Security Conversations
230
Security Conversations
06.29.2026 | 1:53''54'
US Gov Takes the Wheel: Who Gets to Use the Best AI?
About the episode
(Presented by Thinkst Canary: Most Companies find out way too late that they’ve been breached. Thinkst Canary changes this. Deploy Canaries and Canarytokens in minutes and then forget about them. Attackers tip their hand by touching ’em giving you the one alert, when it matters. With zero admin overhead and almost no false-positives, Canaries are deployed (and loved) on all 7 continents.)
Three Buddy Problem – Episode 103: We dive into the U.S. government’s takeover of frontier-model rollouts (Mythos, Fable, and OpenAI’s Sol/Terra/Luna) and what it means when intelligence gets commoditized but access gets rationed.
Plus, Costin’s all-Chinese open-weight stack, the economics of burning tokens, a fresh Salesforce OAuth breach, and jellyfish UFOs over Iran.
Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.
Timestamps:
0:00 — Introductory banter, Thinkst Canary sponsorship
2:55 — Why threat intel analysts are built for the AI moment
11:09 — Government takes the wheel: Mythos, Fable & the frontier labs
16:15 — Did the government go too far/not far enough?
25:42 — Anthropic’s “best PR campaign in history”
31:52 — Alibaba, distillation & the model-router cartel
40:58 — Costin’s stack: Chinese open-weight models & token economics
46:12 — Dumping, evals & the real work of AI engineering
1:04:32 — Soft power: how the world gets pushed toward China
1:14:43 — “The bullshit”: over-refusal & the Opus 4.8 regression
1:32:03 — The trillion-dollar IPO endgame
1:35:49 — The Klue OAuth breach and secure-by-default
1:45:32 — Shout-outs: UAP jellyfish, LABScon 2026
Links:
- Transcript
- Thinkst Canary
- Anthropic accuses Chinese rival Alibaba of illicitly extracting AI capabilities
- USG Executive Order on Promoting AI Innovation
- US allows Anthropic to release Mythos AI to ‘trusted’ US orgs
- US close to allowing Anthropic to restore Fable 5 model
- OpenAI: Previewing GPT-5.6 Sol
- NCSC on AI shift in cyber risk
- DeepSeek
- Alibaba Qwen
- NVIDIA DGX Spark
- StepFun Open AI Platform
- Xiaomi MiMo-V2.5
- Z.ai – powered by GLM-5.2
- Five Eyes Cyber Security Agencies Statement on AI
- Klue Security Incident
- Cybercrime Breaches Klue: Salesforce Data Impacted for Many Victims
- OAuth2 – OWASP Cheat Sheet Series
- OAuth 2.0 Policies (Google for Developers)
- Downed US pilot reported seeing Iranian drones swarm in ‘jellyfish’ formation
- LABScon 2026