Google Stops AI Exploit, Nadella Testifies, OpenAI's New $4B Unit

11 May 2026 · 16 min · 7 chapters

Ask about this episode

Ask anything about it. ChatGPT or Claude reads this page and answers with the times it was said.

Connect VO and ask about every podcast you hear, including the moments you saved. Add to ChatGPT · Add to Claude

In short

The episode covers EU AI regulation talks, OpenAI’s enterprise expansion, major courtroom testimony in the Musk vs. OpenAI case, a new orbital-compute startup, and Google’s claimed disruption of an AI-assisted zero-day exploit.

Guests

none named as interviewees; it references Robinhood co-founder (Baju Bot/Cowboy Space) and executives in court (Satya Nadella; Michael Wetter).

Key claims

EU Commission is directly engaging OpenAI and Anthropic on the AI Act for “frontier models, routers, and AI chat daily.” OpenAI is launching a $4B enterprise unit for integrations and professional services. Nadella testified that Microsoft recognized $9.5B in OpenAI revenue to date and committed ~$13B in Azure compute. Google’s GTIG says it found the first zero-day exploit in the wild: a Python script targeting 2FA in an unnamed open-source admin tool, flagged via hallucinated CVSS scores.

Notable examples

Cowboy Space’s planned 20–25,000kg satellites delivering 1MW and ~800 onboard GPUs; Nadella’s “mud on legal theory” comment; and the exploit’s “fake textbook formatting”/StackOverflow-like code style.

Written by AI. May contain mistakes. Listen to the episode to check what was said.

Chapters

Tap a time to open that second in VO

EU Talks with AI Companies

0:42 to 2:16

Discussion on the European Commission's talks with OpenAI and Anthropic regarding AI regulation.

“about how the AI Act applies to Frontier Models, Routers, and AI Chat Daily.”

Cowboy Space and New Ventures

2:16 to 4:40

Overview of Cowboy Space's $275M funding and plans to compete with SpaceX for satellite data centers.

“So it'll be interesting to see how that shakes out.”

OpenAI's New Enterprise Unit

4:40 to 7:25

Deep dive into OpenAI's new $4B enterprise unit focused on corporate AI development.

“The bet that's happening right now is that there is not going to be enough commercial launch capacity to scale orbital compute any other way by 2028.”

Nadella's Testimony in OpenAI Lawsuit

7:25 to 10:17

Detailed insights from Satya Nadella's testimony in the ongoing Elon Musk versus OpenAI trial.

“There's also a lot of tension with Microsoft.”

Google's Threat Intelligence Breakthrough

11:08 to 14:05

Discussion on Google's discovery of the first AI-generated zero-day exploit prevented in the wild.

“They've just disclosed today that they have intercepted what they believe is the first zero day exploit in the wild with the help of their LLM Gemini.”

Exploring AI Security Vulnerabilities and Challenges

14:05 to 15:12

This segment discusses the current landscape of AI security risks and the importance of addressing them.

“I think we do have to admit that, and they're getting mapped by attackers at the same time.”

Importance of Connector Security in AI Development

15:12 to 15:42

The speaker emphasizes the need for prioritizing connector security to ensure the safety of AI tools.

Hear the part that matters, and keep it.Open this episode in VO. Double tap your headphones to save a moment as you listen.
Get VO free

Transcript

Automatic transcript. May contain errors.

0:00Google's threat Intel team says that they have caught the very first AI built zero day exploit out in the wild and how they found it was some hallucin hallucinated CVSS scores. We'll get into all of that. Before though, we got to talk about Satya Nadella, who just took the stand in the Elon Musk versus OpenAI lawsuit. And we get some numbers that we've never seen before about OpenAI, which are fascinating. In addition to all of that, we also have the Robinhood co-founder that just raised$275 million to put rockets and data centers in orbit by 2028 in direct competition to what SpaceX is doing.

0:34And OpenAI is dropping $4 billion on a dedicated enterprise unit. There's so much to get into. Let's dive in. First of all, the European Commission has just opened direct talks with OpenAI and Anthropic about how the AI Act applies to Frontier Models, Routers, and AI Chat Daily. Both were talking about this earlier today. Brussels basically is talking to the two US labs. And it's kind of interesting. There's obviously a ton of different AI companies. But if you want to really talk about where the usage of AI is today. I mean, you could throw Gemini in there. Maybe Grok's got a little bit, but it's basically Anthropic OpenAI and Gemini kind of behind both of those two.

