Security This Week

Security This Week

By: Carl Franklin

Language: en

Categories: News, Business, Management

Enterprise security topics are discussed through the lens of current events, which catapult us into a discussion about hacking methods, security measures, and outcomes. Your hosts are Carl Franklin, Patrick Hynds, and Duane LaFlotte

Episodes

Here. Try This!
Jan 10, 2026

ConsentFix: Analysing a browser-native ClickFix-style attack that hijacks OAuth consent grants

Duration: 00:33:14
Is This Your Mongo?
Jan 03, 2026

MongoDB warns admins to patch severe vulnerability immediately

Duration: 00:45:30
Watch What You Watch!
Dec 20, 2025

PornHub extorted after hackers steal Premium member activity data

Duration: 00:29:32
Over Reacting?
Dec 12, 2025

Attackers hit React defect as researchers quibble over proof

Duration: 00:28:13
iScam?
Dec 06, 2025

An ingenious Apple Service hoax is convincing users their account is under attack

Duration: 00:27:26
Did Claude Go Rogue?
Nov 22, 2025

Anthropic claims of Claude AI-automated cyberattacks met with doubt

Duration: 00:38:34
Should You Disable Hyper-V? Da!
Nov 15, 2025

Hackers Weaponize Windows Hyper-V to Hide Linux VM and Evade EDR Detection

Duration: 00:37:59
Patrick was Right!
Nov 08, 2025

No one pays ransomware demands anymore - so attackers have a new goal. Also: Ransomware Surge in Europe: Cybercriminals Exploit GDPR Penalties, Target Key Sectors

Duration: 00:35:42
AWS Story Put To Bed
Nov 01, 2025

AWS crash causes $2,000 Smart Beds to overheat and get stuck upright

Duration: 00:29:51
Terminate This!
Oct 18, 2025

Skynet-1A: Military Spacecraft Launched 56 Years Ago Has Been Moved By Persons Unknown

Duration: 00:26:47
Live in Orlando!
Oct 11, 2025

Carl, Duane, and Patrick recorded this week's episode in front of a live audience at CyberSecurity Intersection, a cyber conference held at Universal Studio in Orlando, FL the week of October 5.

Duration: 00:40:24
No! Not the Beer!!
Oct 03, 2025

Japan's beer giant Asahi Group cannot resume production after cyberattack

Duration: 00:42:05
Secret Service FTW!
Sep 27, 2025

U.S. Secret Service dismantles imminent telecommunications threat in New York tristate area

Duration: 00:30:26
Read Your Own Damn Email!
Sep 20, 2025

New attack on ChatGPT research agent pilfers secrets from Gmail inboxes

Duration: 00:40:34
The Largest Supply Chain Attack in History!
Sep 13, 2025

Hackers left empty-handed after massive NPM supply-chain attack

Duration: 00:37:14
The End of Privacy?
Sep 05, 2025

Salt Typhoon pwned 'nearly every American'

Duration: 00:35:29
AI-Powered Ransomware: Uh Oh.
Aug 29, 2025

Someone Created the First AI-Powered Ransomware Using OpenAI's gpt-oss:20b Model

Duration: 00:31:48
What would you do for nuggets?
Aug 22, 2025

Security researcher driven by free nuggets unearths McDonald's security flaw — changing 'login' to 'register' in URL prompted site to issue plain text password for a new account

Duration: 00:33:28
We Don't Need No Stinking BitLocker Keys!
Aug 16, 2025

BitUnlocker – Multiple 0-days to Bypass BitLocker and Extract All Protected Data

Duration: 00:44:19
Government Informants Reveled!
Aug 09, 2025

Federal court filing system hit in sweeping hack

Duration: 00:38:40
St. Paul Shut Down Dontcha Know
Aug 02, 2025

Minnesota National Guard activated, state of emergency declared after cyberattack against St. Paul

Duration: 00:30:44
Sharing is NOT the Point!
Jul 26, 2025

Microsoft SharePoint zero-day exploited in RCE attacks, no patch available

Duration: 00:48:08
White Russians, Anyone?
Jul 19, 2025

Russian alcohol retailer WineLab closes stores after ransomware attack

Duration: 00:50:52
Call of Duty?? WTF!
Jul 12, 2025

Call of Duty: WW2 pulled from PC following reports of remote code exploit trolling players with 'Notepad pop-ups, PC shutdowns' and desktop wallpaper of a lawyer

Duration: 00:40:24
Quantum is the Answer. What's the Question?
Jul 05, 2025

Quantum tech is coming — and with it a risk of cyber doomsday

Duration: 00:35:34
Gmail Hacked?
Jun 28, 2025

Russian hackers bypass Gmail MFA using stolen app passwords.

