s_!s25E!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png 848w, https://substackcdn.com/image/fetch/$s_!s25E!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png 1272w, https://substackcdn.com/image/fetch/$s_!s25E!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!s25E!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png" width="1200" height="630" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/cd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:630,&quot;width&quot;:1200,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:64079,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/204343669?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!s25E!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png 424w, https://substackcdn.com/image/fetch/$s_!s25E!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png 848w, https://substackcdn.com/image/fetch/$s_!s25E!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png 1272w, https://substackcdn.com/image/fetch/$s_!s25E!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd6414c8-0db4-4b21-bf9d-ede20c98de76_1200x630.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Somewhere between where the frontier labs stand today and the arrival of a reasoning, self-improving superintelligence sits a threshold called AGI &#8212; artificial general intelligence.</p><p>At the far end of that road is the superintelligence threshold, sometimes called the Singularity, where humanity meets either extinction or nirvana, depending on who you believe. AGI is the tipping point before it. So, you might think, predicting the Singularity is just a matter of predicting when a U.S. or Chinese lab builds a model that reaches AGI.</p><p>If only it were that easy.</p><h2>The Forecast That Funds the Company</h2><p>The assumption buried in every &#8220;AGI by [year]&#8221; headline is that the person saying it is making a forecast. A forecast is falsifiable. It names a definition you can check and a date you can hold against the calendar, and it costs the forecaster something to be wrong. Strip those properties out and what remains is a marketing claim in a forecast&#8217;s clothing. The fastest way to tell the two apart is to ask who profits when the date is believed.</p><p>In 2024, <strong>Masayoshi Son </strong>put artificial superintelligence at roughly ten years out and defined it as intelligence ten thousand times beyond a human&#8217;s. By June 2026 he had moved the date to about two years and explained the original number: he had set it long on purpose, because people get shocked. Over the same stretch, SoftBank circulated a pitch deck projecting a valuation roughly thirteen times its current market capitalization, with superintelligence as the engine. When the arrival date is a line in your own valuation model, the date is doing the work of marketing, not measurement.</p><p><strong>Sam Altman</strong> moves the definition more than the date. In September 2024, superintelligence was &#8220;a few thousand days&#8221; out. By January 2025 he wrote that OpenAI knew how to build AGI &#8220;as we have traditionally understood it.&#8221; By late 2025 AGI would arrive sooner than most people expected and matter less than they feared, with the real prize pushed out to a later superintelligence. Late in 2025 the concrete target became an automated AI researcher by March 2028.</p><p>How Altman defines AGI depends upon who you are. OpenAI&#8217;s public definition is highly autonomous systems that outperform humans at most economically valuable work, however a second definition, set against a profit threshold, lived inside its contract with Microsoft. Altman has been predicting different things with the same three letters, which makes both definitions useless.</p><p><strong>Elon Musk</strong> keeps the definition roughly fixed and moves the date on a loop. He predicted AGI by 2025. When 2025 passed without it, he told an xAI all-hands the year was now 2026. xAI is reportedly raising twenty to thirty billion dollars a year, and the imminence of AGI is the undercarriage that the raise rides on.</p><p>There is a court record on this pattern. A 2022 investor suit over Musk&#8217;s self-driving timelines was dismissed in 2024, with the judge characterizing the statements as &#8220;corporate puffery&#8221; rather than actionable fraud. A court has already filed his timeline claims under promotion that no reasonable person should rely on. That assessment came from a party with nothing to sell, which is the only kind worth trusting here.</p><h2>The Definition That Was a Dollar Figure</h2><p>When OpenAI signed with Microsoft in 2019, the deal said Microsoft&#8217;s commercial license would end once OpenAI&#8217;s board declared that it had reached AGI. The contract did not pin the term to a capability anyone could test. It reportedly tied it to a profit threshold &#8212; by one account, the point at which OpenAI&#8217;s systems could generate one hundred billion dollars in profits. AGI, in the document that governed the money, was a dollar amount.</p><p>That arrangement created an incentive worth stating plainly. A broad reading of AGI would let the board end Microsoft&#8217;s license and detonate OpenAI&#8217;s most important revenue relationship, so the structure rewarded keeping the definition narrow. The definition was shaped by money, in writing, and the direction of the pressure was documented in the contract itself.</p><p>Then the term became inconvenient. In October 2025, during OpenAI&#8217;s recapitalization as a public benefit corporation, the parties softened the trigger so the board could no longer declare AGI on its own, and added an independent verification panel. Microsoft converted its stake at a valuation near $135 billion. In April 2026 they removed the AGI provision altogether and decoupled it from payments. OpenAI&#8217;s models showed up on AWS the following day. With the clause gone, OpenAI may never have to announce whether it reaches the milestone at all.</p><p>A term that could be written, narrowed, and then deleted as the finances required was never a measurement of anything. It was a negotiating position.</p><p>On April 5, 2026, <strong>Marc Andreessen</strong> completely jumped the shark by announcing that AGI was already here. If the milestone can be declared in the past tense, in passing, by an investor with a position in the outcome, then the word has lost all meaning.</p><h2>Not Everyone Is Selling</h2><p>The point is not that every timeline is dishonest. Some forecasters offer a falsifiable estimate against a stated definition and hold it steady. <strong>Shane Legg</strong> at Google DeepMind has put roughly even odds on a minimal form of AGI by 2028 and kept that framing for years, uncertainty included. <strong>Demis Hassabis</strong> points to capabilities current systems still lack and puts genuine human-level AGI five to ten years out, resisting the claim that it has already arrived. <strong>Dario Amodei </strong>at Anthropic has been more aggressive, naming 2026 to 2027, though his estimates have stayed reasonably consistent, and Anthropic has publicly argued for the option to slow frontier development rather than only to accelerate it &#8212; though it softened that commitment in early 2026 under competitive pressure, a reminder that even the better posture bends when the money pushes.</p><p>The line worth drawing runs between people making a checkable estimate and people deploying a word that moves with their financing. The first group can be wrong. The second cannot even be tested.</p><h2><strong>What Frontier Watch Does</strong></h2><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!ctUV!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!ctUV!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!ctUV!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!ctUV!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!ctUV!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!ctUV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:35931,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/204343669?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!ctUV!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!ctUV!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!ctUV!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!ctUV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c4c3a97-d811-4605-b3f5-ee2bc62864a9_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><a href="https://q16pbc.com">Frontier Watch</a> begins with a refusal: the people who profit from the forecast should not be the ones who issue it.</p><p>It is published by Q16 PBC, a public benefit corporation. Q16 has no frontier model and no funding round riding on the timeline. It is paid by its readers, not by the labs it measures, so it gains nothing from any particular date being believed. </p><p>The measure is the Singularity Index: one number, on a scale from 0.0 to 1.0, where 1.0 is the superintelligence threshold and the score is the share of the distance already closed. It is not a capability rating and not a mood. It is an estimate of how far the field has actually come.</p><p>The estimate does not come from a lab. It comes from a pool of independent, qualified experts who each score the global frontier on their own &#8212; no shared stage to play to, no house position to defend. Frontier Watch reports the median and the spread, so you see both where they agree and where they split. No individual score is ever published, and no reading goes public until at least ten experts have submitted one. The Index moves when an elicitation wave completes, not when a funding round needs a headline. The first full wave is being assembled now; the current reading is preliminary, and qualified experts are invited to take part.</p><p>Between waves, Frontier Watch watches the labs the way you would watch anyone with this much money and this little oversight. It tracks the research that will move the next reading. And it monitors what the labs do rather than what they say: when a privacy policy changes, when terms shift, when the handling of your data quietly moves in their favor, it shows up in the <a href="https://watch.q16pbc.com">dashboard</a>, in plain language, with the reasoning attached.</p><p>The baseline reading is free, because the public should be able to see where the frontier stands without paying for the privilege. Members get the full analysis underneath it.</p><p>None of this makes the experts right. They can miss, and the spread is there so you can size the doubt yourself. But they are not selling you the answer, and that is the one property absent from every &#8220;AGI by [year]&#8221; headline above. A checkable estimate, made by people with no reason to move it. That is the offer.</p><p>The labs will keep announcing. That is their job. Keeping score from outside the arena is ours.</p><h2>Sources:</h2><p>By section</p><p>---</p><h4>The Forecast That Funds the Company</h4><p><strong>Masayoshi Son &#8212; ~10 years out, &#8220;10,000&#215; human&#8221; (2024)</strong></p><p>- CNBC, Jun 21 2024 &#8212; https://www.cnbc.com/2024/06/21/softbank-ceo-predicts-ai-that-is-10000-times-smarter-than-humans-.html</p><p>- Fortune, Jun 27 2024 &#8212; https://fortune.com/2024/06/27/softbank-ceo-masayoshi-son-born-to-create-artificial-super-intelligence/</p><p>**Son &#8212; moved to ~2 years, &#8220;set it long on purpose&#8221; (June 2026)**</p><p>- CNBC, Jun 5 2026 &#8212; https://www.cnbc.com/amp/2026/06/05/softbank-masayoshi-son-openai-model-super-intelligence.html</p><p>**SoftBank pitch deck &#8212; valuation ~13&#215; current market cap**</p><p>- TBPN Digest, Jun 26 2026 &#8212; https://www.tbpndigest.com/story/2026-06-26/softbanks-asi-pitch-deck-masa-sons-quadrillion-yen-vision-and-the-golden-goose-theory-of-value</p><p><strong>Sam Altman &#8212; &#8220;a few thousand days&#8221; (Sep 2024)</strong></p><p>- Primary: Sam Altman, &#8220;The Intelligence Age&#8221; &#8212; https://ia.samaltman.com/</p><p>- Fortune, Sep 24 2024 &#8212; https://fortune.com/2024/09/24/sam-altman-ai-superintelligence/</p><p>**Altman &#8212; &#8220;we know how to build AGI&#8221; (Jan 2025)**</p><p>- Primary: Sam Altman, &#8220;Reflections&#8221; &#8212; https://blog.samaltman.com/reflections</p><p>- Forbes, Jan 6 2025 &#8212; https://www.forbes.com/sites/johnkoetsier/2025/01/06/openai-ceo-sam-altman-we-know-how-to-build-agi/</p><p><strong>Altman &#8212; AGI &#8220;sooner and matters less,&#8221; prize pushed to superintelligence (late 2025)</strong></p><p>- TIME &#8212; https://time.com/7205596/sam-altman-superintelligence-agi/ *(opens in browser; blocks automated checks)*</p><p><strong>Altman &#8212; automated AI researcher by March 2028</strong></p><p>- TechCrunch, Oct 28 2025 &#8212; https://techcrunch.com/2025/10/28/sam-altman-says-openai-will-have-a-legitimate-ai-researcher-by-2028/</p><p>**OpenAI&#8217;s public AGI definition (&#8221;highly autonomous systems that outperform humans at most economically valuable work&#8221;)**</p><p>- OpenAI Charter &#8212; https://openai.com/charter/ *(opens in browser; blocks automated checks)*</p><p><strong>Elon Musk &#8212; AGI by 2025, then moved to 2026</strong></p><p>- Gizmodo &#8212; https://gizmodo.com/elon-musk-predicts-agi-by-2026-he-predicted-agi-by-2025-last-year-2000701007</p><p>- Morocco World News, Dec 2025 &#8212; https://www.moroccoworldnews.com/2025/12/272676/</p><p><strong>xAI &#8212; raising ~$20&#8211;30B</strong></p><p>- CNBC, Jan 6 2026 &#8212; https://www.cnbc.com/2026/01/06/elon-musk-xai-raises-20-billion-from-nvidia-cisco-investors.html</p><p><strong>Tesla self-driving suit (filed 2022, dismissed 2024 as &#8220;corporate puffery&#8221;)</strong></p><p>- Detroit News, Sep 30 2024 &#8212; https://www.detroitnews.com/story/business/autos/2024/09/30/tesla-defeats-investor-lawsuit-over-musks-autopilot-marketing/75456295007/</p><p>- Washington Times, Oct 1 2024 &#8212; https://www.washingtontimes.com/news/2024/oct/1/judge-dismisses-self-driving-lawsuit-against-tesla/</p><p><strong>Liang Wenfeng (DeepSeek) &#8212; pledged to pursue AGI to investors during a ~$10B (&#165;70B) round, ~$45B pre-money valuation (May 2026)</strong></p><p>*Note: framed as research-over-commercialization, not a profit-driven or dated forecast &#8212; included as &#8220;AGI invoked to raise capital,&#8221; a different mechanism than the moving date/definition cases above.*</p><p>- Bloomberg, May 21 2026 (Lulu Yilun Chen &amp; Haze Fan) &#8212; &#8220;DeepSeek Founder Avows AGI Goal Ahead of $10 Billion Funding&#8221; *(add URL from your Bloomberg link)*</p><p>---</p><h4>The Definition That Was a Dollar Figure</h4><p><strong>2019 Microsoft deal &#8212; license ends when the board declares AGI</strong></p><p>- Spyglass &#8212; https://spyglass.org/the-openai-microsoft-agi-clause/</p><p><strong>The $100B-profit threshold definition</strong></p><p>- TechCrunch, Dec 26 2024 &#8212; https://techcrunch.com/2024/12/26/microsoft-and-openai-have-a-financial-definition-of-agi-report/</p><p><strong>Oct 2025 recapitalization &#8212; PBC, softened AGI trigger, verification panel, Microsoft ~27% stake at ~$135B</strong></p><p>- CNBC, Oct 28 2025 &#8212; https://www.cnbc.com/2025/10/28/open-ai-for-profit-microsoft.html</p><p>- Al Jazeera, Oct 28 2025 &#8212; https://www.aljazeera.com/economy/2025/10/28/openai-restructures-into-public-benefit-firm-microsoft-takes-27-stake</p><p><strong>April 2026 &#8212; AGI provision removed, decoupled from payments; models on AWS the next day</strong></p><p>- Simon Willison, Apr 27 2026 &#8212; https://simonwillison.net/2026/Apr/27/now-deceased-agi-clause/</p><p>- Axios, Apr 28 2026 &#8212; https://www.axios.com/2026/04/28/openai-microsoft-cloud-amazon</p><p><strong>Marc Andreessen &#8212; &#8220;AGI already happened, ~3 months ago&#8221;</strong></p><p>- TechRadar &#8212; https://www.techradar.com/pro/we-crossed-that-about-3-months-ago-a16zs-marc-andreessen-drops-huge-bombshell-about-agi-on-joe-rogans-podcast</p><p>- Cybernews &#8212; https://cybernews.com/ai-news/marc-andreessen-agi/</p><p>---</p><h4>Not Everyone Is Selling</h4><p><strong>Shane Legg (Google DeepMind) &#8212; ~even odds on minimal AGI by 2028, held for years</strong></p><p>- The Decoder &#8212; https://the-decoder.com/deepmind-co-founder-shane-legg-sees-50-percent-chance-of-minimal-agi-by-2028/</p><p>- Dwarkesh Patel interview &#8212; https://www.dwarkesh.com/p/shane-legg</p><p><strong>Demis Hassabis (Google DeepMind) &#8212; human-level AGI 5&#8211;10 years out</strong></p><p>- CNBC, Mar 17 2025 &#8212; https://www.cnbc.com/2025/03/17/human-level-ai-will-be-here-in-5-to-10-years-deepmind-ceo-says.html</p><p><strong>Dario Amodei (Anthropic) &#8212; 2026&#8211;2027 estimate</strong></p><p>- Dwarkesh Patel interview &#8212; https://www.dwarkesh.com/p/dario-amodei-2</p><p><strong>Anthropic &#8212; argued for the option to slow frontier development (Responsible Scaling Policy)</strong></p><p>- Anthropic, UK AI Safety Summit &#8212; https://www.anthropic.com/news/uk-ai-safety-summit</p><p><strong>Anthropic &#8212; softened that commitment in early 2026 under competitive pressure</strong></p><p>- CNN, Feb 25 2026 &#8212; https://www.cnn.com/2026/02/25/tech/anthropic-safety-policy-change</p><p></p>]]></content:encoded></item><item><title><![CDATA[The Frontier Is a Commute]]></title><description><![CDATA[The entire Western AI frontier fits inside a single Bay Area commute. This should concern every security planner.]]