smashin: Recent Episodes

Dark Deep Web

For liberty and the pursuit of knowledge.

View Details

Going for a jog can be bad for your privacy (but even worse for your health), and Britain's consumer finance champion finds his face is being faked.

All this and more is discussed in the latest edition of the "Smashing Security" podcast by cybersecurity veterans Graham Cluley and Carole Theriault.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Russian commander shot dead after posting runs on Strava running app - Kyiv Post.
  • Martin Lewis felt 'sick' seeing deepfake scam ad on Facebook - BBC News.
  • How synthetic media, or deepfakes, could soon change our worldeing deepfake scam ad on Facebook - 60 Minutes on YouTube.
  • Nicki Minaj wants to delete the “whole internet” after viral AI deepfake video -Technology Inquirer.
  • Fears grow of deepfake ID scams following Progress hack - Ars Technica.
  • “Deep Fake Neighbour Wars”: ITV’s comedy shows how AI can transform popular culture -The Conversation.
  • ”My Old School” - BBC Scotland.
  • ”My Old School” trailer - YouTube.
  • MP doesn’t know whether she attended Downing St Party - YouTube.
  • ”Non-Censored” with Rosie Holt podcast - Audioboom
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Kolide - Kolide ensures that if your device isn’t secure it can’t access your cloud apps. It’s Device Trust for Okta. Watch the demo today!
  • Sysdig - Is your cloud secure? Not without runtime insights! Sysdig delivers the industry's ONLY complete, consolidated Cloud-Native Application Protection Platform (CNAPP) - powered by runtime insights - to prioritize critical risks and stay ahead of unknown threats. Learn how runtime insights reduces fatigue so developers can focus on delivering software and your security teams can focus on other demands.
  • Drata – With over 14 frameworks including SOC2, GDPR, HIPAA, and ISO 27001, Drata gets you audit-ready for crucial security standards needed to scale your business. As a listener to Smashing Security you can save 10% off Drata and have implementation fees waived.

SUPPORT THE SHOW:

Tell your friends and colleagues about “Smashing Security”, and leave us a review on

View Details

Just how much do porn websites know about your sexual peccadillos? How are Barbie dolls involved in identity scams? And would you trust a completely free telly?

Oh, and Graham has some opinions to share about "Indiana Jones and the Dial of Destiny".

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by cybersecurity veterans Graham Cluley and Carole Theriault, joined this week by Matt Davey from the "Random but Memorable" podcast.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Pornhub Is Being Accused of Illegal Data Collection - Wired.
  • StopDataPorn brings Pornhub to court for abusing users’ personal data with GDPR complaints - StopDataPorn.
  • The Password Game - Neal.fun.
  • The True Cost of a Free TV - Wired.
  • Telly dual-screen TV first look: it’s free and may be the future - The Verge.
  • Swindlers Used Barbie Dolls to Rob COVID Relief Program - The Messenger.
  • How rampant abuse by fintech fueled covid relief fraud - The Washington Post.
  • 'Biggest fraud in a generation': The looting of the Covid relief plan known as PPP - NBC News.
  • "We Are Not the Fraud Police": How Fintechs Facilitated Fraud in the Paycheck Protection Program - Fox News.
  • ‘The Dial Of Destiny’ Is Now The Worst-Reviewed ‘Indiana Jones’ Movie - Forbes.
  • “Jury Duty” TV series - Wikipedia.
  • “Jury Duty” trailer - YouTube.
  • Spray Cork: What Is It? - Build with Rise.
  • CorkSol.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Kolide – Kolide ensures that if your device isn’t secure it can’t access your cloud apps. It’s Zero Trust for Okta. Watch a demo today!

View Details

UPS delivers some smishing advice (but have they kept something under wraps?), we ask ChatGPT to take a long hard look at itself, and we debate what the penalty should be for taking national secrets home with you.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by cybersecurity veterans Graham Cluley and Carole Theriault, joined this week by Host Unknown's sole founder Thom Langford.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • UPS discloses data breach after exposed customer info used in SMS phishing - Bleeping Computer.
  • Example of UPS SMS phishing message related to Lego order - Twitter.
  • Another example of a Lego-related UPS phishing message - Twitter.
  • Former FBI Analyst Sentenced for Retaining Classified Documents - US Department of Justice.
  • How The Intercept might have helped unmask Reality Winner to the NSA - Graham Cluley.
  • Bad adverts leave people scratching their heads - MSN.
  • How Cybercriminals Can Perform Virtual Kidnapping Scams Using AI Voice Cloning Tools and ChatGPT - Trend Micro.
  • Which Jobs Will Be Most Impacted by ChatGPT? - Visual Capitalist.
  • Unraveling an AI Scam with AI - Imperva.
  • 100,000 Hacked ChatGPT Accounts Discovered on Dark Web - Hackread.
  • 97+ ChatGPT Statistics & User Numbers In June 2023 (New Data) - Nerdy Nav.
  • “Speed Cubers” - Netflix.
  • Trailer for “Speed Cubers” - YouTube.
  • KBDcraft.
  • ”How to Win Friends and Disappear People” - Qcode Podcasts.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source...

View Details

There's some funny business going on on Google, and Zuckerberg's $14 billion bet on the metaverse is beginning to look a little childish...

All this and more is discussed in the latest edition of the "Smashing Security" podcast by cybersecurity veterans Graham Cluley and Carole Theriault.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Google sues alleged scammer over fake business and review scheme - The Verge.
  • Meta to Lower Age for Users of Virtual Reality Headset to 10 From 13 - New York Times.
  • Introducing New Parent-Managed Meta Accounts for Families - Meta Blog.
  • Keep Connected - ages 10–14 - Keep Connected.
  • The Metaverse Police: A VR content moderator shares his insights - Mixed News.
  • “Untold: The Girlfriend Who Didn't Exist” - Netflix.
  • Tommy Siegel - Some candy hearts comics I drew, a thread - Twitter.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – Kolide ensures that if your device isn’t secure it can’t access your cloud apps. It’s Zero Trust for Okta. Watch a demo today!
  • Drata – With over 14 frameworks including SOC2, GDPR, HIPAA, and ISO 27001, Drata gets you audit-ready for crucial security standards needed to scale your business. As a listener to Smashing Security you can save 10% off Drata and have implementation fees waived.

SUPPORT THE SHOW:

Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.

Become a supporter via Patreon or Apple Podcasts for ad-free episodes and our early-release feed!

FOLLOW US:

Follow us on Twitter at @SmashinSecurity, or Mastodon, or on the

View Details

There are shocking revelations about a US Government data suck-up, historic security breaches at Windsor Castle, and the MOVEit hack causes consternation.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by cybersecurity veterans Graham Cluley and Carole Theriault, joined this week by The Cyberwire's Dave Bittner.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Declassified files reveal ‘large number’ of security scares at Windsor Castle - Metro.
  • Intruder at Windsor: Security 400 scared of unpleasant Andrew' to turn away fantasist - Express.
  • The US Is Openly Stockpiling Dirt on All Its Citizens - Wired.
  • I don’t care about cookies browser plugin.
  • MOVEit hack: Media watchdog Ofcom latest victim of mass hack - BBC News.
  • BBC, BA and Boots issued with ultimatum by cyber gang Clop - BBC News.
  • Ukrainian police arrest multiple Clop ransomware gang suspects - TechCrunch.
  • BBC and British Airways affected by data breach at payroll company Zellis - The Record.
  • BA, Boots and BBC staff details targeted in Russia-linked cyber-attack - The Guardian.
  • Zero-Day Vulnerability in MOVEit Transfer Exploited for Data Theft - Mandiant.
  • MOVEit Transfer and MOVEit Cloud Vulnerability - Progress.
  • MOVEit announces second vulnerability; Minnesota schools agency breached with original bug - The Record.
  • An Update on the Steps We are Taking to Protect MOVEit Customers - Ipswitch.
  • Spider-Man: Across the Spider-Verse - IMDB.
  • Spider-Man: Across the Spider-Verse trailer - YouTube.
  • The Muppets Mayhem - Disney+.
  • The Muppets Mayhem trailer - YouTube.

View Details

Australia's signal intelligence agency calls upon an Eighties popstar to fight terrorism, and a simple act of kindness leads to a woman being scammed for thousands.

All this and much more is discussed in the latest edition of the "Smashing Security" podcast by cybersecurity veterans Graham Cluley and Carole Theriault.

Plus - don't miss our featured interview with Max Power of Bitwarden.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Australian cyber-op attacked ISIL with the terrifying power of Rickrolling - The Register.
  • “Breaking the code: Cyber Secrets Revealed” - ABC.
  • Scam Alert: Woman tries helping injured bird, ends up losing Rs 1 lakh to cyber criminals - MSN News.
  • Toll-free Hijack Alert (misdial scam) - AT&T.
  • “Connected: the hidden science of everything” - Netflix.
  • “Connections” with James Burke - YouTube.
  • “I wanna marry Harry” reality show - Wikipedia.
  • “Space cadets” reality show - Wikipedia.
  • Unreal: A Critical History of Reality TV - Apple Podcasts.
  • Famous Studios - Famous Studios website.
  • Unreal: A Critical History of Reality TV - BBC Sounds.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – Kolide ensures that if your device isn’t secure it can’t access your cloud apps. It’s Zero Trust for Okta. Watch a demo today!
  • Centripetal – Centripetal’s CleanINTERNET defends your assets from cyber threats by leveraging dynamic threat intelligence on a mass scale.

SUPPORT THE SHOW:

Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.

Become a supporter

View Details

ChatGPT hallucinations cause turbulence in court, a riot in Wales may have been ignited on social media, and do you think .MOV is a good top-level domain for "a website that moves you"?

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Mark Stockley.

Plus don't miss our featured interview with David Ahn of Centripetal.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • 8 new top-level domains for dads, grads and techies - Google.
  • Tweet by Citizen Lab’s John Scott-Railton - Twitter.
  • File Archiver in the browser - mr.d0x.
  • A Lawyer's Filing "Is Replete with Citations to Non-Existent Cases" - Thanks, ChatGPT? - Reason.
  • Ely riot: Live updates as police investigate CCTV showing police van following bike moments before fatal crash - Wales Online.
  • Cardiff riot: Police force refers itself to watchdog as CCTV shows its van following e-bike before fatal crash - Sky News.
  • Two boys killed in Cardiff crash which was followed by riot are named - Sky News.
  • Cardiff riots: social media rumours about crash started unrest, says police commissioner - The Guardian.
  • Black Butterflies - Netflix.
  • Black Butterflies trailer - YouTube.
  • “The End of the World Is Just the Beginning: Mapping the Collapse of Globalization” by Peter Zeihan - Amazon.
  • Science Vs - Gimlet Media Podcast.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – Kolide ensures that if your device isn’t secure it can’t access your cloud...

