
New Episode of Security Now: Security Now 1044
In this episode of Security Now, Steve Gibson and Leo Laporte discuss several crucial topics related to cybersecurity and technology. One of the highlights of the episode is the discussion on the Spanish proposal for online age verification, which Steve describes as privacy-respecting and potentially effective. They also address the recent updates to Windows 10 and Consumer Reports' recommendations regarding the extension of Windows 10 support.
Another important topic is the discovery that Deep Seek, a Chinese AI company, deliberately provides defective code for certain groups that the Chinese government dislikes. This revelation raises concerns about the integrity and neutrality of AI tools developed by companies under the influence of authoritarian governments.
Steve and Leo also discuss persistent vulnerabilities in DDR5, despite mitigation efforts. They explain that Rowhammer attacks remain a serious threat, particularly for data centers and cloud environments. The discussion continues with news about Samsung refrigerators displaying unsolicited advertisements, raising questions about the ethics of connected devices and the monetization of user data.
The podcast also addresses China's decision to ban Nvidia chips due to concerns about potential backdoors and dependence on American suppliers. This decision has significant implications for the global technology industry and the geopolitics of cybersecurity.
Another point discussed is the discovery of 300 new malicious npm packages, highlighting the need for continuous vigilance in the open-source ecosystem. Steve and Leo discuss the practical implications of these discoveries and how developers can protect themselves against such threats.
Finally, they talk about the recent Firefox update, which includes security improvements and new features. They also discuss how companies can use tools like Hawkshunt to train their employees in cybersecurity and reduce risks related to phishing and other attacks.
Overall, this episode of Security Now provides a comprehensive and informative overview of the latest trends and developments in cybersecurity. Steve and Leo offer valuable insights and expert perspectives that can help listeners better understand the challenges and opportunities in the field of cybersecurity.