<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><description>Award-winning #cybersecurity keynote speaker, writer, podcaster | Host of multi-award-winning @smashingsecurity.com podcast.&#xA;&#xA;❤️ #DoctorWho, #Beatles, #Chess&#xA;&#xA;He/him&#xA;&#xA;🌐 https://grahamcluley.com&#xA;🎙️ https://www.smashingsecurity.com</description><link>https://bsky.app/profile/grahamcluley.com</link><title>@grahamcluley.com - Graham Cluley</title><item><link>https://bsky.app/profile/grahamcluley.com/post/3mk6xsx2zt22y</link><description>Great to have the BBC&#39;s @joetidy.bsky.social join me on this week&#39;s &#34;Smashing Security&#34; podcast!&#xA;&#xA;* How a firm that ran anonymous tip lines for 35,000 American schools, boasted it had never been breached in over 20 years, only for a hacker called Internet Yiff Machine to put them to the test...</description><pubDate>23 Apr 2026 21:36 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mk6xsx2zt22y</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mjp2mnhpts2i</link><description>A fake Ledger Live app sat in Apple&#39;s App Store long enough to steal $9.5 million from more than 50 victims - including a certain G. Love of G. Love &amp; Special Sauce, who lost 5.9 Bitcoin he&#39;d held for ten years as his retirement fund.&#xA;&#xA;All it took was a seed phrase...&#xA;https://www.bitdefender.com/en-us/blog/hotforsecurity/singer-loses-life-savings-fake-wallet</description><pubDate>17 Apr 2026 13:44 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mjp2mnhpts2i</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mjmo2vgjkk2s</link><description>Great to have @shehackspurple.bsky.social join me on the latest episode of &#34;Smashing Security&#34;, where we talked about hackers targeting Venice&#39;s flood defence systems, Anthropic&#39;s latest exploits, and even some of our favourite TV shows..&#xA;&#xA;www.smashingsecurity.com/463</description><pubDate>16 Apr 2026 14:54 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mjmo2vgjkk2s</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mjko5ntvdk2k</link><description>Do you know what Chrome browser extensions you&#39;re running right now?&#xA;&#xA;108 malicious Chrome extensions that were quietly stealing Google account data, hijacking Telegram sessions, and injecting gambling ads have just been found. They clocked up around 20,000 installs.&#xA;https://www.bitdefender.com/en-us/blog/hotforsecurity/malicious-chrome-extensions-steal-google-telegram-data</description><pubDate>15 Apr 2026 19:50 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mjko5ntvdk2k</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mjhfby2wxc2y</link><description>I&#39;m speaking at Rapid7&#39;s 2026 Global Cybersecurity Summit, May 12-13.&#xA;&#xA;Come hear me chat about how modern attacks actually start, and the reality of running a SOC in 2026 - alongside @racheltobac.bsky.social, @rajsamani.bsky.social, and @brianhonan.bsky.social&#xA;&#xA;rapid7.brighttalk.com?utm_source=r...&#xA;https://rapid7.brighttalk.com/?utm_source=referral&amp;utm_medium=organic&amp;utm_content=cluley&amp;utm_campaign=global-pla-2026-global-virtual-summit-prospect-eng</description><pubDate>14 Apr 2026 12:33 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mjhfby2wxc2y</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mjh3xxcw5c2f</link><description>Season 18 of Doctor Who has always had a special place in my heart...</description><pubDate>14 Apr 2026 09:47 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mjh3xxcw5c2f</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mjaamgvhvc2d</link><description>Hey BBC, if you&#39;re looking for someone new to make Doctor Who, I think you&#39;ll find them on YouTube:&#xA;&#xA;https://www.youtube.com/watch?v=ARdZ6t-YAy0</description><pubDate>11 Apr 2026 16:21 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mjaamgvhvc2d</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mj36zuaxhc23</link><description>A huge thank you to The Cyberwire&#39;s Dave Bittner for joining me on this week&#39;s Smashing Security podcast!&#xA;&#xA;This week we reveal what LinkedIn really knows about you (it&#39;s rather more than you might expect - and rather more than they&#39;re letting on).&#xA;&#xA;1/2</description><pubDate>09 Apr 2026 16:10 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mj36zuaxhc23</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mivms765fs2f</link><description>Cambodia has passed a landmark law targeting scam compounds that have enslaved up to 150,000 people... forcing them to run romance scams and fake crypto schemes or be beaten and tortured.&#xA;&#xA;Penalties are severe. Up to LIFE IMPRISONMENT for the worst offenders.