Naked Security - podcast cover

Naked Security

We take an expert look at the latest cybersecurity incidents, how they happened, and why. Tune in weekly to learn what you can do to stop bad things from happening to you! Got questions/suggestions/stories to share? Email: tips@sophos.com Twitter: @NakedSecurity Instagram: @NakedSecurity
Last refreshed:
Follow this podcast in the Metacast mobile app to refresh it and see new episodes.
Download Metacast podcast app
Podcasts are better in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episodes

S2 Ep28: Stalkerware, when cybercrooks return, and phishing gone wild

This week we discuss the stalkerware app that spilled bucketloads of ultrapersonal data, a double-whammy ransomware attack on a homeless charity, and an Amazon Prime phishing attack with a skull-and-crossbones twist. Producer Alice Duckett hosts the show with Sophos experts Paul Ducklin, Greg Iddon and Peter Mackenzie. Related articles: https://nakedsecurity.sophos.com/2020/02/24/kidsguard-stalkerware-leaks-data-on-secretly-surveilled-victims/ https://nakedsecurity.sophos.com/2020/02/21/the-amaz...

Feb 26, 202045 min

S2 Ep27: Bluetooth vulnerabilities, dodgy Chrome extensions and forgotten encryption passwords

This week we discuss why Google abruptly pulled over 500 Chrome extensions from its Web Store, the case of a man held in custody for refusing to decrypt two hard drives and research detailing a number of security holes in Bluetooth chips from several different vendors. Greg Iddon plays host and Producer this week and is joined by fellow Sophos experts Paul Ducklin and Peter Mackenzie. Listen now! Related articles: Google pulls 500 malicious Chrome extensions after researcher tip-off: https://nak...

Feb 21, 202038 min

S2 Ep26: Robbin Hood ransomware, Twitter parodies and SMS 2FA WHAT?

This week we welcome back Peter who discusses RobbinHood - the ransomware that brings its own bug. Greg explains how a student's Twitter account was handed over to their college and Duck talks SMS 2FA. Host Anna Brading is joined by Sophos experts Peter Mackenzie, Paul Ducklin and Greg Iddon. Listen now! Related articles: RobbinHood – the ransomware that brings its own bug: https://nakedsecurity.sophos.com/2020/02/07/robbin-hood-the-ransomware-that-brings-its-own-bug/ Living off another land: Ra...

Feb 12, 202046 min

S2 Ep25: You've seen WHAT on public Trello boards?

Over the past couple of years, Sophos' Director of Security Craig Jones has discovered a worrying amount of personal data on public Trello boards. Mark says companies shouldn’t microchip their employees and Duck discusses a bug that could have blown a hole in OpenSMTPD. Host Anna Brading is joined by Sophos experts Paul Ducklin, Mark Stockley and special guest Craig Jones. Listen now! Related articles: Trello exposed! Search turns up huge trove of private data: https://nakedsecurity.sophos.com/2...

Feb 05, 202048 min

S2 Ep24: Tinder, angry customers and weleakinfo takedown

This week we discuss 70,000 images being stolen from Tinder, the weleakinfo.com FBI bust and how Sonos annoyed its longstanding customers. Host Anna Brading is joined by Sophos experts Mark Stockley, Greg Iddon and producer Alice Duckett. Listen now! Related articles: Sonos’s tone-deaf legacy product policy angers customers: https://nakedsecurity.sophos.com/2020/01/23/sonoss-tone-deaf-legacy-product-policy-angers-customers/ FBI seizes credentials-for-sale site: https://nakedsecurity.sophos.com/2...

Jan 29, 202052 min

S2 Ep23: Snake ransomware, VPN vulnerabilities and is your phone listening to you?

This week we cover Snake ransomware, VPN vulnerabilities and decide whether our phones are spying on us. Mark also revisits his growing list of pet peeves and Anna tests whether getting deep fake feet to your phone via SMS is real. Host Anna Brading is joined by Sophos experts Mark Stockley, Greg Iddon and Producer Alice Duckett. Listen now! Related articles: Snake alert! This ransomware is not a game… https://nakedsecurity.sophos.com/2020/01/13/snake-alert-this-ransomware-is-not-a-game/ Browser...

Jan 16, 202052 min

S2 Ep22: Word doc stops fraud, bye bye Python 2, latest from the ransomware swamp

This week we discuss the IT exec who scammed his employer out of $6m with fake invoices and the death of Python 2. Peter also shares two of his latest investigations from the ransomware swamp. Producer Alice Duckett is joined by Mark Stockley, Greg Iddon and Peter Mackenzie in this week's episode. Thank you to everyone who gives us feedback on the podcast and helps us promote it on social media, it really helps us reach more people. Listen now! Related articles: IT exec sets up fake biz to scam ...