Duration: 00:45:38
Google for Phone Numbers?
Jun 21, 2025

https://www.malwarebytes.com/blog/news/2025/06/google-bug-allowed-phone-number-of-almost-any-user-to-be-discovered

Duration: 00:42:38
New TV or Smart Device? Kill it!
Jun 14, 2025

BADBOX 2.0 Android malware infects millions of consumer devices

Duration: 00:35:38
Meta Caught Spying. Shocker!
Jun 07, 2025

Meta found 'covertly tracking' Android users through Instagram and Facebook

Duration: 00:36:31
Signal sends a Signal to Windows!
May 31, 2025

Signal says no to Windows 11’s Recall screenshots

Duration: 00:40:13
Can China Disable Your Solar Panels?
May 24, 2025

Chinese ‘kill switches’ found hidden in US solar farms

Duration: 00:44:34
Siri Spied! Who Knew?
May 17, 2025

You can now submit your claims for Apple’s $95 million Siri spying settlement

Duration: 00:35:34
Is This The Apple Pandemic?
May 09, 2025

Apple 'AirBorne' flaws can lead to zero-click AirPlay RCE attacks

Duration: 00:32:11
Android Spyware!
Apr 26, 2025

Android Spyware Disguised as Alpine Quest App Targets Russian Military Devices

Duration: 00:39:56
Is you is or is you ain't my CVE?
Apr 19, 2025

Funding Expires for Key Cyber Vulnerability Database

Duration: 00:31:35
Stand-up Security
Apr 11, 2025

Incomplete Patch in NVIDIA Toolkit Leaves CVE-2024-0132 Open to Container Escapes

Duration: 00:32:04
Freeze Your Credit Now!
Apr 05, 2025

Protect Yourself from Identity Theft and Fraud

Duration: 00:46:35
Should We Be Worried About Signal?
Mar 29, 2025

National Security Officials Were Warned in February That Signal Was Vulnerable to Attack

Duration: 00:36:44
Are the Keys to Your Kingdom Safe?
Mar 22, 2025

Millions Of RSA Keys Expose Serious Flaws That Can Be Exploited

Duration: 00:30:08
Is Bluetooth Safe?
Mar 15, 2025

Undocumented commands found in Bluetooth chip used by a billion devices

Duration: 00:40:30
Is Your Password Manager Safe?
Mar 08, 2025

Malicious Chrome extensions can spoof password managers in new attack

Duration: 00:34:27
Got Quantum Security?
Mar 01, 2025

Microsoft deploys new state of matter in its first quantum computing chip

Duration: 00:45:15
How to Save Money on Web Security
Feb 22, 2025

DOGE’s .gov site lampooned as coders quickly realize it can be edited by anyone

Duration: 00:36:22
Is the UK Poisoning the Apple?
Feb 15, 2025

UK orders Apple to open up users' encrypted cloud data, report says

Duration: 00:36:18
Et Tu, DeepSeek?
Feb 01, 2025

DeepSeek exposed internal database containing chat histories and sensitive data

Duration: 00:35:39
Is Your Old Website REALLY Dead?
Jan 25, 2025

Millions of Accounts Vulnerable due to Google’s OAuth Flaw

Duration: 00:31:27
Your iPhone, Scams, and You
Jan 18, 2025

Hackers have devised a simple text scam to bypass Apple’s iPhone protections

Duration: 00:42:15
Who's Yanking Your Supply Chain?
Jan 11, 2025

Volkswagen leak exposed location data for 800,000 electric cars

Duration: 00:43:42
Uh Oh
Dec 28, 2024

Urgent New Gmail Security Warning For Billions As Attacks Continue

Duration: 00:44:44
What's Worse, WordPress or Rhode Island?
Dec 21, 2024

The numbers are almost incomprehensible!

