POPULARITY
On this week's show special guest co-host Chris Wade, the founder of Corellium turned Cellebrite CTO, joins Patrick Gray and James Wilson to discuss the week's cybersecurity news. They cover: Microsoft has repos owned, GitHub tokens popped, and a new 0day dropped on them Meanwhile, researchers are choosing full disclosure instead of engaging MSRC Meta's AI support agent allowed a staggering 20,000 accounts to be stolen! Apple pulls Russia's MAX messenger from the App Store and disables notifications Anthropic gives the public our first Mythos-class model but it won't do cybersecurity work Stripe and Google Tag Manager used in eCommerce website hack campaign And much, much more! This week's show is brought to you by runZero. HD Moore, runZeros' founder, drops by in this week's sponsor interview to talk about the AI vibe shift. Everyone is very worried about getting owned all of a sudden, and it's really changing the cybersecurity business. This episode is also available on YouTube. Show notes Microsoft Hacked to Deliver Malware to Claude and Gemini Users | 404.feed.press Researcher publishes GitHub token-stealing exploit, blames Microsoft's disclosure process | therecord.media Microsoft Defender 'RoguePlanet' zero-day grants SYSTEM privileges | BleepingComputer Microsoft breaks Patch Tuesday record with 206 vulnerabilities | CyberScoop chompie1337 | X WhatsApp says NSO targeted users with spearfishing attacks in violation of court order | therecord.media Over 20,000 Instagram accounts stolen in Meta AI support hack | BleepingComputer New Apple feature automatically changes your compromised passwords | BleepingComputer Apple removes Russia's state-backed messaging app Max from its store | therecord.media Exclusive: Anthropic's Mythos can exploit new flaws in hours | Anthropic's new model is Mythos on a leash | CyberScoop Anthropic Offers Mythos Upgrade for Cyber Partners and a ‘Safe' Version for the Rest of You | wired.com OpenClaw AI agent found falling for phishing attacks, spills user data | BleepingComputer OpenAI unveils Lockdown Mode to protect sensitive data from prompt injection attacks | TechCrunch Security Hands on with Intelligent Terminal, an AI-powered Windows Terminal | BleepingComputer Seeking Counsel: Ongoing Targeted Campaign Against US Law Firms | Mandiant Check Point warns of zero-day flaw targeted by ransomware affiliate | Cybersecurity Dive ServiceNow discloses security incident exposing customer data | BleepingComputer Credit card theft campaign abuses Stripe to host stolen payment info | BleepingComputer CrowdStrike, Palo Alto Networks defy estimates as AI fuels cyber demand | Cybersecurity Dive The U.S. Military Quietly Turned GPS Into a Global ‘Numbers Station,' Evidence Suggests | 404.feed.press New 'HTTP/2 Bomb' DoS attack crashes web servers in under a minute | BleepingComputer Google has quietly cut staff across its Cloud business | businessinsider.com
SummaryThis episode covers Apple Lockdown Mode's effectiveness against spyware, the Phantom Device attack exploiting Azure AD, and best practices for securing device registration and conditional access policies.----------------------------------------------------YouTube Video Link: https://youtu.be/g68OMWYIc0k----------------------------------------------------Documentation: https://techcrunch.com/2026/03/27/apple-says-no-one-using-lockdown-mode-has-been-hacked-with-spyware/https://cyberpress.org/azure-ad-security-bypass-exploits-phantom-device-registration-and-prt-abuse/----------------------------------------------------Contact Us:Website: https://bluesecuritypod.comBluesky: https://bsky.app/profile/bluesecuritypod.comLinkedIn: https://www.linkedin.com/company/bluesecpodYouTube: https://www.youtube.com/c/BlueSecurityPodcast-----------------------------------------------------------Andy JawBluesky: https://bsky.app/profile/ajawzero.comLinkedIn: https://www.linkedin.com/in/andyjaw/Email: andy@bluesecuritypod.com----------------------------------------------------Adam BrewerTwitter: https://twitter.com/ajbrewerLinkedIn: https://www.linkedin.com/in/adamjbrewer/Email: adam@bluesecuritypod.com
SummaryThis episode covers Apple Lockdown Mode's effectiveness against spyware, the Phantom Device attack exploiting Azure AD, and best practices for securing device registration and conditional access policies.----------------------------------------------------YouTube Video Link: https://youtu.be/g68OMWYIc0k----------------------------------------------------Documentation: https://techcrunch.com/2026/03/27/apple-says-no-one-using-lockdown-mode-has-been-hacked-with-spyware/https://cyberpress.org/azure-ad-security-bypass-exploits-phantom-device-registration-and-prt-abuse/----------------------------------------------------Contact Us:Website: https://bluesecuritypod.comBluesky: https://bsky.app/profile/bluesecuritypod.comLinkedIn: https://www.linkedin.com/company/bluesecpodYouTube: https://www.youtube.com/c/BlueSecurityPodcast-----------------------------------------------------------Andy JawBluesky: https://bsky.app/profile/ajawzero.comLinkedIn: https://www.linkedin.com/in/andyjaw/Email: andy@bluesecuritypod.com----------------------------------------------------Adam BrewerTwitter: https://twitter.com/ajbrewerLinkedIn: https://www.linkedin.com/in/adamjbrewer/Email: adam@bluesecuritypod.com
(Presented by TLPBLACK: A cybersecurity intelligence platform focused on sharing curated, high-sensitivity threat insights and research with trusted security professionals.) Three Buddy Problem - Episode 95: Vigilant Labs director Mark Dowd joins the show to shed light on the state of offensive research, the economics of the exploit market, and why "Mark Dowd in a box" isn't quite the threat the AI hype machine suggests. He talks through the daily stresses of running an offensive shop, how AI is reshaping vulnerability discovery, exploit development, and the pricing of full exploit chains. Plus, thoughts on Lockdown Mode and Apple's MIE, whether mitigations actually work or just push attackers toward less access, the rise of HarmonyOS and the Balkanization of device security, persistence, baseband attacks, GrapheneOS, and Samsung Knox. We discuss customer vetting and OpSec fears, policymakers who've never written an exploit, and the strange afterlife of The Art of Software Security Assessment, the 20-year-old book now possibly training data for the very tools coming for his job. Cast: Mark Dowd, Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu. Timestamps: 0:00 Introductions 4:28 The origin story of Azimuth: why go offensive? 6:26 Stresses of running an offensive research business 12:10 "Mark Dowd in a box" — is AI an existential threat to vuln research? 16:13 Using AI in workflow: frontier models vs. local models 22:05 AI in bug-finding vs. exploit implementation 30:30 Watching AI tear through a firmware backdoor 38:23 Artificial guardrails and the "POC" wall 43:25 Will AI commoditize 0days? The high-end vs. low-end vendor split 57:30 How AI disrupts exploit chain pricing 1:05:18 Does persistence still matter? Should you reboot your phone? 1:09:33 Lockdown Mode, MIE, and Apple's "never been compromised" claim 1:14:25 Do mitigations really work, or are we stuck in an endless loop? 1:23:25 Android vs. iOS vs. Huawei's HarmonyOS Next 1:34:44 Exploit leaks, customer vetting, and OpSec fears 1:41:37 GrapheneOS, Samsung Knox and baseband attacks 1:53:56 Did the exploit market save us from encryption backdoors? 1:55:11 What does the threat-intel community get wrong about vuln research?
In the past week, law enforcement in Florida has issued urgent warnings about a dangerous new prank involving artificial intelligence-generated fake crime videos. According to the Orange County Sheriffs Office, these deepfake videos depict realistic scenes of crimes in progress, tricking officers into real responses. In one case, a person showed a deputy a video appearing to show someone breaking into the officers squad car, prompting an immediate reaction with the deputy placing a hand on his holster. The video was later revealed to be fabricated using artificial intelligence from a simple photo of the vehicle. The Seminole County Sheriffs Office highlighted a similar incident in a popular Tik Tok video, emphasizing that such pranks waste valuable resources and divert attention from actual emergencies.Authorities stress that this trend is not harmless entertainment. The Orange County Sheriffs Office stated clearly that using artificial intelligence to spread misinformation can lead to criminal charges for filing false reports. Officials report at least two confirmed incidents in recent days, and while not yet widespread, they are taking the issue seriously to prevent escalation. Deputies are now advising the public to verify information before contacting law enforcement and to report anyone engaging in these deceptive acts.Meanwhile, researchers at Arizona State University are pushing for global standards to combat the growing challenge of artificial intelligence-generated media. Yang, from the School of Computing and Augmented Intelligence, leads efforts to embed detectable signals, like digital watermarks, into all artificial intelligence-created content. His team notes that people can distinguish fake media from real only about fifty-one percent of the time, akin to random guessing, as reported in a study from the Communications of the Association for Computing Machinery. Projects like Robust Adversarial Concept Erasure and Erase Flow aim to remove harmful or sensitive elements from artificial intelligence models without retraining them entirely, preserving quality while enhancing safety.Google security team has also warned this week about indirect prompt injection attacks on artificial intelligence platforms. These exploits poison data sources that large language models rely on, subtly altering outputs without direct user input, as detailed by Adam Gavish of the Google Generative Artificial Intelligence Security Team. Open Artificial Intelligence introduced Lockdown Mode and elevated risk warnings in Chat GPT to counter prompt injection and data exfiltration risks, according to e Week reports.These developments underscore the urgent need for better detection and regulation as artificial intelligence blurs the line between reality and fabrication.Thanks for tuning in, listeners, please subscribe, and remember this episode was brought to you by Quiet Please podcast networks. For more content like this, please go to Quiet Please dot Ai. Come back next week for more.Some great Deals https://amzn.to/49SJ3QsFor more check out http://www.quietplease.aiThis content was created in partnership and with the help of Artificial Intelligence AI
On this week's show, Patrick Gray, Adam Boileau and James Wilson discuss the week's cybersecurity news. They cover: Those pesky North Koreans shim a backdoor into a 100M-downloads-a-week npm package TeamPCP appear to have ransacked Cisco's source and cloud environments AI is getting legitimately good at being told to “just go find some 0day in this” Kaspersky says Coruna and Triangulation do share code lineage Iranian hackers dump Kash Patel's gmail spool Oh, and of course there's a Citrix Netscaler memory leak being exploited in the wild This week's episode is sponsored by Dropzone AI, who make automated AI SOC analysts. Head honcho Ed Wu explains how they've built pre-canned ‘hunt packs' to lead the AI off into your environment to find weird, interesting and security relevant things. This episode is also available on Youtube. Show notes Google links axios supply chain attack to North Korean group | The Record from Recorded Future News Cisco source code stolen in Trivy-linked dev environment breach chiefofautism on X: "someone at ANTHROPIC just showed CLAUDE finding ZERO DAY vulnerabilities in a live conference demo" h0mbre on X: "Claude is somehow better at kernel exploitation than creating meal plans." Vulnerability Research Is Cooked — Quarrelsome MAD Bugs: vim vs emacs vs Claude - Calif MAD Bugs: Claude Wrote a Full FreeBSD Remote Kernel RCE with Root Shell (CVE-2026-4747) A Risky Biz Experiment: Hunting for iOS 0day with AI - Risky Business Media Security leaders say the next two years are going to be 'insane' | CyberScoop Coruna framework: an exploit kit and ties to Operation Triangulation | Securelist Apple says no one using Lockdown Mode has been hacked with spyware | TechCrunch Reverse engineering Apple's silent security fixes - Calif Jury finds Meta's platforms are harmful to children in 1st wave of social media addiction lawsuits | PBS News Meta and YouTube found liable in social media addiction trial Iranian hackers publish emails allegedly stolen from Kash Patel Iran Us War: 'Legitimate targets': Iran issues warning to US tech firms including Google, Amazon, Microsoft, Nvidia - The Times of India Drop Site on X: "IRGC: From now on, for every assassination, an American company will be destroyed" OSINTtechnical on X: "Starlink shutdowns are forcing Russian troops even deeper into Ubiquiti's ecosystem. " Citrix NetScaler products confirmed to be under exploitation | Cybersecurity Dive CISA tells federal agencies to patch Citrix NetScaler bug by Thursday | The Record from Recorded Future News Using a VPN May Subject You to NSA Spying | WIRED Post reporters called the White House. Their phones showed ‘Epstein Island.' - The Washington Post
- Apple and TechCrunch Remind People About Lockdown Mode - Apple Pushing "Critical Software" Notification to Older iOS Lock Screens - MacBook Neo Deliveries Slip Again - Apple Taps Google Exec for A.I. Marketing Lead - Crunchroll Joins Apple TV Channels - BBC Puts Proms Concert on Apple Vision Pro - Sponsored by NordLayer: Get an exclusive offer - up to 22% off NordLayer yearly plans plus 10% on top with coupon code: macosken-10-NORDLAYER at nordlayer.com/macosken - Catch Ken on Mastodon - @macosken@mastodon.social - Send Ken an email: info@macosken.com - Chat with us on Patreon for as little as $1 a month. Support the show at Patreon.com/macosken
Listen to a recap of the top stories of the day from 9to5Mac. 9to5Mac Daily is available on iTunes and Apple's Podcasts app, Stitcher, TuneIn, Google Play, or through our dedicated RSS feed for Overcast and other podcast players. Sponsored by Backblaze: Backup you can rely on. Save 20% with code 9to5daily. New episodes of 9to5Mac Daily are recorded every weekday. Subscribe to our podcast in Apple Podcast or your favorite podcast player to guarantee new episodes are delivered as soon as they're available. Stories discussed in this episode: Netflix announces price increases for every streaming plan Apple's 50th anniversary finale may feature a legendary headliner Apple products using Lockdown Mode have never been hacked, company confirms Apple hires veteran Google VP to lead AI product marketing Listen & Subscribe: Apple Podcasts Overcast RSS Spotify TuneIn Google Podcasts Subscribe to support Chance directly with 9to5Mac Daily Plus and unlock: Ad-free versions of every episode Bonus content Catch up on 9to5Mac Daily episodes! Share your thoughts! Drop us a line at happyhour@9to5mac.com. You can also rate us in Apple Podcasts or recommend us in Overcast to help more people discover the show.
Parce que… c'est l'épisode 0x732! Shameless plug 31 mars au 2 avril 2026 - Forum INCYBER - Europe 2026 14 au 17 avril 2026 - Botconf 2026 20 au 22 avril 2026 - ITSec Code rabais de 15%: Seqcure15 28 et 29 avril 2026 - Cybereco Cyberconférence 2026 9 au 17 mai 2026 - NorthSec 2026 3 au 5 juin 2026 - SSTIC 2026 19 septembre 2026 - Bsides Montréal 1 au 3 décembre 2026 - Forum INCYBER - Canada 2026 24 et 25 février 2027 - SéQCure 2027 Notes IA ou dans le prisme de la machine Naif Terminator AI agents are ‘gullible' and easy to turn into your minions Documentation can contain malicious instructions for agents AI-Powered Dependency Decisions Introduce, Ignore Security Bugs Using AI to code does not mean your code is more secure Number of AI Chatbots Ignoring Human Instructions Increasing, Study Says OpenClaw is a Security Nightmare Dressed Up as a Daydream Why Email Spam Looks Better Than Usual These Days Lightning-fast exploits mean patch fast, says Cisco Talos Reverse-SynthID - Le filigrane de Gemini mis à nu Anthropic wins preliminary injunction in Trump DOD fight Linux Maintainer Greg Kroah-Hartman Says AI Tools Now Useful, Finding Real Bugs MP victim of AI deepfake fails to get answers from Big Tech La guerre, la guerre, c'est pas une raison pour se faire mal! A Mysterious Numbers Station Is Broadcasting Through the Iran War Why Cyberwarfare Hits Civilian Companies First Iran-linked group Handala hacked FBI Director Kash Patel's personal email account Iran Hacktivists Make Noise but Have Little Impact on War Was the Iran War Caused by AI Psychosis? Souveraineté ou vive le numérique libre! US bans new foreign-made consumer internet routers US cloud giants not invited to Euro digital dosh project Privacy ou cachez ces informations que je ne saurais voir Using a VPN May Subject You to NSA Spying Building an E2E Encrypted Chat Application with LanceDB and libsodium I am the law L'appétit de contrôler les enfants GrapheneOS refuses to comply with new age verification laws for operating systems — group says it will never require personal information Un ingénieur a intégré la vérification d'âge dans Linux, et c'est la panique The Battle Over Chat Control: How EU Governments and the Tech Lobby Are Trying to Overturn Parliament's Vote — A Comprehensive Fact Check End of “Chat Control”: EU Parliament Stops Mass Surveillance in Voting Thriller – Paving the Way for Genuine Child Protection! – Patrick Breyer Meta Loses Trial After Arguing Child Exploitation Was ‘Inevitable' Supreme Court declines to review press freedom case Supreme Court Sides With Internet Provider In Copyright Fight Over Pirated Music European Commission investigating breach after Amazon cloud account hack California Bill Would Require Parent Bloggers To Delete Content of Minors On Social Media Red ou tout ce qui est brisé Apple battling the DarkSword Coruna, DarkSword & Democratizing Nation-State Exploit Kits Apple says no one using Lockdown Mode has been hacked with spyware Threat Insight: “Proofpoint has directly observ…” Apple issues urgent lock screen warnings for unpatched iPhones and iPads DarkSword's GitHub leak threatens to turn elite iPhone hacking into a tool for the masses Voice phishing skyrockets as smooth crims talk their way in Do Emergency Microsoft, Oracle Patches Point to Wider Issues? Popular LiteLLM PyPI Package Backdoored To Steal Credentials, Auth Tokens Bitwarden Doubled Their Price. I'd Already Left. Here's What You Missed. - ByteHaven - Where I ramble about bytes Blue ou tout ce qui améliore notre posture The Most Secure, Modern Computer Might Be A Mac Streamlining secure boot for 26.10 - Project Discussion / Foundations Apple randomly closes bug reports unless you “verify” the bug remains unfixed Google moves post-quantum encryption timeline up to 2029 Security boffins harvest bumper crop of API keys from web Microsoft cracks down on old Windows kernel drivers Divers Remote or not, workers are drifting back toward the city Open source isn't a tip jar – it's time to charge for access Enterprise PCs are unreliable, unpatched, and unloved Security leaders say the next two years are going to be ‘insane' Collaborateurs Nicolas-Loïc Fortin Crédits Montage par Intrasecure inc Locaux réels par Cardo Brussels
Ready for an iPhone security audit? This episode is your personal walkthrough to reclaiming control, explaining not just what each privacy setting does but why changing them actually matters. Discover how hidden iOS settings let you outsmart sneaky trackers that follow you across apps, home networks, and even your own calendar. App permissions: location, tracking, calendars, contacts, health, photos Restricting calendar and photo access for better privacy App access to files, folders, focus modes, and health data Managing smart home and Apple Music permissions Third-party browser passkeys and selective photo sharing Apps controlling reminders and using Apple Wallet features Peripheral and Bluetooth permissions to limit device profiling Camera, microphone, and local network access by apps Motion, fitness, and nearby device tracking permissions Research and sensor data sharing for studies and health Speech recognition and journaling suggestions using device activity Viewing and managing blocked contacts and sharing via Safety Check Safety Check's emergency resets and granular access control Sensitive content warnings for nudity in photos or videos Sharing analytics with Apple and app developers (opt-in controls) Reviewing app transparency logs and network activity reports Accessory connection permissions and security update automation Stolen Device Protection and Lockdown Mode explained Host: Mikah Sargent Download or subscribe to Hands-On Apple at https://twit.tv/shows/hands-on-apple Want access to the ad-free audio and video and exclusive features? Become a member of Club TWiT today! https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: joindeleteme.com/twit promo code TWIT
(Presented by TLPBLACK: High-fidelity threat intelligence and research tools for modern security teams. From curated Passive DNS and real-time C2 monitoring to actionable IOC feeds and daily malware samples, we help defenders detect, hunt, and disrupt threats faster, with seamless integration into SIEM and SOAR workflows.) Matthias Frielingsdorf (co-founder and VP of Research at iVerify) joins the show to discuss the mysterious US government connection to 'Coruna', an iOS exploit kit fitted with 23 exploits across five full chains targeting iPhones iOS 13 through 17.2.1. We talk about a "gut feeling" connecting this to the L3 Trenchant/Peter Williams exploit sale scandal, how a nation-state-grade exploit kit ended up in the hands of a Chinese cybercrime group chasing crypto wallets, and what it means that criminal organizations are now deploying iPhone zero-days at scale. Matthias walks through what iVerify can and can't do on Apple's locked-down platform, why he thinks Apple needs to give defenders more access, the Lockdown Mode debate, the thorny issue of sample sharing in the research community, and practical advice for everyday iPhone users facing a threat landscape that just got a lot more complicated.
