Steve Gibson (@sggrc) 's Twitter Profile
Steve Gibson

@sggrc

I didn't want to clutter up the corporate GibsonResearch Twitter account with lots of personal stuff. That's what this one is for.

ID: 140162079

linkhttp://grc.com calendar_today04-05-2010 19:23:50

7,7K Tweet

61,61K Followers

0 Following

Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œDNS over TLSā€ Security Now! #1010 show notes: grc.com/sn/sn-1010-not… eM Client CAN be purchased. MasterCard's mega-typo! Mal-malware kits. The biggest DDoS ever. Let's Encrypt's clarification. Lots of feedback and a look at the high cost of encrypting DNS queries for privacy.

ā€œDNS over TLSā€
Security Now! #1010 show notes: grc.com/sn/sn-1010-not…
eM Client CAN be purchased. MasterCard's mega-typo! Mal-malware kits. The biggest DDoS ever. Let's Encrypt's clarification. Lots of feedback and a look at the high cost of encrypting DNS queries for privacy.
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œJailbreaking AIā€ Security Now! #1011 show notes: grc.com/sn/sn-1011-not… China's DeepSeek surprise: Blocked by Italy, leaking data, and more. Microsoft "Think Deeper" Copilot toggle. US ROUTERS act. DNS-blocking legislation. How to trick AI into divulging restricted knowledge.

ā€œJailbreaking AIā€
Security Now! #1011 show notes: grc.com/sn/sn-1011-not…
China's DeepSeek surprise: Blocked by Italy, leaking data, and more. Microsoft "Think Deeper" Copilot toggle. US ROUTERS act. DNS-blocking legislation. How to trick AI into divulging restricted knowledge.
Steve Gibson (@sggrc) 's Twitter Profile Photo

Sorry about missing the past two weeks of weekly Security Now! podcast summary and pictures of the week! My Bad!! :( Since our email notification system is working so well — now with 16,333 subscribers — I've been forgetting to also post that stuff here. I'll do better!

Steve Gibson (@sggrc) 's Twitter Profile Photo

In answer to follow-up questions about how to check email status and/or to join, just go here: grc.com/mail.htm Enter your "send from" address, which will immediately email a confirmation link which takes you to your own subscriptions page. Make any changes and save! :)

Steve Gibson (@sggrc) 's Twitter Profile Photo

"FREEDOM Administration Login" Security Now! #1014 show notes: grc.com/sn/sn-1014-not… Will Apple disable ADP in the UK? Remember: Ransom payments may be illegal! Spanish Soccer blocks Cloudflare sites. Telecom hacking: How? MASSIVE Crypto heist. A PATHETIC access control system.

"FREEDOM Administration Login"
Security Now! #1014 show notes: grc.com/sn/sn-1014-not…
Will Apple disable ADP in the UK? Remember: Ransom payments may be illegal! Spanish Soccer blocks Cloudflare sites. Telecom hacking: How? MASSIVE Crypto heist. A PATHETIC access control system.
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œSpatial-Domain Wireless Jammingā€ Security Now! #1015 show notes: grc.com/sn/sn-1015-not… Firefox's amended privacy policy. Signal to leave Sweden? Bybit heist aftermath & Bounty tracking. Mozilla & Manifest V2. Memory-safe languages. SMS vs QR codes, and a stunning jamming tech!

ā€œSpatial-Domain Wireless Jammingā€
Security Now! #1015 show notes: grc.com/sn/sn-1015-not…
Firefox's amended privacy policy. Signal to leave Sweden? Bybit heist aftermath & Bounty tracking. Mozilla & Manifest V2. Memory-safe languages. SMS vs QR codes, and a stunning jamming tech!
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œThe Bluetooth Backdoorā€ Security Now! #1016 show notes: grc.com/sn/sn-1016-not… Mandatory age verification. North Korean job interviews. Bybit post-attack details. The UK -vs- The World. A Passkey crack? Old LastPass vault decryptions. And the story of that Bluetooth ā€œBackdoorā€.

