

Shared Security Podcast
Tom Eston, Scott Wright, Kevin Tackett
Shared Security is the the longest-running cybersecurity and privacy podcast where industry veterans Tom Eston, Scott Wright, and Kevin Tackett break down the week’s security WTF moments, privacy fails, human mistakes, and “why is this still a problem?” stories — with humor, honesty, and hard-earned real-world experience. Whether you’re a security pro, a privacy advocate, or just here to hear Kevin yell about vendor nonsense, this podcast delivers insights you’ll actually use — and laughs you probably need. Real security talk from people who’ve lived it.
Episodes
Mentioned books

Jun 13, 2022 • 30min
Hacking Ham Radio: Why It’s Still Relevant and How to Get Started
This week we discuss hacking ham radio with special guests Caitlin Johanson, Rick Osgood, and Larry Pesce. In this episode you’ll learn what ham radio is, why its still relevant, why would attackers want to hack ham radio, all about packet radio and APRS (Automatic Packet Reporting System), and what equipment and licensing you need to get started in ham radio.
** Links mentioned on the show **
Hacking Ham Radio: WinAPRS – Part 1
https://www.coalfire.com/the-coalfire-blog/hacking-ham-radio-winaprs-part1
Hacking Ham Radio: WinAPRS – Part 2
https://www.coalfire.com/the-coalfire-blog/hacking-ham-radio-winaprs-part-2
Hacking Ham Radio: WinAPRS – Part 3
https://www.coalfire.com/the-coalfire-blog/hacking-ham-radio-winaprs-part-3
Hacking Ham Radio: WinAPRS – Part 4
https://www.coalfire.com/the-coalfire-blog/hacking-ham-radio-winaprs-part-4
The 5 Best Ham Radios of 2022
https://www.lifewire.com/best-ham-radios-4176137
** Watch this episode on YouTube **
** Thank you to our sponsors! **
Teleport
Teleport is the easiest, most secure way to access all your infrastructure. The open-source Teleport Access Plane consolidates connectivity, authentication, authorization, and audit into a single platform. Click here to learn why the most visionary businesses in the world choose Teleport!
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Leave us a rating and review: https://ratethispodcast.com/sharedsecurity
Contact us: https://sharedsecurity.net/contact
The post Hacking Ham Radio: Why It’s Still Relevant and How to Get Started appeared first on Shared Security Podcast.

Jun 6, 2022 • 28min
DuckDuckGo Browser Allows Microsoft Trackers, Stolen Verizon Employee Database, Attacking Powered Off iPhones
The DuckDuckGo mobile browser allows Microsoft trackers due to an agreement in their syndicated search content contract, a database of contact details for hundreds of Verizon employees was compromised after an employee was social engineered to give the attacker remote access to their corporate computer, and details about new research that shows that even when an iPhone running iOS 15 is turned off, its really not off and certain wireless features allow the phone to be located and possibly attacked.
** Links mentioned on the show **
DuckDuckGo caught giving Microsoft permission for trackers despite strong privacy reputation
https://9to5mac.com/2022/05/25/duckduckgo-privacy-microsoft-permission-tracking/
https://www.bleepingcomputer.com/news/security/duckduckgo-browser-allows-microsoft-trackers-due-to-search-agreement/
Hacker steals Verizon employee database after tricking worker into granting remote access
https://www.bitdefender.com/blog/hotforsecurity/hacker-steals-verizon-employee-database-after-tricking-worker-into-granting-remote-access/
The Research is in, Your Phone can be Attacked When it’s “Off.”
https://slnt.com/blogs/news/the-research-is-in-your-phone-can-be-attacked-when-its-off
https://www.vice.com/en/article/g5q4vj/malware-can-be-loaded-even-onto-phones-that-are-turned-off-researchers-show
** Watch this episode on YouTube **
https://youtu.be/Bdag8jAKex0
** Thank you to our sponsors! **
Teleport
Teleport is the easiest, most secure way to access all your infrastructure. The open-source Teleport Access Plane consolidates connectivity, authentication, authorization, and audit into a single platform. Click here to learn why the most visionary businesses in the world choose Teleport!
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Leave us a rating and review: https://ratethispodcast.com/sharedsecurity
Contact us: https://sharedsecurity.net/contact
The post DuckDuckGo Browser Allows Microsoft Trackers, Stolen Verizon Employee Database, Attacking Powered Off iPhones appeared first on Shared Security Podcast.

May 30, 2022 • 44min
The State of Application Security with Tanya Janca
Tanya Janca, founder of the We Hack Purple Academy, Director of Developer Relations and Community at Bright, and author of “Alice & Bob Learn Application Security” joins us to discuss the current state and future of Application Security. In this episode we discuss what Tanya’s been up to, what’s changed in AppSec over the last several years, have organizations actually moved to DevSecOps, and what the next big thing in AppSec might be.
** Links mentioned on the show **
Pick up Tanya’s book: “Alice & Bob Learn Application Security” on Amazon!
https://www.amazon.com/Alice-Bob-Learn-Application-Security/dp/1119687357
Check out the We Hack Purple Academy and Community
https://www.wehackpurple.com
Connect with Tanya
https://twitter.com/shehackspurple
https://www.linkedin.com/in/tanya-janca/
https://shehackspurple.ca/
Previous episodes with Tanya
https://sharedsecurity.net/2021/01/28/tanya-janca-ceo-and-founder-we-hack-purple/
https://sharedsecurity.net/2018/11/30/special-guest-tanya-janca-devops-and-appsec-women-in-cybersecurity-82/
** Watch this episode on YouTube **
https://youtu.be/LJ5RkD-qLjQ
** Thank you to our sponsors! **
Keeper Security
Sign up for a free trial of Keeper Password Management for your organization today, and get a free 3-year personal plan. Get started by visiting Keepersecurity.com/sharedsecurity
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Leave us a rating and review: https://ratethispodcast.com/sharedsecurity
Contact us: https://sharedsecurity.net/contact
The post The State of Application Security with Tanya Janca appeared first on Shared Security Podcast.

May 23, 2022 • 27min
Apple Mail Privacy Protection, Government Agencies Reveal Top Attack Vectors, Is Big Brother Watching You at Work?
What is Apple Mail Privacy Protection and how does it hide your IP address, so senders can’t link it to your online activity or determine your location, government authorities such as the FBI and NSA have released a list of top attack vectors used to gain initial access by attackers, and how more companies are deploying privacy invasive surveillance software to monitor their employees at work.
** Links mentioned on the show **
Shout out to Josh Summers of All Things Secured channel on YouTube! Check out and subscribe to his channel!
Apple Mail Now Blocks Email Tracking. Here’s What It Means for You
https://www.wired.com/story/apple-mail-blocks-email-tracking-heres-what-it-means/
https://postmarkapp.com/blog/how-apples-mail-privacy-changes-affect-email-open-tracking
FBI and NSA say: Stop doing these 10 things that let the hackers in
https://www.zdnet.com/article/fbi-and-nsa-say-stop-doing-these-10-things-that-let-the-hackers-in/
https://www.bleepingcomputer.com/news/security/cybersecurity-agencies-reveal-top-initial-access-attack-vectors/
Welcome to the era of the hyper-surveilled office
https://www.economist.com/business/welcome-to-the-era-of-the-hyper-surveilled-office/21809219
Please leave us a rating and review!
https://ratethispodcast.com/sharedsecurity
** Watch this episode on YouTube **
https://youtu.be/qQ3Mslg3cJM
** Thank you to our sponsors! **
Keeper Security
Sign up for a free trial of Keeper Password Management for your organization today, and get a free 3-year personal plan. Get started by visiting Keepersecurity.com/sharedsecurity
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Leave us a rating and review: https://ratethispodcast.com/sharedsecurity
Contact us: https://sharedsecurity.net/contact
The post Apple Mail Privacy Protection, Government Agencies Reveal Top Attack Vectors, Is Big Brother Watching You at Work? appeared first on Shared Security Podcast.

May 16, 2022 • 26min
FBI Warrantless Searches, Passwordless Sign-Ins, Keylogging Web Forms
The FBI searched emails, texts and other electronic communications of 3.4 million U.S. residents without a warrant, Apple, Google, and Microsoft have announced they will support a new passwordless sign-in standard created by the FIDO Alliance and the World Wide Web Consortium, and details about how some websites are keylogging your data as you type it into a web form, before you hit submit.
** Links mentioned on the show **
CircleCityCon 9.0: Saturday Morning Cartoons – Indianapolis, IN
Friday, July 1 – Sunday, July 3 2022
New to cybersecurity? Never been to a conference? Contact us for a chance to win a free ticket!
https://circlecitycon.org/
FBI Searched Data of Millions of Americans Without Warrants
https://www.bloomberg.com/news/articles/2022-04-29/fbi-searched-the-data-of-millions-of-americans-without-warrants
Apple, Google and Microsoft Commit to Expanded Support for FIDO Standard to Accelerate Availability of Passwordless Sign-Ins
https://fidoalliance.org/apple-google-and-microsoft-commit-to-expanded-support-for-fido-standard-to-accelerate-availability-of-passwordless-sign-ins/
https://krebsonsecurity.com/2022/05/your-phone-may-soon-replace-many-of-your-passwords/
The End of Passwords as We Know It
Interview with Andrew Shikiar from the FIDO Alliance
https://sharedsecurity.net/2020/04/27/the-end-of-passwords-as-we-know-it/
Thousands of Popular Websites See What You Type—Before You Hit Submit
https://www.wired.com/story/leaky-forms-keyloggers-meta-tiktok-pixel-study/
https://homes.esat.kuleuven.be/~asenol/leaky-forms/
** Watch this episode on YouTube **
https://youtu.be/kyLp0bgTzuU
** Thank you to our sponsors! **
Keeper Security
Sign up for a free trial of Keeper Password Management for your organization today, and get a free 3-year personal plan. Get started by visiting Keepersecurity.com/sharedsecurity
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Leave us a rating and review: https://ratethispodcast.com/sharedsecurity
Contact us: https://sharedsecurity.net/contact
The post FBI Warrantless Searches, Passwordless Sign-Ins, Keylogging Web Forms appeared first on Shared Security Podcast.

May 9, 2022 • 27min
Cybersecurity for Startups with Josh Feinblum from Stavvy
Josh Feinblum is the co-founder of Stavvy, a Boston-based fully integrated digital mortgage platform, where he leads product, engineering, people, and finance. He also serves as a venture partner at F-Prime Capital, where he evaluates and advises startups of all stages across multiple verticals.
Josh talks to us about his journey through cybersecurity including his experience as a CISO at Rapid7 and DigitalOcean, and then leaving cybersecurity to start a totally new business. We discuss how his cybersecurity and privacy experience helped build a successful startup and what he’s learned along the way. If you’re interested in either joining a startup or building your own startup this is one episode you don’t want to miss!
** Links mentioned on the show **
Follow Josh on Twitter and LinkedIn
https://twitter.com/jfeinblum
https://www.linkedin.com/in/jfeinblum/
Finside Chats Podcast w/Josh Feinblum
https://www.stavvy.com/podcast
Learn more about Stavvy
https://www.stavvy.com/
https://twitter.com/stavvyhq
** Watch this episode on YouTube **
https://youtu.be/OJehHoND3vU
** Thank you to our sponsors! **
Keeper Security
Sign up for a free trial of Keeper Password Management for your organization today, and get a free 3-year personal plan. Get started by visiting Keepersecurity.com/sharedsecurity
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Leave us a rating and review: https://ratethispodcast.com/sharedsecurity
Contact us: https://sharedsecurity.net/contact
The post Cybersecurity for Startups with Josh Feinblum from Stavvy appeared first on Shared Security Podcast.

May 2, 2022 • 28min
Elon Musk Buys Twitter, Forgotten BIOS Updates, T-Shirt Outwits Facial Recognition
Elon Musk buys Twitter for $44 billion so what does this mean for the privacy and cybersecurity of the platform? More than 100 different Lenovo laptop computers contain firmware-level vulnerabilities which is a great reminder about making sure you update the BIOS on your computer. Plus, details about researchers who have created a t-shirt that renders the wearer undetectable to facial recognition technology.
** Links mentioned on the show **
It’s not rocket science, why Elon Musk’s Twitter takeover could be bad for privacy
https://techcrunch.com/2022/04/26/elon-musk-twitter-privacy/
Millions of Lenovo Laptops Contain Firmware-Level Vulnerabilities
https://www.darkreading.com/threat-intelligence/millions-of-lenovo-laptops-contain-firmware-level-vulnerabilities
This ugly t-shirt makes you invisible to facial recognition tech
https://www.wired.co.uk/article/facial-recognition-t-shirt-block
** Watch this episode on YouTube **
** Thank you to our sponsors! **
Keeper Security
Sign up for a free trial of Keeper Password Management for your organization today, and get a free 3-year personal plan. Get started by visiting Keepersecurity.com/sharedsecurity
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Leave us a rating and review: https://ratethispodcast.com/sharedsecurity
Contact us: https://sharedsecurity.net/contact
The post Elon Musk Buys Twitter, Forgotten BIOS Updates, T-Shirt Outwits Facial Recognition appeared first on Shared Security Podcast.

Apr 25, 2022 • 28min
Rehumanizing Cybersecurity with Lianne Potter
Award-winning security transformation manager and digital anthropologist Lianne Potter joins us to discuss the fascinating topic of digital anthropology and how we can rehumanize cybersecurity. In this episode Lianne discusses how she became a digital anthropologist, how this field applies to cybersecurity, and the one thing organizations need to do to bring the human back into their cybersecurity programs.
** Links mentioned on the show **
Why The Cyber Security Industry Needs to Hire More Anthropologists
https://response-ability.tech/lianne-potter/
Follow Lianne on Social Media
https://twitter.com/Tech_Soapbox
https://www.linkedin.com/in/liannep/
** Watch this episode on YouTube **
https://youtu.be/cDydoWCIIdI
** Thank you to our sponsors! **
Keeper Security
Sign up for a free trial of Keeper Password Management for your organization today, and get a free 3-year personal plan. Get started by visiting Keepersecurity.com/sharedsecurity
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Contact us: https://sharedsecurity.net/contact
The post Rehumanizing Cybersecurity with Lianne Potter appeared first on Shared Security Podcast.