Duration: 00:37:04
Android Not Secure. Who Knew?
Dec 14, 2024

Gamaredon Deploys Android Spyware "BoneSpy" and "PlainGnome" in Former Soviet States

Duration: 00:29:34
For Pete's Sake, Stop Texting Now!
Dec 08, 2024

FBI Warns iPhone And Android Users—Stop Sending Texts

Duration: 00:51:29
VPN Not Working? As Designed.
Nov 23, 2024

Fortinet VPN design flaw hides successful brute-force attacks

Duration: 00:40:18
Ding Dong! Sexstortion Lady!
Nov 16, 2024

Ruthless sextortion scammers now threatening to show up at your house

Duration: 00:32:36
What, No Brie?
Nov 09, 2024

Schneider Electric ransomware crew demands $125k paid in baguettes

Duration: 00:32:26
Same To You, Roomba!
Nov 02, 2024

Hacked U.S. robot vacuums are yelling racial slurs and chasing pets!

Duration: 00:36:38
Hey MacOS, your Fly is Down!
Oct 27, 2024

https://thehackernews.com/2024/10/microsoft-reveals-macos-vulnerability.html

Duration: 00:35:28
No, you may NOT borrow my lighter!
Oct 19, 2024

Hacking with a BBQ Lighter: The Unlikely Method to Gain Laptop Access

Duration: 00:39:57
Never Give your Mom a Lamborghini!
Oct 11, 2024

Lamborghini Carjackers Lured by $243M Cyberheist

Duration: 00:28:24
Your Favorite Developer Package Doesn't Exist!
Oct 05, 2024

Large language models hallucinating non-existent developer packages could fuel supply chain attacks

Duration: 00:38:22
Your Linux System May Kill You. Film at 11.
Sep 27, 2024

Severe Unauthenticated RCE Flaw (CVSS 9.9) in GNU/Linux Systems Awaiting Full Disclosure

Duration: 00:39:19
The Next Device to Explode
Sep 21, 2024

New Details of Hezbollah Exploding Pagers' Supply Chain Emerge

Duration: 00:26:25
Screens Spill the Beans
Sep 14, 2024

New PIXHELL acoustic attack leaks secrets from LCD screen noise

Duration: 00:37:13
Free Flight Crew Passes for All My Friends!
Sep 06, 2024

Researchers find SQL injection to bypass airport TSA security checks

Duration: 00:31:39
Windows Un-Patched?
Aug 31, 2024

Windows Downdate tool lets you 'unpatch' Windows systems

Duration: 00:41:43
Is RFID Broken?
Aug 24, 2024

Major Backdoor in Millions of RFID Cards Allows Instant Cloning

Duration: 00:36:29
Don't Click Anything!
Aug 17, 2024

Zero-click Windows TCP/IP RCE impacts all systems with IPv6 enabled, patch now

Duration: 00:38:06
Thieves Return Stolen Booty for Reward!
Aug 10, 2024

Ronin Network hacked, $12 million returned by "white hat" hackers

Duration: 00:34:37
Move Over, Diamonds: GitHub is Forever!
Aug 03, 2024

Deleted GitHub data is forever accessible to anyone, researchers claim

Duration: 00:41:55
Fly Much?
Jul 27, 2024

We have a lot to say about last week's CrowdStrike incident

Duration: 00:34:29
Russia Caught Red-Handed Spreading Lies on X!
Jul 20, 2024

US Disrupts AI-Powered Russian Bot Farm on X

Duration: 00:56:27
Screw you guys, I'm archiving my repo!
Jul 13, 2024

Dev rejects CVE severity, makes his GitHub repo read-only

Duration: 00:45:36
AI Jailbreaking is Real!
Jun 29, 2024

Mitigating Skeleton Key is a new type of generative AI jailbreak technique

Duration: 00:42:18
Microsoft Recall Recalled?
Jun 22, 2024

Microsoft Delays AI-Powered Recall Feature for Copilot+ PCs Amid Security Concerns

