Thinks Canary on Security Now (Audio)

Security Now (Audio)May 19, 2026

SN 1079: Daybreak and Codename MDASH - Microsoft's Edge Password Blunder

1:21
mid-roll
Steve Gibson, Leo Laporte
TWiT
May 19, 2026
UnknownDirect responseBaked-in adCybersecurity
0:00 / 1:21
@ 97:09 in ep

Estimated current placement value

Low confidence
~$240range $36$1,700

What a comparable one-episode placement on this show might cost today—not reported advertiser spend or a historical invoice.

How this estimate works

A broad audience range for the top 2,000 popularity tier is multiplied by public CPM benchmarks and a placement factor. Inputs for this read: 1:21 · Unknown · mid-roll.

Model placement-value-v1-2026-08 · benchmark inputs as of 2026-08
Methodology and limitations →

Transcript

Cells turn out to be a thing. I wouldn't. And it isn't. If It's air gapped. There's no point in air gapping a honeypot, I just wanna say. So I wanna connect this right back to the network, but I wanted to show you this. It looks like a, you know, a black external USB drive. It doesn't look it's very, nondistinguished, but this thing is brilliant. This this here is a Thinxed Canary, our sponsor for this segment of security now. What's a Thinxed Canary? It's a honeypot. It is a device that can impersonate other devices, devices that bad guys wanna get into. So this Thinxed Canary hooks up to my network. You'd probably want one for every network segment. Certainly would want one for every network segment, maybe even more. Not only can the thinks canary impersonate a a Windows server or a Linux server or a SharePoint server or a SCADA device or a Synology NAS or I don't know. This could be a SSH server, that kind of thing. It can also create files. They call them canary tokens that you could spread out everywhere, including on your cloud drives. But the point is, this is how you find out if somebody has breached your network. On average, companies don't know for ninety one days, three months that somebody's inside their network. And in that three months, a bad guy can do so much damage, but the thing's canary is designed to detect that bad guy the minute they arrive. You know why? Because it doesn't look vulnerable. It looks valuable. A a hacker, a malicious insider cannot resist kinda knocking on the things canary. So let's say someone's accessing those lore files. You know? I I have some that are spread out. They look like spreadsheets or Excel files or, you know, Google Sheets or whatever, and they say payroll information. I you know, they could be a WireGuard configuration. It can be almost anything. Right? And they're indistinguishable from the real thing. They got the icon. They get all the metadata. It all looks like the real thing. The thinks canary hardware has the right MAC address, the right login, everything. And the bad guy may even even if the bad guy's, like, very suspicious, like, I don't know. They just can't resist because that's what they're there for. They're there to find that file that has payroll information. The thing is if someone accesses that lure file or tries to brute force your fake internal SSH server, your Think Scan area will immediately tell you, you've got a problem. No false alerts, just the alerts that matter in any form or factor you want. I mean, email, text, syslog. They support webhooks. They have an API. You could put it in Slack, anywhere. You so you choose a profile for your Thinkx Canary device, and there are hundreds to choose from. Super easy to set up. That's the other thing that's great about this. The the the folks at Thinkx who designed this are expert hackers. They taught governments and companies for decades how to break into systems so they know what hackers are looking for. But they also are brilliant designers, and they made something that's ultra secure, ultra reliable, and completely irresistible to bad guys. Just choose a profile for your Thinkx Canary device. Easy for you to use. Super easy. You don't have to be technical to use it. Register with the hosted console for monitoring and notifications, and then you just sit back and relax and wait. An attacker who's breached your network, a malicious insider cannot resist making themselves known with and your thinks canary will let you know, and you are you got them. You got them. Visit canary.tools/twit. Canary.tools/twit. $7,500 a year, you're gonna get five. You get your own hosted console. You get upgrades. You get support. You get maintenance for that whole year. And if you use the code twit in the how did you hear about us box, they will give you 10% off the price. And not just for the first year, for life. You can always return your thinks canary. They have an amazing two months money back guarantee for a full refund every penny. Two months. Sixty days. I should point out that, really, there's no cost to them because this month is the tenth year we've been partnering with ThinkCentenary. No one has ever claimed that refund. Visit canary.tools/twit. Enter the code twit in the how did you hear about us box for 10% off. Canary.tools/twit.

Auto-transcribed · verbatim audio matches · Report an error

Episode

Security Now (Audio)
SN 1079: Daybreak and Codename MDASH - Microsoft's Edge Password Blunder
Hosts: Steve Gibson, Leo Laporte
Publisher: TWiT