T1SP: Episode 24

T1SP: Episode 24



[ Subscribe to the Podcast: iTunes | Android | RSS ]

News


* [ ] Norse lays of 20 people; not clear what percentage that is; threat intel not going so well?
* [ ] OPM declines to release details on its big breach
* [ ] Juniper says it’s going to remove the code that it thinks was developed by the NSA to eavesdrop on traffic
* [ ] CVE details lists (OS X, iOS, Flash, Air, IE, Chrome, Firefox) as the software with the most issues
* [ ] GM is going to do a bug bounty
* [ ] The Hacker Manifesto turned 30 (My crime is that of curiosity)
* [ ] Sophos Home free for Windows and Mac users
* [ ] SF Yellowcab filling for bankruptcy
* [ ] Hackers shut down Ukraine power grid; evidently a malicious word doc sent via email; supposedly the Sandworm Team
* [ ] Bicycle Attack on TLS: https://guidovranken.files.wordpress.com/2015/12/https-bicycle-attack.pdf
* [ ] North Korea evidently detonated a hydrogen bomb
* [ ] Time warner customers lose email passwords (320K)
* [ ] Microsoft killing off IE 8, 9, and 10 on January 12th
* [ ] VTech launching new product line after it got hacked and leaked data on 6 million kids
* [ ] Big Flash player update, 0-day and 18 other issues


Ideas, updates, and discussion


* [ ] Back to Ubuntu from CentOS
* [ ] Sick for five weeks
* [ ] Ikigai (what you love, what the world needs, what you can be paid for, what you are good at)
* [ ] Giving books as gifts


Tools, talks, and projects


* [ ] TOWER-SEC protecting ECUs and Telematics on cars
* [ ] AppSensor project; Detection points: https://www.owasp.org/index.php/AppSensor_DetectionPoints
* [ ] Where the Science is Taking Us in Cybersecurity, Dan Geer
* [ ] Rapid7 Hackazon app (modern)
* [ ] DVNA (Damn vulnerable Node Application)
* [ ] Argon2 password hashing algorithm
* [ ] Dradis
* [ ] Kippo SSH honeypot


[ Subscribe to the Podcast: iTunes | Android | RSS ]

Notes


* The intro track is from one of my favorite EDM artists: Zomby. The song is ‘Orion’, and it’s from the ‘With Love’ album. Highly recommended if you like chill EDM.
* It’s better to listen via iTunes or with the player embedded above, but you can also download the sound file directly.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(541)

Take 1 Security Podcast: Episode 13

Take 1 Security Podcast: Episode 13

Notes * The intro track is from one of my favorite EDM artists: Zomby. The song is ‘Orion’, and it’s from the ‘With Love’ album. Highly recommended if you like chill EDM. Become a Member: https://da...

12 Kesä 201542min

Take 1 Security Podcast: Episode 12

Take 1 Security Podcast: Episode 12

Play Podcast START CONTENT * Singtel buys Trustwave * Snowden does interview with John Oliver * CheckPoint buys Lacoon * Everyone’s trying to do everything, which gives the big people a major adv...

8 Huhti 201513min

Take 1 Security Podcast: Episode 11

Take 1 Security Podcast: Episode 11

Play Podcast START CONTENT * Twitch, a game streaming service owned by Amazon, was hacked last week * Passwords, emails, usernames, addresses, phone numbers, dates of birth * Amazon bought them l...

30 Maalis 201516min

Take 1 Security Podcast: Episode 10

Take 1 Security Podcast: Episode 10

Play Podcast START CONTENT * There was another SQL Injection bug found in SEO by Yoast * It required admins to click a malicious link * Was patched quickly * It’s the plugins that make WordPress ...

16 Maalis 201522min

Take 1 Security Podcast: Episode 9

Take 1 Security Podcast: Episode 9

START CONTENT * Sorry about the audio last week; wireless headsets don’t compare to the Yeti * The CIA is focusing on cyberespionage in its new management * Anthem is refusing an audit by the OIG of...

9 Maalis 201512min

Take 1 Security Podcast: Episode 8

Take 1 Security Podcast: Episode 8

START CONTENT * New SSL attack called FREAK * Has to do with falling RSA back to a deprecated and weak level * Requires the client and server are both vulnerable * The solution is to patch * Many ...

3 Maalis 201516min

Take 1 Security Podcast: Episode 7

Take 1 Security Podcast: Episode 7

START CONTENT * New stuxnet like piece of malware was discovered * Was found by Kaspersky * Has infected thousands of computers, mostly in Iran * The malware is the most advanced ever found * Can ...

24 Helmi 20158min

Take 1 Security Podcast: Episode 6

Take 1 Security Podcast: Episode 6

START CONTENT * Ukrainian banks hacked for up to 1 Billion dollars * Evidently installed malware on bank admin machines using phishing * Not sure they have an FDIC * As if the Ukraine didn’t have ...

17 Helmi 201512min