Duration: 00:46:18
Too Busy Shipping to Lock the Door!
Jun 15, 2024

Microsoft Ignored Whistleblower Warnings Before SolarWinds Attack

Duration: 00:31:55
Is Windows Recall Safe?
Jun 08, 2024

Hacker Tool Extracts All the Data Collected by Windows’ New Recall AI

Duration: 00:48:51
Zoom Invents Time Machine. Film at 11.
Jun 01, 2024

Zoom adds 'post-quantum' encryption for video nattering

Duration: 00:46:49
Microsoft AI. Secure?
May 25, 2024

Hear about what Carl learned about AI Security while at Microsoft Build in Seattle last week.

Duration: 00:30:16
WiFi Hacked Again!
May 17, 2024

New WiFi Flaw Leaves All Devices Vulnerable to ‘SSID Confusion’ Attacks

Duration: 00:33:05
Is Your Software USDA Approved?
May 11, 2024

The US Government Is Asking Big Tech to Promise Better Cybersecurity

Duration: 00:44:04
Is DropBox Done?
May 04, 2024

An SEC security breach filing has us wondering!

Duration: 00:36:53
AI Attacks!
Apr 27, 2024

GPT-4 Can Exploit Most Vulns Just by Reading Threat Advisories

Duration: 00:42:48
The Last Pass for LastPass?
Apr 20, 2024

Hackers targeted LastPass employee in failed deep fake CEO call.

Duration: 00:51:05
Hey Microsoft, is your House Clean?
Apr 13, 2024

Microsoft employees exposed internal passwords in security lapse

Duration: 00:26:53
State Hackers Blow up Red Hat Linux from the Inside!
Apr 06, 2024

Red Hat warns of backdoor in XZ tools used by most Linux distros

Duration: 00:34:03
Dyslexic Vampire Sends Rogue iMessages!
Mar 30, 2024

New Darcula phishing service targets iPhone users via iMessage

Duration: 00:27:59
They can hear what you're typing!
Mar 23, 2024

New acoustic attack determines keystrokes from typing patterns

Duration: 00:36:00
TikTok. Time's a Wastin!
Mar 16, 2024

House passes bill that would ban TikTok if its Chinese owners don't sell the popular app.

Duration: 00:38:26
Repo Man Confused. Film at 11.
Mar 09, 2024

Over 100,000 Infected Repos Found on GitHub!

Duration: 00:31:16
Is C# Dead?
Mar 02, 2024

White House urges devs to switch to memory-safe programming languages

Duration: 00:42:06
Is Your AI Writing Rubber Checks?
Feb 24, 2024

Air Canada must honor refund policy invented by airline’s chatbot

Duration: 00:30:01
Hey Canada, Where's My Car?
Feb 17, 2024

Canada to ban the Flipper Zero to stop surge in car thefts

Duration: 00:36:09
Spoutible Exposes Sensitive User Data!
Feb 10, 2024

At least the API was thorough!

Duration: 00:37:36
The Mother of All Breaches!
Feb 03, 2024

Mother of all breaches reveals 26 billion records!

Duration: 00:46:09
Is Bitcoin no longer anonymous?
Jan 20, 2024

How a 27-year-old busted the myth of Bitcoin’s anonymity

Duration: 00:38:49
Kerberos Bug Fixed! Film at 11!
Jan 13, 2024

Microsoft fixes critical flaws in Windows Kerberos, Hyper-V

Duration: 00:35:07
PornHub Complaining Again
Jan 06, 2024

PornHub blocks North Carolina, Montana over new age verification laws

Duration: 00:32:43
Ultimate Job Interview Fail!
Dec 30, 2023

Blockchain dev's wallet emptied in "job interview" using npm package

Duration: 00:41:05
Yes, Virginia, They ARE Listening to You
Dec 23, 2023

Marketing Company Claims That It Actually Is Listening to Your Phone and Smart Speakers to Target Ads

Duration: 00:36:22
WordPress... WTF!
Dec 16, 2023

50K WordPress sites exposed to RCE attacks by critical bug in backup plugin

Duration: 00:34:29