Security Now
SN 1085: A SOTA State-Sponsored Campaign - AI's New Superpower: Loop Engineering
AI is now uncovering and fixing thousands of hidden software bugs faster than humans can keep up, but not everyone is playing by the rules. Find out how state-sponsored attackers and careless disclosures are turning the cybersecurity playbook upside down.
- Win10's popularity forces another year of free updates.
- CISA directs all federal agencies to update their UniFi OS devices.
- CISA gave federal agencies "the weekend" to update Cisco devices.
- Australia is disturbed by a deeply compromised infrastructure provider.
- OpenAI introduces Daybreak-powered "Patch the Planet" initiative.
- Meta's employee monitoring-for-AI-training backfired badly.
- Script Kiddies figure out how to use AI to find vulnerabilities.
- AI improves with "looping", "repeating" or "iterating".
- A wonderful story about Kevin Mitnick.
- Serious hackers mistakenly left a server directory accessible
Show Notes - https://www.grc.com/sn/SN-1085-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1084: The Residential Proxy Threat - Malicious Proxies in Your Living Room
A flood of everyday gadgets, from cheap streaming boxes to digital photo frames, are being secretly conscripted into global proxy networks and used to mask major cyberattacks—possibly even targeting your own home network.
- Worries of AI-power cyberattacks are spreading.
- Mythos "missed some" important vulnerabilities in Firefox.
- Every recent patch Tuesday Nightmare Eclipse has struck. What now?
- Massive store of valid FortiGate VPN credentials found.
- F5 issues emergency updates to their NGINX-based server offerings.
- Introducing "AI Potpourri" -- deeply altering an AI's personality.
- A close look at the explosion in malicious proxy networks.
- A Canadian judge okayed the illegal removal of such infections
Show Notes - https://www.grc.com/sn/SN-1084-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1083: Patch Tuesday à la AI - Arch Linux Repo Under Siege
This episode unpacks the jaw-dropping surge in vulnerabilities unearthed by AI, revealing how Microsoft shattered its own patch records while adversaries and defenders race to outpace each other. The conversation gets real about whether AI is fixing our broken software or just making attacks easier for everyone.
- Rootkits found in more than 400 ArchLinux User Repository packages.
- The US government requests Anthropic to remove Mythos and Fable.
- CISA responds to AI-driven attacks with new patching requirements.
- NPM to switch to more secure install defaults. Will it help.
- Our listeners react to last week's PHP commentary.
- June shows that AI has arrived for vulnerability discover
Show Notes - https://www.grc.com/sn/SN-1083-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1082: The Malicious Use of AI - Anthropic's Red Team Report
Discover how Anthropic's secretive red team and the MITRE ATT&CK framework are mapping the chilling rise of malicious AI use, revealing cyber threats that now move faster than defenders can respond.
- Was a U.S. law firm right to pay a $20 million ransom.
- Could Cisco have yet another SD-WAN 0-day in the wild.
- Why is it so difficult to author secure PHP code.
- Teens use "WeedHack" to spy and attack each other.
- Researchers create the first AI-enabled Internet worm.
- Google Chrome pops-up "Shop with confidence." What...
- The discovered and irresponsibly disclosed HTTP/2 Bomb.
- What Anthropic learns from their past year of Claude abuse: It's bad
Show Notes - https://www.grc.com/sn/SN-1082-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit
Sponsors:
