Episodios

  • Citrixbleed 2, Hardware Hacking, and Failed Bans - PSW #882
    Jul 10 2025

    This week in the security news:

    • Citrixbleed 2 and so many failures
    • Ruckus leads the way on how not to handle vulnerabilities
    • When you have no egress
    • Applocker bypass
    • So you bought earbuds from TikTok
    • More gadgets and the crazy radio
    • Cheap drones and android apps
    • Best Mario Kart controller ever
    • VSCode: You're forked
    • Bluetooth earbuds and vulnerabilities
    • Do you remember Sound blaster cards?
    • NFC passport chips
    • Whack-a-disk

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-882

    Más Menos
    2 h y 6 m
  • Exploring Meshtastic and LoRa Mesh Networks - Rob Allen - PSW #881
    Jul 3 2025

    This week, we dive into the world of Meshtastic and LoRa—two technologies empowering secure, long-range, and infrastructure-free communication. We'll talk about the origins of Meshtastic, how LoRa radio works, and why mesh networking is revolutionizing off-grid messaging for adventurers, hackers, emergency responders, and privacy advocates alike. We break down the available hardware, walk you through firmware installation, and share real-world use cases of LoRa to create decentralized, encrypted networks. Whether you’re a hacker, a prepper, or just curious about the future of resilient communication, this episode is packed with insights and practical tips you won’t want to miss!

    This segment is sponsored by ThreatLocker. Visit https://www.securityweekly.com/threatlocker to learn more about them!

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-881

    Más Menos
    1 h y 8 m
  • Is Vuln Management Dead? - HD Moore - PSW #880
    Jun 26 2025

    This conversation explores the intersection of cybersecurity and emerging technologies, focusing on innovative hacking techniques, the evolution of vulnerability management, and the critical importance of asset discovery. The discussion also delves into the implications of cyber warfare, the persistent threat of default passwords, and the integration of open source tools in enhancing security measures. The conversation delves into various aspects of cybersecurity, focusing on aircraft tracking, data filtering, the evolution of vulnerability management, and the role of AI in enhancing security measures. The speakers discuss the challenges posed by default credentials and the shared responsibility model in cloud infrastructure. They also explore the limitations of AI in cybersecurity and the potential for future advancements, particularly in localized LLMs. The conversation delves into the intersection of technology, cybersecurity, and privacy, exploring the implications of AI on energy demands, vulnerabilities in telecom infrastructure, the complexities of network maintenance, and the challenges of ransomware negotiations. The discussion also touches on privacy concerns related to data tracking by major tech companies like Meta and Apple, as well as the evolving landscape of legal implications in the face of cyber threats.

    This segment is sponsored by runZero. Get complete visibility across your total attack surface in literally minutes - no agents, no authentication required. Start a free trial or access the free Community Edition at https://securityweekly.com/runzero.

    HD Moore joins us to discuss finding all the things and how vulnerability management has changed. In the security news:

    • Hacking from a light bulb
    • Reverse engineering, the easy ways
    • Detecting Jitter
    • FCC probes into Cyber Trust Mark
    • Bluetooth Jamming
    • New Wifi Apple features: What could go wrong?
    • Just turn off the Internet for the entire country
    • Meta's Localhost tracking
    • Hacking printers, for realz this time
    • Are we not patching 2023 CVEs?
    • Cleaning up legacy drivers
    • One of the Best Hackers in the Country is an AI Bot

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-880

    Más Menos
    2 h y 16 m
  • Hacking Drivers - PSW #879
    Jun 19 2025

    This week: * The true details around Salt Typhoon are still unknown * The search for a portable pen testing device * Directories named "hacker2" are suspicious * Can a $24 cable compete with a $180 cable? * Hacking Tesla wall chargers * Old Zyxel exploits are new again * Hacking Asus drivers * Stealing KIAs - but not like you may think * Fake articles * Just give everything to LLMs, like Nmap * Retiring Floppy disks * An intern leaked secrets * Discord link hijacking * Cray vs. Raspberry PI * More car hacking with BMW

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-879

    Más Menos
    2 h y 3 m
  • UEFI Vulnerabilities Galore - PSW #878
    Jun 12 2025

    This week:

    • You got a Bad box, again
    • Cameras are expose to the Internet
    • EU and connected devices
    • Hydrophobia
    • NVRAM variables
    • Have you heard about IGEL Linux?
    • SSH and more NVRAM
    • AI skeptics are nuts, and AI doesn't make you more efficient
    • Trump Cybersecurity orders
    • I think I can root my Pixel 6
    • Decentralized Wordpres plugin manager
    • Threat actor naming conventions
    • I have the phone number linked to your Google account
    • Fortinet flaws exploited in ransomeware attacks (and how lack of information sharing is killing us)
    • retiring floppy disks
    • fault injection for the masses
    • there is no defender
    • AI blackmails

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-878

    Más Menos
    2 h y 11 m
  • Updating & Protecting Linux Systems - PSW #877
    Jun 5 2025

    Two parts to this episode:

    • Tech Segment: Updating Linux Systems - Beyond apt-get upgrade * Custom scripts for ensuring your Linux systems are up-to-date * topgrade - tutorial for using topgrade to update Linux systems on various Linux distributions

    • Discussion Topic: Anti-Malware and/or EDR on Linux Platforms * PCI calls for scanning Linux systems * What tools exist for analyzing Linux systems? (AIDE, uac, chkrootkit) * Best Anti-Malware for Linux - Commercial tools, open-source, both, none? * ClamAV - fa-notify and the dangers

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-877

    Más Menos
    1 h y 5 m
  • It's A Trap! - PSW #876
    May 29 2025

    In the security news:

    • Vicious Trap - The malware hiding in your router
    • Hacking your car
    • WSL is open-source, but why?
    • Using AI to find vulnerabilities - a case study
    • Why you should not build your own password manager
    • The inside scoop behind Lumma Infostealer
    • Hacking a smart grill
    • Hardcoded credentials on end of life routers and "Alphanetworks"
    • SIM swapping is still happening
    • LoRa for C2
    • Russian drones use Telegram
    • Flipper Zero mod for the LOLZ
    • Signal blocks Recall
    • CISA loses more people

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-876

    Más Menos
    2 h y 3 m
  • Malware Laced Printer Drivers - PSW #875
    May 22 2025

    This week in the security news:

    • Malware-laced printer drivers
    • Unicode steganography
    • Rhode Island may sue Deloitte for breach. They may even win.
    • Japan's active cyber defense law
    • Stop with the ping
    • LLMs replace Stack Overflow - ya don't say?
    • Aggravated identity theft is aggravating
    • Ivanti DSM and why you shouldn't use it
    • EDR is still playing cat and mouse with malware
    • There's a cellular modem in your solar gear
    • Don't slack on securing Slack
    • XSS in your mail
    • SIM swapping and the SEC
    • Ivanti and libraries
    • Supercomputers in space!

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-875

    Más Menos
    2 h y 2 m