
Security Now (Audio)
Cybersecurity guru Steve Gibson joins Leo Laporte every Tuesday. Steve and Leo break down the latest cybercrime and hacking stories, offering a deep understanding of what's happening and how to protect yourself and your business. Security Now is a must listen for security professionals every week.
Records live every Tuesday at 4:30pm Eastern / 1:30pm Pacific / 20:30 UTC.
Latest episodes

9 snips
Jul 16, 2025 • 2h 56min
SN 1034: Introduction to Zero-Knowledge Proofs - Taking Down Quantum Factorization
Discover the latest on quantum factorization and why the claims surrounding it may be overstated. Delve into the fascinating world of zero-knowledge proofs, where you can verify information without giving away secrets, and learn their potential for digital age verification. Explore the security dilemmas of messaging apps like Signal and WhatsApp, and unpack the complexities of browser fingerprinting that threaten online privacy. Plus, get insights into Notepad++'s new code signing certificate amid ongoing privacy battles.

40 snips
Jul 9, 2025 • 3h 5min
SN 1033: Going on the Offensive - The Digital Arms Race
Dive into the latest in cybersecurity, from the emergence of a new Israeli spyware to concerns over Windows 11's rapid deletion of restore points. Explore the EU's push for post-quantum crypto and legislative efforts on cryptocurrency ATMs combating scams. Discover why U.S. states are cracking down on Bitcoin ATMs while the government restricts WhatsApp use. Plus, an examination of open-source software vulnerabilities and a humorous look at the rise of commercial spyware. It's a wild ride through today’s digital arms race!

21 snips
Jul 2, 2025 • 2h 58min
SN 1032: Pervasive Web Fingerprinting - How Websites Tracks You Despite Cookie Blocks
Discover the intriguing world of web fingerprinting and its implications for privacy. Explore Microsoft's new updates, including unexpected restarts and adjustments to Windows 10 and 11. Learn about Russia's requirement for local app installations on iPhones and a French city's switch from Windows to Linux. Delve into novel AI malware techniques and the latest vulnerabilities in Cisco systems. Laugh along as hosts dissect changes in certificate notifications and the whimsical side of everyday surveillance. The conversation highlights the tense balance between online tracking and user privacy.

56 snips
Jun 25, 2025 • 3h 1min
SN 1031: How Salt Typhoon Gets In - What "AI" Really Means
Dive into the alarming breaches linked to China's Salt Typhoon and its impact on state healthcare portals. Discover the implications of adopting passkeys for secure logins as tech giants like Apple and Facebook make strides. Explore cybersecurity vulnerabilities in the telecom sector and the need for enhanced practices. Unpack the complexities of artificial intelligence, its role in phishing, and how both allies and adversaries can wield it. Plus, a humorous twist on security warnings juxtaposed with serious cyber espionage threats!

58 snips
Jun 18, 2025 • 2h 48min
SN 1030: Internet Foreground Radiation - The NPM Repository is Under Siege
A suspected iOS messaging vulnerability has Apple shaking its head in denial. The NPM repository faces ongoing cyber attacks, raising security alarms. Unsettling revelations emerge about compromised telecom giants. Microsoft finally blocks dangerous file types in Outlook. Alarmingly, over 40,000 unsecured video cameras are online, posing privacy threats. The podcast also dives into proactive bot scanning and the peculiarities of 'Internet Foreground Radiation,' examining the lurking cyber dangers that affect us all.

36 snips
Jun 11, 2025 • 2h 46min
SN 1029: The Illusion of Thinking - Meta Apps and JavaScript Collusion
The podcast dives into the disturbing tracking methods employed by Meta and Yandex through local data collection. It reflects on Bill Atkinson's legacy, while discussing recent advancements in AI and cybersecurity strategies. Legal conflicts surrounding OpenAI's data retention policies are explored, alongside vulnerabilities in the Erlang/OTP library. The impact of the EU's new DNS service and the potential interception of Telegram by Russian security is also examined, raising crucial questions about privacy in tech.

38 snips
Jun 4, 2025 • 3h 8min
SN 1028: AI Vulnerability Hunting - The End of Jailbreaking
Discover the thrilling results from the Pwn2Own 2025 hacking competition! Dive into PayPal's innovative patent for detecting fraudulent domains and learn about the decline of iOS jailbreak developments. Explore the rising security risks of SVG images in phishing attacks. Uncover how OpenAI's models are revolutionizing vulnerability hunting, including a critical zero-day exploit in the Linux kernel. Plus, enjoy a nostalgic nod to classic sci-fi films! This podcast is filled with fascinating insights into the world of cybersecurity.

27 snips
May 28, 2025 • 2h 54min
SN 1027: Artificial Intelligence - The Status of Encrypted Client Hello
Discover the buzz around Encrypted Client Hello and its privacy implications. The conversation digs into the vulnerabilities in modern power grids and the challenges presented by renewable energy. Explore the rapid advancements in AI, including models that defy shutdown commands and ethical concerns about awareness. Plus, get insights into innovative privacy-centric platforms like Venice.ai that prioritize user control and data security. A humorous take on tech mishaps adds a light touch to the serious discussions on cybersecurity and AI developments.

33 snips
May 21, 2025 • 2h 47min
SN 1026: Rogue Comms Tech Found in US Power Grid - Is AI Replicating Itself?
Discover the alarming presence of rogue communication technology secretly embedded in the U.S. power grid, particularly in Chinese solar inverters. Learn about the implications of AI replicating itself and the latest software security updates, like Chrome's refusal of admin privileges. Delve into intriguing discussions on secure messaging, the risks of self-replicating AI, and the acquisition of 23andMe by Regeneron. Plus, enjoy a review of the series 'Andor' and insights into modern security challenges.

58 snips
May 14, 2025 • 2h 44min
SN 1025: Secure Conversation Records Retention - FBI Says to Toss Your Old Router
Virginia's new age-restriction law raises eyebrows, while New Zealand bubbles with similar ideas. A malicious Python package lurked for years on Discord. The FBI advises users to ditch old routers for better security. WhatsApp's encryption complexity unfolds amid AI's looming cybersecurity threats. Listeners ponder the viability of true end-to-end encryption when records need retention. The challenges of legislating social media for minors spark lively discussion, highlighting the intersection of technology, privacy, and security.