Take 1 Security Podcast: Episode 9

Take 1 Security Podcast: Episode 9



START CONTENT


* Sorry about the audio last week; wireless headsets don’t compare to the Yeti
* The CIA is focusing on cyberespionage in its new management
* Anthem is refusing an audit by the OIG office–an org that audits health care groups that provide services to federal employees


* Nothing says I’m guilty like refusing an audit
* Reminds me of the Russians refusing the crash investigation in Game of Cards

* There’s been a possible credit card breach at the Mandarin Oriental hotel chain


* The incident was reported by Brian Krebs

* Three people were indicted in the Epsilon hack


* Resulted in around 1 billion email addresses being stolen

* Dave Aitel thinks junk hacking is a waste


* Basically hacking your blender or whatever
* In my opinion he’s missing the point that most conferences are like this
* I think there’s a hierarchy of talks


* Create new defense tool based on new defense idea
* Create new defense idea
* Create new attack tool based on new attack idea
* Create new attack idea
* Create new tool for existing attack or defense idea
* Describe existing attack or defense idea


* Microsoft has reported it’s vulnerable to FREAK as well, making it even more serious


* FREAK has proved to be less alarming than previous SSL vulns simply because of the difficulty of attack



END CONTENT

Play Podcast

Notes


* I think I’m going to standardize the intro and outro so that I only end up recording the actual story content each week.
* Any recommendations on what else you’d like to see would be appreciated.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Jaksot(532)

NO. 355 | NEWS & ANALYSIS SERIES

NO. 355 | NEWS & ANALYSIS SERIES

Critical TLS, Liz Russia, AI Sweater… Sponsor: Keeper Security | Protect employee passwords in minutes with Keeper — the award-winning password manager that is secure, easy to set up, and easy to use. Keeper works out-of-the-box with identity, MFA, and SIEM solutions including Okta, Azure AD, Ping Identity, G Suite, YubiKey and many others…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

31 Loka 202213min

Why Everyone Needs a Blog | THE IDEA SERIES

Why Everyone Needs a Blog | THE IDEA SERIES

People used to be defined by where they work, and now they’re defined by their knowledge, capabilities, and opinions.Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

27 Loka 20224min

Creativity Comes From Idleness | THE IDEA SERIES

Creativity Comes From Idleness | THE IDEA SERIES

A few years ago I figured out why we’re so creative in the shower…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

26 Loka 20222min

AI Art Will Push the Top 1% to Human Artists | THE IDEA SERIES

AI Art Will Push the Top 1% to Human Artists | THE IDEA SERIES

https://danielmiessler.com/blog/ai-art-push-1-percent-human-artists/Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

25 Loka 20224min

NO. 354 | THE NEWS & ANALYSIS SERIES

NO. 354 | THE NEWS & ANALYSIS SERIES

China Controls, TikTok Tracking, Infra Sabotage…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

24 Loka 202218min

Humiliation is Deadly | THE IDEA SERIES

Humiliation is Deadly | THE IDEA SERIES

Exploring a status game model for understanding negative behavior. https://danielmiessler.com/blog/humiliation-is-deadly/Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

21 Loka 202211min

NO. 353 | THE NEWS & ANALYSIS SERIES

NO. 353 | THE NEWS & ANALYSIS SERIES

🗞️ Caffeine Phishing, Cyber Labeling, Kamikaze Drones… Sponsor: Panther Security https://panther.com/ul22Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

17 Loka 20229min

News & Analysis | NO. 352

News & Analysis | NO. 352

CISA Assets, Contractor Hack, China CVEs… Sponsored by: Jupiter One @ jupiterone.com/unsupervisedlearning Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

12 Loka 202213min