Paul's Security Weekly (Video)
Episodes
Back to (or Start) Fundamentals? - Rajesh Khazanchi - PSW #923
23 Apr 2026
Contributed by Lukas
This week: Larry's in the host seat and chaos ensues. We dig into: A very questionable story about tracking a warship with a $5 Bluetooth tracker Ser...
The AI "Vulnpocolypse" Is Real? - PSW #922
16 Apr 2026
Contributed by Lukas
This week: CSA issues guidance to CISOs on Mythos Vuln management woes Windows tells you about Secure Boot AI-assisted firmware vuln hunting The dumb...
AI Makes All Bug Shallow? - PSW #921
09 Apr 2026
Contributed by Lukas
This week: Rage dropping 0-Day Claude Mythos, things are different now From UART to root, on a device made in China, where's the FCC? More CUPS vulne...
What Is A Router? (And all things AI) - PSW #920
02 Apr 2026
Contributed by Lukas
In the Security News: Claude leaks source code and new models Two really smart people say AI is finding vulnerabilities better than ever Windows is u...
Scanning The Internet with Linux Tools - PSW #919
26 Mar 2026
Contributed by Lukas
In this segment, we will explore some pretty awesome tools for scanning the Internet, with a focus on network edge devices. We'll bring it all togethe...
Hacking IP KVMs & Reversing with Radare2 - Sergi Àlvarez - PSW #918
19 Mar 2026
Contributed by Lukas
In this episode, we sit down with the Radare community leader, Pancake, the creator of the Radare2 reverse engineering framework. Whether you've never...
Vulnerability Mis-Management - PSW #917
12 Mar 2026
Contributed by Lukas
In the security news this week: The XZ backdoor documentary Zero days - the clock isn't ticking Vulnerability Mis-Management Reversing traffic light ...
Airsnitch, Claude, Hacking Firewalls - PSW #916
05 Mar 2026
Contributed by Lukas
In the security news this week: Remembering "FX" Finding and analyzing Windows drivers Network monitoring with Gibson the backdoor in your PAM The ed...
AI Is Taking Over Cybersecurity - PSW #915
26 Feb 2026
Contributed by Lukas
First up is a technical segment called "Paul's Linux Hacks". I finally got around to releasing a bunch of scripts and tutorials for Linux that I've cr...
Firmware Backdoors Be Spying On You - PSW #914
19 Feb 2026
Contributed by Lukas
AI says that this is the show where we turn coffee into threat intelligence and cigar smoke into packet captures. This week: a firmware backdoor livi...
AI Vulnerability Hunting - PSW #913
12 Feb 2026
Contributed by Lukas
In the security news: Viral AI prompts Things to do in your home security lab I can open your garage door They call me DKnife Beyondtrust RCE Cool AI...
AI: No One Is Safe - PSW #912
05 Feb 2026
Contributed by Lukas
In the security news this week: Residential proxy abuse is everywhere this week: from Google's takedown of IPIDEA to massive Citrix NetScaler scannin...
To curmudgeon or not to curmudgeon, that is the question. - PSW #911
29 Jan 2026
Contributed by Lukas
This week, we get un-curmudgeoned by Mandy, spending a bunch of time talking about regulations, compliance, and even the US federal government's commi...
We Left It Vulnerable On Purpose - Rob Allen - PSW #910
22 Jan 2026
Contributed by Lukas
In the security news: Rainbow tables for everyone Lilygo releases a new T-Display that looks awesome AI generated malware for real Detecting BadUSB w...
Digging For Vulnerability Gold - PSW #909
15 Jan 2026
Contributed by Lukas
In the security news: KVMs are a hacker's dream Hacking an e-scooter Flipper Zero alternatives The best authentication bypass Pwning Claude Code Fori...
No FlipperZeros Allowed - PSW #908
08 Jan 2026
Contributed by Lukas
This week in the security news: Supply chain attacks and XSS PS5 leaked keys Claude tips for security pros No Flipper Zeros allowed, or Raspberry PIs...
