
About this episode
Live from Wild West Hackin’ Fest Denver 2026, the Black Hills Information Security crew brings their signature mix of sharp security insight and off-the-cuff banter to a packed in-person audience.
This episode centers on a controversial Notepad update that introduced Markdown rendering—along with a potential remote code execution (RCE) issue. The hosts unpack what this says about modern software bloat, “vibe coding,” and the growing push to embed AI into everything—whether it belongs there or not. They also explore the implications of Discord's Age verification requirements, AI-generated code, including OpenAI’s latest Codex model, and debate whether we’re headed toward a wave of AI-assisted vulnerabilities.
Join us LIVE on Mondays, 4:30pm EST.
A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.
https://www.youtube.com/@BlackHillsInformationSecurity
Chat with us on Discord! -
https://discord.gg/bhis
🔴live-chat
Chapters
- (00:00) - PreShow Banter™ — Corey Olympics
- (02:23) - Story # 1: Critical Notepad vulnerability reignites criticism of Microsoft’s forced AI features
- (07:42) - Story # 2: Discord will require a face scan or ID for full access next month
- (10:17) - Story # 3: 2026-01-14: The Day the telnet Died
- (15:04) - Story # 5: BeyondTrust Remote Access Products 0-Day Vulnerability Allows Remote Code Execution
- (16:32) - Story # GRITREP: 0APT and the Victims Who Weren’t
- (20:54) - The advanced advancement of AI models
Click here to watch a video of this episode.
Creators & Guests
- John Strand - Host
- Corey Ham - Host
- Derek Banks - Guest
- Andrew Krug - Guest
- Chadd Watson - Guest
- Hayden Covington - Host
Click here to view the episode transcript.
Links
Story # 1: Critical Notepad vulnerability reignites criticism of Microsoft’s forced AI features
Story # 2: Discord will require a face scan or ID for full access next month
Story # 3: 2026-01-14: The Day the telnet Died
Story # 5: BeyondTrust Remote Access Products 0-Day Vulnerability Allows Remote Code Execution
Story # GRITREP: 0APT and the Victims Who Weren’t
🔗 Register for FREE Infosec Webcasts, Anti-casts & Summits
Brought to you by:
Black Hills Information Security
https://www.blackhillsinfosec.com
Antisyphon Training
https://www.antisyphontraining.com/
Active Countermeasures
https://www.activecountermeasures.com
Wild West Hackin Fest
Get every episode summarized
Each time Talkin' Bout [Infosec] News publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from Talkin' Bout [Infosec] News

Pentagon Plans to Train AI With Classified Data – 2026-03-23
Talkin' Bout [Infosec] News

Iranian Hackers Claim Responsibility for Stryker Attack - 2026-03-16
Talkin' Bout [Infosec] News

A Nightmare of Vibeware - 2026-03-09
Talkin' Bout [Infosec] News

Pentagon Declares Anthropic a Supply Chain Risk — 2026-03-02
Talkin' Bout [Infosec] News