View Details

13 years jail for spoofing scammer, a rogue IT security expert's Bitcoin blackmail goes wrong, and Facebook's eyewatering GDPR fine may be only the beginning of its problems.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by the Imposter Syndrome Network podcast's Zoë Rose.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Man convicted of blackmail and other offences - SEROCU.
  • EU hits Meta with record €1.2B privacy fine - Politico.
  • Police text 70,000 victims in UK's biggest anti-fraud operation - BBC News.
  • iSpoof fraudster guilty of £100m scam sentenced to 13 years - BBC News.
  • Fraudster pleads guilty to £100m iSpoof scam - BBC News.
  • 300: Interplanetary file systems, iSpoof, and don’t delete Twitter - Smashing Security.
  • "John Was Trying to Contact Aliens" - Netflix.
  • Sleep mask - Amazon.
  • Blackout blind with suction cups - Amazon.
  • Jewish Matchmaking - Netflix.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – Kolide ensures that if your device isn’t secure it can’t access your cloud apps. It’s Zero Trust for Okta. Watch a demo today!
  • Centripetal - Centripetal's CleanINTERNET defends your assets from cyber threats by leveraging dynamic threat intelligence on a mass scale.

SUPPORT THE SHOW:

Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.

Become a supporter via Patreon or Apple Podcasts for ad-free episodes and our early-release...

View Details

Personal information is going for a song, and the banks want social media sites to pay when their users get scammed.

All this and much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Re-Victimization from Police-Auctioned Cell Phones - Krebs on Security.
  • Fraud Strategy: stopping scams and protecting the public - UK Gov.
  • Spanish Police Takes Down Massive Cybercrime Ring, 40 Arrested - Hacker News.
  • Social media firms should reimburse online fraud victims, say UK bankers - The Guardian.
  • How Many People Use Social Media in 2023? - Oberlo.
  • Scam social media quizzes dupes people into revealing personal details - ITV News.
  • Where are you most likely to be scammed: phone, text or social media? - This is Money.
  • Where are you most likely to be scammed: phone, text or social media? - This is Money.
  • Major bank calls out Meta for huge rise in scams on its platforms - This is Money.
  • The Legend of Zelda: Tears of the Kingdom - Nintendo.
  • ScanSnap SV600 - Fujitsu.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – Kolide ensures that if your device isn’t secure it can’t access your cloud apps. It’s Zero Trust for Okta. Watch a demo today!
  • Outpost24 – Understand your shadow IT risk with a free attack surface analysis.

SUPPORT THE SHOW:

Tell your...

View Details

Twitter shares explicit photos without users' permission, one US company can look forward to a $1.4 billion payout seven years after an infamous cyberattack, and how might hackers target Eurovision?

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by cybersecurity reporter John Leyden.

Plus don't miss our featured interview with Outpost24's John Stock.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Introducing Twitter Circle, a new way to Tweet to a smaller crowd - Twitter.
  • Twitter Circles Is Broken, Revealing Nudes Not Meant For The General Public - Buzzfeed News.
  • Insurers can't use 'act of war' excuse to avoid Merck's $1.4B NotPetya payout - The Register.
  • What is Hostile or Warlike?: An in-depth look at the Merck war exclusion decision and its shortfalls - Kennedys Law.
  • Eurovision voting scandal: Six juries cheated and voted for each other - EuroVision World.
  • Eurovision: MP seeks assurances contest voting will be protected from Russian threats - Sky News.
  • Fears pro-Russian hackers could ruin Eurovision by disrupting broadcasts and silencing the song contest next week - Daily Mail.
  • Cyber security experts hope to protect Eurovision voting from possible Russian threat - ITV News.
  • The technology of the Eurovision Song Contest - Technology and Engineering.
  • Cyber security experts hope to protect Eurovision voting from possible Russian threat - Eurovision News.
  • Eurovision voting scandal: Six juries cheated and voted for each other - Eurovision News.
  • Eurovision 2023: Tickets for Liverpool sell out after huge demand - BBC News.
  • Eurovision 2023: Hotel...

View Details

Two unsavoury websites suffer from a worrying leak, scientists are going animal crackers over AI, and the BBC is intercepting scammers' live phone calls with victims.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Lazarus Heist's Geoff White.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Hackers steal emails, private messages from hookup websites - TechCrunch.
  • Scam Interceptors - BBC.
  • ‘They’re coming up with devious ways to take your money’: the TV hackers taking on the scammers - The Guardian.
  • Did BBC break the law by using a botnet to send spam? - Naked Security.
  • How a horse whisperer can help engineers build better robots - Science Daily.
  • How Scientists Are Using AI to Talk to Animals - Scientific American.
  • “I don’t know”, sung by 76-year-old Paul McCartney - YouTube.
  • “I don’t know”, sung by AI Paul McCartney - YouTube.
  • AI makes Paul McCartney’s voice youthful - The Daily Beatle.
  • “New”, sung by the AI Beatles - YouTube.
  • AI Freddie Mercury sings “Yesterday” - YouTube.
  • The Evaporated - Campside Media.
  • Tetris - Apple TV+.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – Kolide ensures that if your device isn’t secure it can’t access your cloud apps. It’s Zero Trust for Okta. Watch a demo today!
  • Outpost24 - Understand your shadow IT risk with a free attack surface analysis.

SUPPORT THE SHOW:

Tell your friends and colleagues about “Smashing Security”, and leave us a review on

View Details

A boss is bitten in the bottom after being struck by one of the worst crimes in Finnish history, Strava's privacy isn't so private, and a private investigator uncovers some TikTok tall tales.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by T-Minus's Maria Varmazis.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Finnish therapy clinic’s CEO fired after despicable data breach and blackmail threats - Graham Cluley.
  • Lizard Squad Member: Why I Took Down Xbox and PlayStation - Sky News on YouTube.
  • Hacker Charged With Extorting Online Psychotherapy Service - Krebs on Security.
  • Finland’s Most-Wanted Hacker Nabbed in France - Krebs on Security.
  • Ex-CEO of hacked therapy clinic sentenced for failing to protect patients' session notes - Bitdefender.
  • Hackers can find your home on Strava even if you use privacy settings, researchers find - Yahoo Sports.
  • Iron Bianca hashtag on TikTok - TIkTok.
  • Investigators warn of fake suicide scams on social media platforms - MSN News.
  • How did Iron Bianca die? Tribute Pours In As Tiktok Star Passed Away - PBK News.
  • Spill-the-Tea-007 TikTok Channel - TikTok.
  • Mike Bolhius Private Investigator - Mike Bolhius homepage.
  • Paint trailer - YouTube.
  • Bob Ross: Happy Accidents, Betrayal & Greed - Netflix.
  • Star Trek: Picard - Paramount Plus.
  • The Diplomat - Netflix.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure...

View Details

Graham wonders what would happen if his bouncing buttocks were captured on camera by a Tesla employee, and we take a look at canny scams connected to China's Operation Fox Hunt.

All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault.

(Oh, and when Carole mentioned Colin the Accountant as her "Pick of the Week" she really meant "Colin from Accounts". Sorry!)

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Countering Threats Posed by the Chinese Government Inside the US - Speech by the FBI’s Christopher Wray.
  • Criminals Pose as Chinese Authorities to Target US-based Chinese Community - FBI.
  • FBI: How fake Xi cops prey on Chinese nationals in the US - The Register.
  • Special Report: Tesla workers shared sensitive images recorded by customer cars - Reuters.
  • 303: Secret Roomba snaps, Christmas cab scams, and the future of AI - Smashing Security.
  • Lawsuit: Tesla must be punished for “tasteless” sharing of car-camera images - Ars Technica.
  • Customer Privacy Notice - Tesla.
  • Tesla hit with class action lawsuit over alleged privacy intrusion - Reuters.
  • Tesla About Autopilot - Tesla.
  • “Wet Nellie” - Wikipedia.
  • Device Orchestra - YouTube.
  • “Smoke on the Water”, as performed by Device Orchestra - YouTube.
  • “Eye of the Tiger”, as performed by Device Orchestra - YouTube.
  • Cabin Camera - Tesla.
  • Colin from Accounts - Amazon Prime.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust....

View Details

Everyone's talking juice-jacking - but has anyone ever been juice-jacked? Uber suffers yet another data breach, but it hasn't been hacked. And Carole hosts the "AI-a-go-go or a no-no?" quiz for Dave and Graham.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Cyberwire's Dave Bittner.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Uber driver info stolen yet again: This time from law firm - The Register.
  • Letter from law firm Genova Burns to impacted Uber drivers (PDF)
  • Tweet by FBI Denver - Twitter.
  • FBI warns against using public phone charging stations - CNBC.
  • 'Juice Jacking': The Dangers of Public USB Charging Stations - FCC.
  • Stop! Don’t charge your phone this way - Seattle Times.
  • This Seemingly Normal Lightning Cable Will Leak Everything You Type - Vice.
  • Cybersecurity Myths You Might Still Believe – Debunked! - CXO Today.
  • China to require 'security assessment' for new AI products - France24.
  • Cybercrime: be careful what you tell your chatbot helper…- The Guardian.
  • 12 Jobs that AI will never replace - In Hunt World.
  • ChatGPT Fabricates Sexual Harassment Scandal, Names Real US Law Professor As Accused - Republic World.
  • Insurable cyberattacks? - Caveat podcast.
  • UBI board game - Board Game Geek.
  • The Eye, The Pyramid, The Map: The Psychogeography of ‘The World According to Ubi’ - We Are The Mutants.
  • They Finally Let Me Into Abbey Road Studios! - Rick Beato, YouTube.

View Details

An Elon Musk-worshipping college principal gets schooled, and rapper Afroman turns the tables after armed police raid his house.

All this and much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • These Men's Rights Activists Literally Worship Elon Musk - Buzzfeed News.
  • Florida principal who sent $100K to scammer posing as Elon Musk says she was 'groomed' - WESH.
  • Florida principal resigns after sending $100K to scammer posing as Elon Musk - NY Post.
  • Afroman - Will You Help Me Repair My Door - YouTube.
  • Official Music Video for Because I Got High performed by Afroman - YouTube.
  • Police sue rapper Afroman for using footage of home raid in his music videos - The Guardian.
  • Afroman Complaint - Adams County Court.
  • Afroman Got Raided by Cops, So He Put Them in His Music Video - Vice.
  • Afroman - Wikipedia.
  • Afroman sued by seven officers who raided his home - NME.
  • Afroman Isn’t Worried About a Police Lawsuit Over His Music Videos - Rolling Stone.
  • Afroman Cops Wrecked My Home In Raid, For Nothing ...I Need Ben Crump!!! - TMZ.
  • Afroman I'm Missin' $400 In Cash After Raid... Thinks Cops Swiped It - TMZ.
  • Atlas Obscura.
  • Oak Beams, New College Oxford - Atlas Obscura.
  • BeyerDynamic DT 770 PRO Headphones - BeyerDynamic.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password...

