Tom Eston, Scott Wright, Kevin Tackett
Shared Security Podcast
Shared Security is the the longest-running cybersecurity and privacy podcast where industry veterans Tom Eston, Scott Wright, and Kevin Tackett break down the week’s security WTF moments, privacy fails, human mistakes, and “why is this still a problem?” stories — with humor, honesty, and hard-earned real-world experience. Whether you’re a security pro, a privacy advocate, or just here to hear Kevin yell about vendor nonsense, this podcast delivers insights you’ll actually use — and laughs you probably need. Real security talk from people who’ve lived it.
Author
Tom Eston, Scott Wright, Kevin Tackett
Category
Podcast website
Latest episode
Jul 6, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Truths and Myths of Privacy, Fake Shopping Apps, Borat RAT Malware 11.04.2022 25:17
Scott and Tom explain why privacy is not dead, why everyone should care about their privacy, and how you should respond to someone that says "I don't care about privacy, I have nothing to hide!". Plus, details on a new attack using fake shopping apps and how a new malware toolkit called "Borat RAT" is no laughing matter.
Google Android vs Apple iOS: Which is Better for Privacy and Cybersecurity? 04.04.2022 40:25
This week we battle it out between the two mobile tech giants, Google Android vs Apple iOS, and discuss which one is better for your privacy and cybersecurity. Topics include: app stores and OS updates, ad tracking, and native text messaging. All this plus how Apple and Facebook fell for a massive email scam.
LAPSUS$ Hacks Okta, Browser-in-the Browser Phishing Attack, Popular Software Package Updated to Wipe Russian Systems 28.03.2022 28:24
The LAPSUS$ hacking group has claimed to have hacked both Microsoft and Okta, details about a novel phishing technique called a browser-in-the-browser (BitB) attack, and how a popular software package that has 1.1 million weekly downloads released a new tampered version to condemn Russia's invasion of Ukraine by wiping arbitrary file contents.
Top 3 Location Tracking Apps: Do They Sell Your Data? 21.03.2022 30:23
This week we discuss the top 3 location tracking apps in the Apple App Store and Google Play and which ones sell your data. Plus, details about recent fake Chick-fil-A and Olive Garden vouchers on Facebook.
Amazon Echos Hack Themselves, Fraud Is Flourishing on Zelle, Samsung Galaxy Source Code Stolen 14.03.2022 27:57
A new attack uses Alexa's functionality to force Amazon Echo devices to make self-issued commands, payment app Zelle has become popular with fraudsters and banks don't seem to care, and details about hackers who have stolen source code for Samsung Galaxy devices.
Russia Gets Hacked, Microsoft 365 Credential Stuffing, McDonald’s Ice Cream Machine Hackers 07.03.2022 21:07
This week we discuss some of the more interesting hacks of Russian assets, technology, and more. Scott discusses recent credential stuffing attacks on Microsoft 365 accounts, and a fascinating story about ice cream machine "hackers" that are suing McDonald's for $900 million dollars in damages.
TikTok Circumvents Privacy Protections, Russian Sanction Attacks, Apple AirTag Anti-Stalking Measures 28.02.2022 26:00
How TikTok can circumvent privacy protections and performs device tracking that gives TikTok full access to user data, the US government warns about ransomware attacks after Biden's new sanctions against Russia, and details about the latest beta for iOS 15.4 which includes new features designed to prevent Apple AirTags from being used to stalk people.
MoviePass Tracking Your Eyeballs, Shipment Delivery Scams, SIM Swappers Arrested 21.02.2022 27:14
MoviePass will use facial recognition and eye tracking to make sure you're watching ads, new types of shipment-delivery scams are being used to spread malware, and details on the arrests of a SIM swapping gang and how you can protect yourself against a SIM swapping attack.
EARN IT Act is Back, Romance Scams, Like and Subscribe Ransomware 14.02.2022 25:09
The EARN IT Act is back for a second time which would pave the way for a new massive government surveillance system in the US, romance scams are on the rise so don't fall for love in all the wrong places, and details about a new ransomware attack that wants you to like and subscribe, or else!
Graphics Card Web Tracking, Fake Job Ad Scams, Hacker Takes Down North Korea’s Internet 07.02.2022 28:52
Researchers have discovered a new web tracking technique using your graphics card, scammers are exploiting security weaknesses on job recruitment websites to post fraudulent job postings, and how a hacker single-handedly took down North Korea's Internet.
Ukraine Invasion Hacktivists, Insta360 ONE X2 Vulnerabilities, Google Location Tracking Lawsuits 31.01.2022 37:22
Hacktivists have hacked a Belarus rail system in an attempt to stop Russian military buildup, someone disclosed a slew of vulnerabilities in the popular Insta360 ONE X2 camera, and Google gets accused of "deceptive" location tracking in multiple lawsuits.