&#xA;&#xA;1/2&#xA;https://www.bitdefender.com/en-us/blog/hotforsecurity/life-imprisonment-cambodian-scam-operators</description><pubDate>07 Apr 2026 11:00 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mivms765fs2f</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3milggipnlk2e</link><description>A Nigerian fraudster spent years posing as a woman online, romancing unsuspecting American men out of their savings - until he accidentally tried the same trick on a fellow scammer, who told him to &#34;learn how to do a clean job.&#34;&#xA;&#xA;The recovered chat logs helped put him behind bars for 15 years.&#xA;https://www.bitdefender.com/en-us/blog/hotforsecurity/nigerian-romance-scammer-jailed</description><pubDate>03 Apr 2026 09:39 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3milggipnlk2e</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mijcu3dzy22k</link><description>A huge thank you to @dannypalmer.bsky.social for joining me on this week&#39;s Smashing Security podcast!&#xA;&#xA;We unravel the tale of an Irish beekeeper and cannabis farmer  whose $400 million fortune is locked inside a missing fishing rod. Or is it?  Because one of his cryptowallets just woke up...</description><pubDate>02 Apr 2026 13:30 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mijcu3dzy22k</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3miglcptkyk2j</link><description>One of the alleged developers behind the notorious RedLine infostealer, malware which has stolen data from victims in over 150 countries, has been extradited to the US and faces up to 30 years in prison.&#xA;&#xA;His alleged co-conspirator remains out of reach in Russia&#xA;&#xA;https://www.bitdefender.com/en-us/blog/hotforsecurity/redline-malware-developer-extradited</description><pubDate>01 Apr 2026 11:23 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3miglcptkyk2j</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mie7ojopmk2u</link><description>When hackers attacked global medtech giant Stryker, they didn&#39;t use ransomware. &#xA;&#xA;Iran-linked group Handala simply logged into Microsoft Intune, and issued remote wipe commands. 200,000+ devices were wiped.&#xA;&#xA;My chat with Rob Edmondson of CoreView about what happened&#xA;&#xA;https://www.youtube.com/watch?v=4Q2hCxtzG2A</description><pubDate>31 Mar 2026 12:50 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mie7ojopmk2u</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3midoidxors2v</link><description>It&#39;s not every day that you read that the head of America&#39;s top law enforcement agency has been hacked, but then - these aren&#39;t ordinary times.&#xA;&#xA;Iranian hackers have breached FBI director Kash Patel&#39;s personal Gmail account, and posted his CV and photos online.&#xA;https://www.bitdefender.com/en-us/blog/hotforsecurity/iranian-hackers-breach-fbi-directors-personal-email-post-cv-and-photos-online</description><pubDate>31 Mar 2026 07:42 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3midoidxors2v</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mi2as4lnlk2k</link><description>World Leaks is an extortion gang that doesn&#39;t encrypt your data. Just steals your data and threatens to leak it. Over 130 victims, including Nike, Dell, and UBS.&#xA;&#xA;They even offer journalists early access to stolen data to crank up the pressure on victims. Charming.&#xA;https://www.fortra.com/blog/world-leaks-data-extortion-what-you-need-know</description><pubDate>27 Mar 2026 13:43 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mi2as4lnlk2k</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mhxkau3kr227</link><description>On this week&#39;s episode of &#34;Smashing Security&#34;:&#xA;&#xA;⊙ a disgruntled contractor steals his ex-employer&#39;s payroll database and demands $2.5 million&#xA;&#xA;⊙ two mysterious individuals drive up to a nuclear submarine base and ask to look around&#xA; &#xA;https://open.spotify.com/episode/6Hry6ZxMfkmHyv0cfevs5F?si=3ZGtVAvQTPewiOQ4kfrOLA&#xA;&#xA;with guest Jenny Radcliffe!</description><pubDate>26 Mar 2026 11:54 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mhxkau3kr227</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mhvencqyq223</link><description>📅 Delighted to announce that I&#39;ll be delivering the keynote at Cybercon Staffordshire on Weds 8 April, at the Wade Conference Centre, Stoke-on-Trent.&#xA;&#xA;I&#39;ll be discussing how your AI workforce might actually be your biggest security risk.&#xA;&#xA;Free tickets: www.grahamcluley.com/cybercon</description><pubDate>25 Mar 2026 15:09 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mhvencqyq223</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mhvddw3tm22l</link><description>AI-generated songs. Bot-powered streams. $8 million stolen from real artists.