Ready for an iPhone security audit? This episode is your personal walkthrough to reclaiming control, explaining not just what each privacy setting does but why changing them actually matters. Discover how hidden iOS settings let you outsmart sneaky trackers that follow you across apps, home networks, and even your own calendar. App permissions: location, tracking, calendars, contacts, health, photos Restricting calendar and photo access for better privacy App access to files, folders, focus modes, and health data Managing smart home and Apple Music permissions Third-party browser passkeys and selective photo sharing Apps controlling reminders and using Apple Wallet features Peripheral and Bluetooth permissions to limit device profiling Camera, microphone, and local network access by apps Motion, fitness, and nearby device tracking permissions Research and sensor data sharing for studies and health Speech recognition and journaling suggestions using device activity Viewing and managing blocked contacts and sharing via Safety Check Safety Check's emergency resets and granular access control Sensitive content warnings for nudity in photos or videos Sharing analytics with Apple and app developers (opt-in controls) Reviewing app transparency logs and network activity reports Accessory connection permissions and security update automation Stolen Device Protection and Lockdown Mode explained Host: Mikah Sargent Download or subscribe to Hands-On Apple at https://twit.tv/shows/hands-on-apple Want access to the ad-free audio and video and exclusive features? Become a member of Club TWiT today! https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: joindeleteme.com/twit promo code TWIT
Ready for an iPhone security audit? This episode is your personal walkthrough to reclaiming control, explaining not just what each privacy setting does but why changing them actually matters. Discover how hidden iOS settings let you outsmart sneaky trackers that follow you across apps, home networks, and even your own calendar. App permissions: location, tracking, calendars, contacts, health, photos Restricting calendar and photo access for better privacy App access to files, folders, focus modes, and health data Managing smart home and Apple Music permissions Third-party browser passkeys and selective photo sharing Apps controlling reminders and using Apple Wallet features Peripheral and Bluetooth permissions to limit device profiling Camera, microphone, and local network access by apps Motion, fitness, and nearby device tracking permissions Research and sensor data sharing for studies and health Speech recognition and journaling suggestions using device activity Viewing and managing blocked contacts and sharing via Safety Check Safety Check's emergency resets and granular access control Sensitive content warnings for nudity in photos or videos Sharing analytics with Apple and app developers (opt-in controls) Reviewing app transparency logs and network activity reports Accessory connection permissions and security update automation Stolen Device Protection and Lockdown Mode explained Host: Mikah Sargent Download or subscribe to Hands-On Apple at https://twit.tv/shows/hands-on-apple Want access to the ad-free audio and video and exclusive features? Become a member of Club TWiT today! https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: joindeleteme.com/twit promo code TWIT
Ready for an iPhone security audit? This episode is your personal walkthrough to reclaiming control, explaining not just what each privacy setting does but why changing them actually matters. Discover how hidden iOS settings let you outsmart sneaky trackers that follow you across apps, home networks, and even your own calendar. App permissions: location, tracking, calendars, contacts, health, photos Restricting calendar and photo access for better privacy App access to files, folders, focus modes, and health data Managing smart home and Apple Music permissions Third-party browser passkeys and selective photo sharing Apps controlling reminders and using Apple Wallet features Peripheral and Bluetooth permissions to limit device profiling Camera, microphone, and local network access by apps Motion, fitness, and nearby device tracking permissions Research and sensor data sharing for studies and health Speech recognition and journaling suggestions using device activity Viewing and managing blocked contacts and sharing via Safety Check Safety Check's emergency resets and granular access control Sensitive content warnings for nudity in photos or videos Sharing analytics with Apple and app developers (opt-in controls) Reviewing app transparency logs and network activity reports Accessory connection permissions and security update automation Stolen Device Protection and Lockdown Mode explained Host: Mikah Sargent Download or subscribe to Hands-On Apple at https://twit.tv/shows/hands-on-apple Want access to the ad-free audio and video and exclusive features? Become a member of Club TWiT today! https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: joindeleteme.com/twit promo code TWIT
Ready for an iPhone security audit? This episode is your personal walkthrough to reclaiming control, explaining not just what each privacy setting does but why changing them actually matters. Discover how hidden iOS settings let you outsmart sneaky trackers that follow you across apps, home networks, and even your own calendar. App permissions: location, tracking, calendars, contacts, health, photos Restricting calendar and photo access for better privacy App access to files, folders, focus modes, and health data Managing smart home and Apple Music permissions Third-party browser passkeys and selective photo sharing Apps controlling reminders and using Apple Wallet features Peripheral and Bluetooth permissions to limit device profiling Camera, microphone, and local network access by apps Motion, fitness, and nearby device tracking permissions Research and sensor data sharing for studies and health Speech recognition and journaling suggestions using device activity Viewing and managing blocked contacts and sharing via Safety Check Safety Check's emergency resets and granular access control Sensitive content warnings for nudity in photos or videos Sharing analytics with Apple and app developers (opt-in controls) Reviewing app transparency logs and network activity reports Accessory connection permissions and security update automation Stolen Device Protection and Lockdown Mode explained Host: Mikah Sargent Download or subscribe to Hands-On Apple at https://twit.tv/shows/hands-on-apple Want access to the ad-free audio and video and exclusive features? Become a member of Club TWiT today! https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: joindeleteme.com/twit promo code TWIT
Apple is scaling back its plans for its AI-based health coach service. Could Apple's next AirPods Pro come with cameras in them? The iPhone 17 Pro Max has the best battery life out of a plethora of other smartphones! And Apple's Lockdown Mode helped prevent the FBI from accessing a WaPo reporter's iPhone. Apple is scaling back plans for new AI-based health coach service. Apple's next AirPods Pro will come with cameras, says leaker. Leak suggests Apple's M5 Pro and M5 Max may be the same chip. NASA changes its mind, will allow Artemis astronauts to take iPhones to the Moon. Google & Apple CEOs offer seemingly contradictory statements regarding AI partnership. New Alexa's issues are already making some users return to old Siri. New Apple-backed AI model can generate sound and speech from silent videos. iPhone 17 Pro Max has the best battery life of 35 smartphones tested. Last week on my Mac: Why E cores make Apple silicon fast. FBI couldn't get into WaPo reporter's iPhone because it had Lockdown Mode enabled. Oura's FDA lobbying benefits Apple Watch, if everyone's smart about the risks. Apple Music Replay 2026 now live, here's how to find it. Ferrari's new Jony Ive–designed EV is swathed in glass and aluminum. Applications are now open for the 2026 Swift Student Challenge -- but hurry. Apple Arcade's 'Civilization VII' is good, but falls short of greatness Picks of the Week Dan's Pick: Ponies on Peacock Leo's Pick: Moody Andy's Pick: Hourly Comic Day 2026 Jason's Pick: Curling Hosts: Leo Laporte, Andy Ihnatko, and Jason Snell Guest: Dan Moren Download or subscribe to MacBreak Weekly at https://twit.tv/shows/macbreak-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsor: zocdoc.com/macbreak
Apple is scaling back its plans for its AI-based health coach service. Could Apple's next AirPods Pro come with cameras in them? The iPhone 17 Pro Max has the best battery life out of a plethora of other smartphones! And Apple's Lockdown Mode helped prevent the FBI from accessing a WaPo reporter's iPhone. Apple is scaling back plans for new AI-based health coach service. Apple's next AirPods Pro will come with cameras, says leaker. Leak suggests Apple's M5 Pro and M5 Max may be the same chip. NASA changes its mind, will allow Artemis astronauts to take iPhones to the Moon. Google & Apple CEOs offer seemingly contradictory statements regarding AI partnership. New Alexa's issues are already making some users return to old Siri. New Apple-backed AI model can generate sound and speech from silent videos. iPhone 17 Pro Max has the best battery life of 35 smartphones tested. Last week on my Mac: Why E cores make Apple silicon fast. FBI couldn't get into WaPo reporter's iPhone because it had Lockdown Mode enabled. Oura's FDA lobbying benefits Apple Watch, if everyone's smart about the risks. Apple Music Replay 2026 now live, here's how to find it. Ferrari's new Jony Ive–designed EV is swathed in glass and aluminum. Applications are now open for the 2026 Swift Student Challenge -- but hurry. Apple Arcade's 'Civilization VII' is good, but falls short of greatness Picks of the Week Dan's Pick: Ponies on Peacock Leo's Pick: Moody Andy's Pick: Hourly Comic Day 2026 Jason's Pick: Curling Hosts: Leo Laporte, Andy Ihnatko, and Jason Snell Guest: Dan Moren Download or subscribe to MacBreak Weekly at https://twit.tv/shows/macbreak-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsor: zocdoc.com/macbreak
Apple is scaling back its plans for its AI-based health coach service. Could Apple's next AirPods Pro come with cameras in them? The iPhone 17 Pro Max has the best battery life out of a plethora of other smartphones! And Apple's Lockdown Mode helped prevent the FBI from accessing a WaPo reporter's iPhone. Apple is scaling back plans for new AI-based health coach service. Apple's next AirPods Pro will come with cameras, says leaker. Leak suggests Apple's M5 Pro and M5 Max may be the same chip. NASA changes its mind, will allow Artemis astronauts to take iPhones to the Moon. Google & Apple CEOs offer seemingly contradictory statements regarding AI partnership. New Alexa's issues are already making some users return to old Siri. New Apple-backed AI model can generate sound and speech from silent videos. iPhone 17 Pro Max has the best battery life of 35 smartphones tested. Last week on my Mac: Why E cores make Apple silicon fast. FBI couldn't get into WaPo reporter's iPhone because it had Lockdown Mode enabled. Oura's FDA lobbying benefits Apple Watch, if everyone's smart about the risks. Apple Music Replay 2026 now live, here's how to find it. Ferrari's new Jony Ive–designed EV is swathed in glass and aluminum. Applications are now open for the 2026 Swift Student Challenge -- but hurry. Apple Arcade's 'Civilization VII' is good, but falls short of greatness Picks of the Week Dan's Pick: Ponies on Peacock Leo's Pick: Moody Andy's Pick: Hourly Comic Day 2026 Jason's Pick: Curling Hosts: Leo Laporte, Andy Ihnatko, and Jason Snell Guest: Dan Moren Download or subscribe to MacBreak Weekly at https://twit.tv/shows/macbreak-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsor: zocdoc.com/macbreak
Apple is scaling back its plans for its AI-based health coach service. Could Apple's next AirPods Pro come with cameras in them? The iPhone 17 Pro Max has the best battery life out of a plethora of other smartphones! And Apple's Lockdown Mode helped prevent the FBI from accessing a WaPo reporter's iPhone. Apple is scaling back plans for new AI-based health coach service. Apple's next AirPods Pro will come with cameras, says leaker. Leak suggests Apple's M5 Pro and M5 Max may be the same chip. NASA changes its mind, will allow Artemis astronauts to take iPhones to the Moon. Google & Apple CEOs offer seemingly contradictory statements regarding AI partnership. New Alexa's issues are already making some users return to old Siri. New Apple-backed AI model can generate sound and speech from silent videos. iPhone 17 Pro Max has the best battery life of 35 smartphones tested. Last week on my Mac: Why E cores make Apple silicon fast. FBI couldn't get into WaPo reporter's iPhone because it had Lockdown Mode enabled. Oura's FDA lobbying benefits Apple Watch, if everyone's smart about the risks. Apple Music Replay 2026 now live, here's how to find it. Ferrari's new Jony Ive–designed EV is swathed in glass and aluminum. Applications are now open for the 2026 Swift Student Challenge -- but hurry. Apple Arcade's 'Civilization VII' is good, but falls short of greatness Picks of the Week Dan's Pick: Ponies on Peacock Leo's Pick: Moody Andy's Pick: Hourly Comic Day 2026 Jason's Pick: Curling Hosts: Leo Laporte, Andy Ihnatko, and Jason Snell Guest: Dan Moren Download or subscribe to MacBreak Weekly at https://twit.tv/shows/macbreak-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsor: zocdoc.com/macbreak
We start this week with exciting news: we bought a Super Bowl ad! For… $2,550. We explain how. After the break, Jason tells us about Ring's recently launched Search Party feature, and gives us a very timely reminder of what Ring really is and how we got here. In the subscribers-only section, Joseph breaks down Lockdown Mode and how it kept the FBI out of a Washington Post reporter's phone. Timestamps: 0:00 - Intro 2:49 - Watch 404 Media's Super Bowl Ad 27:29 - With Ring, American Consumers Built a Surveillance Dragnet: SUBSCRIBER'S STORY - FBI Couldn't Get into WaPo Reporter's iPhone Because It Had Lockdown Mode Enabled YouTube version: https://youtu.be/0JK-VSrtlWw Watch 404 Media's Super Bowl Ad With Ring, American Consumers Built a Surveillance Dragnet FBI Couldn't Get into WaPo Reporter's iPhone Because It Had Lockdown Mode Enabled Learn more about your ad choices. Visit megaphone.fm/adchoices
Apple is scaling back its plans for its AI-based health coach service. Could Apple's next AirPods Pro come with cameras in them? The iPhone 17 Pro Max has the best battery life out of a plethora of other smartphones! And Apple's Lockdown Mode helped prevent the FBI from accessing a WaPo reporter's iPhone. Apple is scaling back plans for new AI-based health coach service. Apple's next AirPods Pro will come with cameras, says leaker. Leak suggests Apple's M5 Pro and M5 Max may be the same chip. NASA changes its mind, will allow Artemis astronauts to take iPhones to the Moon. Google & Apple CEOs offer seemingly contradictory statements regarding AI partnership. New Alexa's issues are already making some users return to old Siri. New Apple-backed AI model can generate sound and speech from silent videos. iPhone 17 Pro Max has the best battery life of 35 smartphones tested. Last week on my Mac: Why E cores make Apple silicon fast. FBI couldn't get into WaPo reporter's iPhone because it had Lockdown Mode enabled. Oura's FDA lobbying benefits Apple Watch, if everyone's smart about the risks. Apple Music Replay 2026 now live, here's how to find it. Ferrari's new Jony Ive–designed EV is swathed in glass and aluminum. Applications are now open for the 2026 Swift Student Challenge -- but hurry. Apple Arcade's 'Civilization VII' is good, but falls short of greatness Picks of the Week Dan's Pick: Ponies on Peacock Leo's Pick: Moody Andy's Pick: Hourly Comic Day 2026 Jason's Pick: Curling Hosts: Leo Laporte, Andy Ihnatko, and Jason Snell Guest: Dan Moren Download or subscribe to MacBreak Weekly at https://twit.tv/shows/macbreak-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsor: zocdoc.com/macbreak
Apple is scaling back its plans for its AI-based health coach service. Could Apple's next AirPods Pro come with cameras in them? The iPhone 17 Pro Max has the best battery life out of a plethora of other smartphones! And Apple's Lockdown Mode helped prevent the FBI from accessing a WaPo reporter's iPhone. Apple is scaling back plans for new AI-based health coach service. Apple's next AirPods Pro will come with cameras, says leaker. Leak suggests Apple's M5 Pro and M5 Max may be the same chip. NASA changes its mind, will allow Artemis astronauts to take iPhones to the Moon. Google & Apple CEOs offer seemingly contradictory statements regarding AI partnership. New Alexa's issues are already making some users return to old Siri. New Apple-backed AI model can generate sound and speech from silent videos. iPhone 17 Pro Max has the best battery life of 35 smartphones tested. Last week on my Mac: Why E cores make Apple silicon fast. FBI couldn't get into WaPo reporter's iPhone because it had Lockdown Mode enabled. Oura's FDA lobbying benefits Apple Watch, if everyone's smart about the risks. Apple Music Replay 2026 now live, here's how to find it. Ferrari's new Jony Ive–designed EV is swathed in glass and aluminum. Applications are now open for the 2026 Swift Student Challenge -- but hurry. Apple Arcade's 'Civilization VII' is good, but falls short of greatness Picks of the Week Dan's Pick: Ponies on Peacock Leo's Pick: Moody Andy's Pick: Hourly Comic Day 2026 Jason's Pick: Curling Hosts: Leo Laporte, Andy Ihnatko, and Jason Snell Guest: Dan Moren Download or subscribe to MacBreak Weekly at https://twit.tv/shows/macbreak-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsor: zocdoc.com/macbreak
(Presented by Thinkst Canary: Most Companies find out way too late that they've been breached. Thinkst Canary changes this. Deploy Canaries and Canarytokens in minutes and then forget about them. Attackers tip their hand by touching 'em giving you the one alert, when it matters. With zero admin overhead and almost no false-positives, Canaries are deployed (and loved) on all 7 continents.) Three Buddy Problem - Episode 84: We process the cybersecurity fallout from the latest Epstein document dump, focusing on why redactions fail in the AI era and how quickly modern tools can unravel them. The conversation moves from sloppy redaction practices and exploit mythology to harder questions about ethics, accountability, and silence within the infosec community. Plus, inside the Notepad++ supply-chain compromise attributed to a known Chinese APT, Microsoft's security executive changes, Anthropic's AI-driven vulnerability discovery, China-linked network implants, and Lockdown Mode thwarting FBI investigators. Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.
Timestamps: 0:00 WHALE LAN, TICKETS AVAILABLE NOW 0:19 No new Nvidia GPUs until 2028 - report 1:46 iPhone Lockdown mode stops FBI 3:33 EU vs TikTok over addictive design 6:41 QUICK BITS INTRO 6:58 Wayback Machine fights link rot 7:43 Windows 11 update drops frames 8:19 NASA allows smartphones in space 9:02 Substack data breach 9:43 Questions about Gemini shopping NEWS SOURCES: https://lmg.gg/wZ98Z Learn more about your ad choices. Visit megaphone.fm/adchoices
Abrar Al-Heeti of CNET joins Mikah Sargent on Tech News Weekly this week! Abrar has her hands on the new Samsung Galaxy Z TriFold phone! More people are pirating TV through rogue streaming boxes. The newest social media platform has launched, but it's only for AI bots. And Apple's Lockdown Mode prevented the FBI from accessing a reporter's iPhone. - Abrar got her hands on the Samsung Galaxy Z TriFold phone and shares her initial thoughts on the device so far. - Mikah talks about how more people are straying away from streaming services and looking towards streaming boxes that allow one to access pirated content that mirrors live TV. - Mikah and Abrar chat about Moltbook, a new social media platform that is just for AI bots. - And Mikah shares how Apple's Lockdown Mode helped a Washington Post reporter stop the FBI from accessing their seized iPhone. Hosts: Mikah Sargent and Abrar Al-Heeti Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow preview.modulate.ai zscaler.com/security
Abrar Al-Heeti of CNET joins Mikah Sargent on Tech News Weekly this week! Abrar has her hands on the new Samsung Galaxy Z TriFold phone! More people are pirating TV through rogue streaming boxes. The newest social media platform has launched, but it's only for AI bots. And Apple's Lockdown Mode prevented the FBI from accessing a reporter's iPhone. - Abrar got her hands on the Samsung Galaxy Z TriFold phone and shares her initial thoughts on the device so far. - Mikah talks about how more people are straying away from streaming services and looking towards streaming boxes that allow one to access pirated content that mirrors live TV. - Mikah and Abrar chat about Moltbook, a new social media platform that is just for AI bots. - And Mikah shares how Apple's Lockdown Mode helped a Washington Post reporter stop the FBI from accessing their seized iPhone. Hosts: Mikah Sargent and Abrar Al-Heeti Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow preview.modulate.ai zscaler.com/security
Abrar Al-Heeti of CNET joins Mikah Sargent on Tech News Weekly this week! Abrar has her hands on the new Samsung Galaxy Z TriFold phone! More people are pirating TV through rogue streaming boxes. The newest social media platform has launched, but it's only for AI bots. And Apple's Lockdown Mode prevented the FBI from accessing a reporter's iPhone. Abrar got her hands on the Samsung Galaxy Z TriFold phone and shares her initial thoughts on the device so far. Mikah talks about how more people are straying away from streaming services and looking towards streaming boxes that allow one to access pirated content that mirrors live TV. Mikah and Abrar chat about Moltbook, a new social media platform that is just for AI bots. And Mikah shares how Apple's Lockdown Mode helped a Washington Post reporter stop the FBI from accessing their seized iPhone. Hosts: Mikah Sargent and Abrar Al-Heeti Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow preview.modulate.ai zscaler.com/security
Abrar Al-Heeti of CNET joins Mikah Sargent on Tech News Weekly this week! Abrar has her hands on the new Samsung Galaxy Z TriFold phone! More people are pirating TV through rogue streaming boxes. The newest social media platform has launched, but it's only for AI bots. And Apple's Lockdown Mode prevented the FBI from accessing a reporter's iPhone. Abrar got her hands on the Samsung Galaxy Z TriFold phone and shares her initial thoughts on the device so far. Mikah talks about how more people are straying away from streaming services and looking towards streaming boxes that allow one to access pirated content that mirrors live TV. Mikah and Abrar chat about Moltbook, a new social media platform that is just for AI bots. And Mikah shares how Apple's Lockdown Mode helped a Washington Post reporter stop the FBI from accessing their seized iPhone. Hosts: Mikah Sargent and Abrar Al-Heeti Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow preview.modulate.ai zscaler.com/security
Abrar Al-Heeti of CNET joins Mikah Sargent on Tech News Weekly this week! Abrar has her hands on the new Samsung Galaxy Z TriFold phone! More people are pirating TV through rogue streaming boxes. The newest social media platform has launched, but it's only for AI bots. And Apple's Lockdown Mode prevented the FBI from accessing a reporter's iPhone. Abrar got her hands on the Samsung Galaxy Z TriFold phone and shares her initial thoughts on the device so far. Mikah talks about how more people are straying away from streaming services and looking towards streaming boxes that allow one to access pirated content that mirrors live TV. Mikah and Abrar chat about Moltbook, a new social media platform that is just for AI bots. And Mikah shares how Apple's Lockdown Mode helped a Washington Post reporter stop the FBI from accessing their seized iPhone. Hosts: Mikah Sargent and Abrar Al-Heeti Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow preview.modulate.ai zscaler.com/security
and here's how to enable it...
Abrar Al-Heeti of CNET joins Mikah Sargent on Tech News Weekly this week! Abrar has her hands on the new Samsung Galaxy Z TriFold phone! More people are pirating TV through rogue streaming boxes. The newest social media platform has launched, but it's only for AI bots. And Apple's Lockdown Mode prevented the FBI from accessing a reporter's iPhone. Abrar got her hands on the Samsung Galaxy Z TriFold phone and shares her initial thoughts on the device so far. Mikah talks about how more people are straying away from streaming services and looking towards streaming boxes that allow one to access pirated content that mirrors live TV. Mikah and Abrar chat about Moltbook, a new social media platform that is just for AI bots. And Mikah shares how Apple's Lockdown Mode helped a Washington Post reporter stop the FBI from accessing their seized iPhone. Hosts: Mikah Sargent and Abrar Al-Heeti Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow preview.modulate.ai zscaler.com/security
Abrar Al-Heeti of CNET joins Mikah Sargent on Tech News Weekly this week! Abrar has her hands on the new Samsung Galaxy Z TriFold phone! More people are pirating TV through rogue streaming boxes. The newest social media platform has launched, but it's only for AI bots. And Apple's Lockdown Mode prevented the FBI from accessing a reporter's iPhone. Abrar got her hands on the Samsung Galaxy Z TriFold phone and shares her initial thoughts on the device so far. Mikah talks about how more people are straying away from streaming services and looking towards streaming boxes that allow one to access pirated content that mirrors live TV. Mikah and Abrar chat about Moltbook, a new social media platform that is just for AI bots. And Mikah shares how Apple's Lockdown Mode helped a Washington Post reporter stop the FBI from accessing their seized iPhone. Hosts: Mikah Sargent and Abrar Al-Heeti Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow preview.modulate.ai zscaler.com/security
Abrar Al-Heeti of CNET joins Mikah Sargent on Tech News Weekly this week! Abrar has her hands on the new Samsung Galaxy Z TriFold phone! More people are pirating TV through rogue streaming boxes. The newest social media platform has launched, but it's only for AI bots. And Apple's Lockdown Mode prevented the FBI from accessing a reporter's iPhone. Abrar got her hands on the Samsung Galaxy Z TriFold phone and shares her initial thoughts on the device so far. Mikah talks about how more people are straying away from streaming services and looking towards streaming boxes that allow one to access pirated content that mirrors live TV. Mikah and Abrar chat about Moltbook, a new social media platform that is just for AI bots. And Mikah shares how Apple's Lockdown Mode helped a Washington Post reporter stop the FBI from accessing their seized iPhone. Hosts: Mikah Sargent and Abrar Al-Heeti Download or subscribe to Tech News Weekly at https://twit.tv/shows/tech-news-weekly. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: hoxhunt.com/securitynow preview.modulate.ai zscaler.com/security
Please enjoy this encore of Word Notes. An optional security mode for macOS and iOS that reduces the attack surface of the operating system by disabling certain commonly attacked features. CyberWire Glossary link: https://thecyberwire.com/glossary/apple-lockdown-mode Audio reference link: “How NSO Group's Pegasus Spyware Was Found on Jamal Khashoggi's Fiancée's Phone,” FRONTLINE, YouTube, 18 July 2021.
