
Episode 213 - Security Signals: What are you telling the world
Josh and Kurt talk about how your actions can tell the world if you actually take security seriously. We frame the discussion in the context of Slack paying a very low bug bounty and discover some way...
7 Sep 202032min

Episode 212 - Grab Bag: The Security We Deserve Edition
Josh and Kurt talk about Chromium sending traffic to root DNS servers. Telemetry watching what we do. Cryptocurrency scams and a few other random topics. Also pandas. Show Notes Blanket rack Chromium...
31 Aug 202029min

Episode 211 - The only thing harder than signing files is managing users
Josh and Kurt talk about the Microsoft 2 year old signature bug and Github no longer processing MFA resets for free users. Signing things is hard, but trying to manage users and infrastructure at scal...
24 Aug 202029min

Episode 210 - Cult of Information Security
Josh and Kurt talk about the current state of information security. There are aspects that resemble a cult more than we would like. It's not all bad though, there are some things we can do to help mov...
17 Aug 202028min

Episode 209 - Secure Boot isn't Secure
Josh and Kurt talk about Secure Boot. The conversation uses the recent "Boot Hole" vulnerability to frame a conversation about what Secure Boot is and isn't. Why the Boot Hole flaw doesn't really matt...
10 Aug 202033min

Episode 208 - Passwords are pollution
Josh and Kurt talk about some of the necessary evils of security. There are challenges we face like passwords and resource management. Sometimes the problem is old ideas, sometimes it's we don't have ...
3 Aug 202032min

Episode 207 - Weaponized attention
Josh and Kurt start this one by explaining how the Twitter hacker was just a dumb criminal (most criminals are dumb). We then discuss the new GPT-3 AI that can create text. How we create, and how soci...
27 Jul 202033min

Episode 206 - Confidential Virtual Machines; The future of cloud computing
Josh and Kurt talk about Google's new confidential VMs. The AMD Secure Encrypted Virtualization is the technology that makes it all possible. What is SEV, how does it work, and why should you care? Th...
20 Jul 202031min






















