Paul's Security Weekly (Audio)
Episodes
FIRESTARTER - PSW #924
30 Apr 2026
Contributed by Lukas
This week in the security news: Are you a FIRESTARTER? Eavesdropping via fiber-optic cables Copy Fail - more Linux LPE Github RCE Running Linux on a ...
Back to (or Start) Fundamentals? - Rajesh Khazanchi - PSW #923
23 Apr 2026
Contributed by Lukas
This week: Larry's in the host seat and chaos ensues. We dig into: A very questionable story about tracking a warship with a $5 Bluetooth tracker Ser...
The AI "Vulnpocolypse" Is Real? - PSW #922
16 Apr 2026
Contributed by Lukas
This week: CSA issues guidance to CISOs on Mythos Vuln management woes Windows tells you about Secure Boot AI-assisted firmware vuln hunting The dumb...
AI Makes All Bug Shallow? - PSW #921
09 Apr 2026
Contributed by Lukas
This week: Rage dropping 0-Day Claude Mythos, things are different now From UART to root, on a device made in China, where's the FCC? More CUPS vulne...
What Is A Router? (And all things AI) - PSW #920
02 Apr 2026
Contributed by Lukas
In the Security News: Claude leaks source code and new models Two really smart people say AI is finding vulnerabilities better than ever Windows is u...
Scanning The Internet with Linux Tools - PSW #919
26 Mar 2026
Contributed by Lukas
In this segment, we will explore some pretty awesome tools for scanning the Internet, with a focus on network edge devices. We'll bring it all togethe...
Hacking IP KVMs & Reversing with Radare2 - Sergi Àlvarez - PSW #918
19 Mar 2026
Contributed by Lukas
In this episode, we sit down with the Radare community leader, Pancake, the creator of the Radare2 reverse engineering framework. Whether you've never...
Vulnerability Mis-Management - PSW #917
12 Mar 2026
Contributed by Lukas
In the security news this week: The XZ backdoor documentary Zero days - the clock isn't ticking Vulnerability Mis-Management Reversing traffic light ...
Airsnitch, Claude, Hacking Firewalls - PSW #916
05 Mar 2026
Contributed by Lukas
In the security news this week: Remembering "FX" Finding and analyzing Windows drivers Network monitoring with Gibson the backdoor in your PAM The ed...
AI Is Taking Over Cybersecurity - PSW #915
26 Feb 2026
Contributed by Lukas
First up is a technical segment called "Paul's Linux Hacks". I finally got around to releasing a bunch of scripts and tutorials for Linux that I've cr...
Firmware Backdoors Be Spying On You - PSW #914
19 Feb 2026
Contributed by Lukas
AI says that this is the show where we turn coffee into threat intelligence and cigar smoke into packet captures. This week: a firmware backdoor livi...
AI Vulnerability Hunting - PSW #913
12 Feb 2026
Contributed by Lukas
In the security news: Viral AI prompts Things to do in your home security lab I can open your garage door They call me DKnife Beyondtrust RCE Cool AI...
AI: No One Is Safe - PSW #912
05 Feb 2026
Contributed by Lukas
In the security news this week: Residential proxy abuse is everywhere this week: from Google's takedown of IPIDEA to massive Citrix NetScaler scannin...
To curmudgeon or not to curmudgeon, that is the question. - PSW #911
29 Jan 2026
Contributed by Lukas
This week, we get un-curmudgeoned by Mandy, spending a bunch of time talking about regulations, compliance, and even the US federal government's commi...
We Left It Vulnerable On Purpose - Rob Allen - PSW #910
22 Jan 2026
Contributed by Lukas
In the security news: Rainbow tables for everyone Lilygo releases a new T-Display that looks awesome AI generated malware for real Detecting BadUSB w...
Digging For Vulnerability Gold - PSW #909
15 Jan 2026
Contributed by Lukas
In the security news: KVMs are a hacker's dream Hacking an e-scooter Flipper Zero alternatives The best authentication bypass Pwning Claude Code Fori...
No FlipperZeros Allowed - PSW #908
08 Jan 2026
Contributed by Lukas
This week in the security news: Supply chain attacks and XSS PS5 leaked keys Claude tips for security pros No Flipper Zeros allowed, or Raspberry PIs...
