Security Now (Audio)

SN 1038: Perplexity's Duplicity - Malicious Repository Libraries

60 snips
Aug 13, 2025
CISA issues an urgent directive regarding SharePoint vulnerabilities. NVIDIA dismisses fears about embedded chips, while Dashlane scraps its free tier. Malicious repository libraries pose serious threats, and more than 100 Dell laptop models face security risks. Learn about web filtering innovations with uBlock Origin and the alarming rise of AI-driven cyberattacks. A humorous dive into healthcare absurdities leads into a serious discussion on security updates and the implications of new AI technologies in our digital landscape.
Ask episode
AI Snips
Chapters
Books
Transcript
Episode notes
ADVICE

Patch Hybrid Exchange Immediately

  • Install Microsoft's April 2025 Exchange hotfix and follow the hybrid-to-Entra migration steps immediately for hybrid Exchange environments.
  • This prevents on-prem compromises from being used to access and control Exchange Online via shared service principal tokens.
ADVICE

Say No To Hardware Backdoors

  • Reject hardware backdoors, kill switches, or secret access in GPUs because they create single points of failure and security risk.
  • Prefer rigorous testing, transparency, and defense-in-depth instead of mandating built-in remote controls in chips.
ADVICE

Move From Limited Free Password Tiers

  • If you use Dashlane's free tier, migrate to a fully featured password manager (e.g., 1Password or Bitwarden) before their free limit ends on Sept 16, 2025.
  • Prefer services offering unlimited entries and multi-device sync to avoid hitting artificial limits.
Get the Snipd Podcast app to discover more snips from this episode
Get the app