Please enjoy this encore of Word Notes. An optional security mode for macOS and iOS that reduces the attack surface of the operating system by disabling certain commonly attacked features. CyberWire Glossary link: https://thecyberwire.com/glossary/apple-lockdown-mode Audio reference link: “How NSO Group's Pegasus Spyware Was Found on Jamal Khashoggi's Fiancée's Phone,” FRONTLINE, YouTube, 18 July 2021. Learn more about your ad choices. Visit megaphone.fm/adchoices
Three Buddy Problem - Episode 59: Apple drops another emergency iOS patch and we unpack what that “may have been exploited” language really means: zero-click chains, why notifications help but forensics don't, and the uncomfortable truth that Lockdown Mode is increasingly the default for high-risk users. We connect the dots from ImageIO bugs to geopolitics, discuss who's likely using these exploits, why Apple's guidance stops short, and the practical playbook (ADP on, reboot often, reduce attack surface) that actually works. Plus, we debate Microsoft throttling MAPP access for Chinese vendors, the idea of “letters of marque” for cyber (outsourced offense: smart deterrent or Pandora's box?), and dissect two case studies that blur APT and crimeware: PipeMagic's CLFS zero-day and Russia-linked “Static Tundra” riding seven-year-old Cisco bugs. Cast: Juan Andres Guerrero-Saade (https://twitter.com/juanandres_gs), Ryan Naraine (https://twitter.com/ryanaraine) and Costin Raiu (https://twitter.com/craiu).
PDF Workbook Download the workbook to follow along with the lessons throughout the audiobook. ⭐️⭐️⭐️⭐️⭐️ Review on Amazon This is how I can keep creating this free content to help more home service business owners get rich!
Three Buddy Problem - Episode 42: We dig into news that China secretly fessed up to the Volt Typhoon hacks and followed up with claims that named NSA agents launched advanced cyberattacks against the Asian Winter Games. Plus, the MITRE CVE funding crisis, new Apple 0days in the wild includes PAC bypass exploit, Microsoft Patch Tuesday zero-days. Plus, the effectiveness of Lockdown Mode, the rising costs of mobile exploits, Chris Krebs' exit from SentinelOne after a presidential executive order, and the value and effectiveness of security clearances. Cast: Juan Andres Guerrero-Saade (https://twitter.com/juanandres_gs), Costin Raiu (https://twitter.com/craiu) and Ryan Naraine (https://twitter.com/ryanaraine).
Android to get "Lockdown Mode". What's in the new editions of Chrome and Firefox? Why did Apple silently re-enable automatic updates? My new iPhone 16, Chinese tariffs and electronics. Dynamic "hotpatching" coming to Win11 Enterprise & Edu. Why is it so difficult for Oracle to fess up? Another multi-year breach inside US Treasury. An Apple -vs- the UK update. "Thundermail" (Can't someone come up with a better name?) The (in)Security of Programmable Logic Controllers. When LLM's write code and hallucinate non-existent packages. Wordpress core security and PHP gets an important audit. Device-Bound Session Credentials update session cookie technology Show Notes - https://www.grc.com/sn/SN-1021-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/securitynow vanta.com/SECURITYNOW threatlocker.com for Security Now legatosecurity.com bitwarden.com/twit
Android to get "Lockdown Mode". What's in the new editions of Chrome and Firefox? Why did Apple silently re-enable automatic updates? My new iPhone 16, Chinese tariffs and electronics. Dynamic "hotpatching" coming to Win11 Enterprise & Edu. Why is it so difficult for Oracle to fess up? Another multi-year breach inside US Treasury. An Apple -vs- the UK update. "Thundermail" (Can't someone come up with a better name?) The (in)Security of Programmable Logic Controllers. When LLM's write code and hallucinate non-existent packages. Wordpress core security and PHP gets an important audit. Device-Bound Session Credentials update session cookie technology Show Notes - https://www.grc.com/sn/SN-1021-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/securitynow vanta.com/SECURITYNOW threatlocker.com for Security Now legatosecurity.com bitwarden.com/twit
Android to get "Lockdown Mode". What's in the new editions of Chrome and Firefox? Why did Apple silently re-enable automatic updates? My new iPhone 16, Chinese tariffs and electronics. Dynamic "hotpatching" coming to Win11 Enterprise & Edu. Why is it so difficult for Oracle to fess up? Another multi-year breach inside US Treasury. An Apple -vs- the UK update. "Thundermail" (Can't someone come up with a better name?) The (in)Security of Programmable Logic Controllers. When LLM's write code and hallucinate non-existent packages. Wordpress core security and PHP gets an important audit. Device-Bound Session Credentials update session cookie technology Show Notes - https://www.grc.com/sn/SN-1021-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/securitynow vanta.com/SECURITYNOW threatlocker.com for Security Now legatosecurity.com bitwarden.com/twit
Android to get "Lockdown Mode". What's in the new editions of Chrome and Firefox? Why did Apple silently re-enable automatic updates? My new iPhone 16, Chinese tariffs and electronics. Dynamic "hotpatching" coming to Win11 Enterprise & Edu. Why is it so difficult for Oracle to fess up? Another multi-year breach inside US Treasury. An Apple -vs- the UK update. "Thundermail" (Can't someone come up with a better name?) The (in)Security of Programmable Logic Controllers. When LLM's write code and hallucinate non-existent packages. Wordpress core security and PHP gets an important audit. Device-Bound Session Credentials update session cookie technology Show Notes - https://www.grc.com/sn/SN-1021-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/securitynow vanta.com/SECURITYNOW threatlocker.com for Security Now legatosecurity.com bitwarden.com/twit
Android to get "Lockdown Mode". What's in the new editions of Chrome and Firefox? Why did Apple silently re-enable automatic updates? My new iPhone 16, Chinese tariffs and electronics. Dynamic "hotpatching" coming to Win11 Enterprise & Edu. Why is it so difficult for Oracle to fess up? Another multi-year breach inside US Treasury. An Apple -vs- the UK update. "Thundermail" (Can't someone come up with a better name?) The (in)Security of Programmable Logic Controllers. When LLM's write code and hallucinate non-existent packages. Wordpress core security and PHP gets an important audit. Device-Bound Session Credentials update session cookie technology Show Notes - https://www.grc.com/sn/SN-1021-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/securitynow vanta.com/SECURITYNOW threatlocker.com for Security Now legatosecurity.com bitwarden.com/twit
Android to get "Lockdown Mode". What's in the new editions of Chrome and Firefox? Why did Apple silently re-enable automatic updates? My new iPhone 16, Chinese tariffs and electronics. Dynamic "hotpatching" coming to Win11 Enterprise & Edu. Why is it so difficult for Oracle to fess up? Another multi-year breach inside US Treasury. An Apple -vs- the UK update. "Thundermail" (Can't someone come up with a better name?) The (in)Security of Programmable Logic Controllers. When LLM's write code and hallucinate non-existent packages. Wordpress core security and PHP gets an important audit. Device-Bound Session Credentials update session cookie technology Show Notes - https://www.grc.com/sn/SN-1021-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/securitynow vanta.com/SECURITYNOW threatlocker.com for Security Now legatosecurity.com bitwarden.com/twit
