135274
Aug 24, 2023Recent reviews on Apple Podcasts (5)
5 Star Review
Love the show. Actually can be done in less than 30 seconds.
Sm@rt speller ·
Good Security (and general) Podcast
This is a fun podcast to keep tabs on some interesting security news. I do have a request though: I would love to hear much more from Doug and Kim. I’m not trying to be mean, but Paul seems to sort of take over too much. I enjoy various facts and technical jargon, but I’ve found myself muttering ‘let them speak’ much too often.
TFWas ·
Informative and Fun
I’ve subscribed to many IT and security podcasts and find many too long and dry to keep me engaged. The Naked Security podcast content has always been on point and the hosts are always entertaining. It’s one of the few I listen to as soon as it’s published.
Craig_S_92 ·
Delightful and excellent content
Great mix of fun banter and very educational. Good for all levels of those interested in information and computer security.
Beauchey ·
Funny and insightful
Great podcast for cyber security veterans and newcomers alike. A good mix of entertainment and educational content.
All You Need Is Hops ·
Episodes (515)

S3 Ep149: How many cryptographers does it take to change a light bulb?
Aug 24, 202316m#149
Miss Manners confronts copy-and-paste. WinRAR patches bugs. When Airplane mode isn't. How many cryptographers to change a light bulb? Intro and outro music by Edith Mudge ( www.edithmudge.com )

S3 Ep148: Remembering crypto heroes
Aug 17, 202318m#148
Navajo Code Talkers Day. Beta bogosities . Skimming shenanigans . Hooligan hosting . A cybercrime conundrum. Intro and outro music by Edith Mudge ( www.edithmudge.com )

S3 Ep147: What if you type in your password during a meeting?
Aug 9, 202315m#147
An amazing Art Deco computer. Yet more performance-versus-security trouble. Is sound alone enough to sniff out your password? A rap song (of sorts) with a cybersecurity connection. Intro and outro music by Edith Mudge (

S3 Ep146: Tell us about that breach! (If you want to.)
Aug 3, 202317m#146
Firefox fixes flaws. The exciting vulnerability that you don't need to be afraid of. Breach reporting rules with lots of leeway. Intro and outro music by Edith Mudge ( www.edithmudge.com )

S3 Ep145: Bugs With Impressive Names!
Jul 27, 202319m#145
Apple patches two zero-days, one for a second time. How a 30-year-old cryptosystem got cracked . All your secret are belong to Zenbleed . Remembering those dodgy PC/Mac ads. Intro and outro music by Edith Mudge ( www.edi

S3 Ep144: When threat hunting goes down a rabbit hole
Jul 20, 202316m#144
Why your Mac's calendar app says it's JUL 17. One patch , one line, one file. Careful with that {axe,file} , Eugene. Storm season for Microsoft. When typos make you sing for joy. Twitter: @NakedSecurity Intro and outro m

S3 Ep143: Supercookie surveillance shenanigans
Jul 13, 202317m#143
Remembering the slide rule. What you need to know about Patch Tuesday. Supercookie surveillance shenanigans. When bugs arrive in pairs . Apple's rapid patch that needed a rapid patch . User-Agent considered harmful. Twit

S3 Ep142: Putting the X in X-Ops
Jul 6, 202314m#142
First there was DevOps, then SecOps, then DevSecOps. Or should that be SecDevOps? Paul Ducklin talks to Sophos X-Ops insider Matt Holdcroft about how to get all your corporate "Ops" teams working together, with cybersecu

S3 Ep141: What was Steve Jobs's first job?
Jun 29, 202317m#141
PONG for one player. Apple pushes out anti-spyware patch . Beware bad passwords on Linux servers . "Twitter hacker" gets 5 years . When mobile phones and dental hygiene collide . Twitter: @NakedSecurity Intro and outro m

S3 Ep140: So you think you know ransomware?
Jun 22, 202318m#140
Gee Whizz BASIC (probably). Think you know ransomware ? Megaupload, 11 years on . ASUS warns of critical router bugs . MOVEit mayhem Part III . Twitter: @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudg

S3 Ep139: Are password rules like running through rain?
Jun 15, 202317m
Magnetic core memory. Patch Tuesday and SketchUp shenanigans. More MOVEit mitigations . Mt. Gox back in the news. Gozi malware criminal imprisoned at last. Are password rules like running through rain ? Twitter @NakedSec

