Smashing Security - podcast cover

Smashing Security

Graham Cluleywww.smashingsecurity.com

Stories from the world of hacking, ransomware, cybersecurity, and rogue AI.

Smashing Security isn’t your typical tech podcast. Hosted by cybersecurity veteran Graham Cluley, it serves up weekly tales of cybercrime, hacking horror stories, privacy blunders, and tech mishaps - all with sharp insight, a sense of humour, and zero tolerance for tech waffle.

Winner of the best and most entertaining cybersecurity podcast awards in 2018, 2019, 2022, 2023, and 2024, Smashing Security has had over ten million downloads. Past guests include Garry Kasparov, Mikko Hyppönen, and Jack Rhysider.

Follow the podcast on Bluesky at @smashingsecurity.com, and subscribe for free in your favourite podcast app.

New episodes released at 7pm EST every Wednesday (midnight UK).

Last refreshed:
Follow this podcast in the Metacast mobile app to refresh it and see new episodes.
Download Metacast podcast app
Podcasts are better in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episodes

021: WannaCry - Who's to blame?

The WannaCry ransomware has struck! But before we tackle that subject, and who we should blame for one of the highest profile malware attacks for years, we discuss how HP has been unwittingly capturing the keystrokes of its laptop users. Then we briefly discuss what might be the worst cinema date in history, before rounding things off with a discussion of hackers extorting money out of movie studios. All this and more is discussed in the latest edition of the "Smashing Security" podcast by compu...

May 18, 201735 min

020: Phishing for Donald Trump

Gizmodo's attempt to reveal Donald Trump's administration ineptitude when it comes to cybersecurity fails to impress. Mac users are warned that the HandBrake DVD-ripping app has been compromised by malware. And will the US Army insist IT security professionals spend months ironing their bedsheets..? All this and more is discussed by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest Paul Ducklin from Sophos. Show notes: Here's How Easy It Is to Get T...

May 10, 201731 min

019: The Love Bug virus

On May 4th 2000, the Love Bug virus (also known as ILOVEYOU or LoveLetter) rapidly spread around the world, clogging up email systems. Computer security veterans Graham Cluley and Carole Theriault are joined this week by special guest John Hawes for a trip down memory lane. Show notes: Memories of the Love Bug worm - Naked Security "Subject: I Love You" movie trailer - YouTube Follow the show on Twitter at @SmashinSecurity , or visit our website for more episodes. Remember: Subscribe on Apple Po...

May 03, 201729 min

018: Windows is a virus. True or False?

Security firm Webroot drops a clanger when it declared Windows was malicious and borked customers' PCs, millennials are streaming a lot of movies illegally, and blackmailers are targeting members of the Ashley Madison cheating site again. All this and more is discussed by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest Michael Hucks from PC Matic. Show notes: Webroot antivirus goes bananas, starts trashing Windows system files - The Register. Webr...

Apr 27, 201731 min

017: Data breaches, zero day exploits, and toenail clippings

Hotel malware has been stealing guests' payment card details... again, should businesses relay delay rolling out vulnerability patches, and Burger King's Whopper TV ad campaign tries to take advantage of viewers' Google Home devices with predictable results. All this and more is discussed by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest Paul Ducklin. Show notes: InterContinental Hotels Group (IHG) Notifies Guests of Payment Card Incident at IHG-...

Apr 20, 201731 min

016: Wonga wronga!

Spyware companies are filmed plotting to break global sanctions to ship surveillance and spying equipment to dodgy authoritarian regimes, an unsecured database exposed diabetics’ sensitive data, and a massive data breach leaves hundreds of thousands of current and former Wonga customers at risk. All this and more is discussed by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest Lisa Vaas. Show notes: Spyware firms in breach of global sanctions - Al ...

Apr 13, 201727 min

015: Bad vibrations

Don't let an internet-enabled sex toy make your most private moments oh-so-public. Samsung's wannabe-Android-killer is found lacking. And did you hear about the firm that is micro-chipping its employees? All this and more is discussed by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest John Hawes. Show notes: Vulnerable Wi-Fi dildo camera endoscope. Yes really - Pen Test Partners Samsung's Android Replacement Is a Hacker's Dream - Motherboard Compa...

Apr 05, 201727 min

014: Protecting webmail - a Smashing Security splinter

What can you do to better protect your online email accounts? In this special "splinter" episode (or should it be a "shard"?) regular hosts Graham Cluley and Carole Theriault discuss with Paul Ducklin tips on how to defend your Gmail/Yahoo/Hotmail/Outlook/etc account. SHOW NOTES: Passwords - a Smashing Security splinter How to better protect your Google account with two-step verification and Google Authenticator - Graham Cluley How to protect your Yahoo account with two-step verification (2SV) -...

