Mostly Security nyilvános
[search 0]
Több
Download the App!
show episodes
 
Artwork

1
Mostly Security

Jon King and Eric Wuehler

icon
Unsubscribe
icon
icon
Unsubscribe
icon
Heti
 
From commentary on current events to random musings, they chat (mostly) about security and technology topics. However, life is more than just the day job, there's always something fun to wrap up the show.
  continue reading
 
Loading …
show series
 
Eric goes out to eat, Jon gets powertools. Arrests at Coinbase outsourcing firm. Six Cybersecurity predictions for 2026. Eric finds a personally nostalgic TV show and Jon looks back on the scientific discoveries of 2025. 0:00 - Introduction 10:46 - Inside Job at Coinbase 13:59 - Cybersecurity Forecast 19:56 - Untamed 22:31 - Significant Scientific …
  continue reading
 
Eric and Jon are both fully prepped for the holiday. Flock leaves (many) cameras including control panels open and exposed to the open internet, what if more malicious npm packages worked as advertised, and Microsoft is finally disabling rc4 by default in Active Directory. For fun we have two movies for holiday watching: F1: The Movie, and Howl's M…
  continue reading
 
Jon's car may or may not be fixed. Eric didn't go to Disneyland. Android is making in-call scam protection better. AI is creating a Blessing of Unicorns. Parked Domains keep scammers alive. Space is getting crowded. Word of the Year - Slop. 0:00 - Introduction 6:38 - In Call Scam Protection 10:21 - A Blessing of Unicorns 13:15 - Parked Domains are …
  continue reading
 
Christmas in full swing at both Eric and Jon's places. Less secure certificate validation mechanisms being deprecated, and SEO of AI chats to deploy ClickFix style lures for Stealer installation. For fun we have a shockingly good way to avoid motion sickness in VR, and a promising Leukemia treatment using gene therapy. 0:00 - Intro 9:28 - Weak Vali…
  continue reading
 
Eric tracks hack attempts and Jon trades blood for pinball. Shai-Hulud is back, Calendly invite scam, Rust for good and evil. Giving Machines for the holiday season and Spores in Space! 0:00 - Introduction 13:48 - Shai-Hulud is back 16:59 - Calendly Invite Scam 19:11 - Rust for Good and Evil 24:33 - Giving Machines 28:00 - Spores in Space…
  continue reading
 
Eric and Jon prep for Thanksgiving. Will blue and green bubbles coexist in peace and harmony? Will the airlines stop sharing flight data with the IRS? And is monitoring every car, everywhere, at all times 'unreasonable search'? ¯\_(ツ)_/¯ Have some Ozone and a Honey chaser. 0:00 - Intro 8:11 - QuickShare + AirDrop 12:14 - Travel Intelligence Program…
  continue reading
 
This week's roundup features a mix of personal updates, major tech news, and scientific intrigue. Eric is super late to the Minecraft party while Jon gets his bushes trimmed. In tech, a massive WhatsApp security flaw exposed data for up to 3.5 billion users, while Google announced the release of Gemini 3 Pro and the new "Deep Think" reasoning mode.…
  continue reading
 
Eric goes to Nateland and Jon goes flying. Another javascript worm, and automatic license plate reader records declared public in Washington. For fun we have a repo of annual security reports and Jon suffering memory loss and search ineptitude, but fig wasps are still cool. 0:00 - Intro 17:20 - Glassworm 21:50 - Conclusions of Law 28:55 - Nate Barg…
  continue reading
 
Eric drills a door and Jon disagrees and commits to an electrical fix. Aisuru makes the Cloudflare Top 10. The Louvre had a bad week, while furniture trucks had a good one. Gemini used to write malware. Rivers in Alaska are orange. 0:00 - Introduction 14:11 - Aisuru makes the Top 10 16:25 - Louvre Password 20:03 - PROMPTFLUX 24:12 - The Böcker Agil…
  continue reading
 
Remote Eric Assist and Jon enjoys ... hockey(??). More prompt injections, the most damaging UK cyber event (so far), and residential proxy use for fun and training data. Will Agentic AI bring back micropayments, and how is Costco's pumpkin pie so good? 0:00 - Intro 10:47 - Death, Taxes, and Prompt Injections 16:56 - Economically Damaging 19:32 - Ve…
  continue reading
 
Family weekends for Eric and Jon. A new side channel for pixel sniffing on Android, malware abusing github + steganography for configuration, and Apple doubles many of its security bounties. For fun, long live(d) the naked mole rat, and warp drives move from the irrational (negative energy ftw!) to the theoretically possible. 0:00 - Intro 8:55 - Pi…
  continue reading
 
