Paul's Security Weekly (Audio) cover image

Paul's Security Weekly (Audio)

Deepseek, AMD, and Forgotten Buckets - PSW #860

Feb 6, 2025
Discover the challenges of Deepseek and the latest in AI model security. Explore AMD's microcode vulnerabilities and the risks posed by abandoned AWS S3 buckets. Dive into the world of 3D printing with innovative tips and tricks. Learn about password management weaknesses and the hidden dangers of cheap USB-to-Ethernet adapters. The discussion also highlights the evolving landscape of cybersecurity and the importance of data privacy in AI development.
02:06:54

Podcast summary created with Snipd AI

Quick takeaways

  • Recent vulnerabilities in AMD microcode enable potential arbitrary code execution on processors, highlighting urgent patching and security measures.
  • The risks associated with abandoned AWS S3 buckets underscore the importance of careful management and vigilance in cloud security considerations.

Deep dives

AMD Microcode Vulnerabilities

Recent vulnerabilities were discovered in AMD microcode, specifically pertaining to signature validation bypasses. These vulnerabilities affect AMD CPUs and were initially highlighted when Asus addressed a signature validation issue in a recent UEFI update. The implications of this vulnerability are significant, as it potentially allows attackers to load arbitrary microcode onto AMD processors, which could compromise critical security features. Exploitation would require high privileges, and while patches are being released, the importance of addressing these vulnerabilities promptly cannot be overstated.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode