Paul's Security Weekly (Audio)
by Paul Asadoorian
© 2024 CyberRisk Alliance
Jul 16, 2026Recent reviews on Apple Podcasts (3)
Good info, laid back
I’ve listened to Paul and crew since I was new to sec, years ago. Great way to hear sec news with the guys’ discussion from their years of experience.
Chris Mc.38 ·
Great Vibe! Amazing amount of knowledge shared
This is the type of podcast where you and your buddies who are professionals at what you do sit down and talk shop while having a great time. There’s a ton of knowledge while also keeping it light hearted with an amazing diversity of knowledge and personalities. Regardless of where you are in your security journey or just security curious, this is a great podcast to dive into!
statictear ·
Fantastic
Great news, great interviews, great hosts. Also happy to see the main show only feed.
d1str0 ·
Episodes (640)

1999 Called and It Wants It's Exploits Back - PSW #935
Jul 16, 20262h 11m
This week, our technical segment covers a new open-source tool written by Paul (and Claude) that helps you keep your Linux systems up to date and assess supply chain risks. It's called "fettle" and is a pure Python imple

AI Is Annoying & IoT Devices Still Get Hacked - PSW #934
Jul 9, 20262h 5m
In the security news: Son of Anton strikes again! HalluSquatting and using Claude to defend itself CISA KEV's Revolving Door LLM's hallucinate and companies get sued Additionally - GitLost Yet even more Linux vulnerabili

Linux Tech Segment & Vulnerabilities Galore - PSW #933
Jul 2, 20262h 9m
This week we have a technical segment based on the response to "Atomic Arch", an updated open-source tool to help you catch malicious packages. In the security news: Exploitarium A hot messy summer of vulnerabilities AI

Cloud Visibility, Fortibleed, hacking things the easy way - Sandy Bird - PSW #932
Jun 25, 20262h 13m
First up is Sandy Bird from Sonrai discussing how to protect our cloud infrastructure! This segment is sponsored by Sonrai Security. Visit https://securityweekly.com/sonrai to learn more about them! Next up in the securi

GPS, PCI, ARCH, OH MY! - PSW #931
Jun 18, 20262h 6m
In the security news this week: GPS spoofing and satellite jamming are getting way too accessible Rekeying satellites in orbit sounds terrifying Cyber extortion and whether criminals still have ethics AI helping cybersec

Trolling Microsoft With Vulnerabilities - PSW #930
Jun 11, 20262h 2m
In the security news: Trolling Microsoft With Vulnerabilities Fable 5 loves guardrails Binwalk vulnerability EMBA and local models EDRChoker AI worms Interesting Arista vulnerability added to KEV BOD 26-04 and stakeholde

Security Researchers Are Threat Actors - PSW #929
Jun 4, 20262h 1m
This week in the security news: Security Researchers Are Threat Actors according to Microsoft Hands-free malicious firmware If you've ever typed "ls" in Windows, this is for you Cisco makes more patches, wants you to pay

Linux Supply Chain How-To - PSW #928
May 28, 20262h 4m
This week we have a technical segment focused on Linux! Paul released a script that helps you get a handle on Linux supply chain security, and new features allow you to assess the state of Secure Boot on your Linux syste

FCC, Github, MiniShai-hulud, Stated of Supply Chain, Itron, CRA, NIS2, and more!! - PSW #927
May 21, 20262h 2m
In the security news this week: FCC router bans and the hidden firmware update problem Why extending support timelines actually improves security Github supply chain concerns and the evolving SBOM ecosystem CRA and NIS2

You're not going to patch your way out of this - PSW #926
May 14, 20262h 2m
This week: New Yellowkey bitlocker bypass and what it means for you Hackers can run you over with a robot lawnmower FCC says new things about routers, again Glitching with AI almost no false positives AI thought it was e

Getting Rid of Your VPN - Rob Allen - PSW #925
May 7, 20262h 4m
Rob Allen from Threatlocker joins us to discuss the risks associated with VPN appliances and how to implement better security solutions that don't leave you hanging out on the open Internet. The interview segment is spon