></description><link>https://www.insidecyberwarfare.com/p/the-frontier-is-a-commute</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/the-frontier-is-a-commute</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Tue, 23 Jun 2026 13:03:19 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!3TLL!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Plot the headquarters of the companies that define artificial intelligence, and the pattern is obvious before you finish dropping the pins. The part of the industry that sets the capability frontier sits in a strip of California roughly fifty miles long, San Francisco to San Jose. Remove China from the picture and nearly the entire Western frontier falls inside that corridor. Seattle is the only domestic exception.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!3TLL!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!3TLL!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg 424w, https://substackcdn.com/image/fetch/$s_!3TLL!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg 848w, https://substackcdn.com/image/fetch/$s_!3TLL!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg 1272w, https://substackcdn.com/image/fetch/$s_!3TLL!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!3TLL!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg" width="1456" height="1230" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1230,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:11938,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/svg+xml&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/203192184?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!3TLL!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg 424w, https://substackcdn.com/image/fetch/$s_!3TLL!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg 848w, https://substackcdn.com/image/fetch/$s_!3TLL!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg 1272w, https://substackcdn.com/image/fetch/$s_!3TLL!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d6e1001-adce-454b-ac25-d410e6ca605e_1160x980.svg 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">HQ pins across the six-tier stack, clustered SF&#8211;San Jose plus Seattle, with the Chinese cluster in Hangzhou/Beijing/Shanghai and scattered single pins in London, Paris, Toronto, Abu Dhabi, Seoul.</figcaption></figure></div><p>Why that matters depends on what &#8220;matter most&#8221; means. The public conversation is rarely precise about it.</p><h2>&#8220;AI company&#8221; is not a category</h2><p>The industry gets flattened into one label, and that label is useless for thinking about risk. AI is a stack. The layers are not interchangeable.</p><p>At the top by capability, not by headcount or valuation, sit the frontier labs. The term has a precise meaning that casual usage erodes. A frontier lab trains its own foundation models from scratch, on the order of tens of thousands of accelerators running for weeks or months. It operates at the current capability boundary, not behind it. And it produces the architectural advances that everyone downstream inherits. By that definition the global count is small. Under twenty labs, plausibly fewer.</p><p>Everything else descends from that layer. Foundation-model labs train real models below the frontier, often open-weight and domain-specific. Fine-tuners take an existing base model and reshape it for a vertical (law, code, clinical data) using a fraction of the original compute. The application layer, where most of the named &#8220;AI companies&#8221; live, rents intelligence through an API and builds product on top of it. Beneath all of it runs the infrastructure: compute, model-serving, the data pipelines. The frontier labs depend on that infrastructure as heavily as anyone above them.</p><p>The strategically decisive layer is the first one. Capability originates there and diffuses downward. Its geography is what should concern a security planner.</p><h2>Where the frontier sits</h2><p>The corridor is dense. OpenAI and Anthropic in San Francisco. Meta&#8217;s FAIR in Menlo Park. xAI in Palo Alto. The chip-design and model-serving layer sits in the same handful of zip codes: NVIDIA in Santa Clara, the serving firms in San Francisco and San Mateo. So does the established software that consumes frontier output, from Salesforce to GitHub to Adobe. Seattle, with Microsoft and Amazon, is the only real break in the pattern, and it is still a single metro. One layer has started to leave. Raw compute is moving to where the power and land are, xAI&#8217;s Colossus to Memphis, the Stargate build to Abilene. Capital and silicon disperse when they have to. The talent and the IP have not.</p><p>Abroad, the Western frontier is not a cluster. It is a scatter of one-per-country bets. Google DeepMind in London. Mistral in Paris. Cohere in Toronto. Falcon, out of the Technology Innovation Institute in Abu Dhabi. Each is its nation&#8217;s single entry at the frontier. Europe&#8217;s entire frontier presence comes down to two cities.</p><p>China is the exception to the scatter. Hangzhou anchors DeepSeek and Alibaba&#8217;s Qwen. Beijing holds ByteDance, Moonshot, and Zhipu. Shanghai adds MiniMax. That is depth, and planned resilience. </p><h2>Concentration of Resources is a Tactical Blunder</h2><p>Concentration is fragility, and the warning usually arrives before the failure. Through the 1930s the U.S. Pacific Fleet operated out of West Coast ports. In 1940, to signal resolve to Japan, the Roosevelt administration ordered it consolidated forward to Pearl Harbor and held it there. Admiral James Richardson, the Navy&#8217;s foremost authority on Pacific warfare, told Roosevelt directly and then put it in writing: a fleet massed in one exposed harbor was the logical first target in a war with Japan. He was relieved of command for pressing it. The administration wanted a deterrent. What it built was a target, and the officer best placed to see it was removed for saying so.</p><p>The frontier carries the same shape. A capability that lives in one seismic zone, on one regional power grid, inside one metropolitan labor market is efficient. It is not resilient. The talent and the intellectual property that define it aren&#8217;t just co-located in a country. They are co-located in a commute. Any planner who has war-gamed single-point-of-failure problems will recognize the target.</p><p>Geography narrows the collection problem. A distributed industry is a hard target. A frontier that resolves to a small number of buildings and a small, mobile talent pool is a legible one. Legible to foreign intelligence services, to insider threat, to the ordinary churn of people carrying what they know from one lab to another just a few exits away. Concentration compresses them into an adversary&#8217;s target set.</p><p>We are measuring the wrong contest. The dominant frame treats AI as a race to a finish line: who crosses the capability threshold first. The map argues for a different metric. The durable advantage is depth and the resilience of where capability physically sits. That&#8217;s what China has been building. The U.S. may win the velocity race, but China wins on survivability.</p><p>None of this argues for dispersing the frontier by fiat. The clustering exists because proximity compounds talent and capital, and that effect is real. But the security community assumes the competition is about capability gaps and compute access. The geography points to a quieter variable: concentration itself. The side with a true second cluster has an answer to a question we have not seriously asked.</p><p>The frontier is a commute. That should be in the threat model.</p><div><hr></div><h2>Worldwide Lab Reference Data By Tier </h2><h3>Tier 1: Frontier Labs</h3><p><em>United States</em></p><ul><li><p><strong>OpenAI</strong> &#8212; San Francisco, CA</p></li><li><p><strong>Anthropic</strong> &#8212; San Francisco, CA</p></li><li><p><strong>Google DeepMind</strong> &#8212; London, UK (with Mountain View operations)</p></li><li><p><strong>Meta AI / FAIR</strong> &#8212; Menlo Park, CA</p></li><li><p><strong>xAI</strong> &#8212; Palo Alto, CA</p></li><li><p><strong>Amazon (Nova/Titan)</strong> &#8212; Seattle, WA</p></li><li><p><strong>Microsoft Research</strong> &#8212; Redmond, WA</p></li></ul><p><em>China</em></p><ul><li><p><strong>DeepSeek</strong> &#8212; Hangzhou</p></li><li><p><strong>Alibaba / Qwen</strong> &#8212; Hangzhou</p></li><li><p><strong>ByteDance / Seed</strong> &#8212; Beijing</p></li><li><p><strong>Moonshot AI</strong> &#8212; Beijing</p></li><li><p><strong>Zhipu AI</strong> &#8212; Beijing</p></li><li><p><strong>MiniMax</strong> &#8212; Shanghai</p></li></ul><p><em>Rest of world</em></p><ul><li><p><strong>Mistral</strong> &#8212; Paris, France</p></li><li><p><strong>Cohere</strong> &#8212; Toronto, Canada</p></li><li><p><strong>TII / Falcon</strong> &#8212; Abu Dhabi, UAE</p></li><li><p><strong>Samsung Research</strong> &#8212; Seoul, South Korea</p></li></ul><h3>Tier 2: Foundation Model Labs (Non-Frontier)</h3><ul><li><p><strong>Stability AI</strong> &#8212; London, UK</p></li><li><p><strong>EleutherAI</strong> &#8212; distributed/no fixed HQ (open research collective)</p></li><li><p><strong>BAAI / WuDao</strong> &#8212; Beijing, China</p></li><li><p><strong>Hugging Face</strong> &#8212; Brooklyn, NY (the open-model hub; also straddles infrastructure)</p></li></ul><h3>Tier 3: Fine-Tuners &amp; Derivative Builders</h3><p>This is the most geographically diffuse tier by design &#8212; it&#8217;s thousands of domain shops fine-tuning someone else&#8217;s base model. The headline example we used is <strong>Cursor / Anysphere</strong> (San Francisco), which fine-tuned Kimi K2.5 into Composer 2. Most of this tier is enterprise and vertical shops that don&#8217;t register as &#8220;AI companies&#8221; on a map.</p><h3>Tier 4: AI Application Companies</h3><ul><li><p><strong>Salesforce (Einstein)</strong> &#8212; San Francisco, CA</p></li><li><p><strong>GitHub Copilot</strong> (Microsoft) &#8212; San Francisco, CA</p></li><li><p><strong>Adobe (Firefly)</strong> &#8212; San Jose, CA</p></li><li><p><strong>Perplexity</strong> &#8212; San Francisco, CA (RAG-based search, application layer)</p></li></ul><h3>Infrastructure (beneath everything)</h3><ul><li><p><strong>NVIDIA</strong> &#8212; Santa Clara, CA (compute)</p></li><li><p><strong>Together AI</strong> &#8212; San Francisco, CA (model serving)</p></li><li><p><strong>Fireworks AI</strong> &#8212; San Mateo, CA (serving; the Cursor/Kimi intermediary)</p></li><li><p><strong>Scale AI</strong> &#8212; San Francisco, CA (data/RLHF pipeline)</p></li><li><p><strong>Pinecone</strong> &#8212; New York, NY (vector DB)</p></li><li><p><strong>Weaviate</strong> &#8212; Amsterdam, Netherlands (vector DB)</p></li></ul><p></p>]]></content:encoded></item><item><title><![CDATA[You Bear The Risk]]></title><description><![CDATA[Microsoft tells its customers they assume the danger of using Defender. Then it threatens the researcher who found the danger. That contradiction is the entire case for software liability regulation.]]></description><link>https://www.insidecyberwarfare.com/p/you-bear-the-risk</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/you-bear-the-risk</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Mon, 08 Jun 2026 16:55:18 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!pqoO!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!pqoO!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!pqoO!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png 424w, https://substackcdn.com/image/fetch/$s_!pqoO!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png 848w, https://substackcdn.com/image/fetch/$s_!pqoO!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png 1272w, https://substackcdn.com/image/fetch/$s_!pqoO!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!pqoO!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png" width="1456" height="2060" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:2060,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3663898,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/201149195?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!pqoO!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png 424w, https://substackcdn.com/image/fetch/$s_!pqoO!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png 848w, https://substackcdn.com/image/fetch/$s_!pqoO!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png 1272w, https://substackcdn.com/image/fetch/$s_!pqoO!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F034ff0af-aa38-47d1-b815-04ed955f118e_1587x2245.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Open the license agreement for Microsoft Defender and read down to the disclaimer. In capital letters you&#8217;ll read that the software is licensed &#8220;as is,&#8221; and you bear the risk of using it. A few lines down, a second all-caps block caps the company&#8217;s liability at roughly what you paid, which, for a tool bundled into Windows, is effectively nothing. That&#8217;s the deal. Microsoft builds the thing you rely on to keep attackers out, disclaims responsibility for whether it works, and leaves you with the damages should a breach occur.</p><p>Now consider what Microsoft has done to the researcher who exposed those flaws.</p><p>A pseudonymous researcher who goes by Nightmare Eclipse says Microsoft locked them out of its own reporting portal, paid nothing for the bugs they submitted, and ignored the findings. So they retaliated. Between early April and mid-May, Nightmare Eclipse dumped working exploit code for six unpatched zero-days affecting Defender, BitLocker, and core Windows components onto GitHub and GitLab, skipping coordinated disclosure entirely. At least three were turned on real victims within days, before Microsoft could respond. Instead of a patch, Microsoft answered with a referral to its Digital Crimes Unit and a threat of criminal prosecution.</p><p>In short, Microsoft tells you Defender is &#8220;as is&#8221; and the risk is yours. Then it reaches for criminal process against the researcher who found the specific risk you were told to carry. The company will not stand behind the product, and, at its worst, it turns on the people who prove where the product fails. The risk flows one direction. The liability flows the same direction. Neither flows back to Microsoft.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!owR8!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!owR8!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png 424w, https://substackcdn.com/image/fetch/$s_!owR8!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png 848w, https://substackcdn.com/image/fetch/$s_!owR8!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png 1272w, https://substackcdn.com/image/fetch/$s_!owR8!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!owR8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png" width="1220" height="1204" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1204,&quot;width&quot;:1220,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:291030,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/201149195?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!owR8!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png 424w, https://substackcdn.com/image/fetch/$s_!owR8!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png 848w, https://substackcdn.com/image/fetch/$s_!owR8!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png 1272w, https://substackcdn.com/image/fetch/$s_!owR8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1aea78-36ae-48ff-8733-c2094e5959fe_1220x1204.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Source: Microsoft Defender Application License Terms</figcaption></figure></div><p>None of that excuses what Nightmare Eclipse did. Publishing live exploit code for unpatched flaws is reckless. It put ordinary users in the line of fire, and that is on Nightmare Eclipse. But it is a separate wrong, not a defense. <strong>Microsoft&#8217;s liability does not turn on whether the person who exposed the flaw behaved well</strong>. The disclaimer covers the product no matter how its failures come to light. &#8220;As is&#8221; means as is.