Breaking Into Cybersecurity - PSW #907
01 Jan 2026
Contributed by Lukas
Our field is booming! Cybersecurity jobs are projected to grow 33 percent through 2033, far outpacing the average 4 percent growth across all jobs. (A...
Building a Hacking Lab in 2025 - PSW #906
25 Dec 2025
Contributed by Lukas
The crew makes suggestions for building a hacking lab today! We will tackle: What is recommended today to build a lab, given the latest advancements ...
With AI Nothing Is Safe - PSW #905
18 Dec 2025
Contributed by Lukas
This week in the security news: Linux process injection Threat actors need training too A Linux device "capable of practically anything" The Internet...
Tech Segment: MITM Automation + Security News - Josh Bressers - PSW #904
11 Dec 2025
Contributed by Lukas
This week in our technical segment, you will learn how to build a MITM proxy device using Kali Linux, some custom scripts, and a Raspberry PI! In the ...
Holiday Hack Challenge, AI, Internet of Trash - Ed Skoudis - PSW #903
04 Dec 2025
Contributed by Lukas
This week we welcome Ed Skoudis to talk about the holiday hack challenge (https://sans.org/HolidayHack). In the security news: Oh Asus Dashcam botnet...
Vibe Coding For Success and Failure - PSW #902
27 Nov 2025
Contributed by Lukas
Tune in for some hands-on tips on how to use Claude code to create some amazing and not-so-amazing software. Paul will walk you through what worked an...
Give Me Liberty or Linux, Badge Hacking Interview - Bryce Owen - PSW #901
20 Nov 2025
Contributed by Lukas
In the security news: Cloudflare was down, it was not good Logitech breached The largest data breach in history? Fortinet Fortiweb - the saga continu...
Going Around EDR - PSW #900
13 Nov 2025
Contributed by Lukas
This week: Minecraft on your lightbulb Sonicwall breached, who's next? Ditch Android, install Linux Hacking your face Thermostat freedom Pen test fai...
Turning To The Darkside & AI Cyberslop - PSW #899
06 Nov 2025
Contributed by Lukas
This week: Reversing keyboard firmware Ghost networks Invasion of the face changers Ghost tapping and whole lot of FUD AI doesn't code securely, but ...
Cybersecurity Is Dead - PSW #898
30 Oct 2025
Contributed by Lukas
In the security news this week: Cybersecurity is dead, and AI killed it Exploiting the patching system Apple makes it easier for spyware Who is patch...
Its Always DNS - PSW #897
23 Oct 2025
Contributed by Lukas
In the security news: When in doubt, blame DNS, you're almost always correct How to Make Windows 11 great, or at least suck less CSRF is the least of...
AI, EDR, and Hacking Things - PSW #896
16 Oct 2025
Contributed by Lukas
First up is a technical segment on UEFI shells: determining if they contain dangerous functionality that allows attackers to bypass Secure Boot. Then ...
IoT Hacks Galore - Kieran Human - PSW #895
09 Oct 2025
Contributed by Lukas
This week we kick things off with a special interview: Kieran Human from Threat Locker talks about EDR bypasses and other special projects. In the sec...
AI: The new trigger word. Or is it Robots? - PSW #894
02 Oct 2025
Contributed by Lukas
In addition to some fun news, we get a Mary Ann Davidson as a surprise guest. We even get a great quote from her of "You're never going to have enough...
Broadcom, LastPass, SEO Poisoning, QR codes, H1B visas, Distributed Computing... - PSW #893
25 Sep 2025
Contributed by Lukas
Broadcom, LastPass, Brickstone, SEO Poisoning, QR codes, H1B visas, Distributed Computing, and More... Show Notes: https://securityweekly.com/psw-893
Safes, Hackers, and Web Servers - PSW #892
18 Sep 2025
Contributed by Lukas
This week's technical segment is all about the T-Lora Pager from Lilygo, and really cool Meshtastic device that can also be used for some hacking task...
Americans Can't Hack It - PSW #891
11 Sep 2025
Contributed by Lukas
This week: Americans Can't Hack It Copy and paste to get malware Pixel 5 web servers - because you can How they got in and why security is hard Vulne...
