PLAY PODCASTS
Security, Spoken

Security, Spoken

2,086 episodes — Page 20 of 42

Flaws Could Have Exposed Cryptocurrency Exchanges to Hackers

Researchers found troubling bugs in open-source libraries used by financial institutions. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 18, 20208 min

Over a Billion Android Devices Are at Risk of Data Theft

Qualcomm has released a fix for the flaws in its Snapdragon chip, which attackers might exploit to monitor location or render the phone unresponsive. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 17, 20204 min

The Subtle Tricks Shopping Sites Use to Make You Spend More

Through deceptive designs known as “dark patterns,” online retailers try to nudge you toward purchases you wouldn’t otherwise make. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 14, 20209 min

An '80s File Format Enabled Stealthy Mac Hacking

The now-patched vulnerability would have let hackers target Microsoft Office using Symbolic Link—a file type that hasn't been in common use in over 30 years. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 13, 20208 min

Hackers Could Use IoT Botnets to Manipulate Energy Markets

With access to just 50,000 high-wattage smart devices, attackers could make a bundle off of causing minor fluctuations. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 12, 20207 min

The Quest to Liberate $300K of Bitcoin From an Old ZIP File

The story of a guy who wouldn't let a few quintillion possible decryption keys stand between him and his cryptocurrency. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 11, 20208 min

Decades-Old Email Flaws Could Let Attackers Mask Their Identities

Researchers found 18 exploits that take advantage of inconsistencies in the email plumbing most people never think about. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 10, 20209 min

How the Alleged Twitter Hackers Got Caught

Bitcoin payments and IP addresses led investigators to two of the alleged perpetrators in just over two weeks. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 7, 202011 min

How to Spot—and Avoid—Dark Patterns on the Web

You've seen them before: the UX ploys designed to trick you into spending money, or make it nearly impossible to unsubscribe. Here's what to look out for. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 6, 20209 min

Hackers Broke Into Real News Sites to Plant Fake Stories

A disinfo operation broke into the content management systems of Eastern European media outlets in a campaign to spread misinformation about NATO. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 5, 20208 min

AI Helped Uncover Chinese Boats Hiding in North Korean Waters

A combination of technologies helped scientists discover a potentially illegal fishing operation involving more than 900 vessels. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 4, 20208 min

Children Stream on Twitch—Where Potential Predators Find Them

A WIRED investigation found dozens of channels belong to children apparently under 13, and anonymous chat participants sending inappropriate messages their way. Learn about your ad choices: dovetail.prx.org/ad-choices

Aug 3, 202010 min

A Cyberattack on Garmin Disrupted More Than Workouts

A ransomware hit and subsequent outage caused problems in the company's aviation services, including flight planning and mapping. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 31, 20207 min

Russia's GRU Hackers Hit US Government and Energy Targets

A previously unreported Fancy Bear campaign persisted for well over a year—and indicates that the notorious group has broadened its focus. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 30, 20209 min

Apple's Hackable iPhones Are Finally Here

Last year, Apple announced a special device just for hackers. The phone—for approved researchers only—has started to ship. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 29, 20207 min

Thieves Are Emptying ATMs Using a New Form of Jackpotting

The new hardware-based attack, which has targeted machines across Europe, can yield a stream of cash for the attacker. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 28, 20206 min

Twitter Cracks Down on QAnon. Your Move, Facebook

Twitter's new policy won't make the conspiracy group disappear. But experts say it could dramatically reduce its ability to spread. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 27, 20208 min

Russia's Latest Hacking Target: Covid-19 Vaccine Projects

Officials in the three countries believe a state-linked group is trying to steal intellectual property and information about potential vaccine candidates. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 24, 20206 min

A New Map Shows the Inescapable Creep of Surveillance

The Atlas of Surveillance shows which tech law enforcement agencies across the country have acquired. It's a sobering look at the present-day panopticon. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 23, 20207 min

‘DDoS-For-Hire’ Is Fueling a New Wave of Attacks

Turf wars are heating up over the routers that fuel distributed denial of service attacks—and cybermercenaries are running rampant. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 22, 20208 min