This was almost "The Quiet Episode" after some audio challenges, amazing what technology can hide... Eric gets back in town just in time to leave town. Jon goes to a bookstore. The UK is still trying to get Apple to create a backdoor. OpenAI talked about malicious use of AI. ShinyHunters are back. Pristine Stars are a thing and Powell's City of Boo…
  continue reading
 
Eric is traveling and Jon is repairing. Coordinated arrests of scammers across Africa, the world's first malicious MCP server (is super simple), the release of the Sony CD player 43 years ago, and CRISPR modified yeast to create pollen substitute for the bees. 0:00 - Intro 10:27 - Operation Contender 3.0 17:13 - BCC Postmark 23:02 - Sony History 27…
  continue reading
 
This past weekend, Eric was forgetfully productive. Meanwhile, Jon moved a child into the dorms and battled some radiator problems. On other fronts, AI agents got duped, and self-replicating worms made their way through NPM. Good news: Entra ID tenants dodged a major security event. For a bit of nostalgia, Eric whipped up some lemon bars, and Jon c…
  continue reading
 
Eric updates the mostlysecurity.com vibe. Jon jars honey. Plex asks users to change their passwords. iPhone 17 has new security features. Not to be outdone numerically, 18 Javascript packages were compromised. Eric plays with epoxy and glitter, while Jon reminisces of Perl. 0:00 - Introduction 15:33 - Plex Passwords 20:09 - iPhone 17 Security 25:58…
  continue reading
 
Eric returns and Jon has a flat tire. Kuiper achieves a gigabit, Google releases fixes for 84 vulns in android, and prompt injection in Comet, Perplexity's AI browser. The Pixel 10 has a crazy good camera, and the third interstellar object ever discovered. 0:00 - Intro 10:02 - Followup 13:13 - Limited Targeted Exploitation 16:00 - Comet Injection 2…
  continue reading
 
Eric plays with epoxy resin, Jon has a new calf. Cybersabotage on your ex-employer will get you 4 years. There are 1200 fewer robocallers thanks to the FCC. Password manager plugins for web browsers can be fooled. The Commodore 64 is back and really old honey is discovered in Italy. 0:00 - Introduction 8:53 - Four Years 10:22 - Robocall Roundup 12:…
  continue reading
 
Eric prints and Jon fixes washer. The Noodlophile stealer propagates via legal infringement claims, and portal auth issues allow control of connected cars. For fun we have book four of the Lady Astronaut series, and using generative AI to create targeted antibiotics for drug resistant diseases. 0:00 - Intro 12:32 - Noodlophile 16:51 - Automotive Au…
  continue reading
 
Eric makes it home from vacation, Jon goes fishing. Tough time to be graduating in Computer Science. DrawAFish.com security incident. AOL discontinues down dial up service. Mendenhall Glacier makes the local news. 0:00 - Introduction 8:24 - Tough Times in Tech 14:34 - Draw A Fish 21:48 - AOL Dial Up 25:06 - Mendenhall Glacier…
  continue reading
 
Eric's on vacation and Jon wrangles cows. Cloudflare accuses perplexity of stealth scraping tactics, Google tweaks their disclosure policy, Microsoft studies AI impact on jobs, and OpenAI shared chats disclose a little (lot) too much. For fun, how about a hike in the Tetons, and Potatoes from Tomatoes. 0:00 - Intro 11:55 - Stealth Bots 16:24 - Disc…
  continue reading
 
Eric has a problem with "smart" smoke alarms. Jon feeds happy cows round bales of hay (but not the fermented kind). Debian making 64 bit time work with 32 bits. A woman is unaware she is working for North Korea. Eric plays tower defense with CSS. Jon finds scarecrow spiders. 0:00 - Introduction 11:31 - 64bit time in 32bit parts 17:30 - It's totally…
  continue reading
 
Eric publishes a book, and Jon is trepidacious. The National Nuclear Security Administration is affected by the Sharepoint attack, and DNS is used as a file transfer system. Amazon buys Bee (Echo, coming soon to a wrist near you), and we're one step closer to a universal cancer vaccine. 0:00 - Intro 14:29 - Nuclear Sharepoint 18:54 - It's Always DN…
  continue reading
 
Eric gets new doors (almost) and Jon gets A/C. Amazon launches more Kuiper satellites with the help of SpaceX. You can use Passkeys to encrypt files and Android get's Gemini whether the user wants it or not. GPS is not the only location game in town and lots of mammals evolved into ant eaters? 0:00 - Introduction 12:22 - Kuiper Satellites 14:56 - P…
  continue reading
 