Apr 18, 2022 • 29min
Dumbphone Sales are Soaring, John Oliver Blackmails Congress, Cicada Chinese APT Group
More young people seem to be choosing dumbphones over smartphones, but is it because of privacy concerns or because its trendy? John Oliver, host of the ‘Last Week Tonight’ show, used data brokers to obtain lawmakers’ digital footprints and promised to not release the data as long as Congress passes privacy legislation. Plus details about the Cicada state sponsored Chinese hacking group which hid inside their victims’ networks for nine months.
** Links mentioned on the show **
Dumbphone Sales Are Soaring As People Revolt Against “Overwhelming” Smartphones
https://www.activistpost.com/2022/03/dumbphone-sales-are-soaring-as-people-revolt-against-overwhelming-smartphones.html
https://www.bbc.com/news/business-60763168?_hsenc=p2ANqtz–brM50u-TKJL3hsmOF1uEkSYZ-ZiWY2RuV7Gv_R46XTl5e4CMk7yQ7kf2bup635k-x1JHo
https://www.reddit.com/r/privacy/comments/u106ob/why_have_we_decided_carrying_around/
John Oliver Blackmails Congress With Their Own Digital Data
https://www.rollingstone.com/tv/tv-news/last-week-tonight-john-oliver-recap-season-9-episode-7-congress-data-1335598/
https://www.vice.com/amp/en/article/ne9b3z/how-to-get-off-data-broker-and-people-search-sites-pipl-spokeo
https://en.wikipedia.org/wiki/Video_Privacy_Protection_Act
Here’s a Long List of Data Broker Sites and How to Opt-Out of Them
https://www.vice.com/amp/en/article/ne9b3z/how-to-get-off-data-broker-and-people-search-sites-pipl-spokeo
Big Ass Data Broker Opt-Out List
https://github.com/yaelwrites/Big-Ass-Data-Broker-Opt-Out-List
Full Video – Data Brokers: Last Week Tonight with John Oliver (HBO)
https://youtu.be/wqn3gR1WTcA?t=1300
These sneaky hackers hid inside their victims’ networks for nine months
https://www.zdnet.com/article/these-sneaky-hackers-hid-inside-their-victims-networks-for-nine-months/
Cicada: Chinese APT Group Widens Targeting in Recent Espionage Activity
https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/cicada-apt10-china-ngo-government-attacks
** Watch this episode on YouTube **
** Thank you to our sponsors! **
Keeper Security
Sign up for a free trial of Keeper Password Management for your organization today, and get a free 3-year personal plan. Get started by visiting Keepersecurity.com/sharedsecurity
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Contact us: https://sharedsecurity.net/contact
The post Dumbphone Sales are Soaring, John Oliver Blackmails Congress, Cicada Chinese APT Group appeared first on Shared Security Podcast.

Apr 11, 2022 • 25min
Truths and Myths of Privacy, Fake Shopping Apps, Borat RAT Malware
Scott and Tom explain why privacy isn’t dead, why everyone should care about their privacy, and how you should respond to someone that says “I don’t care about privacy, I have nothing to hide!”. Plus, details on a new attack using fake shopping apps and how a new malware toolkit called “Borat RAT” is no laughing matter.
** Links mentioned on the show **
The truths and myths of privacy (Scott’s blog post)
https://clickarmor.ca/2022/04/the-truths-and-myths-of-privacy/
https://www.reddit.com/r/privacy/comments/tctcxy/how_to_explain_importance_of_privacy_to_common/
https://www.reddit.com/r/privacy/wiki/index/
Three types of online attack (Mikko Hypponen’s TED talk)
https://www.ted.com/talks/mikko_hypponen_three_types_of_online_attack
Hackers Distributing Fake Shopping Apps to Steal Banking Data of Malaysian Users
https://thehackernews.com/2022/04/hackers-distributing-fake-shopping-apps.html
Borat RAT malware: A ‘unique’ triple threat that is far from funny
https://www.zdnet.com/google-amp/article/borat-rat-malware-a-unique-triple-threat-that-is-far-from-funny/
** Watch this episode on YouTube **
https://youtu.be/MPk1yBiQq7c
** Thank you to our sponsors! **
Keeper Security
Sign up for a free trial of Keeper Password Management for your organization today, and get a free 3-year personal plan. Get started by visiting Keepersecurity.com/sharedsecurity
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Contact us: https://sharedsecurity.net/contact
The post Truths and Myths of Privacy, Fake Shopping Apps, Borat RAT Malware appeared first on Shared Security Podcast.