View Details

A cryptocurrency hack leads us down a mazze of twisty little passages, Joe Biden's commercial spyware bill, and Utah gets tough on social media sites.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Register's Iain Thomson.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Tweet by Euler Finance confirming security breach - Twitter.
  • Euler Finance to Offer $1M Reward as It Reels From Nearly $200M Exploit - Coindesk.
  • Hackers stole over $500m in cryptocurrency in record-making heist, Ronin says - The Guardian.
  • Hacker Behind $200M Euler Attack Apologizes, Returns Millions in Ether, Dai to Protocol - Coindesk.
  • President Biden kind of mostly bans commercial spyware from US govt - The Register.
  • Utah Law Could Curb Use of TikTok and Instagram by Children and Teens - New York Times.
  • Utah’s social media for kids law could be coming to a state near you - Vox.
  • Utah Governor Spencer Cox signs a landmark social media bill - Governor Cox’s Youtube.
  • RRR - Netflix.
  • RRR trailer - YouTube.
  • RRR Naatu Naatu dance scene - YouTube.
  • Best films of 2022 in the UK, No 7: RRR - The Guardian.
  • He Died with a Felafel in His Hand - Wikipedia.
  • Swarm - Amazon Prime.
  • Night of the Lepus - Wikipedia.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and...

View Details

It could be a case of aCropalypse now for Google Pixel users, there's a warning for house buyers, and just why is TikTok being singled out for privacy concerns?

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Thom Langford.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Stop pixelating! New tool reveals the secrets of "redacted" documents - Hot for Security.
  • Google Pixel exploit reverses edited parts of screenshots - The Verge.
  • Tweet by researcher Simon Aarons - Twitter.
  • aCropalypse demo.
  • Samsung 'Fake' Moon Shots Controversy Puts Computational Photography in the Spotlight - MacRumors.
  • Android phones can be hacked just by someone knowing your phone number - Graham Cluley.
  • BBC advises staff to delete TikTok from work phones - BBC News.
  • TikTok: UK ministers banned from using Chinese-owned app on government phones - BBC News.
  • TikTok banned from official Welsh government phones - BBC News.
  • Danish public broadcaster advises staff against using TikTok - BBC News.
  • Canada bans TikTok on government devices - BBC News.
  • European Commission bans TikTok on staff devices - BBC News.
  • New bill would ban TikTok in the US but it faces long odds - BBC News.
  • A Retired Teacher and Her Daughter Were Scammed Out of $200,000 Over Email: 'I'm 69 Years Old and Now I'm Broke and Homeless' - Entrepreneur.
  • Retired Colorado teacher left homeless and broke after scammers hijack house sale - MSN.
  • Homebuyers scammed out of nearly $200,000 - YouTube.
  • Stolen life savings Vickie and Sarah Ragle - Go Fund Me.

View Details

The twisted tale of the two Teslas, and a deepfake sandwich.

All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • B.C. man says he accidentally unlocked and drove someone else’s Tesla using the app - Global News.
  • A College Girl Found Deepfake Porn of Herself Online. Who Did It Shocked Her - Rolling Stone.
  • Denmark Tries to Attract Tourists Using ChatGPT, Deepfakes, and Famous Paintings UK PC Mag.
  • Deepfake Tools Are Made To Facilitate Harassment—So Why Are They Available in the App Store? - MSN.
  • Spot the Deepfake - Microsoft.
  • Sholay trailer - YouTube.
  • Sholay: Review of the monumental Indian epic - YouTube.
  • Rent or buy Sholay - YouTube Movies.
  • Jazz Pianist Brad Mehldau Plays The Beatles - NPR.
  • Brad Mehldau - Brad Mehldau website.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – Kolide ensures that if your device isn’t secure it can’t access your cloud apps. It’s Zero Trust for Okta. Watch a demo today!
  • Drata – With over 14 frameworks including SOC2, GDPR, HIPAA, and ISO 27001, Drata gets you audit-ready for crucial security standards needed to scale your business. As a listener to Smashing Secuirty you can save 10% off Drata and have implementation fees waived.

Support the show:

Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.

Become a supporter via

View Details

Scammers get pwned by a Canadian granny! Don't be seduced in a bar by an iPhone thief! And will the US Marshals be able to track down the villains who stole their data?

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Anna Brading.

Plus don’t miss our featured interview with Jason Meller of Kolide.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • They thought they could scam this Windsor grandmother of nearly $10K. She turned the tables on them - CBC.
  • Canada grandma helps stop fraud scheme targeting senior citizens - BBC News.
  • A Basic iPhone Feature Helps Criminals Steal Your Entire Digital Life - Wall Street Journal.
  • Ransomware attack on US Marshals Service affects ‘law enforcement sensitive information’ - CNN.
  • Hackers steal sensitive law enforcement data in a breach of the U.S. Marshals Service - NPR.
  • 9 millionaires and billionaires with the most bizarre spending habits - Business Insider.
  • Phishing still the leading way attackers breach security controls: IBM - IT World Canada.
  • New White House cyber strategy picks a fight with ransomware - AXIOS.
  • Happy Valley - BBC.
  • My 80s TV.
  • Everything Everywhere All at Once - IMDB.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack.
  • Drata – With over 14 frameworks including SOC2, GDPR, HIPAA, and ISO 27001, Drata gets you audit-ready for crucial security standards needed to...

View Details

Who has been warning Italian criminals that their phones are wiretapped? Can you trust your voice to protect your bank account? And why is TikTok being singled out by investigators?

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Dinah Davis.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Wiretapping Italian police tune in to hear their secrets being sold - The Times.
  • Jeremy Paxman stuns Silvio Berlusconi with Angela Merkel insult allegation - The Guardian.
  • Silvio Berlusconi interviewed by Jeremy Paxman on BBC Newsnight - YouTube.
  • Protests grow in Italy over the wiretapping of journalists - Independent.
  • How I Broke Into a Bank Account With an AI-Generated Voice - Vice.
  • TikTok under investigation by Canadian privacy authorities - BBC.
  • The UN's cyber crime treaty could be a privacy disaster - IT Pro.
  • TikToker outlines how she quit every job she’s had over the ‘most minor inconveniences’ Yahoo News.
  • “Check It Out” episode about nuclear war from July 1980 - YouTube.
  • The North-West Is Our Mother: The Story of Louis Riel's People, the Métis Nation - GoodReads.
  • Fleishman is in Trouble review – Jesse Eisenberg’s endlessly witty divorce drama is almost too good - The Guardian.
  • Fleishman is in Trouble - Disney+
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – the SaaS app that sends employees important, timely, and...

View Details

Boyfriends who are bots, Facebook's checkmark charge, Twitter Blue, and Will Ferrell's taunt of football fans...

All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Testing Meta Verified to Help Creators Establish Their Presence - Meta.
  • As Twitter forces users to remove text message 2FA, it’s in danger of decreasing security - Graham Cluley.
  • A pre-match message from Will Ferrell - QPR Twitter account.
  • BBC Takes Down Story About Will Ferrell After Being Fooled By Fake Twitter Account - Deadline.
  • Replika CEO Says AI Companions Were Not Meant to Be Horny. Users Aren't Buying It - Vice.
  • ‘My AI Is Sexually Harassing Me’: Replika Users Say the Chatbot Has Gotten Way Too Horny - Vice.
  • Replika homepage - Replika.
  • Click and Drag - xkcd.
  • 1110: Click and Drag - Explain xkcd.
  • xkcd 1110: Click and Drag map - Zoomable map of “Click and drag”
  • Only Murders in the Building - Disney Plus.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Kolide – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack.
  • SecurEnvoy – With growing cyber security threats everyone in your organisation needs multi-factor authentication tailored to their specific access needs and the risk profile of their role. Check out SecurEnvoy’s free guide now.

Support the show:

Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or

View Details

AI-generated voices are weaponised by online trolls, how ChatGPT reflects who we are as a society, and social media is in the firing line again.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Cyberwire's Dave Bittner.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • ‘Disrespectful to the Craft:’ Actors Say They’re Being Asked to Sign Away Their Voice to AI - Vice.
  • AI-Generated Voice Firm Clamps Down After 4chan Makes Celebrity Voices for Abuse - Vice.
  • Video Game Voice Actors Doxed and Harassed in Targeted AI Voice Attack - Vice.
  • ChatGPT Can Be Broken by Entering These Strange Words, And Nobody Is Sure Why - Vice.
  • My Strange Day With Bing’s New AI Chatbot - Wired.
  • We asked ChatGPT to write performance reviews and they are wildly sexist (and racist) - Fast Company.
  • How social media affects teen mental health: a missing link - Nature.
  • California bill to let parents sue social media gets second try - Bloomberg.
  • How to protect children from big tech companies - Wall Street Journal.
  • Three out of four parents say social media is a major distraction for students, according to new study - Phys.org.
  • Remarks of President Joe Biden – State of the Union address as prepared for delivery - The White House.
  • Why the past 10 years of American life have been uniquely stupid - The Atlantic.
  • Now Mesa public schools are also declaring that they have failed in educating their children by suing social media - Techdirt.
  • Seattle school...

View Details

When Ubiquiti suffered a hack the world assumed it was just a regular security breach, but the truth was much stranger... why are police happy that criminals keep using end-to-end encrypted messaging systems... and why is the Apple Watch being accused of crying wolf?

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Mark Stockley.

Warning: This podcast may contain nuts, adult themes, and rude language.

Sponsored by:

  • Bitwarden – Bitwarden vaults are end-to-end encrypted with zero-knowledge encryption, including, the URLs for the websites you have accounts for. Migrate to Bitwarden for a more secure password manager.
  • NordLayer – NordLayer safeguards your company’s network, securing and protecting remote workforces as well as business data. It can even help you ensure security compliance. Get your first month free.
  • SecurEnvoy - With growing cyber security threats everyone in your organisation needs authentication tailored to their specific access needs and the risk profile of their role. Check out SecurEnvoy's free guide now.

Episode links:

  • Ubiquiti tells customers to change passwords after security breach - ZD Net.
  • “No way out” trailer - YouTube.
  • Ubiquiti sues journalist, alleging defamation in coverage of data breach - Ars Technica.
  • Man charged with Ubiquiti data breach and extortion was employee assigned to investigate hack - Bitdefender.
  • Final Thoughts on Ubiquiti - Krebs on Security.
  • Former Employee Of Technology Company Pleads Guilty To Stealing Confidential Data And Extorting Company For Ransom - Department of Justice.
  • Dutch Police Read Messages of Encrypted Messenger 'Exclu' - Vice.
  • Shock and applause for Apple Watch's chilling real-life emergency call ad - Campaign Live.
  • 911 call made from Apple Watch of Washington woman buried alive released - Yahoo! News.
  • Apple Watch 8 series save yet another life - Live Mint.

View Details

Could a senior Latvian politician really be responsible for scamming hundreds of "mothers-of-two" in the UK? (Probably not, despite Graham's theories...) And should we be getting worried about the AI wonder that is ChatGPT?

All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault.

