Smashing Security podcast

@smashingsecurity.com

Funny award-winning weekly podcast about hacking, cybercrime, and privacy with @grahamcluley.com. https://www.smashingsecurity.com đź‘• Merch https://www.smashingsecurity.com/store Patreon: https://www.smashingsecurity.com/plus

Great to have @jamesrball.com join me on the latest episode of the "Smashing Security" podcast where he explains how Suno was hacked, revealing awkward details of how it taught its AI to generate music. Plus the hacker suspected of links to the Kremlin, and his love of McDonald's McNuggets...

How 14 orders of chicken McNuggets helped nail a suspected Russian hacker

Listen to How 14 orders of chicken McNuggets helped nail a suspected Russian hacker from Smashing Security wherever you get your podcasts!

pod.link

Polymarket has built an entire business on predicting the future. So how did it fail to predict its own hack? Meanwhile, "FortiBleed" sees 75,000 Fortinet firewalls thrown wide open - and the real damage is going to roll on for years. It’s Smashing Security ep 474!!

474: Polymarket can predict the future. So how did it miss this hack?

Polymarket has built an entire business on predicting the future. So how did it manage to spectacularly fail to predict its own hack? Plus, the Google engineer with a million-dollar secret, and the cu...

smashingsecurity.com

Thanks to @dannypalmer.bsky.social for joining me on the latest "Smashing Security" podcast: * A security researcher who found she could access the live broadcast controls for every match of the 2026 FIFA World Cup * Dutch police's genius response to a wave of fraudsters targeting elderly victims

473: How a hacker could have Rickrolled the entire World Cup

A polite caller from your bank says there is a problem with your account. Don't worry - they'll send someone round to help. They'll even take your cards away to keep them safe. The scam has run rampan...

smashingsecurity.com

Someone calling themselves Nightmare Eclipse has dropped three zero-days on the internet - one of which lets a thief with a USB stick walk straight past BitLocker. Microsoft is (perhaps understandably) fuming. Join me and special guest Paul Ducklin as we discuss in the latest Smashing Security pod

Smashing Security podcast #472: AI gets hacked, and BitLocker gets bypassed

What if your AI coding assistant could be tricked into stealing your own company’s secrets – by reading a single booby-trapped bug report? No phishing email. No malware. No password ever stolen.

grahamcluley.com

Researchers at the University of Toronto have built a worm that thinks for itself. It works out how to break into each new computer it encounters, and hijacks the powerful ones to host its own AI brain... But then it got worse... grahamcluley.com/smashing-sec... 1/3

Smashing Security podcast #471: This AI worm just rewrote its own rules

Researchers at the University of Toronto have built a worm that thinks for itself. Using free off-the-shelf AI models it works out how to break into each new computer it encounters…

grahamcluley.com

A 14-year-old turned the tram system in the Polish city of Lodz into his own personal train set in 2008, triggering chaos and derailing four vehicles, using a modified a TV remote control. Join me, and special guest Geoff White, on episode 468 of "Smashing Security" in all good podcast apps.

On the latest "Smashing Security" podcast I was joined by Paul Ducklin and @jakemooreuk.bsky.social as we discussed: * The latest Meta Smart Glasses horror 🕶️ * Whether the Copy vulnerability Fail really is TEOTWAWKI * How Jake managed to trick a company into hiring his deepfake(!) #podcast

466: Meta sees everything, Copy Fail, and a deepfake gets hired

Meta's smart glasses promise privacy "designed for you" - but everything they record was being beamed off to workers in Nairobi to label by hand. When those workers blew the whistle, Meta sacked all 1...

smashingsecurity.com

Always great to have @jamesrball.com as a guest on the "Smashing Security" podcast! This week: we look at SS7 - the ancient phone protocol that lets surveillance companies track anyone, anywhere, via their mobile. Governments know. Telecoms know. Nobody's doing anything about it. 1/3

Great to have the BBC's @joetidy.bsky.social join me on this week's "Smashing Security" podcast! * How a firm that ran anonymous tip lines for 35,000 American schools, boasted it had never been breached in over 20 years, only for a hacker called Internet Yiff Machine to put them to the test...

A huge thank you to The Cyberwire's Dave Bittner for joining me on this week's Smashing Security podcast! This week we reveal what LinkedIn really knows about you (it's rather more than you might expect - and rather more than they're letting on). 1/2

Smashing Security episode 462: LinkedIn is spying on you, and you agreed to nothing

Well chuffed that @grahamcluley.com invited me back as guest on Smashing Security again. We talked about beekeeping, fishing and also, Dutch football. You know, standard cybersecurity stuff...

Graham Cluley@grahamcluley.com · 4mo ago

A huge thank you to @dannypalmer.bsky.social for joining me on this week's Smashing Security podcast! We unravel the tale of an Irish beekeeper and cannabis farmer whose $400 million fortune is locked inside a missing fishing rod. Or is it? Because one of his cryptowallets just woke up...

Smashing Security 461

If you think maximum Apple security settings make you untouchable, think again. This week we dig into a genuinely unsettling account takeover attempt against WordPress co-founder Matt Mullenweg - MFA fatigue, real Apple alerts, a convincing impersonation call, and a phishing page.

Smashing Security 459

When an internet archiving service turns its own CAPTCHA page into a weapon... In the latest "Smashing Security", we dig into claims that a well-known archive site tried to silence a Finnish blogger - with an alleged DDoS, threats of AI-generated smears, and archive tampering... 1/2

Smashing Security episode 456: How to lose friends and DDoS people

Fab to have Tricia Howard join me on the latest "Smashing Security" podcast, where we discussed how supposedly-redacted Epstein files can still reveal exactly who they’re talking about - especially when AI, LinkedIn, and a few biographical breadcrumbs do the heavy lifting.

Smashing Security 453