Smashing Security

Smashing Security

By Graham Cluley

Stories from the world of hacking, cybersecurity, and rogue AI.

Smashing Security isn’t your typical tech podcast. Hosted by cybersecurity keynote speaker and industry veteran Graham Cluley,

... more

  • 4.5
  • 4.5
  • 4.5
  • 4.5
  • 4.5

4.5

315 ratings


Download on the App Store

Best of Smashing Security

The most played episodes among Podcast App listeners.

  1. Number 1: These researchers got drunk to hack an LG TV

    Researchers wanted to test if LG's smart TVs come with any security risks - but their lawyers noticed a snag: the terms and conditions would forbid it. So they came up with a solution. They got plastered before setting up the TV, on the reasoning that you can't be legally bound to a contract you agreed to while drunk. What they discovered will make you look at your TV rather differently... Meanwhile, awful Android malware with the audacious name "Awesome" (in Indonesian) is doing the rounds, stealing your data, demanding a ransom, and then giving you a "jump scare"... Plus, in our featured interview, Andy Hornegold of Intruder explains why the mid-market is where cybercriminals are having the most fun right now - and how AI is helping attackers get from "first foot in the door" to "full ransomware disaster" in less than a working day. All this and more in episode 485 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Lianne Potter. EPISODE LINKS:Revolut handed customer data to fraudsters using government email account - The Record.HBO Max Reddit account compromised to serve ClickFix attacks - The Register.U.S. and UK Launch First-of-Its-Kind Joint Alliance to Dismantle Global Scam Centers - US Dept of Justice.216,000,000 Spy TVs - The LG Smart TV Problem - YouTube.LG TVs Are Capable of Listening to More Than Your Screen, Report Claims - Gizmodo.New Android malware encrypts files, steals data, and harasses victims - Bleeping Computer.Search flags based on colors and attributes - FlagLookup.Killer In The Code podcast.Smashing Security merchandise (t-shirts, mugs, stickers and stuff) SPONSORS:ThreatLocker - Book a demo today and start securing your organisation.Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!Intruder - The depth of a manual pentest, on-demand. Start an AI pentest in minutes - 25% off your first pentest for Smashing Security listeners. SUPPORT THE SHOW: Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser. Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed! FOLLOW THE SHOW: Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes. THANKS: Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Privacy & Opt-Out: https://redcircle.com/privacy

    1h 3min
    Listen Later
  2. Number 2: How websites are tracking you with silence

    When a chap called Matt noticed his Bluetooth headphones wouldn't switch to his phone, he was surprised to realise the reason was a single AliExpress webpage sitting open in his browser - playing nothing at all, at zero volume. And yet somehow his hardware could hear it. Audio fingerprinting is one of the sneakiest tracking tricks on the web. Meanwhile, the intelligence agencies of the "Five Eyes" (not Five Guys) have got together and published advice on how companies should communicate after a cyber attack. The summary? For the love of God, stop calling every breach "sophisticated." All this and more in episode 484 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Danny Palmer. EPISODE LINKS:Hackers demand $2.3M in ransom after breaching Berlin government network - Anadolu.Deux suspects interpellés dans le cadre des enquêtes ouvertes après le piratage du fisc - France Info.Hackers are stealing Claude tokens from subscribers - TechCrunch.AliExpress accused of fingerprinting shoppers with silent audio trick that also muted a dev's headphones - The Register.AliExpress webpage keeping multipoint Bluetooth headphones active with WebAudio fingerprinting - Matt Callaghan’s blog.Audio Fingerprinting: What It Is + How It Works with Web API - Fingerprint.Communicating Under Pressure: Best Practices for Service Providers - CISA.World Stone Skimming Championships.Mind games and a ‘toss master’: world stone skimming contest returns to Scotland after cheating scandal - The Guardian.World Stone Skimming Championships - Every Toss 2025 - YouTube.”The Pirates’ Code: Laws and Life Aboard Ship” by Rebecca Simon - Waterstones.Smashing Security merchandise (t-shirts, mugs, stickers and stuff) SPONSORS:ThreatLocker - Book a demo today and start securing your organisation.Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!Intruder - The depth of a manual pentest, on-demand. Start an AI pentest in minutes - 25% off your first pentest for Smashing Security listeners. SUPPORT THE SHOW: Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser. Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed! FOLLOW THE SHOW: Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes. THANKS: Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Privacy & Opt-Out: https://redcircle.com/privacy

    46min
    Listen Later
  3. Number 3: This AI helps thieves steal your iPhone

    You've had your iPhone stolen. A day later, you get a text from Apple saying they've found it, and a very helpful woman called Alice from Apple Support calls to walk you through recovering it. She's polite. She's professional. But she is not from Apple. She's not even human. And she's about to break into your iPhone. Meanwhile, OpenAI, Anthropic, and Meta have all announced - with varying degrees of drama - that their AI agents have "broken out of the sandbox" and gone hacking. James takes a step back and asks the awkward question: is this really an emergent AI apocalypse, or did they just leave the door open? All this and more in episode 483 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest James Ball. EPISODE LINKS:Hacker leaks GTA VI footage to push a crypto token before pulling off a $270,000 cash-out - Coindesk.ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions - The Hacker News.FulcrumSec claims Manchester Airports hack, theft of 86 GB of data - Bleeping Computer.Mugged for my phone, then locked out of my life - The Times.Exposing AnonyMousKIT: AI-Powered PhaaS Supply Chain - SOCRadar.AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes - Bleeping Computer.Investigating three real-world incidents in our cybersecurity evaluations - Anthropic.The Hugging Face incident and the road ahead - OpenAI.Irregular says ‘human oversight’ responsible for AI sandbox escape incidents - CyberScoop.Control. Ownership. Perspective - Ciaran Martin.Steno: Highly-Secure AI Notetaker for Government & Defence - Steno.Inside the Factory - BBC.Smashing Security merchandise (t-shirts, mugs, stickers and stuff) SPONSORS:ThreatLocker - Book a demo today and start securing your organisation.Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!Intruder - The depth of a manual pentest, on-demand. Start an AI pentest in minutes - 25% off your first pentest for Smashing Security listeners. SUPPORT THE SHOW: Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser. Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed! FOLLOW THE SHOW: Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes. THANKS: Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Privacy & Opt-Out: https://redcircle.com/privacy

