Naked Security - podcast cover

Naked Security

We take an expert look at the latest cybersecurity incidents, how they happened, and why. Tune in weekly to learn what you can do to stop bad things from happening to you! Got questions/suggestions/stories to share? Email: tips@sophos.com Twitter: @NakedSecurity Instagram: @NakedSecurity
Last refreshed:
Follow this podcast in the Metacast mobile app to refresh it and see new episodes.
Download Metacast podcast app
Podcasts are better in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episodes

S3 Ep148: Remembering crypto heroes

Navajo Code Talkers Day. Beta bogosities . Skimming shenanigans . Hooligan hosting . A cybercrime conundrum. Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Aug 17, 202319 minSeason 3Ep. 148

S3 Ep147: What if you type in your password during a meeting?

An amazing Art Deco computer. Yet more performance-versus-security trouble. Is sound alone enough to sniff out your password? A rap song (of sorts) with a cybersecurity connection. Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Aug 09, 202316 minSeason 3Ep. 147

S3 Ep146: Tell us about that breach! (If you want to.)

Firefox fixes flaws. The exciting vulnerability that you don't need to be afraid of. Breach reporting rules with lots of leeway. Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Aug 03, 202318 minSeason 3Ep. 146

S3 Ep145: Bugs With Impressive Names!

Apple patches two zero-days, one for a second time. How a 30-year-old cryptosystem got cracked . All your secret are belong to Zenbleed . Remembering those dodgy PC/Mac ads. Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Jul 27, 202320 minSeason 3Ep. 145

S3 Ep144: When threat hunting goes down a rabbit hole

Why your Mac's calendar app says it's JUL 17. One patch , one line, one file. Careful with that {axe,file} , Eugene. Storm season for Microsoft. When typos make you sing for joy. Twitter: @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Jul 20, 202316 minSeason 3Ep. 144

S3 Ep143: Supercookie surveillance shenanigans

Remembering the slide rule. What you need to know about Patch Tuesday. Supercookie surveillance shenanigans. When bugs arrive in pairs . Apple's rapid patch that needed a rapid patch . User-Agent considered harmful. Twitter: @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Jul 13, 202318 minSeason 3Ep. 143

S3 Ep142: Putting the X in X-Ops

First there was DevOps, then SecOps, then DevSecOps. Or should that be SecDevOps? Paul Ducklin talks to Sophos X-Ops insider Matt Holdcroft about how to get all your corporate "Ops" teams working together, with cybersecurity correctness as a guiding light. Twitter: @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudge.com )

Jul 06, 202314 minSeason 3Ep. 142

S3 Ep141: What was Steve Jobs's first job?

PONG for one player. Apple pushes out anti-spyware patch . Beware bad passwords on Linux servers . "Twitter hacker" gets 5 years . When mobile phones and dental hygiene collide . Twitter: @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Jun 29, 202318 minSeason 3Ep. 141

S3 Ep140: So you think you know ransomware?

Gee Whizz BASIC (probably). Think you know ransomware ? Megaupload, 11 years on . ASUS warns of critical router bugs . MOVEit mayhem Part III . Twitter: @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Jun 22, 202319 minSeason 3Ep. 140

S3 Ep139: Are password rules like running through rain?

Magnetic core memory. Patch Tuesday and SketchUp shenanigans. More MOVEit mitigations . Mt. Gox back in the news. Gozi malware criminal imprisoned at last. Are password rules like running through rain ? Twitter @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Jun 15, 202317 min

S3 Ep138: I like to MOVEit, MOVEit

Calling all modems. KeePass gets an update. MOVEit gets pwned . Chromium zero-day . The backdoor that wasn't really. WPBT explained. Twitter @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Jun 08, 202322 minSeason 3Ep. 138

S3 Ep137: 16th century crypto skullduggery

How to say "GIF". A Blackmailer-in-the-Middle attack. Knitting your own crypto . KeePass master password shenanigans. Binge listening. Email tips@sophos.com Twitter @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudge.com )...

Jun 01, 202321 minSeason 3Ep. 137

S3 Ep136: Navigating a manic malware maelstrom

Luminiferous aether. A $10m cybercrime reward. Bank scam kingpin gets 13 years . Three Apple 0-days . A Python malware maelstrom . Email tips@sophos.com Twitter @NakedSecurity...

May 25, 202320 minSeason 3Ep. 136

S3 Ep135: Sysadmin by day, extortionist by night

An Apple product that flopped (and was not the Newton). Two-faced sysadmin jailed for 6 years . The smart plug with the unsmart security hole . Clearview AI again , once more, again . Intro and outro music by Edith Mudge ( https://www.edithmudge.com ). Hit us up on Twitter: @NakedSecurity...