Lasagna DoS, AI Slop, Hacker Ultimatums - PSW #890
04 Sep 2025
Contributed by Lukas
In the secure news: Automakers respond to Flipper Zero attacks More on the unconfirmed Elastic EDR 0-Day When Secure Boot does its job too well Crazy...
Hackers Steal Your Car and Vulnerabilities - Rob Allen - PSW #889
28 Aug 2025
Contributed by Lukas
Rob Allen joins us to discuss the importance of security research teams, and some cool stuff they've worked on. Then, in the Security News: Flipper Z...
What We've Learned from LockBit and Black Basta Leaks (and News) - Ian Gray - PSW #888
21 Aug 2025
Contributed by Lukas
This segment is sponsored by Flashpoint. Visit https://securityweekly.com/flashpoint to learn more about them! Recent leaks tied to LockBit and Black ...
Hackberry PIs and Other Hacker Things - PSW #887
14 Aug 2025
Contributed by Lukas
We kick things off with a deep dive into the Hackberry PI and how to build one. Then in the security news: Will Perplexity buy Chrome? ESP32 Bus Pira...
Devices Are Attacking - PSW #886
07 Aug 2025
Contributed by Lukas
Why should hate AI When firmware attacks The 300 second breach Old ways still work, AI might help And so begins the crawler wars Turn off your SonicW...
Hacking Washing Machines - PSW #885
31 Jul 2025
Contributed by Lukas
In the security news: Hacking washing machines, good clean fun! Hacking cars via Bluetooth More Bluetooth hacking with Breaktooth Making old vulnerab...
Protecting G-Suite/MS365 and Security News - Abhishek Agrawal - PSW #884
24 Jul 2025
Contributed by Lukas
We chat with Material Security about protecting G Suite and MS365. How else are you monitoring the most commonly used cloud environments and applicati...
Hackers On A Train - PSW #883
17 Jul 2025
Contributed by Lukas
In the security news: The train is leaving the station, or is it? The hypervisor will protect you, maybe The best thing about Flippers are the clones...
Citrixbleed 2, Hardware Hacking, and Failed Bans - PSW #882
10 Jul 2025
Contributed by Lukas
This week in the security news: Citrixbleed 2 and so many failures Ruckus leads the way on how not to handle vulnerabilities When you have no egress ...
Exploring Meshtastic and LoRa Mesh Networks - Rob Allen - PSW #881
03 Jul 2025
Contributed by Lukas
This week, we dive into the world of Meshtastic and LoRa—two technologies empowering secure, long-range, and infrastructure-free communication. We'l...
Is Vuln Management Dead? - HD Moore - PSW #880
26 Jun 2025
Contributed by Lukas
This conversation explores the intersection of cybersecurity and emerging technologies, focusing on innovative hacking techniques, the evolution of vu...
Hacking Drivers - PSW #879
19 Jun 2025
Contributed by Lukas
This week: * The true details around Salt Typhoon are still unknown * The search for a portable pen testing device * Directories named "hacker2" are s...
UEFI Vulnerabilities Galore - PSW #878
12 Jun 2025
Contributed by Lukas
This week: You got a Bad box, again Cameras are expose to the Internet EU and connected devices Hydrophobia NVRAM variables Have you heard about IGEL...
Updating & Protecting Linux Systems - PSW #877
05 Jun 2025
Contributed by Lukas
Two parts to this episode: Tech Segment: Updating Linux Systems - Beyond apt-get upgrade * Custom scripts for ensuring your Linux systems are up-to-...
It's A Trap! - PSW #876
29 May 2025
Contributed by Lukas
In the security news: Vicious Trap - The malware hiding in your router Hacking your car WSL is open-source, but why? Using AI to find vulnerabilities...
Malware Laced Printer Drivers - PSW #875
22 May 2025
Contributed by Lukas
This week in the security news: Malware-laced printer drivers Unicode steganography Rhode Island may sue Deloitte for breach. They may even win. Japa...
Ransomware in your CPU - PSW #874
15 May 2025
Contributed by Lukas
This week in the security news: Android catches up to iOS with its own lockdown mode Just in case, there is a new CVE foundation Branch privilege inj...