</p><p>This would be easier to wave off as a licensing quarrel if the company had earned any benefit of the doubt. It hasn&#8217;t. Russian intelligence moved through Microsoft infrastructure into the U.S. Departments of Justice, Homeland Security, and Treasury in the SolarWinds operation, using a token-forgery technique Microsoft had understood since 2017 and disclosed to no one. Chinese state hackers rode four Exchange Server zero-days into more than 30,000 organizations in 2021. In the summer of 2023, the Chinese group Microsoft tracks as Storm-0558 read the email of the Commerce Secretary and the U.S. Ambassador to China in the days before a sensitive trip to Beijing, using a signing key Microsoft had stopped rotating and could not afterward account for. Then the same Russian group from SolarWinds walked back in through a test account with no multifactor authentication and reached Microsoft&#8217;s source code. Four catastrophic intrusions in six years. Not one required sophisticated tradecraft. Each turned on a basic control Microsoft failed to maintain &#8212; the kind of control Defender is sold to provide.</p><p>The Cyber Safety Review Board reviewed the 2023 intrusion and called it preventable, the product of a security culture it said required an overhaul. Nightmare Eclipse is not the first to make that complaint. The late Amit Yoran, then Tenable&#8217;s chief executive, accused Microsoft in 2023 of leaving customers deliberately in the dark about an unpatched Azure flaw, and in October 2024 Trend Micro&#8217;s Zero Day Initiative criticized Microsoft for quietly patching an actively exploited Windows flaw without crediting anyone and rating it only &#8220;moderate.&#8221; Check Point and others have described the same handling: silent fixes, withheld acknowledgment, disputes over severity.</p><p>What is unusual in the Nightmare Eclipse case is not the grievance but Microsoft&#8217;s answer to it. A criminal referral is not how the company normally treats researchers, and that is exactly why it shows how far this relationship has broken down. Katie Moussouris, who built Microsoft&#8217;s own bug bounty program, called the company&#8217;s language toward Nightmare Eclipse inflammatory. When the person who designed your disclosure program says you are threatening researchers, the researcher is not your real problem.</p><p>The real problem is that what Microsoft is doing is legal, and it is ordinary. Every software company on earth ships under the same &#8220;as is&#8221; disclaimer and the same liability cap. I argued in <em>Inside Cyber Warfare</em> that cybersecurity is a market for lemons &#8212; the seller knows the product&#8217;s defects and the buyer cannot. The license agreement formalizes that asymmetry. You can&#8217;t negotiate it; lawyers call a take-it-or-leave-it contract like that a contract of adhesion. If you don&#8217;t like the terms, the industry&#8217;s answer is simple: don&#8217;t use the software. There is no version of that answer for a hospital, a utility, or a federal agency running Windows.</p><p>No other industry that builds critical infrastructure is permitted to operate this way, and none of them surrendered the arrangement on its own.</p><p>Accountability is never volunteered. It is, historically, forced. To wit &#8212;</p><p>The railroads let brakemen lose their hands to the link-and-pin coupler until Congress mandated the automatic coupler in 1893.</p><p>The ammonium nitrate that leveled Texas City in 1947 (roughly six hundred dead, and still the deadliest industrial accident in American history) produced the principle Justice Robert Jackson set down in dissent: the public cannot be expected to possess the facilities or the technical knowledge to learn for itself of inherent but latent dangers. That sentence describes the software EULA exactly.</p><p>Detroit fought seat belts until the Motor Vehicle Safety Act of 1966, fifty-eight years after the Model T.</p><p>The first mass-market personal computer shipped in 1976. Half a century later, software liability still does not exist. Why? There hasn&#8217;t been enough public outrage to overcome the tech industry&#8217;s multibillion-dollar lobbying efforts to keep its unregulated status.</p><p>The 2023 National Cybersecurity Strategy calls for shifting liability onto software makers, who to this day carry none &#8212; short of gross negligence. Chris Inglis, who oversaw that strategy as National Cyber Director, made the same argument I did when he said &#8220;voluntary hasn&#8217;t worked in 25 years.&#8221; The model already exists in miniature &#8212; New Jersey writes liability into its cloud and software contracts, so a vendor whose flaw causes a state data breach pays multiples of its annual fees plus the full cost of the cleanup. The large vendors swallow those terms to win the contract. The small ones can&#8217;t, which is precisely why the floor has to be law rather than negotiation.</p><div class="callout-block" data-callout="true"><p>&#8220;Mark this date July 14th, I will make sure your bones are shattered that day.&#8221; - Nightmare Eclipse, May 23, 2026, Blog entry</p></div><p><a href="https://deadeclipse666.blogspot.com/">Nightmare Eclipse</a> has promised Microsoft that their next drop on July 14 will be &#8220;bone-shattering.&#8221; The last batch was weaponized within days; there is no reason to expect this one won&#8217;t be. A single shut-out researcher may do to Microsoft&#8217;s customers what four nation-state services could not, and the wreckage may at last be ugly enough to drag liability into law.</p><p>The casualties of a mass zero-day release are never Microsoft&#8217;s executives. They are the hospitals, the agencies, and the ordinary users holding the risk Microsoft assigned them in the disclaimer. The logic of every precedent is that we keep waiting for the bodies before we act, and the bodies are always other people&#8217;s. We do not have to run this one to the end. The contradiction is already on the page: &#8220;as is,&#8221; you bear the risk, and a criminal referral for the person who proved it. Congress can take its cue from history and write liability into law now, or it can wait, as it always has, and let the next disaster, perhaps as soon as July 14, make the argument for it.</p><h2>Infographic</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!POKL!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!POKL!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png 424w, https://substackcdn.com/image/fetch/$s_!POKL!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png 848w, https://substackcdn.com/image/fetch/$s_!POKL!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png 1272w, https://substackcdn.com/image/fetch/$s_!POKL!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!POKL!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png" width="800" height="2000" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:2000,&quot;width&quot;:800,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:761216,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/201149195?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!POKL!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png 424w, https://substackcdn.com/image/fetch/$s_!POKL!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png 848w, https://substackcdn.com/image/fetch/$s_!POKL!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png 1272w, https://substackcdn.com/image/fetch/$s_!POKL!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F90cbf11a-19f0-4eba-b4d9-e4c295135af8_800x2000.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p>]]></content:encoded></item><item><title><![CDATA[Microsoft Built the Exposure. Your Agency Owns the Risk]]></title><description><![CDATA[A threat actor with a documented track record has named the date. Thousands of federal systems will be permanently unpatched by then. You have six weeks.]]></description><link>https://www.insidecyberwarfare.com/p/microsoft-built-the-exposure-your</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/microsoft-built-the-exposure-your</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Tue, 02 Jun 2026 19:18:35 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!wC9C!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>08 JUL 2026 UPDATE</p><p>Nightmare Eclipse announced the following update on their <a href="https://blog.projectnightcrawler.dev/">blog</a>. The promised attack against a major Microsoft platform has been post-phoned, although they will still drop something for July&#8217;s Patch Tuesday next week. </p><blockquote><p>-----BEGIN PGP SIGNED MESSAGE-----</p><p>Hash: SHA512</p><p>I won&#8217;t drop what I talked about last blog, that seems to need more research and investigation...</p><p>Regardless got smtg for this month, it will be the least interesting and least impactful bug I dropped since I started but Microsoft legit just stopped pocking me and pissing me off so I&#8217;m conserving some energy for next month, because I know they will definitely piss me off by then.</p><p>-----BEGIN PGP SIGNATURE-----</p><p>iHUEARYKAB0WIQRJTvAf/AWVhAKEeb7FFoRCS0/SbAUCakguLwAKCRDFFoRCS0/S</p><p>bD0yAQDrkmvenG5NJ+bnt6FHdcPPaCAyuN2ZuAVcdUuQkHKhuAEA9kr3pxpeHx3n</p><p>R5i6YU5sDhSvNPSIVf9rkD9CQY9uOAw=</p><p>=yOrR</p><p>-----END PGP SIGNATURE-----</p></blockquote><div><hr></div><p>In late 1998, the people who understood the Y2K problem well enough to be frightened by it faced a peculiar communications challenge. The risk was real, technically well-understood, and date-certain. The vulnerable population was enormous. The mitigation window was finite and shrinking. And yet the default organizational response, in government, in the private sector, and in the military, was to assume someone else was handling it.</p><p>We are in that moment again. The date is July 14, 2026.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!wC9C!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!wC9C!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png 424w, https://substackcdn.com/image/fetch/$s_!wC9C!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png 848w, https://substackcdn.com/image/fetch/$s_!wC9C!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png 1272w, https://substackcdn.com/image/fetch/$s_!wC9C!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!wC9C!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png" width="1456" height="1173" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1173,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:342256,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/200343913?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!wC9C!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png 424w, https://substackcdn.com/image/fetch/$s_!wC9C!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png 848w, https://substackcdn.com/image/fetch/$s_!wC9C!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png 1272w, https://substackcdn.com/image/fetch/$s_!wC9C!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a61219a-f596-482c-ab55-60d3842c7dd3_1914x1542.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">From Nightmare Eclipse&#8217;s blog: https://deadeclipse666.blogspot.com/2026/05/july-14th.html</figcaption></figure></div><h2><strong>What Is Converging on July 14</strong></h2><p>Three things are happening simultaneously on that date, and the overlap is not coincidental.</p><p>First: July 14 is Microsoft&#8217;s monthly Patch Tuesday, the most watched day in the enterprise security calendar, when Microsoft releases security updates for its products and the entire defender community pivots to assess, test, and deploy patches across millions of systems worldwide.</p><p>Second: July 14 is the date Microsoft permanently ends extended support for SharePoint Server 2016 and SharePoint Server 2019.<sup>[1]</sup> After that date, both platforms will continue to run. Nothing shuts off automatically, but Microsoft will issue no further security patches, bug fixes, or technical support for either version. Any vulnerability discovered in SharePoint 2016 or 2019 after July 14 is, by definition, permanently unpatched on those platforms.</p><p>Third: a pseudonymous security researcher known as <strong>Nightmare Eclipse</strong>, who has already released six weaponized zero-day exploits targeting core Windows components since early April, three of which were confirmed under active exploitation within days of release, has publicly threatened a major disclosure on July 14.<sup>[2]</sup> In a post directed at Microsoft, the researcher wrote: &#8220;Mark this date July 14th. I will make sure your bones are shattered that day.&#8221;<sup>[3]</sup></p><p>Whether the July 14th threat materializes, targets SharePoint specifically, or proves as severe as feared is unknown, what is known is the exposure. Your organization is either hardened for this window or it isn&#8217;t.</p><h2><strong>Who Is Actually Exposed</strong></h2><p>The vulnerable population is specific and, in national security terms, alarming.</p><p>During the July 2025 ToolShell exploitation wave, researchers at Censys identified 9,717 on-premises SharePoint servers that were directly internet-exposed.<sup>[4]</sup> Those are only the visible ones. Air-gapped and internally accessible deployments are not counted in that figure. The actual population of organizations still running SharePoint 2016 or 2019 is considerably larger, concentrated in the sectors least equipped to absorb a mass exploitation event: federal government, defense, intelligence, healthcare, and finance.</p><p>Government agencies are disproportionately represented in this population for a structural reason. Migrating to cloud-based SharePoint requires obtaining a new Authority to Operate under FedRAMP, a process that can take months to years. Many agencies are caught between a legacy platform they can no longer safely run and a cloud migration they haven&#8217;t completed. Some DoD and intelligence community environments run air-gapped networks that cannot migrate to cloud by definition. For those organizations, &#8220;migrate before July 14&#8221; is not an available option. Hardening is.</p><p>The federal government&#8217;s exposure to SharePoint vulnerabilities is not hypothetical. In July 2025, ToolShell, a chained exploit combining remote code execution and authentication bypass, was used against over 400 organizations worldwide, including multiple federal agencies and state and local governments.<sup>[5]</sup> The Department of Energy confirmed that both DOE components and the National Nuclear Security Administration were affected, though the agency characterized the impact as minimal and said a very small number of systems were involved.<sup>[6]</sup> The vulnerability was patched, but the structural conditions that made federal agencies vulnerable to ToolShell in 2025 have not changed.</p><h2><strong>Why July 14 Is Different From a Normal Patch Tuesday</strong></h2><p>The feature that makes Nightmare Eclipse genuinely dangerous, and different from the established norms of security research, is not the disclosure of vulnerabilities. It is the simultaneous release of weaponized, working proof-of-concept exploit code.</p><p>Standard practice, even among aggressive disclosers who publish over vendor objections, maintains a professional line between disclosure and arming. Publishing a technical description of a flaw allows skilled researchers to reproduce it. Publishing working exploit code hands a loaded weapon to anyone who can download a file.</p><p>The practical consequence is a collapse in what security professionals call the weaponization-to-exploitation window. Under normal conditions, even after a vulnerability becomes public, threat actors require days to weeks to reverse-engineer the flaw, develop working exploit code, test it, and deploy it against targets. That window is what gives defenders time to patch. When working exploit code is released simultaneously with the disclosure, that window closes. The barrier between &#8220;I know this vulnerability exists&#8221; and &#8220;I have working code to exploit it&#8221; drops to zero.</p><p>Huntress Labs confirmed active exploitation of Nightmare Eclipse&#8217;s BlueHammer, RedSun, and UnDefend exploits within days of their release in April.<sup>[7]</sup> The gap between code on GitHub and attackers using it against real enterprise targets was not weeks. It was hours.</p><p>Enterprise patch cycles do not operate in hours. Even well-resourced organizations with mature patch management programs operate on weekly or bi-weekly cycles, with additional time required for testing before updates reach production systems. When the exploitation window collapses to hours, patching after the fact is not a defense strategy. It is a damage assessment strategy.</p><p>On July 14, if Nightmare Eclipse releases weaponized exploit code against SharePoint 2016 or 2019 on the day those platforms permanently lose patch support, the organizations most likely to still be running those platforms are also the ones with the slowest patch cycles, the most complex IT environments, and the most sensitive data.</p><h2><strong>What to Do Right Now</strong></h2><p>While six weeks is a short window, it is not an empty one.</p><p>The Y2K parallel holds: the relatively benign outcome of that crisis was not evidence that the warnings were overblown. It was the result of organizations taking date-certain, technically understood risks seriously early enough to act. The actions below reduce exposure regardless of what Nightmare Eclipse does on July 14.</p><p><strong>Inventory immediately.</strong> Every organization running on-premises SharePoint should know today exactly which version it is running, how many instances exist, and which are internet-facing. This is not a complex technical task. It is a governance task that should have been completed months ago.</p><p><strong>Take internet-exposed SharePoint 2016/2019 offline or behind a VPN now.</strong> If your organization has SharePoint servers directly accessible from the public internet that are not going to be migrated before July 14, reduce that attack surface today. Censys could see your server during the ToolShell wave. So can every threat actor who knows how to run a scan.</p><p><strong>Accelerate or emergency-authorize migrations.</strong> For organizations mid-migration, July 14 is a forcing function that justifies emergency procurement authority, expedited FedRAMP review requests, and executive-level prioritization. The cost of an accelerated migration is known and bounded. The cost of a mass exploitation event is neither.</p><p><strong>Segment aggressively.</strong> For environments that cannot migrate before July 14, including air-gapped defense and intelligence installations, network segmentation, enhanced monitoring, and restricted lateral movement capabilities reduce the blast radius of a successful exploitation. This is not a substitute for patching. It is a risk reduction measure for the window in which patching is not available.</p><p><strong>Brief leadership before the end of June.</strong> This is a board-level and agency-head-level risk event, not a patch management task. The officials responsible for mission continuity need to understand what July 14 represents before it arrives, not after.</p><p><strong>Ensure CISA KEV alerts are operationally connected.</strong> The CISA Known Exploited Vulnerabilities catalog exists precisely for situations like this. Verify now that alerts are flowing to operational security teams with defined response timelines &#8212; not being logged and reviewed quarterly.</p><h2><strong>The Deeper Problem July 14 Exposes</strong></h2><p>None of this would be a crisis if Microsoft&#8217;s security culture matched the scale of its infrastructure footprint.</p><p>The federal government&#8217;s dependence on Microsoft products is total in ways that have no equivalent in the private sector. Exchange Online handles diplomatic communications. SharePoint manages classified workflows. Azure hosts systems whose compromise has resulted in Chinese intelligence services reading the email of America&#8217;s most senior diplomats. The Cyber Safety Review Board, after investigating the 2023 Exchange Online breach that exposed the accounts of the Commerce Secretary, the U.S. Ambassador to China, and senior State Department officials, concluded that the intrusion was preventable, that it reflected a cascade of security failures at Microsoft, and that Microsoft&#8217;s security culture was inadequate and required an overhaul.<sup>[8]</sup></p><p>The researcher at the center of the July 14 threat claims to have exhausted conventional reporting channels, only to have had their Microsoft Security Response Center account deleted, their vulnerability reports ignored, and their bug bounty payments withheld.<sup>[9]</sup> Whether or not every element of that account is accurate, it describes a failure mode in Microsoft&#8217;s researcher engagement that the security community has documented repeatedly. When the world&#8217;s largest software infrastructure company treats its most capable outside eyes as adversaries rather than assets, it removes the early warning layer that might catch what internal teams miss. July 14 is the result.</p><h2><strong>A Final Note on Proportionality</strong></h2><p>The Y2K crisis ended well. Not because the risk was overstated, but because enough organizations took the warning seriously early enough to act. The people who called it a false alarm after the fact were confusing outcome with probability.</p><p>July 14 may also end quietly. Nightmare Eclipse may not follow through. The disclosure may affect platforms other than SharePoint. The payload may be less severe than feared. None of that changes the calculus for a federal agency, a hospital network, or a defense contractor still running SharePoint 2016 today. We have a credible threat against a known target set, on a specific date. The clock is ticking.</p><h2><strong>Notes</strong></h2><p><strong>[1] </strong>Microsoft. &#8220;SharePoint Server 2016 and 2019 End of Support.&#8221; Microsoft Lifecycle Policy. Confirmed end-of-extended-support date: July 14, 2026. https://learn.microsoft.com/en-us/lifecycle/products/sharepoint-server-2019</p><p><strong>[2] </strong>Barracuda Networks. &#8220;Nightmare-Eclipse: Six Zero-Days, Six Weeks and One Big Grudge.&#8221; Barracuda Blog, May 19, 2026. https://blog.barracuda.com/2026/05/19/nightmare-eclipse-zero-days-grudge</p><p><strong>[3] </strong>Cybernews. &#8220;Microsoft&#8217;s Nightmare: GitLab Removes Rogue Security Researcher Days After GitHub Ban.&#8221; May 27, 2026. https://cybernews.com/security/gitlab-bans-rogue-researcher-releasing-windows-zero-days/ Note: Nightmare Eclipse&#8217;s gender is unknown. Coverage by The Register, Barracuda, and others uses they/them. This article follows that convention.</p><p><strong>[4] </strong>Cybersecurity Dive. &#8220;What We Know About the Microsoft SharePoint Attacks.&#8221; July 24, 2025. Censys figure of 9,717 internet-exposed on-premises SharePoint servers cited as of the ToolShell exploitation wave. https://www.cybersecuritydive.com/news/what-we-know-microsoft-sharepoint-attacks/753961/</p><p><strong>[5] </strong>CyberScoop. &#8220;Microsoft SharePoint Attacks Ensnare 400 Victims, Including Federal Agencies.&#8221; July 24, 2025. https://cyberscoop.com/microsoft-sharepoint-attacks-400-victims-us-agencies/</p><p><strong>[6] </strong>BleepingComputer. &#8220;US Nuclear Weapons Agency Hacked in Microsoft SharePoint Attacks.&#8221; July 24, 2025. DOE spokesperson statement: &#8220;The Department was minimally impacted due to its widespread use of the Microsoft M365 cloud and very capable cybersecurity systems. A very small number of systems were impacted.&#8221; https://www.bleepingcomputer.com/news/security/us-nuclear-weapons-agency-hacked-in-microsoft-sharepoint-attacks/</p><p><strong>[7] </strong>Notebookcheck. &#8220;Microsoft Faces Security Community Backlash Over Nightmare Eclipse.&#8221; May 29, 2026. BlueHammer (CVE-2026-33825), RedSun (CVE-2026-41091), UnDefend (CVE-2026-45498) confirmed exploited in the wild. https://www.notebookcheck.net/Microsoft-faces-security-community-backlash-over-Nightmare-Eclipse.1311160.0.html</p><p><strong>[8] </strong>U.S. Department of Homeland Security, Cyber Safety Review Board. &#8220;Review of the Summer 2023 Microsoft Exchange Online Intrusion.&#8221; April 2, 2024. https://www.cisa.gov/sites/default/files/2025-03/CSRBReviewOfTheSummer2023MEOIntrusion508.pdf</p><p><strong>[9] </strong>The Register. &#8220;Microsoft 0-Day Feud Escalates as Researcher Threatens Another Windows Exploit Dump.&#8221; May 28, 2026. https://www.theregister.com/security/2026/05/28/microsoft-0-day-feud-escalates-as-researcher-threatens-another-windows-exploit-dump/</p>]]></content:encoded></item><item><title><![CDATA[Beijing’s Veto Is the Tell]]></title><description><![CDATA[How China&#8217;s prohibition on the Meta-Manus deal authenticates Chinese AI capability]]></description><link>https://www.insidecyberwarfare.com/p/beijings-veto-is-the-tell</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/beijings-veto-is-the-tell</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Mon, 11 May 2026 23:32:17 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Ferg!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Ferg!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Ferg!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Ferg!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Ferg!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Ferg!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Ferg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg" width="1280" height="720" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:720,&quot;width&quot;:1280,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:82151,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/197282929?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Ferg!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Ferg!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Ferg!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Ferg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b3d1220-7a65-417d-83cb-b8643aca783e_1280x720.jpeg 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The surest indicator that China has built something genuinely valuable in AI is not a five-year plan or a state media editorial. It&#8217;s a prohibition. When Beijing blocks a Western acquisition, it functions as an unintentional authentication service &#8212; we know the value of our technology versus yours, and you can&#8217;t have it.</p><p>The Meta-Manus decision is that signal. And the history behind it fills in the gaps left by the one-line statement from China&#8217;s National Development and Reform Commission.</p><h3>I. The Manus Block as Evidentiary Signal</h3><p>China&#8217;s <a href="https://zfxxgk.ndrc.gov.cn/web/iteminfo.jsp?id=20623">National Development and Reform Commission</a> &#8212; the country&#8217;s top economic planning agency and China&#8217;s functional equivalent of CFIUS &#8212; issued a single-line statement prohibiting a foreign acquisition of Manus and requiring all parties to withdraw from the deal:</p><p><em>&#8220;The office in charge of foreign investment security review (NDRC) has decided to block the foreign acquisition of the Manus project and require the parties to unwind the deal.&#8221;</em></p><p>What made that terse statement remarkable was what accompanied it behind the scenes. The decision was elevated beyond economic regulators to China&#8217;s National Security Commission &#8212; the Communist Party body chaired by Xi Jinping that oversees national security strategy at the highest level. Chinese officials reviewing the acquisition reportedly described it as a &#8220;conspiratorial&#8221; attempt to hollow out the country&#8217;s technology base. Not &#8220;unfair competition.&#8221; Not &#8220;regulatory concern.&#8221; <em>Hollowing out</em>. That conveys the essence of China&#8217;s concern: that home-grown technological advancements in a domain with national security implications will be transferred to the West.</p><p>Meta, meanwhile, seemed to be addressing a different concern &#8212; that of the U.S. government rather than the Chinese government. The <a href="https://www.fastcompany.com/91532980/china-meta-manus-ai-acquisition">company</a> committed that there would be &#8220;no continuing Chinese ownership interests in Manus&#8221; and that the startup would shut down its operations in China entirely. This suggests Meta was concerned about the wrong issue and the wrong government. Beijing&#8217;s response was to look past the corporate structure entirely and rule based on the underlying reality: the IP, the talent, and the data were Chinese in origin, and no Singapore registration address was going to change that.</p><h3>II. The Singapore-Washing Gambit &#8212; and Why It Failed</h3><p>In July 2025, Manus announced it had relocated its office from Beijing &#8212; where it was founded &#8212; to Singapore. This is a well-worn path for Chinese technology companies seeking to distance themselves from their country of origin. There are four principal benefits:</p><p>&#8226; Easier access to Western investment capital</p><p>&#8226; Access to Nvidia H100/H800 GPUs blocked under <a href="https://cryptorank.io/news/feed/fd5d0-chinese-ai-startups-relocate-to-singapore">U.S. export controls</a></p><p>&#8226; Singapore&#8217;s 17% corporate tax rate and English-Mandarin bilingual workforce</p><p>&#8226; Escape from China&#8217;s 2023&#8211;2024 VC environment, where <a href="https://www.bloomberg.com/news/articles/2024-06-30/china-s-ai-startups-head-to-singapore-in-a-bid-for-global-growth">founders cited months-long diligence cycles</a></p><p>Beijing&#8217;s intervention in the Manus deal sent a message to every founder who was watching: the model doesn&#8217;t work. China&#8217;s state-run <a href="https://www.globaltimes.cn/page/202604/1359940.shtml">Global Times</a> made the doctrine explicit, arguing that the key issue is not where a company is registered or where its team is currently based &#8212; what matters is &#8220;the extent of its technological, talent and data links with China,&#8221; and most importantly, &#8220;whether the transaction could harm China&#8217;s industrial security and development interests.&#8221;</p><p>Beijing&#8217;s position is that the IP travels with the people and the data, not the registration address. Tech founders and venture capitalists who had been structuring deals around the Singapore-washing model found themselves looking at a landscape that had fundamentally changed overnight. Beijing had drawn the line not at corporate structure but at technological substance, and it had made clear it was prepared to use exit bans and regulatory reversal to enforce it.</p><h3>III. The Historical Arc &#8212; From Courtship to Closure</h3><p>Nothing about this is new. It&#8217;s the natural evolution of a strategy that has been running for thirty years.</p><p><strong>Phase One: The Open Door (Late 1990s&#8211;Early 2000s)</strong></p><p>In the late 1990s, China was running what amounted to the world&#8217;s largest technology acquisition program &#8212; and it was entirely legal. The bait was irresistible: a billion-person market, a generation of cheap PhDs, and tax incentives structured to make Western CFOs look like heroes. Microsoft, Dell, Oracle, IBM, Hewlett-Packard &#8212; they all came. Beijing wanted their R&amp;D centers on Chinese soil, their engineers training Chinese counterparts, and their codebases within reach.</p><p>What made this machine run was the joint venture requirement. Multinational firms seeking to conduct foreign direct investment in China were required to form legal business relationships with domestic Chinese partners, with explicit technology transfer obligations that severely curtailed the rights of the foreign IP holder. The foreign firm transferred proprietary methods, designs, and know-how to the joint venture entity. That was the price of admission to the world&#8217;s largest market.</p><p>The <a href="https://ustr.gov/about-us/policy-offices/press-office/fact-sheets/2018/march/section-301-fact-sheet">U.S. Trade Representative</a> later characterized it as &#8220;administrative review and licensing processes to force or pressure technology transfers from American companies&#8221; &#8212; a practice that had been baked into doing business in China since the early 1980s. The Western firms that entered accepted the terms and bet that market access was worth the cost. They were subsidizing their own eventual displacement.</p><p><strong>Phase Two: Absorb and Innovate (Mid-2000s&#8211;2014)</strong></p><p>China&#8217;s own framing for this period is instructive. Beijing-based <a href="https://www.diplomaticourier.com/posts/the-global-implications-of-chinas-national-and-cyber-security-laws">Teamsun</a>, which received technology transfers from IBM, declared its corporate strategy openly: &#8220;absorb and then innovate&#8221; &#8212; close the capability gap with the foreign partner, then replace them. That phrase is as close to an official doctrine as you&#8217;ll find stated in plain language, and it applied across sectors: auto manufacturing, pharmaceuticals, telecommunications, semiconductors, and software.</p><p>The knowledge transfer wasn&#8217;t purely transactional. It moved through laboratories, through graduate programs, through the daily friction of joint operations. What couldn&#8217;t be absorbed through proximity was taken through other means. China&#8217;s commercial espionage targeting during this period was neither random nor opportunistic. It followed China&#8217;s five-year industrial acquisition priorities almost exactly.