1:12So if Brussels wants to talk to someone, they're going to talk to the two biggest firms. And that's where they're going to get the biggest impact, basically. In, you know, with all of these conversations, the craziest part to me, which is something that I think a lot of people that are kind of anti-regulation have been saying for a very long time, and it's a very good point, is that regulation is very slow. And the AI act from the EU, just to like put into context how old this thing is, this was written before chat GPT-5 and Claude Opus 4.6 existed. I think most of the regulators know this. Hena Verkun, the EU's tech chief, has actually been talking about this as well.

1:45So I think they're all very aware of it. Basically, the problem is with a lot of these top of the line, a lot of the frontier models, right? I think the rules need to be changed a little bit. Otherwise, they're going to be directed at the wrong things. They actually need input from OpenAI and philanthropic when they're writing the spec and they're writing like how do these rules apply, which before it felt a lot more like a bunch of bureaucrats in a room with some ideas. So the good spin on this is like, look, they're actually talking to the industry, which I do think is important to, you know, understand what needs to be regulated.

2:15What a lot of people are complaining about, specifically, you have people like Casey Newton, who's basically just saying that this is regulatory capture, the two biggest labs are going to start writing all of the rules, that's going to make it harder for the smaller labs and open source teams to actually follow all of them. So it'll be interesting to see how that shakes out. The next thing I want to talk about is Cowboy Space. This is a new company. It's kind of fun. It's Baju Bot. It's the Robinhood co-founder, and he just closed a$275 million Series B for his company, Cowboy Space. And they did it at a $2 billion post-money valuation.

2:50Their plan is essentially to build and own rockets to put data centers in orbit exactly what Elon Musk is going to be doing with SpaceX what he's been talking about this is crazy though because for them they have to actually SpaceX is obviously very far along I guess is what I'm trying to say SpaceX has been doing rockets they've perfected this for a very long time and of course yeah 275 million dollars sounds like a lot of money but these are insanely expensive infrastructure to build building the rockets building the data centers they had index ventures who led the round and then they had breakthrough energy and construct construct IVP and SAIC were all in this.

3:24The numbers on all this is pretty crazy. Each satellite is supposed to mass 20 to 25 ,000 kilograms. And that delivers one megawatt of power and it's going to carry just under 800 onboard GPUs, which is basically a small data center integrated into the rocket's second stage. So the first launch they do is going to be at the end of 2028. That's what they're kind of targeting. They've already hired the former Blue Origin and SpaceX leads, and they They are building their own engine, which is basically the hardest thing you can attempt in this business. That building the actual engine is very hard, but they've already hired people from Blue Origin and SpaceX.

3:59And to be fair, you know, Blue Origin is kind of the Amazon spinoff, or not really Amazon, but the Jeff Bezos spinoff of SpaceX. And I think it's kind of cool. The more of these companies that come out, you have to basically grab employees from people that worked at the major companies. those employees will move over to your company because you're able to offer them really great incentives, really great compensation, and beyond just the compensation, but you're going to actually give them equity in the business. And so people that are maybe they joined SpaceX later on, they didn't get a lot of equity, they can go move over to one of these new startups, build something similar, use a lot of the information that they learned over at SpaceX, but now they have a bigger chunk of equity.

4:36This is how these markets get more mature. I'm actually really excited for this. I think this is a great thing. The bet that's happening right now is that there is not going to be enough commercial launch capacity to scale orbital compute any other way by 2028. So they need these new companies to come out. That's what Ba is kind of saying here. Starship, of course, is going to be tied up with Starlink, Blue Origins, New Glenn just failed a payload in April, and ULA is backed up. So if you think that the compute demand curve is going to be real, then basically a failed payload is a big deal. And if you've been watching kind of the new orbital rocket programs for the last five years and the billions of dollars spent on them, you know that a lot of people are also skeptical of this.

5:20Either way, I'm really excited to have more competition in the industry, which is how these industries grow and we get some incredible products. Okay, the next thing I want to talk about is OpenAI's$4 billion enterprise unit that they have just put together. It's entirely focused on corporate AI development. It's basically its own group and they're going to handle enterprise sales, integrations, professional services, all of this kind of, you know, deployment engineering that big customers actually need. I think this is OpenAI kind of saying that, look, you know, ChatGPT Enterprise isn't good enough as kind of just this side thing.

5:51We need an actual product organization for it. And what I think is great here is we've actually seen some other really, you know, other big multibillion dollar deals that they've been doing with PE firms to kind of do something very similar where they're, you know, the PE firms are essentially the sales org. They have this big or big kind of org chart that they can go and deploy all of opening eyes products into. And I heard a lot of people saying like, hey, they need to do this because they don't have a huge sales team. They don't have this big enterprise sales structure. So if they partner with the PE firms, they can skip that and just get their products directly in.

