Sophos

Naked Security

We take an expert look at the latest cybersecurity incidents, how they happened, and why. Tune in weekly to learn what you can do to stop bad things from happening to you! Got questions/suggestions/stories to share? Email: tips@sophos.comTwitter: @NakedSecurityInstagram: @NakedSecurity

Author

Sophos

Category

Technology

Podcast website

podcasters.spotify.com

Latest episode

Aug 24, 2023

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

Chet Chat 138 - Mar 13, 2014 13.03.2014

Chet and Duck turn the week's news into useful lessons once again. There's Patch Tuesday, the impending end of XP, Advanced Persistent Threatitis, and some astonishing statistics about just how many people have been hit by the CryptoLocker ransomware. Join the dynamic duo for another entertaining quarter-hour on computer security.

Chet Chat 137 - Mar 5, 2014 05.03.2014

What about support for OS X Lion and Mountain Lion? Are they, or aren't they? Why can't Apple just say? Could the addition of a rootkit to the Gameover malware be a blessing in disguise? If you want to hack your way to better results at University, is jumping from an F to an A a wise maneouvre? And will proposed federal data breach laws in the US make things better or worse? Chester and Duck once...

Chet Chat 136.5 - Feb 27, 2014 28.02.2014

Paul Ducklin hooks up "live at RSA" with Naked Security writers Chester Wisniewski and John Shier for a Conference Special podcast. This half-length Chet Chat packs in one-quarter humour, five-eighths news and two-thirds insight - find out what was good, weird, interesting, or all of the above, at this year's RSA 2014 event!

Chet Chat 136 - Feb 25, 2014 27.02.2014

Chester ducks out of booth duties at the RSA 2014 conference in San Francisco to bring you this week's Chet Chat. From Apple's SSL bug to Adobe's second-in-a-month emergency Flash update, Chet and Duck once again help you to learn from others' mistakes.

Chet Chat 135 - Feb 19, 2014 19.02.2014

Chet and Duck again turn the week's security news into advice you can use and share with your friends. What happened to Flappy Bird? Why was Talking Angela so talked about? Is internet access at the Winter Olympics in Sochi really a "special danger" situation? What can we learn from the database breaches at Kickstarter and Forbes?

Chet Chat 134 - Feb 11, 2014 12.02.2014

Chet and Duck cast their expert eyes over the week's security news. The pair bring some infectious enthusiam to Sophos's recently-announced acquisition of Cyberoam; they look at Patch Tuesday plus Adobe's out-of-band update to Flash; urge aginst the trend for big brands to bundle "foistware downloads" of complete new applications into what are supposed to be security updates; and plenty more besid...

Chet Chat 133 - Feb 4, 2014 04.02.2014

Chet and Duck review the week's news in their informed and entertainingly serious style, discussing the prizes on offer at this year's PWN2OWN competition, talking about a new twist in Android malware, and reviewing the latest attack reports from Yahoo and Target. Oh, and Sophos Naked Security is up for "Blog that Best Represents the Security Industry" in the forthcoming Security Bloggers Awards 2...

Chet Chat 132 - Jan 28, 2014 28.01.2014

This week's Chet Chat starts out with credit card breaches, as yet more big PII leaks hit the news; then covers the issue of whether you really need good passwords everywhere; before going into an upbeat and encouraging conclusion - we like to finish on a positive note! - discussing Data Privacy Day. You did know it was Data Privacy Day, didn't you? (You do now.)

Chet Chat 131 - Jan 22, 2014 22.01.2014

Chet and Duck turn a week's worth of lost data, malware attacks, misleading apologies and shabby security into actions you can take to steer a safer course inside your own organisation. From digitally signed Mac malware, through plaintext password storage, all the way to the South Korean credit agency that lost personal information on close to half of the country's population, here's our weekly "p...

Wikileaks - the lessons behind the drama 21.01.2014

In early 2014, a contractor at credit-scoring company Korea Credit Bureau was arrested for loading up a USB key with personally identifiable information for some 20,000,000 people, about 40% of South Korea's population. Shades of the Bradley/Chelsea Manning "Wikileaks" saga of three years earlier, in which decades of confidential US State Department cables were siphoned off. Here's a sadly-still-r...

Chet Chat 130 - Jan 14, 2014 14.01.2014

Chester Wisniweski and Paul Ducklin dig into the lessons we can learn from the security issues of the past week. What's the best way to deal with bots and botnets? If you use your financial institution's official mobile banking app, are you more or less secure that just using your browser? What's going on with data security in the US retail sector? What are the must-have and must-do patches from t...

Sophos Techknow - Botnets and zombie malware explained 09.01.2014

Botnets, short for "robot networks", are more than just malware: they're the money making machinery of modern cybercriminals. Paul Ducklin and James Wyke help you to understand the What, How and Why of this troublesome topic. The result is an entertaining and educational podcast that's suitable for everyone from sysadmins to home surfers.

Chet Chat 129 - Jan 7, 2014 07.01.2014

Chet and Duck look at the security stories that made the headlines over New Year 2013/2014 - from the OpenSSL "hypervisor hack" that wasn't, to the Skype Twitter breach that shouldn't have happened - and explain how we can learn from these mistakes to have a safer and more secure 2014.

Chet Chat 128 - Dec 31, 2013 01.01.2014

From Cryptolocker, through PRISM, Target and Adobe, to tainted randomness: Chet and Duck review the security lessons of 2013, and advise how to make 2014 safer and more secure!

Chet Chat 127 - Dec 24, 2013 24.12.2013

Chet and Duck analyse the latest security news to help you keep ahead of the bad guys. Find out about the recent and massive Target breach; get to grips with Microsoft's and Apple's latest updates; and learn how to respond to Google's recent changes to image rendering for Gmail users.

Sophos Security Threat Report 2014 10.12.2013

Sophos Security Threat Report 2014 by Sophos

Chet Chat 126 - Dec 2, 2013 02.12.2013

Chet and Duck tell you what you need to know about the latest security stories. Turn bad news into good with "what you can do better" advice on the back of an XP zero-day, a spate of Bitcoin "bank robberies," the outcome of a European user security survey, and yet another cryptographic blunder, this time from Drupal.

Chet Chat 125 - Nov 26, 2013 26.11.2013

Chet and Duck dig into the good and bad of the week's computer security news, from the amusing "Happy Hour Virus", through Twitter's implementation of "forward secrecy" to discourage government-type surveillance, to LG's data-grabbing TVs and the company's unamusingly casual attitude to what amounts to business-type surveillance.

Avoiding fake support calls 22.11.2013

Avoiding fake support calls by Sophos

Chet Chat 124 - Nov 20, 2013 21.11.2013

Chester and John Shier take time out of the IANS Information Security Forum in Atlanta, Georgia, to talk about the key issues of the past week. There's the US police department that paid the CryptoLocker ransom; the company Loyaltybuild that took two weeks to tell its loyal customers that it hadn't even bothered to encrypt their PII that was stolen; and, to finish with some good news, high praise...

Sophos Techknow - The End of XP 14.11.2013

Paul Ducklin and Chester Wisniewski investigate the what, the why and the how of dealing with the impending end of support for Windows XP in 2014. Don't worry: even if you have computers that you simply won't be able to update in time, for example because they run bespoke industrial control software, or a legacy financial application, Duck and Chet have some healthy suggestions for you. They also...

Chet Chat 123 - Nov 13, 2013 13.11.2013

Chet and Duck deal with: November's Patch Tuesday, whether or not hacking attacks are getting worse, whether Anonymous defacements count as "hacking", an esoteric bug in OpenSSH, and the lessons to learn from Adobe's megabreach.

Chet Chat 122 - Nov 7, 2013 07.11.2013

Chet and Duck discuss the latest Microsoft zero-day, the latest code verification flaw in Android (the third bug of the same sort in the same part of the code!), and whether version numbers are becoming an irrelevancy as products "just update" anyway.

Chet Chat 121 - Oct 28, 2013 28.10.2013

Chet and Duck discuss WordPress autoupdating; OS X's giant new wave, Mavericks; iCloud and 2FA; smartphone tracking by retailers; and security in pacemakers and other medical devices.

Chet Chat 120 - Oct 22, 2013 27.10.2013

Chet and Duck discuss Oracle's monster Java patch, Joel's backdoor in D-Link routers, Cryptolocker and WhatsApp's demonstration of why you shouldn't roll your own crypto.

Listen to the Naked Security podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.