Breaking Into Cybersecurity - PSW #907
01 Jan 2026
Contributed by Lukas
Our field is booming! Cybersecurity jobs are projected to grow 33 percent through 2033, far outpacing the average 4 percent growth across all jobs. (A...
Building a Hacking Lab in 2025 - PSW #906
25 Dec 2025
Contributed by Lukas
The crew makes suggestions for building a hacking lab today! We will tackle: What is recommended today to build a lab, given the latest advancements ...
With AI Nothing Is Safe - PSW #905
18 Dec 2025
Contributed by Lukas
This week in the security news: Linux process injection Threat actors need training too A Linux device "capable of practically anything" The Internet...
Tech Segment: MITM Automation + Security News - Josh Bressers - PSW #904
11 Dec 2025
Contributed by Lukas
This week in our technical segment, you will learn how to build a MITM proxy device using Kali Linux, some custom scripts, and a Raspberry PI! In the ...
Holiday Hack Challenge, AI, Internet of Trash - Ed Skoudis - PSW #903
04 Dec 2025
Contributed by Lukas
This week we welcome Ed Skoudis to talk about the holiday hack challenge (https://sans.org/HolidayHack). In the security news: Oh Asus Dashcam botnet...
Vibe Coding For Success and Failure - PSW #902
27 Nov 2025
Contributed by Lukas
Tune in for some hands-on tips on how to use Claude code to create some amazing and not-so-amazing software. Paul will walk you through what worked an...
Give Me Liberty or Linux, Badge Hacking Interview - Bryce Owen - PSW #901
20 Nov 2025
Contributed by Lukas
In the security news: Cloudflare was down, it was not good Logitech breached The largest data breach in history? Fortinet Fortiweb - the saga continu...
Going Around EDR - PSW #900
13 Nov 2025
Contributed by Lukas
This week: Minecraft on your lightbulb Sonicwall breached, who's next? Ditch Android, install Linux Hacking your face Thermostat freedom Pen test fai...
Turning To The Darkside & AI Cyberslop - PSW #899
06 Nov 2025
Contributed by Lukas
This week: Reversing keyboard firmware Ghost networks Invasion of the face changers Ghost tapping and whole lot of FUD AI doesn't code securely, but ...
Cybersecurity Is Dead - PSW #898
30 Oct 2025
Contributed by Lukas
In the security news this week: Cybersecurity is dead, and AI killed it Exploiting the patching system Apple makes it easier for spyware Who is patch...
Its Always DNS - PSW #897
23 Oct 2025
Contributed by Lukas
In the security news: When in doubt, blame DNS, you're almost always correct How to Make Windows 11 great, or at least suck less CSRF is the least of...
AI, EDR, and Hacking Things - PSW #896
16 Oct 2025
Contributed by Lukas
First up is a technical segment on UEFI shells: determining if they contain dangerous functionality that allows attackers to bypass Secure Boot. Then ...
IoT Hacks Galore - Kieran Human - PSW #895
09 Oct 2025
Contributed by Lukas
This week we kick things off with a special interview: Kieran Human from Threat Locker talks about EDR bypasses and other special projects. In the sec...
AI: The new trigger word. Or is it Robots? - PSW #894
02 Oct 2025
Contributed by Lukas
In addition to some fun news, we get a Mary Ann Davidson as a surprise guest. We even get a great quote from her of "You're never going to have enough...
Broadcom, LastPass, SEO Poisoning, QR codes, H1B visas, Distributed Computing... - PSW #893
25 Sep 2025
Contributed by Lukas
Broadcom, LastPass, Brickstone, SEO Poisoning, QR codes, H1B visas, Distributed Computing, and More... Visit https://www.securityweekly.com/psw for al...
Safes, Hackers, and Web Servers - PSW #892
18 Sep 2025
Contributed by Lukas
This week's technical segment is all about the T-Lora Pager from Lilygo, and really cool Meshtastic device that can also be used for some hacking task...
Americans Can't Hack It - PSW #891
11 Sep 2025
Contributed by Lukas
This week: Americans Can't Hack It Copy and paste to get malware Pixel 5 web servers - because you can How they got in and why security is hard Vulne...
Lasagna DoS, AI Slop, Hacker Ultimatums - PSW #890
04 Sep 2025
Contributed by Lukas
In the secure news: Automakers respond to Flipper Zero attacks More on the unconfirmed Elastic EDR 0-Day When Secure Boot does its job too well Crazy...
Hackers Steal Your Car and Vulnerabilities - Rob Allen - PSW #889
28 Aug 2025
Contributed by Lukas
Rob Allen joins us to discuss the importance of security research teams, and some cool stuff they've worked on. Then, in the Security News: Flipper Z...
What We've Learned from LockBit and Black Basta Leaks (and News) - Ian Gray - PSW #888
21 Aug 2025
Contributed by Lukas
This segment is sponsored by Flashpoint. Visit https://securityweekly.com/flashpoint to learn more about them! Recent leaks tied to LockBit and Black ...
Hackberry PIs and Other Hacker Things - PSW #887
14 Aug 2025
Contributed by Lukas
We kick things off with a deep dive into the Hackberry PI and how to build one. Then in the security news: Will Perplexity buy Chrome? ESP32 Bus Pira...
Devices Are Attacking - PSW #886
07 Aug 2025
Contributed by Lukas
Why should hate AI When firmware attacks The 300 second breach Old ways still work, AI might help And so begins the crawler wars Turn off your SonicW...
Hacking Washing Machines - PSW #885
31 Jul 2025
Contributed by Lukas
In the security news: Hacking washing machines, good clean fun! Hacking cars via Bluetooth More Bluetooth hacking with Breaktooth Making old vulnerab...
Protecting G-Suite/MS365 and Security News - Abhishek Agrawal - PSW #884
24 Jul 2025
Contributed by Lukas
We chat with Material Security about protecting G Suite and MS365. How else are you monitoring the most commonly used cloud environments and applicati...
Hackers On A Train - PSW #883
17 Jul 2025
Contributed by Lukas
In the security news: The train is leaving the station, or is it? The hypervisor will protect you, maybe The best thing about Flippers are the clones...
Citrixbleed 2, Hardware Hacking, and Failed Bans - PSW #882
10 Jul 2025
Contributed by Lukas
This week in the security news: Citrixbleed 2 and so many failures Ruckus leads the way on how not to handle vulnerabilities When you have no egress ...
Exploring Meshtastic and LoRa Mesh Networks - Rob Allen - PSW #881
03 Jul 2025
Contributed by Lukas
This week, we dive into the world of Meshtastic and LoRa—two technologies empowering secure, long-range, and infrastructure-free communication. We'l...
Is Vuln Management Dead? - HD Moore - PSW #880
26 Jun 2025
Contributed by Lukas
This conversation explores the intersection of cybersecurity and emerging technologies, focusing on innovative hacking techniques, the evolution of vu...
Hacking Drivers - PSW #879
19 Jun 2025
Contributed by Lukas
This week: * The true details around Salt Typhoon are still unknown * The search for a portable pen testing device * Directories named "hacker2" are s...
UEFI Vulnerabilities Galore - PSW #878
12 Jun 2025
Contributed by Lukas
This week: You got a Bad box, again Cameras are expose to the Internet EU and connected devices Hydrophobia NVRAM variables Have you heard about IGEL...
Updating & Protecting Linux Systems - PSW #877
05 Jun 2025
Contributed by Lukas
Two parts to this episode: Tech Segment: Updating Linux Systems - Beyond apt-get upgrade * Custom scripts for ensuring your Linux systems are up-to-...
It's A Trap! - PSW #876
29 May 2025
Contributed by Lukas
In the security news: Vicious Trap - The malware hiding in your router Hacking your car WSL is open-source, but why? Using AI to find vulnerabilities...
Malware Laced Printer Drivers - PSW #875
22 May 2025
Contributed by Lukas
This week in the security news: Malware-laced printer drivers Unicode steganography Rhode Island may sue Deloitte for breach. They may even win. Japa...
Ransomware in your CPU - PSW #874
15 May 2025
Contributed by Lukas
This week in the security news: Android catches up to iOS with its own lockdown mode Just in case, there is a new CVE foundation Branch privilege inj...
