103 episodes

Cybersecurity guru Steve Gibson joins Leo Laporte every Tuesday. Steve and Leo break down the latest cybercrime and hacking stories, offering a deep understanding of what's happening and how to protect yourself and your business. Security Now is a must listen for security professionals every week.

Records live every Tuesday at 4:30pm Eastern / 1:30pm Pacific / 20:30 UTC.

Security Now (Audio‪)‬ Security Now

    • Technology
    • 4.5 • 34 Ratings

Listen on Apple Podcasts
Requires subscription and macOS 11.4 or higher

Cybersecurity guru Steve Gibson joins Leo Laporte every Tuesday. Steve and Leo break down the latest cybercrime and hacking stories, offering a deep understanding of what's happening and how to protect yourself and your business. Security Now is a must listen for security professionals every week.

Records live every Tuesday at 4:30pm Eastern / 1:30pm Pacific / 20:30 UTC.

Listen on Apple Podcasts
Requires subscription and macOS 11.4 or higher

    Not So Fast - GPS Vulnerabilites, VPN Flaw

    Not So Fast - GPS Vulnerabilites, VPN Flaw

    The vulnerability of GPS
    Is the sky falling on all VPN systems?
    Multi-user Passkeys, YubiKeys?
    The iCloud Keychain
    The UK and Google's Topics
    Show Notes - https://www.grc.com/sn/SN-973-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to this show at https://twit.tv/shows/security-now.

    Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Sponsors:
    Melissa.com/twit
    kolide.com/securitynow
    lookout.com
    bitwarden.com/twit

    • 2 hrs 24 min
    Passkeys: A Shattered Dream? - IoT Default Passwords, Passkeys

    Passkeys: A Shattered Dream? - IoT Default Passwords, Passkeys

    GCHQ: No more default passwords for consumer IoT devices!
    What happened with Chrome and 3rd-party cookies?
    Race conditions and multi-threading
    GM "accidentally" enrolled millions into "OnStar Smart Driver +" program
    Steve recommends Ryk Brown's "Frontiers Saga"
    SpinRite update
    Passkeys: A Shattered Dream?
    Show Notes - https://www.grc.com/sn/SN-972-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to this show at https://twit.tv/shows/security-now.

    Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Sponsors:
    business.eset.com/twit
    vanta.com/SECURITYNOW
    1bigthink.com
    lookout.com

    • 2 hrs 11 min
    Chat (out of) Control - Fuxnet, Android Quarantine, Gentoo

    Chat (out of) Control - Fuxnet, Android Quarantine, Gentoo

    What do you call "Stuxnet on steroids"??
    Voyager 1 update
    Android 15 to quarantine apps
    Thunderbird & Microsoft Exchange
    China bans Western encrypted messaging apps
    Gentoo says "no" to AI
    Cars collecting diving data
    Freezing your credit
    Investopedia
    Computer Science Abstractions
    Lazy People vs. Secure Systems
    Actalis issues free S/MIME certificates
    PIN Encryption
    DRAM and GhostRace
    AT&T Phishing Scam
    Race Conditions and Multi-core processors
    An Alternative to the Current Credit System
    SpinRite Updates
    Chat (out of) Control
    Show Notes - https://www.grc.com/sn/SN-971-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to this show at https://twit.tv/shows/security-now.

    Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Sponsors:
    canary.tools/twit - use code: TWIT
    lookout.com
    kolide.com/securitynow
    zscaler.com/zerotrustAI

    • 2 hrs 15 min
    GhostRace - AT&T Breach Update, Cookie Notices, Router Buttons

    GhostRace - AT&T Breach Update, Cookie Notices, Router Buttons

    An update on the AT&T data breach
    340,000 social security numbers leaked
    Cookie Notice Compliance
    The GDPR does enforce some transparency
    Physical router buttons
    Wifi enabled button pressers
    Netsecfish disclosure of Dlink NAS vulnerability
    Chrome bloat
    SpinRite update
    GhostRace
    Show Notes - https://www.grc.com/sn/SN-970-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to this show at https://twit.tv/shows/security-now.

    Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Sponsors:
    kolide.com/securitynow
    bitwarden.com/twit
    vanta.com/SECURITYNOW
    1bigthink.com

    • 1 hr 52 min
    Minimum Viable Secure Product - Dlink NAS Backdoor, Privnote, Crowdefense

    Minimum Viable Secure Product - Dlink NAS Backdoor, Privnote, Crowdefense

    Out-of-support DLink NAS devices contain hard coded backdoor credentials

    Privnote is not so "Priv"

    Crowdfense is willing to pay millions

    Engineers Pinpoint Cause of Voyager 1 Issue, Are Working on Solution

    SpinRite Update

    Minimum Viable Secure Product

    Show Notes - https://www.grc.com/sn/SN-969-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to this show at https://twit.tv/shows/security-now.

    Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Sponsors:
    zscaler.com/zerotrustAI
    business.eset.com/twit
    lookout.com
    joindeleteme.com/twit promo code TWIT

    • 1 hr 51 min
    A Cautionary Tale - XZ Outbreak, AT&T Data Breach

    A Cautionary Tale - XZ Outbreak, AT&T Data Breach

    A near-Universal (Local) Linux Elevation of Privilege vulnerability
    TechCrunch informed AT&T of a 5 year old data breach
    Signal to get very useful cloud backups
    Telegram to allow restricted incoming
    HP exits Russia ahead of schedule
    Advertisers are heavier users of Ad Blockers than average Americans!
    The Google Incognito Mode Lawsuit
    Canonical fights malicious Ubuntu store apps
    Spinrite update
    A Cautionary Tale
    Show Notes - https://www.grc.com/sn/SN-968-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to this show at https://twit.tv/shows/security-now.

    Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Sponsors:
    1bigthink.com
    kolide.com/securitynow
    Melissa.com/twit
    vanta.com/SECURITYNOW

    • 1 hr 45 min

Customer Reviews

4.5 out of 5
34 Ratings

34 Ratings

Thorz ,

Fun, precise and unbelievably useful

I have been listening to Steve and Leo since the start of Security Now over 18 years ago and this show never ends to amaze me. Working in the IT industry it is a most that you are updated about the latest news that are out there and surely Security Now is a fun way to do it.
If you are interested in security in technology as a whole don’t hesitate to give this weekly show a try, you will appreciate it

Hans 'Hanseman' Hansen ,

A show for true geeks.

Steve Gibson er ikke bare en dyktig formidler, men også anerkjent innen fagfeltet sitt. Det er en ære å få presentert nyheter fra en ekspert på dette nivået. Her kan både entusiaster og lekmenn ta et dypdykk inn i en teknisk verden vi ellers hører lite om. Det er reklame, men det er å forvente når showet er gratis. Nyter denne podcasten.

Olivier Klaver ,

Interesant å lærerikt

Programmet er en master-class i data
sikkerhet.

Top Podcasts In Technology

Acquired
Ben Gilbert and David Rosenthal
Lex Fridman Podcast
Lex Fridman
Darknet Diaries
Jack Rhysider
Apple Events (video)
Apple
Fornybaren
Fornybar Norge
Romkapsel
Bauer Media

You Might Also Like

Windows Weekly (Audio)
TWiT
This Week in Tech (Audio)
TWiT
MacBreak Weekly (Audio)
TWiT
Smashing Security
Graham Cluley & Carole Theriault
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
Johannes B. Ullrich
CyberWire Daily
N2K Networks

More by TWiT TV

This Week in Tech (Audio)
TWiT
iOS Today (Audio)
TWiT
MacBreak Weekly (Audio)
TWiT
This Week in Google (Audio)
TWiT
Windows Weekly (Audio)
TWiT
Home Theater Geeks (Audio)
TWiT