# Scattered Spider squashed, Rogue Agent AI flaw, 16 year-old Linux bug and new phish hunts marketers Page: https://stenobird.com/podcast/cybersecurity-today-65508/scattered-spider-squashed-rogue-agent-ai-flaw-16-year-old-linux-bug-and-new-phish-hunts-marketers Text version: https://stenobird.com/podcast/cybersecurity-today-65508/scattered-spider-squashed-rogue-agent-ai-flaw-16-year-old-linux-bug-and-new-phish-hunts-marketers.md Podcast: [Cybersecurity Today](https://stenobird.com/podcast/cybersecurity-today-65508) Published: 2026-07-08T02:00:00+00:00 Episode link: https://cybersecuritytoday.libsyn.com/scattered-spider-squashed-rogue-agent-ai-flaw-16-year-old-linux-bug-and-new-phish-hunts-marketers Audio file: https://traffic.libsyn.com/secure/cybersecuritytoday/CybersecurityToday_SquashedSpider.mp3?dest-id=679928 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/cybersecurity-today-65508/episodes/scattered-spider-squashed-rogue-agent-ai-flaw-16-year-old-linux-bug-and-new-phish-hunts-marketers Duration seconds: 833 ## Resource Cybersecurity Today host David Shipley covers how a newly unsealed U.S. complaint tied an alleged Scattered Spider member to a luxury retailer intrusion using a persistent Windows device ID, with prosecutors alleging help-desk social engineering, admin account takeover, data exfiltration, and an $8 million ransom demand; the episode also notes additional Scattered Spider-related guilty pleas in the U.K. and U.S. The show reports Google patched "Rogue Agent," a Dialogflow CX permission-boundary issue involving Python code blocks in Cloud Run that could enable data theft or credential prompts across agents in a shared project. It details "Janus Escape" (CVE-2026-53359), a 16-year-old Linux KVM use-after-free enabling guest-to-host escapes in cloud environments, patched in June. The show explores Apple's shift to out-of-band security updates due to AI-accelerated exploitation, and a multi-platform redirect phishing campaign using fake job interviews and browser-in-browser Google login prompts targeting marketers' Google accounts. 00:00 Sponsor NordLayer 00:36 Headlines Intro 01:03 Scattered Spider Traced 03:16 More Spider Arrests 04:31 Google Rogue Agent 06:24 Linux Janus Escape 08:04 Apple Patching Shift 10:04 Marketer Phish Chain 12:17 Wrap Up Thanks 12:53 Sponsor Message ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/cybersecurity-today-65508/episodes/scattered-spider-squashed-rogue-agent-ai-flaw-16-year-old-linux-bug-and-new-phish-hunts-marketers/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/cybersecurity-today-65508/scattered-spider-squashed-rogue-agent-ai-flaw-16-year-old-linux-bug-and-new-phish-hunts-marketers.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.