Security Now (Audio) – Details, episodes & analysis
Podcast details
Technical and general information from the podcast's RSS feed.

Security Now (Audio)
TWiT
Frequency: 1 episode/7d. Total Eps: 165

Recent rankings
Latest chart positions across Apple Podcasts and Spotify rankings.
Apple Podcasts
🇨🇦 Canada - technology
27/07/2025#73🇬🇧 Great Britain - technology
27/07/2025#61🇺🇸 USA - technology
27/07/2025#55🇨🇦 Canada - technology
26/07/2025#60🇬🇧 Great Britain - technology
26/07/2025#48🇩🇪 Germany - technology
26/07/2025#89🇺🇸 USA - technology
26/07/2025#47🇨🇦 Canada - technology
25/07/2025#70🇬🇧 Great Britain - technology
25/07/2025#68🇩🇪 Germany - technology
25/07/2025#58
Spotify
🇺🇸 USA - technology
11/07/2025#49↗🇺🇸 USA - technology
13/06/2025#47↗🇺🇸 USA - technology
12/06/2025#48↗🇺🇸 USA - technology
11/06/2025#49↗🇺🇸 USA - technology
03/06/2025#50↘🇺🇸 USA - technology
02/06/2025#49→🇺🇸 USA - technology
01/06/2025#49↗
Shared links between episodes and podcasts
Links found in episode descriptions and other podcasts that share them.
See all- https://twit.tv/clubtwit
674 shares
- https://twit.tv/people/leo-laporte
325 shares
- https://twit.tv/people/mikah-sargent
153 shares
RSS feed quality and score
Technical evaluation of the podcast's RSS feed quality and structure.
See allScore global : 69%
Publication history
Monthly episode publishing history over the past years.
SN 1026: Rogue Comms Tech Found in US Power Grid - Is AI Replicating Itself?
Episode 1026
mercredi 21 mai 2025 • Duration 02:47:03
- Chrome to actively refuse admin privileges.
- Android Messenger is getting manual key verification.
- Pwn2Own to add AI "pwning" as in-scope attack targets.
- AI has already been found to be replicating.
- Microsoft not killing off Office on Win10 after October.
- 23andMe's asset purchaser revealed.
- Many fun talking points thanks to our listeners.
- Steve's review of "Andor", season 2.
- What's been discovered inside the U.S. power grid
Show Notes - https://www.grc.com/sn/SN-1026-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1028: AI Vulnerability Hunting - The End of Jailbreaking
Episode 1028
mercredi 4 juin 2025 • Duration 03:08:02
- Pwn2Own 2025, Berlin results.
- PayPal seeks a "newly registered domains" patent.
- An expert iOS jailbreak developer gives up.
- The rising abuse of SVG images, via JavaScript.
- Interesting feedback from our listeners.
- Four classic science fiction movies not to miss.
- How OpenAI's o3 model discovered a 0-day in the Linux kernel
Show Notes - https://www.grc.com/sn/SN-1028-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1027: Artificial Intelligence - The Status of Encrypted Client Hello
Episode 1027
mercredi 28 mai 2025 • Duration 02:54:28
- What the status of Encrypted Client Hello (ECH)?
- What radio technology would be best for remote inverter shutdown?
- Some DNS providers already block newly listed domains.
- Knowing when not to click a link can take true understanding.
- Why can losing a small portion of a power grid bring the rest down?
- Where are we in the "AI Hype Cycle" and is this the first?
- Speaking of hype: An AI system resorted to blackmail?
- Why are we so quick to imbue AI with awareness?
- ChatGPT's latest o3 model ignored the order to shutdown.
- Copilot may not be making Windows core code any better.
- Venice.AI is an unfiltered and unrestrained LLM
Show Notes - https://www.grc.com/sn/SN-1027-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1029: The Illusion of Thinking - Meta Apps and JavaScript Collusion
Episode 1029
mercredi 11 juin 2025 • Duration 02:45:36
- In memoriam: Bill Atkinson
- Meta native apps & JavaScript collude for a localhost local mess.
- The EU rolls out its own DNS4EU filtered DNS service.
- Ukraine DDoS's Russia's Railway DNS ... and... so what?
- The Linux Foundation creates an alternative Wordpress package manager.
- Court tells OpenAI it must NOT delete ANYONE's chats. Period! :(
- A CVSS 10.0 in Erlang/OTP's SSH library.
- Can Russia intercept Telegram? Perhaps.
- Spain's ISPs mistakenly block Google sites.
- Reddit sues Anthropic.
- Twitter's new encrypted DM's are as lame as the old ones.
- The Login.gov site may not have any backups.
- Apple explores the question of recent Large Reasoning Models "thinking"
Show Notes - https://www.grc.com/sn/SN-1029-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1032: Pervasive Web Fingerprinting - How Websites Tracks You Despite Cookie Blocks
Episode 1032
mercredi 2 juillet 2025 • Duration 02:57:52
• Let's Encrypt drops its long-running email notifications.
• Microsoft's new "Unexpected Restart Experience".
• Microsoft's response to last year's massive CrowdStrike outage.
• Windows 10's extended service updates will sort of be free.
• Russia-sold iPhones MUST include the RuStore app.
• Lyon, in France, says bye-bye to Windows. Hello to Linux.
• The US Gov gets more serious about memory-safe languages.
• A new unbelievable AI malware scanner evaSion technique.
• A new pair of Cisco 9.8 and 10.0 vulnerabilities.
• The current state of post-Elon government cybersecurity.
• PNGv3, Swift on Android, and the Samsung email purge.
• Andy Weir's "Hail Mary" movie trailer.
• And a close look at the pervasiveness of web browser tracking fingerprinting.
Show Notes - https://www.grc.com/sn/sn-1032-notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1031: How Salt Typhoon Gets In - What "AI" Really Means
Episode 1031
mercredi 25 juin 2025 • Duration 03:00:38
- China's Salt Typhoon claims another victim (or two).
- State healthcare portals are tracking and leaking. No kidding.
- Apple adopts FIDO's Passkeys and other credentials transport.
- Facebook gets Passkey logon.
- TikTok continues ticking for at least another 90 days.
- Canadian telco admits they were infiltrated by Salt Typhoon.
- Microsoft to remove unwanted (and hopefully unneeded) hardware drivers.
- The Austrian government legislates court-warranted message decryption.
- I (Steve) finally get full clarity on what today's "AI" means.
- A deep dive into the Salt Typhoon's operation and how they got in
Show Notes - https://www.grc.com/sn/SN-1031-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1030: Internet Foreground Radiation - The NPM Repository is Under Siege
Episode 1030
mercredi 18 juin 2025 • Duration 02:48:29
- An exploited iOS iMessage vulnerability Apple denies?
- The NPM repository is under siege with no end in sight.
- Were Comcast and Digital Realty compromised? Don't ask them.
- Matthew Green agrees: XChat does not offer true security.
- We may know how Russia is convicting Telegram users.
- Microsoft finally decides to block two insane Outlook file types.
- 40,000 openly available video camera are online. Who owns them?
- Running SpinRite on encrypted drives.
- An LLM describes Steve's (my) evolution on Microsoft security.
- What do we know about the bots that are scanning the Internet?
Show Notes - https://www.grc.com/sn/SN-1030-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1033: Going on the Offensive - The Digital Arms Race
Episode 1033
mercredi 9 juillet 2025 • Duration 03:04:57
- Another Israeli spyware vendor surfaces.
- Win11 to delete restore points more quickly.
- The EU accelerates its plans to abandon Microsoft Azure.
- The EU sets timelines for Post-Quantum crypto adoption.
- Russia to create a massive IMEI database.
- Canada and the UK create the "Common Good Cyber Fund".
- U.S. states crack down on Bitcoin ATMs amid growing scams.
- Congressional staffers cannot use WhatsApp on gov devices.
- LibXML2 and the problems with commercial use of OSS.
- A(nother) remote code execution vulnerability in WinRAR.
- Have-I-Been-Pwned gets a cool data visualization site.
- How is ransomware getting in?
- Windows to offer "safe" non-kernel endpoint security?
- Proactive age verification coming to porn sites. How?
- Canada (also) says "bye bye" to Hikvision.
- Germany will be banning DeekSeek. The whole EU may follow.
- Cloudflare throttled in Russia?
- What must the U.S. do to compete in global exploit acquisition?
Show Notes - https://www.grc.com/sn/SN-1033-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1034: Introduction to Zero-Knowledge Proofs - Taking Down Quantum Factorization
Episode 1034
mercredi 16 juillet 2025 • Duration 02:55:37
- A glorious takedown of quantum factorization.
- Notepad++ signs its own code signing certificate.
- Dennis Taylor has Bobiverse Book 6 on his lap.
- Crypto/ATM machines flat out outlawed.
- Signal vs WhatsApp: Encryption in flight and at rest.
- A close look at browser fingerprinting metrics.
- Rewriting interpreters in memory-safe languages.
- An introduction to zero-knowledge proofs
Show Notes - https://www.grc.com/sn/SN-1034-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors:
SN 1035: Cloudflare's 1.1.1.1 Outage - Bypassing Passkey Protections
Episode 1035
mercredi 23 juillet 2025 • Duration 02:48:02
- Bypassing all passkey protections.
- The ransomware attacks just keep on coming.
- Cloudflare capitulates to the MPA and starts blocking.
- The need for online age verification is exploding.
- Microsoft really wants Exchange Servers to subscribe.
- Russia (further) clamps down on Internet usage.
- The global trend toward more Internet restrictions.
- China can inspect locked Android phones. Use a burner.
- Web shells are the new buffer overflow.
- An age verification protocol sketch.
- What Cloudflare did to create an outage of 1.1.1.1
Show Notes - https://www.grc.com/sn/SN-1035-Notes.pdf
Hosts: Steve Gibson and Leo Laporte
Download or subscribe to Security Now at https://twit.tv/shows/security-now.
You can submit a question to Security Now at the GRC Feedback Page.
For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.
Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit
Sponsors: