
An explosive supply chain hack in Light LLM nearly unleashed catastrophic malware across millions of AI systems, and it took a coder's quick thinking to catch it before it snowballed into disaster. Will California require Linux to verify its user's age. Apple's iOS 26.4 requires UK users to prove their age. Russia chooses to use home grown 5G mobile encryption. Ukraine knew the webcam was installed by Russian spies. Google moves quantum computing "Q Day" to 2029. At RSA, UK's NCSC CEO warns of vibe-coded SaaS replacements. More information about nasty ClickFix campaigns. More than one in seven Reddit postings are an AI-bot. The story behind the LiteLLM disaster that was averted. Show Notes - https://www.grc.com/sn/SN-1072-Notes.pdf Hosts: Steve Gibson and Leo Laporte Download or subscribe to Security Now at https://twit.tv/shows/security-now. You can submit a question to Security Now at the GRC Feedback Page. For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6. Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Sponsors: threatlocker.com/twit adaptivesecurity.com guardsquare.com meter.com/securitynow
Podzilla Summary coming soon
Sign up to get notified when the full AI-powered summary is ready.
Free forever for up to 3 podcasts. No credit card required.

SN 1078: DigiCert does it right - Hugging Face Under Fire

SN 1077: A Browser AI API? - End of Bug Bounties?

SN 1076: FAST16.SYS - Unmasking the NSA's Most Diabolical Digital Sabotage

SN 1075: Yes. Exactly. - The Zero-Day Ticking Clock
Free AI-powered recaps of Security Now (Video) and your other favorite podcasts, delivered to your inbox.
Free forever for up to 3 podcasts. No credit card required.