Naked Security - podcast cover

Naked Security

We take an expert look at the latest cybersecurity incidents, how they happened, and why. Tune in weekly to learn what you can do to stop bad things from happening to you! Got questions/suggestions/stories to share? Email: tips@sophos.com Twitter: @NakedSecurity Instagram: @NakedSecurity
Last refreshed:
Follow this podcast in the Metacast mobile app to refresh it and see new episodes.
Download Metacast podcast app
Podcasts are better in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episodes

S3 Ep93: Office security, data breach costs, and leisurely patches

Geosynchronicity. Office security ( on-off-on ). A half-billion-dollar data breach cost . And patch that browser! Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jul 28, 202222 minSeason 3Ep. 93

S3 Ep92: Log4Shell4Ever, summer tips, and scammer timing

Integrated circuits and Nobel prizes. Log4Shell - forever? Cybersecurity tips for summmer . Scams and coincidence . Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jul 21, 202223 minSeason 3Ep. 92

S3 Ep91: Code Red, OpenSSL, Java bugs and Office macros

Memories of the Code Red worm. OpenSSL fixes two tiny but troublesome bugs. More trouble in Java-land . Office macros off and back on again. Potential perils of paying ransomware demands. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jul 14, 202225 minSeason 3Ep. 91

S3 Ep90: Chrome 0-day again, True Cybercrime, and a 2FA bypass

Chrome quashes another zero-day browser bug. Two big-time cybercrime stories . A 2FA phishing scam that arrived PDQ. Chester swarmed by bots on Twitter. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jul 07, 202228 minSeason 3Ep. 90

S3 Ep89: Sextortion, blockchain blunder, and an OpenSSL bugfix

Memories of the iPhone 1. Sextortion scams target LGBTQ+ daters . Yet another blockchain blunder . OpenSSL fixes the bug missed in the last bugfix. And what became of Little Bobby Tables ? Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jun 30, 202225 minSeason 3Ep. 89

S3 Ep88: Phone scammers, hacking bust, and data breach fines

Duck gets behind the Ducks. 2000 phone scammers arrested in Interpol action. A three-year-old hacking case ends in conviction . And a Canadian financial company picks up an enormous data breach fine. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jun 23, 202223 minSeason 3Ep. 88

S3 Ep87: Follina, AirTags, ID theft and the Law of Big Numbers

Computer Science in the 1800s. Fixing Follina. AirTag stalking. ID theft site seizure . And the Law of Big Numbers versus SMS scams. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jun 15, 202225 minSeason 3Ep. 87

S3 Ep86: The crooks were in our network for HOW long?!

The dawn of the x86 era. The Active Adversary Playbook. A sort-of zero day in Windows. A real-life zero-day in Atlassian Confluence. And the registry settings that could keep you in your job. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jun 08, 202223 minSeason 3Ep. 86

S3 Ep85: Now THAT'S what I call a Microsoft Office exploit!

Why calling a computer after a famous scientist doesn't always help. The wacky but dangerous 0-day hole in Windows. Supply chain attacks and the crooks who orchestrate them. Smishing revisited. And why saying what you really mean makes you better at cybersecurity. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jun 02, 202225 minSeason 3Ep. 85

S3 Ep84: Government demand, Mozilla velocity, and Clearview fine

How network comms caught a murderer back in in 1845. Why the US government said, "Patch, or else!" How Mozilla got a double code-execution bug fixed in 48 hours. And why controversial face-matching company Clearview AI got fined $10m. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

May 26, 202215 minSeason 3Ep. 84

S3 Ep83: Cracking passwords, patching Firefox, and Apple vulns

What does the word "non-commensurate" mean? When is cracking passwords legal? Why did Firefox get patched ? Which computer needed dropping onto the desk? Why wasn't this 0-day listed in every Apple update? Did Duck get spammed, or was it actually a troll? Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

May 18, 202226 minSeason 3Ep. 83

S3 Ep82: Bugs, bugs, bugs (and Colonial Pipeline again)

Where does the word "radio" come from? RubyGems supply chain rip-and-replace bug. A weird, weird, weird, weird, weird GoogleDocs bug. Colonial Pipeline back in the cybersecurity news. What about built-in password managers? Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

May 11, 202225 minSeason 3Ep. 82

S3 Ep80: Ransomware news, phishing woes, NAS bugs, and a giant hole in Java

The biggest mountain in tne solar system. New ransomware statistics . Trouble with phishing . Bugs in NAS boxes . A giant security hole in Java. And how to get an industrial grade firewall at home for free . Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Apr 27, 202234 minSeason 3Ep. 80

S3 Ep79: Chrome hole, a bad-choice holiday, and cryptododginess

Adam Osborne or John Osbourne? Another 0-day in Chrome. How not to choose a cybersecurity holiday destination. The Osbo[u]rne Effect. Cryptododginess that might actually be legal. And the Zilog Z80 versus the Mostech 6502. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Apr 20, 202224 minSeason 3Ep. 79

