889
SN 889: Spell-Jacking - Cyber-Insurance, GTA 6 leak, MiraclePtr, CVSS9.8 for
WordPress, Uber Oops!
Sept. 21, 2022
- Picture of the Week. * This is Patch News-Day. * Lloyd's of London backing away from Cyber-Insurance. * Uber Oops! * Rockstar Games: Grand Theft Auto 6 Massive Leak. * LastPass Breach Update. * A CVSS 9.8 for WordPress. * What cost, Security? * Use-after-freedom: Google's "MiraclePtr" * Closing The Loop. * Spell-Jacking. We invite you to read our show notes at https://www.grc.com/sn/SN-889-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to this show at https://twit.tv/shows/security-now. Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit You can submit a question to Security Now! at the GRC Feedback Page. For …
Tags: leo laporte, tech news, steve gibson, encryption, hacking, malware, spyware, software how-to, security, technology, cyber crime
Older Episodes
888
SN 888: The EvilProxy Service - MooBot, Crypto Heist, Cyberwarfare, QNAP, The
Silver Ships
Sept. 14, 2022
MooBot, Crypto Heist, Cyberwarfare, QNAP, The Silver Ships
887
SN 887: Embedded AWS Credentials - TikTok leak, urgent Chrome patch, PyPI
warning, Quantum Hype Bubble
Sept. 7, 2022
TikTok leak, urgent Chrome patch, PyPI warning, Quantum Hype Bubble
886
SN 886: Wacky Data Exfiltration - LastPass breach, FTC Kochava lawsuit,
Hikvision IoT mess
Aug. 31, 2022
LastPass breach, FTC Kochava lawsuit, Hikvision IoT mess
885
SN 885: The Bumblebee Loader - RTL819x Exploit, RubyGems Update, Chrome's
Fifth 0-Day of 2022
Aug. 24, 2022
RTL819x Exploit, RubyGems Update, Chrome's Fifth 0-Day of 2022
884
SN 884: TLS Private Key Leakage - BIG patch Tuesday, Facebook E2E encryption,
VNC insecurity, Cyotek WebCopy
Aug. 17, 2022
BIG patch Tuesday, Facebook E2E encryption, VNC insecurity, Cyotek WebCopy
883
SN 883: The Maker's Schedule - VirusTotal, Daniel Bernstein sues the NSA, Win
11 might damage encrypted data
Aug. 10, 2022
VirusTotal, Daniel Bernstein sues the NSA, Win 11 might damage encrypted data
882
SN 882: Rowhammer's Nine Lives - TLS-Anvil, Chrome cookies stick around,
Atlassian Confluence under attack
Aug. 3, 2022
TLS-Anvil, Chrome cookies stick around, Atlassian Confluence under attack
881
SN 881: The MV720 - MS Office VBA macros, Win 11 security changes, start
button failure
July 27, 2022
MS Office VBA macros, Win 11 security changes, start button failure
880
SN 880: RetBleed - Facebook encrypted URLs, cracking Lockdown Mode, ClearView
AI resistance, Roskomnadzor
July 20, 2022
Facebook encrypted URLs, cracking Lockdown Mode, ClearView AI resistance, Roskomnadzor
873
SN 873: DuckDuckGone? - Digital Driver's License, MS Office 0-day, GhostTouch,
Vodafone TrustPiD
June 1, 2022
Digital Driver's License, MS Office 0-day, GhostTouch, Vodafone TrustPiD
872
SN 872: Dis-CONTI-nued: The End of Conti? - Clearview AI in Ukraine, Vancouver
Pwn2Own, Voyager 1
May 25, 2022
Clearview AI in Ukraine, Vancouver Pwn2Own, Voyager 1
871
SN 871: The New EU Surveillance State - Eventful Patch Tuesday, Open Source
Maintenance Crew, BIG-IP Boxes
May 18, 2022
Eventful Patch Tuesday, Open Source Maintenance Crew, BIG-IP Boxes
870
SN 870: That "Passkeys" Thing - White House and Quantum Computers, Android
0-day, Ransomware snapshot
May 11, 2022
White House and Quantum Computers, Android 0-day, Ransomware snapshot
869
SN 869: Global Privacy Control - DoD DIB-VDP, OpenSSF's Package Analysis
Project, Connecticut Privacy
May 4, 2022
DoD DIB-VDP, OpenSSF's Package Analysis Project, Connecticut Privacy
868
SN 868: The 0-Day Explosion - Lenovo EUFI Firmware, Everscale Blockchain
Wallet, Major Java Update
April 27, 2022
Lenovo EUFI Firmware, Everscale Blockchain Wallet, Major Java Update
867
SN 867: A Critical Windows RPC RCE - Another Chrome 0-day, MS Patch-Fest, US
Nuclear Systems Unhackable?
April 20, 2022
Another Chrome 0-day, MS Patch-Fest, US Nuclear Systems Unhackable?
Patch Tuesday, Microsoft's Autopatch System, NGINX 0-Day
865
SN 865: Port Knocking - Wyze Gets Spanked, FinFisher Bites the Dust,
Spring4Shell, LAPSUS$ Update
April 6, 2022
Wyze Gets Spanked, FinFisher Bites the Dust, Spring4Shell, LAPSUS$ Update
864
SN 864: Targeted Exploitation - Ukrainian ISP Challenges, Kaspersky Labs
Banned in the US, Chrome 0-Day
March 30, 2022
Ukrainian ISP Challenges, Kaspersky Labs Banned in the US, Chrome 0-Day