Plus don't miss our featured interview with DigiCert’s Brian "PKI" Trzupek.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Artis Pabriks.
  • ‘I left my partner and lost £80,000 to a fake Facebook romance’: Manchester mum’s warning over catfishing scam - Manchester World.
  • 'I know I have been a fool but these are the things we do for love', says mum duped out of £80k by Facebook lover - Manchester Evening News.
  • Amazon Warns Employees to Beware of ChatGPT - Gizmodo.
  • ChatGPT's soaring popularity has added $5 billion to the wealth of Nvidia's founder as Wall Street bets on AI boom for the chipmaker - Business Insider.
  • ChatGPT raises red flags by acing MBA exam
  • ChatGPT passes exams from law and business schools - CNN.
  • I asked ChatGPT how to negotiate a raise. Career coaches said I'd probably get one by following the AI chatbot's steps and script - Business Insider.
  • Real estate agents say they can’t imagine working without ChatGPT now - CNN.
  • Science journals ban listing of ChatGPT as co-author on papers - The Guardian.
  • Blakes 7 Bot - an automated bot that posts lines of dialogue from Blakes 7.
  • Yarn - Find video clips by quotes.
  • The New Gurus Podcast - BBC Sounds.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Bitwarden vaults are end-to-end encrypted with zero-knowledge encryption, including, the URLs for the websites you have accounts for....

View Details

What are prisoners getting up to with mobile phones? Why might ransomware no longer be generating as much revenue for cybercriminals? And how on earth did an airline leave the US government's "No Fly" list accessible for anyone in the world to download?

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Maria Varmazis.

Warning: This podcast may contain nuts, adult themes, and rude language.

Sponsored by:

  • Bitwarden – Bitwarden vaults are end-to-end encrypted with zero-knowledge encryption, including, the URLs for the websites you have accounts for. Migrate to Bitwarden for a more secure password manager.
  • ManageEngine PAM360 – A fully functional privileged access management suite that offers a holistic picture of all the privileged devices, users, and credentials in the IT infrastructure. From managing and governing access to all your enterprise resources to automating the access management life cycle in your organization, PAM360 does it all.
  • NordLayer – NordLayer safeguards your company’s network, securing and protecting remote workforces as well as business data. It can even help you ensure security compliance. Get your first month free.

Episode links:

  • The Complete Idiot's Guide to Writing Erotic Romance - Amazon.
  • The Many Ingenious Ways People in Prison Use (Forbidden) Cell Phone - The Marshall Project.
  • How Did They Run an Elaborate “Sextortion” Scam From Prison? Cellphones - The Marshall Project.
  • Alarm Over Death Row Cell Phone Threats - CBS News.
  • How to completely own an airline in 3 easy steps - Maia arson crimew.
  • U.S. airline accidentally exposes ‘No Fly List’ on unsecured server - Daily Dot.
  • Cyber-crime gangs' earnings slide as victims refuse to pay - BBC.
  • Ransomware Revenue Down As More Victims Refuse to Pay - ChainAnalysis.
  • Leaked Ransomware Docs Show Conti Helping Putin From the Shadows - Wired.
  • Luxe Listings Sydney trailer - YouTube.
  • Luxe Listing Sydney - Wikipedia.

View Details

Carole's in her sick bed, which leaves Graham in charge of the good ship "Smashing Security" as it navigates the choppy seas of credential stuffing and avoids the swirling waters of apps being sloppy with sensitive information.

Find out more in this latest edition of the "Smashing Security" podcast, hosted by Graham Cluley with special guest BJ Mendelson.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Operation Protect the Innocent - LA Police Department.
  • A Police App Exposed Secret Details About Raids and Suspects - Wired.
  • ODIN Intelligence website is defaced as hackers claim breach - TechCrunch.
  • Norton LifeLock says thousands of customer accounts breached - TechCrunch.
  • Ugh! Norton LifeLock password manager accounts accessed by hackers - Graham Cluley.
  • Spring app - Twitter.
  • Spring app - Mac App Store.
  • Mona app - Mastodon.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Bitwarden vaults are end-to-end encrypted with zero-knowledge encryption, including, the URLs for the websites you have accounts for. Migrate to Bitwarden for a more secure password manager.
  • ManageEngine PAM360 – A fully functional privileged access management suite that offers a holistic picture of all the privileged devices, users, and credentials in the IT infrastructure. From managing and governing access to all your enterprise resources to automating the access management life cycle in your organization, PAM360 does it all.
  • DigiCert - DigiCert's Trust Lifecycle Manager sets a new bar for unified management of digital trust.

Support the show:

Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.

Become a supporter via Patreon or

View Details

Someone called OxShagger thinks he has come up with the perfect Valentine's surprise for Oxford students, but is the way he has gone about "bookworms with benefits" really a good idea? Robot security guards are trundling the streets of - you guessed it - America. And a writer of paranormal bully romances (no, we don't know what that means either) returns from the grave...

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Host Unknown's Andrew Agnês.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Dating site for horny Oxford students slammed for privacy violations - Cherwell.
  • OxShag will not be running this term as creator says they ‘made some poor choices’ - The Oxford Tab.
  • Dysfunctional: Oxshag to shut down amid controversy - Cherwell.
  • Oxford University dating website for staff and students shut down after ‘huge data breach’ - The Times.
  • CES 2023 Robots: Humanoid Helpers, Coding Pups and Farming Planters - CNet.
  • One of America's most hated companies hired a security robot. It didn't go well - ZDNet.
  • Robot security downtown getting lots of attention, KHON2 News - YouTube.
  • 4 New Contracts for 8 Machines to Kick Off New Year at Knightscope - Knightscope.
  • Why was Susan Meachen bullied in 2020? - Reddit.
  • Fan outrage at Susan Meachen, the romance novelist accused of faking her death - BBC.
  • The Book Community Thought This Author Died. Now, It Seems Her Suicide Was a Hoax - Rolling Stone.
  • Vampire Survivors - Steam.
  • Vampire Survivors trailer - YouTube.

View Details

Beware your Roomba's roving eye, the Finns warn of AI threats around the corner, and watch out when hailing a cab in Dublin...

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Register's Iain Thomson.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • A Roomba recorded a woman on the toilet. How did screenshots end up on Facebook? - MIT Technology Review.
  • Building Smart Robots Requires Responsible Development - Roomba CEO Colin Angle on LinkedIn.
  • OpenAI predicts biz can break a billion in revs by 2024 - The Register.
  • The security threat of AI-enabled cyberattacks (PDF) - The Finnish Transport and Communications Agency, Traficom.
  • Ireland Christmas weather ‘roller-coaster’ amid new ‘Beast from the East’ threat - Irish Mirror.
  • Christmas revellers warned about sophisticated taxi scam as €300,000 is stolen from victims - MSN.
  • Taxi cab scam has cleaned out €300,000 from bank accounts of victims - Irish Independent.
  • “La Cabina” - YouTube.
  • “Last and First Men” by Olaf Stapledon - Wikipedia.
  • ”The other side of night” by Adam Hamdy - Pan MacMillan Press.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.

Support the show:

You can help the podcast by telling your friends and colleagues about “Smashing Security”, and leaving us a review on Apple Podcasts or

View Details

Drug dealers come unstuck while using the Encrochat encrypted-messaging app, and we put the Lensa AI's avatar-generation tool under the microscope.

All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault.

Plus - don't miss our featured interview with Rico Acosta, IT manager at Bitwarden.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Smashing Security 229: Dating leaks, right to repair, and a stinky bishop - Smashing Security.
  • Hard cheese: Stilton snap shared via EncroChat leads to drug dealer's downfall - The Register.
  • Operation Venetic: Pet dog and accidental selfies help convict international drugs traffickers - NCA.
  • What does the Lensa AI app do with my self-portraits and why has it gone viral? - The Guardian.
  • Lensa, the AI portrait app, has soared in popularity. But many artists question the ethics of AI art - NBC News.
  • I Uploaded Photos of Myself to the New Lensa A.I. Portrait Generator. The Results Were Stunning, Strange… and Super Creepy - Artnet.
  • People keep sharing their AI-generated portraits: What to know about Lensa, and why some push back on it - USA Today.
  • How Is Everyone Making Those A.I. Selfies? - New York Times.
  • Lensa AI: Security concerns regarding app behind colourful selfies on social media - The National News.
  • ‘Magic Avatar’ App Lensa Generated Nudes From My Childhood Photos - Wired.
  • Celebrities Are Obsessed With This Amazing New AI Portrait App - Hello Giggles.
  • This AI Self-Portrait App is Taking Over the Internet - Medium.
  • Wednesday Shows Off Her Moves - YouTube.

View Details

An AI chatbot is causing a stir - both impressing and terrifying users in equal measure. A security researcher discovers that a "smart" cam that doesn't use the internet is err.. using the internet. And university students revolt over under-the-belt surveillance.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Host Unknown's Thom Langford.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • While anticipation builds for GPT-4, OpenAI quietly releases GPT-3.5 - TechCrunch.
  • OpenAI upgrades GPT-3, stunning with rhyming poetry and lyrics - Ars Technica.
  • GPT-3.5 finds a security vulnerability - Twitter.
  • Mind-Blowing examples of OpenAI ChatGPT for Security, Infosec & Hacking - YouTube.
  • OpenAI's new ChatGPT bot: 10 dangerous things it's capable of - Bleeping Computer.
  • What GPT-3.5 really thinks about us humans - Twitter.
  • We asked GPT-3.5 to write a story about the “Smashing Security” hosts - Twitter.
  • GPT-Chat - OpenAI.
  • Researcher Paul Moore questions Eufy about its privacy - Twitter.
  • Eufy’s “local storage” cameras can be streamed from anywhere, unencrypted - Ars Technica.
  • Eufy privacy statement - Eufy.
  • ‘NO’: Grad Students Analyze, Hack, and Remove Under-Desk Surveillance Devices Designed to Track Them - Vice.
  • Max Von Himmel Twitter Feed - Twitter.
  • It’s Not Science, Just Surveillance (and it's Under Your Desk) - TWC newsletter.
  • Northeastern University - Northeastern University homepage.

View Details

Why deleting your Twitter account may be a very bad idea, how the police unravelled the iSpoof fraud gang, and a trip into outer space (or at least interplanetary file systems).

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by original show co-host Vanja Švajcer.

What an amazing 6 years of bickering it has been… thanks to all of you who have tuned in, appeared on the show, or supported us! 🙏

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Smashing Security #001: “One cup, two hotel guests” - YouTube.
  • Whoopi Goldberg Quitting Twitter: “As Of Tonight I’m Done” - Deadline.
  • Stephen Fry Joins Celebrity Twitter Exodus, Says “Goodbye” With Scrabble Message - Deadline.
  • Twitter Users Warned Not To Delete Their Accounts - Here’s Why - Forbes
  • How to deactivate your account - Twitter.
  • InterPlanetary File System - Wikipedia.
  • Cyber Criminal Adoption of IPFS for Phishing, Malware Campaigns - Cisco Talos.
  • Decentralized IPFS networks forming the 'hotbed of phishing' - The Register.
  • UK police arrest 120 in largest-ever cyber fraud crackdown - Computer Weekly.
  • Grote spoofingdienst uit de lucht gehaald door internationale samenwerking - Politie.nl.
  • Received a text from the Metropolitan Police about iSpoof? - Cel solicitors.
  • iSpoof' service dismantled, main operator and 145 users arrested - Bleeping Computer.
  • iSpoof: What is iSpoof and how did police take down scam call site linked to 200,000 victims? - The Scotman.
  • Listen to the...