S3 Ep78: Darkweb hydra, Ruby, quantum computing, and a robot revolution

Hydra darkweb market decapitated . Ruby module supply chain hole . Quantum computing sidestepped . A robot revolution that could result in ransomware . And the Zuckerberg scam that just won't die. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Apr 14, 202227 minSeason 3Ep. 78

S3 Ep77: Bugs, busts and old-school PDP-11 hacking

Hacking 2022-style . Some Apple bugs. Some Android bugs. Some Firefox bugs. The SATAN network scanner. Some VMware Spring bugs. And hacking PDP-11 style. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Apr 06, 202226 minSeason 3Ep. 77

S3 Ep76: Deadbolt, LAPSUS$, Zlib and a Chrome 0-day

The DEADBOLT ransomware . LAPSUS$ members bust - or were they? Zlib patches a 17-year-old bug . Chrome experiences another weird 0-day . And Clippy. Yes, THAT Clippy. No, we're not sure why. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Mar 31, 202226 minSeason 3Ep. 76

S3 Ep75: Okta, CryptoRom, OpenSSL and CafePress

LAPSUS$ hackers break into Okta. The CryptoRom money-scamming malware is back on phones. OpenSSL gets into an infinite loop . CafePress fined for covering up a data breach. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Mar 24, 202236 minSeason 3Ep. 75

S3 Ep74: Cybercrime busts, Apple patches, Pi Day, and disconnect effects

Two ransomware suspects extradited for trial . Apple patches 87 known security holes . Happy Pi Day . What happens if a whole country exits the global internet ? Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Mar 17, 202226 minSeason 3Ep. 74

S3 Ep73: Ransomware with a difference, dirty Linux pipes, and more

What do ransomware blackmailers ask for when they don't want money ? Why did Firefox get two updates in three days ? How did Adafruit get hoist by the petard of shadow IT? And what's with those dirty Linux pipes ? REGISTER FOR OUR CYBERINSURANCE EVENT: https://events.sophos.com/cyberinsurance Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Mar 10, 202229 minSeason 3Ep. 73

S3 Ep72: AirTag stalking, web server coding woes and Instascams

How good is Apple's AirTag stalker detection ? Why are web coders still making Y2K-like blunders? And how many Instagram scams can you get in one weekend? Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Mar 03, 202225 minSeason 3Ep. 72

S3 Ep71: VMware escapes, PHP holes, WP plugin woes, and scary scams

VM escapes could put your host servers at risk. PHP fixes an input validation bug in input validation code. A WordPress plugin maker shows you how to write a decent security report . And French scammers remind us that sextortion is sadly still a thing. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Feb 24, 202225 minSeason 3Ep. 71

S3 Ep70: Bitcoin, billing blunders, and 0-day after 0-day after 0-day

Alleged Bitcoin fraudsters busted, power company in trillion-dollar payout blunder, how a blizzard led to a telecomms revolution, and 0-day after 0-day after 0-day . Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Feb 17, 202224 minSeason 3Ep. 70

S3 Ep69: Wordpress woes, Wormhole holes, and a Microsoft change of heart

Problems with plugins . A Wormhole wormhole . Can machines think? Microsoft has a change of heart . And then another one . Why screen cleaning cloths are cool. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Feb 10, 202224 minSeason 3Ep. 68

S3 Ep68: Bugs, scams, privacy... and fonts?!

Stealing root on Linux. Snooping on RAM with a video driver bug. Apple patches a zero-day hole. SMS scams promise home PCR machines. German court freaks out over fonts. How to be private. And a paint robot that went wild. https://nakedsecurity.sophos.com/pwnkit-security-bug-gets-you-root https://nakedsecurity.sophos.com/linux-kernel-patches-performance-can-be-harmful-bug https://nakedsecurity.sophos.com/apple-patches-safari-data-leak https://nakedsecurity.sophos.com/coronavirus-sms-scam-offers-h...

Feb 03, 202227 minSeason 3Ep. 68

S3 Ep67: Tax scams, carder busts and crypto capers

Watch out for tax scams . Crooks with the motto " In Fraud We Trust ". How not to write a data breach notification. Where to find the "10" key on your telephone. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jan 27, 202228 minSeason 3Ep. 67

S3 Ep66: Cybercrime busts, wormable Windows, and the crisis of featuritis

Russia busts Revil . Romance scammer sent to prison . Wormable Windows hole patched. Memories of the HAPPY99 virus. Linux disk encryption trouble . Apple browsers leak personal data . And how (not) to paint a computer. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jan 20, 202229 minSeason 3Ep. 66

S3 Ep65: Supply chain conniption, NetUSB hole, Honda flashback, FTC muscle

A JavaScript coder sabotages his own projects. Routers with critical holes. Honda cars party like it's 2002. The FTC warns everyone to patch. And a Log4Shell-like bug in another Java library. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jan 13, 202234 minSeason 3Ep. 65

S3 Ep64: Log4Shell again, scammers keeping busy, and Apple Home bug

Log4Shell - the gift that keeps on taking . Scammers threatening your social media accounts . Apple Home has a pecuu[...]uuliar bug . And why 2FA is easier than you think. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity...

Jan 06, 202230 minSeason 3Ep. 64
For the best experience, listen in Metacast app for iOS or Android