&#xA;&#xA;A North Carolina man just pleaded guilty.&#xA;&#xA;Read the full story about how one man used 10,000 bots to steal $8,000,000 over on the Bitdefender blog: https://www.bitdefender.com/en-us/blog/hotforsecurity/10k-bots-steal-8-million-from-music-artists</description><pubDate>25 Mar 2026 14:46 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mhvddw3tm22l</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mhq3ezr6ic2z</link><description>A wanted fugitive hides in a kitchen cabinet while police search the house around him - and decides to post about his whereabouts on Snapchat. Twice. 🤦&#xA;&#xA;The lesson? If you don&#39;t want people to know where you are, don&#39;t post it on social media. Seems obvious, but apparently not to everyone...</description><pubDate>23 Mar 2026 12:40 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mhq3ezr6ic2z</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mhitarpvxk2p</link><description>&#34;Trump murders children!&#34; Denver&#39;s crosswalks hacked to broadcast anti-Trump messages.&#xA;&#xA;Read more in my article on the Bitdefender blog: https://www.bitdefender.com/en-us/blog/hotforsecurity/denvers-crosswalks-hacked-broadcast-anti-trump-messages</description><pubDate>20 Mar 2026 15:26 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mhitarpvxk2p</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mhiitocazs2j</link><description>A ransomware gang that claims to be a group of &#34;investigative journalists&#34;? Meet LeakNet - the group using fake CAPTCHA pages to trick employees into hacking themselves.&#xA;&#xA;Check out my article on the Fortra blog: https://www.fortra.com/blog/leaknet-ransomware-what-you-need-know</description><pubDate>20 Mar 2026 12:19 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mhiitocazs2j</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mhg6sblcxs2s</link><description>If you think maximum Apple security settings make you untouchable, think again.&#xA;&#xA;This week we dig into a genuinely unsettling account takeover attempt against WordPress co-founder Matt Mullenweg - MFA fatigue, real Apple alerts, a convincing impersonation call, and a phishing page.</description><pubDate>19 Mar 2026 14:14 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mhg6sblcxs2s</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mhbrxuqlyk2d</link><description>Equifax got hacked. Nearly 150 million people&#39;s data stolen. And the executives&#39; first move was to quietly sell their shares. 🤦&#xA;&#xA;This is The Facepalm Files.&#xA;&#xA;Check out my podcast &#34;Smashing Security&#34; for more stories like this.&#xA;&#xA;#facepalm #cybersecurity #equifax #databreach #infosec #hacking</description><pubDate>17 Mar 2026 20:14 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mhbrxuqlyk2d</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mharle6rhc2k</link><description>Drivers in the Russian city of Perm have been enjoying an unexpected bonus this week: free parking.&#xA;&#xA;Thanks hackers!&#xA;&#xA;https://www.bitdefender.com/en-us/blog/hotforsecurity/free-parking-russia-distributed-denial-of-service-attack-parking-system</description><pubDate>17 Mar 2026 10:34 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mharle6rhc2k</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mh2mudgkik27</link><description>Government seizes $5M in crypto 💰&#xA;accidentally posts the password online 🤦&#xA;someone steals it ✅&#xA;thief hands themselves in 😇&#xA;coins returned ✅&#xA;another thief then steals them AGAIN 😭&#xA;&#xA;If you like stories like this, check out my podcast &#34;Smashing Security&#34;.</description><pubDate>14 Mar 2026 23:54 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mh2mudgkik27</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mgwartqzv22f</link><description>ZOMFG!  They’ve only found some more episodes of the ruddy Daleks’ Master Plan!&#xA;&#xA;It’s Christmas for all classic Doctor Who fans this Easter.  :)&#xA;&#xA;[contains quote post or other embedded content]</description><pubDate>13 Mar 2026 06:07 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mgwartqzv22f</guid></item><item><link>https://bsky.app/profile/grahamcluley.com/post/3mguxh2zyj22e</link><description>🎙️ This week in &#34;Smashing Security&#34;:&#xA;&#xA;🐦 A Wikipedia security engineer accidentally woke a dormant JavaScript worm that had been sitting silently since 2024 - and for 23 minutes, giant woodpecker images were plastered across the entire Wikimedia ecosystem. Yes, really.&#xA;&#xA;1/3</description><pubDate>12 Mar 2026 17:47 +0000</pubDate><guid isPermaLink="false">at://did:plc:6hv6p4ioxwou7ozkvuasjpyy/app.bsky.feed.post/3mguxh2zyj22e</guid></item></channel></rss>