View Details

Deepfake shenanigans strike users of troubled crypto firm FTX, the perils of charging your electric vehicle, and is Microsoft's takeover of Activision good news for video game fanatics.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by John Hawes of AMTSO.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Larry David promotes FTX in Superbowl ad - YouTube.
  • Crypto giant FTX collapses into bankruptcy - BBC News.
  • Tom Brady, Giselle Bündchen, Larry David & Steph Curry Caught In FTX Crypto Fallout With Class Action Suit - Deadline.
  • Bankman-Fried's FTX, senior staff, parents bought Bahamas property worth $300 milion - Reuters.
  • Tweet showing Sam Bankman-Fried deepfake scam - Twitter.
  • FTX Founder Deepfake Offers Refund to Victims in Verified Twitter Account Scam - Vice.
  • Crypto.com CEO admits company accidentally sent 320,000 ETH ($416 million) to another crypto exchange a few weeks prior - Web3 is going great.
  • Sandia studies vulnerabilities of electric vehicle charging infrastructure - Sandia Labs.
  • Review of Electric Vehicle Charger Cybersecurity Vulnerabilities, Potential Impacts, and Defenses - MDPI.
  • Shocker: EV charging infrastructure is seriously insecure - The Register.
  • Microsoft to acquire Activision Blizzard to bring the joy and community of gaming to everyone, across every device - Microsoft.
  • Gaming for everyone, everywhere: our view on the Activision Blizzard acquisition - Microsoft.
  • Video gaming market leaders - Statistics & Facts - Statista.

View Details

Elon Musk is still causing chaos at Twitter (and it's beginning to impact users), are scammers selling your house without your permission, and Google gets stung with a record-breaking fine.

All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Cyberwire's Dave Bittner.

Warning: This podcast may contain nuts, adult themes, and rude language.

Episode links:

  • Graham offers Dave Bittner some advice on “Welcome Datacomp”... in 1995! - Usenet.
  • Elon Musk apologises to users for Twitter being slow - Twitter.
  • Former Twitter employee doesn’t think Elon Musk knows what he’s talking about - Twitter.
  • Eric Frohnhoefer says Elon Musk is wrong - Twitter.
  • Twitter engineer calls out Elon Musk for technical BS in unusual career move - The Register.
  • Elon Musk says that he is turning off microservices “bloatware” - Twitter.
  • Twitter’s SMS Two-Factor Authentication Is Melting Down - Wired.
  • Elon only trusts Elon - Platformer.
  • Elon’s paranoid purge - Platformer.
  • Google to pay nearly $400 million over deceptive location tracking practices - The Record.
  • Follow Smashing Security on Mastodon.
  • South Bay Man Pleads Guilty to Participating in a Multimillion-Dollar Real Estate Scam Involving Fake Open Houses at Not-for-Sale Homes - Justice.gov.
  • A South Bay man accepted hundreds of offers from open houses. But the homes weren’t for sale - LA Times.
  • The typing of the Regex.
  • Fesshole - Twitter.
  • If Books Could Kill - Apple Podcasts.
  • Smashing...

View Details

Graham offers some security and privacy advice for those exodusing Twitter to Mastodon, and Carole slams the door shut on a notorious scammer with a huge Instagram following.

All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, who aren't joined by a guest this week.

Warning: This podcast may contain nuts, adult themes, some snorting, and rude language.

Episode links:

  • Mastodon: What you need to know for your security and privacy - Graham Cluley.
  • Follow Graham Cluley on Mastodon.
  • Hushpuppi: Notorious Nigerian fraudster jailed for 11 years in US - BBC.
  • Influencer involved in $1.1 million Qatar school financing scam jailed - Alarabiya.
  • Influencer ‘Ray Hushpuppi’ jailed over plan to launder $300m - The Guardian.
  • Hushpuppi’s wife, Imams write judge as US court sentences fraudster today - Premium Times.
  • Living trailer - YouTube.
  • Kleo - Netflix.
  • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

Sponsored by:

  • Kolide – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack.
  • Bitwarden – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.
  • Sealit - Zero Trust Data Protection: protect, share, and monitor confidential emails and files - without passwords. Integrated with Gmail, Outlook, and file systems. Learn more and take advantage of Sealit's special offer to "Smashing Security" listeners.

Support the show:

You can help the podcast by telling your friends and colleagues about “Smashing Security”, and leaving us a review on Apple Podcasts or Podchaser.

Become a

View Details

Twitter has a new chief twit in the form of Elon Musk and he's causing problems, scientists say artificial intelligence may help us communicate with animals, and is the office of the future set in the metaverse? All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley/ (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault/ (Carole Theriault), joined this week by Mark Stockley. Warning: This podcast may contain nuts, adult themes, dolphin noises, and rude language. Episode links: https://www.theregister.com/2022/10/31/elon_musk_chief_twit_acts/ (Elon Musk shows what being Chief Twit is all about across weird weekend) - The Register. https://www.youtube.com/watch?v=XKyKKWxr5mQ (Pranksters pretending to be laid-off Twitter employees leave San Francisco HQ) - YouTube. https://www.bloomberg.com/news/articles/2022-11-01/twitter-limits-content-enforcement-tools-as-us-election-looms (Twitter Limits Content-Enforcement Work as US Election Looms) - Bloomberg. https://twitter.com/yoyoel/status/1587290210530127872 (Twitter’s Yoel Roth comments on the firm’s trust and safety staff having their access to moderation and enforcement tools frozen) - Twitter. https://www.rollingstone.com/politics/politics-news/paul-pelosi-conspiracy-theory-trends-elon-musk-1234621217/ (Paul Pelosi Conspiracy Theory Trends on Twitter After Elon Musk Pushes It) - Rolling Stone. https://twitter.com/yoyoel/status/1527320116664279040 (Yoel Roth describes how Twitter will warn users of misleading information) - Twitter. https://twitter.com/yoyoel/status/1587230924554399744 (Yoel Roth describes “surge in hateful conduct on Twitter”) - Twitter. https://d3.harvard.edu/platform-digit/submission/the-demise-of-digg-how-an-online-giant-lost-control-of-the-digital-crowd/ (The Demise of Digg: How an Online Giant Lost Control of the Digital Crowd) - Harvard. https://mastodon.social/@gcluley (Follow Graham on Mastodon). https://www.vox.com/recode/2022/10/30/23426406/ai-animals-google-translate-karen-bakker-sounds-of-life (How tech is helping us talk to animals) - Vox. https://press.princeton.edu/books/hardcover/9780691206288/the-sounds-of-life (“The Sounds of Life: How Digital Technology Is Bringing Us Closer to the Worlds of Animals and Plants”) - Book by Karen Bakker. https://www.projectceti.org/ (Project CETI) - The Cetacean Translation Initiative. Not to be mixed-up with Project SETI. https://theintercept.com/2016/12/23/virtual-reality-allows-the-most-detailed-intimate-digital-surveillance-yet/ (The Dark Side Of VR) - The Intercept. https://www.vice.com/en/article/bvnxbm/the-metaverse-is-the-ultimate-surveillance-tool (The Metaverse Is the Ultimate Surveillance Tool) - Vice. https://edition.cnn.com/2022/10/20/world/metaverse-diving-in-spc-intl/index.html (What I Learned From Diving Headfirst Into The Metaverse) - CNN. https://www.smartcompany.com.au/technology/metaverse-future-of-work/ (Zuckerberg thinks the metaverse is the future of work. So what will this look like?) - Smart Company. https://www.msn.com/en-au/news/techandscience/is-the-metaverse-really-the-future-of-work-an-unbiased-investigation/ar-AA13iFsx (Is the Metaverse Really the Future of Work? An Unbiased Investigation) MSN/Gizmodo. https://www.howtogeek.com/735152/how-to-turn-off-the-sign-in-with-google-prompt-on-websites/ (How to Turn Off the “Sign in with Google” Prompt on Websites) - How-To Geek. https://twitter.com/JuliaDavisNews (Julia Davis and the Russian Media Monitor) - Twitter. https://www.wiener-staatsoper.at/en/ (Weiner Staatsoper Opera House) - Homepage. https://bachtrack.com/review-traviata-stone-yende-antoun-tezier-luisotti-wiener-staatsoper-september-2021 (Emojis instead of emotions in Simon Stone's Traviata in Vienna) – BackTrack. https://www.smashingsecurity.com/store/ (Smashing Security

View Details

What is slushygate and how does it link to sextortion in the States? What is the most impersonated brand when it comes to delivering phishing emails? And what the flip is nano-targeting? All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley/ (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault/ (Carole Theriault), joined this week by fan favourite Maria Varmazis. Warning: This podcast may contain nuts, adult themes, and rude language. No contortionists were hurt during the making of this episode. Episode links: https://www.documentcloud.org/documents/23132920-wilson-sentencing (Memorandum of sentencing of Bryan Wilson) - United States District Court Western District Court of Kentucky at Louisville. https://risk.lexisnexis.com/products/accurint-for-law-enforcement (Accurint for Law Enforcement) - LexisNexis. https://www.cbsnews.com/news/lexisnexis-lawsuit-collected-sold-personal-data-immigration-advocates-allege/ (LexisNexis illegally collected and sold people's personal data, lawsuit alleges) - CBS News. https://www.bitdefender.com/blog/hotforsecurity/ex-cop-abused-police-tool-in-snapshot-sextortion-plot-that-stole-sexually-explicit-photos-and-videos/ (Ex-cop abused police tool in Snapshot sextortion plot that stole sexually explicit photos and videos) - Bitdefender. https://www.gao.gov/assets/gao-22-104527.pdf (Congress should consider enhancing protections around scores used to rank consumers) (PDF) - Government Accountability Office. https://blog.checkpoint.com/2022/10/24/online-shoppers-beware-scammers-most-likely-to-impersonate-dhl/ (Online Shoppers Beware: Scammers Most Likely to Impersonate DHL) - Check Point. https://www.nytimes.com/2022/10/23/technology/voter-targeting-trump-score.html (Why Am I Seeing That Political Ad? Check Your ‘Trump Resistance’ Score) - New York Times. https://www.nytimes.com/2022/10/23/technology/voter-targeting-trump-score.html (I Got Access to My Secret Consumer Score. Now You Can Get Yours, Too) - New York Times. https://mixedidioms.co.uk/ (Mixed Idioms). https://www.apolloremastered.com/ (Apollo Remastered). https://cosmicbackground.io/ (Cosmic Background). https://podcasts.apple.com/gb/podcast/death-of-an-artist/id1628639926 (Death of an Artist) - Pushkin podcasts. https://www.smashingsecurity.com/store/ (Smashing Security merchandise (t-shirts, mugs, stickers and stuff))

Sponsored by: https://www.smashingsecurity.com/kolide (Kolide) – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack. https://bitwarden.com/smashing/ (Bitwarden) – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing. https://www.smashingsecurity.com/sealit (Sealit) - Zero Trust Data Protection: protect, share, and monitor confidential emails and files—without passwords. Integrated with Gmail,Outlookand file systems. Learn more and take advantage of Sealit's special offer to Smashing Security listeners.

