Security Now
SN 1088: A Nefarious Novel Use for AI - Ransomware Negotiations Go High-Tech
Cybercriminals are harnessing AI not to break in, but to make sense of their stolen loot and increase their leverage in multi-million dollar ransomware heists. This episode unpacks how AI is now turbocharging extortion and negotiations on the dark side.
- The "bone crushing" didn't happen this month.
- Revisiting and inspecting July's Patch Tuesday.
- A widespread and worrisome flaw in OpenSSL.
- Claude can now access your 1Password credentials.
- Bitwarden is aware that we need whole new security.
- The day ends in "y" so a new prompt injection attack.
- A true (and rare) core Wordpress emergency update.
- Lots of interesting listener feedback.
- And new ways AI is being used by bad guys
Show Notes - https://www.grc.com/sn/SN-1088-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1087: HalluSquatting, GhostApproval & GitLost - Patch Tuesday Breaks Records
AI is rewriting the rules of cybersecurity, and this week, massive government and private sector moves show just how quickly the stakes are rising. Find out how regulators, attackers, and defenders are all scrambling to keep up as vulnerabilities surface at record speed.
- Europe warns their largest banks to prepare for AI attack.
- The EU launches an action plan for AI Cybersecurity.
- China considers keeping its budget AI to itself.
- The UK's NCSC & GCHQ announce their "Cyber Shield".
- CISA is using Mythos to audit U.S. government code.
- Microsoft warns of their upcoming patch flood.
- "RoguePlanet" receives an on-the-fly patch.
- An underused mode to kid-proof an iPhone.
- Listener feedback and three new AI attacks
- HalluSquatting, GhostApproval & GitLost
Show Notes - https://www.grc.com/sn/SN-1087-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1086: The Apex Agentic Adversary - Visual Prompt Injection Strikes
From the sudden retirement of Internet pioneer Vint Cerf to the unstoppable advance of "apex agentic adversaries," get a front-row seat to the unfolding security revolution and its massive real-world stakes.
- Why Fable5's re-release has disappointed.
- Opera becomes the first browser to offer "Paste Protect."
- Microsoft BlueHammer exploit is "hammering" systems.
- Industry legend (TCP creator) Vint Cerf on AI.
- Chrome turns 150 with too many fixes to load.
- Google fails to sidestep a $4.67 billion EU fine.
- One last (we can hope) Chat Control vote next week.
- AirDrop & Android Quick Share are exploitable.
- How to bypass Claude's and ChatGPT's guardrails.
- My own Sunday spin with SpinRite.
- A legendary hacker uses AI on a widespread library
Show Notes - https://www.grc.com/sn/SN-1086-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1085: A SOTA State-Sponsored Campaign - AI's New Superpower: Loop Engineering
AI is now uncovering and fixing thousands of hidden software bugs faster than humans can keep up, but not everyone is playing by the rules. Find out how state-sponsored attackers and careless disclosures are turning the cybersecurity playbook upside down.
- Win10's popularity forces another year of free updates.
- CISA directs all federal agencies to update their UniFi OS devices.
- CISA gave federal agencies "the weekend" to update Cisco devices.
- Australia is disturbed by a deeply compromised infrastructure provider.
- OpenAI introduces Daybreak-powered "Patch the Planet" initiative.
- Meta's employee monitoring-for-AI-training backfired badly.
- Script Kiddies figure out how to use AI to find vulnerabilities.
- AI improves with "looping", "repeating" or "iterating".
- A wonderful story about Kevin Mitnick.
- Serious hackers mistakenly left a server directory accessible
Show Notes - https://www.grc.com/sn/SN-1085-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit
Sponsors:
