Graham Cluley's Avatar

Graham Cluley

@grahamcluley.com.bsky.social

Award-winning #cybersecurity and #AI keynote speaker, writer, podcaster | Host of @theaifix.show and @smashingsecurity.com podcasts โค๏ธ #DoctorWho, #Beatles, #Chess ๐ŸŒ https://grahamcluley.com ๐ŸŽ™๏ธ https://theaifix.show ๐ŸŽ™๏ธ https://www.smashingsecurity.com

8,394 Followers  |  1,657 Following  |  1,170 Posts  |  Joined: 18.05.2023  |  2.0807

Latest posts by grahamcluley.com on Bluesky

Thanks Maya!

04.08.2025 15:00 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Three years!??? Newbie! ๐Ÿคฃ

And yup, the show will go on!

02.08.2025 15:18 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

We've had more feedback from this episode of the "Smashing Securit" podcast than any that we've put out for years. When you listen to it, you'll know why...

Have a handkerchief ready... ๐Ÿ˜ข

02.08.2025 10:29 โ€” ๐Ÿ‘ 16    ๐Ÿ” 4    ๐Ÿ’ฌ 3    ๐Ÿ“Œ 0
Preview
Replit panics, deletes $1M project; AI gets gold at Math Olympiad The AI Fix ยท Episode

In episode 61 of The AI Fix podcast, a robot called DeREK goes bananas, AIs warn we may lose the ability to see what they're thinking, a robot changes its own batteries, the USA unveils its AI action plan, and a human beats AI to win the World Coding Championship.

open.spotify.com/episode/08TF...

30.07.2025 16:06 โ€” ๐Ÿ‘ 4    ๐Ÿ” 2    ๐Ÿ’ฌ 4    ๐Ÿ“Œ 0
Hacker's bedroom

Hacker's bedroom

This one?

30.07.2025 16:08 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0
Preview
Anatomy of a Breach: The Human Factor [2025-08-07] (UKI) Anatomy of a Breach: The Human Factor. In this live fireside chat, cybercrime expert Graham Cluley joins Varonis Field CTO Matt Lock to explore the human behaviours, motives, and missteps driving the ...

Register for the webinar at grahamcluley.com/varonis

Look forward to seeing some of you there!

30.07.2025 16:02 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Video thumbnail

Join me, and Matt Lock of Varonis, on Thurs 7 August for a free webinar discussing the mistakes, motives, and real people behind the biggest hacks and breaches across the UK and Europe this year.

We'll be discussing social engineering, ransomware, AI, the whole caboodle!

Link in the comments.

30.07.2025 16:02 โ€” ๐Ÿ‘ 2    ๐Ÿ” 1    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0
Preview
200,000 WordPress websites at risk of being hijacked due to vulnerable Post SMTP plugin Over 200,000 websites running a vulnerable version of a popular WordPress plugin could be at risk of being hijacked by hackers.

Read more in my article on the Bitdefender blog: www.bitdefender.com/en-us/blog/h...

30.07.2025 07:47 โ€” ๐Ÿ‘ 4    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Hackers could exploit the flaw to hijack control of vulnerable websites - around half of the websites using the plugin have not updated with a patched version.

So if youโ€™re running a WordPress site and relying on this plugin, now would be a really good time to patch to the latest version.

30.07.2025 07:47 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Post SMTP logo and WordPress

Post SMTP logo and WordPress

WordPress is great. It powers around half of all the websites on the internet (including mine). It's flexible, open source, and free. Unfortunately, it can also be a security headache.

A critical vulnerability was recently uncovered in the Post SMTP plugin, used by around 400,000 websites.

30.07.2025 07:47 โ€” ๐Ÿ‘ 8    ๐Ÿ” 3    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 1
Preview
French submarine secrets surface after cyber attack European defence giant Naval Group has confirmed that it is investigating an alleged cyber attack which has seen what purports to be sensitive internal data published on the internet by hackers.

All businesses, regardless of whether they work in the defence sector or not, would be foolish to ignore the threat posed by hackers.

Read more in my article on the Bitdefender blog: www.bitdefender.com/en-us/blog/h...

28.07.2025 16:38 โ€” ๐Ÿ‘ 5    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Submarine submerged in data

Submarine submerged in data

A hacker named "Neferpitou" has slapped French defence giant Naval Group on the nose, by leaking what they claim to be around 1 TB of sensitive internal data - including information about nuclear submarine combat systems.

28.07.2025 16:38 โ€” ๐Ÿ‘ 11    ๐Ÿ” 2    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 1
BBC News report and VPN usage cartoon

BBC News report and VPN usage cartoon

Well, strike me pink!

VPN usage has had a "surge" since porn sites have been forced to age-check UK users.

Who would have thought it?

www.bbc.co.uk/news/article...

28.07.2025 15:44 โ€” ๐Ÿ‘ 9    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Allianz Life says 'majority' of customers' personal data stolen in cyberattack | TechCrunch Exclusive: Allianz Life said the "majority" of its customers and employees had data stolen in the July cyberattack. The company said it has notified the FBI.

Maybe with a slice of phishing, SIM swapping, and multi-factor authentication (MFA) bombing too.

Read more in the report by TechCrunch:
techcrunch.com/2025/07/26/a...

28.07.2025 13:30 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

What's the betting that it's a hackers once again using the Scattered spider playbook - calling up support teams posing as customers or employees, pretending to be locked out of their accounts, and tricking support staff into granting them access.

28.07.2025 13:30 โ€” ๐Ÿ‘ 1    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

The firm hasn't said if it has received a ransom demand, and it hasn't shared any details on who the hackers might have been.

However, we've seen other insurance firms targeted recently, including Aflac.

28.07.2025 13:30 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Allianz Life building against backdrop of personal data

Allianz Life building against backdrop of personal data

US insurance firm Allianz Life has told the media that hackers stole personal info from the "majority" of its customers and staff earlier this month.

The company says that a hacker gained access to an unnamed third-party cloud-based CRM used by Allianz Life, using a social engineering attack.

28.07.2025 13:30 โ€” ๐Ÿ‘ 4    ๐Ÿ” 5    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
Tea app hacked: Images stolen from women's dating safety app that vets men Thousands of women registered with Tea have had their images illegally accessed, the US firm says.

72,000 images, including sensitive ID verification photos that were supposed to be deleted immediately, have been accessed.

Adding to the controversy, an additional 59,000 images, which included posts, comments, and direct messages, were also breached.

More info: www.bbc.co.uk/news/article...

27.07.2025 08:11 โ€” ๐Ÿ‘ 5    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1
Woman checking smartphone, tea being spilt, data lost

Woman checking smartphone, tea being spilt, data lost

This is painfully ironic. A woman's dating app designed to enhance safety and vet potential dating partners has itself fallen victim to hackers.

The Tea Dating Advice app, used by women to do background checks on men, identify catfishers and scammers, and share "red flags", has been breached.

27.07.2025 08:11 โ€” ๐Ÿ‘ 10    ๐Ÿ” 4    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Decryption Tools | The No More Ransom Project IMPORTANT! Before downloading and starting the solution, read the how-to guide. Make sure you remove the malware from your system first, otherwise it will repeatedly lock your system or encrypt files....

The tool is available for download here, alongside documentation.

www.nomoreransom.org/en/decryptio...

But I donโ€™t believe thereโ€™s much info shared on how it works.

26.07.2025 00:00 โ€” ๐Ÿ‘ 1    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
Free decryptor for victims of Phobos ransomware released Police have released a free decryptor capable of recovering files encrypted by both the notorious Phobos ransomware, and its offshoot 8Base.

Great news that Japanese police have put together a free decryptor for the Phobos ransomware (helped no doubt by arrested of suspected members of the gang, and the seizure of its infrastructure)

www.fortra.com/blog/free-de...

24.07.2025 16:48 โ€” ๐Ÿ‘ 50    ๐Ÿ” 14    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 1
Preview
When 2G attacks, and a romantic road trip goes wrong Smashing Security ยท Episode

๐ŸšจNew episode alert!๐Ÿšจ When 2G attacks, and a romantic road trip goes wrong.

In episode 427 of the podcast, @grahamcluley.com warns why it's time we said goodbye to 2G - the outdated mobile network being exploited by cybercriminals with suitcase-sized SMS blasters.

open.spotify.com/episode/4V2Z...

24.07.2025 16:39 โ€” ๐Ÿ‘ 9    ๐Ÿ” 2    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
UK to ban public sector from paying ransomware demands Ransomware, considered by British authorities to be the UK's greatest cybercrime threat, costing the nation billions of pounds and with the capbility to bring essential services to a standstill, ...

In principle, I'm all for it. Paying a ransom doesnโ€™t guarantee recovery, and encourages more attacks.

But with my pragmatic head on I can't deny that sometimes paying up feels like the less worse option.

www.bitdefender.com/en-us/blog/h...

23.07.2025 16:19 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

And the non-public sector looks likely to be ordered to notify the authorities before any payment is made too. Presumably so they can be strongly encouraged not to pay

The proposed legislation aims to dry up the criminals' cash pipeline and stop Britain's public sector from bankrolling cybercrime

23.07.2025 16:19 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0
Digital UK flag against a skull background

Digital UK flag against a skull background

The UK government says it wants to ban public sector bodies from ever paying ransoms to cybercriminals.

The NHS, councils, schools... if hit by ransomware, theyโ€™ll be told they can't pay up - even if it means disruption and data loss.

23.07.2025 16:19 โ€” ๐Ÿ‘ 5    ๐Ÿ” 2    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Good ol' Muttley...

22.07.2025 21:13 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
The AI Fix #60: Elonโ€™s AI girlfriend, the arsonist red panda, and the AI that will kill you In episode 60 of The AI Fix, we learn why Grok might be Elon Muskโ€™s bid for digital immortality, how Meta is building a Manhattan-sized data centre called Prometheus, how AI is helping create carbonโ€ฆ

Meanwhile Mark learns which AI is most likely to blackmail, lie, and โ€“ when the mood takes it โ€“ commit murder to avoid being switched off.

Find "The AI Fix" in all good podcast apps, or at grahamcluley.com/the-ai-fix-60/

22.07.2025 15:59 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Plus @ai-fix-mark.bsky.social and I learn why Grok might be Elon Muskโ€™s bid for digital immortality, how Meta is building a Manhattan-sized data centre called Prometheus, how AI is helping create carbon-sucking concrete, and are bewildered that 2000 people โ€œworkโ€ at the Candy Crush company.

22.07.2025 15:59 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0
Valentine and party-mode Elon Musk

Valentine and party-mode Elon Musk

Is it possible Elon Musk has modelled Grok's next AI "companion" chatbot on... himself??? ๐Ÿคฎ

In the latest "The AI Fix" podcast, I take a look at Elonโ€™s latest creations: a giggling anime girlfriend and a cute cartoon red panda who wants to bomb a synagogue and moon the rabbi.

22.07.2025 15:59 โ€” ๐Ÿ‘ 5    ๐Ÿ” 2    ๐Ÿ’ฌ 3    ๐Ÿ“Œ 0
Preview
Europol targets Kremlin-backed cybercrime gang NoName057(16) A pro-Kremlin cybercrime network has been taken offline after an international law enforcement operation disrupted over 100 of its servers, detained two gang members, and issued arrest warrants for se...

Europol targets Kremlin-backed cybercrime gang NoName057(16)

www.bitdefender.com/en-us/blog/h...

21.07.2025 08:21 โ€” ๐Ÿ‘ 10    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

@grahamcluley.com is following 19 prominent accounts