</p><p><strong>Phase Three: The Legal Architecture of Control (2014&#8211;2017)</strong></p><p>Around 2014, the posture shifted. Beijing began building a legal architecture that signaled the extraction phase was ending. The Counter-Espionage Law (2014), National Security Law (2015), Cybersecurity Law (2016), and National Intelligence Law (2017) each expanded state control over foreign firms&#8217; operations in China. The 2015 law required all information systems in China to be &#8220;secure and controllable&#8221; &#8212; meaning every company, foreign or domestic, had to provide the government with source code, encryption keys, and backdoor network access.</p><p>The HP case from that same year illustrates the dynamic. In 2015, <a href="https://www.nytimes.com/2015/05/22/business/dealbook/hewlett-packard-sells-51-stake-in-china-unit-to-tsinghua-university.html">Hewlett-Packard</a> sold 51% of its China networking and server operations &#8212; a $4.5 billion business &#8212; to an arm of Tsinghua University. China&#8217;s restrictions on foreign technology vendors had made HP&#8217;s position untenable without concessions. IBM, the first major U.S. tech company to comply with the &#8220;secure and controllable&#8221; requirements, began delivering technical knowledge about high-end servers to Teamsun &#8212; the same partner that had declared its intention to replace IBM in the Chinese market entirely.</p><p><strong>Phase Four: The Trigger Point (2017)</strong></p><p>The publication of China&#8217;s <a href="https://www.tandfonline.com/doi/full/10.1080/10670564.2024.2333492">New Generation Artificial Intelligence Development Plan</a> in July 2017 was the line of demarcation for AI specifically. Rather than continuing to solicit Western expertise, the plan called for &#8220;indigenous innovation&#8221; &#8212; a formal declaration that the absorption phase was over and the generation phase had begun. It explicitly fused civilian AI development with military applications through civil-military integration doctrine. That fusion is the direct line between 2017 and the 2026 Manus decision.</p><p><strong>The Pattern</strong></p><p><em>Invitation &#8594; extraction &#8594; absorption &#8594; legislation &#8594; exclusion</em></p><p>In telecommunications, the welcome mat disappeared when Huawei emerged as a global competitor. In auto manufacturing, the joint venture requirements were formally removed in 2022 &#8212; widely viewed as a victory for foreign firms &#8212; but by then Chinese EV manufacturers had already overtaken the Western firms that trained their engineers. In AI, the welcome mat didn&#8217;t disappear quietly. Beijing pulled it back in public, with a one-line administrative order that named the thing it was protecting.</p><h3>IV. The University Rankings as Structural Evidence</h3><p>The Manus decision reflects a Chinese AI ecosystem that has reached genuine capability &#8212; not just in specific applications, but at the foundational research level that produces next-generation breakthroughs. According to <a href="https://www.insidecyberwarfare.com/p/the-top-universities-in-computer">CSRankings</a> &#8212; a metrics-based assessment of the world&#8217;s leading computer science universities &#8212; all of the world&#8217;s top ten AI universities between late 2025 and early 2026 are in Asia, with China holding eight positions including the top seven. The United States contributes two universities to the top twenty.</p><p>Tsinghua University has produced more of the world&#8217;s 100 most-cited AI research papers than any other institution, and generates more AI-related patents each year than MIT, Stanford, Princeton, and Harvard combined. Peking University topped a global list of institutions ranked by AI research output since 2022. Chinese institutions took five of the top ten spots in 2024 publication rankings.</p><p>The pipeline matters as much as the current output. China graduated 3.57 million STEM students in 2020 compared with 820,000 in the United States &#8212; a figure state media now reports may exceed five million annually. That pipeline is producing frontier-level work domestically rather than exporting it to American universities and corporations.</p><p>DeepSeek is the illustration. Its founder, Liang Wenfeng, graduated from Zhejiang University. His team is composed almost exclusively of Chinese nationals fresh out of Tsinghua and Peking University &#8212; not returnees from American institutions, not veterans of OpenAI or DeepMind. Domestic talent, trained domestically, producing a model that rattled the American AI establishment at launch.</p><p>When Meta announced its Superintelligence Lab, all eleven founding researchers were educated outside the United States &#8212; and seven were born in China. America&#8217;s most ambitious AI initiative was built substantially on Chinese talent. Beijing watched that dynamic and decided the outflow had to stop.</p><h3>V. Beijing&#8217;s Veto Is the Tell</h3><p>Analysts have spent years debating whether Chinese AI capability is genuine or derivative &#8212; whether DeepSeek&#8217;s efficiency gains represent true innovation or clever optimization of borrowed foundations, whether the rankings mean what they appear to mean. Beijing just answered that question, not in a think tank paper but by issuing exit bans on two engineers and blocking a deal at the National Security Commission level.</p><p>&#8220;China is showing the world that it is willing to play hardball when it comes to AI talents and capabilities, which the country views as a core national security asset,&#8221; according to Lian Jye Su, chief analyst at Omdia. The acquisition ban, he noted, is &#8220;strongly indicative of what Chinese authorities may do going forward regarding acquisitions involving Chinese deep-tech companies.&#8221;</p><p>The machinery China deployed &#8212; regulatory reversal, travel restrictions, NSC elevation &#8212; is reserved for assets it cannot afford to lose. If Manus&#8217;s technology were replaceable, Beijing would have let Meta have it.</p><p></p><p></p><p><em>Jeff Caruso is the Founder and Managing Partner of the <a href="https://whitefishsecuritysummit.com">Whitefish Security Summit</a>, which he co-organizes with Mick Mulroy, former Deputy Assistant Secretary of Defense, and CDR Eric Oehlerich USN (Ret., DEVGRU). He founded the Suits and Spooks conference in 2011 and publishes national security analysis at InsideCyberWarfare on Substack.</em></p>]]></content:encoded></item><item><title><![CDATA[The Singapore-Washing Gambit for Chinese Tech Entrepeneurs]]></title><description><![CDATA[Thirteen examples before the Manus AI acquisition got nixed by Beijing]]></description><link>https://www.insidecyberwarfare.com/p/the-singapore-washing-gambit-for</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/the-singapore-washing-gambit-for</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Tue, 05 May 2026 13:06:52 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!F2MR!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!F2MR!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!F2MR!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg 424w, https://substackcdn.com/image/fetch/$s_!F2MR!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg 848w, https://substackcdn.com/image/fetch/$s_!F2MR!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!F2MR!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!F2MR!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg" width="1000" height="666" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:666,&quot;width&quot;:1000,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;A view of the central business district skyline in Singapore on May 27, 2025. &#8212; Reuters pic&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A view of the central business district skyline in Singapore on May 27, 2025. &#8212; Reuters pic" title="A view of the central business district skyline in Singapore on May 27, 2025. &#8212; Reuters pic" srcset="https://substackcdn.com/image/fetch/$s_!F2MR!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg 424w, https://substackcdn.com/image/fetch/$s_!F2MR!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg 848w, https://substackcdn.com/image/fetch/$s_!F2MR!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!F2MR!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F717c088e-bfbb-4be5-a75a-09214546988b_1000x666.jpeg 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">A view of the central business district skyline in Singapore on May 27, 2025. &#8212; Reuters</figcaption></figure></div><p>Singapore has a long history of being a convenient place for both Russian and Chinese companies to set up their global or regional headquarters. For AI companies like Manus, it offers the following specific benefits:</p><ul><li><p>It&#8217;s easier for Chinese startups based in Singapore to attract Western investment capital</p></li><li><p>Access to Nvidia H100/H800 GPUs blocked under <strong><a href="https://cryptorank.io/news/feed/fd5d0-chinese-ai-startups-relocate-to-singapore">US export controls</a></strong></p></li><li><p>Singapore&#8217;s 17% corporate tax, English-Mandarin bilingual workforce, and Southeast Asia market access</p></li><li><p>Frustration over China&#8217;s 2023&#8211;2024 VC environment (<strong><a href="https://www.bloomberg.com/news/articles/2024-06-30/china-s-ai-startups-head-to-singapore-in-a-bid-for-global-growth">Tabcut founders</a></strong> cited months-long diligence)</p></li></ul><p>While the Manus AI acquisition by Facebook is the latest example of this trend, I&#8217;ve identified thirteen other examples since 2023 that are contained in the downloadable spreadsheet, including hyperscale data center giant <strong>DayOne</strong> (spun out of GDS Holdings with nearly $4 billion raised), AI-for-pharma leaders <strong>Deep Intelligent Pharma</strong> and <strong>ChemLex</strong>, Temasek-backed enterprise AI platform <strong>Whale</strong>, conversational AI veterans <strong>Wiz.ai</strong> and <strong>AI Rudder</strong>, Tencent-pedigreed video generation startup <strong>Video Rebirth</strong>, AGI research outfit <strong>Sapient Intelligence</strong>, Vue.js creator Evan You's developer-tools company <strong>VoidZero</strong>, ex-Ele.me founders' consumer AI bet <strong>Orion Arm</strong> (Toki and Syft), e-commerce video tool <strong>TopviewAI</strong>, the Bloomberg-famous "Singapore-washing" poster child <strong>Tabcut</strong>, and the cautionary tale <strong>Megaspeed</strong>, now unraveling under US, Singaporean, and Malaysian investigations into alleged Nvidia GPU smuggling. </p><div class="file-embed-wrapper" data-component-name="FileToDOM"><div class="file-embed-container-reader"><div class="file-embed-container-top"><image class="file-embed-thumbnail-default" src="https://substackcdn.com/image/fetch/$s_!0Cy0!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack.com%2Fimg%2Fattachment_icon.svg"></image><div class="file-embed-details"><div class="file-embed-details-h1">China To Singapore Startups</div><div class="file-embed-details-h2">15.5KB &#8729; XLSX file</div></div><a class="file-embed-button wide" href="https://www.insidecyberwarfare.com/api/v1/file/f26ef445-8cc8-43f2-a4f4-4ff241f81e0b.xlsx"><span class="file-embed-button-text">Download</span></a></div><a class="file-embed-button narrow" href="https://www.insidecyberwarfare.com/api/v1/file/f26ef445-8cc8-43f2-a4f4-4ff241f81e0b.xlsx"><span class="file-embed-button-text">Download</span></a></div></div><p>Russian firms who have moved to Singapore for some of the same reasons include Yandex, Acronis, and Group-IB. </p>]]></content:encoded></item><item><title><![CDATA[The Middle East Changed Overnight. We Had a Panel by Morning.]]></title><description><![CDATA[How the Whitefish Security Summit assembled a world-class panel on the Iran strikes in under 24 hours &#8212; and why that ability is the whole point.]]></description><link>https://www.insidecyberwarfare.com/p/the-middle-east-changed-overnight</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/the-middle-east-changed-overnight</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Fri, 24 Apr 2026 11:03:16 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!HarS!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!HarS!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!HarS!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg 424w, https://substackcdn.com/image/fetch/$s_!HarS!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg 848w, https://substackcdn.com/image/fetch/$s_!HarS!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!HarS!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!HarS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg" width="1456" height="907" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:907,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:5111459,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/195312598?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!HarS!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg 424w, https://substackcdn.com/image/fetch/$s_!HarS!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg 848w, https://substackcdn.com/image/fetch/$s_!HarS!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!HarS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2ab8b3a7-9971-436e-afc1-fc57957bc5cf_3300x2056.jpeg 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">From Left to Right: Michael &#8220;Mick&#8221; Mulroy, Eric &#8220;Olly&#8221; Oehlerich, Tony DeMario</figcaption></figure></div><p>The bombs had already fallen. It was the evening of April 1st &#8212; the day before the 2026 Whitefish Security Summit was set to open &#8212; and it was unmistakably clear that the event could not proceed as if the world hadn&#8217;t just changed. The question wasn&#8217;t whether to address it. The question was how fast we could do it right.</p><p>This is the kind of moment that exposes the difference between a conference and a convening. Most events would have scrambled, apologized, and added a panel for next year. We had a panel on the floor of WSS 2026 within hours &#8212; credentialed, contextual, and substantive.</p><p><em><strong>The ability to do this isn&#8217;t luck. It&#8217;s the whole architecture of what we&#8217;ve built.</strong></em></p><p>Nancy Youssef, national security correspondent and one of the most respected voices on U.S. military operations, joined remotely as moderator. Colby Connelly of Energy Intelligence provided the energy economics lens &#8212; critical context given Iran&#8217;s position in global oil markets and the downstream consequences of any sustained campaign. On the ground in Whitefish, we had Mick Mulroy and Eric &#8220;Olly&#8221; Oehlerich of the Lobo Institute, both of whom have operational histories in that region that few in any room could match. And seated with them: Tony DeMario, EVP at Strider Technologies, whose CIA career included a posting as Chief of Operations for Iran andCounterterrorism.</p><p>Put that panel together on a stage anywhere else in the world on 24 hours&#8217; notice and it would be considered extraordinary. At WSS, it was Tuesday.</p><div><hr></div><p><strong>Panel &#8212; assembled in under 24 hours</strong></p><p><strong>Nancy Youssef </strong>National security correspondent, The Atlantic &#8212; Moderator, Remote</p><p><strong>Colby Connelly </strong>Senior Analyst, Energy Intelligence &#8212; Energy Economics, remote</p><p><strong>Mick Mulroy </strong>Co-founder,<strong> </strong>Lobo Institute &#8212; former Deputy Asst. Secretary of Defense; CIA Paramilitary Officer</p><p><strong>Eric &#8220;Olly&#8221; Oehlerich </strong>Co-founder,<strong> </strong>Lobo Institute &#8212; Commanding Officer, DEVGRU Squadron Two<br>U.S. Navy (Ret.)</p><p><strong>Tony DeMario </strong>EVP,<strong> </strong>Strider Technologies &#8212; former CIA Chief of Operations, Iran &amp; Counterterrorism (Ret.)</p><div><hr></div><p>The panel ranked in the top three of the entire summit in post-event attendee surveys. That outcome didn&#8217;t surprise us &#8212; but it confirmed something important. The practitioners in that room weren&#8217;t looking for analysis they could find on cable news or in a think-tank PDF. They were looking for the conversation that happens between people who have actually operated in that space. The panel delivered exactly that.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!7TI-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!7TI-!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png 424w, https://substackcdn.com/image/fetch/$s_!7TI-!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png 848w, https://substackcdn.com/image/fetch/$s_!7TI-!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png 1272w, https://substackcdn.com/image/fetch/$s_!7TI-!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!7TI-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png" width="1456" height="886" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:886,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:19532435,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/195312598?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!7TI-!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png 424w, https://substackcdn.com/image/fetch/$s_!7TI-!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png 848w, https://substackcdn.com/image/fetch/$s_!7TI-!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png 1272w, https://substackcdn.com/image/fetch/$s_!7TI-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F39e3b46d-bb22-495f-b0ac-034c6e8353e6_7780x4736.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The WSS model is built on a simple but hard-to-replicate premise: when you spend years cultivating genuine relationships with the people who matter &#8212; the operators, the intelligence officers, the energy economists, the defense policymakers &#8212; you can call on them when the moment demands it. Not in six weeks. Not after a program committee review. Now.</p><p>National security doesn&#8217;t pause for event calendars. The Whitefish Security Summit was designed with that reality in mind. What you saw on April 2nd is what that design looks like under pressure.</p><p>Thank you to our 2026 sponsors, who all believed in our mission and whose support made panels like this one possible: <a href="https://www.striderintel.com/">Strider Technologies</a>, <a href="https://www.red5security.com/">Red5</a>, <a href="https://heliorisk.com/">Helio Risk</a>, <a href="https://www.ledlowsecurity.com/">Ledlow Security Group</a>, <a href="https://5stonesintelligence.com/">5 Stones Intelligence</a>, <a href="https://acorncapitalmanagement.com/">Acorn Capital Management</a>, <a href="https://www.in-network.org/">IN Network</a>, and <a href="https://www.fourbranches.com/">Four Branches Bourbon</a>.</p><div><hr></div><p><a href="https://whitefishsecuritysummit.com">WSS 2027</a> opens February 24th in Whitefish, Montana. Theme: <em>Rings of Disruption &#8212; The 2027 Threat Landscape.</em> Sponsorship and attendance inquiries are open now.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://whitefishsecuritysummit.com&quot;,&quot;text&quot;:&quot;Learn More&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://whitefishsecuritysummit.com"><span>Learn More</span></a></p><p></p>]]></content:encoded></item><item><title><![CDATA[China Already Has Mythos — They Just Haven’t Named It]]></title><description><![CDATA[What sixteen years of Chinese academic research reveals about AI-powered vulnerability discovery &#8212; and what comes next when two of these systems meet each other in the dark.]]></description><link>https://www.insidecyberwarfare.com/p/china-already-has-mythos-they-just</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/china-already-has-mythos-they-just</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Sat, 18 Apr 2026 02:06:06 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!2YVR!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2>I. The Mythos Moment &#8212; and What It Obscures</h2><p>On April 7, 2026, Anthropic unveiled Claude Mythos Preview under Project Glasswing &#8212; a controlled-access program that immediately sent shockwaves through the technology and national security communities. In internal testing, Mythos had identified thousands of previously unknown zero-day vulnerabilities across every major operating system and web browser, reproduced vulnerabilities and developed working exploits on the first attempt in over 83 percent of cases, and in one documented instance uncovered a 27-year-old vulnerability in OpenBSD. Anthropic judged the model too dangerous for general release.</p><p>The U.S. government&#8217;s response illustrated a contradiction that would be comic if the stakes weren&#8217;t so high. The Department of Defense, which had formally designated Anthropic a supply-chain risk on March 3 and been upheld in that designation by the D.C. Circuit on April 8, was simultaneously watching civilian agencies rush toward the very company it had blacklisted. The Office of Management and Budget circulated an internal memo positioning Cabinet-level departments for Mythos access. Treasury Secretary Scott Bessent convened senior American bankers to urge them to use the model against their own networks. Goldman Sachs, Citigroup, Bank of America, and Morgan Stanley were reported to be testing it.</p><p>An <a href="https://www.storyboard18.com/brand-marketing/white-house-pushes-for-claudes-mythos-despite-anthropic-pentagon-feud-95431.htm">administration official </a>summarized the situation with unintentional precision: &#8220;There&#8217;s progress with the White House. There&#8217;s not progress with the Department of War.&#8221;</p><p>OpenAI <a href="https://www.wired.com/story/in-the-wake-of-anthropics-mythos-openai-has-a-new-cybersecurity-model-and-strategy/">announced</a> its own equivalent capability would follow shortly. The narrative crystallizing in Washington and on Wall Street was one of breakthrough &#8212; a threshold crossed, a new era begun.</p><p><em>The narrative of American breakthrough is almost certainly incomplete. The more accurate frame is one of American announcement.</em></p><p>That narrative is almost certainly incomplete. And a systematic review of Chinese academic literature makes the case plainly: the more accurate frame is not breakthrough but announcement. The capability has been under development in China for at least sixteen years. The question worth asking is not whether China has something like Mythos. The question is what they&#8217;re calling it internally, and how far ahead of their published record their operational systems actually run.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2YVR!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2YVR!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png 424w, https://substackcdn.com/image/fetch/$s_!2YVR!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png 848w, https://substackcdn.com/image/fetch/$s_!2YVR!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png 1272w, https://substackcdn.com/image/fetch/$s_!2YVR!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2YVR!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png" width="1456" height="1145" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1145,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:850248,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/194575641?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!2YVR!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png 424w, https://substackcdn.com/image/fetch/$s_!2YVR!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png 848w, https://substackcdn.com/image/fetch/$s_!2YVR!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png 1272w, https://substackcdn.com/image/fetch/$s_!2YVR!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff40d989e-e1f9-48f4-8833-f0091a85d8ae_1468x1154.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Art by @KasperZ3R0 / Deviantart.com</figcaption></figure></div><h2>II. What the Chinese Academic Record Actually Shows</h2><p>A search of CNKI &#8212; China National Knowledge Infrastructure, the primary repository for Chinese academic and institutional research &#8212; using keyword combinations spanning AI vulnerability mining, automated exploit development, LLM-assisted fuzzing, and related terms returns 74 results spanning 2008 through February 2026. The dataset is not exhaustive. It is, however, systematic enough to establish several conclusions with confidence.</p><p>The research thread is continuous and unbroken. The earliest entry, a 2008 master&#8217;s thesis titled &#8220;Study on Vulnerability Discovery Technique Against Smart-phone,&#8221; establishes that Chinese researchers were working on automated vulnerability discovery long before the current generation of large language models existed. By 2014, research on &#8220;Smart Fuzzing Technology&#8221; appears. By 2019, multiple doctoral and master&#8217;s theses specifically address AI-powered vulnerability mining as a discrete discipline.</p><p>The publication velocity accelerates sharply after 2022 and again after 2024, tracking almost exactly with the global LLM capability curve. What was a steady research program becomes a sprint. The most directly relevant paper in the dataset &#8212; &#8220;Design of an Intelligent Software Vulnerability Mining and Penetration Testing Framework in the Context of Large Language Model Applications&#8221; &#8212; was published in February 2026 in a journal called Equipment Technology. That journal title is not incidental. Equipment Technology is a defense-adjacent publication. This is not academic curiosity.</p><p>The institutional spread is equally significant. The research appears across civilian universities, state-owned defense contractors, and direct military institutions. China Electronics Technology Group Corporation &#8212; CETC, a state-owned defense conglomerate that directly supplies the People&#8217;s Liberation Army &#8212; appears in multiple achievement entries, including a 2020 operational deliverable titled &#8220;Research and Application of Key Technologies for Integration of Information Security and Artificial Intelligence.&#8221; That is not a paper. That is a delivered capability.</p><p>Most significant is entry 27 in the dataset: a 2023 achievement co-authored by the PLA Strategic Support Force Information Engineering University. The SSF IEU is not a civilian academic institution. It is the PLA&#8217;s primary organ for cyber and information warfare capability development. Its appearance in this dataset, producing operational outputs on AI-assisted vulnerability mining, is the clearest signal that what is published represents the leading edge of something already deployed.</p><h2>III. The Group Intelligence Track &#8212; A Different Architecture</h2><p>One of the more consequential findings in the dataset is a research track that does not map cleanly onto what Anthropic has described with Mythos. Running from 2019 through 2021, a cluster of papers and operational achievements centers on what Chinese researchers call &#32676;&#26234; &#8212; group intelligence, or swarm intelligence &#8212; applied to vulnerability discovery.</p><p>The key paper, &#8220;Vulnerability Mining Mechanism based on Group Intelligence Technology,&#8221; published in Communications Technology in 2020, and a companion operational achievement from CETC titled &#8220;Research on Key Technology for Collaborative Vulnerability Mining Based on Swarm Intelligence,&#8221; describe a fundamentally different architectural approach. Rather than a single powerful model operating autonomously, the group intelligence framework envisions networked AI agents collaborating on vulnerability discovery &#8212; distributing the search space, sharing findings, and iterating collectively.</p><div class="pullquote"><p><em>China may not be building a Mythos equivalent. They may be building something architecturally distinct &#8212; and potentially more dangerous at scale.</em></p></div><p>This distinction matters for two reasons. First, it suggests China is not simply replicating Western LLM-based approaches but pursuing a parallel path that may yield different &#8212; and in some respects more scalable &#8212; results. A swarm of coordinated AI agents conducting distributed vulnerability discovery against a target network is architecturally harder to defend against than a single model, however capable. Second, it suggests that comparing Mythos to whatever China has developed may be comparing categorically different systems, which makes capability assessment significantly more difficult.</p><p>The group intelligence track is also, notably, the framework most directly suited to the scenario described in the final section of this article.</p><h2>IV. The Power Grid Signal</h2><p>Across the full 74-entry dataset, one application domain appears with striking consistency: power infrastructure. Smart grid vulnerability mining features in entries from 2017, 2018, 2019, 2020, 2021, and again in 2025. The journals involved include Jiangxi Electric Power, Zhejiang Electric Power, Chinese Journal of Power Sources, and the broader electric power research institutional network.</p><p>This is worth stating plainly. A sustained, multi-year, institutionally distributed research program focused specifically on finding vulnerabilities in power grid systems &#8212; including smart grid terminals, IoT power devices, and industrial control systems for substations &#8212; is not defensive research dressed as academic inquiry. It is target development. The consistent presence of this thread across more than eight years of published output indicates that Chinese researchers have been systematically mapping exploitable vulnerabilities in energy infrastructure with AI assistance for nearly a decade.</p><p>The implications for critical infrastructure protection in the United States and among NATO allies require no elaboration.</p><h2>V. What Is Not in the Dataset</h2><p>The CNKI database indexes peer-reviewed journals, institutional achievement records, doctoral and master&#8217;s theses, and conference proceedings. It represents work that has been cleared for publication &#8212; which in China&#8217;s system means work that has been reviewed, approved, and intentionally surfaced. Classified research, active operational programs, and PLA internal development programs do not appear here.</p><p>The SSF Information Engineering University achievement from 2023 is the most visible edge of a much larger structure. PLA cyber doctrine, as documented in open-source analysis of the Science of Military Strategy and related texts, treats offensive cyber capability as a strategic asset requiring continuous development and forward deployment. The published research suggests the capability exists. The doctrine suggests it is already operationalized.</p><p>It is reasonable to assume that China&#8217;s operational AI vulnerability discovery capability runs two to three years ahead of its published record. If the published record extends to February 2026 with LLM-integrated penetration testing frameworks, the operational system may have achieved comparable capability to Mythos in 2023 or earlier. This is inference, not confirmed intelligence. But it is inference grounded in a systematic reading of what China&#8217;s research establishment has chosen to make visible.</p><h2>VI. The Policy Implication</h2><p>The U.S. government is currently treating Mythos as a breakthrough requiring emergency access decisions. The OMB memo, the Treasury briefings, the White House negotiations with Anthropic &#8212; all reflect an institutional posture of responding to a threshold just crossed.</p><p>The Chinese academic record suggests the correct policy frame is not breakthrough response but parity management. If China achieved comparable capability in 2023 or earlier, the United States has spent two to three years in a threat environment it did not fully recognize. The question is not how to respond to what Mythos can do. The question is what Chinese systems have already done during the period when no American equivalent was deployed defensively.</p><div class="callout-block" data-callout="true"><p>The DoD&#8217;s supply-chain risk designation against Anthropic &#8212; issued precisely because Anthropic refused to strip ethical guardrails from its models for military use &#8212; has the perverse effect of delaying American defensive deployment of the capability most relevant to the threat. Whatever the merits of the underlying dispute, the operational consequence is that American defense networks remain unscanned by the class of tool that Chinese counterparts may have been running against them for years.</p></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!5vMq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!5vMq!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!5vMq!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!5vMq!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!5vMq!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!5vMq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2252196,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/194575641?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!5vMq!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!5vMq!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!5vMq!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!5vMq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe82450ce-3438-4e7d-942e-e1d403483f1e_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Original concept by the author, drawn by DALL-E</figcaption></figure></div><p>This is the institutional contradiction that the Mythos moment has made impossible to ignore.</p><h2>VII. The Cyber GAN &#8212; When the Systems Find Each Other</h2><p>There is a final dimension to this story that current policy discourse has not yet fully confronted. It begins with a question: what happens when both sides have systems like Mythos, and those systems are operating simultaneously against the same target environments?