Security Now

SN 1024: Don't Blame Signal - The Real Story Behind the TM SGNL Breach

Security Now - Tue, 05/06/2025 - 11:35pm
  • Microsoft to officially abandon passwords and support their deletion.
  • Meta's RayBan smart glasses weaken their privacy terms.
  • 30% of Microsoft code is now being written by AI.
  • Google says prying Chrome from it will damage its security.
  • Nearly 1,000 six-year-old eCommerce backdoors spring to life.
  • eM Client moves to version 10.3
  • A bunch of terrific listener feedback creates talking points.
  • A little-known, insecure message archiving service comes to light.

Show Notes - https://www.grc.com/sn/sn-1024-notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to Security Now at https://twit.tv/shows/security-now.

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

Sponsors:

Categories: Security Now

SN 1023: Preventing Windows Sandbox Abuse - Microsoft Says "Don't Delete This Folder"

Security Now - Tue, 04/29/2025 - 10:34pm
  • Why did a mysterious empty "inetpub" directory appear after April's Patch Tuesday?
  • And what new Windows Update crashing hack did this also create?
  • North Korea is now creating fake US companies to lure would-be employees.
  • The "Inception" attack subverts all GPT conversational AIs.
  • New information about data loss in unpowered SSD mass storage.
  • Lots of terrific feedback from our listeners.
  • How malware has taken to hiding inside the Windows Sandbox and what you can do to stop it

Show Notes - https://www.grc.com/sn/SN-1023-Notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to Security Now at https://twit.tv/shows/security-now.

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

Sponsors:

Categories: Security Now

SN 1022: The Windows Sandbox - Short-life Certs, Ransomware Payout Stats

Security Now - Tue, 04/22/2025 - 11:07pm
  • Enabling Firefox's Tab Grouping.
  • Recalled Recall Re-Rolls out.
  • The crucial CVE program nearly died. It's been given new life.
  • China confesses to hacking the US (blames our stance on Taiwan).
  • CISA says what Oracle still refuses to.
  • Brute force attacks on the (rapid) rise.
  • An AI/ML Python package rates a 9.8 (again!)
  • The CA/Browser forum passed short-life certs. :(
  • A wonderful crosswalk hack hits Silicon Valley.
  • Android to add force restarting ahead of schedule. Maybe.
  • The EFF is never happy. But especially now, about Florida.
  • Interesting research into ransomware payouts.
  • Windows Sandbox: The amazing gem hidden inside all Windows 10 & 11!

Show Notesb - https://www.grc.com/sn/SN-1022-Notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to Security Now at https://twit.tv/shows/security-now.

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

Sponsors:

Categories: Security Now

SN 1021: Device Bound Session Credentials - Hotpatching in Win 11, Apple vs. UK

Security Now - Tue, 04/15/2025 - 10:55pm
  • Android to get "Lockdown Mode".
  • What's in the new editions of Chrome and Firefox?
  • Why did Apple silently re-enable automatic updates?
  • My new iPhone 16, Chinese tariffs and electronics.
  • Dynamic "hotpatching" coming to Win11 Enterprise & Edu.
  • Why is it so difficult for Oracle to fess up?
  • Another multi-year breach inside US Treasury.
  • An Apple -vs- the UK update.
  • "Thundermail" (Can't someone come up with a better name?)
  • The (in)Security of Programmable Logic Controllers.
  • When LLM's write code and hallucinate non-existent packages.
  • Wordpress core security and PHP gets an important audit.
  • Device-Bound Session Credentials update session cookie technology

Show Notes - https://www.grc.com/sn/SN-1021-Notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to Security Now at https://twit.tv/shows/security-now.

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit

Sponsors:

Categories: Security Now