A 4th of July was had by both. An extension hijacking campaign that infected as many as 2.3 million users and software to protect the small web from AI scrapers with computational overhead. For fun we have car tipping (off a cliff!?), and evidence for even more water on Mars. 0:00 - Intro 13:06 - Hijacking Campaign 16:33 - Weighing the Soul of the …
  continue reading
 
Hay is Jon's nemesis and Eric has pictures taken. Cloudflare blocks AI Bots by default. After 7 years, Ubuntu disables Spectre protections. ERYAT (Eric reserves yet another truck) and stumbles nostagically across Make Magazine. Jon finds a 4,800 year old Egyptian. 0:00 - Introduction 6:27 - Cloudflare blocks AI Bots 11:19 - Ubuntu minus Spectre 18:…
  continue reading
 
Eric paints and Jon drives. SparkKitty is a new mobile malware searching photo libraries for crypto passphrases, and when is a 16 billion password breach not a breach. Honda has been quietly working on its own rocket, and the JWST images its first new exoplanet. 0:00 - Intro 7:55 - SparkKitty 12:06 - Not a New Breach 16:09 - Honda Rocket 19:02 - JW…
  continue reading
 
Ex? Un? Post? Father's Day activities and Eric tries Vibe Coding. Gemini 2.5 is out of beta. Phone wallets can(?) be hacked. Italy loses its Paragon license. Spaceballs 2! A microbe may be evolving into virus. 0:00 - Introduction 10:34 - Gemini 2.5 14:03 - Phone Wallets 17:58 - Paragon Spyware != Italy 23:53 - Spaceballs 2! 26:54 - Microbe Evolutio…
  continue reading
 
Summer is here. WWDC has ... liquid glass? And many android features, evidently. Vibe coding is the "remarkably insecure" inevitable future, and a simple (dumb?) github policy bypass. For fun there's a new season of Phineas and Ferb on Disney+, and researchers discover a way to fully expose HIV in white blood cells. 0:00 - Intro 8:09 - WWDC 13:08 -…
  continue reading
 
Graduation and Spring Cleaning. Solar Power systems on the internet. Oregon bans the sale of user's (precise) location data. IRS Direct File both in limbo and on GitHub. A Japanese company sets itself up for "third times a charm" landing on the moon and a brain-computer interface is tested on humans. 0:00 - Introduction 10:53 - Solar Power Exposed …
  continue reading
 
Springtime work and bathroom 'renovations'. Why prompts are the new IOCs and a tool to detect malicious prompts, a guilty plea in the PowerSchool breach from last year, and sanctions against a Philippines based company involved in pig butchering scams. For fun we have the Tianwen-2 launch to collect asteroid samples, and a desktop UV printer on kic…
  continue reading
 
Eric solves a printing problem with money, Jon follows a band and gardens. Google uses ART to attack Gemini, o2 fixes an oopsie, genetically modified spiders produce red fluorescent silk, and Harvard's copy of the Magna Carta isn't what they originally thought. 0:00 - Introduction 9:56 - Attacking Gemini 14:36 - o2 Data Leak 21:28 - Gene Edited Spi…
  continue reading
 
Mother's Day door painting and flower planting. The damages for the NSO hack of WhatsApp (6 years ago!) are now in, how passkeys work, and the breach of the Signal Clone in widespread use by the US Government. A Soviet satellite launched more than 50 years ago crashes back to earth (Finally?!), and livestreaming a volcano off the Oregon coast. 0:00…
  continue reading
 
Eric and Jon both had very boring* weekends. Reckless Rabbits and Scattered Spiders discussed along with xAI private keys. Amazon achieves space pinecone and astrophysicists track down the origin of heavy metals (well, some of them, at least). 0:00 - Introduction 7:04 - Reckless Rabbit 10:56 - Scattered Spider 13:53 - xAI Private Keys 17:54 - Kuipe…
  continue reading
 
Jon mows and auctions, Eric's thinking of game development. Misuses of Claude, World Passkey Day, and the FBI's IC3 report of scam impact in 2024. For fun we have the 'blank slate' -- a small EV truck coming soon, and making geometry dash with redstone in vanilla minecraft. 0:00 - Introduction 10:51 - Claude Misuse 15:48 - World Passkey Day 19:54 -…
  continue reading
 
