Sophos

Naked Security

We take an expert look at the latest cybersecurity incidents, how they happened, and why. Tune in weekly to learn what you can do to stop bad things from happening to you! Got questions/suggestions/stories to share? Email: tips@sophos.comTwitter: @NakedSecurityInstagram: @NakedSecurity

Author

Sophos

Category

Technology

Podcast website

podcasters.spotify.com

Latest episode

Aug 24, 2023

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

S3 Ep78: Darkweb hydra, Ruby, quantum computing, and a robot revolution 14.04.2022

Hydra darkweb market decapitated . Ruby module supply chain hole . Quantum computing sidestepped . A robot revolution that could result in ransomware . And the Zuckerberg scam that just won't die. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep77: Bugs, busts and old-school PDP-11 hacking 06.04.2022

Hacking 2022-style . Some Apple bugs. Some Android bugs. Some Firefox bugs. The SATAN network scanner. Some VMware Spring bugs. And hacking PDP-11 style. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep76: Deadbolt, LAPSUS$, Zlib and a Chrome 0-day 31.03.2022

The DEADBOLT ransomware . LAPSUS$ members bust - or were they? Zlib patches a 17-year-old bug . Chrome experiences another weird 0-day . And Clippy. Yes, THAT Clippy. No, we're not sure why. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep75: Okta, CryptoRom, OpenSSL and CafePress 24.03.2022

LAPSUS$ hackers break into Okta. The CryptoRom money-scamming malware is back on phones. OpenSSL gets into an infinite loop . CafePress fined for covering up a data breach. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep74: Cybercrime busts, Apple patches, Pi Day, and disconnect effects 17.03.2022

Two ransomware suspects extradited for trial . Apple patches 87 known security holes . Happy Pi Day . What happens if a whole country exits the global internet ? Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep73: Ransomware with a difference, dirty Linux pipes, and more 10.03.2022

What do ransomware blackmailers ask for when they don't want money ? Why did Firefox get two updates in three days ? How did Adafruit get hoist by the petard of shadow IT? And what's with those dirty Linux pipes ? REGISTER FOR OUR CYBERINSURANCE EVENT: https://events.sophos.com/cyberinsurance Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @N...

S3 Ep72: AirTag stalking, web server coding woes and Instascams 03.03.2022

How good is Apple's AirTag stalker detection ? Why are web coders still making Y2K-like blunders? And how many Instagram scams can you get in one weekend? Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep71: VMware escapes, PHP holes, WP plugin woes, and scary scams 24.02.2022

VM escapes could put your host servers at risk. PHP fixes an input validation bug in input validation code. A WordPress plugin maker shows you how to write a decent security report . And French scammers remind us that sextortion is sadly still a thing. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep70: Bitcoin, billing blunders, and 0-day after 0-day after 0-day 17.02.2022

Alleged Bitcoin fraudsters busted, power company in trillion-dollar payout blunder, how a blizzard led to a telecomms revolution, and 0-day after 0-day after 0-day . Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep69: Wordpress woes, Wormhole holes, and a Microsoft change of heart 10.02.2022

Problems with plugins . A Wormhole wormhole . Can machines think? Microsoft has a change of heart . And then another one . Why screen cleaning cloths are cool. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep68: Bugs, scams, privacy... and fonts?! 03.02.2022

Stealing root on Linux. Snooping on RAM with a video driver bug. Apple patches a zero-day hole. SMS scams promise home PCR machines. German court freaks out over fonts. How to be private. And a paint robot that went wild. https://nakedsecurity.sophos.com/pwnkit-security-bug-gets-you-root https://nakedsecurity.sophos.com/linux-kernel-patches-performance-can-be-harmful-bug https://nakedsecurity.soph...

