Security Now (Audio) cover art

Security Now (Audio)

Security Now (Audio)

By: TWiT
Listen for free

About this listen

Cybersecurity guru Steve Gibson joins Leo Laporte every Tuesday. Steve and Leo break down the latest cybercrime and hacking stories, offering a deep understanding of what's happening and how to protect yourself and your business. Security Now is a must listen for security professionals every week. Records live every Tuesday at 4:30pm Eastern / 1:30pm Pacific / 20:30 UTC.This work is licensed under a Creative Commons License - Attribution-NonCommercial-NoDerivatives 4.0 International - http://creativecommons.org/licenses/by-nc-nd/4.0/
Episodes
  • SN 1037: Chinese Participation in MAPP - Why Signal is Leaving Australia
    Aug 6 2025
    • A follow-up to the SharePoint server patch mess.
    • How Russia arranges to spy on other country's local embassies.
    • "Dropbox Passwords" manager app is ending in October.
    • Signal will leave Australia rather than help spy.
    • YouTube deploys viewing history age-estimation heuristics.
    • Chrome adds clever lightweight extension signing to prevent abuse.
    • A domain registrar is coming close to losing its rights.
    • A TP-Link router that doesn't encrypt its configuration.
    • What is "TruAge" and might it be useful for age verification.
    • An update on "Artemis".
    • With U.S.-China tensions on the rise, should Chinese security companies receive weeks of advance notice of forthcoming Microsoft flaw patches?

    Show Notes - https://www.grc.com/sn/SN-1037-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    • bitwarden.com/twit
    • bigid.com/securitynow
    • joindeleteme.com/twit promo code TWIT
    • Melissa.com/twit
    • threatlocker.com for Security Now
    Show More Show Less
    2 hrs and 47 mins
  • SN 1036: Inside the SharePoint 0-day - Is Our Data Safe Anywhere?
    Jul 30 2025
    • Brave randomizes its fingerprints.
    • The next Brave will block Microsoft Recall by default.
    • Clorox sues its IT provider for $380 million in damages.
    • 6-month Win10 ESU offers are beginning to appear.
    • Warfare has significantly become cyber.
    • Allianz Life loses control of 125 million customers' data.
    • The CIA's Acquisition Research Center website was hacked.
    • The Pentagon says the SharePoint RCE didn't get them.
    • A look at a DPRK "laptop farm" to impersonate Americans.
    • FIDO's passkey was NOT bypassed by a MITM after all.
    • Is our data safe anywhere?
    • The UK is trying to back-pedal out of the Apple ADP mess.
    • Meanwhile, the EU resumes its push for "Chat Control".
    • Microsoft fumbled the patch of a powerful Pwn2Own exploit

    Show Notes - https://www.grc.com/sn/SN-1036-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    • canary.tools/twit - use code: TWIT
    • threatlocker.com for Security Now
    • bitwarden.com/twit
    • uscloud.com
    Show More Show Less
    2 hrs and 58 mins
  • SN 1035: Cloudflare's 1.1.1.1 Outage - Bypassing Passkey Protections
    Jul 23 2025
    • Bypassing all passkey protections.
    • The ransomware attacks just keep on coming.
    • Cloudflare capitulates to the MPA and starts blocking.
    • The need for online age verification is exploding.
    • Microsoft really wants Exchange Servers to subscribe.
    • Russia (further) clamps down on Internet usage.
    • The global trend toward more Internet restrictions.
    • China can inspect locked Android phones. Use a burner.
    • Web shells are the new buffer overflow.
    • An age verification protocol sketch.
    • What Cloudflare did to create an outage of 1.1.1.1

    Show Notes - https://www.grc.com/sn/SN-1035-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!
    Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

    Sponsors:

    • zscaler.com/security
    • 1password.com/securitynow
    • go.acronis.com/twit
    Show More Show Less
    2 hrs and 48 mins
No reviews yet
In the spirit of reconciliation, Audible acknowledges the Traditional Custodians of country throughout Australia and their connections to land, sea and community. We pay our respect to their elders past and present and extend that respect to all Aboriginal and Torres Strait Islander peoples today.