Hack Brief: Microsoft Warns of a 17-Year-Old ‘Wormable’ Bug

The SigRed vulnerability exists in Windows DNS, used by practically every small and medium-sized organization in the world. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 21, 20208 min

Google Moves to Secures the Cloud From Itself

Confidential Virtual Machines allows Google Cloud Services Customers to keep data secret—even when it's being actively processed. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 20, 20206 min

Microsoft Halts a Global Fraud Campaign That Targeted CEOs

A sophisticated scheme was designed to trick businesses in more than 60 countries into wiring large sums of money to attackers. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 17, 20206 min

The Super Smash Bros. Community Reckons With Sexual Misconduct Allegations

Dozens of people have come forward over the past week, many pointing to a culture that they say enabled rampant predatory behavior. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 16, 202016 min

Amazon Bans Employees From Using TikTok on Their Phones

US lawmakers have repeatedly raised security concerns over the app's Chinese ownership. Are US businesses next? Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 15, 20205 min

The Worst Hacks and Breaches of 2020 So Far

Iran, China, Russia—the gang was all here in the first half of this year. Oh, and also an unprecedented pandemic that’s been a boon for hackers. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 14, 20209 min

DoNotPay Unsubscribes You From Spam—and Tries to Get You Paid

There's finally a way to get off of email lists with your privacy intact. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 13, 20205 min

Hong Kong's Security Law Puts Big Tech at a Crossroads

As China exerts more power over the city, companies like Facebook and Google have stopped handing over data—for now. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 10, 202010 min

Looks Like Russian Hackers Are on an Email Scam Spree

A group dubbed "Cosmic Lynx" uses surprisingly sophisticated methods—and targets big game. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 9, 20206 min

Hack Brief: Hackers Are Exploiting a 5-Alarm Bug in Networking Equipment

For companies that haven't patched their BIG-IP products, it may already be too late. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 8, 20206 min

Schools Already Struggled With Cybersecurity. Then Came Covid-19

A lack of dedicated funding and resources made it hard to keep data secure—and that was before classes moved almost entirely online. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 7, 20208 min

New Mac Ransomware Is Even More Sinister Than It Appears

The malware known as ThiefQuest or EvilQuest also has spyware capabilities that allow it to grab passwords and credit card numbers. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 6, 20209 min

Google Will Delete Your Data by Default—in 18 Months

Starting today, the search giant will make a previously opt-in auto-delete feature the norm. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 3, 20204 min

Security News This Week: Julian Assange Faces New Conspiracy Allegations

Plus: Evil Corp hacking, an anti-encryption bill, and more of the week's top security news. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 2, 20205 min

Hacker Lexicon: What Is a Side Channel Attack?

Computers constantly give off more information than you might realize—which hackers can use to pry out their secrets. Learn about your ad choices: dovetail.prx.org/ad-choices

Jul 1, 20208 min

How Thousands of Misplaced Emails Took Over This Engineer's Inbox

Kenton Varda gets dozens of messages a day from Spanish-speakers around the world, all thanks to a Gmail address he registered 16 years ago. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 30, 20207 min

A Report Blames ‘CIA Failures’ for the Agency's Worst Hack

A series of WikiLeaks disclosures that exposed a trove of the intelligence organization's secrets could have been avoided, a task force found. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 29, 20206 min

Zoom Reverses Course and Promises End-to-End Encryption for All Users

The video conferencing platform had previously said that only paid accounts would get the feature—a move privacy advocates roundly decried. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 26, 20206 min

The Russian Disinfo Operation You Never Heard About

Secondary Infektion appears to be a distinct effort from the meddling of the IRA and GRU—and it went undetected for years. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 25, 20209 min

Bot Mafias Have Wreaked Havoc in World of Warcraft Classic

Blizzard has suspended or closed over 74,000 accounts in the last month, as bots have upended the game's economy. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 24, 20209 min

Body Cameras Haven't Stopped Police Brutality. Here's Why

Amid worldwide protests over racism and police violence, lawmakers are once again turning to the devices as a tool for reform. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 23, 202011 min