S3 Ep67: Tax scams, carder busts and crypto capers 27.01.2022

Watch out for tax scams . Crooks with the motto " In Fraud We Trust ". How not to write a data breach notification. Where to find the "10" key on your telephone. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep66: Cybercrime busts, wormable Windows, and the crisis of featuritis 20.01.2022

Russia busts Revil . Romance scammer sent to prison . Wormable Windows hole patched. Memories of the HAPPY99 virus. Linux disk encryption trouble . Apple browsers leak personal data . And how (not) to paint a computer. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep65: Supply chain conniption, NetUSB hole, Honda flashback, FTC muscle 13.01.2022

A JavaScript coder sabotages his own projects. Routers with critical holes. Honda cars party like it's 2002. The FTC warns everyone to patch. And a Log4Shell-like bug in another Java library. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep64: Log4Shell again, scammers keeping busy, and Apple Home bug 06.01.2022

Log4Shell - the gift that keeps on taking . Scammers threatening your social media accounts . Apple Home has a pecuu[...]uuliar bug . And why 2FA is easier than you think. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep63: Log4Shell (what else?) and Apple kernel bugs 16.12.2021

Understanding Log4Shell. Fixing Log4Shell. What criminals are up to with Log4Shell. Apple's latest security fixes. And what (not to) do when your mouse gets stuck. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep62: The S in IoT stands for security (and much more) 09.12.2021

Mozilla's "BigSig" buffer overflow hole. UK to put IoT vendors on notice. The Mother of All Demos. Cryptocurrency company catastrophe . Firefox gets an extra sandbox . And an access point from outer space (OK, from home). Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep61: Call scammers, cloud insecurity, and facial recognition creepiness 02.12.2021

Call scammers and cryptocoin treachery. Cloud insecurity and yet more cryptocoin treachery . Facial recognition creepiness . And the wannabe wizard that went to school with a trainee Sith. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep60: Exchange exploit, GoDaddy breach and cookies made public 25.11.2021

Cybersecurity tips for the holiday season and beyond . Exchange at risk from public exploit . GoDaddy loses passwords for 1.2m users. Longest-lived Windows version ever. Don't make your cookies public . And the day that umbrellas became an anti-DDoS tool. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep59: Emotet, an FBI hoax, Samba bugs, and a hijackable suitcase 18.11.2021

The infamous Emotet malware makes a comeback. Crooks smirk at the world with a fake FBI warning. Why tubes are also valves. Samba fixes an intriguing bug . The suitcase that needs no handle . And a virtual-versus-real monitor mixup. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep58: Faces on Facebook, scams that pose as complaints, and a Kaseya bust 11.11.2021

We enjoy the Sophos 2022 Threat Report . The world's {oldest, coolest} continously maintained browser. Facebook folds up its Face Recognition feature. Crooks combine a new social engineering scam with a new way of packaging malware. Kaseya ransomware suspect busted in Poland. Oh! No! How to block radio communications in a land with no hills . Original music by Edith Mudge Got questions/suggestions...

S3 Ep57: Europol v. Ransomware, Shrootless bug, and Linux browser flamewars 04.11.2021

Norbert (huzzah for Norbert!) does tech support. Europol digs into the ransomware scene. Microsoft finds a wacky bug in Apple's shell. The Morris worm turns 33. Edge on Linux phans the phlames . Ola! Gibberish peculiarity textual solvage. Original music by Edith Mudge Got questions/suggestions/stories to share? Email tips@sophos.com Twitter @NakedSecurity Instagram @NakedSecurity

S3 Ep56: Cryptotrading rodent, ransomware hackback, and a Docusign phish 28.10.2021

Bliss is a hill in wine country. Lessons from a cryptotrading hamster . Ransomware gang hacked back . Docusign phishers go after 2FA codes . Sleep mode considered harmful. Original music by Edith Mudge Got something to share? Email tips@sophos.com

S3 Ep55.8: Purple teaming - learning to think like your adversaries 25.10.2021

Special minisode! Michelle Farenci knows her stuff, because she's a cybersecurity practitioner inside a cybersecurity company. Learn why thinking like an attacker makes you a better defender. Full transcript: https://nakedsecurity.sophos.com/listen-up-4-cybersecurity-first-purple-teaming

S3 Ep55.6: Cyberinsurance - help or hindrance? 25.10.2021

Special minisode! Dr Jason Nurse, Associate Professor in Cybersecurity at the University of Kent, takes on the controversial topic of cyberinsurance. Full transcript: https://nakedsecurity.sophos.com/becybersmart-2021-cyberinsurance

Listen to the Naked Security podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.