Are You Down With RDP? - PSW #873
08 May 2025
Contributed by Lukas
Security news for this week: RDP and credentials that are not really revoked, and some RDP bitmap caching fun Some magic info on MagicINFO Vulnerabil...
AI Tips, Tricks, and Traps! - PSW #872
01 May 2025
Contributed by Lukas
The PSW crew discusses tips, tricks, and traps for using AI and LLMs. We discuss a wide range of AI-related topics, including how to utilize AI tools ...
Hacking Crosswalks and Attacking Boilers - PSW #871
24 Apr 2025
Contributed by Lukas
The crosswalk is talking to me man!, don't block my website without due process, Florida is demanding encryption backdoors, attacking boilers and bann...
Govt Unravelling, AI Hijinx, Bot Chaos, Recall, Oracle, Slopesquatting, Tycoon 2FA... - PSW #870
17 Apr 2025
Contributed by Lukas
Govt Unravelling, AI Hijinx, Bot Chaos, Recall, Oracle, Slopesquatting, Tycoon 2FA, College, who knows, a lot more... On Paul's Security Weekly. Visit...
You Should Just Patch - PSW #869
10 Apr 2025
Contributed by Lukas
In the security news this week: You should really just patch things, the NVD backlog, Android phones with malware pre-installed, so convenient, keylog...
Not-So-Secure Boot - Rob Allen - PSW #868
03 Apr 2025
Contributed by Lukas
Rob Allen, Chief Product Officer at Threatlocker joins us for an interview segment on using AI in security products: What works and what's not fully b...
SignalGate and How Not To Protect Secrets - PSW #867
27 Mar 2025
Contributed by Lukas
How do we handle scope creep for vulnerabilities?, find the bugs before it hits the real world, risk or hype vulnerabilities, RTL-SDR in a browser, us...
Its Not Really A 0-Day - PSW #866
20 Mar 2025
Contributed by Lukas
This week: Compliance, localization, blah blah, the Greatest Cybersecurity Myth Ever Told, trolling Microsoft with a video, Github actions give birth ...
AI Is Oversharing and Leaking Data - Sounil Yu - PSW #865
13 Mar 2025
Contributed by Lukas
Sounil Yu joins us to kick things off with AI defenses: Enterprise AI search tools like Copilot for Microsoft 365 lack the in-depth access controls re...
Don't Hack Russia - PSW #864
06 Mar 2025
Contributed by Lukas
Hacking your mattress, Taylor Swift all the time, DNS sinkholes, throwing parties at rental properties, detect jamming, it took 18 years to hack, airt...
Zero Days Are Not Just Fiction - PSW #863
27 Feb 2025
Contributed by Lukas
Apple, the UK, and data protection, you can get pwned really fast, Australia says no Kaspersky for you!, the default password is on the Internet, topo...
Live from ZTW - PSW #862
20 Feb 2025
Contributed by Lukas
Our thoughts on Zero Trust World, and just a little bit of news. Of course we covered some firmware and UEFI without Paul! Visit https://www.securityw...
Prompt Injection, CISA, Patch Tuesday - PSW #861
13 Feb 2025
Contributed by Lukas
You can install Linux in your PDF, just upload everything to AI, hackers behind the forum, TP-Link's taking security seriously, patche Tuesday for eve...
Deepseek, AMD, and Forgotten Buckets - PSW #860
06 Feb 2025
Contributed by Lukas
Deepseek troubles, AI models explained, AMD CPU microcode signature validation, what happens when you leave an AWS S3 bucket laying around, 3D printin...
Cred Vaults, Cheap AI, and Hacking Devices - Matt Bishop - PSW #859
30 Jan 2025
Contributed by Lukas
This week, we talked to our friends at Bitwarden about password vaults, storing more than just passwords, free software to manage those SSH keys, and ...
Vulnerability Prioritization In The Real World - Andy Jaquith - PSW #858
23 Jan 2025
Contributed by Lukas
Andy Jaquith joins us to discuss how to prioritize vulnerabilities and remmediation in the real-world, including asset management and more! In the sec...