Support the show: You can help the podcast by telling your friends and colleagues about “Smashing Security”, and leaving us a review on https://apple.co/2J1YMCu (Apple Podcasts) or https://www.podchaser.com/podcasts/smashing-security-244729 (Podchaser). Become a https://www.patreon.com/smashingsecurity (Patreon supporter) for ad-free episodes and our early-release feed!

Follow us: Follow the show on Twitter at https://twitter.com/smashinsecurity (@SmashinSecurity), or on the https://www.reddit.com/r/smashingsecurity (Smashing Security subreddit), or https://www.smashingsecurity.com/ (visit our website) for more episodes.

Thanks: Theme tune:...

View Details

Someone's election-fiddling is uncovered with an Apple AirTag, a cyber scandal rocks Germany, and a swindler steals a fortune due to trains being delayed. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley/ (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault/ (Carole Theriault), joined this week by runZero's Chris Kitsch. Plus don't miss our featured interview with Akamai's Patrick Sullivan talking about bots in the retail sector. Warning: This podcast may contain nuts, adult themes, and rude language. Episode links: https://www.runzero.com/blog/rebrand-journey1/ (The rundown on becoming runZero: What I learned rebranding a company) - Chris Kirsch on the runZero blog. https://twitter.com/MelissaForPA/status/1580216538421899264 (Tweet by Melissa Shusterman) - Twitter. https://www.forbes.com/sites/thomasbrewster/2022/10/13/apple-airtag-stolen-democratic-signs-pennsylvania/?sh=3d6fc80b3342 (Apple AirTag Used To Find Over 100 Stolen Democratic Campaign Signs, Police Say) - Forbes. https://www.youtube.com/watch?v=dtZf-A4Qd5k (Wie eine russische Firma ungestört Deutschland hackt) - ZDF Magazin Royale on YouTube. https://apnews.com/article/russia-ukraine-technology-berlin-government-and-politics-b7d3c413308976c3ab05ca7fbb71e476 (German cybersecurity chief investigated over Russia ties) - AP News. https://www.theguardian.com/world/2022/oct/18/germany-cybersecurity-chief-sacked-russia-arne-schonbohm (German cybersecurity chief sacked following reports of Russia ties) - The Guardian. https://www.msn.com/en-gb/news/world/fraudster-swindled-virgin-trains-out-of-c2-a3116000-in-sophisticated-scam/ar-AA12Ru70 (Fraudster swindled Virgin Trains out of £116,000 in 'sophisticated' scam) - MSN. https://www.dailymail.co.uk/news/article-11299587/Virgin-Trains-worker-37-swindled-rail-firm-116-000-delay-repay-compensation-scam.html (Virgin Trains worker, 37, swindled rail firm out of £116,000 in 'delay and repay' compensation scam by photoshopping tickets to exploit flaw in system) - Daily Mail. https://www.moneysavingexpert.com/reclaim/train-delays/ (Train delays:How to claim if it's late or cancelled) - Money Saving Expert. https://dataportal.orr.gov.uk/popular-statistics/how-many-trains-arrive-on-time/ (How many trains arrive on time) - Gov.uk. https://www.birminghammail.co.uk/news/midlands-news/employee-swindled-virgin-trains-out-25207048 (Employee swindled Virgin Trains out of £116,000 in delay and repay compensation scam) - Birmingham Mail. https://explore.org/fat-bear-week (Fat Bear Week 2022). https://www.rollingstone.com/culture/culture-news/fat-bear-week-voter-fraud-attempt-1234608565/ (‘Fat Bear Week’ Hit By Voter-Fraud Attempt) - Rolling Stone. https://pimeyes.com/en (PimEyes) - Face search engine. https://www.bbc.co.uk/iplayer/episode/p07r5pwq/the-fear-of-god-25-years-of-the-exorcist (The Fear of God: 25 Years of the Exorcist) - BBC iPlayer. https://www.smashingsecurity.com/store/ (Smashing Security merchandise (t-shirts, mugs, stickers and stuff))

Sponsored by: https://www.smashingsecurity.com/kolide (Kolide) – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack. https://bitwarden.com/smashing/ (Bitwarden) – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing. https://www.akamai.com/smashing (Akamai) – Make the most of Cybersecurity Awareness Month by connecting with Akamai’s experts on how you can achieve unmatched security. Where else can you take advantage of insights from 7 trillion DNS queries per day?

Support the show: You can help the podcast by telling your friends and...

View Details

A couple unexpectedly find $10.5 million in their cryptocurrency account, and in Cambodia people are being forced to commit scams. All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley/ (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault/ (Carole Theriault), who are flying solo again this week. Warning: This podcast may contain nuts, adult themes, and rude language. Episode links: https://www.cnbc.com/2021/10/01/defi-protocol-compound-mistakenly-gives-away-millions-to-users.html (DeFi bug accidentally gives $90 million to users, founder begs them to return it) - CNBC. https://twitter.com/rleshner/status/1443730726751506432 (Compound boss begs users to return $90 million worth of cryptocurrency they were accidentally gifted) - Robert Leshner on Twitter. https://www.theguardian.com/technology/2022/oct/11/crypto-com-accidental-transfer-10-5-million-trial-australia-couple-cryptocurrency (Couple mistakenly given $10.5m from Crypto.com thought they had won contest, court hears) - The Guardian. https://www.9news.com.au/national/thevamanogari-manivel-accused-spending-spree-mistakenly-receiving-10-million-dollars-heads-trial/49cc01fd-dbbe-4633-bc07-1d626ba51ada (Mother accused of spending spree after mistakenly receiving $10 million in crypto bungle heads to trial) - 9 News. https://www.theguardian.com/world/2022/oct/10/sold-to-gangs-forced-to-run-online-scams-inside-cambodias-cybercrime-crisis (Sold to gangs, forced to run online scams: inside Cambodia’s cybercrime crisis) - The Guardian. https://www.gipf.com/zertz/ (ZÈRTZ game). https://en.wikipedia.org/wiki/Z%C3%88RTZ (ZÈRTZ) - Wikipedia. https://en.wikipedia.org/wiki/GIPF_project (GIPF project) - Wikipedia. https://www.bbc.co.uk/programmes/m00085sx (The Capture) - BBC iPlayer. https://www.smashingsecurity.com/store/ (Smashing Security merchandise (t-shirts, mugs, stickers and stuff))

Sponsored by: https://www.smashingsecurity.com/kolide (Kolide) – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack. https://bitwarden.com/smashing/ (Bitwarden) – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing.

Support the show: You can help the podcast by telling your friends and colleagues about “Smashing Security”, and leaving us a review on https://apple.co/2J1YMCu (Apple Podcasts) or https://www.podchaser.com/podcasts/smashing-security-244729 (Podchaser). Become a https://www.patreon.com/smashingsecurity (Patreon supporter) for ad-free episodes and our early-release feed!

Follow us: Follow the show on Twitter at https://twitter.com/smashinsecurity (@SmashinSecurity), or on the https://www.reddit.com/r/smashingsecurity (Smashing Security subreddit), or https://www.smashingsecurity.com/ (visit our website) for more episodes.

Thanks: Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks.

View Details

Has new UK prime minister Liz Truss been careless with her mobile phone, and hear the most extraordinary story of corporate cyberstalking. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley/ (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault/ (Carole Theriault), joined this week by nobody for reasons that will become obvious. Warning: This podcast may contain nuts, adult themes, and rude language. Episode links: https://www.bitdefender.com/blog/hotforsecurity/prison-for-ex-ebay-staff-who-aggressively-cyberstalked-companys-critics-with-craigslist-sex-party-ads-and-funeral-wreaths-2/ (Prison for ex-eBay staff who aggressively cyberstalked company's critics with Craigslist sex party ads and funeral wreaths) - Bitdefender. https://www.justice.gov/usao-ma/pr/two-former-ebay-executives-sentenced-prison-cyberstalking (Two Former eBay Executives Sentenced to Prison for Cyberstalking) - US Department of Justice. https://www.youtube.com/watch?v=m5aWtcx02ZI (Jonathan Pie: Welcome to Britain. Everything is Terrible) - NYT Opinion. https://www.bloomberg.com/news/articles/2022-09-02/uk-supermarket-s-loans-for-groceries-offer-attracts-huge-take-up (UK Supermarket’s Loans-for-Groceries Offer Attracts Huge Take Up) - Bloomberg. https://www.dailymail.co.uk/news/article-11271019/Liz-Truss-mobile-number-sold-online-6-49.html (Liz Truss' mobile number is being sold online for £6.49) - Daily Mail. https://www.youtube.com/watch?v=uD9Iy_pXJdM (How to Cook a Soft Boiled Egg Perfectly Every Time) - YouTube. https://gadgetstouse.com/blog/2021/06/11/best-twitter-bots/ (11 Best Twitter Bots to Follow to Boost Productivity) - Gadgetshouse. https://www.smashingsecurity.com/store/ (Smashing Security merchandise (t-shirts, mugs, stickers and stuff))

Sponsored by: https://www.smashingsecurity.com/kolide (Kolide) – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack. https://bitwarden.com/smashing/ (Bitwarden) – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing. https://www.akamai.com/smashing (Akamai) - Make the most of Cybersecurity Awareness Month by connecting with Akamai’s experts on how you can achieve unmatched security. Where else can you take advantage of insights from 7 trillion DNS queries per day?

Support the show: You can help the podcast by telling your friends and colleagues about “Smashing Security”, and leaving us a review on https://apple.co/2J1YMCu (Apple Podcasts) or https://www.podchaser.com/podcasts/smashing-security-244729 (Podchaser). Become a https://www.patreon.com/smashingsecurity (Patreon supporter) for ad-free episodes and our early-release feed!

Follow us: Follow the show on Twitter at https://twitter.com/smashinsecurity (@SmashinSecurity), or on the https://www.reddit.com/r/smashingsecurity (Smashing Security subreddit), or https://www.smashingsecurity.com/ (visit our website) for more episodes.

Thanks: Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks.