May 18, 202317 minSeason 3Ep. 135

S3 Ep134: It's a PRIVATE key - the hint is in the name!

The world-changing Visible Calculator. How not to get a job. Private keys - the hint is in the name. Microsoft's complicated bootkit patch. Taming Bluetooth trackers . Email: tips@sophos.com Twitter: https://twitter.com/nakedsecurity Original music by Edith Mudge ( www.edithmudge.com )...

May 11, 202318 minSeason 3Ep. 134

S3 Ep133: Apple takes "tight-lipped" to a whole new level

New England gets BASIC. Google hits back at CryptBot crooks. Apple seals its lips on security. Mac malware-as-a-service . World Password Day. PaperCut: disclose or don't disclose ? Original music by Edith Mudge ( https://www.edithmudge.com )....

May 04, 202318 minSeason 3Ep. 133

S3 Ep132: Proof-of-concept lets anyone hack at will

The CIH or SpaceFiller virus revisited. Google's 2FA security shortcut . Server vulns under active attack . Two Chrome zero-days , but was it one attack? Email: tips@sophos.com Twitter: @NakedSecurity...

Apr 27, 202317 minSeason 3Ep. 132

S3 Ep131: Can you really have fun with FORTRAN?

Fun with FORTRAN?! An extreme data breach and its consequences. Rogue 2FA apps live in action. Juicejacking revisited. With Doug Aamoth and Paul Ducklin. Original music by Edith Mudge ....

Apr 20, 202321 minSeason 3Ep. 131

S3 Ep130: Open the garage bay doors, HAL

A common business-oriented language. Patch Tuesday . Secure Boot (without the "Secure" part). Apple zero-days . World-readable garage doors . Motherboard malware threats . Original music by Edith Mudge ( https://www.edithmudge.com ) Email tips@sophos.com Twitter @NakedSecurity...

Apr 13, 202318 minSeason 3Ep. 130

S3 Ep129: When spyware arrives from someone you trust

A supply chain attack that foisted spyware on trusting users. Wi-Fi encryption bypass via left-over data. Surely there should be TWO World Backup Days ? Email tips@sophos.com Original music by Edith Mudge ( https://www.edithmudge.com ) Twitter @NakedSecurity...

Apr 06, 202318 minSeason 3Ep. 129

S3 Ep128: So you want to be a cybercriminal?

RIP Gordon Moore , the more in Moore's Law. Photo cropping bugfix . DDoS honeypot . E-commerce patches . Apple 0-day and lots more. Email tips@sophos.com Twitter @NakedSecurity...

Mar 30, 202320 minSeason 3Ep. 128

S3 Ep126: The price of fast fashion (and feature creep)

The price of fast fashion . Firefox fixes . Feature creep fail curtailed in Patch Tuesday updates. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity...

Mar 16, 202320 minSeason 3Ep. 126

S3 Ep125: When security hardware has security holes

Memories of Michelangelo (the virus, not the artist). Data leakage bugs in TPM 2.0 . Ransomware bust , ransomware warning , and anti-ransomware advice. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity...

Mar 09, 202321 minSeason 3Ep. 125

S3 Ep124: When so-called security apps go rogue

How Woz nearly gave away the Apple I. Rogue software packages. Rogue network "administrators". Rogue keyloggers. Rogue authenticators. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity...

Mar 02, 202318 minSeason 3Ep. 124

S3 Ep123: Crypto company compromise kerfuffle

The first search warrant for computer storage. GoDaddy breach. Twitter surprise . Coinbase kerfuffle . The cost of success. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity...

Feb 23, 202318 minSeason 3Ep. 123

S3 Ep122: Stop calling every breach "sophisticated"!

The birth of ENIAC. A "sophisticated attack" (someone got phished ). A cryptographic hack enabled by a security warning. Valentine's Day Patch Tuesday . Apple closes spyware-sized 0-day hole. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity...

Feb 16, 202318 minSeason 3Ep. 122

S3 Ep121: When cybercrime victims are culprits, too

Cryptocurrency crimelords . Security patches for VMware , OpenSSH and OpenSSL . Medical breacher busted . Is that a bug or a feature? Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity...

Feb 09, 202321 minSeason 3Ep. 121

S3 Special: Tracers in the Dark with Andy Greenberg

Do we really need a "war against cryptography" - codes and ciphers that the government can easily crack if it thinks there's an emergency - to cement our collective online security? Hear renowned cybersecurity author Andy Greenberg's thoughtful commentary on this and many other vital issues, including anonymity and privacy, as we talk to him about his tremendous new book , Tracers in the Dark. Original music by Edith Mudge ....

Feb 06, 202325 minSeason 3Ep. 120
For the best experience, listen in Metacast app for iOS or Android