Security Now (Audio)

TWiT

Expert Steve Gibson discusses the current threats, risks, and tech breaches everyone is facing in security today.

  • 3 hours 5 minutes
    SN 1019: EU OS - Troy Hunt Phished, Ransomware List, InControl
    • Kuala Lumpur International Airport says no to a ransom attack, switches to whiteboard.
    • A tired and jet-lagged Troy Hunt got Phished then listed himself on his own site.
    • Cloudflare completely pulls the plug on port 80 (HTTP) API access.
    • Malware is switching to obscure languages to avoid detection. FORTH, anyone?
    • Password reuse doesn't appear to be dropping. Cloudflare has numbers.
    • A listener shares his log of malicious Microsoft login attempts. Why no geofencing?
    • 23andMe down for the count (reminder).
    • A sobering Ransomware attack & victim listing website. Gulp!
    • "InControl" keeps VR planes aloft.
    • And the European Union gets serious about a switch to Linux

    Show Notes - https://www.grc.com/sn/SN-1019-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    2 April 2025, 3:15 am
  • 2 hours 52 minutes
    SN 1018: The Quantum Threat - ESP32 Backdoor Update, RCS E2EE
    • The dangers of doing things you don't understand.
    • Espressif responds to the claims of an ESP32 backdoor.
    • A widely leveraged mistake Microsoft stubbornly refuses to correct.
    • A disturbingly simple remote takeover of Apache Tomcat servers.
    • A 10/10 vulnerability affecting some ASUS, ASRock and HPE motherboards.
    • Google snapped up another cloud security firm but paid a price!
    • RCS messaging to soon get full end-to-end encryption (done right!).
    • How did an AI Crypto Chatbot lose $105,000? ...and what is an AI Crypto Chatbot?
    • Looks like Oracle may take stewardship of TikTok to keep it in-country.
    • Whoops! 23andMe is sinking — don't let them take your genetics with them!
    • The White House says "the cyber guys should stay!"
    • AI project failure rates are on the rise. Anyone surprised?
    • Listener feedback, and a very interesting update on just how looming is the threat from quantum computing?

    Show Notes - https://www.grc.com/sn/SN-1018-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    26 March 2025, 2:42 am
  • 2 hours 53 minutes
    SN 1017: Is YOUR System Vulnerable to RowHammer? - Telegram's Crypto, Twitter Outage, FBI Warning
    • An analysis of Telegram Messenger's crypto.
    • A beautiful statement of the goal of modern crypto design.
    • Who was behind Twitter's recent outage trouble?
    • An embedded Firefox root certificate expired. Who was surprised?
    • AI-generated Github repos, voice cloning, Patch Tuesday and an Apple 0-day.
    • The FBI warns of another novel attack vector that's seeing a lot of action.
    • Google weighs in on the Age Verification controversy.
    • In a vacuum, Kazakhstan comes up with their own solution.
    • Was Google also served an order from the UK? Can they say?
    • A serious PHP vulnerability you need to know you don't have.
    • A bunch of great listener feedback, some Sci-Fi content reviews and...
    • A new tool allows YOU to test YOUR PCs for their RowHammer susceptibility

    Show Notes - https://www.grc.com/sn/SN-1017-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    19 March 2025, 2:38 am
  • 2 hours 56 minutes
    SN 1016: The Bluetooth Backdoor - North Korean Texans, Apple Pushes Back
    • Utah passes age verification requirement for app stores.
    • The inside story on fake North Korean employees. Is that a Texas accent?
    • An update on the ongoing Bybit cryptoheist saga.
    • The industry may be making some changes in the wake of the Bybit attack.
    • Apple pushes back legally against the UK's secret order.
    • Did someone crack Passkeys?
    • The UK launches a legal salvo at an innocent security researcher.
    • The old data breach we witnessed that just keeps on giving.
    • A bit more Bybit postmortem forensic news.
    • A lesson to learn from a clever and effective ransomware attack.
    • And what about that Bluetooth Backdoor discovery everyone is talking about?

    Show Notes - https://www.grc.com/sn/SN-1016-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    12 March 2025, 2:59 am
  • 2 hours 52 minutes
    SN 1015: Spatial-Domain Wireless Jamming - Firefox Privacy Policy, Signal Leaving Sweden?
    • Firefox amends their privacy policy -- the world melts down.
    • Signal threatens to leave Sweden.
    • Aftermath of the massive $1.5 billion Bybit ETH heist.
    • It turns out that it wasn't actually Bybit's fault.
    • "The Lazarus Bounty" monitoring and management site.
    • Mozilla's commitment to Manifest V2 (and the uBlock Origin).
    • What does the ACM's plea for memory-safe languages mean for developers?
    • What exactly are memory-safe languages?
    • Australia joins the Kaspersky ban.
    • Gmail plans to switch from SMS to QR code authentication.
    • A SpinRite success and some fun feedback.
    • An astonishing new technology for targeted radio jamming