View Details

Anti-porn "shameware" apps take a privacy pounding, is your image already being used by AI, and deepfake danger continues to deepen. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley/ (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault/ (Carole Theriault), joined this week by Host Unknown's Thom Langford. Warning: This podcast may contain nuts, adult themes, and rude language. Episode links: https://www.wired.com/story/covenant-eyes-anti-porn-accountability-monitoring-apps/ (The Ungodly Surveillance of Anti-Porn ‘Shameware’ Apps) - WIRED. https://www.covenanteyes.com/ (Covenant Eyes). https://www.youtube.com/watch?v=VRBlv8Pc05E (Sick and tired of trying to quit porn? You’re not alone) - Covenant Eyes promotional video. https://www.joinfortify.com/ (Fortify). https://www.vice.com/en/article/3ad58k/ai-is-probably-using-your-images-and-its-not-easy-to-opt-out (AI Is Probably Using Your Images and It's Not Easy to Opt Out) - Vice. https://www.vice.com/en/article/93ad75/isis-executions-and-non-consensual-porn-are-powering-ai-art (ISIS Executions and Non-Consensual Porn Are Powering AI Art) - Vice. https://haveibeentrained.com/ (Have I been trained?) https://www.csoonline.com/article/3674151/the-deepfake-danger-when-it-wasn-t-you-on-that-zoom-call.html (The Deepfake Danger: When It Wasn’t You On That Zoom Call) - CSO Online. https://theconversation.com/deepfake-audio-has-a-tell-researchers-use-fluid-dynamics-to-spot-artificial-imposter-voices-189104 (Deepfake Audio Has A Tell – Researchers Use Fluid Dynamics To Spot Artificial Imposter Voices) - The Conversation. https://arxiv.org/pdf/2209.09111v1.pdf (Deephy: On Deepfake Phylogeny) - Cornell University. https://arxiv.org/pdf/2209.01714.pdf (On The Horizon: Interactive And Compositional Deepfakes )- Microsoft. https://www.media.mit.edu/projects/detect-fakes/overview/ (Detect DeepFakes: How to counteract misinformation created by AI) - MIT University. https://venturebeat.com/ai/new-deepfake-threats-loom-says-microsofts-chief-science-officer/ (New Deepfake Threats Loom, Says Microsoft’s Chief Science Officer) - Venture Beat. https://www.bbc.co.uk/archive/empty_sets_collection/zfvy382 (The Joy of Sets) - BBC Archive. https://www.steamdeck.com/en/ (Steam Deck). https://www.bbc.co.uk/programmes/m001c3f9 (Am I Being Unreasonable?) - BBC iPlayer. https://www.smashingsecurity.com/store/ (Smashing Security merchandise (t-shirts, mugs, stickers and stuff))

Sponsored by: https://www.smashingsecurity.com/kolide (Kolide) – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack. https://bitwarden.com/smashing/ (Bitwarden) – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing. https://cybersecurityinside.com/smashing (The Cyber Security Inside podcast) – Relevant cybersecurity topics in clear, easy-to-understand language. With every episode, you’ll walk away smarter about cybersecurity, and have fun while you’re at it!

Support the show: You can help the podcast by telling your friends and colleagues about “Smashing Security”, and leaving us a review on https://apple.co/2J1YMCu (Apple Podcasts) or https://www.podchaser.com/podcasts/smashing-security-244729 (Podchaser). Become a https://www.patreon.com/smashingsecurity (Patreon supporter) for ad-free episodes and our early-release feed!

Follow us: Follow the show on Twitter at https://twitter.com/smashinsecurity (@SmashinSecurity), or on the https://www.reddit.com/r/smashingsecurity (Smashing Security subreddit), or https://www.smashingsecurity.com/ (visit our website) for more episodes....

View Details

Researchers reveal how your eyeglasses could be leaking secrets when you're on video conferencing calls, we take a look at the recent data breaches involving Uber and Grand Theft Auto 6, and we cast an eye at what threats may be around the corner... All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault (Carole Theriault), joined this week by The Register's Iain Thomson. Plus - don't miss our featured interview with Sal Aurigemma, the faculty director of the Master of Science in Cyber Security program at the University of Tulsa. Warning: This podcast may contain nuts, adult themes, and rude language. Episode links: https://twitter.com/iainthomson/status/1252286893263183872 (“Iain Exotic”, Iain Thomson’s dress-up homage to Joe Exotic, the Tiger King) - Twitter. https://arxiv.org/abs/2205.03971 (“Private Eye: On the Limits of Textual Screen Peeking via Eyeglass Reflections in Video Conferencing”) - Research paper by Yan Long, Chen Yan, Shilin Xiao, Shivan Prasad, Wenyuan Xu, and Kevin Fu. https://www.twitch.tv/p/en/about/ (“We saved you a seat in chat”) - Rather large text on the Twitch website. https://grahamcluley.com/stalker-zoomed-in-on-japanese-idols-eyes-to-find-out-where-she-lived/ (Stalker zoomed in on Japanese idol’s eyes to find out where she lived) - Graham Cluley. https://twitter.com/iainthomson/status/1571868350262947840 (Uber is looking for more security staff) - Twitter. https://www.theregister.com/2022/09/19/uber_admits_breach/ (Uber explains how it was pwned this month, points finger at Lapsus$ gang) - The Register. https://grahamcluley.com/ubers-hacker-irritated-his-way-into-its-network-stole-internal-documents/ (Uber’s hacker irritated his way into its network, stole internal documents) - Graham Cluley. https://www.uber.com/newsroom/security-update (Security update) - Uber. https://www.theregister.com/2022/09/19/grand_theft_auto_6_hacked/ (Grand Theft Auto 6 maker confirms source code, vids stolen in cyber-heist) - The Register. https://www.cisa.gov/cybersecurity-awareness-month (Cybersecurity Awareness Month )- CISA. https://www.zdnet.com/article/the-scary-future-of-the-internet-how-the-tech-of-tomorrow-will-pose-even-bigger-cybersecurity-threats/ (The scary future of the internet: How the tech of tomorrow will pose even bigger cybersecurity threats )- ZDNet. https://thehackernews.com/2022/08/us-government-spending-billions-on.html (U.S. Government Spending Billions on Cybersecurity) - Hacker News. https://www.youtube.com/watch?v=_ak5dFt8Ar0 (The Mitchells vs The Machines trailer) - YouTube. https://www.netflix.com/gb/title/81399614 (The Mitchells vs The Machines) - Netflix. https://www.newscientist.com/article/2338657-nasa-is-ready-to-knock-an-asteroid-off-course-with-its-dart-spacecraft/ (NASA is ready to knock an asteroid off course with its DART spacecraft) - New Scientist. https://www.nasa.gov/feature/dart-s-small-satellite-companion-takes-flight-ahead-of-impact (DART’s Small Satellite Companion Takes Flight Ahead of Impact) - NASA. https://www.heartsafe.org.uk/aed-locations/ (Search and find UK Defibrillator Locations near you now) - HeartSafe. https://www.bhf.org.uk/how-you-can-help/how-to-save-a-life/defibrillators/apply-for-a-public-access-defibrillator (Apply for a part funded Public Access Defibrillator) - British Heart Foundation. https://www.sja.org.uk/get-advice/i-need-to-know/defibrillator-guide-for-first-time-buyers/ (Defibrillator guide for first time buyers) - St John’s Ambulance. https://www.gov.uk/government/news/every-school-will-have-a-life-saving-defibrillator-by-2223 (Every school will have a life-saving defibrillator by 22/23) - Gov.UK. https://www.smashingsecurity.com/store/ (Smashing Security merchandise (t-shirts, mugs, stickers and stuff))

View Details

How could your inkjet printer finally help you make some money, why is it so hard to share our health data even if we want to, and what result do you want to see from the Elon Musk vs Twitter bunfight? All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault (Carole Theriault), joined this week by Rory Cellan-Jones. Warning: This podcast may contain nuts, adult themes, and rude language. Episode links: https://h30434.www3.hp.com/t5/Printer-Ink-Cartridges-Print-Quality/Dynamic-Cartridge-Security-disable-please/td-p/8228632 (Dynamic Cartridge Security - disable please) - Angry customers complain on HP support forum. https://www.malwarebytes.com/blog/news/2022/03/update-now-many-hp-printers-affected-by-three-critical-security-vulnerabilities (Update now! Many HP printers affected by three critical security vulnerabilities) - MalwareBytes. https://www.bleepingcomputer.com/news/hardware/hp-will-pay-customers-for-blocking-non-hp-ink-cartridges-in-eu/ (HP will pay customers for blocking non-HP ink cartridges in EU) - Bleeping Computer. https://www.euroconsumers.org/activities/hp-and-euroconsumers-reach-a-settlement-on-dynamic-security-dispute (HP and Euroconsumers settle on Dynamic Security) - Euroconsumers. https://www.youtube.com/watch?v=AHX6tHdQGiQ (Ink cartridges are a scam) - YouTube. https://www.youtube.com/watch?v=SgqaYEqJWGE (Trying to print something) - YouTube. https://rorycellanjones.substack.com/p/uk-biobank-why-wont-gps-share-data (UK Biobank - why won't GPs share data?) - Rory’s Always On Newsletter. https://rorycellanjones.substack.com/p/another-data-sharing-fiasco (Another data sharing fiasco) - Rory's Always On Newsletter. https://twitter.com/katebingham2/status/1562030863856148482 (Tweet by Kate Bingham) - Twitter. https://time.com/6208696/twitter-whistleblower-peiter-mudge-zatko-musk-interview/ (The Twitter Whistleblower Needs You to Trust Him) - Time. https://www.msn.com/en-us/money/other/twitter-denies-whistleblower-payout-violates-musk-e2-80-99s-takeover-deal/ar-AA11JPCE (Twitter denies whistleblower payout violates Musk’s takeover deal) - MSN. https://www.nytimes.com/2022/09/07/business/dealbook/elon-musk-twitter-dispute-court.html (Elon Musk earns a split decision in Delaware court) - The New York Times. https://www.theguardian.com/commentisfree/2022/aug/27/twitters-whistleblower-has-pitched-up-at-a-very-inconvenient-moment (Twitter’s whistleblower has pitched up at a very inconvenient moment) - The Guardian. https://www.theverge.com/2022/8/23/23318002/twitter-bots-lawsuit-elon-musk-mudge-zatko-ceo-agrawal (Damning claims about Twitter’s bots and security lapses are ‘a false narrative,’ says CEO) - The Verge. https://slate.com/technology/2022/09/elon-musk-twitter-gotta-pick-one.html (The Spectator’s Guide to the Elon Musk–Twitter Fight) - Slate. https://addons.mozilla.org/en-US/firefox/addon/don-t-fuck-with-paste/ (Don't F with Paste) - Firefox browser addon https://chrome.google.com/webstore/detail/dont-f-with-paste/nkgllhigpcljnhoakjkgaieabnkmgdkb (Don't F with Paste) - Chrome browser extension. https://www.stasimuseum.de/en/enindex.htm (Stasi Museum, Berlin.) https://www.bbc.co.uk/iplayer/episode/p0cltmw6/how-to-with-john-wilson-series-1-1-how-to-make-small-talk?seriesId=p0cltm4m (How to With John Wilson) - BBC. https://www.smashingsecurity.com/store/ (Smashing Security merchandise (t-shirts, mugs, stickers and stuff))

Sponsored by: https://www.smashingsecurity.com/kolide (Kolide) – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack. https://bitwarden.com/smashing/ (Bitwarden) – Password security you can trust. Bitwarden is an open source password manager

