Take 1 Security Podcast: Episode 12

Take 1 Security Podcast: Episode 12



Play Podcast

START CONTENT


* Singtel buys Trustwave
* Snowden does interview with John Oliver
* CheckPoint buys Lacoon


* Everyone’s trying to do everything, which gives the big people a major advantage

* China melted GitHub


* MiTM’d Baidu traffic and modified its analytics JavaScript to make constant requests to GitHub
* They did it because GitHub was hosting two mirror repos for content that is banned in China
* Also highlights the need for encryption, so that the JS couldn’t have been injected

* Obama just came out and said that if you attack us, we’ll sanction you


* How does that work exactly, when China makes everything we use?

* Then we just found out Russia hacked us through the State Department issue
* A major vulnerability was revealed in Inngate routers used in the US and Europe.


* It allows attackers to browse and write to the root file system of the devices, changing configuration, distributing malware, etc.
* Mostly used in US and European hotels

* Attackers are compromising IRS accounts in large numbers. Claim yours to avoid it happening to you
* Featuring Brooks Garrett


* He’s a friend and co-worker going back 8 years
* He’s the smartest IT guy I’ve ever known: sick programmer, Linux ninja, database, networking, everything. Full stack, real deal.
* He’s a volunteer firefighter
* He blogs at http://brooksgarrett.com: latest posts are Remote Streaming with Pi and MPD, Nagios SMS alerts with Amazon SNS, Cleaning Passwords from Logs, Fixing OhMyZSH prompts in PuTTY
* His Twitter is @brooksgarrett
* If you’re not following his stuff, you should be



END CONTENT

Notes


* Intro track is from one of my favorite EDM artists: Zomby. The song is ‘Orion’, and it’s from the ‘With Love’ album. Highly recommended if you like chill EDM.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Jaksot(532)

NO. 376 | AI transforms security, existential risk, and how to stay in front…

NO. 376 | AI transforms security, existential risk, and how to stay in front…

NO. 376 | AI transforms security, existential risk, and how to stay in front…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

3 Huhti 202320min

NO. 375 — 6 Post-GPT Phases, Github's Private Key, New Assistant Interfaces

NO. 375 — 6 Post-GPT Phases, Github's Private Key, New Assistant Interfaces

6 Post-GPT Phases, Github's Private Key, New Assistant InterfacesBecome a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

27 Maalis 202317min

NO. 374 — AI Response Shaping, SpaceX Blueprints, GPT-4 Innovation Explosion…

NO. 374 — AI Response Shaping, SpaceX Blueprints, GPT-4 Innovation Explosion…

NO. 374 — AI Response Shaping, SpaceX Blueprints, GPT-4 Innovation Explosion…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

21 Maalis 202312min

NO. 373 — SPQA Architecture, LLaMA on M1 Mac, Loved Ones Voice Scams…

NO. 373 — SPQA Architecture, LLaMA on M1 Mac, Loved Ones Voice Scams…

NO. 373 — SPQA Architecture, LLaMA on M1 Mac, Loved Ones Voice Scams… Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

13 Maalis 202317min

Sponsored Interview — Kolide

Sponsored Interview — Kolide

Today I’m doing a Sponsored Interview with Kolide — a company I’ve heard a lot about recently and have been looking forward to chatting with. I’m talking to Jason Meller, the founder and CEO of Kolide and we talk about: The problems in the BOYD space Kolide’s approach to solving the problem A user-centric approach to policy compliance His view of what stops other players from being successful And other topics So with that, here’s Jason Meller… https://kolide.com/unsupervisedlearning  Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

13 Maalis 202337min

NO. 372 — LastPass Employee Hack, State AI Propaganda, Crowdstrike Report Analysis…

NO. 372 — LastPass Employee Hack, State AI Propaganda, Crowdstrike Report Analysis…

NO. 372 — LastPass Employee Hack, State AI Propaganda, Crowdstrike Report Analysis…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

7 Maalis 202329min

NO. 371 | Covid Lab Leak, Military Server Exposed, OAI Foundry…

NO. 371 | Covid Lab Leak, Military Server Exposed, OAI Foundry…

NO. 371 | Covid Lab Leak, Military Server Exposed, OAI Foundry…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

27 Helmi 202322min

NO. 370 | GoDaddy Hack, EU Chinese APTs, Hacking with ChatGPT

NO. 370 | GoDaddy Hack, EU Chinese APTs, Hacking with ChatGPT

NO. 370 | GoDaddy Hack, EU Chinese APTs, Hacking with ChatGPTBecome a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

21 Helmi 202314min