Security Now (Audio)

SN 1063: Mongo's Too Easy - AI Bug Bounties Gone Wild


Listen Later

When a popular antivirus and even Notepad++ turn into infection vectors after supply chain breaches, it's clear no software is safe from attack—or from its own update system. Steve and Leo unpack the risks hiding right inside your next auto-update.

  • An anti-virus system infects its own users.
  • Apple's next iOS release "fuzzes" cellular locations.
  • cURL discontinues bug bounties under bogus AI flood.
  • AI discovers and fixes 15 CVE-worthy 0-days in OpenSSL.
  • Ireland did NOT already pass their spying legislation.
  • AI irreversibly deletes all project files. Says it's sorry.
  • Windows has a serious global clipboard security problem.
  • ISPs have the ability to monetize their subscriber's identities.
  • MongoDB has lowered the hacking skill level bar to the floor
  • Show Notes - https://www.grc.com/sn/SN-1063-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to Security Now at https://twit.tv/shows/security-now.

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Join Club TWiT for Ad-Free Podcasts!

    Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit

    Sponsors:

    • threatlocker.com/twit
    • meter.com/securitynow
    • bitwarden.com/twit
    • material.security
    • guardsquare.com
    • ...more
      View all episodesView all episodes
      Download on the App Store

      Security Now (Audio)By TWiT

      • 5
      • 5
      • 5
      • 5
      • 5

      5

      3 ratings


      More shows like Security Now (Audio)

      View all
      Global News Podcast by BBC World Service

      Global News Podcast

      7,830 Listeners

      No Agenda Show by Adam Curry & John C. Dvorak

      No Agenda Show

      5,977 Listeners

      Macworld Podcast by Foundry

      Macworld Podcast

      309 Listeners

      This Week in Tech (Audio) by TWiT

      This Week in Tech (Audio)

      3,062 Listeners

      Security Now (Audio) by TWiT

      Security Now (Audio)

      2,006 Listeners

      MacBreak Weekly (Audio) by TWiT

      MacBreak Weekly (Audio)

      2,014 Listeners

      Intelligent Machines (Audio) by TWiT

      Intelligent Machines (Audio)

      781 Listeners

      Accidental Tech Podcast by Marco Arment, Casey Liss, John Siracusa

      Accidental Tech Podcast

      2,142 Listeners

      LINUX Unplugged by Jupiter Broadcasting

      LINUX Unplugged

      272 Listeners

      The Amp Hour Electronics Podcast by The Amp Hour (Chris Gammell and David L Jones)

      The Amp Hour Electronics Podcast

      230 Listeners

      Smashing Security by Graham Cluley

      Smashing Security

      322 Listeners

      Darknet Diaries by Jack Rhysider

      Darknet Diaries

      8,116 Listeners

      Tech Brew Ride Home by Morning Brew

      Tech Brew Ride Home

      972 Listeners

      This Week in Space (Audio) by TWiT

      This Week in Space (Audio)

      163 Listeners

      Risky Bulletin by risky.biz

      Risky Bulletin

      44 Listeners