Steve Gibson
@SGgrc
Followers
60K
Following
352
Media
173
Statuses
7K
I didn't want to clutter up the corporate GibsonResearch Twitter account with lots of personal stuff. That's what this one is for.
Southern California
Joined May 2010
“The EU's Online Age Verification” SN#1044 show notes: https://t.co/WLCvVBNYkm Consumer Reports on Win10 non-ESU. DoD CyberWaste. DeepSeek deliberate code flaws. WebAsm v3.0. Firefox v143 & Android DoH. MSFT Entra ID flaw. Chrome emergency 0-day. The EU trials Age Verification.
1
1
40
“Covering all the bases” SN#1041
https://t.co/bMsZ97MkuT BYTE magazine's first issue exactly 50 years ago. Shaken & Stir telco enforcement. Can AI be controlled? No AI for Vivaldi. Using AI to attack. Scummy sites sue the U.K. TransUnion breached. DOD using Russian's open source.
3
5
71
“Clickjacking Whac-A-Mole” SN#1040
https://t.co/PiI0BcP4TD Germany to outlaw ad blockers? Many AI lawsuits. Bluesky suspends service in Mississippi. An AI-throttling prompt. The rise of Linux malware. A trivial Docker escape fixed. Why clickjacking attacks are whac-a-mole games.
6
5
64
“The Sad Case of ScriptCase” SN#1039 show notes: https://t.co/7hqLLhI1iU AI summaries upsets Internet economics. Plex 0-day. Chrome improvements. NIST's crypto for IoT. SyncThing v2. Alien:Earth thoughts. Why login authentication can NEVER be relied upon to protect enterprises.
5
13
83
Can it really be a coincidence? Smart Investors Hold Gold. Find out more at Goldhub
57
156
2K
“Perplexity's Duplicity” CISA's Emergency Federal Directive. Nvidia says no backdoors! Dashlane ends worthless free tier. uBlock Origin for Safari! Serious Dell Latitude security problem. A venerable Sci-Fi franchise gets a new series. What to do when AI scrapers ignore rules?
2
6
84
“Chinese Participation in MAPP” SN#1037 show notes: https://t.co/aC6teAZ263 SharePoint follow-up. How Russia spies on embassies. Signal says NO to Australia. YouTube uses history for age estimation. New Chrome extension signing. TruAge. Should Chinese co's get early patch access?
0
6
69
"Inside the SharePoint 0-day RCE" SN#1036 show notes: https://t.co/KnVLHS3BRK Brave browser randomizes fingerprints & will block MSFT Recall by default. Clorox sues IT contractor for $380 million damages. FIDO passkey not bypassed. Cyberwar. How MSFT badly fumbled Patch Tuesday.
2
12
112
“Cloudflare's 1.1.1.1 Outage” SN#1035 show notes: https://t.co/HMobJvvVd2 Bypassing Passkeys. More ransomware attacks. Cloudflare blocks pirate domains. Exchange Server by subscription. China Webshells: The new buffer overflow. The age verification need. Cloudflare config error.
5
6
65
“Introduction to Zero-Knowledge Proofs” SN#1034 show notes: https://t.co/mzKLXSY8Ob Quantum factorization takedown. Notepad++ self-signing. Bobiverse book 6. Crypto ATMs. Browser fingerprinting metrics. Memory safe interpreters. Introduction to concepts of zero knowledge proofs.
2
2
48
“Going on the Offensive” SN#1033 show notes: https://t.co/iF5oRQo5TT More Israeli spyware. EU abandons Azure and adopts post-quantum crypto. U.S. cracking down on Bitcoin ATMs. Commercial use of free open source software. LOTs more! What's required for Offensive cyber operations?
5
9
71
“Pervasive Web Fingerprinting” SN#1032 show notes: https://t.co/4lURne0yjc No more Let's Encrypt email. Windows “Unexpected Restart Experience”. US Gov gets more serious about memory-safe languages. New Cisco 9.8 & 10.0's. PNGv3. The abuse of browser fingerprinting for tracking.
1
9
70
“How Salt Typhoon gets in” SN#1031 show notes: https://t.co/eeOkap5me3 Salt Typhoon's latest victims. State healthcare portals leaking visitor's personals. Apple adopts industry std. Passkey import/export. Microsoft drops old drivers. Clarity on AI. A deep dive into Salt Typhoon.
6
6
78
“Internet Foreground Radiation” SN#1030 show notes: https://t.co/ezSdGAvW6F Denied iOS exploitation. The NPM registry under siege. Salt Typhoon inside Comcast and Digital Realty. XChat has your keys. Outlook file types. SpinRiteing encrypted drives. Bots are scanning & attacking!
1
6
65
“The Illusion of Thinking” SN#1029 show notes: https://t.co/a9kPfdU3lv Remembering Bill Atkinson. Meta apps & JavaScript collude. The EU's new DNS service. OpenAI is prevented from deleting ANYONE's chat history. Apple explores Large “Reasoning” Models true reasoning ability.
1
8
83
Stuck on holiday gifts? Skip the stress. USDA Prime steaks delivered to their door = instant win. Get 8 FREE steak burgers + free shipping ($145 value) with your order. Watch →
2
10
77
“AI Vulnerability Hunting” SN#1028 show notes: https://t.co/1Kk1Fp5q9H Pwn2Own 2025 results. PayPal scanning new domain registrations. iOS jailbreak author gives up. SVG contain JavaScript. Classic Sci-Fi movies. How OpenAI's o3 model discovered a critical remote Linux 0-day.
7
9
76
“Artificial Intelligence” SN#1027 show notes: https://t.co/ihHzxdLx0r The status of Encrypted Client Hellos (ECH). Remote inverter shutdowns. Blocking newly listed domains. The AI Hype Cycle. AI as blackmailer? Copilot covering up bugs? The unrestrained https://t.co/kCgXlheZ14.
8
9
80
“Rogue Comms Tech Found in US Power Grid” SN#1026 show notes: https://t.co/TcC1w4U400 Chrome refuses Admin. Android Messenger key verification. Pwn2Own for AI. AI can replicate today. Office on old Win10. 23andMe purchased. Andor season 2. Radios discovered inside US power grid.
3
6
76
“Secure Conversation Records Retention” SN#1025 show notes: https://t.co/H7EEarMGeq More attempts at age restriction. Long-lived python repository malware. FBI says discard old routers. Reverse engineering WhatsApp. Malicious AI usage. How to securely archive E2EE message history
1
4
48
From the director of The Grey. Zachary Levi and Josh Duhamel star in NOT WITHOUT HOPE.
0
0
3
“Don't Blame Signal” SN#1024 show notes: https://t.co/aUNDMxI7uH MSFT abandons passwords, allows their deletion. Meta's RayBan glasses privacy changes. 30% of MSFT code now by AI. Chrome's security without Google. eCommerce backdoors spring to life. A bad insecure Signal clone.
3
2
68
“Preventing Windows Sandbox Abuse” SN#1023 show notes: https://t.co/C9nF2Ya8cV The "inetpub" directory mess & mystery -- and its abuse. Fake North Korean companies. More ways to confuse AI. Critical data loss in unpowered SSDs. Feedback and malware is hiding in Windows Sandbox!
3
9
55