</p><p>The most useful analogy from machine learning is the Generative Adversarial Network &#8212; the GAN architecture in which a generator and a discriminator are locked in continuous competition, each improving because the other improves. Applied to AI-powered offensive and defensive cyber operations, the GAN analogy suggests an arms race dynamic that humans cannot observe in real time, let alone meaningfully intervene in.</p><p>But the GAN analogy understates the danger in one critical respect. In a classical GAN, the generator and discriminator share an objective function and a training environment. They are, in a meaningful sense, optimizing toward the same goal from opposite sides. In a real cyber conflict between opposing AI systems, the offensive and defensive networks operate on asymmetric information &#8212; neither system fully understands the other&#8217;s architecture, objectives, or decision logic. A GAN eventually converges. Opposing cyber AI networks operating on asymmetric information may not. There is no equilibrium-seeking mechanism built into the interaction.</p><div class="pullquote"><p><em>The scenario removes human decision-making from the loop &#8212; not because anyone decided to remove it, but because the exchange rate between AI action and human comprehension makes human oversight functionally irrelevant.</em></p></div><p>The more precise term for what this produces is an Autonomous Adversarial Cyber Ecosystem &#8212; an environment in which AI systems on both sides are developing, testing, and deploying offensive capabilities against each other faster than any human decision-making chain can track, approve, or constrain. The human commanders nominally in charge of these operations are, in the relevant time frame, passengers.</p><p>This is not a speculative future scenario. The Chinese group intelligence research track, with its emphasis on networked AI agents collaborating on distributed vulnerability discovery, is architecturally suited to exactly this dynamic. A swarm of coordinated agents probing a target network, sharing findings in real time, and iterating collectively against adaptive defenses is the offensive side of an adversarial ecosystem. The defensive side &#8212; AI systems attempting to detect, characterize, and respond to these probes &#8212; completes the loop.</p><p>Once both sides have deployed systems of this class against the same infrastructure, the interaction dynamic itself becomes the primary threat &#8212; independent of any specific attack, independent of any specific actor&#8217;s intent. The ecosystem generates emergent behavior that neither side designed, controls, or can reliably predict.</p><p>The policy community is not yet thinking in these terms. It is still asking whether Mythos represents a breakthrough, whether the DoD designation of Anthropic should be lifted, whether civilian agencies should get access. These are real questions. But they are upstream questions. The downstream question &#8212; what happens when the systems are already in contact &#8212; is the one that will define the threat environment of the next decade.</p><p>The Whitefish Security Summit exists precisely to have conversations that other forums are not yet having. This one is overdue.</p><div><hr></div><p><strong>METHODOLOGY NOTE</strong></p><p>The Chinese academic literature cited in this article was retrieved from CNKI (China National Knowledge Infrastructure) using keyword searches spanning AI vulnerability mining, LLM-assisted penetration testing, fuzzing-based exploit development, and related terms. The dataset of 74 results spans 2008&#8211;2026. CNKI indexes peer-reviewed journals, institutional achievement records, and graduate theses cleared for publication; it does not capture classified or operationally sensitive PLA research. All institutional attributions are drawn directly from author affiliations as listed in the CNKI records.</p><p><em>Jeff Caruso is the Founder and Managing Partner of the Whitefish Security Summit and the Suits and Spooks conference brand, and publishes analysis at www.InsideCyberWarfare.com on Substack.</em></p>]]></content:encoded></item><item><title><![CDATA[Spies, Generals, and a 37-Degree Lake: Inside the Inaugural Whitefish Security Summit ]]></title><description><![CDATA[The first dispatch from two days that proved the concept.]]></description><link>https://www.insidecyberwarfare.com/p/spies-generals-and-a-37-degree-lake</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/spies-generals-and-a-37-degree-lake</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Tue, 14 Apr 2026 12:03:24 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!blIu!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>The inaugural <a href="https://whitefishsecuritysummit.com">Whitefish Security Summit</a>, sponsored by <a href="https://www.striderintel.com/">Strider Technologies</a>, <a href="https://www.red5security.com/">Red5</a>, <a href="https://heliorisk.com/">Helio Risk</a>, <a href="https://www.ledlowsecurity.com/">Ledlow Security Group</a>, <a href="https://5stonesintelligence.com/">5 Stones Intelligence</a>, <a href="https://acorncapitalmanagement.com/">Acorn Capital Management</a>,  and <a href="https://www.fourbranches.com/">Four Branches Bourbon</a>, wrapped on Saturday, April 4th. </p><p>Nine months in the making, two name changes, three location changes &#8212; and then Whitefish. Over 130 people signed up to attend our first event and 86% have said they want to come back in 2027. </p><p>So much happened in just two days that it&#8217;s impossible to capture it all in one article, so I&#8217;ll be doing a series of highlights over the next 30 days, starting off with some images and feedback from those who attended.</p><p>Many of our attendees were Intelligence and Military veterans who took no convincing to do PT in near-freezing temps before breakfast.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!blIu!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!blIu!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg 424w, https://substackcdn.com/image/fetch/$s_!blIu!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg 848w, https://substackcdn.com/image/fetch/$s_!blIu!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!blIu!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!blIu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2750999,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/194089116?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!blIu!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg 424w, https://substackcdn.com/image/fetch/$s_!blIu!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg 848w, https://substackcdn.com/image/fetch/$s_!blIu!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!blIu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd2f2c7d-be07-47c1-8116-c8a564ea247a_2000x1334.jpeg 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">A pre-dawn run through downtown Whitefish on day one</figcaption></figure></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Qhuz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Qhuz!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Qhuz!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Qhuz!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Qhuz!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Qhuz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1866187,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/194089116?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Qhuz!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Qhuz!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Qhuz!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Qhuz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888bfed0-3acb-4036-b801-5d0f65213400_2000x1334.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">The pre-polar swim briefing by Whitefish Security Summit co-founder Eric &#8220;Olly&#8221; Oehlerich, former Commanding Officer (CO) of Naval Special Warfare Development Group- Squadron 2 (Retired)</figcaption></figure></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!7LKs!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!7LKs!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg 424w, https://substackcdn.com/image/fetch/$s_!7LKs!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg 848w, https://substackcdn.com/image/fetch/$s_!7LKs!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!7LKs!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!7LKs!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1745197,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/194089116?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!7LKs!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg 424w, https://substackcdn.com/image/fetch/$s_!7LKs!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg 848w, https://substackcdn.com/image/fetch/$s_!7LKs!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!7LKs!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2da2bd15-fa03-41a4-acf0-456b63c748a3_2000x1334.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">6:30am Polar Swim on April 3, 2026</figcaption></figure></div><blockquote><p>&#8220;A core lesson came from combining Stanley McChrystal&#8217;s leadership insights with our morning PT, especially the 6:30 AM swim training in a 37&#176;F Montana lake, led by Eric Oehlerich, former U.S. Navy SEAL and Commanding Officer of DEVGRU (Squadron 2). It made one thing clear: theory means little without execution. The water is cold, whether you like it or not. The real question is whether you perform and lead when it matters.&#8221; - Cassian Pe&#241;a (WSS Young Professional attendee)</p></blockquote><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!PfQw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!PfQw!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png 424w, https://substackcdn.com/image/fetch/$s_!PfQw!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png 848w, https://substackcdn.com/image/fetch/$s_!PfQw!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png 1272w, https://substackcdn.com/image/fetch/$s_!PfQw!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!PfQw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png" width="1456" height="922" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:922,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3059961,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/194089116?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!PfQw!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png 424w, https://substackcdn.com/image/fetch/$s_!PfQw!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png 848w, https://substackcdn.com/image/fetch/$s_!PfQw!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png 1272w, https://substackcdn.com/image/fetch/$s_!PfQw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffc2ecbf5-8acc-4c49-83fd-b3e804f456ec_1664x1054.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Gen. Stanley McChrystal gave the keynote from Washington DC, after an introduction by former CIA Iran Operations Chief and EVP of Strider Technologies, Anthony DeMario</figcaption></figure></div><blockquote><p>&#8220;I appreciated the opportunity to virtually join the event. You&#8217;ve assembled an impressive mix of talent and expertise.&#8221; - Stan McChrystal (Founder and CEO, The McChrystal Group)</p></blockquote><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!QAbG!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!QAbG!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg 424w, https://substackcdn.com/image/fetch/$s_!QAbG!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg 848w, https://substackcdn.com/image/fetch/$s_!QAbG!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!QAbG!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!QAbG!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg" width="1456" height="1092" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1092,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:470963,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/194089116?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!QAbG!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg 424w, https://substackcdn.com/image/fetch/$s_!QAbG!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg 848w, https://substackcdn.com/image/fetch/$s_!QAbG!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!QAbG!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97f15814-b52d-4bc4-925a-521b2b16544b_2048x1536.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">From the left: Iron Butterfly Media co-founders Cadie Naquin Hopkins and Megan Jaffer, CIA veterans Laura Thomas and Carmen Medina, and 9-year old future spy Natalie</figcaption></figure></div><blockquote><p>&#8220;My favorite memory from the summit, was being able to bring my daughter Natalie to see the documentary &#8220;The Power We Hold: Stories from Women Spies&#8221; and for her to meet so many great people from the Community. I think that the summit&#8217;s inspiring experience will stay with her for the rest of her life.&#8221; - Matt Zacharias (Attendee)</p></blockquote><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!roga!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!roga!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg 424w, https://substackcdn.com/image/fetch/$s_!roga!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg 848w, https://substackcdn.com/image/fetch/$s_!roga!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!roga!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!roga!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg" width="640" height="640" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:640,&quot;width&quot;:640,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:282624,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/194089116?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!roga!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg 424w, https://substackcdn.com/image/fetch/$s_!roga!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg 848w, https://substackcdn.com/image/fetch/$s_!roga!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!roga!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb325f683-e269-401b-aa0e-706ce175a94a_640x640.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Kyle Sweet, CSO of Helio Risk, at our Howler&#8217;s Ridge fundraiser, discussing how he and his guests can support PTSD treatment protocols planned for Howler&#8217;s Ridge with actor Taylor Kitsch (Terminal List: Dark Wolf)</figcaption></figure></div><blockquote><p>"The WSS was a tremendous experience for our company. Exploring global risks and projected issues in geopolitics and national security, intelligence and defense is exactly the type of gathering we've been looking for. The collaborative model of the WSS lends itself really well towards interacting with true subject matter experts. We are already looking forward to next year. Best summit in best environment." - Kyle Sweet (Chief Strategy Officer, Helio Risk)</p></blockquote><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!mjeT!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!mjeT!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png 424w, https://substackcdn.com/image/fetch/$s_!mjeT!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png 848w, https://substackcdn.com/image/fetch/$s_!mjeT!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png 1272w, https://substackcdn.com/image/fetch/$s_!mjeT!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!mjeT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png" width="1455" height="1241" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1241,&quot;width&quot;:1455,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1516899,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/194089116?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!mjeT!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png 424w, https://substackcdn.com/image/fetch/$s_!mjeT!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png 848w, https://substackcdn.com/image/fetch/$s_!mjeT!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png 1272w, https://substackcdn.com/image/fetch/$s_!mjeT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6122af86-c5d4-442f-93b1-75ea5504fa43_1455x1241.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Howard Gordon: Co-creator of Homeland;  Showrunner- 24 and X-Files</figcaption></figure></div><blockquote><p>&#8220;My favorite memory was more of a post-event observation about the depth and breadth of super-smart, serious people - both presenters and attendees - who were there.