Take 1 Security Podcast: Episode 9

Take 1 Security Podcast: Episode 9



START CONTENT


* Sorry about the audio last week; wireless headsets don’t compare to the Yeti
* The CIA is focusing on cyberespionage in its new management
* Anthem is refusing an audit by the OIG office–an org that audits health care groups that provide services to federal employees


* Nothing says I’m guilty like refusing an audit
* Reminds me of the Russians refusing the crash investigation in Game of Cards

* There’s been a possible credit card breach at the Mandarin Oriental hotel chain


* The incident was reported by Brian Krebs

* Three people were indicted in the Epsilon hack


* Resulted in around 1 billion email addresses being stolen

* Dave Aitel thinks junk hacking is a waste


* Basically hacking your blender or whatever
* In my opinion he’s missing the point that most conferences are like this
* I think there’s a hierarchy of talks


* Create new defense tool based on new defense idea
* Create new defense idea
* Create new attack tool based on new attack idea
* Create new attack idea
* Create new tool for existing attack or defense idea
* Describe existing attack or defense idea


* Microsoft has reported it’s vulnerable to FREAK as well, making it even more serious


* FREAK has proved to be less alarming than previous SSL vulns simply because of the difficulty of attack



END CONTENT

Play Podcast

Notes


* I think I’m going to standardize the intro and outro so that I only end up recording the actual story content each week.
* Any recommendations on what else you’d like to see would be appreciated.

Become a Member: https://danielmiessler.com/upgrade

See omnystudio.com/listener for privacy information.

Avsnitt(532)

The Relationship Between Hardship, Struggle, and Meaning

The Relationship Between Hardship, Struggle, and Meaning

My essay on how struggle could be necessary for meaning, and how this could be the underlying cause of much of America's mental health problem.Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

15 Okt 202013min

News & Analysis | No. 250

News & Analysis | No. 250

CrowdSec, Nudge, Trickbot Trickery, CISA Ransomware Guide, Twitter and Facebook anti-Disinformation, QAnon Takedowns, Putin Turning on Trump, Azure Vulnerabilities, PC shipments up, Virtual Sales Call AI, Technology News, Human News, Ideas Trends & Analysis, Discovery, Recommendations, and the Weekly Aphorism…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

12 Okt 202026min

News & Analysis | No. 249

News & Analysis | No. 249

Operation Fortify, Cyber Pearl Harbor, Github Code Scanning, E-6B Flights, Blackbaud++, Grinder Password Reset, Cloudflare API Security, QNAP Drama, Technology News, Human News, Ideas Trends & Analysis, Discovery, Recommendations, and the Weekly Aphorism…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

5 Okt 202021min

News & Analysis | No. 248

News & Analysis | No. 248

Everyday Threat Modeling, Why I Like TikTok So Much, Windows XP Leak, SSH 8.4, Renée DiResta's Latest, Student Visas Changes, Cisco IOS Vulns, QAonon Gamification, Technology News, Human News, Ideas Trends & Analysis, Discovery, Recommendations, and the Weekly Aphorism…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

28 Sep 202016min

Why Creators Should Move to Direct Support Monetization

Why Creators Should Move to Direct Support Monetization

My essay about why I think creators—especially in InfoSec—should be setting up their own domains and moving to a direct model for monetization.Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

24 Sep 202011min

No, Changing Your SSH Port Isn't Security by Obscurity

No, Changing Your SSH Port Isn't Security by Obscurity

My latest essay on the timeless debate on SSH ports and Security by Obscurity. I talk about why changing your port is not usually obscurity, and give what I believe to be an airtight method of how you can tell the difference between regular security and Security by Obscurity.Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

23 Sep 202013min

News & Analysis | No. 247

News & Analysis | No. 247

SSH Port Obscurity, The TikTok Deal, Ransomware Death, Chinese Espionage CRM, Amazon Bribery, Instant Domain Admin, Technology News, Human News, Ideas Trends & Analysis, Discovery, Recommendations, and the Weekly Aphorism…Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

21 Sep 202020min

Book Summary | Naked Statistics, by Charles Wheelen

Book Summary | Naked Statistics, by Charles Wheelen

In this episode, I review the book Naked Statistics, by Charles Wheelen. I cover: My one-sentence summary of the text The table of contents, which is super helpful to see the structure of the argument My capture of the main points My takeaways, questions, and ideas that came from reading it My final summarization And then my rating of the book and whether I recommend you read the full text Become a Member: https://danielmiessler.com/upgradeSee omnystudio.com/listener for privacy information.

16 Sep 202022min

Populärt inom Teknik

uppgang-och-fall
rss-racevecka
elbilsveckan
rss-badfluence
bilar-med-sladd
bosse-bildoktorn-och-hasse-p
market-makers
skogsforum-podcast
rss-veckans-ai
natets-morka-sida
rss-technokratin
rss-laddstationen-med-elbilen-i-sverige
hej-bruksbil
garagehang
mediepodden
solcellskollens-podcast
rss-uppgang-och-fall
rss-snacka-om-ai
developers-mer-an-bara-kod
ai-sweden-podcast