ā€œThe Bluetooth Backdoorā€
Security Now! #1016 show notes: grc.com/sn/sn-1016-not…
Mandatory age verification. North Korean job interviews. Bybit post-attack details. The UK -vs- The World. A Passkey crack? Old LastPass vault decryptions. And the story of that Bluetooth ā€œBackdoorā€.
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œIs YOUR System Vulnerable to RowHammer?ā€ Security Now! #1017 Show Notes: grc.com/sn/sn-1017-not… Telegram crypto analysis. Twitter outages. Firefox root cert exp. New attack vector. Google age verification & UK notice? A BAD PHP vuln. Test YOUR own PC for RowHammer RAM weakness.

ā€œIs YOUR System Vulnerable to RowHammer?ā€
Security Now! #1017 Show Notes: grc.com/sn/sn-1017-not…
Telegram crypto analysis. Twitter outages. Firefox root cert exp. New attack vector. Google age verification & UK notice? A BAD PHP vuln. Test YOUR own PC for RowHammer RAM weakness.
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œThe Quantum Threatā€ SN #1018: grc.com/sn/sn-1018-not… Don't blindly follow online instructions. Espressif responds about backdoor. Microsoft won't fix bad problem. RCS to get full, good, E2EE. Oracle to run TikTok. Delete your 23andMe data. The current threat from quantum comps.

ā€œThe Quantum Threatā€
SN #1018: grc.com/sn/sn-1018-not…
Don't blindly follow online instructions. Espressif responds about backdoor. Microsoft won't fix bad problem. RCS to get full, good, E2EE. Oracle to run TikTok. Delete your 23andMe data. The current threat from quantum comps.
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œEU OSā€ SN#1019: grc.com/sn/sn-1019-not… Airport switches to whiteboard after ransom attack. Troy Hunt was Phished. Cloudflare unplugs port 80. Malware using obscure languages. No Microsoft user account geofencing. grc.sc/1019 The EU gets serious about leaving Windows

ā€œEU OSā€
SN#1019: grc.com/sn/sn-1019-not…
Airport switches to whiteboard after ransom attack. Troy Hunt was Phished. Cloudflare unplugs port 80. Malware using obscure languages. No Microsoft user account geofencing. grc.sc/1019 The EU gets serious about leaving Windows
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œMulti-Perspective Issuance Corroborationā€ SN#1020 show notes: grc.com/sn/sn-1020-not… Canon printer driver vulnerabilities. Astonishing IoT cyber-awareness. France tests kids phishing. Oracle? Really? Gmail E2EE (or not really?) New tech for verifying control over domain.

ā€œMulti-Perspective Issuance Corroborationā€ SN#1020 show notes: grc.com/sn/sn-1020-not…
Canon printer driver vulnerabilities. Astonishing IoT cyber-awareness. France tests kids phishing. Oracle? Really? Gmail E2EE (or not really?) New tech for verifying control over domain.
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œDevice Bound Session Credentialsā€ SN#1021 show notes: grc.com/sn/sn-1021-not… Android Lockdown Mode. New Chrome & Firefox. Apple re-enabled auto-updates. Why I got an iPhone 16. Hotpatching Win11. Apple vs UK. ā€œThundermailā€ Insecurity of PLCs. A HUGE change to Session Cookies!

ā€œDevice Bound Session Credentialsā€ SN#1021 show notes: grc.com/sn/sn-1021-not…
Android Lockdown Mode. New Chrome & Firefox. Apple re-enabled auto-updates. Why I got an iPhone 16. Hotpatching Win11. Apple vs UK. ā€œThundermailā€ Insecurity of PLCs. A HUGE change to Session Cookies!
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œWindows Sandboxā€ SN#1022 show notes: grc.com/sn/sn-1022-not… Firefox tab grouping. Recall's re-rollout. CVE nearly died. China confesses hacking the US. A 9.8 Python package problem again. Here come very short TLS certs. A crosswalk hack. The amazing built-in Windows Sandbox!

