This Week in AI
This Week in AI

XBOW Founder: “Your Infrastructure is Not Safe” | EP 28

August 27, 2026

AI Summary

5 min read

“We’ve already been for a year in the situation that an AI working completely autonomously is better at attacking than most human beings.” That is the opening claim from O. Damore, founder of XBOW, an AI-powered autonomous penetration testing company. He is not speculating about the future. His own AI, XBOW, was let loose on the Hacker One platform—a broker between companies wanting security tests and ethical hackers. Within months, XBOW became number one in the United States, and then number one in the world. The episode makes clear that the infrastructure of most organizations is already vulnerable, and the window for preparation has closed.

Open-Weight Models Are Closing the Gap Faster Than Expected

Continue reading the full summary in the app — free to try.

Read Full Summary →

Free • No credit card required

What you'll learn

  • 1 (00:00) **The Core Warning: Infrastructure is Not Safe** - The episode opens with a stark claim that serious cyberattacks are already possible with open-weight models.
  • 2 (02:20) **Nvidia and Poolside Join the Open-Weight Race** - A US-specific alternative to Chinese models like DeepSeek is being developed through a major Nvidia investment.
  • 3 (06:57) **Open-Weight Models Are Only 2-3 Months Behind Frontier Models** - A cybersecurity expert reveals that the gap between open-source and proprietary models is much smaller than commonly believed.
  • 4 (08:22) **The Harsh Reality: Your Infrastructure is Not Safe** - An autonomous AI has already become the world's top ethical hacker, proving the threat is current, not theoretical.
  • 5 (11:29) **A Glimmer of Hope: Consumer-Grade AI Security** - The same technology that enables attacks can also be used for defense, as seen with people using AI to optimize their home routers.
  • 6 (13:13) **Perplexity's Valuation and the Rise of Enterprise AI Agents** - Perplexity's massive revenue growth is driven by their "computer" product, signaling a shift from search to paid, task-oriented agents.
  • 7 (20:23) **The Enterprise vs. Consumer Data Gap** - AI tools are far more effective for enterprises because users are willing to give them access to crucial context like emails and Slack.

+ Full timestamped outline available in the app

Show Notes

This Week In Startups is made possible by:PaypalToday’s show:XBOW’s AI has held the top rank on the HackerOne leaderboard for more than a year. On TWiAI, founder Oege de Moor (who also built GitHub Copilot) tells us that no one’s infrastructure is truly safe anymore, now that open-weight models are trailing the American frontier by only a couple of months. Staging a serious cyberattack is now cheap and accessible, with attackers able to get dangerously solid results quickly from relatively cheap, open-source options from China.Guests:Runbin Dong on LinkedIn: linkedin.com/in/runbindongScale Social: https://scalesocial.ai/Oege de Moor on X: https://x.com/oegerikusXBOW: https://xbow.com/Relevant LinksWSJ: Nvidia-Poolside deal: https://www.wsj.com/tech/ai/nvidia-is-spending-6-billion-to-build-a-powerful-u-s-alternative-to-chinese-ai-c51c38ccPoolside: https://poolside.ai/Silicon Angle: Nvidia in talks to invest in Perplexity: https://siliconangle.com/2026/08/24/nvidia-reportedly-eyes-another-investment-in-perplexity-ai-at-a-30b-valuation/Perplexity: https://www.perplexity.ai/Bloomberg: Chinese hackers using DeepSeek: https://www.bloomberg.com/news/articles/2026-08-24/chinese-hackers-use-deepseek-to-boost-attacks-researchers-say-mt7o4205Nvidia: Groq 3 LPX enters full production: https://nvidianews.nvidia.com/news/nvidia-groq-3-lpx-now-in-full-production-with-world-class-speed-for-agentic-aiCNBC: Groq-Nvidia acqui-hire deal: https://www.cnbc.com/2025/12/24/nvidia-buying-ai-chip-startup-groq-for-about-20-billion-biggest-deal.htmlOpenAI on early Jalapeño results: https://openai.com/index/jalapeno-first-results/Stanley Druckenmiller WSJ op-ed: https://www.wsj.com/opinion/let-the-bond-market-speak-81529d74Druckenmiller confirms op-ed was authored with AI: https://www.notus.org/media/stanley-druckenmillers-wsj-op-ed-bessent-aiPangram: https://www.pangram.com/Alabama AG: OpenAI subpoena announcement: https://www.alabamaag.gov/attorney-general-marshall-launches-investigation-into-openai-and-sam-altman-for-massive-artificial-intelligence-data-breach/Ox Alpha on OpenRouter: https://openrouter.ai/stealth/ox-alphaApple: M6 and M5 Ultra press release: https://www.apple.com/newsroom/2026/08/apple-introduces-m6-and-m5-ultra-for-a-big-leap-in-performance-and-ai-compute/9 to 5 Mac: M5 Mac Studio launch: https://9to5mac.com/2026/08/25/apple-unveils-next-generation-mac-studio-with-m5-max-and-m5-ultra/DHH on X: Ubiquity comments: https://x.com/dhh/status/2087272392557007042Shane Parrish on X: Ubiquiti Wi-Fi set-up: https://x.com/shaneparrish/status/2088672566558761065Timestamps:0:00 Today's guests: Runbin Dong (Scale Social) and Oege de Moor (XBOW)2:12 Open-weight models are right behind the frontier8:22 Your infrastructure is not ready for what's coming13:07 Nvidia's Perplexity announcement16:43 Spending $2K/month on AI tools per employee21:59 Why security teams have to lean on AI25:19 The Great Chip Land Grab32:02 Jason's multi-agent restaurant-style workflow34:54 AI

This Week in AI

More from this podcast

This Week in AI →