{"podcast":{"title":"Smashing Security","slug":"smashing-security-453614","podcast_index_feed_id":453614,"rss_url":"https://feeds.redcircle.com/c478d684-038f-4b13-8507-bc32af486a2c","website_url":"https://www.smashingsecurity.com","image_url":"https://media.redcircle.com/images/2025/8/26/16/f4c118ba-43eb-4d45-8d86-36cf4c50ff73_595052322-a371c304-01cf-42c1-ab03-e0035a046f63.jpg","author":"Graham Cluley","episode_count":478,"summary":"Stories from the world of hacking, cybersecurity, and rogue AI. Smashing Security isn’t your typical tech podcast. Hosted by cybersecurity keynote speaker and industry veteran Graham Cluley, it serves up weekly tales of cybercrime, hacking horror stories, privacy blunders, and tech mishaps - all with sharp insight, a sense of humour, and zero tolerance for tech waffle. Winner of the best and most entertaining cybersecurity podcast awards in 2018, 2019, 2022, 2023, and 2024, Smashing Security has had over ten million downloads. Past guests include Garry Kasparov, Mikko Hyppönen, and Jack Rhysider. Follow the podcast on Bluesky at @smashingsecurity.com ( https://bsky.app/profile/smashingsecurity.com ) , and subscribe for free in your favourite podcast app. New episodes released at 7pm EST every Wednesday (midnight UK).","last_synced_at":"2026-07-16T10:20:27.006972+00:00","page_url":"https://stenobird.com/podcast/smashing-security-453614"},"episode":{"title":"This AI security flaw might be impossible to fix","slug":"this-ai-security-flaw-might-be-impossible-to-fix","published_at":"2026-06-03T23:00:29+00:00","page_url":"https://stenobird.com/podcast/smashing-security-453614/this-ai-security-flaw-might-be-impossible-to-fix","show_page_url":"https://stenobird.com/podcast/smashing-security-453614","url":"https://www.smashingsecurity.com/470","audio_url":"https://audio4.redcircle.com/episodes/ebdd2d78-cc28-485a-a5f2-da0703b49c82/stream.mp3","summary":"A website called \"UK visa portal\" has been quietly collecting passport scans, selfies, and personal data from thousands of travellers who thought they were applying through official channels. They weren't. And when a journalist tried to warn the company, it was lawyers who responded. Meanwhile, a paper from Cornell suggests that prompt injection - the technique malicious actors use to trick AI agents into doing things they really shouldn't - may be fundamentally unsolvable. Which is err... awkward, because everyone is rushing to plug AI agents into their email, files, and corporate networks. Plus don't miss our featured interview with Andrea Sivieri of CoreView, who tells us how hackers can lock your entire organisation out of its Microsoft 365 environment... without having to trick you into running a single piece of malicious code or handing over a password. All this and more in episode 470 of the \"Smashing Security\" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Tanya Janca. EPISODE LINKS: Hackers Simply Asked Meta AI to Give Them Access to High-Profile Instagram Accounts. It Worked - 404 Media. Canon Printer Vulnerability Leaks Plaintext Credentials - Praetorian. Password manager Dashlane says hackers stole some customers' password vaults - TechCrunch. UK Visa Portal exposed thousands of applicants’ passports and selfies — then called the lawyers on us - TechCrunch. AI Agents May Always Fall for Prompt Injections - ArXiv. MCP Security Crisis: Systemic Design Flaws in AI Agent Infrastructure - Cloud Security Alliance. From Preventive to Reactive: How AI Coding Assistants Transform Developers' Security Awareness - ArXiv. Design details that feel like magic - Design Spells. Singing lessons. Smashing Security merchandise (t-shirts…","meta_description":"A website called \"UK visa portal\" has been quietly collecting passport scans, selfies, and personal data from thousands of travellers who thought they wer…","key_points":[],"chapters":[],"topics":[],"duration_seconds":3470,"processing_state":"not_requested","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/smashing-security-453614/episodes/this-ai-security-flaw-might-be-impossible-to-fix/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/smashing-security-453614/this-ai-security-flaw-might-be-impossible-to-fix.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}