Paul's Security Weekly (Audio) cover image

Paul's Security Weekly (Audio)

Don't Hack Russia - PSW #864

Mar 6, 2025
Dive into the quirks of hacking your smart mattress and discover why it might be more vulnerable than you think. Explore the latest in music piracy and the absurdity of smart appliances while reflecting on the demise of Skype. Uncover the implications of ransomware threats from Russia and the complexities introduced by AI. Plus, hear about the evolution of cybersecurity practices and the challenges small businesses face with outdated tech. It's a lively mix of tech humor and crucial insights you won't want to miss!
02:04:54

Podcast summary created with Snipd AI

Quick takeaways

  • Smart mattresses present serious security risks due to hard-coded SSH keys, enabling unauthorized remote access and manipulation of settings.
  • The failure of Cisco to patch vulnerabilities in small business routers places countless enterprises at risk, highlighting neglect in vendor support.

Deep dives

Hacking the Mattress

Some smart mattresses from Eight Sleep can be remotely accessed due to hard-coded SSH keys and credentials. This vulnerability allows unauthorized access to the mattress's controls, enabling malicious actions. The mattress is designed to adjust temperature for comfort, but the fact that it requires internet access raises concerns about security and privacy. Instead of relying on the built-in smart features, a DIY solution using aquarium chillers was suggested as a more secure alternative.

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner