technology

SN 1063: Mongo's Too Easy - AI Bug Bounties Gone Wild
Security Now (Audio)February 04, 2026
1063
2:55:34160.96 MB

SN 1063: Mongo's Too Easy - AI Bug Bounties Gone Wild

When a popular antivirus and even Notepad++ turn into infection vectors after supply chain breaches, it's clear no software is safe from attack—or from its own update system. Steve and Leo unpack the risks hiding right inside your next auto-update. An anti-virus system infects its own users. Apple's...

SN 1062: AI-Generated Malware - Ireland Legalizes Spyware
Security Now (Audio)January 28, 2026
1062
2:41:34148.09 MB

SN 1062: AI-Generated Malware - Ireland Legalizes Spyware

Can AI really write malware better than hackers ever could? This episode exposes the first real-world case of advanced, fully AI-generated malware and why it signals a seismic shift in cybersecurity risk. CISA's uncertain future remains quite worrisome. Worrisome is Ireland's new "lawful" intercepti...

SN 1061: More GhostPosting - RAM Crisis Hits Firewalls
Security Now (Audio)January 21, 2026
1061
2:44:10150.54 MB

SN 1061: More GhostPosting - RAM Crisis Hits Firewalls

Soaring RAM prices are about to hit your security gear where it hurts, and the fallout could change what's protecting your network. Find out who's about to pay and why the AI gold rush is reshaping more than just your server specs. RAM pricing to affect enterprise firewall equipment. Anthropic provi...

SN 1060: 3-Day Certificates - The Rise of AI Programming
Security Now (Audio)January 14, 2026
1060
2:49:13155.07 MB

SN 1060: 3-Day Certificates - The Rise of AI Programming

Why are code signing certificates suddenly so expensive, short-lived, and tangled in red tape? Leo Laporte and Steve Gibson dig into Microsoft's "three-day certificates," the hidden costs for developers, and the security tradeoffs no one saw coming. A look at Microsoft's Azure cloud code signing. Ca...

SN 1060: 3-Day Certificates - The Rise of AI Programming
Security Now (Audio)January 14, 2026
1060
2:38:52145.59 MB

SN 1060: 3-Day Certificates - The Rise of AI Programming

Why are code signing certificates suddenly so expensive, short-lived, and tangled in red tape? Leo Laporte and Steve Gibson dig into Microsoft's "three-day certificates," the hidden costs for developers, and the security tradeoffs no one saw coming. A look at Microsoft's Azure cloud code signing. Ca...

SN 1059: MongoBleed - Code Signing Under Siege
Security Now (Audio)January 07, 2026
1059
3:16:33180.12 MB

SN 1059: MongoBleed - Code Signing Under Siege

Why are code signing certificates suddenly getting shorter, pricier, and more restrictive? Steve Gibson and Leo Laporte expose the "cabal" rewriting the rules for everyone who builds software—and what it means for your security and your wallet. Code-signing certificate lifetimes shortened by two yea...

SN 1058: A Gift for the New Year - Vitamin D Revisited
Security Now (Audio)December 28, 2025
1058
1:26:0679.35 MB

SN 1058: A Gift for the New Year - Vitamin D Revisited

In this special holiday episode, Steve Gibson and Leo Laporte revisit their classic conversation about vitamin D—diving into the science, surprising updates, and practical tips for your health. Whether you've heard it before or are tuning in for the first time, this "blast from the past" is the perf...

SN 1057: GhostPoster - Free VPNs, Hidden Risks
Security Now (Audio)December 24, 2025
1057
2:20:19128.57 MB

SN 1057: GhostPoster - Free VPNs, Hidden Risks

What if your smart TV and Firefox extensions were secretly hijacking your security and privacy? This episode reveals the jaw-dropping discovery of a massive TV botnet and the surprisingly clever malware lurking behind innocent browser icons. North Korea's profitable fixation on cryptocurrency. Amazo...

SN 1056: Australia - AI Coding Blunders Exposed
Security Now (Audio)December 17, 2025
1056
2:56:38161.97 MB

SN 1056: Australia - AI Coding Blunders Exposed

Australia's nationwide social media ban has put tech's age verification tools under the spotlight, exposing the flaws and privacy risks in today's facial detection systems and sparking worldwide debate about what's coming for the rest of us. Home Depot's puzzling reluctance to close a bad hole. GNOM...

SN 1055: React's Perfect 10 - RAM Is the New Lobster
Security Now (Audio)December 10, 2025
1055
2:45:50152.04 MB

SN 1055: React's Perfect 10 - RAM Is the New Lobster

A devastating new React vulnerability earned a "perfect 10" for risk, letting attackers remotely run code on a million-plus servers with a single HTTP request. Find out what happened, how fast attackers moved in, and why this bug changes everything for web security. France's VanityFair face a stiff ...

SN 1054: Bots in the Belfry - Cisco Promises Real Security Fixes!
Security Now (Audio)December 03, 2025
1054
3:04:04168.66 MB

SN 1054: Bots in the Belfry - Cisco Promises Real Security Fixes!

Cisco has finally admitted it's time for real change and is vowing to build "secure by default" gear after decades of criticism. Steve Gibson reacts to a rare moment when a tech giant actually gets security right—and what it means for everyone running critical infrastructure. • Scattered Lapsus$ Hun...

SN 1053: Banning VPNs - The Equals Coffee Hack
Security Now (Audio)November 26, 2025
1053
2:41:48148.31 MB

SN 1053: Banning VPNs - The Equals Coffee Hack

Could banning VPNs really become law in the US? This episode breaks down the jaw-dropping legislation in Wisconsin and Michigan that targets VPN access for everyone, not just kids—and what it means for your digital privacy. The EU finally comes to its "Chat Control" senses. Windows 11 to include Sys...

SN 1052: Global Cellphone Tracking - Checkout.com Fights Back
Security Now (Audio)November 19, 2025
1052
3:02:07166.95 MB

SN 1052: Global Cellphone Tracking - Checkout.com Fights Back

Think your cell phone is safe from tracking? Steve reveals how global networks let anyone pinpoint your location—no hacking required and no malware involved. Apple introduces a new Digital ID inside Wallet. Checkout.com refuses to pay a ransom demand. Google announces "Private AI Compute" in the clo...

SN 1051: Amazon Sues Perplexity - Nevada's Ransomware Comeback
Security Now (Audio)November 12, 2025
1051
2:44:03150.37 MB

SN 1051: Amazon Sues Perplexity - Nevada's Ransomware Comeback

Amazon is taking Perplexity AI to court over its agentic browser that shops on your behalf, raising urgent questions about who controls your online buying experience when bots do the heavy lifting. FFmpeg teaching assembly language for performance. The state of Nevada recovers after not paying ranso...

SN 1050: Here Come the AI Browsers - Scareware Blockers
Security Now (Audio)November 05, 2025
1050
3:20:21183.67 MB

SN 1050: Here Come the AI Browsers - Scareware Blockers

AI-powered web browsers are hitting the scene fast, but Steve and Leo unpack why these smart assistants could usher in an era of security chaos most users aren't ready for. Brace yourself for the wild risks, real-world scams, and the privacy questions no one else is asking. Secret radios discovered ...

SN 1049: DNS Cache Poisoning Returns - Ransomware Payments Plummet
Security Now (Audio)October 29, 2025
1049
2:55:52161.2 MB

SN 1049: DNS Cache Poisoning Returns - Ransomware Payments Plummet

Just when you thought DNS cache poisoning was a thing of the past, Steve and Leo reveal why this 17-year-old bug is making a dramatic comeback—and why most DNS resolvers still can't manage high-quality random numbers after all this time. The unsuspected sucking power of a Linux-based robot vacuum. R...

SN 1048: Mic-E-Mouse - AWS Goes Down Hard
Security Now (Audio)October 22, 2025
1048
2:50:05155.92 MB

SN 1048: Mic-E-Mouse - AWS Goes Down Hard

Think your mouse is harmless? Steve and Leo uncover how modern optical mice might be secretly "listening" in, and reveal why satellite data pouring down on us is almost entirely unsecured. The long awaited lawsuit to block Texas SB2420. Embattled Texas SB2420 also impacts Google Play. At long last, ...

SN 1047: RediShell's CVSS 10.0 - The Rise of Mega Botnets
Security Now (Audio)October 15, 2025
1047
2:32:08140.08 MB

SN 1047: RediShell's CVSS 10.0 - The Rise of Mega Botnets

Texas is on the brink of forcing Apple and Google to overhaul app downloads with strict age verification laws—are tech giants ready, or is your privacy about to get caught in the crossfire? The EU aborted their Chat Control vote knowing it would fail. Salesforce says it's not going to pay; customer ...

SN 1046: Google's Developer Registration Decree - The End of Free Android Apps?
Security Now (Audio)October 08, 2025
1046
2:31:21138.78 MB

SN 1046: Google's Developer Registration Decree - The End of Free Android Apps?

Google's new demand for developer registration could spell the end for open-source app stores, while Europe's controversial chat control vote threatens privacy for everyone—Steve and Leo break down what's at stake for devs and users alike. Qantas says no one can releak their stolen data. Brave's usa...

SN 1045: News and Listener Views - 2.3 Million Cisco Devices Exposed
Security Now (Audio)October 01, 2025
1045
2:49:39155.5 MB

SN 1045: News and Listener Views - 2.3 Million Cisco Devices Exposed

Cisco's routers just exposed more than two million networks thanks to a "security optional" SNMP setup that's being actively exploited—Steve and Leo break down why this is a worst-case scenario for the industry and how easily it could have been avoided. Gmail's spam filtering false-positive spree. i...