Smashing Security Podcast Por Graham Cluley capa

Smashing Security

Smashing Security

De: Graham Cluley
Ouça grátis

Sobre este áudio

Smashing Security isn’t your typical tech podcast. Hosted by cybersecurity veteran Graham Cluley, it serves up weekly tales of cybercrime, hacking horror stories, privacy blunders, and tech mishaps - all with sharp insight, a sense of humour, and zero tolerance for tech waffle.


Winner of the best and most entertaining cybersecurity podcast awards in 2018, 2019, 2022, 2023, and 2024, Smashing Security has had over ten million downloads. Past guests include Garry Kasparov, Mikko Hyppönen, and Jack Rhysider. Follow the podcast on Bluesky at @smashinsecurity.com, and subscribe for free in your favourite podcast app.


New episodes released at 7pm EST every Wednesday (midnight UK).

Graham Cluley
Política e Governo
Episódios
  • How hackers turned AI into their new henchman
    Sep 3 2025

    Your AI reads the small print, and that's a problem. This week in episode 433 of "Smashing Security" we dig into LegalPwn - malicious instructions tucked into code comments and disclaimers that sweet-talks AI into rubber-stamping dangerous payloads (or even pretending they’re a harmless calculator).

    Meanwhile, new research from Anthropic reveals that hackers have already used AI agents to break into networks, steal passwords, sift through stolen data, and even write custom ransom notes. In other words, one hacker with an AI helper can work like an entire team of cybercriminals.

    Plus: a joyous geek detour into keyboard history, and the most diabolically annoying, fully functional AI-generated CAPTCHA that you will love to inflict on your friends.


    EPISODE LINKS:


    • LegalPwn: Abusing Legal Disclaimers to Trigger Prompt Injections - Pangea Labs.
    • LegalPwn: Tricking LLMs by burying badness in lawyerly fine print - The Register.
    • LegalPwn Attack Tricks GenAI Tools Into Misclassifying Malware as Safe Code - HackRead.
    • One long sentence is all it takes to make LLMs misbehave - The Register.
    • Londoners give up eldest children in public Wi-Fi security horror show - The Guardian.
    • Targeted social engineering is en vogue as ransom payment sizes increase - Coveware.
    • State of Malware 2025 - ThreatDown.
    • Cybercrime in the Age of AI - ThreatDown.
    • Threat Intelligence Report: August 2025 - Anthropic.
    • The Day Return Became Enter - Marcin Wichary.
    • Ethan Mollick’s terrible AI-generated CAPTCHAs - Twitter.
    • The very worst AI-generated CAPTCHA? - Claude.ai.
    • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)


    SPONSORED BY:

    • Vanta – Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!


    SUPPORT THE SHOW:

    Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.

    Become a supporter via Patreon or Apple Podcasts for ad-free episodes on our early-release feed!


    FOLLOW THE SHOW:

    Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes.


    THANKS:

    Theme tune: "Vinyl Memories" by Mikael Manvelyan.

    Assorted sound effects: AudioBlocks.


    ENJOYED THE SHOW?

    Make sure to check out our sister podcast, "The AI Fix".

    Exibir mais Exibir menos
    45 minutos
  • Oops! I auto-filled my password into a cookie banner
    Aug 27 2025

    We unpack how some password managers can be tricked into coughing up your secrets, with a clickjacking sleight-of-hand, what website owners can do to prevent it, and how to lock down your personal password vault.

    Then we time-hop to the post-quantum scramble: "harvest-now, decrypt later", Microsoft's 2033 quantum-safe pledge, and whether your printer will survive the update apocalypse.

    All this, plus a gloriously dodgy URL “shadyfier,” and turning the iconic iMac G4 into a modern media hub.

    All this and more is discussed in the latest edition of the "Smashing Security" podcast by cybersecurity veteran Graham Cluley, joined this week by special guest Thom Langford.

    EPISODE LINKS:

    • DOM-based Extension Clickjacking: Your Password Manager Data at Risk - Marek Tóth.
    • Major password managers can leak logins in clickjacking attacks - Bleeping Computer.
    • Microsoft to Make All Products Quantum Safe by 2033 - Infosecurity Magazine.
    • Shady URL.
    • DockLite G4 - Juicy Crumb.
    • I perfected the iMac G4 - YouTube.
    • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)


    SUPPORT THE SHOW:

    Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.

    Become a supporter via Patreon or Apple Podcasts for ad-free episodes on our early-release feed!


    FOLLOW THE SHOW:

    Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes.


    THANKS:

    Theme tune: "Vinyl Memories" by Mikael Manvelyan.

    Assorted sound effects: AudioBlocks.


    ENJOYED THE SHOW?

    Make sure to check out our sister podcast, "The AI Fix".



    Privacy & Opt-Out: https://redcircle.com/privacy
    Exibir mais Exibir menos
    35 minutos
  • How to mine millions without paying the bill
    Aug 20 2025

    In episode 431 of the "Smashing Security" podcast, a self-proclaimed crypto-influencer calling himself CP3O thought he had found a shortcut to riches — by racking up millions in unpaid cloud bills.


    Meanwhile, we look at the growing threat of EDR-killer tools that can quietly switch off your endpoint protection before an attack even begins.


    And for something a little different, we peek into the Internet Archive’s dystopian Wayforward Machine and take a detour to Mary Shelley’s resting place in Bournemouth.


    All this and more is discussed in the latest edition of the "Smashing Security" podcast by cybersecurity veterans Graham Cluley, joined this week by special guest Allan "Ransomware Sommelier" Liska.


    Episode links:


    • Crypto Influencer Sentenced to Prison for Multi-Million Dollar “Cryptojacking” Scheme - US Department of Justice.
    • Ransomware crews don't care about your endpoint security – they've already killed it - The Register.
    • Way Forward Machine - The Internet Archive.
    • Mary Shelley’s grave - Atlas Obscura.
    • Smashing Security merchandise (t-shirts, mugs, stickers and stuff)



    Sponsored by:


    • Proton Drive - Protect your files with end-to-end encryption in Switzerland’s secure cloud — only on Proton Drive.



    SUPPORT THE SHOW:

    Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.


    Become a supporter via Patreon or Apple Podcasts for ad-free episodes on our early-release feed!


    FOLLOW US:

    Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes.


    THANKS:

    Theme tune: "Vinyl Memories" by Mikael Manvelyan.

    Assorted sound effects: AudioBlocks.


    ENJOYED THE SHOW?

    Make sure to check out our sister podcast, "The AI Fix".



    Privacy & Opt-Out: https://redcircle.com/privacy
    Exibir mais Exibir menos
    34 minutos
Ainda não há avaliações