

Smashing Security
Graham Cluley
Smashing Security isn’t your typical tech podcast. Hosted by cybersecurity veteran Graham Cluley, it serves up weekly tales of cybercrime, hacking horror stories, privacy blunders, and tech mishaps - all with sharp insight, a sense of humour, and zero tolerance for tech waffle.Winner of the best and most entertaining cybersecurity podcast awards in 2018, 2019, 2022, 2023, and 2024, Smashing Security has had over ten million downloads. Past guests include Garry Kasparov, Mikko Hyppönen, and Jack Rhysider. Follow the podcast on Bluesky at @smashinsecurity.com, and subscribe for free in your favourite podcast app.New episodes released at 7pm EST every Wednesday (midnight UK).
Episodes
Mentioned books

Jun 20, 2018 • 28min
083: Fake email derails clarinetist's dream
Hell hath no fury like a jealous clarinetist's girlfriend! Your Google ChromeCast could be letting stalkers find out where you live! And why on earth is Graham recommending people write their passwords down in a book!?Join computer security veterans Graham Cluley and Carole Theriault on a shorter episode of the "Smashing Security" podcast than normal, as they're awfully busy touring up and down the country doing things in front of live audiences.Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Sponsored By:LastPass: LastPass Enterprise simplifies password management for companies of every size, with the right tools to secure your business with centralized control of employee passwords and apps.But, LastPass isn’t just for enterprises, it’s an equally great solution for business teams, families and single users.Go to lastpass.com/smashing to see why LastPass is the trusted enterprise password manager of over 33 thousand businesses.Support Smashing SecurityLinks:View from Carole's hotel room in ManchesterEric Abramovitz plays the clarinet - YouTubeMcGill music student awarded $350,000 after girlfriend stalls careerEric Abramovitz vs Jennifer (Jooyeon) Lee - Court documentsGoogle’s Newest Feature: Find My HomeSteve Gibson's Three Router Solution to IOT InsecurityGoogle Removes 'Don't Be Evil' Clause From Its Code of ConductPassword Minder Infomercial - YouTubeLaDonna - This American LifeSmashing Security merchandise (t-shirts, mugs, stickers and stuff)

Jun 13, 2018 • 39min
082: World Cup cybersecurity, crypto crashes, and a bang of a password fail
Coinrail cryptocurrency exchange goes offline after hack, Russia appears to be 'live testing' cyber attacks, and Florida stopped running background checks on gun buyers because of forgotten password.All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Register's football-mad John Leyden.Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Special Guest: John Leyden.Sponsored By:VirusTotal: VirusTotal Intelligence is one of the world’s largest malware intelligence services. Security professionals rely on it to better understand the effects of malware in enterprise networks.Find out more at https://www.virustotal.com/learnSupport Smashing SecurityLinks:Bitcoin price takes a dive after another cryptocurrency exchange hackMikko Hypponen on Twitter explains why cryptocurrency exchanges get hacked$1m by 2020: John McAfee will still ‘eat his own d*ck’ if he’s wrong about Bitcoin2018 FIFA World Cup RussiaRussia appears to be 'live testing' cyber attacks - Former UK spy boss Robert HanniganFrench TV network taken off air after attack by pro-ISIS hackersTV5Monde attack proves hacking attribution is very difficultTV station exposé its own passwords on l'air. A Franglais reportVPNFilter botnet has hacked 500,000 routers. Reboot and patch now!VPNFilter exploits endpoints, targets new devicesFlorida Didn't Run FBI Background Checks on Gun Buyers for a Year Because of a Forgotten LoginAdam Putnam’s office stopped reviewing concealed weapons background checks for a year because it couldn’t log inBackground Check Procedures: State by StateDepartment of Agriculture investigative reportIs It Normal?What is the Camino de Santiago?Eating and Drinking on the Camino de SantiagoPulperia Ezequiel - Great place to eat pulpo (octopus)Britannica Insights Is a Chrome Extension to Fix False Google ResultsBritannica Insights - Chrome Web StoreSmashing Security merchandise (t-shirts, mugs, stickers and stuff)

