Hacker Public Radio

HPR4406: SVG Files: Cyber Threat Hidden in Images


Listen Later

This show has been flagged as Clean by the host.

Out of nowhere, my Firefox browser on my Mac mini started

automatically adding every page I visited to my bookmarks. At
first, I thought it was a bug after recent update —maybe a
misconfigured setting or similar. But when I searched for a fix,
Google suggested something alarming: Scan for malware. And guess
what? The source of my trouble turned out to be an 4 SVG files
hiding malicious code.

That’s right—those innocent-looking vector graphics files we use

every day for logos, icons, and web design? They can secretly
carry malware. In my case those were the files, a logos of
reputable delivery companies like deliveroo and JustEat which I
have downloaded while I was updating a website for my client.
Today, we’re breaking down how SVG files are being weaponized, why
they’re so effective, and how to protect yourself.


example of svg file

Provide feedback on this episode.

...more
View all episodesView all episodes
Download on the App Store

Hacker Public RadioBy Hacker Public Radio

  • 4.2
  • 4.2
  • 4.2
  • 4.2
  • 4.2

4.2

34 ratings


More shows like Hacker Public Radio

View all
The Changelog: Software Development, Open Source by Changelog Media

The Changelog: Software Development, Open Source

292 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

373 Listeners

LINUX Unplugged by Jupiter Broadcasting

LINUX Unplugged

265 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

653 Listeners

Curious Cases by BBC Radio 4

Curious Cases

826 Listeners

The Strong Towns Podcast by Strong Towns

The Strong Towns Podcast

426 Listeners

Late Night Linux by The Late Night Linux Family

Late Night Linux

164 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,016 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

177 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

189 Listeners

TechCrunch Daily Crunch by TechCrunch

TechCrunch Daily Crunch

41 Listeners

Strict Scrutiny by Crooked Media

Strict Scrutiny

5,769 Listeners

2.5 Admins by The Late Night Linux Family

2.5 Admins

97 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

136 Listeners

What the Hack? by DeleteMe

What the Hack?

222 Listeners