Jan 08, 202044 min

S2 Ep21 - Plundervolt, domain name gunfight and Facebook snubs Congress

Here are the week's top stories - we explain the Plundervolt attack, look into a gunfight over a domain name, and explore the encryption drama that's unfolding between Facebook and Congress. Host Anna Brading is joined by Sophos experts Mark Stockley, Paul Ducklin and Greg Iddon. Listen and share! Related articles: https://nakedsecurity.sophos.com/doitforstate-domain-name-thief-gets-14-years-for-pistol-whipping-plot https://nakedsecurity.sophos.com/plundervolt-stealing-secrets-by-starving-your-c...

Dec 18, 201944 min

S2 Ep20 - Why don't they send ransomware on floppies anymore?

As always, we pick the top three cybersecurity stories of the week to discuss. This week we talk about open-source supply chain madness, Snatch ransomware and iPhone 11 tracking concerns. Host Anna Brading is joined by Sophos experts Mark Stockley, Peter Mackenzie and Paul Ducklin. Listen and share! Related articles: Will the new iPhone 11 track you even if you tell it not to? https://nakedsecurity.sophos.com/2019/12/09/will-the-new-iphone-11-track-you-even-if-you-tell-it-not-to/ Snatch ransomwa...

Dec 11, 201943 min

S2 Ep19 - One of us just prevented a ransomware attack

Peter Mackenzie saved a casino from a ransomware attack, a children's smartwatch leaks location data and HPE warns of impending SSD disk doom. Host Anna Brading is joined by Peter Mackenzie, Paul Ducklin and Mark Stockley. Related articles: Children's smartwatch: https://nakedsecurity.sophos.com/2019/11/28/kids-smartwatch-security-tracker-can-be-hacked-by-anyone/ SSD disk impending doom: https://nakedsecurity.sophos.com/2019/11/28/hpe-warns-of-impending-ssd-disk-doom/

Dec 04, 201942 min

S2 Ep18 – Missing cryptoqueen, festive phishing and can the web be saved?

This week we discuss the large scale crypto-scam which tricked people into investing $400m, Tim Berners-Lee's proposed principles to save the web from a 'digital dystopia' and how to stay safe online during the festive season. Producer Alice Duckett hosts the show with Sophos experts Paul Ducklin and Peter Mackenzie. Listen now! Related articles: Crypto-scam: https://nakedsecurity.sophos.com/2019/11/25/onecoin-crypto-scam-lawyer-found-guilty-of-worldwide-400m-fraud/ Web principles: https://naked...

Nov 27, 201947 min

S2 Ep17 - Fake AirBnBs, lying ISPs and a glance at the cyberfuture

A huge Airbnb scam ends with promises to verify every host and listing, Mozilla says ISPs are lying to Congress about encrypted DNS and we discuss the Sophos Threat Report 2020. Host Anna Brading is joined by Sophos experts Peter Mackenzie and Greg Iddon on this week's episode of the podcast. Listen now! Related articles: Airbnb: https://nakedsecurity.sophos.com/2019/11/11/huge-airbnb-scam-leads-to-promise-to-vet-every-host-every-listing/ Mozilla: https://nakedsecurity.sophos.com/2019/11/06/mozi...

Nov 13, 201943 min

S2 Ep16 - BlueKeep's back, ransomware batters Spain, and yet more sextortion

Mass ransomware hit Spain earlier this week, BlueKeep's back and there's yet another twist in the sextortion saga. Sophos experts Mark Stockley, Peter Mackenzie and Paul Ducklin join Producer Alice Duckett this week to discuss. We also have a brand new Naked Security YouTube channel subscribe here: https://www.youtube.com/channel/UCuTRp4eg7vwZFYMzHP4KDlA?view_as=subscriber Listen now! Related articles: RDP BlueKeep exploit shows why you really, really need to patch: https://nakedsecurity.sophos....

Nov 06, 201949 min

S2 Ep15 - City under attack! VPN hacked, floppies nixed

This week we discuss the cyberattack with a difference on the city Johannesburg, how a hacker accessed company web servers via NordVPN and why the US nuclear weapons command finally ditched 8-inch floppies. Host Anna Brading is joined by Mark Stockley, Greg Iddon and Peter Mackenzie. Listen now! Related articles: Ransomware with a difference as hackers threaten to release city data: https://nakedsecurity.sophos.com/2019/10/28/johannesburg-hit-by-second-malware-attack/ Hacker breached servers use...