Pandemic Surveillance in Canada, Malware-Filled USB Sticks are Back, Kill Switches in New Cars 24.01.2022 23:08
Canada’s federal government admitted to surveilling its population’s movements during the COVID-19 lock-down by tracking 33 million phones, the FBI warned that a hacker group has been sending malware-laden USB sticks to companies, and details on a new law in the United States which will install kill switches in new cars.
Digital Wellbeing with Kelly Finnerty from Startpage 19.01.2022 30:21
Kelly Finnerty, Director of Brand at Startpage, joins co-host Tom Eston to discuss the very important topic of digital wellbeing. In this episode you'll learn about the mental, financial, and societal impacts of constant tracking. Plus, what are some holistic approaches and tactics that we can use to help our own digital wellbeing. Kelly also shares details about Startpage's new web browser extens...
Norton 360 Cryptominer, Fake QR Codes on Parking Meters, Facebook Account Deactivation 17.01.2022 36:37
Norton 360, a popular antivirus product, has installed a cryptocurrency mining program on its customers’ computers, some cities in Texas have been hit with a phishing scam designed to get users to pay through fraudulent QR code stickers on public parking meters, and how Facebook is still collecting data about you even if you deactivate your Facebook account. All this plus the launch of the Shared...
Phone Scam Targets Psychologists, All My Apes Gone, Supply Chain Skimmer Attack 10.01.2022 33:19
A phone scam targeting psychologists reveals that even professionals can become victims, stolen multi-million-dollar NFT's results in a "all my apes gone" plea for help, and details on a skimmer supply chain attack on more than 100 real estate websites.
LastPass Master Passwords, New Cars and Your Privacy, Amazon Alexa Lethal Challenge 03.01.2022 31:08
LastPass users received emails about their master passwords being compromised, details about the privacy policies of new cars, and a story about an Amazon Echo that proposed a lethal challenge to a ten-year-old girl.
Web3 and the Decentralized Internet 31.12.2021 32:22
In our last monthly show of the year we discuss Web3. What is it and what will it mean to have a decentralized Internet. If you've wanted to know what Web3, DeFI, NFTs, and cryptocurrency means for cybersecurity and privacy this is one episode you don't want to miss!
The Year in Review and 2022 Predictions 27.12.2021 34:32
In our last weekly episode of the year, we discuss the top cybersecurity and privacy news from 2021, a recap of our previous "predictions", and what we think we'll see next year. Happy New Year!
Log4j Vulnerability, Apple AirTags Used by Thieves, FBI’s Encrypted Messaging App Document 20.12.2021 32:49
This week we discuss the Apache Log4j vulnerability and the impact it will have on organizations now and into the future, details on how Apple AirTags are being used by thieves to steal cars, and a FBI training document describes what data can be obtained by encrypted messaging apps.
Life360 Selling Location Data, NSO Group Spyware Hacks Government Employees, Homecoming Queen Contest Hacked 13.12.2021 29:37
Life360, a popular family safety app used by 33 million people worldwide, is selling location data to a dozen data brokers, phones of 11 U.S. State Department employees were hacked with spyware from the infamous NSO Group, and details on a bizarre story about a mother and daughter that face 16 years in prison for hacking into a school computer system to rig a homecoming queen election.
Business Email Compromise Scams 09.12.2021 25:02
This month we discuss Business Email Compromise (BEC) scams. What are they, how to identify them, and why BEC scams have created over $1.8 billion worth of losses to businesses last year alone.
Is TikTok Listening to You, Apple Warns Activists, UK Government Website Shows Porn 06.12.2021 23:42
Is the TikTok app listening to you and playing videos based on your conversations? Apple takes the unique step of warning certain activists that their phones may be targeted by attackers, and details on how a UK government website was serving porn to its visitors.
How to Break Into a Cybersecurity Career – Part 3 with Scott Wright 29.11.2021 29:06
Co-host Scott Wright joins Tom Eston for part three in our series on how to break into a cybersecurity career. Scott shares his career journey and gives us some insight into his career path going from consulting into starting his own company. If you’re a college student or thinking about getting into cybersecurity, this is one episode you don’t want to miss!
FBI Email System Compromised, Ransomware Negotiation, Privacy Crushing Gifts 22.11.2021 25:15
In milestone episode 200: The Federal Bureau of Investigation’s external email system was compromised sending spam emails with a fake warning of a cyberattack, new research released about ransomware negotiation and some helpful negotiation tips, and details on Mozilla's naughty list of privacy-crushing gifts.
Robinhood Data Breach, 600 Hours of Dallas Police Helicopter Footage Leaked 15.11.2021 21:18
Details on the Robinhood data breach (apparently caused by a social engineering attack) affecting approximately 7 million customers, and a discussion about surveillance and privacy concerns from a 600-hour leak of Dallas Police Department helicopter footage.
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.