# Exposed: Bank Leak, Copilot Zero-Click, AI Agent Hijacks, Stryker Wipe & Josh Marpet - SWN #563 Page: https://stenobird.com/podcast/security-weekly-news-audio-500812/exposed-bank-leak-copilot-zero-click-ai-agent-hijacks-stryker-wipe-josh-marpet-swn-563 Text version: https://stenobird.com/podcast/security-weekly-news-audio-500812/exposed-bank-leak-copilot-zero-click-ai-agent-hijacks-stryker-wipe-josh-marpet-swn-563.md Podcast: [Security Weekly News (Audio)](https://stenobird.com/podcast/security-weekly-news-audio-500812) Published: 2026-03-13T21:00:00+00:00 Episode link: https://hntvaudio.libsyn.com/exposed-bank-leak-copilot-zero-click-ai-agent-hijacks-stryker-wipe-josh-marpet-swn-563 Audio file: https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/hntvaudio/SWN_563_1--feb6e2b4-e8ae-4b18-ad38-af2522c3c25a--audio-converted--c651f31d-e53f-4085-a71d-bc70f011c3d1.mp3?dest-id=376644 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/security-weekly-news-audio-500812/episodes/exposed-bank-leak-copilot-zero-click-ai-agent-hijacks-stryker-wipe-josh-marpet-swn-563 Duration seconds: 1916 ## Resource This episode is all about trust getting abused at scale. We start with Chinese-nexus operators pivoting fast onto Qatar using conflict lures and familiar tradecraft. Then we hit banking, because they deserve it: Lloyds, Halifax, and Bank of Scotland customers seeing other people's transactions in-app, a straight confidentiality failure, not "someone hacked my phone". From there it's the Middle East conflict exposing what "cloud resilience" really means when the problem isn't cyber, it's physical disruption and dependency chains. Then Meta's takedown of 150,000 scam-linked accounts shows the fraud supply chain is still running hot, and the platforms are now part of the battleground whether they like it or not. The Microsoft story is the one to watch: a critical Excel bug that turns Copilot Agent into a zero-click data leak path. And the AI agent theme keeps going with Context7: attackers slipping instructions into "helpful" context and getting agents to do dumb, destructive things on their behalf. We finish with Stryker having the worst day with a major outage, disputed claims, and a reminder that if your management plane gets hit, you can lose the whole estate fast. Look at Intune. No hype. Just the stuff that actually breaks systems, me talking too fast, which to be honest 'slow' is why I turn most podcasts off. Visit https://www.securityweekly.com/swn for all the latest episodes! Show Notes: https://securityweekly.com/swn-563 ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/security-weekly-news-audio-500812/episodes/exposed-bank-leak-copilot-zero-click-ai-agent-hijacks-stryker-wipe-josh-marpet-swn-563/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/security-weekly-news-audio-500812/exposed-bank-leak-copilot-zero-click-ai-agent-hijacks-stryker-wipe-josh-marpet-swn-563.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.