S3 Ep138: I like to MOVEit, MOVEit
Jun 8, 202322m#138
Calling all modems. KeePass gets an update. MOVEit gets pwned . Chromium zero-day . The backdoor that wasn't really. WPBT explained. Twitter @NakedSecurity Intro and outro music by Edith Mudge ( www.edithmudge.com )

S3 Ep137: 16th century crypto skullduggery
Jun 1, 202321m#137
How to say "GIF". A Blackmailer-in-the-Middle attack. Knitting your own crypto . KeePass master password shenanigans. Binge listening. Email [email protected] Twitter @NakedSecurity Intro and outro music by Edith Mudge ( w

S3 Ep136: Navigating a manic malware maelstrom
May 25, 202320m#136
Luminiferous aether. A $10m cybercrime reward. Bank scam kingpin gets 13 years . Three Apple 0-days . A Python malware maelstrom . Email [email protected] Twitter @NakedSecurity

S3 Ep135: Sysadmin by day, extortionist by night
May 18, 202316m#135
An Apple product that flopped (and was not the Newton). Two-faced sysadmin jailed for 6 years . The smart plug with the unsmart security hole . Clearview AI again , once more, again . Intro and outro music by Edith Mudge

S3 Ep134: It's a PRIVATE key - the hint is in the name!
May 11, 202317m#134
The world-changing Visible Calculator. How not to get a job. Private keys - the hint is in the name. Microsoft's complicated bootkit patch. Taming Bluetooth trackers . Email: [email protected] Twitter: https://twitter.com/

S3 Ep133: Apple takes "tight-lipped" to a whole new level
May 4, 202318m#133
New England gets BASIC. Google hits back at CryptBot crooks. Apple seals its lips on security. Mac malware-as-a-service . World Password Day. PaperCut: disclose or don't disclose ? Original music by Edith Mudge ( https:/

S3 Ep132: Proof-of-concept lets anyone hack at will
Apr 27, 202317m#132
The CIH or SpaceFiller virus revisited. Google's 2FA security shortcut . Server vulns under active attack . Two Chrome zero-days , but was it one attack? Email: [email protected] Twitter: @NakedSecurity

S3 Ep131: Can you really have fun with FORTRAN?
Apr 20, 202320m#131
Fun with FORTRAN?! An extreme data breach and its consequences. Rogue 2FA apps live in action. Juicejacking revisited. With Doug Aamoth and Paul Ducklin. Original music by Edith Mudge .

S3 Ep130: Open the garage bay doors, HAL
Apr 13, 202318m#130
A common business-oriented language. Patch Tuesday . Secure Boot (without the "Secure" part). Apple zero-days . World-readable garage doors . Motherboard malware threats . Original music by Edith Mudge ( https://www.edit

S3 Ep129: When spyware arrives from someone you trust
Apr 6, 202317m#129
A supply chain attack that foisted spyware on trusting users. Wi-Fi encryption bypass via left-over data. Surely there should be TWO World Backup Days ? Email [email protected] Original music by Edith Mudge ( https://www.e

S3 Ep128: So you want to be a cybercriminal?
Mar 30, 202319m#128
RIP Gordon Moore , the more in Moore's Law. Photo cropping bugfix . DDoS honeypot . E-commerce patches . Apple 0-day and lots more. Email [email protected] Twitter @NakedSecurity

S3 Ep127: When you chop someone out of a photo, but there they are anyway...
Mar 23, 202318m#127
The mobile phone bugs that Google kept quiet, just in case. The mysterious case of ATM video uploads. When redacted data springs back to life . Email [email protected] Twitter @NakedSecurity

S3 Ep126: The price of fast fashion (and feature creep)
Mar 16, 202320m#126
The price of fast fashion . Firefox fixes . Feature creep fail curtailed in Patch Tuesday updates. Original music by Edith Mudge Got questions/suggestions/stories to share? Email [email protected] Twitter @NakedSecurity

S3 Ep125: When security hardware has security holes
Mar 9, 202320m#125
Memories of Michelangelo (the virus, not the artist). Data leakage bugs in TPM 2.0 . Ransomware bust , ransomware warning , and anti-ransomware advice. Original music by Edith Mudge Got questions/suggestions/stories to s