The latest exploit "Spectre" affects every single chip made in the last ten years. At first, security researchers thought that the exploit only affected Intel processors, but it turns out this hack also effects ARM, AMD, and any other processor that uses speculative prediction. The white hat hackers who found the flaw discovered that you can use it to access valuable data including passwords and other information. Leo says that Microsoft has already pushed out a fix, and Apple's High Sierra has patched the vulnerability with a recent fix. Apple has also patched the iPhone and iPad.
Corey wants to know if Waze can be used on her Hyundai's Android Auto screen. Leo says Waze just got out of beta for Android Auto. But Corey has an iPhone, which uses CarPlay. He knows that Waze is in beta for CarPlay, but it's a bit tricky to install it. Check out Carplaylife.com for tips on how. Currently, it won't display on CarPlay, and Google has no plans to do so.
Walt got a notification from the US Office of Personnel Management about his personal data being compromised. Leo says it's true. They were hacked and the personal data files of anyone who has worked for or applied for a job with the US Government may have had their personal information compromised. They should have also offered users a year of free credit and information monitoring to make up for it.
If you have keyless entry, you're close enough to your Volkswagen, someone could break into your car by using an $18 device to amplify the signal of the key fob. If you also have a keyless ignition, they could easily steal the car as well. There is a fix for it -- a small wire mesh bag that acts as a Faraday cage. But Volkswagon has known for two years that all Volkswagen and Audi cars can easily be hacked and open the car door. And the problem is, it requires a hardware repair to fix it.
Marco just heard of yet another router hack called NET USB that is breaking into routers. Leo says that's because most router companies use the same code and it has bad security. The irony is that these hacks don't effect Apple routers like the Airport. So that makes the Airport a better way to go. But they are more expensive. If he can't afford to buy them, then he should get a router that is DDWRT compatible (like Asus), then he can use open source firmware to keep it locked down.
Matthew says that there's a hack that will crash the iPhone through iMessages. It'll crash the Apple Watch as well. Leo says it overloads the buffer overload and dumps the text on the memory, crashing the phone. And that's how serious exploits could occur as well.
But there is a temporary fix from Apple:
Tyler wants to know about the hack for Windows XP that will allow it to continue receiving updates. Leo says it involves altering Windows so that it think its "Windows Embedded for POS." It requires a registry hack, though, and Microsoft frowns on it.
Mike wants to do a registry hack to convince his PC that it's Windows XP Embedded, not Windows XP itself. It is supposed to protect it further from exploits. Leo says that Microsoft is against it because it may not work, and he could end up getting something that's not intended for desktop Windows XP. It's likely that Microsoft will block this soon anyway, so it's not much of a long term fix.
Jeff wants to change the default search engine to something other than Yahoo, Bing or Google. He can choose between those three in the Safari preferences, but to use a different one, he'll need to install an extension with a bit of a hack. The Chatroom says plugins like GLIMS will work. There's a Duck Duck Go DDG extension, but Leo advises to be cautious about how he alters his browser settings. That's how exploits happen.
Jim has built his own Windows Computer. He likes that the new Windows 8 just requires a 4 digit pin to log in, but he's lost the password and didn't choose the PIN. Leo says that worst case scenario, he can reinstall Windows and start over. Leo also says that LastPass is great for things like this because he can have both on his smartphone as well and look it up if he forgets it. He'd also get a real strong password in the process.