Open Source Security

Open Source Security

Open Source Security is a media project to help showcase and educate on open source security. Our goal is to give the community a platform educate both developers and users on how open source security works. There's a lot of good work happening that doesn't get attention because there's no marketing department behind it, they don't have a developer relations team posting on LinkedIn every two hours. Let's focus on those people and teams then learn what they do and how they do it. The goal is to hear from the people doing the work, they know what's up, they have a lot to teach us. We just have to listen.

Jaksot(527)

Episode 165 - Grab Bag of Microsoft Security News

Episode 165 - Grab Bag of Microsoft Security News

Josh and Kurt about a number of Microsoft security news items. They've changed how they are handling encrypted disks and are now forcing cloud logins on Windows users. Show Notes Microsoft KB 451607...

13 Loka 201927min

Episode 164 - DNS over HTTPS: Probably not the end of the world

Episode 164 - DNS over HTTPS: Probably not the end of the world

Josh and Kurt about DNS over HTTPS and how it may or may not destroy civilization. We also discuss the disruption of cloud in the context of security and touch on the news that GitHub is now a CVE CNA...

7 Loka 201930min

Episode 163 - Death to Python 2

Episode 163 - Death to Python 2

Josh and Kurt about the upcoming Python 2 EOL. What does it mean, why does it matter, and what you can you do? Show Notes Python Clock Python's statement about sunsetting Python 2 wifi 6

30 Syys 201933min

Episode 162 - SBOM with Allan Friedman

Episode 162 - SBOM with Allan Friedman

Josh and Kurt speak with Allan Friedman of the US National Telecommunications and Information Administration about Software Bill of Materials. Where are we today, where are things going, and how you c...

23 Syys 201930min

Episode 161 - Human nature and ad powered open source

Episode 161 - Human nature and ad powered open source

Josh and Kurt start out discussing human nature and how it affects how we view security. A lot of things that look easy are actually really hard. We also talk about the npm library Standard showing co...

16 Syys 201929min

Episode 160 - Disclosing security issues is insanely complicated: Part 2

Episode 160 - Disclosing security issues is insanely complicated: Part 2

Josh and Kurt talk about disclosing security flaws in open source. This is part two of a discussion around how to disclose security issues. This episode focuses on some expectations and behaviors for ...

9 Syys 201931min

Episode 159 - Disclosing security issues is insanely complicated: Part 1

Episode 159 - Disclosing security issues is insanely complicated: Part 1

Josh and Kurt talk about disclosing security flaws. It's a topic that's come up a few times in the last few weeks and it's more complicated than it's ever been. We certainly ask more questions than we...

2 Syys 201929min

Episode 158 - The mess that we call credit agencies in the US

Episode 158 - The mess that we call credit agencies in the US

Josh and Kurt talk about the current state of credit security freezes in the US. We recount a thrilling tale of all the things Josh had to do to get new Internet service. It was all quite silly really...

26 Elo 201927min