    45min
    Listen Later
  4. Number 4: This hacker leaked GTA 6 - and launched their own cryptocurrency

    A hacker calling themselves "CYBERLEEK" has been leaking gameplay footage from GTA 6 ahead of its official reveal this week - but they're not asking Rockstar Games for a ransom. Instead, they've launched their own cryptocurrency, promising to release ever more juicy clips from a virtual strip club... Meanwhile, your smart TV might be doing more than binge-watching Netflix while you sleep. We explore the shadowy world of "residential proxies" - how they end up inside home routers, smart TVs, and IoT devices, and why an entire criminal economy is quietly running through your internet connection. All this and more in episode 482 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Paul Ducklin. EPISODE LINKS:Iranian hackers shut down UK power plant - The Telegraph.Ransomware crook poses as recovery firm to steal payments from fellow extortionists - The Register.The ToxicPanda Never Sleeps: ToxicPanda 2.0 Prepares its Next Strike on Mobile - Zimperium.Technical forensic research and provenance breakdown of the latest August 2026 GTA 6 gameplay leaks and map files. - GitHub.Everything we know about Cyberleek and his GTA VI build - Reddit.Who needs a laptop to hack when you have a Firestick? - Smashing Security.Evading Residential Proxy Networks: Protecting Your Devices from Becoming a Tool for Criminals - FBI.Busted! Rogue VPN provider who co-opted millions into cybercrime - Paul Ducklin.Disrupting the World's Largest Residential Proxy Network - Google Cloud Blog.Google’s Continued Disruption of Malicious Residential Proxy Networks - Google Cloud Blog.TimeGuessr.Scientific Curiosity by Cyril Aydon - Waterstones.Smashing Security merchandise (t-shirts, mugs, stickers and stuff) SPONSORS:ThreatLocker - Book a demo today and start securing your organisation.Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!Black Kite - Read Black Kite's 2026 European Cyber Risk Report to explore the latest ransomware trends, top threat actors, and how supplier breaches are reshaping cyber risk across Europe. SUPPORT THE SHOW: Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser. Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed! FOLLOW THE SHOW: Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes. THANKS: Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Privacy & Opt-Out: https://redcircle.com/privacy

    51min
    Listen Later
  5. Number 5: This is the AI service you should never sign up to

    Would you like access to Anthropic's Claude at 90% off the normal price? All you have to do is redirect your traffic to a mysterious service called "Poison Claude". Only problem is that it's run by fraudsters... Meanwhile, a phishing-as-a-service platform called "Greatness" has come up with something rather nasty: a phishing attack that doesn't need a fake website, a suspicious URL, or your password. Just a real Microsoft login page and a moment of misplaced trust - and the attackers walk off with full access to your emails, your files, and your entire organisation. All this and more in episode 480 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Lianne Potter. EPISODE LINKS:US cloud 'kill switch' is as dangerous as ransomware, European businesses fear - IT Pro.Hardware Wallet Firms Warn of Phishing Surge as Coldcard Losses Near $130M - Decrypt.Belarusian leader of international ransomware scheme known as “Ransom Cartel” sentenced to 16 years in prison - US Department of Justice.Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt - The Hacker News.Free tokens for sale: How fake signups drive AI fraud - Okta.Post by Rory Cellan-Jones - Bluesky.Inside Greatness: Telegram-Distributed M365 AiTM PhaaS - ZeroBEC.Tailscale.RustDesk.League of the Lexicon - Two Brothers Games.Smashing Security merchandise (t-shirts, mugs, stickers and stuff) SPONSORS:NordLayer - the network security platform for modern teams across different work environments. Use code NLSUMMER26 for up to 20% off annual plans.Arctic Wolf - See why 1 in 3 IT assets is missing a critical security control. Download the 2026 State of the Cybersecurity Attack Surface report.Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off! SUPPORT THE SHOW: Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser. Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed! FOLLOW THE SHOW: Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes. THANKS: Theme tune: "Vinyl Memories" by Mikael Manvelyan. Assorted sound effects: AudioBlocks. Privacy & Opt-Out: https://redcircle.com/privacy

    46min
    Listen Later

Smashing Security episodes:

FAQs about Smashing Security:

How many episodes does Smashing Security have?

The podcast currently has 491 episodes available.

More shows like Smashing Security

Hacked by Hacked

Hacked

192 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,013 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

372 Listeners

Risky Business by Risky Business Media

Risky Business

377 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

652 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,029 Listeners

Click Here by Recorded Future News

Click Here

423 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,072 Listeners

Cybersecurity Today by David Shipley

Cybersecurity Today

179 Listeners

Hacking Humans by N2K Networks

Hacking Humans

314 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

191 Listeners

Defense in Depth by CISO Series

Defense in Depth

73 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

138 Listeners

Hacker And The Fed by Chris Tarbell & Hector Monsegur

Hacker And The Fed

167 Listeners

The AI Fix by Mark Stockley

The AI Fix

32 Listeners