Mar 30, 201731 min

013: Assault with a deadly tweet

Graham is embarrassed by a Twitter security snafu. How an animated GIF could prove deadly. Social engineering threats against your workforce. And will you be able to do any work on your laptop next time you catch an airplane? All this and more is discussed by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest Alex Eckelberry. SHOW NOTES: Sorry for the Nazi spam from my Twitter account - Graham Cluley Newsweek reporter Kurt Eichenwald on Fox News, 15 ...

Mar 23, 201734 min

012: Eau de Eugene Kaspersky

Androids pre-installed with malware - can the supply chain be trusted? Will WikiLeaks help vendors get zero-days fixed? And what on earth has the Kaspersky marketing department dreamt up this time? Graham Cluley, Carole Theriault and special guest Nick FitzGerald discuss the latest news from the world of computer security. SHOW NOTES: Preinstalled Malware Targeting Mobile Users - CheckPoint Chinese Android smartphone comes with malware pre-installed - Graham Cluley WikiLeaks says it will work wi...

Mar 16, 201729 min

011: WikiLeaks and the CIA

Has the CIA been using a Weeping Angel to spy on you via your Smart TV? Have WhatsApp, Telegram and Signal been compromised? What is the secret of the SATAN ransomware? And can you avoid having your data searched as you pass through border control? Computer security veterans Graham Cluley, Carole Theriault and special guest Paul Ducklin discuss. SHOW NOTES: Nintendo Classic Mini WikiLeaks says it releases files on CIA cyber spying tools The CIA didn't break Signal or WhatsApp, despite what you'v...

Mar 09, 201734 min

010: The dolls must be destroyed

A creepy teddybear leaks two million voicemail messages, Windows 10 pushes you into only installing vetted apps, and Boeing warns 36,000 employees their personal information could have been exposed after a worker sends a spreadsheet to his wife. All this and more is discussed by computer security veterans Graham Cluley, Vanja Svajcer and Carole Theriault. SHOW NOTES: Announcing the first SHA1 collision Tavis Ormandy: Cloudflare Reverse Proxies are Dumping Uninitialized Memory Incident report on ...

Mar 02, 201736 min

009: False flags and hacker clues

The Lazarus malware attempts to trick you into believing it was written by Russians, second-hand connected cars may be easier to steal, and is your child a malicious hacker? All this and more is discussed by computer security veterans Graham Cluley, Vanja Svajcer and Carole Theriault. Oh, and Carole makes Graham and Vanja apologise for their past mistakes. SHOW NOTES: You Only Live Twice - space capsule scene Lazarus's false flag malware Hackers behind bank attack campaign use Russian as decoy I...

Feb 23, 201726 min

Macs and malware - a Smashing Security splinter

Do you run an anti-virus on your Mac? Should you? In this special "splinter" episode (or should it be a "shard"?) regular hosts Graham Cluley, Carole Theriault and Vanja Svajcer discuss the malware threat for Apple Macs and MacBooks. SHOW NOTES: 600,000 Macs infected with Flashback trojan, 274 in Cupertino Flashback to the biggest Mac malware attack of all time - Is it still a threat? Hackers target Iranian activists’ Mac devices with revamped malware Microsoft Office macro malware targets Macs ...

Feb 21, 201716 min

008: I'll give you my Android when you pry it from my cold, dead paws

Handbags at dawn for CrowdStrike and NSS Labs! Donald Trump's insecure Android phone! File-less malware - is that so new? And StalkScan makes it easier to reveal what Facebook users have been carelessly sharing... Computer security veterans Graham Cluley, Carole Theriault and Vanja Svajcer discuss. SHOW NOTES AEP Public Test Announcement NSS Labs Report Confirms Testing of CrowdStrike Falcon was Incomplete and Wrong Some thoughts on the CrowdStrike vs NSS Labs debacle Which Android phone does Do...

Feb 16, 201728 min

Using public Wi-Fi - a Smashing Security splinter

The tricky problem of public Wi-Fi hotspots. In this special "splinter" episode (or should it be a "shard"?) regular hosts Graham Cluley, Carole Theriault and Vanja Svajcer discuss, and offer some advice and tips for computer users. SHOW NOTES: VPN comparison chart The dangers of public Wi-Fi - and crazy things people do to use it Free open WiFi suspected in Facebook hack of Missouri state representatives Finally! Yahoo Mail to turn on SSL by default in 2014 150 best Wi-Fi names for your router ...

Feb 13, 201721 min

007: ASCII art attack

Printers start churning out ASCII art after a vigilante hacker hijacks 160,000 devices, a researcher reveals how you can get Donald Trump to tweet an embarrassing spoof video of himself, and has your smart TV been snooping on you? Computer security veterans Graham Cluley, Carole Theriault and Vanja Svajcer discuss. SHOW NOTES Hacker: I made 160,000 printers spew out ASCII art around the world ASCII art collection How I hijacked top celebrities tweets including Katy Perry, Shakira… Donald Trump's...

