SECURITY NOW

Ad-free audio episodes of Security Now

US$5.00/month or US$60.00/year

Security Now (Audio)

TWiT

Cybersecurity guru Steve Gibson joins Leo Laporte every Tuesday. Steve and Leo break down the latest cybercrime and hacking stories, offering a deep understanding of what's happening and how to protect yourself and your business. Security Now is a must listen for security professionals every week. You can join Club TWiT for $10 per month and get ad-free audio and video feeds for all our shows plus everything else the club offers...or get just this podcast ad-free for $5 per month. New episodes every Tuesday.

  1. 5 HR AGO

    CISA's Free Internet Scanning - Malware Disguised as a VPN

    Meta quietly ditches encryption for Instagram chats while TikTok also backpedals on privacy, shaking up assumptions about how much big tech really values your secrets. Meanwhile, Steve Gibson reveals why CISA's free government security scans are an absolute must for businesses—plus what he learned when GRC took the plunge. The Security Now "Caption That Photo" contest. A mega social media company says "no" to strong encryption. WhatsApp to give parents more control, Consumer bandwidth proxying is becoming a big deal. Meta buys the Moltbook duo. The EU gives up and settles upon the status quo. When a ransomware negotiation is not what it seems. CISA compels federal agencies to submit their logs. Is that a VPN in your pocket or something more malicious. Be careful what you download, thinking it's AI. A super-clever and super-simple A/V scanner bypass. Will AI write code for me? Another listener discovers the Joy of AI. Steve's CISA Internet scanning experience Show Notes - https://www.grc.com/sn/SN-1070-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: joindeleteme.com/twit promo code TWIT material.security canary.tools/twit - use code: TWIT adaptivesecurity.com meter.com/securitynow

    2h 46m
  2. You Might Also Like: On Purpose with Jay Shetty

    5 HR AGO · BONUS

    You Might Also Like: On Purpose with Jay Shetty

    Introducing Jefferson Fisher: The #1 Communication Mistake People Make in Arguments (Do THIS Before You Respond to Instantly Lower Tension) from On Purpose with Jay Shetty. Follow the show: On Purpose with Jay Shetty Today, Jay sits down with communication expert Jefferson Fisher to explore why the conversations we avoid often shape our lives the most. Drawing from his experience as a trial lawyer turned teacher, Jefferson shares a powerful truth: communication isn’t about winning arguments, it’s about building peace. When we learn to face difficult conversations head on with clarity, courage, and compassion we stop people-pleasing, reconnect with who we truly are, and create deeper, more honest relationships. Avoidance may feel safer in the moment, but it always comes at a cost. Together, Jay and Jefferson unpack why so many conflicts spiral, not because of what’s said, but because of what’s heard. From romantic relationships to family dynamics, they reveal how most arguments are really about the need to feel understood, valued, and safe. Jefferson shares simple yes transformative tools, like asking “What did you hear?” or pausing to breathe before responding, that help slow heated moments and turn reaction into connection. He explains that true emotional intelligence is the ability to repair quickly, validate feelings without needing to agree, and choose understanding over defensiveness. In this interview, you'll learn: How to Face Difficult Conversations Without Fear How to Say the Hard Thing Without Starting a Fight How to Stay Calm When You Feel Triggered How to Make Someone Feel Understood Without Agreeing How to Repair a Conversation After You Mess Up How to Slow Down Arguments Before They Escalate How to Build Deeper Relationships Through Better Conversations Every honest sentence, every pause to breathe, every moment you choose understanding over reaction is a step toward a more peaceful life. Growth doesn’t come from avoiding what’s hard, it comes from meeting it with intention, patience, and compassion. Get your own copy of Jefferson’s latest book, The Next Conversation: Argue Less, Talk More  With Love and Gratitude, Jay Shetty JAY’S DAILY WISDOM DELIVERED STRAIGHT TO YOUR INBOX Join 900,000+ readers discovering how small daily shifts create big life change with my free newsletter. Subscribe here.  Check out our Apple subscription to unlock bonus content of On Purpose! https://lnk.to/JayShettyPodcast  What We Discuss: 00:00 Intro 01:11 How Good Communication Creates a Life of Peace 02:14 Why Facing Difficult Conversations Changes Everything 04:53 Your Fear of Upsetting Others Is Valid 06:45 The Biggest Communication Mistake We All Make 09:45 Can You Actually Change Someone’s Mind? 12:31 How to Reach Someone Who Refuses to Communicate 16:17 Winning Arguments Should Never Be the Goal 19:43 What to Do When Your Partner Triggers You 21:21 The Patience Required to Create Real Connection 25:42 How Should I Respond to the Silent Treatment? 30:13 The Clearest Sign Someone Doesn’t Truly Care 32:10 When a Relationship May Be Beyond Repair 35:00 Why Radical Honesty Strengthens Relationships 38:03 When Your Partner Can’t Handle the Hard Conversations 41:31 The Small Moments Where Repair Gets Missed 44:20 Do You Feel Judged by Your Parents? 51:53 How to Say No Without Feeling Guilty 55:14 How to Stop Saying Things You Don’t Mean 58:04 Setting Boundaries That Actually Stick  01:00:37 What to Do When a Coworker Keep Interrupting You 01:03:15 Overexplaining Undermines Your Confidence 01:06:06 Breaking the Us vs. Them Mentality 01:11:25 Jefferson on Final Five Episode Resources: Website | https://www.jeffersonfisher.com/   Instagram | https://www.instagram.com/jefferson_fisher/  YouTube | https://www.youtube.com/channel/UCXjnpu6lK0HoUyOMh2ZBwhQ  TikTok | https://www.tiktok.com/@justaskjefferson   Facebook | https://www.facebook.com/justaskjefferson/   X | https://x.com/jefferson_fishr  LinkedIn | https://www.linkedin.com/in/jeffersonfisher/ See omnystudio.com/listener for privacy information. DISCLAIMER: Please note, this is an independent podcast episode not affiliated with, endorsed by, or produced in conjunction with the host podcast feed or any of its media entities. The views and opinions expressed in this episode are solely those of the creators and guests. For any concerns, please reach out to team@podroll.fm.