    Show Notes - https://www.grc.com/sn/SN-1015-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    5 March 2025, 3:31 am
  • 2 hours 39 minutes
    SN 1014: FREEDOM Administration Login - Apple's UK Privacy Showdown, $1.5 Billion Crypto Heist
    • Apple disables Advanced Data Protection for new UK users.
    • Paying ransoms is not as cut and dried as we might imagine.
    • Elon Musk's "X" social media blocks "Signal.me" links.
    • Spain's soccer league blocks Cloudflare and causes a mess.
    • Two new (and rare) vulnerabilities discovered in OpenSSH.
    • The U.S. seems unable to evict Chinese attackers from its Telecom systems.
    • What are those Chinese "Salt Typhoon" hackers doing to get in?
    • The largest (by far) cryptocurrency heist in history occurred Friday.
    • Ex-NSA head says the U.S. is falling behind on the cyber front lines.
    • We have the winner (and a good one) replacement term for "backdoor".
    • A look at a pathetic access control system that begs to be hacked (and will be).

    Show Notes - https://www.grc.com/sn/SN-1014-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    26 February 2025, 3:30 am
  • 2 hours 31 minutes
    SN 1013: The Chrome Web Store is a mess - Apple Encryption in the UK, Texas Vs. DeepSeek
    • US lawmakers respond to the UK's outrageous demand about Apple's encryption.
    • What, exactly, is a "backdoor", and can a "backdoor" NOT be secret?
    • Highlights from last week's Windows' Patch Tuesday.
    • A look into RansomHub: The latest king of the Ransomware hill.
    • "TOAD": Telephone-Oriented Attack Delivery.
    • The state of Texas -versus- DeepSeek.
    • Disabling Apple's "Restricted Mode".
    • Where did I put that $800 million in Bitcoin?
    • A Sci-Fi author update.
    • And a deep dive into the misoperation of Chrome's critically important Web Extension Store

    Show Notes - https://www.grc.com/sn/SN-1013-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    19 February 2025, 4:23 am
  • 2 hours 41 minutes
    SN 1012: Hiding School Cyberattacks - SparkCat, Decrypting ADP, AI Fuzzing
    • New "SparkCat" secret-stealing AI image scanner discovered in App and Play stores.
    • The UK demands that Apple does the impossible: decrypting ADP cloud data.
    • France moves forward on legislation to require backdoors to encryption.
    • Firefox moves to 135 with a bunch of useful new features.
    • The Five Eyes alliance publishes edge-device security guidance.
    • Six NetGear routers contain CVSS 9.6 and 9.8 vulnerabilities.
    • Sysinternals utilities allow malicious Windows DLL injection.
    • Google removes restrictive do-gooder language from AI application policies.
    • "AI Fuzzing" successfully jailbreaks the most powerful ChatGPT o3 model.
    • Examining the well and deliberately hidden truth behind ransomware cyberattacks on U.S. K-12 schools

    Show Notes - https://www.grc.com/sn/SN-1012-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    12 February 2025, 3:00 am
  • 3 hours 1 minute
    SN 1011: Jailbreaking AI - Deepseek, "ROUTERS" Act, Zyxel Vulnerability
    • Why was DeepSeek banned by Italian authorities?
    • What internal proprietary DeepSeek data was found online?
    • What is "DeepSeek" anyway? Why do we care, and what does it mean?
    • Did Microsoft just make OpenAI's strong model available for free?
    • Google explains how generative AI can be and is being misused.
    • An actively exploited and unpatched Zyxel router vulnerability.
    • The new US "ROUTERS" Act.
    • Is pirate-site blocking legislation justified or is it censorship?
    • Russia's blocked website count tops 400,000.
    • Microsoft adds "scareware" warnings to Edge.
    • Bitwarden improves account security.
    • What's still my favorite disk imaging tool?
    • And let's take a close look into the extraction of proscribed knowledge from today's AI

    Show Notes - https://www.grc.com/sn/SN-1011-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    5 February 2025, 3:40 am
  • 2 hours 40 minutes
    SN 1010: DNS Over TLS - Record DDoS, Hackers Get Hacked
    • eM Client CAN be purchased outright.
    • An astonishing 5-year-old typo in MasterCard's DNS.
    • An unwelcome surprise received by 18,459 low-level hackers.
    • DDoS attacks continue growing, seemingly without any end in sight.
    • Let's Encrypt clarifies their plans for 6-day "we barely knew you" certificates.
    • SpinRite uncovers a bad brand new 8TB drive.
    • Listener feedback about TOTP, Syncthing and UDP hole punching, email spam, ValiDrive speed, AI neural nets, DJI geofencing, and advertising in the "New" Outlook.
    • A look into the tradeoffs required to obtain privacy for our DNS lookups

    Show Notes - https://www.grc.com/sn/SN-1010-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    29 January 2025, 2:54 am
  • More Episodes? Get the App