View Details

Students learn a valuable lesson when it comes to AI detecting guns on campus, SIM swappers are surprisingly stupid, and romance scammers get scammed by someone (or some thing?) calling themselves Chiquita Banana. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault (Carole Theriault), joined this week by Mark Stockley. Warning: This podcast may contain nuts, adult themes, and rude language. Episode links: https://www.vice.com/en/article/5d3dw5/the-least-safe-day-rollout-of-gun-detecting-ai-scanners-in-schools-has-been-a-cluster-emails-show (‘The least safe day’: rollout of gun-detecting AI scanners in schools has been a ‘cluster,’ emails show) - Motherboard. https://www.techdirt.com/2022/09/02/gun-detection-ai-the-latest-tech-to-make-schools-less-safe/ (Gun detection AI the latest tech to make schools less safe) - TechDirt. https://features.propublica.org/aggression-detector/the-unproven-invasive-surveillance-technology-schools-are-using-to-monitor-students/ (The unproven, invasive surveillance technology schools are using to monitor students) - ProPublica. https://www.vice.com/en/article/4awe7m/chromebooks-or-handguns-sensors-nyc-mayor-wants-to-install-on-subway-canstruggle-to-tell-the-difference (NYC Mayor considering a subway security system that can’t differentiate between a laptop and a handgun) - Motherboard. https://krebsonsecurity.com/2022/09/violence-as-a-service-brickings-firebombings-shootings-for-hire/ (Violence-as-a-Service: Brickings, Firebombings & Shootings for Hire) - Brian Krebs. https://storage.courtlistener.com/recap/gov.uscourts.paed.599644/gov.uscourts.paed.599644.1.0.pdf (USA vs Patrick McGovern-Allen (PDF)) - Court Listener. https://www.ftc.gov/news-events/data-visualizations/data-spotlight/2022/02/reports-romance-scams-hit-record-highs-2021 (Reports of romance scams hit record highs in 2021) - FTC. https://www.research.manchester.ac.uk/portal/files/188516073/JFC_PURE.pdf (Meeting you was a fake: Investigating the increase in romance fraud during COVID-19) - Academic Research. https://techcrunch.com/2022/08/31/filter-off-scam-fighters/ (This dating app fought scammers with bots… hilarity ensued) - TechCrunch. https://www.thedailybeast.com/a-romance-scammer-took-her-life-savings-in-crypto-this-firm-is-trying-to-get-it-back (She was 69. He Was Young, Hunky,,, and a Fraud) - The Daily Beast. https://www.youtube.com/watch?v=61yP5BRLhUE (Gladbeck: The Hostage Crisis trailer) – YouTube. https://www.netflix.com/title/81446276 (Watch Gladbeck: The Hostage Crisis) - Netflix. https://medium.com/@beweinreich/we-flooded-our-dating-app-with-bots-to-scam-scammers-dc84c3f5c89a (We flooded our dating app with bots… to scam scammers) - Medium. https://www.craiyon.com/ (Craiyon). https://twitter.com/SmashinSecurity/status/1567558223443501056 (Carole’s attempt to ask Craiyon to draw Liz Truss eating a giant cupcake of Europe). https://twitter.com/SmashinSecurity/status/1567558920721276935 (Is this Graham eating a banana? Crayon seems to think so). https://www.smashingsecurity.com/store/ (Smashing Security merchandise (t-shirts, mugs, stickers and stuff))

Sponsored by: https://www.smashingsecurity.com/kolide (Kolide) – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack. https://bitwarden.com/smashing/ (Bitwarden) – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing. https://www.smashingsecurity.com/solcyber (SolCyber) – SolCyber delivers Fortune 500 level cybersecurity for small and medium-sized enterprises. If the bad guys

View Details

We're back from our summer break as we ask how did a cryptomining campaign stay unspotted for years, quiz special guest and infosec rockstar Mikko Hyppönen about his book, and ponder what spiders teach us about misinformation. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans https://www.smashingsecurity.com/hosts/graham-cluley (Graham Cluley) and https://www.smashingsecurity.com/hosts/carole-theriault (Carole Theriault). Warning: This podcast may contain nuts, adult themes, and rude language. Episode links: https://matadornetwork.com/life/20-funniest-finnish-expressions-use/ (The 20 Funniest Finnish Expressions (and How To Use Them)) - Matador Network. https://www.theregister.com/2009/05/18/sophos_does_klingon/ (Sophos punts anti-virus for Klingon) - The Register. https://nakedsecurity.sophos.com/2009/05/21/helsinki-named-klingonspeaking-capital-world/ (Helsinki named Klingon-speaking capital of the world) – Naked Security. https://research.checkpoint.com/2022/check-point-research-detects-crypto-miner-malware-disguised-as-google-translate-desktop-and-other-legitimate-applications/ (Check Point Research detects Crypto Miner malware disguised as Google translate desktop and other legitimate applications) - Check Point Research. https://www.ifitssmartitsvulnerable.com/ (If It's Smart It's Vulnerable) - Book by Mikko Hyppönen. https://www.science.org/doi/10.1126/sciadv.abo6254 (Psychological inoculation improves resilience against misinformation on social media) -Science Advances. https://www.who.int/news-room/spotlight/let-s-flatten-the-infodemic-curve (Let’s flatten the infodemic curve) - WHO. https://www.cell.com/current-biology/fulltext/S0960-9822(22)01127-7 (The global spread of misinformation on spiders) - Current Biology. https://www.nytimes.com/2022/08/26/us/politics/misinformation-social-media.html (A Journey Into Misinformation on Social Media) - The New York Times. https://www.nytimes.com/2022/08/24/technology/google-search-misinformation.html (Google Looks to Vaccination to Combat Misinformation In Searches) - The New York Times. https://www.nytimes.com/2022/08/25/science/spiders-misinformation-rumors.html (Spiders Are Caught in a Global Web of Misinformation) - The New York Times. https://archive.org/details/DEFCON20Documentary (DEF CON: The Documentary.) https://carole.wtf/smashing-security-painting-giveaway/ (Smashing Security Painting competition) – http://Carole.wtf (Carole.wtf). https://oxfordartsociety.co.uk/open-exhibition-catalogue-2022/ (Open Exhibition, Summer 2022) - Oxford Art Society. https://www.smashingsecurity.com/store/ (Smashing Security merchandise (t-shirts, mugs, stickers and stuff))

Sponsored by: https://bitwarden.com/smashing/ (Bitwarden) – Password security you can trust. Bitwarden is an open source password manager trusted by millions of individuals, teams, and organizations worldwide for secure password storage and sharing. https://www.gigamon.com/smashing (Gigamon) - Gigamon's latest report into the state of ransomware. https://l.kolide.co/3uSdmVj (Kolide) – the SaaS app that sends employees important, timely, and relevant security recommendations concerning their Mac, Windows, and Linux devices, right inside Slack.

Support the show: You can help the podcast by telling your friends and colleagues about “Smashing Security”, and leaving us a review on https://apple.co/2J1YMCu (Apple Podcasts) or https://www.podchaser.com/podcasts/smashing-security-244729 (Podchaser). Become a https://www.patreon.com/smashingsecurity (Patreon supporter) for ad-free episodes and our early-release feed!  Follow us: Follow the show on Twitter at https://twitter.com/smashinsecurity (@SmashinSecurity), or on the https://www.reddit.com/r/smashingsecurity (Smashing Security subreddit), or https://www.smashingsecurity.com/ (visit our website) for more episodes.

Thanks: Theme tune: "Vinyl...

View Details

Pornhub has a problem, the UK's Co-op supermarket is accused of big brother tactics, and we take a look at a security researcher's attempt to reveal the true identify of hackers. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Maria Varmazis. Visit https://www.smashingsecurity.com/286 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guest: Maria Varmazis.

View Details

Uber may not face prosecution over its handling of a 2016 data breach - but its former chief security head does; how to defend your digital devices' data while on vacation, and how to change your accent with artificial intelligence. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Paul Ducklin. Plus don't miss our featured interview with Ian Farquhar of Gigamon. Visit https://www.smashingsecurity.com/285 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guests: Ian Farquhar and Paul Ducklin.

View Details

In this special edition of the "Smashing Security" podcast, computer security veterans Graham Cluley and Carole Theriault welcome back author and journalist Jamie Bartlett - host of "The Missing CryptoQueen" podcast. Jamie tells us about his new book, which shares more details about the disappearance of cryptocurrency scammer Dr Ruja Ignatova, and the subsequent hunt by law enforcement. Visit https://www.smashingsecurity.com/284 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guest: Jamie Bartlett.

View Details

A self-proclaimed "super hacker" causes problems in the Magic Kingdom, criminals regret trusting Anom phones, and law suits are filed against TikTok. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Anna Brading. Plus don't miss our featured interview with Scott McCrady, the CEO of SolCyber Managed Security Services. Visit https://www.smashingsecurity.com/284 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guests: Anna Brading and Scott McCrady.

View Details

A hacked university might have made a profit after paying a cryptocurrency ransom, China suffers possibly the biggest data breach in history, and Reuters investigates digital mercenaries. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Cyberwire's Dave Bittner. Visit https://www.smashingsecurity.com/282 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guest: Dave Bittner.

View Details

A new version of the LockBit ransomware offers a bug bounty, women uninstall period-tracking apps in fear of how their data might be used against them, and Microsoft's facial recognition tech no longer wants to know how you're feeling. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Thom Langford from The Host Unknown podcast. Plus don't miss our featured interview with Bitwarden founder and CTO Kyle Spearrin. Visit https://www.smashingsecurity.com/281 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guests: Kyle Spearrin and Thom Langford.

View Details

Internet-connected jacuzzis find themselves in hot water, and a Google engineer claims that their AI has developed feelings. All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault. Visit https://www.smashingsecurity.com/280 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks.

View Details

How did a saxophonist sneak sensitive information in and out of the Soviet Union? How might an Apple AirTag have led to murder? And isn't the world of cryptocurrency and blockchain doing just great? All this and more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault. Visit https://www.smashingsecurity.com/279 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks.

View Details

Trouble brews with the Tim Hortons app, Mandiant gets in a tussle with a Russian ransomware gang, and should good faith security researchers be at risk of prosecution? All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Lazarus Heist's Geoff White. Visit https://www.smashingsecurity.com/278 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guest: Geoff White.

View Details

Ransom acts of kindness are top of our mind, as we also explore how bad bots are hogging more and more of the internet's activity, and look at how deepfakes could be a good thing after all. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Ray [REDACTED]. Visit https://www.smashingsecurity.com/277 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guest: Ray [REDACTED].

View Details

A browser extension bug let malicious websites spy on webcams, hackers threaten the global food supply chain, and Michael Fish (not that one...) hacked into his female classmates' online accounts, hunting for nude photos and videos. All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by Mark Stockley. Visit https://www.smashingsecurity.com/276 to check out this episode’s show notes and episode links. Follow the show on Twitter at @SmashinSecurity, or on the Smashing Security subreddit, or visit our website for more episodes. Remember: Follow us on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Special Guest: Mark Stockley.