Jun 6, 2018 • 26min
081: Hacker no-hopers, Wessex Water has a word, and we win an award
The mastermind behind the Owari botnet doesn't seem to have learnt anything from his victims, and someone at Wessex Water forgets to remove an embarrassing sentence from a letter sent to customers...All this and much much more is discussed in the latest edition of the award-winning "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, who recorded a shorter podcast than normal this week as they were far too busy recovering from receiving the best security podcast award!Follow the award-winning show on Twitter at @SmashinSecurity, or visit our website for more award-winning episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the award-winning episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Sponsored By:LastPass: LastPass Enterprise simplifies password management for companies of every size, with the right tools to secure your business with centralized control of employee passwords and apps.But, LastPass isn’t just for enterprises, it’s an equally great solution for business teams, families and single users.Go to lastpass.com/smashing to see why LastPass is the trusted enterprise password manager of over 33 thousand businesses.Support Smashing SecurityLinks:We did it! Smashing Security’s Carole celebrates with the best security podcast award!… Full results from the Infosec18 European Blogger AwardsHacker Fail: IoT botnet command and control server accessible via default credentialsPwn goal: Hackers used the username root, password root for botnet control database loginTweet by Vesselin BontchevMailshot meltdown as Wessex Water gets sweary about a poor chap called TomApology from Wessex Water on TwitterExcel pivot table data leak leads to £120,000 fine for London councilSmashing Security review criticises Graham's enunciationSimplenoteStandard NotesEvil Genius trailer - YouTubeCase 81: Brian Wells - CasefileSmashing Security merchandise (t-shirts, mugs, stickers and stuff)

May 30, 2018 • 34min
080: Country bans Facebook, eavesdropping Alexa, and PornHub VPN
The country of Papua New Guinea is planning a month-long nationwide ban of Facebook, PornHub wants to keep your online activities more private, and Amazon Alexa forwards a married couple's private conversation to a random contact.All this and much much more is discussed in the latest 100% GDPR-compliant edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by ESET's Tommi Uhlemann.Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Special Guest: Tommi Uhlemann.Sponsored By:VirusTotal: VirusTotal Intelligence is one of the world’s largest malware intelligence services. Security professionals rely on it to better understand the effects of malware in enterprise networks.Find out more at https://www.virustotal.com/learnSupport Smashing SecurityLinks:Papua New Guinea to ban Facebook for a monthShutting down facebook in PNG is a realityPornhub launches VPNhub, a VPN service with free, unlimited bandwidthPornhub hack: Hackers hijacked ads with malware in year-long attackBe cautious, free VPNs are selling your data to 3rd partiesHow to hear (and delete) every conversation your Amazon Alexa has recordedWoman says her Amazon device recorded private conversation, sent it out to random contactSmashing Security 044: Bonus behind the scenes - shower timeHere's How To Deactivate Alexa Calling After You Sign UpPassive Aggressive PasswordsEbaybae on InstagramBrave BrowserThe Complete Privacy & Security Podcast discusses the Brave browserSee Smashing Security LIVE on tour in the UKSmashing Security merchandise (t-shirts, mugs, stickers and stuff)

May 23, 2018 • 51min
079: Mugshots, mobile mania, and backend gurus
A website which demands money if you want your police mugshot removed, could "sharenting" lead to a rise in fraud and identity theft, and how could the FBI have overcounted encrypted phones so badly?All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest Maria Varmazis.Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Special Guest: Maria Varmazis.Sponsored By:LastPass: LastPass Enterprise simplifies password management for companies of every size, with the right tools to secure your business with centralized control of employee passwords and apps.But, LastPass isn’t just for enterprises, it’s an equally great solution for business teams, families and single users.Go to lastpass.com/smashing to see why LastPass is the trusted enterprise password manager of over 33 thousand businesses.Support Smashing SecurityLinks:Vote for Smashing Security!Smashing Security LIVE on Tour!Court documents about Mugshots.com caseAll of Mugshots.com’s alleged co-owners arrested on extortion charges'Sharenting' puts young at risk of online fraudParents ‘oversharing’ family photos online, but lack basic privacy know-howFBI Admits It Inflated Number of Supposedly Unhackable DevicesDonald Trump's smartphone security: an inconvenient truthApple Wants to Make Totally Unhackable iPhonesA Very English Scandal (TV series)Jeremy Thorpe affair - WikipediaMoment – Automatically track your and your family's daily iPhone and iPad usePercentage CalculatorSmashing Security merchandise (t-shirts, mugs, stickers and stuff)