Feb 09, 201723 min

Email attachment malware - a Smashing Security splinter

Email attachment malware is the thorny topic tackled by computer security veterans Graham Cluley, Carole Theriault and Vanja Svajcer in this "splinter" episode from the Smashing Security team. Listen to this before you click! Oh, and Carole would like to apologise to all her fellow Canadians for the terrible faux pas she made in this episode... SHOW NOTES: New feature in Office 2016 can block macros and help prevent infection It's time to secure Microsoft Office Memories of the Anna Kournikova w...

Feb 08, 201718 min

Passwords - a Smashing Security splinter

Passwords - everything you need to know about how to make them safer, and better secure your online accounts. In this special "splinter" episode (or should it be a "shard"?) regular hosts Graham Cluley, Carole Theriault and Vanja Svajcer discuss the perennial problem of passwords and offer some advice and tips for computer users. Follow the show on Twitter at @SmashinSecurity , or visit our website for more episodes. Remember: Subscribe on Apple Podcasts , or your favourite podcast app, to catch...

Feb 07, 201713 min

006: A romantic ransomware hotel break

Were hotel guests really trapped in their rooms by ransomware? Does anti-virus increase your attack surface so much that it's not worth running at all? And 11% of people on the internet are running ad blockers, says company which blocks ad blockers. Oh, and we have a new theme tune... Computer security veterans Graham Cluley, Vanja Svajcer and Carole Theriault chit-chat about the world of online privacy and computer security. Follow the show on Twitter at @SmashinSecurity , or visit our website ...

Feb 02, 201728 min

005: Upskirt insecurity

An alleged hacker finds the downside to car rental, a New York Times Twitter account announces Vladimir Putin is planning to launch a missile attack against the United States, and an "upskirt" website leaks its user data. Oh, and Vanja forces Graham to share an embarrassing privacy-breaching lavatory anecdote. Computer security veterans Graham Cluley, Vanja Svajcer and Carole Theriault chit-chat about the world of online privacy and computer security. SHOW NOTES Spanish Police Arrest Suspect Beh...

Jan 26, 201725 min

004: You don't mess with Brian Krebs

The Spora ransomware offers you more than just your encrypted files back, Brian Krebs busts the alleged masterminds behind the Mirai botnet, and be careful that your IT staff aren't the only ones who know your corporate passwords. Computer security veterans Graham Cluley, Vanja Svajcer and Carole Theriault chit-chat about the world of online privacy and computer security. Recorded live: Thursday 19 January, 2017. Check out the video of this podcast at https://www.youtube.com/watch?v=NJsCpadzVGs ...

Jan 19, 201731 min

003: Alexa! Get me an axe!

Donald Trump and that secret dossier, MongoDB databases under attack, Microsoft employees suffering from PTSD and Alexa buying doll houses. Computer security veterans Graham Cluley, Vanja Svajcer and Carole Theriault chit-chat about the world of online privacy and security. Recorded live: Thursday 12 January, 2017 Watch the video version of this podcast at https://www.youtube.com/watch?v=BwpXbrEtgNg . SHOW NOTES Donald Trump finally believes Russia hacked the DNC 27,000 MongoDB servers have thei...

Jan 12, 201727 min

002: Invest in carrier pigeons

Donald Trump talks cybersecurity and explains how to keep your messages top secret, Ukrainian soldiers are being spied upon by Android malware and an artist has devised a novel way of avoiding facial recognition technology. Computer security veterans Graham Cluley, Vanja Svajcer and Carole Theriault chit-chat about the world of online privacy and security. Recorded live: Thursday 5 January, 2017. Watch the video version of this podcast at https://www.youtube.com/watch?v=6jfvNSbSpt8 SHOW NOTES Tr...

Jan 05, 201723 min

001: One cup, two hotel guests

We discuss the pains of providing tech support to family and friends, when writing down your passwords is actually a good idea, and muse on cloud backup services. Cool gadgetry, smart basketballs, below-par hotel services and, of course, Christmas being "..in TWO days". Computer security veterans Graham Cluley, Vanja Svajcer and Carole Theriault chit-chat about the world of online privacy and security. Recorded live, December 22 2016. Watch the video version at https://www.youtube.com/watch?v=mD...

Dec 22, 201628 min

000: Coming up...

A trailer for the award-winning "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault , joined each week by special guests. Remember: Subscribe on Apple Podcasts , or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening! Warning: This podcast may contain nuts, adult themes, and rude language. Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Support Smashing Security Privacy &amp...

Dec 20, 201611 min
For the best experience, listen in Metacast app for iOS or Android