&#8221; - Howard Gordon (Award-winning Writer and Producer)</p></blockquote><p>This is the first in a series of dispatches from the inaugural Whitefish Security Summit. Part II drops Monday, April 20th, with additional attendee feedback, photography from across the two days, and deeper coverage of the programming. Video coverage will follow in Part III.</p><p>None of this would have been possible without the support of our sponsors: <a href="https://www.striderintel.com/">Strider Technologies</a>, <a href="https://www.red5security.com/">Red5</a>, <a href="https://heliorisk.com/">Helio Risk</a>, <a href="https://www.ledlowsecurity.com/">Ledlow Security Group</a>, <a href="https://5stonesintelligence.com/">5 Stones Intelligence</a>, <a href="https://acorncapitalmanagement.com/">Acorn Capital Management</a>,  and <a href="https://www.fourbranches.com/">Four Branches Bourbon</a>. Their investment in this community made the Summit what it was &#8212; and we&#8217;re grateful.</p><p>Subscribe below to follow the series, and if you were there, we want to hear from you.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.insidecyberwarfare.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.insidecyberwarfare.com/subscribe?"><span>Subscribe now</span></a></p><p></p>]]></content:encoded></item><item><title><![CDATA[Taylor Kitsch and the Whitefish Security Summit Present: A Benefit Dinner for Howlers Ridge]]></title><description><![CDATA[Support Taylor's vision for a nature-based healing retreat for veterans, trauma survivors, and people in recovery from substance use disorders.]]></description><link>https://www.insidecyberwarfare.com/p/taylor-kitsch-and-the-whitefish-security</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/taylor-kitsch-and-the-whitefish-security</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Sat, 28 Mar 2026 23:06:40 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!P-4L!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F256e0ca1-0485-43ca-aa7e-50009bc19230_3114x2064.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="image-gallery-embed" data-attrs="{&quot;gallery&quot;:{&quot;images&quot;:[{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/256e0ca1-0485-43ca-aa7e-50009bc19230_3114x2064.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/46cdc9a9-2e7c-4dbc-80ba-730d34fff4c1_2102x1572.png&quot;}],&quot;caption&quot;:&quot;22 Acres of undeveloped land outside of Bozeman, MT is the future home of Howler's Ridge&quot;,&quot;alt&quot;:&quot;&quot;,&quot;staticGalleryImage&quot;:{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/970698c6-b7e2-409a-ac35-8244184acd22_1456x720.png&quot;}},&quot;isEditorNode&quot;:true}"></div><p>Taylor&#8217;s connection to the special operations and intelligence communities is genuine, personal, and well known to everyone in that room.</p><p>He portrayed Lieutenant Michael P. Murphy in <em>Lone Survivor</em> &#8212; and has described Marcus Luttrell as a brother, a relationship that continued long after filming ended. In <em>The Terminal List</em> and <em>The Terminal List: Dark Wolf</em> &#8212; co-created by former Navy SEAL Jack Carr &#8212; he plays Ben Edwards, a SEAL Chief who crosses into CIA paramilitary operations. <em>Dark Wolf</em> premiered in August 2025 on Prime Video. He is an executive producer on <em>Dark Wolf</em> &#8212; not a hired actor, but an invested creative partner in stories about the people who will be sitting across the table from him that night.</p><p>On Thursday evening, April 3, at the Whitefish Security Summit, we are dedicating a two-hour dinner to a single purpose: launching Howlers Ridge&#8217;s major donor network.</p><div><hr></div><p><strong>Howlers Ridge</strong></p><p>Howlers Ridge is a 501(c)(3) nonprofit retreat center on 22 acres outside Bozeman, Montana &#8212; founded by Taylor to provide nature-based healing for veterans, trauma survivors, and people in recovery from substance use disorders. The facility is under construction and will offer residential retreat programs grounded in wilderness experience and trauma-informed care.</p><p>The need is not abstract to anyone in this room. Suicide rates among special operations veterans remain significantly higher than the general population. The intersection of combat trauma and substance use is well documented and poorly served by existing systems. Howlers Ridge is being built to address exactly that gap &#8212; in a Montana landscape that is, for many of these veterans, home.</p><div><hr></div><p><strong>The Evening</strong></p><p><strong>4:30 PM &#8212; Pre-Dinner Reception</strong> Taylor circulates freely. Informal, unhurried. Every ticket holder has access.</p><p><strong>5:15 PM &#8212; Dinner Begins / Welcome Remarks</strong> Jeff Caruso, Managing Partner, Whitefish Security Summit</p><p><strong>5:30 PM &#8212; Taylor Kitsch: Howlers Ridge</strong> Personal story, the vision, current build progress, and why now.</p><p><strong>5:55 PM &#8212; Veterans Panel</strong> Ground-level perspective on veteran mental health and recovery &#8212; the gap this facility is built to fill.</p><p><strong>6:20 PM &#8212; Q&amp;A with the Room</strong> Open conversation. This audience will drive it.</p><p><strong>6:55 PM &#8212; Closing Remarks + Giving Opportunity</strong> Direct appeal. WSS will facilitate follow-up for anyone interested in a larger conversation.</p><p><strong>7:00 PM &#8212; Post-Dinner Private Reception / Founding Donors</strong> Closed, intimate. Taylor available.</p><div><hr></div><p><strong>Tickets</strong></p><p><strong>Patron &#8212; $1,000</strong> Pre-dinner reception and dinner. Full program access.</p><p><strong>Benefactor &#8212; $2,500</strong> Above, plus priority seating and your name in the printed donor acknowledgment distributed to the room.</p><p><strong>Founding Donor &#8212; $5,000</strong> Above, plus post-dinner private reception with Taylor and a warm introduction to Howlers Ridge for larger partnership conversations.</p><p><em>Tax deductibility: Howlers Ridge is a registered 501(c)(3) nonprofit. The portion of your ticket exceeding the fair market value of goods and services received (food, beverage, and program access) qualifies as a charitable contribution. WSS will forward proceeds on a per-donor basis in your name, and Howlers Ridge will issue a written acknowledgment reflecting the deductible portion of your contribution.</em></p><h2>Contact</h2><p>Space is limited. To reserve your seat:</p><p><strong>Jeff Caruso &#8226; Founder &amp; Managing Partner, Whitefish Security Summit</strong></p><div class="directMessage button" data-attrs="{&quot;userId&quot;:27793,&quot;userName&quot;:&quot;Jeffrey Caruso&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div>]]></content:encoded></item><item><title><![CDATA[The Valley of Flowing Gold]]></title><description><![CDATA[CCP uses AI animation and a Chow Bros style to mock Trump and promote its One Belt One Road initiative]]></description><link>https://www.insidecyberwarfare.com/p/the-valley-of-flowing-gold</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/the-valley-of-flowing-gold</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Sat, 21 Mar 2026 17:35:15 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Jmgx!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;866fb91f-a3e8-4528-9236-25e8257012f0&quot;,&quot;duration&quot;:null}"></div><p>China Central Television (CCTV) is China&#8217;s national television broadcaster &#8212; and the Publicity Department of the Chinese Communist Party. In this case, they deserve a raise.</p><p>&#8220;White Eagle and Persian Cat: Chronicles of Love and Hate in the Valley of Gold&#8221; is a brilliant piece of propaganda. It wraps a genuinely clever geopolitical argument inside a beloved 1970s Chow Brothers Kung Fu format with cute anthropomorphic characters &#8212; and it works.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Jmgx!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Jmgx!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png 424w, https://substackcdn.com/image/fetch/$s_!Jmgx!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png 848w, https://substackcdn.com/image/fetch/$s_!Jmgx!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png 1272w, https://substackcdn.com/image/fetch/$s_!Jmgx!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Jmgx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png" width="1456" height="825" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/af5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:825,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3147096,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/191683881?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Jmgx!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png 424w, https://substackcdn.com/image/fetch/$s_!Jmgx!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png 848w, https://substackcdn.com/image/fetch/$s_!Jmgx!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png 1272w, https://substackcdn.com/image/fetch/$s_!Jmgx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faf5ba041-37e4-4313-bbb0-8cfb1965e1f4_1864x1056.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The eyeglass-wearing vulture-headed adviser (Stephen Miller) is informing the White Eagle King (Donald Trump) that the Persians are refusing to dismantle their underground core &#8212; that is, their nuclear enrichment facilities. The time to act is now.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!nwx9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!nwx9!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png 424w, https://substackcdn.com/image/fetch/$s_!nwx9!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png 848w, https://substackcdn.com/image/fetch/$s_!nwx9!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png 1272w, https://substackcdn.com/image/fetch/$s_!nwx9!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!nwx9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png" width="1456" height="825" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:825,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2200506,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/191683881?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!nwx9!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png 424w, https://substackcdn.com/image/fetch/$s_!nwx9!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png 848w, https://substackcdn.com/image/fetch/$s_!nwx9!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png 1272w, https://substackcdn.com/image/fetch/$s_!nwx9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F185e3586-d6d4-4013-a765-1e6200086baa_1864x1056.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>An assassin flies through the air, sword extended, and kills the Persian cat leader.</p><p>The Eagle King&#8217;s adviser, now panicked, delivers the post-strike math:</p><p><em>&#8220;I just did the maths. Their wooden birds cost at most two taels of silver, but each golden arrow we shoot costs at least 100 taels. This is not war! This is feeding our treasury to the dogs!&#8221;</em></p><p>The King&#8217;s reply: <em>&#8220;You shut up. How can a White Eagle be frightened by a few broken pieces of wood? Keep shooting until he has no wood!&#8221;</em></p><p>The king escalates. A school filled with Persian kittens is killed, vengeance is sworn, and a blockade of the only trading channel is initiated.</p><p>The Chamber of Commerce (NATO) is called upon to intervene and force the Persians to reopen the trade route. Instead, the Chamber discovers the old Silk Road &#8212; and while it may take a few extra days, it&#8217;s stable and reliable.</p><p><em>&#8220;Let&#8217;s find new allies and take a new path,&#8221;</em> says a Chamber member riding through the desert.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!CFv9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!CFv9!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png 424w, https://substackcdn.com/image/fetch/$s_!CFv9!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png 848w, https://substackcdn.com/image/fetch/$s_!CFv9!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png 1272w, https://substackcdn.com/image/fetch/$s_!CFv9!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!CFv9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png" width="1456" height="825" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:825,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1679417,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.insidecyberwarfare.com/i/191683881?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!CFv9!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png 424w, https://substackcdn.com/image/fetch/$s_!CFv9!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png 848w, https://substackcdn.com/image/fetch/$s_!CFv9!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png 1272w, https://substackcdn.com/image/fetch/$s_!CFv9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ae7891a-ee3d-4ecf-b7ba-f65663587b92_1864x1056.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The video closes with a slogan &#8212; a bastardization of Sun Tzu's principle of winning without fighting: <em>"The art of war is not in the fighting, but in the stopping."</em></p><div><hr></div><p>I&#8217;m sharing this because it illustrates something worth paying attention to: AI is now capable of generating emotionally resonant, strategically targeted narrative content drawn from current events in near real time. This isn&#8217;t a curiosity. It&#8217;s an information environment capability.</p><p>Storytelling and warfighting have always been inseparable. Done well, narrative shapes perception, builds will, and wins. Done poorly, it becomes a liability that turns on you. The CCP clearly knows this.</p><p>If that intersection interests you, join me and more than 100 colleagues from the worlds of national security and entertainment at the <strong>Whitefish Security Summit, April 2&#8211;4 in Whitefish, Montana.</strong></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://whitefishsecuritysummit.com&quot;,&quot;text&quot;:&quot;For More Information&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://whitefishsecuritysummit.com"><span>For More Information</span></a></p><p></p><p></p><p></p><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[15 years and 15 days]]></title><description><![CDATA[How a Palo Alto loft, a fifteen-year obsession, and the speed of story led to Whitefish, Montana]]></description><link>https://www.insidecyberwarfare.com/p/15-years-and-15-days</link><guid isPermaLink="false">https://www.insidecyberwarfare.com/p/15-years-and-15-days</guid><dc:creator><![CDATA[Jeffrey Caruso]]></dc:creator><pubDate>Tue, 17 Mar 2026 22:23:11 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!ntst!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7b286e49-d552-4fcf-b59f-52ca86eeffe0_1024x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;29bb1449-dfb4-47f4-954f-581b4561bed3&quot;,&quot;duration&quot;:null}"></div><p>Suits and Spooks was born in a Palo Alto loft in 2011. Fifteen years ago. What started as an experiment at the intersection of national security and private enterprise has carried me &#8212; for better and for worse &#8212; to something I genuinely never imagined was possible.</p><p>In fifteen days, the <a href="https://whitefishsecuritysummit.com">Whitefish Security Summit</a> begins.</p><p>Since I first conceived of this event last July, it has gone through location changes, name changes, and a significant shift in focus. What hasn&#8217;t changed is the pull &#8212; the sense that something necessary was missing from how the people who shape security, intelligence, and story actually talk to each other.</p><p>WSS 2026 is the answer to that.</p><p>The speaker roster is impressive &#8212; including General Stanley McChrystal and Howard Gordon, the showrunner behind <em>24</em> and <em>Homeland</em>. But what&#8217;s equally impressive &#8212; maybe more so &#8212; are the people attending whose names won&#8217;t appear anywhere. Private bankers. Quiet professionals. Power players from the entertainment and national security worlds who are spending real time and real money to be in a room together in Whitefish, Montana, because they understand something most people don&#8217;t yet:</p><p>Events are moving at a speed no one knows how to control. The speed of story.</p><p>That phrase deserves unpacking &#8212; and it will be, over three days in April, by people who have lived it from the inside. If you&#8217;ve been watching what&#8217;s happening at the intersection of narrative, intelligence, and influence, you know why that conversation matters right now.</p><p>There are still a limited number of seats available.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://whitefishsecuritysummit.com&quot;,&quot;text&quot;:&quot;Count Me In&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://whitefishsecuritysummit.com"><span>Count Me In</span></a></p><p></p>]]></content:encoded></item></channel></rss>