Paul Ducklin shares a LinkedIn post he found with the audience of the "Smashing Security" podcast, discussing the recent news about AI models breaking out of their supposedly-secure environments... Hear more in episode 478 of the "Smashing Security" podcast! pod.link/1195001633/e...
Smashing Security podcast
@smashingsecurity.com
Funny award-winning weekly podcast about hacking, cybercrime, and privacy with @grahamcluley.com. https://www.smashingsecurity.com đź‘• Merch https://www.smashingsecurity.com/store Patreon: https://www.smashingsecurity.com/plus
Great to have @jamesrball.com join me on the latest episode of the "Smashing Security" podcast where he explains how Suno was hacked, revealing awkward details of how it taught its AI to generate music. Plus the hacker suspected of links to the Kremlin, and his love of McDonald's McNuggets...
How 14 orders of chicken McNuggets helped nail a suspected Russian hacker
Listen to How 14 orders of chicken McNuggets helped nail a suspected Russian hacker from Smashing Security wherever you get your podcasts!
pod.link
Geoff White was approached by a scammer offereing to promote his books, but they didn't know who they were dealing with... Hear the whole story on episode 476 of the "Smashing Security" podcast with me and special guest @geoffwhite247.bsky.social of Lazarus Heist fame. #cybersecurity #podcast
Thanks (I think) to @rosesec.bsky.social for joining me on episode 475 of the "Smashing Security" podcast, where she appears to want AI to help cybercriminals cover their tracks... Sheesh! Listen to the full pod in your favourite podcast app or at www.smashingsecurity.com/475
Apple's "Hide My Email" feature turns out to hide rather less than it promises - despite Apple knowing it has a problem for over a year Thanks to @rosesec.bsky.social for joining me on episode 475 of the "Smashing Security" podcast! Find it in all the usual places, or www.smashingsecurity.com/475
Polymarket has built an entire business on predicting the future. So how did it fail to predict its own hack? Meanwhile, "FortiBleed" sees 75,000 Fortinet firewalls thrown wide open - and the real damage is going to roll on for years. It’s Smashing Security ep 474!!
474: Polymarket can predict the future. So how did it miss this hack?
Polymarket has built an entire business on predicting the future. So how did it manage to spectacularly fail to predict its own hack? Plus, the Google engineer with a million-dollar secret, and the cu...
smashingsecurity.com
Thank you @grahamcluley.com for having me back on @smashingsecurity.com! Come for the discussion of Rick rolling the World Cup, stay for hearing me babble on about Fallout London. (Available wherever you get your podcasts) open.spotify.com/episode/0qRY...
473: How a hacker could have Rickrolled the entire World Cup
Smashing Security PLUS · Episode
open.spotify.com
Thanks to @dannypalmer.bsky.social for joining me on the latest "Smashing Security" podcast: * A security researcher who found she could access the live broadcast controls for every match of the 2026 FIFA World Cup * Dutch police's genius response to a wave of fraudsters targeting elderly victims
473: How a hacker could have Rickrolled the entire World Cup
A polite caller from your bank says there is a problem with your account. Don't worry - they'll send someone round to help. They'll even take your cards away to keep them safe. The scam has run rampan...
smashingsecurity.com
Someone calling themselves Nightmare Eclipse has dropped three zero-days on the internet - one of which lets a thief with a USB stick walk straight past BitLocker. Microsoft is (perhaps understandably) fuming. Join me and special guest Paul Ducklin as we discuss in the latest Smashing Security pod
Smashing Security podcast #472: AI gets hacked, and BitLocker gets bypassed
What if your AI coding assistant could be tricked into stealing your own company’s secrets – by reading a single booby-trapped bug report? No phishing email. No malware. No password ever stolen.
grahamcluley.com
Researchers at the University of Toronto have built a worm that thinks for itself. It works out how to break into each new computer it encounters, and hijacks the powerful ones to host its own AI brain... But then it got worse... grahamcluley.com/smashing-sec... 1/3
Smashing Security podcast #471: This AI worm just rewrote its own rules
Researchers at the University of Toronto have built a worm that thinks for itself. Using free off-the-shelf AI models it works out how to break into each new computer it encounters…
grahamcluley.com
Thanks to @shehackspurple.bsky.social for joining the podcast this week. Amongst other topics, we discussed a paper from Cornell that suggests prompt injection - the technique malicious actors use to trick AI agents into doing things they really shouldn't - may be fundamentally unsolvable. 1/3
The Green Girl with her beloved @smashingsecurity.com shirt is ready for another day of @ciscolive.bsky.social. #CiscoLive
A 14-year-old turned the tram system in the Polish city of Lodz into his own personal train set in 2008, triggering chaos and derailing four vehicles, using a modified a TV remote control. Join me, and special guest Geoff White, on episode 468 of "Smashing Security" in all good podcast apps.