Stopping The Bad Things - Rob Allen - PSW #857
16 Jan 2025
Contributed by Lukas
Rob from ThreatLocker comes on the show to talk about how we can disrupt attacker techniques, including Zero Trust, privilege escalation, LOLbins, and...
Threat Actors With A Thousand Names - PSW #856
09 Jan 2025
Contributed by Lukas
DNA sequencer vulnerabilities, threat actor naming conventions, new CNAs and problems, backdoors are not secrets (again), The RP2350 is hacked!, they ...
Hacker Heroes - Haroon Meer - PSW Vault
25 Dec 2024
Contributed by Lukas
Unraveling Cybersecurity Complexity: A Conversation with Haroon Meer Haroon Meer, an influential figure in the world of cybersecurity, takes center st...
When Public Payphones Become Smart Phones - Inbar Raz - PSW #855
19 Dec 2024
Contributed by Lukas
If you've ever wondered how attackers could go after payphones that are "smart" we got you covered! Inbar has done some amazing research and is here t...
Navigating Regulations in Supply Chain Security - Eric Greenwald - PSW #854
12 Dec 2024
Contributed by Lukas
Join us for this segment as we discuss government regulations and certifications as they apply to supply chain security and vulnerability management, ...
Hacker Gadgets - PSW #853
04 Dec 2024
Contributed by Lukas
The hosts discuss hacker gadgets! We'll cover what we've been hacking on lately and discuss gadgets we want to work on in the future and other gadgets...
Hacker Heroes - Aaron Turner - PSW Vault
27 Nov 2024
Contributed by Lukas
In this Hacker Heroes episode, we sit down with Aaron Turner, a highly respected figure in the realm of cybersecurity. With a career spanning decades,...
Confessions of a Cyber Criminal Stalker - Ken Westin - PSW #852
21 Nov 2024
Contributed by Lukas
Black Hats & White Collars: We know criminal hacking is big business because we've spied on them! Ken comes on the show to talk about chasing and stal...
No CVE and No Accountability - Ed Skoudis - PSW #851
14 Nov 2024
Contributed by Lukas
Alright, so we dove deep into some pretty wild stuff this week. We started off talking about zip files inside zip files. This is a variation of old-sc...
Cybersecurity For Schools - Kayne McGladrey - PSW #850
07 Nov 2024
Contributed by Lukas
We chatted with Kayne about education systems security, funding for cyber tools and services, and what the future of education might look like to fill...
Shadow IT and Security Debt - Dave Lewis - PSW #849
31 Oct 2024
Contributed by Lukas
We had the pleasure of finally having Dave Lewis on the show to discuss shadow IT and security debt. Dave shared some fascinating insights from his lo...
Secure By Default - How do we get there? - Andy Syrewicze - PSW #848
24 Oct 2024
Contributed by Lukas
Andy drops some Microsoft Windows and 365 knowledge as we discuss the details on how we get to secure by default in our Windows and cloud environments...
Effective Operational Outcomes - Ken Dunham - PSW #847
17 Oct 2024
Contributed by Lukas
New security and vulnerability research is published every day. How can security teams get ahead of the curve and build architecture to combat modern ...
The Code of Honor: Embracing Ethics in Cybersecurity - Ed Skoudis - PSW #846
10 Oct 2024
Contributed by Lukas
"Code of Honor: Embracing Ethics in Cybersecurity" by Ed Skoudis is a book that explores the ethical challenges faced by cybersecurity professionals i...
Analyzing Malware at Scale - John Hammond - PSW #845
02 Oct 2024
Contributed by Lukas
This episode of Paul Security Weekly features John Hammond, a senior security researcher from Huntress, discussing malware analysis. Hammond dives int...
AI in Cyber & Addressing Analyst Burnout - Kayla Williams - PSW #844
26 Sep 2024
Contributed by Lukas
This week in the security news, Dr. Doug and Larry explore various technological advancements and their implications with a healthy dose of nostalgia,...
Exploding Pagers - Tod Beardsley - PSW #843
19 Sep 2024
Contributed by Lukas
Apple drops a lawsuit to avoid exposing secrets, what does it mean for the security industry if MS locks down the kernel?, exploding pagers, more thin...
Recent Cyber Security Laws & Regulations - Lee Kim - PSW #842
12 Sep 2024
Contributed by Lukas
Lee comes on the show to discuss: EU CRA - https://en.wikipedia.org/wiki/CyberResilienceAct - its impact on bringing products to market and the chall...
Hacker Heroes - Mark Loveless - PSW Vault
04 Sep 2024
Contributed by Lukas
Exploring the Hacking Landscape with Mark Loveless, AKA SimpleNomad Dive into the intricate world of cybersecurity with our featured guest, Mark Lovel...
Building AI BOMs - Helen Oakley - PSW #841
30 Aug 2024
Contributed by Lukas
Larry and Helen walk us through the AI supply chain landscape. Learn what goes into building and using AI models and the dangers that could lurk withi...
How do we patch the right things? - Josh Bressers - PSW #840
22 Aug 2024
Contributed by Lukas
Every week here on the show we talk about vulnerabilities and exploits. Typically we recommend that organizations remediate these vulnerabilities in s...
Cybersecurity Myths - Eugene Spafford - PSW #839
15 Aug 2024
Contributed by Lukas
Early on in his career Spaf was working with microcode and continued to work on technical projects. As time went on he realized that focusing on the n...
Downgrades and Attacking Security Things & Things Not to Miss at BH/DC - Trent Lo - PSW #838
08 Aug 2024
Contributed by Lukas
This week, Downgrade attacks, bootloader fun, check your firmware before you wreck your firmware, you've got mail server issues, Ivanti is the new Rhi...
PK Fail - John Loucaides - PSW #837
01 Aug 2024
Contributed by Lukas
John is one of the foremost experts in UEFI and joins us to talk about PK Fail! What happens when a vendor in the supply chain accidentally loses a ke...
MS Patch Tuesday: Which Vulnerabilities Really Need Prioritizing. - Douglas McKee - PSW #836
25 Jul 2024
Contributed by Lukas
Doug and the Security Weekly crew talk about vulnerabilities, are we patching the right things? This is the burning question. We will try to answer it...
3D Printing For Hackers - David Johnson - PSW #835
18 Jul 2024
Contributed by Lukas
Thinking about getting a 3D printer or have one and need a good primer? Check out this segment, we live 3D print a Captain Crunch whistle and talk all...
RFID hacking & More Vulnerability Shenanigans - Iceman - PSW #834
11 Jul 2024
Contributed by Lukas
Bats in your headset, Windows Wifi driver vulnerabilities, Logitech's dongles, lighthttpd is heavy with vulnerabilities, node-ip's not vulnerability, ...
Hacker Heroes - Joe Grand - PSW Vault
03 Jul 2024
Contributed by Lukas
Exploring the Hardware Hacking Realm with Joe Grand, AKA Kingpin Joe Grand, also known by his hacker pseudonym "Kingpin," stands as a prominent figure...
Do We Need Penetration Testing and Vulnerability Scanning? - Josh Bressers, Adrian Sanabria - PSW #833
27 Jun 2024
Contributed by Lukas
This may be controversial, however, we've been privately discussing how organizations benefit from penetration testing and vulnerability scanning. Do ...
Hacker Heroes - Dave Aitel - PSW Vault
19 Jun 2024
Contributed by Lukas
Exploring the Strategic Minds in Cybersecurity: A Conversation with Dave Aitel Welcome to an enlightening episode of our podcast, where we sit down wi...
GenAI, Security, and More Lies - Aubrey King - PSW #832
12 Jun 2024
Contributed by Lukas
We will discuss LLM security in general and some of the issues covered in the OWASP Top 10 for LLMs! Segment Resources: https://genai.owasp.org/ Sky...
Whose Vulnerability Is It Anyway? - Josh Bressers - PSW #831
06 Jun 2024
Contributed by Lukas
Josh comes on the show to discuss all things related to vulnerability tracking and scoring, including the current issues with various systems and orga...
Hacker Heroes - Josh Corman - PSW Vault
29 May 2024
Contributed by Lukas
Making The World A More Secure Place: Joshua Corman's Journey and Insights Welcome to an insightful podcast episode featuring Joshua Corman, a promine...