Jon farms and Eric drives. Apple case in the UK won't be secret, don't blow up systems on your way out the door, and CVE gets a new maintainer. Ramp meters proven to work, and who doesn't need a little carrot cake in their life? 0:00 - Intro 7:40 - Sunlight, Please? 9:23 - (Bad) Mic Drop 13:12 - To CVE or not to CVE 19:55 - Ramp Meters FTW 24:57 - …
  continue reading
 
Jon and Eric mull over a new podcast idea, Door Talk. Eric looks forward to a drive and Jon has bees, seedlings, and fond memories of an Explorer. AI is making password hacking easier while Patch Tuesday slides through with plenty of folks riding side-saddle. Question: Is bringing back extinct species a Good Thing? 0:00 - Introduction 9:59 - Go for…
  continue reading
 
Jon returns from spring break, and Eric's getting (house) improvements done. Bezos' Kuiper project has to launch a lot of satellites in the next year, Wikimedia's bot problem and AI data poisoning projects, is there actually a Signal vulnerability, and 23 and Me's bankruptcy declaration. For fun we have the Artemis 2 patch reveal, and a (RISC-V com…
  continue reading
 
Eric and Jon do #notMuch over the weekend; Apple's hearing over ADP begins, AI Search (referrals) are growing rapidly, Apple will support e2ee RCS (blue+green=teal?), and now (not?) to roll back CISA firings. Eric enjoys Real (Tasty) Ramen, and maybe we can regrow our teeth in a couple years. 0:00 - Intro 8:05 - Closed Door Tribunal 10:05 - AI Sear…
  continue reading
 
Jon takes care of bees and Eric finds AI fun in his spam folder. Apple declines to comment while hackers launder more crypto. Beware of Trump-themed cryptocurrency scams and knock-off Android TV boxes. Eric drops another reservation fee on an "ugly" vehicle while Jon makes swords. For middleschoolers. What could possibly go wrong. 0:00 - Introducti…
  continue reading
 
Eric tidies and Jon may have two hives. A US Army soldier is arrested in relation to the AT&T breach last year, scam compounds are using Starlink, and a huge info stealer dump loaded into HIBP. For fun we have the next step in cloning a mammoth ... gene edited mice, and potential genetic factors in how Greenland sharks live for more than 400 years.…
  continue reading
 
Eric finishes a magic puzzle and Jon checks in on his bees. GitHub hosts GitVenom while a TraderTraitor "borrows" more cryptocurrency. Apple drops its Advanced Data Protection in the UK but not because it wanted to. Eric finds fun things to print and Jon watches Gaia disappear. 0:00 - Introduction 11:12 - GitVenom 15:54 - TraderTraitor 18:59 - Appl…
  continue reading
 
Eric on the road, Captain America, Power Drama, and Civ7 impressions. Do we need an American Salt Typhoon? Does Argentina need to pump & dump crypto? Maybe we should all eat some frozen custard and make sure to recycle (our car batteries). 0:00 - Intro 14:29 - Hack Back? 19:53 - Meme Coin Drama 24:27 - Frozen Custard 27:32 - Units Matter…
  continue reading
 
Eric is on a roadtrip, Jon watched the Super Bowl. Mozilla is still using a partner not aligned to their values. Google updated their AI principles. Mandiant posts about Cybercrime. Its always DNS, oops, I mean S3 Buckets. Neutrino detection is a thing and Civilization VII is out! 0:00 - Introduction 8:38 - Mozilla Win-Win 10:41 - Google's Updated …
  continue reading
 
Eric has a mysteriously good interaction with Government, and Jon says goodbye to the Explorer. The US Copyright Agency publishes reports about AI and copyright, and Google publishes a report about misuse of Gemini by bad actors. For fun we have the Magic Puzzle Company and the benefits (for Astrolab) and consequences of having Astrobotic's first m…
  continue reading
 
Eric has no memory while Jon recounts his iPad replacement travails. DeepSeek garners unwanted attention while Change Healthcare leaks your data. The Bennu asteroid reveals the building blocks of life (aka carbon) and Endurance's history is explored. 0:00 - Introduction 14:14 - DeepSeek Attention 18:00 - Change Healthcare Breach 21:54 - Bennu Aster…
  continue reading
 
Eric tidies the nest and Jon putters about. Stackoverflow down to 2009 question volume and Texas sues Allstate for their data collection and use practices. Hubble's 10 year compilation of the Andromeda galaxy, and regenerative agriculture restoring arid lands in Africa. 0:00 - Intro 12:19 - Stack Overflow Decline 21:08 - (Illegal?) Insurance Analyt…
  continue reading
 
Loading …

Gyors referencia kézikönyv

Hallgassa ezt a műsort, miközben felfedezi
Lejátszás