FIRESTARTER - PSW #924
Apr 30, 20262h 2m
This week in the security news: Are you a FIRESTARTER? Eavesdropping via fiber-optic cables Copy Fail - more Linux LPE Github RCE Running Linux on a PS5 BadUSB tricks SilentGlass and HDMI threats Sonicwall and vague deta

Back to (or Start) Fundamentals? - Rajesh Khazanchi - PSW #923
Apr 23, 20262h 3m
This week: Larry's in the host seat and chaos ensues. We dig into: A very questionable story about tracking a warship with a $5 Bluetooth tracker Serial-to-IP devices quietly sitting in critical infrastructure… and full

The AI "Vulnpocolypse" Is Real? - PSW #922
Apr 16, 20262h 4m
This week: CSA issues guidance to CISOs on Mythos Vuln management woes Windows tells you about Secure Boot AI-assisted firmware vuln hunting The dumbest hack Edge decay and the failing perimeter Mac OS X on a Wii Little

AI Makes All Bug Shallow? - PSW #921
Apr 9, 20262h 5m
This week: Rage dropping 0-Day Claude Mythos, things are different now From UART to root, on a device made in China, where's the FCC? More CUPS vulnerabilities Russians are hacking routers, FCC ban doesn't stop them Mong

What Is A Router? (And all things AI) - PSW #920
Apr 2, 20262h 5m
In the Security News: Claude leaks source code and new models Two really smart people say AI is finding vulnerabilities better than ever Windows is using your internet to send updates to strangers BIG-IP APM vulnerabilit

Scanning The Internet with Linux Tools - PSW #919
Mar 26, 20261h 3m
In this segment, we will explore some pretty awesome tools for scanning the Internet, with a focus on network edge devices. We'll bring it all together with Claude Code and look at some sample results. Tools include: Sho

Hacking IP KVMs & Reversing with Radare2 - Sergi Àlvarez - PSW #918
Mar 19, 20262h 10m
In this episode, we sit down with the Radare community leader, Pancake, the creator of the Radare2 reverse engineering framework. Whether you've never heard of Radare, already use it daily, or are thinking about contribu

Vulnerability Mis-Management - PSW #917
Mar 12, 20262h 3m
In the security news this week: The XZ backdoor documentary Zero days - the clock isn't ticking Vulnerability Mis-Management Reversing traffic light controllers Reversing with Claude Don't curl to bash! Reading CVEs make

Airsnitch, Claude, Hacking Firewalls - PSW #916
Mar 5, 20262h 3m
In the security news this week: Remembering "FX" Finding and analyzing Windows drivers Network monitoring with Gibson the backdoor in your PAM The edge is fraying - and attackers have the advantage Age verification for L

AI Is Taking Over Cybersecurity - PSW #915
Feb 26, 20262h 1m
First up is a technical segment called "Paul's Linux Hacks". I finally got around to releasing a bunch of scripts and tutorials for Linux that I've created over the years. We'll go over scripts that can give you a supply

Firmware Backdoors Be Spying On You - PSW #914
Feb 19, 20262h 6m
AI says that this is the show where we turn coffee into threat intelligence and cigar smoke into packet captures. This week: a firmware backdoor living its best life inside Android tablets a fresh BeyondTrust RCE that al

AI Vulnerability Hunting - PSW #913
Feb 12, 20262h 4m
In the security news: Viral AI prompts Things to do in your home security lab I can open your garage door They call me DKnife Beyondtrust RCE Cool AI device Robots need your body Meta is just full of scams, phishing, and

AI: No One Is Safe - PSW #912
Feb 5, 20262h 5m
In the security news this week: Residential proxy abuse is everywhere this week: from Google's takedown of IPIDEA to massive Citrix NetScaler scanning and the Badbox 2.0 botnet Supply chain fun time: Notepad++ updates we

To curmudgeon or not to curmudgeon, that is the question. - PSW #911
Jan 29, 20262h 4m
This week, we get un-curmudgeoned by Mandy, spending a bunch of time talking about regulations, compliance, and even the US federal government's commitment to cybersecurity internally and with the community at large. We