A Legion of Bugs Puts Hundreds of Millions of IoT Devices at Risk

The so-called Ripple20 vulnerabilities affect equipment found in data centers, power grids, and more. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 22, 20208 min

Ex-Ebay Execs Allegedly Made Life Hell for Critics

Surveillance. Harassment. A live cockroach delivery. US Attorneys have charged six former Ebay workers in association with an outrageous cyberstalking campaign. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 19, 202011 min

Coder-Turned-Kingpin Paul Le Roux Gets His Comeuppance

The programmer who became a flagrant drug lord and weapons trafficker was sentenced in New York City to 25 years in prison. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 18, 20209 min

How To Stop Instagram From Tracking Everything You Do

Though the Facebook-owned app doesn't give users complete control, there are ways to limit the data it collects and the types of ads you see. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 17, 20208 min

Spies Can Eavesdrop by Watching a Light Bulb's Vibrations

The so-called lamphone technique allows for real-time listening in on a room that's hundreds of feet away. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 16, 20206 min

Android 11 Will Help You Rein In Zombie App Permissions

The latest update to Google's operating system has a host of privacy and security improvements. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 15, 20205 min

Georgia’s Failure Shows How Not to Run an Election in the Pandemic

Limiting in-person polling sites makes it both harder to vote and more dangerous. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 12, 20206 min

IoT Security Is a Mess. Privacy 'Nutrition' Labels Could Help

Another key aspect of the security and privacy label project is that the information is also encoded to be machine readable. This way, even if different countries or industries develop their own assessment tools, there's still a way to compare and process all the data. The researchers point out that data from the labels could make it easier to search for products by their privacy and security features, creating the potential for these to be mainstream product considerations rather than niche points that are difficult for consumers to research. Ecommerce websites could even offer filters for privacy and security features like they already do for things like price, weight, or screen size. In this way, consumers could make intentional choices about the products they buy, with digital safety as one of the factors.The researchers say that they've had a lot of private-sector and congressional interest in their label. But so far they've only been able to make example labels based on imaginary products or mock up labels for real products based on public data. The researchers are looking for a manufacturer to pilot the labels in a more serious way, with honest information about the products.There is real momentum toward doing these types of tests. Finland, Singapore, and the United Kingdom are all working on national IoT label programs focused on security. And while some IoT security bills have floated around the US Congress, the National Telecommunications and Information Administration within the Department of Commerce is actively working on a similar type of project for software. The idea is to develop a software "bill of materials" that would help the industry keep track of all the different open source and third-party components that go into one single software program or platform."Standardization I think will help, just like the ingredients label on food educates people about how much sugar or sodium they're consuming," says Chris Wysopal, chief technology officer of the software auditing firm Veracode. "Standardizing a software bill of materials would make it more clear to a consumer what they’re getting."The researchers are realistic that for their work to have a long-term impact there would either need to be widespread voluntary adoption of the label by manufacturers or a government mandate to do so. But they say that's why they've designed the label with room for manufacturers to explain their choices to consumers."There may be a really good reason that your thermostat has a microphone, but if the company doesn’t tell you, then you’re shocked," says Lorrie Cranor, director of Carnegie Mellon's usable privacy and security lab. "If they tell you about the microphone up front and explain why that is, then you might say 'Oh, OK, that makes sense.'"Conventional wisdom says that consumers won't typically pay a premium for privacy and security features. The researchers had preliminary findings, though, that an easy-to-read label might help people better understand potential risks and make them more willing to pay more for strong guarantees. It will take more investigation to expand on that finding, and the easiest way to do extensive testing would be for companies to start adopting security and privacy labels on their IoT products. You likely won't be seeing IoT privacy labels on store shelves anytime soon. But the stakes are high enough that something certainly needs to change. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 11, 20206 min

Security News This Week: China and Iran Tried to Hack the Biden and Trump Campaigns

Plus: An iOS zero day, surveillance planes, and more of the week's top security news. Learn about your ad choices: dovetail.prx.org/ad-choices

Jun 10, 20206 min