Could hacked robot lawn mowers be used to kill? A journalist at @theverge.com put it to the test... with uncomfortable results. Hear more in episode 468 of the "Smashing Security" podcast with Graham Cluley and special guest @geoffwhite247.bsky.social www.smashingsecurity.com/468
Fab to have @dannypalmer.bsky.social back on the podcast. This week: 30 million students log into Canvas mid-finals and find a winky-faced ransom note waiting for them. Canvas initially refused to pay, so the hackers came back through the cat flap - defacing login pages. 1/3
On the latest "Smashing Security" podcast I was joined by Paul Ducklin and @jakemooreuk.bsky.social as we discussed: * The latest Meta Smart Glasses horror 🕶️ * Whether the Copy vulnerability Fail really is TEOTWAWKI * How Jake managed to trick a company into hiring his deepfake(!) #podcast
466: Meta sees everything, Copy Fail, and a deepfake gets hired
Meta's smart glasses promise privacy "designed for you" - but everything they record was being beamed off to workers in Nairobi to label by hand. When those workers blew the whistle, Meta sacked all 1...
smashingsecurity.com
I was delighted to chat with @grahamcluley.com on his latest @smashingsecurity.com episode where we discussed deepfake interviews grahamcluley.com/smashing-sec...
Smashing Security podcast #466: Meta sees everything, Copy Fail, and a deepfake gets hired
Meta’s smart glasses promise privacy “designed for you” – but everything they record was being beamed off to workers in Nairobi to label by hand. When those workers blew the whistle, Meta sacked all 1...
grahamcluley.com
Always great to have @jamesrball.com as a guest on the "Smashing Security" podcast! This week: we look at SS7 - the ancient phone protocol that lets surveillance companies track anyone, anywhere, via their mobile. Governments know. Telecoms know. Nobody's doing anything about it. 1/3
Great to have the BBC's @joetidy.bsky.social join me on this week's "Smashing Security" podcast! * How a firm that ran anonymous tip lines for 35,000 American schools, boasted it had never been breached in over 20 years, only for a hacker called Internet Yiff Machine to put them to the test...
A huge thank you to The Cyberwire's Dave Bittner for joining me on this week's Smashing Security podcast! This week we reveal what LinkedIn really knows about you (it's rather more than you might expect - and rather more than they're letting on). 1/2
Well chuffed that @grahamcluley.com invited me back as guest on Smashing Security again. We talked about beekeeping, fishing and also, Dutch football. You know, standard cybersecurity stuff...
A huge thank you to @dannypalmer.bsky.social for joining me on this week's Smashing Security podcast! We unravel the tale of an Irish beekeeper and cannabis farmer whose $400 million fortune is locked inside a missing fishing rod. Or is it? Because one of his cryptowallets just woke up...
If you think maximum Apple security settings make you untouchable, think again. This week we dig into a genuinely unsettling account takeover attempt against WordPress co-founder Matt Mullenweg - MFA fatigue, real Apple alerts, a convincing impersonation call, and a phishing page.
A cybersecurity firm discovered it had a leak - so naturally they put the leaker himself in charge of the investigation, and an innocent worker was framed. Plus: could nation states be quietly poisoning AI models to influence what we believe? Listen now: pod.link/1195001633/e...
I love “ransomware groups are buffoons” stories! And this weeks @smashingsecurity.com has a good one! I
How to lose friends and DDoS people
Podcast Episode · Smashing Security · February 26 · 44m
podcasts.apple.com
When an internet archiving service turns its own CAPTCHA page into a weapon... In the latest "Smashing Security", we dig into claims that a well-known archive site tried to silence a Finnish blogger - with an alleged DDoS, threats of AI-generated smears, and archive tampering... 1/2
Terrific to have @jamesrball.com join the "Smashing Security" podcast as we explore the threat of America cutting Europe off from the internet, and Meta's creepy and cynical plans to introduce facial recognition to its smart glasses. Listen now: pod.link/1195001633/e...
In the latest "Smashing Security" podcast, special guest @iainthomson.bsky.social and I dig into MoltBook - the AI social platform that briefly convinced the internet the bots were forming a religion. open.spotify.com/episode/6gOc... 1/2
AI was not plotting humanity’s demise. Humans were
open.spotify.com
Fab to have Tricia Howard join me on the latest "Smashing Security" podcast, where we discussed how supposedly-redacted Epstein files can still reveal exactly who they’re talking about - especially when AI, LinkedIn, and a few biographical breadcrumbs do the heavy lifting.
The BBC's Joe Tidy joins me on the latest "Smashing Security" podcast where we discuss why a UK-based YouTuber had his smartphone infected with the Pegasus spyware, and just how hard it is to find a reliable assassin on the dark web. open.spotify.com/episode/7fOZ...