Are You Down With RDP? - PSW #873
08 May 2025
Contributed by Lukas
Security news for this week: RDP and credentials that are not really revoked, and some RDP bitmap caching fun Some magic info on MagicINFO Vulnerabil...
AI Tips, Tricks, and Traps! - PSW #872
01 May 2025
Contributed by Lukas
The PSW crew discusses tips, tricks, and traps for using AI and LLMs. We discuss a wide range of AI-related topics, including how to utilize AI tools ...
Hacking Crosswalks and Attacking Boilers - PSW #871
24 Apr 2025
Contributed by Lukas
The crosswalk is talking to me man!, don't block my website without due process, Florida is demanding encryption backdoors, attacking boilers and bann...
Govt Unravelling, AI Hijinx, Bot Chaos, Recall, Oracle, Slopesquatting, Tycoon 2FA... - PSW #870
17 Apr 2025
Contributed by Lukas
Govt Unravelling, AI Hijinx, Bot Chaos, Recall, Oracle, Slopesquatting, Tycoon 2FA, College, who knows, a lot more... On Paul's Security Weekly. Show ...
You Should Just Patch - PSW #869
10 Apr 2025
Contributed by Lukas
In the security news this week: You should really just patch things, the NVD backlog, Android phones with malware pre-installed, so convenient, keylog...
Not-So-Secure Boot - Rob Allen - PSW #868
03 Apr 2025
Contributed by Lukas
Rob Allen, Chief Product Officer at Threatlocker joins us for an interview segment on using AI in security products: What works and what's not fully b...
SignalGate and How Not To Protect Secrets - PSW #867
27 Mar 2025
Contributed by Lukas
How do we handle scope creep for vulnerabilities?, find the bugs before it hits the real world, risk or hype vulnerabilities, RTL-SDR in a browser, us...
Its Not Really A 0-Day - PSW #866
20 Mar 2025
Contributed by Lukas
This week: Compliance, localization, blah blah, the Greatest Cybersecurity Myth Ever Told, trolling Microsoft with a video, Github actions give birth ...
AI Is Oversharing and Leaking Data - Sounil Yu - PSW #865
13 Mar 2025
Contributed by Lukas
Sounil Yu joins us to kick things off with AI defenses: Enterprise AI search tools like Copilot for Microsoft 365 lack the in-depth access controls re...
Don't Hack Russia - PSW #864
06 Mar 2025
Contributed by Lukas
Hacking your mattress, Taylor Swift all the time, DNS sinkholes, throwing parties at rental properties, detect jamming, it took 18 years to hack, airt...
Zero Days Are Not Just Fiction - PSW #863
27 Feb 2025
Contributed by Lukas
Apple, the UK, and data protection, you can get pwned really fast, Australia says no Kaspersky for you!, the default password is on the Internet, topo...
Live from ZTW - PSW #862
20 Feb 2025
Contributed by Lukas
Our thoughts on Zero Trust World, and just a little bit of news. Of course we covered some firmware and UEFI without Paul! Show Notes: https://securit...
Prompt Injection, CISA, Patch Tuesday - PSW #861
13 Feb 2025
Contributed by Lukas
You can install Linux in your PDF, just upload everything to AI, hackers behind the forum, TP-Link's taking security seriously, patche Tuesday for eve...
Deepseek, AMD, and Forgotten Buckets - PSW #860
06 Feb 2025
Contributed by Lukas
Deepseek troubles, AI models explained, AMD CPU microcode signature validation, what happens when you leave an AWS S3 bucket laying around, 3D printin...
Cred Vaults, Cheap AI, and Hacking Devices - PSW #859
30 Jan 2025
Contributed by Lukas
This week, we talked to our friends at Bitwarden about password vaults, storing more than just passwords, free software to manage those SSH keys, and ...
Vulnerability Prioritization In The Real World - PSW #858
23 Jan 2025
Contributed by Lukas
Andy Jaquith joins us to discuss how to prioritize vulnerabilities and remmediation in the real-world, including asset management and more! In the sec...
