Episodios

  • Turning To The Darkside & AI Cyberslop - PSW #899
    Nov 6 2025

    This week:

    • Reversing keyboard firmware
    • Ghost networks
    • Invasion of the face changers
    • Ghost tapping and whole lot of FUD
    • AI doesn't code securely, but Aardvark can secure code
    • De-Googling Thermostats
    • Dodgy Android TV boxes can run Debian
    • HackRF vs. Honda
    • Cyberslop AI paper
    • Turning to the darkside
    • Poisoning the watering hole
    • Nagios vulnerabilities
    • VPNs are a target

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-899

    Más Menos
    2 h y 8 m
  • Cybersecurity Is Dead - PSW #898
    Oct 30 2025

    In the security news this week:

    • Cybersecurity is dead, and AI killed it
    • Exploiting the patching system
    • Apple makes it easier for spyware
    • Who is patching Cisco ASA?
    • Shove that DMCA somewhere
    • HTTPS - a requirement
    • Russia wants to own all the exploits
    • Abandonware challenges
    • Reversing at its hardest with Lua
    • Hacking team is back, and leetspeak malware
    • When you forget to authenticate your API
    • Jamming with cool tech
    • GoSpoof
    • and After 35 Years, a Solution to the CIA’s Kryptos Puzzle Has Been Found!

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-898

    Más Menos
    2 h y 4 m
  • Its Always DNS - PSW #897
    Oct 23 2025

    In the security news:

    • When in doubt, blame DNS, you're almost always correct
    • How to Make Windows 11 great, or at least suck less
    • CSRF is the least of your problems
    • Shady exploits
    • Linux security table stakes (not steaks)
    • The pill camera
    • Give AI access to your UART
    • Security products that actually try to be secure?
    • Firmware vulnerabilities, lots of them
    • Teams is spying on you
    • More details on PolarEdge
    • VSCode, marketplaces, and developers at risk
    • Cisco SNMP flaw used to deploy malware
    • The 90's called, they want their exploits back

    This segment is sponsored by ThreatLocker. Visit https://securityweekly.com/threatlocker to learn more about them!

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-897

    Más Menos
    2 h y 4 m
  • AI, EDR, and Hacking Things - PSW #896
    Oct 16 2025

    First up is a technical segment on UEFI shells: determining if they contain dangerous functionality that allows attackers to bypass Secure Boot.

    Then in the security news:

    • Your vulnerability scanner is your weakest link
    • Scams that almost got me
    • The state of EDR is not good
    • You don't need to do that on a phone or Raspberry PI
    • Hash cracking and exploits
    • Revisiting LG WebOS
    • Hardening Docker images
    • Hacking Moxa NPort
    • Shoddy academic research
    • The original sin of computing
    • Bodycam hacking
    • A new OS for ESP32
    • The AI bubble is going to burt
    • Mobile VPNs are not always secure

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-896

    Más Menos
    2 h y 5 m
  • IoT Hacks Galore - Kieran Human - PSW #895
    Oct 9 2025

    This week we kick things off with a special interview: Kieran Human from Threat Locker talks about EDR bypasses and other special projects. In the security news:

    • Hacking TVs
    • Flushable wipes are not the only problem
    • People just want to spy on their pets, except the devices can be hacked
    • Linux EDR is for the birds
    • What does my hat say
    • we love exploits and hashes
    • ESP32s in your router
    • RF signal generator on a PI Zero
    • Mic-E-Mouse and other things that will probably never happen, until they do
    • Hacking with money
    • Uninitialized variables and other things the compiler should catch
    • Breaking out of the shell
    • Hacking with sound, for real, not just another side channel attack
    • Bring back 2G
    • When the game engine gets hacked
    • Oracle 0-days

    This segment is sponsored by ThreatLocker. Visit https://securityweekly.com/threatlocker to learn more about them!

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-895

    Más Menos
    2 h y 9 m
  • AI: The new trigger word. Or is it Robots? - PSW #894
    Oct 2 2025

    In addition to some fun news, we get a Mary Ann Davidson as a surprise guest. We even get a great quote from her of "You're never going to have enough cybersecurity people to defend what was never built to be defensible.".

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-894

    Más Menos
    2 h y 5 m
  • Broadcom, LastPass, SEO Poisoning, QR codes, H1B visas, Distributed Computing... - PSW #893
    Sep 25 2025

    Broadcom, LastPass, Brickstone, SEO Poisoning, QR codes, H1B visas, Distributed Computing, and More...

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-893

    Más Menos
    1 h y 3 m
  • Safes, Hackers, and Web Servers - PSW #892
    Sep 18 2025

    This week's technical segment is all about the T-Lora Pager from Lilygo, and really cool Meshtastic device that can also be used for some hacking tasks! In the security news:

    • Your safe is not safe
    • Cisco ASA devices are under attack
    • VMScape
    • HybridPetya and UEFI attacks in the wild
    • Eveything is a Linux terminal
    • Hackers turns 30
    • Hosting websites on disposable vapes
    • NPM worms and token stealing
    • Attackers make mistakes too
    • AI podcasts

    Visit https://www.securityweekly.com/psw for all the latest episodes!

    Show Notes: https://securityweekly.com/psw-892

    Más Menos
    2 h y 12 m