Security Now (Audio)

Security Now (Audio)

Cybersecurity guru Steve Gibson joins Leo Laporte every Tuesday. Steve and Leo break down the latest cybercrime and hacking stories, offering a deep understanding of what's happening and how to protect yourself and your business. Security Now is a must listen for security professionals every week. Records live every Tuesday at 4:30pm Eastern / 1:30pm Pacific / 20:30 UTC.

Episodes

October 28, 2025 191 mins

Just when you thought DNS cache poisoning was a thing of the past, Steve and Leo reveal why this 17-year-old bug is making a dramatic comeback—and why most DNS resolvers still can't manage high-quality random numbers after all this time.

  • The unsuspected sucking power of a Linux-based robot vacuum.
  • Russia to follow China's vulnerability reporting laws.
  • A pair of Scattered Spider UK teen hackers arrested.
  • Facebook,Instagram ...
Mark as Played

Think your mouse is harmless? Steve and Leo uncover how modern optical mice might be secretly "listening" in, and reveal why satellite data pouring down on us is almost entirely unsecured.

  • The long awaited lawsuit to block Texas SB2420.
  • Embattled Texas SB2420 also impacts Google Play.
  • At long last, NIST modernizes their password policy.
  • Scattered LAPSUS$ Hunters demise was exaggerated.
  • China claims that the NSA has been h...
Mark as Played

Texas is on the brink of forcing Apple and Google to overhaul app downloads with strict age verification laws—are tech giants ready, or is your privacy about to get caught in the crossfire?

  • The EU aborted their Chat Control vote knowing it would fail.
  • Salesforce says it's not going to pay; customer data is released.
  • Hackers claim Discord breach netted 70,000 government IDs.
  • Microsoft to move Github to Azure. What could pos...
Mark as Played

Google's new demand for developer registration could spell the end for open-source app stores, while Europe's controversial chat control vote threatens privacy for everyone—Steve and Leo break down what's at stake for devs and users alike.

  • Qantas says no one can releak their stolen data.
  • Brave's usage is up. But is it really 3 times faster.
  • Next Tuesday the EU votes on "Chat Control".
  • Microsoft formally launches a "Securit...
Mark as Played

Cisco's routers just exposed more than two million networks thanks to a "security optional" SNMP setup that's being actively exploited—Steve and Leo break down why this is a worst-case scenario for the industry and how easily it could have been avoided.

  • Gmail's spam filtering false-positive spree.
  • iOS 26's Safari randomizes its fingerprint by default.
  • Cisco's SNMP stands for "Security Not My Problem".
  • Windows' "stuck" Exte...
Mark as Played
  • Consumer Reports on Windows 10 updates.
  • Waste (not fraud or abuse) within DoD Cyberoperations.
  • China's DeepSeek produces deliberately flawed code.
  • WebAssembly v3.0 officially released.
  • Firefox v143 updates and new features.
  • Firefox for Android now offers DoH.
  • A nearly terminal flaw in Microsoft's Entra ID.
  • Chrome hits its 6th 0-day this year. Emergency update.
  • DRAM (now DDR5) still vulnerable to RowHammer.
  • SAMSUNG k...
Mark as Played

Apple just rewrote the rules of device security with a chip-level upgrade that could wipe out most iPhone vulnerabilities overnight. Find out how "memory integrity enforcement" aims to make exploits a thing of the past—and why it took half a decade to pull off.

  • Are Bitcoin ATMs anything more than scamming terminals.
  • Ransomware hits the Uvalde school district and Jaguar.
  • Did "Scattered LapSus Hunters" just throw in the towel...
Mark as Played

Is the U.S. on the verge of legalizing "hack back" missions, turning private companies into sanctioned cyber warriors? Steve and Leo unpack Google's plan for a cyber disruption unit and why the lines between defense and digital retaliation are suddenly blurring.

  • My experience with 'X' vs email.
  • Google TIG blackmailed to fire two security researchers.
  • 1.1.1.1 DNS TLS certificate mis-issued.
  • Artists blackmailed with threats ...
Mark as Played

When even the Department of Defense can't properly vet its software dependencies, what chance do the rest of us have? Steve Gibson reveals how "fast-glob" became a case study in supply chain blindness, explores whether AI can ever truly be controlled after Meta's celebrity chatbot disaster, and celebrates BYTE Magazine's 50th anniversary with a look at how far we've come (and how vulnerable we still are).

  • A look back at issue...
Mark as Played

Alarm bells are ringing over a supposed browser zero-day, but is the threat as bad as it sounds? Steve reveals why "clickjacking" might be more whac-a-mole than breaking news, and what that really means for your passwords.

• Germany may soon outlaw ad blockers
• What's happening in the courts over AI
• The U.K. drops its demands of Apple
• New Microsoft 365 tenants being throttled
• Is Russia preparing to block Google Meet?
...

Mark as Played

Popular Podcasts

    If you've ever wanted to know about champagne, satanism, the Stonewall Uprising, chaos theory, LSD, El Nino, true crime and Rosa Parks, then look no further. Josh and Chuck have you covered.

    Dateline NBC

    Current and classic episodes, featuring compelling true-crime mysteries, powerful documentaries and in-depth investigations. Follow now to get the latest episodes of Dateline NBC completely free, or subscribe to Dateline Premium for ad-free listening and exclusive bonus content: DatelinePremium.com

    On Purpose with Jay Shetty

    I’m Jay Shetty host of On Purpose the worlds #1 Mental Health podcast and I’m so grateful you found us. I started this podcast 5 years ago to invite you into conversations and workshops that are designed to help make you happier, healthier and more healed. I believe that when you (yes you) feel seen, heard and understood you’re able to deal with relationship struggles, work challenges and life’s ups and downs with more ease and grace. I interview experts, celebrities, thought leaders and athletes so that we can grow our mindset, build better habits and uncover a side of them we’ve never seen before. New episodes every Monday and Friday. Your support means the world to me and I don’t take it for granted — click the follow button and leave a review to help us spread the love with On Purpose. I can’t wait for you to listen to your first or 500th episode!

    Health Stuff

    On Health Stuff, hosts Dr. Priyanka Wali and comedian Hari Kondabolu tackle all the health questions that keep you up at night with hilarity and humanity. Together they demystify the flashy trends, and keep you informed on the latest research. You can rely on Health Stuff to bring you real, uninhibited, and thoughtful health talk of the highest caliber, and a healthy dose of humor.

    The Breakfast Club

    The World's Most Dangerous Morning Show, The Breakfast Club, With DJ Envy, Jess Hilarious, And Charlamagne Tha God!

Advertise With Us
Music, radio and podcasts, all free. Listen online or download the iHeart App.

Connect

© 2025 iHeartMedia, Inc.