Android to get "Lockdown Mode". What's in the new editions of Chrome and Firefox? Why did Apple silently re-enable automatic updates? My new iPhone 16, Chinese tariffs and electronics. Dynamic "hotpatching" coming to Win11 Enterprise & Edu. Why is it so difficult for Oracle to fess up? Another multi-year breach inside US Treasury. An Apple -vs- the UK update. "Thundermail" (Can't someone come up with a better name?) The (in)Security of Programmable Logic Controllers. When LLM's write code and hallucinate non-existent packages. Wordpress core security and PHP gets an important audit. Device-Bound Session Credentials update session cookie technology Show Notes - https://www.grc.com/sn/SN-1021-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/securitynow vanta.com/SECURITYNOW threatlocker.com for Security Now legatosecurity.com bitwarden.com/twit
Android to get "Lockdown Mode". What's in the new editions of Chrome and Firefox? Why did Apple silently re-enable automatic updates? My new iPhone 16, Chinese tariffs and electronics. Dynamic "hotpatching" coming to Win11 Enterprise & Edu. Why is it so difficult for Oracle to fess up? Another multi-year breach inside US Treasury. An Apple -vs- the UK update. "Thundermail" (Can't someone come up with a better name?) The (in)Security of Programmable Logic Controllers. When LLM's write code and hallucinate non-existent packages. Wordpress core security and PHP gets an important audit. Device-Bound Session Credentials update session cookie technology Show Notes - https://www.grc.com/sn/SN-1021-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access. Join today: https://twit.tv/clubtwit Sponsors: expressvpn.com/securitynow vanta.com/SECURITYNOW threatlocker.com for Security Now legatosecurity.com bitwarden.com/twit
Android looks set to get its own Lockdown Mode, China overhauls cybersecurity and privacy laws, a crypto platform gets hacked for $70 million dollars, and Greece's intel agency is set to hire more hackers. Show notes
Legacy media companies like Fox News and NBC are experimenting with TikTok to reach new audiences despite the platform's potential ban in the U.S. WSJ reporter Isabella Simonetti explains why. Plus, Apple iPhones include Lockdown Mode, a tool that could help protect users from cybersecurity threats. We explain how the tool works and how it could help you. Sign up for the WSJ's free Technology newsletter. Learn more about your ad choices. Visit megaphone.fm/adchoices
Our multi-part conversation with Take Control author Glenn Fleishman concludes with discussions of Take Control of Securing Your Apple Devices, Take Control of Find My and AirTags, and Take Control of FaceTime and Messages. Glenn points out some lesser-known features such as Lockdown Mode and Private Wi-Fi Address, talks about using GateKeeper effectively, and explains some new features in FaceTime and Messages that improve the user experience. (Part 3) This MacVoices is supported by Notion, the single AI tool that does it all. Try Notion AI for free at notion.com/macvoices. Show Notes: Chapters: 00:11 Introduction to Securing Apple Devices02:19 Merging Security and Privacy Features11:37 Understanding Find My Network and AirTags15:37 Google's Approach to Tracking Devices17:22 Updates on Messaging and FaceTime Features19:47 Enhancements in Phone Call Functionality25:30 Exploring Undiscovered Features27:16 Conclusion and Final Thoughts Links: Take Control of Securing Your Apple Devices Take Control of Find My and AirTags Take Control of FaceTime and Messages. Guests: Glenn Fleishman is a Seattle-based technology journalist and two-time winner on Jeopardy. He writes largely about where technology crosses with people's lives, as well as exhaustive technology explanations. At Macworld, he authors the Mac 911 user-help column. He has contributed to the Economist since 2005, including nearly 400 online blog posts and articles, as well as Fast Company, MIT Technology Review, Boing Boing, TidBITS, Six Colors, and others. You can find him on Twitter as @glennf, and check out everything else at his blog. Support: Become a MacVoices Patron on Patreon http://patreon.com/macvoices Enjoy this episode? Make a one-time donation with PayPal Connect: Web: http://macvoices.com Twitter: http://www.twitter.com/chuckjoiner http://www.twitter.com/macvoices Mastodon: https://mastodon.cloud/@chuckjoiner Facebook: http://www.facebook.com/chuck.joiner MacVoices Page on Facebook: http://www.facebook.com/macvoices/ MacVoices Group on Facebook: http://www.facebook.com/groups/macvoice LinkedIn: https://www.linkedin.com/in/chuckjoiner/ Instagram: https://www.instagram.com/chuckjoiner/ Subscribe: Audio in iTunes Video in iTunes Subscribe manually via iTunes or any podcatcher: Audio: http://www.macvoices.com/rss/macvoicesrss Video: http://www.macvoices.com/rss/macvoicesvideorss
Our multi-part conversation with Take Control author Glenn Fleishman concludes with discussions of Take Control of Securing Your Apple Devices, Take Control of Find My and AirTags, and Take Control of FaceTime and Messages. Glenn points out some lesser-known features such as Lockdown Mode and Private Wi-Fi Address, talks about using GateKeeper effectively, and explains some new features in FaceTime and Messages that improve the user experience. (Part 3) This MacVoices is supported by Notion, the single AI tool that does it all. Try Notion AI for free at notion.com/macvoices. Show Notes: Chapters: 00:11 Introduction to Securing Apple Devices 02:19 Merging Security and Privacy Features 11:37 Understanding Find My Network and AirTags 15:37 Google's Approach to Tracking Devices 17:22 Updates on Messaging and FaceTime Features 19:47 Enhancements in Phone Call Functionality 25:30 Exploring Undiscovered Features 27:16 Conclusion and Final Thoughts Links: Take Control of Securing Your Apple Devices Take Control of Find My and AirTags Take Control of FaceTime and Messages. Guests: Glenn Fleishman is a Seattle-based technology journalist and two-time winner on Jeopardy. He writes largely about where technology crosses with people's lives, as well as exhaustive technology explanations. At Macworld, he authors the Mac 911 user-help column. He has contributed to the Economist since 2005, including nearly 400 online blog posts and articles, as well as Fast Company, MIT Technology Review, Boing Boing, TidBITS, Six Colors, and others. You can find him on Twitter as @glennf, and check out everything else at his blog. Support: Become a MacVoices Patron on Patreon http://patreon.com/macvoices Enjoy this episode? Make a one-time donation with PayPal Connect: Web: http://macvoices.com Twitter: http://www.twitter.com/chuckjoiner http://www.twitter.com/macvoices Mastodon: https://mastodon.cloud/@chuckjoiner Facebook: http://www.facebook.com/chuck.joiner MacVoices Page on Facebook: http://www.facebook.com/macvoices/ MacVoices Group on Facebook: http://www.facebook.com/groups/macvoice LinkedIn: https://www.linkedin.com/in/chuckjoiner/ Instagram: https://www.instagram.com/chuckjoiner/ Subscribe: Audio in iTunes Video in iTunes Subscribe manually via iTunes or any podcatcher: Audio: http://www.macvoices.com/rss/macvoicesrss Video: http://www.macvoices.com/rss/macvoicesvideorss