6:22And yes, I think that distribution is important, but it doesn't negate from the fact that they also need to build their own sales and kind of their own structure on how to actually deploy this. So that's what I think this is. This is where all of the money lives. And the thing that's interesting is the enterprise contracts that they'll be able to get through this organization. They're much stickier. They last for longer. They're higher margin than any of these kind of consumer subscriptions that you or I might be paying for for$20 a month. You know, when you have Microsoft and Salesforce and ServiceNow and Google, all of these companies have all been fighting for the same kind of market share as well.

6:56So it'll be interesting to see how they compete there. Microsoft, obviously, with Azure has been fighting for a lot of these same clients. So OpenAI feels like they're now getting out of just being the tool and using other people to sell them to now they're going to go directly to the customer and sell it, which will be interesting. Anthropik has already been winning a lot of those deals from their kind of safety position and other things for the last couple of years. I think OpenAI is trying to basically, you know, build up their war chest and go heavy into this area. There's also a lot of tension with Microsoft.

7:28Nadella's co-pilot stack runs on OpenAI models. And they also sell to the exact same Fortune 500 buyers. Sam Altman just stood up a unit that is basically going to compete directly with that channel. Dylan Patel on X called it the year Microsoft and OpenAI stopped pretending the relationship is frictionless. Honestly, I think that's a great tweet. Okay, let's get to the next story. Satya Nadella just took the witness stand on the Elon Musk versus Sam Altman, or really Elon Musk versus OpenAI trial. This is week three of the trial, and this is kind of something I think that will decide a lot of whether OpenAI is going to keep operating as a public benefit corporation or if it's going to have to be a fully non-profit like it was started.

8:10Elon Musk is seeking up to$150 billion in damages and the removal of Sam Altman and Greg Brockman from the company, which obviously he's got some big beef with them there. Those are some big claims, which he is kind of gunning for. Before Nadella came on the stand, all of the jurors watched a deposition from Michael Wetter, who is Microsoft's VP of Corporate Development, who put public numbers on some of the stuff we actually haven't really seen before from Microsoft and OpenAI's relationship. And one of the big things here is that Microsoft recognized$9.5 billion of total revenue from OpenAI life to date, so the total amount of money that they have pulled in, which is fantastic if you think about the$10 billion investment that Microsoft made a couple years ago.

8:53I mean, most of that has already been paid back in revenue as of September 2025. So even from then till now, there's probably even more. And there was about$13 billion in committed investments and Azure compute. So I think we all saw the big headline$10 billion, but they had done a billion before and they've done some after and they've done a bunch of Azure compute. So I think all in all, they were$13 billion and they pulled$9 billion back. So Microsoft is almost paid off on that investment in not a crazy amount of time. I think we've never really had the clean ratio of exactly how much money was in all of that.

9:25I think that's roughly 73 cents of revenue on every dollar of commitment. And this is kind of just where they're at today because they still get royalties and they still get other things out of OpenAI going into the future. So, you know, they should make good on that investment. The judge, who is Yvonne Gonzalez-Roger, told the Elon Musk team this morning that, quote, we're in mud on the legal theory, which is tying the 2025 OpenAI recapitalization to a breach of Musk's original donation. That's what he's trying to, you know, this lawsuit's all about is he's like, look, they breached my original donation.

9:58I think that's not the language that Elon Musk was hoping to hear in week three. It'll be interesting to see the verdict on this case, but in my opinion, There was so much information that was revealed in Discovery and all the court documents and texts that I'm happy the legal battle happened either way because we got a lot of good insights into what's happening at the number one AI firm in the country. Okay, if you're already paying for ChatGPT or Claude or Gemini or Grok or 11 Labs for audio, I would love for you to check out my software startup, which is AIbox.ai. It's something that I've personally built.

10:31It's what I recommend to my friends and it essentially gives you access to over 80 of the top AI models all in one place. You get all of the top text models. You get SOAR, you get VO, you get 11 labs, basically everything for creating images, video, audio, even music, all of it. You can compare the prompts side by side to see what they generate and you get it all in one place for $8.99 a month. And you also get 20 % off if you get the annual plan, but either way you get all of the top models in one place. You can consolidate subscriptions, consolidate your platforms, your logins, everything is in one place.

11:03It's amazing. So go check it out. I'll leave a link in the description to AI box.ai. Okay, the big story we got to get into today is the Google threat intelligence group. They've just disclosed today that they have intercepted what they believe is the first zero day exploit in the wild with the help of their LLM Gemini. Of course, everything they do is a plug for how amazing Gemini is. It's funny because we had, you know, Claude Mythos, which found all of these exploits, and it was so dangerous. We had to, you know, debrief the White House on it and then opening eyes like, hey, like we got one of those two that's super dangerous.