May 16, 2018 • 44min
078: Hounds hunt hackers, too-human Google AI, and ethnic recognition tech - WTF?
Dogs are trained to sniff out hackers' hard drives, facial recognition takes an ugly turn, and do you trust Google to book your hair appointment?All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by investigative journalist Geoff White.Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Special Guest: Geoff White.Sponsored By:MetaCompliance: People are the key to minimizing your Cyber Security risk posture. MetaCompliance makes this easier by providing a single platform for Phishing, Cybersecurity training, Policy, Privacy and Incident management.Go to smashingsecurity.com/metacompliance Promo Code: SMASHINGSupport Smashing SecurityLinks:Vote for Smashing Security in the European Security Blogger Awards!See Smashing Security LIVE!K-9 Helps Concord Cops Nab Student Hacker Who Upped GradesFerris Bueller's Day Off - hacking the computer -YouTubePolice Use Dog To Find Memory And Hard Drives In SearchDog Can Sniff Out Hidden Cellphones, Thumb Drives and More Facial Recognition and “ethnicity”Facial scans to identify bad Elvises at Porthcawl festivalMasked Anonymous Protesters Aid Time Warner’s ProfitsGoogle Duplex: A.I. Assistant Calls Local Businesses To Make Appointments - YouTubeNew Siri update - EXCLUSIVE PREVIEW - YouTubeWill Robots Take My Job?Algorithms to Live By: The Computer Science of Human DecisionsSignalSmashing Security merchandise (t-shirts, mugs, stickers and stuff)

May 9, 2018 • 40min
077: Why Paris Hilton doesn’t use iCloud, lottery hacking, and Facebook dating
The tricky-to-pronounce Paytsar Bkhchadzhyan is jailed for hacking Paris Hilton, we hear the story of the man who hacked the lottery and almost got away with $16.5 million, and Facebook thinks it is the perfect partner to find you a date.All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by the CyberWire's Dave Bittner.Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Special Guest: Dave Bittner.Sponsored By:LastPass: LastPass Enterprise simplifies password management for companies of every size, with the right tools to secure your business with centralized control of employee passwords and apps.But, LastPass isn’t just for enterprises, it’s an equally great solution for business teams, families and single users.Go to lastpass.com/smashing to see why LastPass is the trusted enterprise password manager of over 33 thousand businesses.Support Smashing SecurityLinks:Paris Hilton's hacker sentenced to 57 months in prisonFBI wasn't able to unlock iPhone, even with a 'fingerprint unlock warrant'Paris Hilton Comes Face to Face With Her Hacker in Court - YouTubeTweet by Paris Hilton: "Karma has no menu. You get served what you deserve..."Paris Hilton: Hacked or Not?Two-factor authentication for Apple ID - Apple SupportThe Man Who Cracked the LotteryLottery security director accused of hacking random-number generatorIowa Lottery releases surveillance footage of mystery Hot Lotto winner - YouTubeFacebook announces dating app focused on 'meaningful relationships' Facebook F8 2018: Facebook is launching a new dating serviceHow will Facebook’s dating service work?14 years of Mark Zuckerberg saying sorry, not sorry about FacebookDoes the Dog Die?Kingdom RushSandraSmashing Security merchandise (t-shirts, mugs, stickers and stuff)

May 2, 2018 • 44min
076: Spying phones, hacked ski lifts, and World Password Day
Cheap Android smartphones sold on Amazon have been sending customers' full text messages to a Chinese server, ski lifts are found to be the latest devices left open to abuse by hackers, and we remind you why password managers are a good idea on World Password Day. Oh, and our guest serenades us with a hit from the 1980s!All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by journalist and broadcaster David McClelland.Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Special Guest: David McClelland.Sponsored By:MetaCompliance: People are the key to minimizing your Cyber Security risk posture. MetaCompliance makes this easier by providing a single platform for Phishing, Cybersecurity training, Policy, Privacy and Incident management.Go to smashingsecurity.com/metacompliance Promo Code: SMASHINGSupport Smashing SecurityLinks:See Smashing Security LIVE!Mobile Phone Maker BLU Reaches Settlement with FTC over Deceptive Privacy and Data Security ClaimsPhone maker settles charges it let partner collect customers’ text messagesBackdoor in some Android phones caught secretly sending data to ChinaUK bank advises against password managers - TwitterSantander Locks Horns with Security Pros, NCSC Over Password ManagersPasswords - a Smashing Security splinter episodeTerrifying Ski Lift Malfunction Caught On Camera - YouTubeSki Lift in Austria Left Control Panel Open on the InternetControl of Tyrolean cable car open in the network accessibleBBC Sound EffectsChess - English National OperaMurray Head - One Night In Bangkok "From CHESS" - YouTubeElaine Paige, Barbara Dickson - I Know Him So Well "From CHESS" - YouTubeWorld Community Grid - Research OverviewSmashing Security merchandise (t-shirts, mugs, stickers and stuff)

Apr 25, 2018 • 28min
075: Quitting Facebook
Should you quit Facebook? How do you delete your Facebook account? What do you need to consider before leaving Facebook for good? And what's the easiest way to successfully go cold turkey on Facebook?Find out in this special splinter episode of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest Maria Varmazis.Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Special Guest: Maria Varmazis.Sponsored By:LastPass: LastPass Enterprise simplifies password management for companies of every size, with the right tools to secure your business with centralized control of employee passwords and apps.But, LastPass isn’t just for enterprises, it’s an equally great solution for business teams, families and single users.Go to lastpass.com/smashing to see why LastPass is the trusted enterprise password manager of over 33 thousand businesses.Support Smashing SecurityLinks:How do I download a copy of my information on Facebook?Facebook retracted Zuckerberg’s messages from recipients’ inboxesHow do I turn off Facebook's integration with apps, games and websites?How to use "Turn Platform Off" on Facebook for privacyHow do I deactivate my Facebook account?How to deactivate Facebook MessengerAsk Facebook to delete your accountSmashing Security merchandise (t-shirts, mugs, stickers and stuff)

Apr 18, 2018 • 49min
074: Smashing Security isn't bullsh*t
Crime forums on Facebook, fraudsters pose as anti-fraud hotlines, and how big advertising companies are in bed with the rampant data collection of internet giants.All this and much much more is discussed in the latest edition of the "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by special guest B J Mendelson, author of "Social media is bullsh*t."Follow the show on Twitter at @SmashinSecurity, or visit our website for more episodes.Remember: Subscribe on Apple Podcasts, or your favourite podcast app, to catch all of the episodes as they go live. Thanks for listening!Warning: This podcast may contain nuts, adult themes, and rude language.Special Guest: B J Mendelson.Sponsored By:MetaCompliance: People are the key to minimizing your Cyber Security risk posture. MetaCompliance makes this easier by providing a single platform for Phishing, Cybersecurity training, Policy, Privacy and Incident management.Go to smashingsecurity.com/metacompliance Promo Code: SMASHINGSupport Smashing SecurityLinks:Oh look "security expert" Rudy Giuliani shows you how to do a special "dark web scan", courtesy of Experian...Nobody seems to know what Rudy Giuliani's cybersecurity firm actually doesDeleted Facebook Cybercrime Groups Had 300,000 MembersHow to Report Abuse on FacebookMartin Sorrell Resigns as Chief of WPP Advertising AgencyAirbnb co-founder Nathan Blecharczyk spam pioneer says bookAn Apology for the Internet — From the People Who Built ItAutomated Action Fraud Tech Support scam callsCrime in England and Wales from Office for National StatisticsTuneInSanta Clarita Diet on NetflixDevolo dLAN® 550 WiFi Starter Kit - Powerline WiFiSmashing Security merchandise (t-shirts, mugs, stickers and stuff)