Oct 30, 201947 min

S2 Ep14 - Samsung fingerprint fail, mystery black boxes and invisible Android apps

This week we discuss the screen protector which bypasses fingerprint readers on Samsung’s flagship smartphones, icon-hiding Android adware and a mystery black box. Host Anna Brading is joined by Sophos experts Mark Stockley and - for his final appearance - Matt Boddy. Read our related articles here: Samsung fingerprint reader spoofed: https://nakedsecurity.sophos.com/2019/10/21/samsung-galaxy-s10-fingerprint-reader-beaten-by-3-gel-protector/ Icon-hiding Android adware returns to the Play Market:...

Oct 23, 201940 min

S2 Ep13.5 - All about social media: Growing up online, parent advice and social shaming

In light of National Cybersecurity Awareness Month, we're giving you a special splinter episode all about social media. Harry McMullin shares insights into what it was like growing up with social media from as early as ten, Mark Stockley gives the perspective of a parent with two children currently under ten and Alice Duckett discusses cancel culture and social media shaming. If you're new here, we share episodes every week discussing the biggest cybersecurity news stories from data breaches to ...

Oct 17, 201950 min

S2 Ep13 - Weird Android zero-day and other tech fails

This week producer Alice Duckett steps in to host the show with Sophos experts Mark Stockley and Greg Iddon. They discuss Twitter's two-factor authentication faux pas, the risks of copy and pasting code from Stack Overflow and an Android zero-day with a difference. If you're interested in learning more, read our related articles: Twitter fail: https://nakedsecurity.sophos.com/2019/10/10/twitter-used-2fa-phone-numbers-for-targeted-advertising/ Stack Overflow: https://nakedsecurity.sophos.com/2019...

Oct 15, 201945 min

S2 Ep12 - Dark Web, O.MG Cable spying and securing new laptops

This week host Anna Brading is joined by Sophos experts Mark Stockley and Greg Iddon. They discuss the bust of CyberBunker, a malicious lightning cable that's about to hit the mass market and how to secure your laptop. Related articles: Darknet: https://nakedsecurity.sophos.com/2019/10/01/darknet-hosting-provider-busted-in-underground-nato-bunker/ O.MG lightning cable: https://nakedsecurity.sophos.com/2019/10/02/omg-evil-lightning-cable-hits-prime-time/ Secure your new laptop: https://nakedsecur...

Oct 10, 201946 min

S2 Ep11 - Fleeceware, Chrome bug and the sextortion scam that won't die

This week host Anna Brading is joined by Sophos experts Mark Stockley and Greg Iddon. They discuss National Cyber Security Awareness Month, the latest chrome bug, 'Fleeceware' and why people are still falling for emails claiming they've recorded you through your webcam. Related articles: Greg talks about SophosLabs’ latest research into ‘Fleeceware’: https://nakedsecurity.sophos.com/2019/09/27/fleeceware-play-store-apps-quietly-charging-up-to-250/ Source article: https://news.sophos.com/en-us/20...

Oct 03, 201944 min

S2 Ep10 – Emotet’s back, mutant WannaCry and Insta scam

This week host Anna Brading is joined by Sophos experts Mark Stockley, Ben Jones and Peter Mackenzie. Ben explains why emotet is back, Peter shares his latest research into WannaCry and Mark shares the latest social media phish. Related articles: Emotet: https://nakedsecurity.sophos.com/2019/01/25/fighting-emotet-lessons-from-the-front-line/ WannaCry: https://nakedsecurity.sophos.com/2019/09/18/wannacry-the-worm-that-just-wont-die/ https://www.sophos.com/en-us/medialibrary/PDFs/technical-papers/...

Sep 25, 201950 min

S2 Ep9 - Wikipedia down, Firefox VPN and NetCAT attacks

This week, Producer Alice Duckett steps in to host the show with Paul Ducklin, Mark Stockley and Greg Iddon. Greg discusses the most disruptive Distributed Denial of Service (DDoS) attack in recent memory affecting Wikipedia, Mark shares another privacy boost for Firefox users and Duck explains why SSH-stealing NetCAT is not really a problem. Related articles Wikipedia DDos: https://nakedsecurity.sophos.com/2019/09/11/wikipedia-fights-off-huge-ddos-attack/ Firefox Private Network: https://nakeds...

Sep 18, 201948 min

S2 Ep8 - Facebook Phone Leak, $5m Ransoms And DNS Controversy

This week, Producer Alice Duckett steps in to host the show with Paul Ducklin, Ben Jones and special guest Peter Mackenzie. Peter shares the latest ransomware trends, Ben discusses a Facebook data leak which led to the exposure of 419 million phone numbers and Duck explains why not everyone is happy about Mozilla's move towards DNS over HTTPS. Related articles Mozilla: https://nakedsecurity.sophos.com/2019/09/10/mozilla-increases-browser-privacy-with-encrypted-dns/ Facebook: https://nakedsecurit...

Sep 11, 201949 min

S2 Ep7 - iPhones attacked, Twitter hack and set-top box Android botnet

This week on the Naked Security podcast host Anna Brading is joined by Mark Stockley, Paul Ducklin and Matt Boddy. They discuss iPhone zero days, android botnets and how the founder and CEO of Twitter had his account hijacked. Do you have a question? Let us know and we’ll answer them next week. Related Naked Security articles: iPhone hacking: https://nakedsecurity.sophos.com/2019/08/30/sophisticated-iphone-hacking-went-unnoticed-for-over-two-years/ Twitter takeover: https://nakedsecurity.sophos....

Sep 05, 201945 min

S2 Ep6 - Instagram phishing, jailbreaking iPhones and social media hoaxes

This week on the Naked Security podcast host Anna Brading is joined by Mark Stockley and Paul Ducklin. They discuss sophisticated Instagram phishing attacks, jailbreaking iPhones and the latest social media hoax. Do you have a question? Let us know and we’ll answer them next week. Related Naked Security articles: Jailbreaking: https://nakedsecurity.sophos.com/apple-ios-update-ends-in-jailbroken-iphones https://nakedsecurity.sophos.com/emergency-ios-patch-fixes-jailbreaking-flaw Social media hoax...

Aug 28, 201945 min

S2 Ep5 - Phishing, eavesdropping voice assistants and quick fire questions

This week on the Naked Security podcast we discuss whether big tech companies are spying on you and the latest phishing scams. Do you have a question? Let us know and we’ll answer them next week. With Anna Brading, Ben Jones and Matt Boddy. Humans are listening to your voice recordings – Our articles are below: Microsoft: https://nakedsecurity.sophos.com/2019/08/09/your-skype-translator-calls-may-be-heard-by-humans/ And then updating its policy: https://nakedsecurity.sophos.com/2019/08/16/micros...

Aug 21, 201944 min

S2 Ep3 - Ransomware, surveillance and data theft

The Naked Security podcast tells you how to keep crooks out of your home network, discusses whether the government should be able to read our private messages or not, and digs into the crooks behind the Baldr malware. With Anna Brading, Paul Ducklin, Mark Stockley and Ben Jones. This week's links: https://nakedsecurity.sophos.com/nas-vendors-hit-by-brute-force https://nakedsecurity.sophos.com/ep-025-business-email-compromise https://sophos.com/rdp https://nakedsecurity.sophos.com/five-eyes-natio...

Aug 07, 201945 min

S2 Ep2 - EvilGnome, leaky browser add ons and the latest on BlueKeep

This week we discuss EvilGnome, leaky browser add ons and the latest on BlueKeep. With Anna Brading, Paul Ducklin, Mark Stockley and Matt Boddy. What we talked about this week: https://nakedsecurity.sophos.com/2019/07/26/happy-sysadminday-2019/ https://nakedsecurity.sophos.com/happy-sysadminday-2019 https://nakedsecurity.sophos.com/evilgnome-linux-malware https://nakedsecurity.sophos.com/rdp-bluekeep-exploit-shows-why https://nakedsecurity.sophos.com/browser-plug-ins-peddled-personal-data

Aug 01, 201946 min

S2 Ep1 - FaceApp, logic bombs and youngsters' online safety

The Naked Security podcast - now in Series 2! This week we investigate whether FaceApp is as dangerous as they say, how to keep logic bombs out of your software, and how to help youngsters stay safe online. With Anna Brading, Paul Ducklin, Mark Stockley and Matt Boddy. What we talked about this week: https://nakedsecurity.sophos.com/faceapp-panic-sets-internet-alight https://nakedsecurity.sophos.com/the-momo-challenge-urban-legend-what-on-earth-is-going-on/ https://nakedsecurity.sophos.com/how-m...

Jul 25, 20191 hr 2 min

S2 Launch - RDP Exposed

The Naked Security podcast is back - in our brand new studio! We present our latest research into RDP security and just how quickly crooks can find you online. Anna Brading talks to Matt Boddy, Ben Jones and Mark Stockley. https://sophos.com/rdp

Jul 17, 201935 min
For the best experience, listen in Metacast app for iOS or Android