ā€œWindows Sandboxā€
SN#1022 show notes: grc.com/sn/sn-1022-not…
Firefox tab grouping. Recall's re-rollout. CVE nearly died. China confesses hacking the US. A 9.8 Python package problem again. Here come very short TLS certs. A crosswalk hack. The amazing built-in Windows Sandbox!
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œPreventing Windows Sandbox Abuseā€ SN#1023 show notes: grc.com/sn/sn-1023-not… The "inetpub" directory mess & mystery -- and its abuse. Fake North Korean companies. More ways to confuse AI. Critical data loss in unpowered SSDs. Feedback and malware is hiding in Windows Sandbox!

ā€œPreventing Windows Sandbox Abuseā€
SN#1023 show notes: grc.com/sn/sn-1023-not…
The "inetpub" directory mess & mystery -- and its abuse. Fake North Korean companies. More ways to confuse AI. Critical data loss in unpowered SSDs. Feedback and malware is hiding in Windows Sandbox!
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œDon't Blame Signalā€ SN#1024 show notes: grc.com/sn/sn-1024-not… MSFT abandons passwords, allows their deletion. Meta's RayBan glasses privacy changes. 30% of MSFT code now by AI. Chrome's security without Google. eCommerce backdoors spring to life. A bad insecure Signal clone.

ā€œDon't Blame Signalā€
SN#1024 show notes: grc.com/sn/sn-1024-not…
MSFT abandons passwords, allows their deletion. Meta's RayBan glasses privacy changes. 30% of MSFT code now by AI. Chrome's security without Google. eCommerce backdoors spring to life. A bad insecure Signal clone.
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œSecure Conversation Records Retentionā€ SN#1025 show notes: grc.com/sn/sn-1025-not… More attempts at age restriction. Long-lived python repository malware. FBI says discard old routers. Reverse engineering WhatsApp. Malicious AI usage. How to securely archive E2EE message history

ā€œSecure Conversation Records Retentionā€
SN#1025 show notes: grc.com/sn/sn-1025-not…
More attempts at age restriction. Long-lived python repository malware. FBI says discard old routers. Reverse engineering WhatsApp. Malicious AI usage. How to securely archive E2EE message history
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œRogue Comms Tech Found in US Power Gridā€ SN#1026 show notes: grc.com/sn/sn-1026-not… Chrome refuses Admin. Android Messenger key verification. Pwn2Own for AI. AI can replicate today. Office on old Win10. 23andMe purchased. Andor season 2. Radios discovered inside US power grid.

ā€œRogue Comms Tech Found in US Power Gridā€
SN#1026 show notes: grc.com/sn/sn-1026-not…
Chrome refuses Admin. Android Messenger key verification. Pwn2Own for AI. AI can replicate today. Office on old Win10. 23andMe purchased. Andor season 2. Radios discovered inside US power grid.
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œArtificial Intelligenceā€ SN#1027 show notes: grc.com/sn/sn-1027-not… The status of Encrypted Client Hellos (ECH). Remote inverter shutdowns. Blocking newly listed domains. The AI Hype Cycle. AI as blackmailer? Copilot covering up bugs? The unrestrained Venice.AI.

ā€œArtificial Intelligenceā€
SN#1027 show notes: grc.com/sn/sn-1027-not…
The status of Encrypted Client Hellos (ECH). Remote inverter shutdowns. Blocking newly listed domains. The AI Hype Cycle. AI as blackmailer? Copilot covering up bugs? The unrestrained Venice.AI.
Steve Gibson (@sggrc) 's Twitter Profile Photo

ā€œAI Vulnerability Huntingā€ SN#1028 show notes: grc.com/sn/sn-1028-not… Pwn2Own 2025 results. PayPal scanning new domain registrations. iOS jailbreak author gives up. SVG contain JavaScript. Classic Sci-Fi movies. How OpenAI's o3 model discovered a critical remote Linux 0-day.

ā€œAI Vulnerability Huntingā€
SN#1028 show notes: grc.com/sn/sn-1028-not…
Pwn2Own 2025 results. PayPal scanning new domain registrations. iOS jailbreak author gives up. SVG contain JavaScript. Classic Sci-Fi movies. How OpenAI's o3 model discovered a critical remote Linux 0-day.