Stopping The Bad Things - PSW #857
17 Jan 2025
Contributed by Lukas
Rob from ThreatLocker comes on the show to talk about how we can disrupt attacker techniques, including Zero Trust, privilege escalation, LOLbins, and...
Threat Actors With A Thousand Names - PSW #856
09 Jan 2025
Contributed by Lukas
DNA sequencer vulnerabilities, threat actor naming conventions, new CNAs and problems, backdoors are not secrets (again), The RP2350 is hacked!, they ...
Hacker Heroes - Haroon Meer - PSW Vault
25 Dec 2024
Contributed by Lukas
Unraveling Cybersecurity Complexity: A Conversation with Haroon Meer Haroon Meer, an influential figure in the world of cybersecurity, takes center st...
The Number One Threat - PSW #855
19 Dec 2024
Contributed by Lukas
XSS is the number one threat?, fix your bugs faster, hacking VoIP systems, AI and how it may help fuzzing, hacker gift guides, new DMA attacks, hackin...
When Public Payphones Become Smart Phones - Inbar Raz - PSW #855
19 Dec 2024
Contributed by Lukas
If you've ever wondered how attackers could go after payphones that are "smart" we got you covered! Inbar has done some amazing research and is here t...
No Paul? We got this! - PSW #854
12 Dec 2024
Contributed by Lukas
In the security news, the crew, (minus Paul) get to gather to discus hacks causing disruptions, in healthcare, donuts and vodka, router and OpenWRT ha...
Navigating Regulations in Supply Chain Security - Eric Greenwald - PSW #854
12 Dec 2024
Contributed by Lukas
Join us for this segment as we discuss government regulations and certifications as they apply to supply chain security and vulnerability management, ...
Security News - PSW #853
05 Dec 2024
Contributed by Lukas
Bootkitties and Linux bootkits, Canada realizes banning Flippers is silly, null bytes matter, CVE samples, how dark web marketplaces do security, Perl...
Hacker Gadgets - PSW #853
04 Dec 2024
Contributed by Lukas
The hosts discuss hacker gadgets! We'll cover what we've been hacking on lately and discuss gadgets we want to work on in the future and other gadgets...
Hacker Heroes - Aaron Turner - PSW Vault
27 Nov 2024
Contributed by Lukas
In this Hacker Heroes episode, we sit down with Aaron Turner, a highly respected figure in the realm of cybersecurity. With a career spanning decades,...
Fortinet, Palo Alto, VMWare - PSW #852
21 Nov 2024
Contributed by Lukas
Fast cars kill people, Apple 0-Days, memory safety, poisoning the well, babble babble and malware that tries really hard to be stealthy, Palto Alto an...
Confessions of a Cyber Criminal Stalker - Ken Westin - PSW #852
21 Nov 2024
Contributed by Lukas
Black Hats & White Collars: We know criminal hacking is big business because we've spied on them! Ken comes on the show to talk about chasing and stal...
Holiday Hack Challenge - PSW #851
14 Nov 2024
Contributed by Lukas
We kicked things off by talking about the Holiday Hack Challenge, which is like this massive cyber playground that Sans puts out every year for everyo...
No CVE and No Accountability - PSW #851
14 Nov 2024
Contributed by Lukas
Alright, so we dove deep into some pretty wild stuff this week. We started off talking about zip files inside zip files. This is a variation of old-sc...
We're Not Saying "I told you so" - PSW #850
07 Nov 2024
Contributed by Lukas
In the news: Pacific Rim, Linux on Windows for attackers, one of the worst cases of a former employee's retaliation, Zery-Day FOMO, we predicted that,...
Cybersecurity For Schools - Kayne McGladrey - PSW #850
07 Nov 2024
Contributed by Lukas
We chatted with Kayne about education systems security, funding for cyber tools and services, and what the future of education might look like to fill...
EDR Is Dead, EDR Is Not Dead - PSW #849
31 Oct 2024
Contributed by Lukas
Google's cookie encryption drama, Microsoft accusing Google of shady antitrust tactics, AI shenanigans, the rejected Defcon talk and hacking traffic l...
Shadow IT and Security Debt - Dave Lewis - PSW #849
30 Oct 2024
Contributed by Lukas
We had the pleasure of finally having Dave Lewis on the show to discuss shadow IT and security debt. Dave shared some fascinating insights from his lo...