11:34And now apparently Gemini is using the playbook of look, we're good at finding zero day exploits as well. This one in particular was interesting. It was a Python script targeting two factor authentication on an unnamed open source web based system administration tool. So they didn't tell us exactly what it was. It wasn't like, hey, we found this crazy exploit in like Mozilla Firefox or something. Then it tells what it was, but they said how they found it. So GTIG, which is the Google Threat Intelligence Group, I'm going to remember that, but GTIG is describing the attackers as prominent cybercrime threat actors, and they are preparing what Google called a, quote, mass exploitation event.

12:17So there was a huge, like, heist about to happen of data, of a huge exploitation event that was going to happen. I mean, they had basically hacked the system administration tools of two-factor authentication, right? So something that everyone uses. They think their websites, their crypto, their bank accounts are all, you know, they got two-factor authentication. They should be good. Well, if the two-factor authentication platforms get hacked, we're all doomed. And Google just stopped that with their latest model. They said they disrupted the campaign before it happened, which is probably less exciting, right?

12:49I mean, okay, people think I'm ridiculous for saying this, but it's going to be less in the news if they're like, hey, there's something really bad that's going to happen. And we like stopped it. Everyone's like, okay, whatever. Meanwhile, like if something really bad does happen, like a huge exploit everyone talks about it and then whoever fixes it is like the hero i think we should definitely give google some some hero flowers here for stopping this thing before it ever happened though the way they found this though is actually kind of funny to me um apparently there is ai that wrote a lot of the code for the exploit um and the google researchers flagged a quote hallucinated cvss score inside of the script which is an invented severity rating uh it's kind of like a wrong citation that chatbots make all the time.

13:29And it was sitting alongside what they called a structured textbook formatting. So the malware was written the way that chat GPT writes, and it's going to have comments in the right places, variable names that look like a tutorial, and a fake reference to something that doesn't exist. Once you've spent any sort of time reading what chat GPT actually spits out at you, you know that you kind of know what that looks like. I think for security researchers in particular, we all kind of get it when there's people sending us a message and it's been written by chat GPT obviously we're like ah there's like all these aesthetic kind of giveaways security researchers see those as well charles kamakal at mandiant said on x quote it reads like a script kitty copy pasted stack overflow that hallucinated google said it quote does not believe gemini was used so google's like look we found this exploit uh you know our ai tools are awesome for finding them we don't think it was generated with gemini everyone's kind of like pointing at chat GPT uh for what actually built this there was one line And in particular, I wanted to highlight from Google and all of this, they wrote, quote, adversaries increasingly target the integrated components that grant AI systems their utility, such as autonomous skills and third party data connections.

14:37I think this is exactly what shipping really fast in 2026, you know, when we're talking about like agentic skills and browser using assistants and MCP servers and retrieval connectors, everything that I personally use every single day. Everyone is a new attack surface. I think we do have to admit that, and they're getting mapped by attackers at the same time. Vendors are trying to put all of these things into production. Everyone wants to put out an MCP. I'm working on one for my startup, AI Box, so we're all trying to build them. Yuchin Jin posted this over on X. He said, the same week we ship the connectors is the week somebody will publish the exploit for it, which is terrifying.

15:12What I will say, though, if you are vibe coding, if you're building tools with all of this, anything that touches LLMs in production, what I would do is spend the weekend re-auditing going through every third-party connector that your agents call look at the trust boundaries look at the prompt injection surfaces log everything that hits a tool call I think this is going to become a category and not just like a single incident that happens we will see this a lot the people that are like any of us if we want to survive here if we want to be able to be successful and keep our vibe coded stuff up there and safe we need to treat connector security as kind of a first-class concern so this is a very important thing for us.

15:47All right, guys, this is everything for the show today. Thank you so much for tuning in. If you enjoyed the episode, it would mean the world to me if you could leave a rating and review wherever you get your podcasts. I hope you all have an incredible rest of your day and make sure to go check out AIbox.ai if you want to get access to all of the AI models in the world in one place. Have a great day.

From the publisher
Show LinksShow Articles
See Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

More from AI Agents: Manus, Muse, Claude Cowork, Copilot, ChatGPT, Grokbot

All 233 episodes
Google Stops AI Exploit, Nadella Testifies, OpenAI's New $4B UnitAI Agents: Manus, Muse, Claude Cowork, Copilot, ChatGPT, Grokbot · 16 min
Listen in VO