PodcastsTechnologySecurity Now (Audio)

Security Now (Audio)

TWiT
Security Now (Audio)
Latest episode

37 episodes

  • Security Now (Audio)

    SN 1068: The Call Is Coming From Inside the House - Live From Zero Trust World 2026

    2026-03-05 | 51 mins.
    Steve Gibson and Leo Laporte host a special episode of Security Now live from ThreatLocker's Zero Trust World 2026 in Orlando, Florida.

    The final frontier of security is internal. Today, we have the tools, techniques and technologies to thwart attacks originating from outside our perimeter. We're now good at protecting our borders. But major high profile breaches occurring over the past several years have revealed that insufficient attention has been given to the security of our internal systems and networks. Today's greatest security weaknesses result from decades of system design, deployment and policy that have placed far too much trust on the conduct of those on the inside, behind our borders. Whether deliberate, inadvertent, or externally penetrating, the greatest challenge we now face is that of designing and deploying our internal security with strict adherence to the principles of least privilege and zero trust.

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!

    Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit

    Sponsor:
    threatlocker.com/twit
  • Security Now (Audio)

    SN 1067: KongTuke's CrashFix - Click, Paste, Pwned

    2026-03-03 | 2h 53 mins.
    A crafty new breed of social engineering attack is tricking users into launching malware straight from their clipboard, exposing a fresh vulnerability in Windows that even tech pros could fall for. Leo Laporte and Steve Gibson break down how the latest ClickFix and CrashFix exploits are outsmarting traditional defenses.

    The lowdown on last week's "no turn" picture of the week.

    Is an AI-driven hacking campaign a big deal now.

    Clause used in multiple Mexican government attacks.

    Apple continues to be confronted with age restrictions.

    COPPA needs an exception to allow age collection.

    Meta swamps law enforcement with AI-slop CSAM reports.

    Roskomnadzor has been busy blocking VPNs. Guess how many.

    The UK tries to report their self-scanning success.

    Remember that hacker who extorted the psychotherapy patients.

    Scattered Lapsus$ Hunters is actively recruiting women.

    Cisco lands another breathtakingly rare 10.0 CVSS.

    VulnCheck's report on 2025 vulnerabilities and exploits.

    Steve discovers a fabulous $72 Hardware Security Module.

    A listener shares an interesting AI service discovery.

    The very potent "ClickFix" exploit evolves

    Show Notes - https://www.grc.com/sn/SN-1067-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!

    Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit

    Sponsors:
    meter.com/securitynow

    guardsquare.com

    threatlocker.com/twit

    adaptivesecurity.com

    outsystems.com/twit
  • Security Now (Audio)

    SN 1067: KongTuke's CrashFix - Click, Paste, Pwned

    2026-03-03 | 2h 53 mins.
    A crafty new breed of social engineering attack is tricking users into launching malware straight from their clipboard, exposing a fresh vulnerability in Windows that even tech pros could fall for. Leo Laporte and Steve Gibson break down how the latest ClickFix and CrashFix exploits are outsmarting traditional defenses.

    The lowdown on last week's "no turn" picture of the week.

    Is an AI-driven hacking campaign a big deal now.

    Clause used in multiple Mexican government attacks.

    Apple continues to be confronted with age restrictions.

    COPPA needs an exception to allow age collection.

    Meta swamps law enforcement with AI-slop CSAM reports.

    Roskomnadzor has been busy blocking VPNs. Guess how many.

    The UK tries to report their self-scanning success.

    Remember that hacker who extorted the psychotherapy patients.

    Scattered Lapsus$ Hunters is actively recruiting women.

    Cisco lands another breathtakingly rare 10.0 CVSS.

    VulnCheck's report on 2025 vulnerabilities and exploits.

    Steve discovers a fabulous $72 Hardware Security Module.

    A listener shares an interesting AI service discovery.

    The very potent "ClickFix" exploit evolves

    Show Notes - https://www.grc.com/sn/SN-1067-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!

    Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit

    Sponsors:
    meter.com/securitynow

    guardsquare.com

    threatlocker.com/twit

    adaptivesecurity.com

    outsystems.com/twit
  • Security Now (Audio)

    SN 1066: Password Leakage - Zero Trust, Zero Knowledge

    2026-02-24 | 2h 50 mins.
    ETH Zurich's deep-dive into the world's top password managers exposes how feature overload and legacy design obscure real security flaws, forcing a rethink of what "zero knowledge" actually means for your vault. Learn why recent fixes matter—and why open source may be your safest bet.

    CA's warn us to urgently prepare for the inevitable.

    Three U.S. states attempt to ban 3D printed firearms.

    Denied ransom, ShinyHunters leaks 967,000 personal details.

    "Billions" of U.S. social security numbers leaked.

    Is Apple planning to add cameras to three new gadgets.

    No more security fixes for Firefox on Windows 7 & 8.

    Russia blocks the official Linux kernel site they need.

    Will the U.S."freedom.gov" site post EU blocked content.

    LLM's will offer secure passwords. Do Not Use Them.

    As predicted, the "ClickFix" attack strategy takes over.

    A listener believes his computer is compromised.

    How could three popular password managers get things wrong.

    Show Notes - https://www.grc.com/sn/SN-1066-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!

    Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit

    Sponsors:
    guardsquare.com

    bitwarden.com/twit

    zscaler.com/security

    hoxhunt.com/securitynow

    material.security
  • Security Now (Audio)

    SN 1066: Password Leakage - Zero Trust, Zero Knowledge

    2026-02-24 | 2h 50 mins.
    ETH Zurich's deep-dive into the world's top password managers exposes how feature overload and legacy design obscure real security flaws, forcing a rethink of what "zero knowledge" actually means for your vault. Learn why recent fixes matter—and why open source may be your safest bet.

    CA's warn us to urgently prepare for the inevitable.

    Three U.S. states attempt to ban 3D printed firearms.

    Denied ransom, ShinyHunters leaks 967,000 personal details.

    "Billions" of U.S. social security numbers leaked.

    Is Apple planning to add cameras to three new gadgets.

    No more security fixes for Firefox on Windows 7 & 8.

    Russia blocks the official Linux kernel site they need.

    Will the U.S."freedom.gov" site post EU blocked content.

    LLM's will offer secure passwords. Do Not Use Them.

    As predicted, the "ClickFix" attack strategy takes over.

    A listener believes his computer is compromised.

    How could three popular password managers get things wrong

    Show Notes - https://www.grc.com/sn/SN-1066-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!

    Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit

    Sponsors:
    guardsquare.com

    bitwarden.com/twit

    zscaler.com/security

    hoxhunt.com/securitynow

    material.security

More Technology podcasts

About Security Now (Audio)

Cybersecurity guru Steve Gibson joins Leo Laporte every Tuesday. Steve and Leo break down the latest cybercrime and hacking stories, offering a deep understanding of what's happening and how to protect yourself and your business. Security Now is a must listen for security professionals every week. Records live every Tuesday at 4:30pm Eastern / 1:30pm Pacific / 21:30 UTC.
Podcast website

Listen to Security Now (Audio), Lenny's Podcast: Product | Career | Growth and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features

Security Now (Audio): Podcasts in Family

  • Podcast Intelligent Machines (Audio)
    Intelligent Machines (Audio)
    Technology
  • Podcast Intelligent Machines (Audio)
    Intelligent Machines (Audio)
    Technology
Social
v8.7.2 | © 2007-2026 radio.de GmbH
Generated: 3/6/2026 - 5:26:33 PM