Not The Vulnerabilities You're Looking For - PSW #848
24 Oct 2024
Contributed by Lukas
This week: The USB Army Knife that won't break the budget, I don't want to say EDR is useless (but there I said it), Paul's list of excellent hacking ...
Secure By Default - How do we get there? - Andy Syrewicze - PSW #848
24 Oct 2024
Contributed by Lukas
Andy drops some Microsoft Windows and 365 knowledge as we discuss the details on how we get to secure by default in our Windows and cloud environments...
Everything is Overrated - PSW #847
17 Oct 2024
Contributed by Lukas
Air gaps are still not air gapped, making old exploits new again, chaining exploits for full compromise, patching is overrated, SBOMs are overrated, V...
Effective Operational Outcomes - Ken Dunham - PSW #847
17 Oct 2024
Contributed by Lukas
New security and vulnerability research is published every day. How can security teams get ahead of the curve and build architecture to combat modern ...
The Saga Continues - PSW #846
10 Oct 2024
Contributed by Lukas
Get ready for a wild ride in this week's podcast episode, where we dive into the latest security shenanigans! Default Credentials Gone Wild: We'll ki...
The Code of Honor: Embracing Ethics in Cybersecurity - Ed Skoudis - PSW #846
10 Oct 2024
Contributed by Lukas
"Code of Honor: Embracing Ethics in Cybersecurity" by Ed Skoudis is a book that explores the ethical challenges faced by cybersecurity professionals i...
Nothing Is Safe - PSW #845
04 Oct 2024
Contributed by Lukas
Automated tank gauges are leaking more than just fuel, while CUPS is serving up a steaming hot brew of vulnerabilities. Meanwhile, Supermicro's BMC fi...
Analyzing Malware at Scale - John Hammond - PSW #845
02 Oct 2024
Contributed by Lukas
This episode of Paul Security Weekly features John Hammond, a senior security researcher from Huntress, discussing malware analysis. Hammond dives int...
AI in Cyber & Addressing Analyst Burnout - Kayla Williams - PSW #844
26 Sep 2024
Contributed by Lukas
Kayla Williams, Chief Security Information Officer at Devo, discussed the role of AI in cybersecurity and the ongoing issue of burnout for SOC analyst...
Unsophisticated Methods - PSW #844
26 Sep 2024
Contributed by Lukas
This week in the security news, Dr. Doug and Larry explore various technological advancements and their implications with a healthy dose of nostalgia,...
The Known Exploited Vulnerability catalogue, aka the KEV - Tod Beardsley - PSW #843
19 Sep 2024
Contributed by Lukas
Gain insights into the CISA KEV straight from one of the folks at CISA, Tod Beardsley, in this episode of Below the Surface. Learn how KEV was created...
Exploding Pagers - PSW #843
19 Sep 2024
Contributed by Lukas
Apple drops a lawsuit to avoid exposing secrets, what does it mean for the security industry if MS locks down the kernel?, exploding pagers, more thin...
Wifi Vulns, Yubikeys, and Firmware - PSW #842
12 Sep 2024
Contributed by Lukas
Don't tell the FCC there is a new Flipper firmware release, unpatchable?, argv[0] and sneaking past defenses, protect your registries, someone solved ...
Recent Cyber Security Laws & Regulations - Lee Kim - PSW #842
12 Sep 2024
Contributed by Lukas
Lee comes on the show to discuss: EU CRA - https://en.wikipedia.org/wiki/CyberResilienceAct - its impact on bringing products to market and the chall...
Hacker Heroes - Mark Loveless - PSW Vault
04 Sep 2024
Contributed by Lukas
Exploring the Hacking Landscape with Mark Loveless, AKA SimpleNomad Dive into the intricate world of cybersecurity with our featured guest, Mark Lovel...
I want ALL The Firmware - PSW #841
29 Aug 2024
Contributed by Lukas
This week: I want all the firmware, its not just TP-Link, CVEs for malware, BLE and your health, faking your own death, serial ports, stealthy Linux m...