  3. 5 MAR

    The Call Is Coming From Inside the House - Live From Zero Trust World 2026

    Steve Gibson and Leo Laporte host a special episode of Security Now live from ThreatLocker's Zero Trust World 2026 in Orlando, Florida. The final frontier of security is internal. Today, we have the tools, techniques and technologies to thwart attacks originating from outside our perimeter. We're now good at protecting our borders. But major high profile breaches occurring over the past several years have revealed that insufficient attention has been given to the security of our internal systems and networks. Today's greatest security weaknesses result from decades of system design, deployment and policy that have placed far too much trust on the conduct of those on the inside, behind our borders. Whether deliberate, inadvertent, or externally penetrating, the greatest challenge we now face is that of designing and deploying our internal security with strict adherence to the principles of least privilege and zero trust. Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsor: threatlocker.com/twit

    52 min
  4. 3 MAR

    KongTuke's CrashFix - Click, Paste, Pwned

    A crafty new breed of social engineering attack is tricking users into launching malware straight from their clipboard, exposing a fresh vulnerability in Windows that even tech pros could fall for. Leo Laporte and Steve Gibson break down how the latest ClickFix and CrashFix exploits are outsmarting traditional defenses. The lowdown on last week's "no turn" picture of the week. Is an AI-driven hacking campaign a big deal now. Clause used in multiple Mexican government attacks. Apple continues to be confronted with age restrictions. COPPA needs an exception to allow age collection. Meta swamps law enforcement with AI-slop CSAM reports. Roskomnadzor has been busy blocking VPNs. Guess how many. The UK tries to report their self-scanning success. Remember that hacker who extorted the psychotherapy patients. Scattered Lapsus$ Hunters is actively recruiting women. Cisco lands another breathtakingly rare 10.0 CVSS. VulnCheck's report on 2025 vulnerabilities and exploits. Steve discovers a fabulous $72 Hardware Security Module. A listener shares an interesting AI service discovery. The very potent "ClickFix" exploit evolves Show Notes - https://www.grc.com/sn/SN-1067-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: meter.com/securitynow guardsquare.com threatlocker.com/twit adaptivesecurity.com outsystems.com/twit

    2h 53m
  5. 25 FEB

    Password Leakage - Zero Trust, Zero Knowledge

    ETH Zurich's deep-dive into the world's top password managers exposes how feature overload and legacy design obscure real security flaws, forcing a rethink of what "zero knowledge" actually means for your vault. Learn why recent fixes matter—and why open source may be your safest bet. CA's warn us to urgently prepare for the inevitable. Three U.S. states attempt to ban 3D printed firearms. Denied ransom, ShinyHunters leaks 967,000 personal details. "Billions" of U.S. social security numbers leaked. Is Apple planning to add cameras to three new gadgets. No more security fixes for Firefox on Windows 7 & 8. Russia blocks the official Linux kernel site they need. Will the U.S."freedom.gov" site post EU blocked content. LLM's will offer secure passwords. Do Not Use Them. As predicted, the "ClickFix" attack strategy takes over. A listener believes his computer is compromised. How could three popular password managers get things wrong. Show Notes - https://www.grc.com/sn/SN-1066-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: guardsquare.com bitwarden.com/twit zscaler.com/security hoxhunt.com/securitynow material.security

    2h 50m
  6. 18 FEB

    Attestation - Code Signing Gets Tough

    How secure are your Chrome extensions and certificate signings really? This episode pulls back the curtain on a massive spyware discovery and exposes the convoluted hoops developers must jump through to prove their identity in 2026. Websites can place high demands upon limited CPU resources. Microsoft appears to back away from its security commitment. What's Windows 11 26H1 and where do I get it. Chrome 145 brings Device Bound Session Credentials. More countries are moving to ban underage social media use. The return of Roskomnadzor. Discord to require proof of adulthood for adult content. Might you still be using WinRAR 7.12 -- I was. Paragon's Graphite can definitely spy on all instant messaging. 30 malicious Chrome Extensions. 287 Chrome extensions from spying on 37.4 million users. The first malicious Outlook add-in steals 4000 user's credentials. Some AI "vibe" coding thoughts. What I just went through to obtain a new code signing certificate Show Notes - https://www.grc.com/sn/SN-1065-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: canary.tools/twit - use code: TWIT joindeleteme.com/twit promo code TWIT meter.com/securitynow zscaler.com/security hoxhunt.com/securitynow

    2h 41m

Ratings & Reviews

4.5
out of 5
2 Ratings

About

Cybersecurity guru Steve Gibson joins Leo Laporte every Tuesday. Steve and Leo break down the latest cybercrime and hacking stories, offering a deep understanding of what's happening and how to protect yourself and your business. Security Now is a must listen for security professionals every week. You can join Club TWiT for $10 per month and get ad-free audio and video feeds for all our shows plus everything else the club offers...or get just this podcast ad-free for $5 per month. New episodes every Tuesday.

You Might Also Like