Open Source Security Podcast

  • Autor: Vários
  • Narrador: Vários
  • Editor: Podcast
  • Duración: 299:01:37
  • Mas informaciones

Informações:

Sinopsis

A security podcast hosted by Kurt Seifried and Josh Bressers covering a wide range of topics including IoT, application security, operational security, cloud, devops, and security news of the day. There is a special open source twist to the discussion often giving a unique perspective on any given topic.

Episodios

  • Episode 139 - Secure voting, firefox send, and toxic comments on the internet

    01/04/2019 Duración: 30min

    Josh and Kurt talk about Brexit, voting, Firefox send, and toxic comments. Is there anything we can do to slow the current trend of conversation on the Internet always seeming to spiral out of control? The answer is maybe with a lot of asterisks.

  • Episode 138 - Information wants to be free

    25/03/2019 Duración: 32min

    Josh and Kurt talk about a prank gone wrong, the reality of when your data ends up public. Once it's public you can't ever put it back. We also discuss Notepad++ no longer signing releases and what signing releases means for the world in general.

  • Episode 137.5 - Holy cow Beto was in the cDc, this is awesome!

    18/03/2019 Duración: 35min

    Josh and Kurt talk about Beto being in the Cult of the Dead Cow (cDc). This is a pretty big deal in a very good way. We hit on some history, why it's a great thing, what we can probably expect from opponents. There's even some advice at the end how we can all help. We need more politicians with backgrounds like this.

  • Episode 137 - When the IoT attacks!

    11/03/2019 Duración: 30min

    Josh and Kurt talk about when devices attack! It's not quite that exciting, but there have been a slew of news about physical devices causing problems for humans. We end on the note that we're getting closer to a point when lawyers and regulators will start to pay attention. We're not there yet, so we still have a horrible insecure future on the horizon.

  • Episode 136 - How people feel is more important than being right

    04/03/2019 Duración: 31min

    Josh and Kurt talk about github blocking the Deepfakes repository. There's a far bigger discussion about how people feel, and sometimes security fails to understand that making people feel happy or safer is more important than being right.

  • Episode 135 - Passwords, AI, and cloud strategy

    25/02/2019 Duración: 30min

    Josh and Kurt talk about change your password day (what a terrible day). Google's password checkup (not a terrible idea), an AI finding new spice flavors we expect will one day take over the world, and we finish up on a new DoD cloud strategy. Also Josh burnt his finger, but is going to be OK.

  • Episode 134 - What's up with the container runc security flaw?

    18/02/2019 Duración: 28min

    Josh and Kurt talk about the new runc container security flaw. How does the flaw work, what can you do about it, what should you do about it, and what the future of container security may look like.

  • Episode 133 - Smart locks and the government hacking devices

    11/02/2019 Duración: 31min

    Josh and Kurt talk about the fiasco hacks4pancakes described on Twitter and what the future of smart locks will look like. We then discuss what it means if the Japanese government starts hacking consumer IoT gear, is it ethical? Will it make anything better?

  • Episode 132 - Bird Scooter: 0, Cory Doctorow: 1

    04/02/2019 Duración: 30min

    Josh and Kurt talk about the Bird Scooter vs Corey Doctorow incident. We then get into some of the social norms around new technology and what lessons the security industry can take from something new like shared scooters.

  • Episode 131 - Windows micropatches, Google's privacy fine, and Mastercard fixes trial abuse

    28/01/2019 Duración: 33min

    Josh and Kurt talk about non-Microsoft Windows micropatches. The days of pretending closed source matters are long gone. Google gets hit with a privacy fine, that probably won't matter. And Mastercard makes it easier for consumers to not accidentally sign up for services they don't want.

  • Episode 130 - Chat with Snyk co-founder Danny Grander

    21/01/2019 Duración: 34min

    Josh and Kurt talk to Danny Grander one of the co-founders of Snyk about Zip Slip, what it is, how to fix it, and how they disclosed everything. We also touch on plenty of other open source security topics as Danny is involved in many aspects of open source security.

  • Episode 129 - The EU bug bounty program

    14/01/2019 Duración: 33min

    Josh and Kurt talk about the EU bug bounty program. There have been a fair number of people complaining it's solving the wrong problem, but it's the only way the EU has to spend money on open source today. If that doesn't change this program will fail.

  • Episode 128 - Australia's encryption backdoor bill

    07/01/2019 Duración: 32min

    Josh and Kurt talk about Australia's recently passed encryption bill. What is the law that was passed, what does it mean, and what are the possible outcomes? The show notes contain a flow chart of possible outcomes.

  • 2018 Christmas Special - Is Santa GDPR compliant?

    24/12/2018 Duración: 37min

    Josh and Kurt talk about which articles of the GDPR apply to Santa, and if he's following the rules the way he should be (spoiler, he's probably not). Should Santa be on his own naughty list? We also create a new holiday character - George the DPO Elf!

  • Episode 127 - Walled gardens, appstores, and more

    17/12/2018 Duración: 35min

    Josh and Kurt talk about Mozilla pulling a paywall bypassing extension. We then turn our attention to talking about walled gardens. Are they good, are they bad? Something in the middle? There is a lot of prior art to draw on here, everything from Windows, Android, iOS, even Linux distributions.

  • Episode 126 - The not so dire future of supply chain security

    10/12/2018 Duración: 33min

    Josh and Kurt continue the discussion from episode 125. We look at the possible future of software supply chains. It's far less dire than previously expected. It's likely there will be some change in the

  • Episode 125 - Open Source, supply chains, npm, and you

    03/12/2018 Duración: 31min

    Josh and Kurt talk about how open source deals with malicious events. It's probably impossible to stop these from happening, but the open source universe deals with it in its own unique way. We start to discuss what you can do, since everyone is using open source everywhere now. There will be a second part to this episode where we discuss what the future holds for these sort of problems.

  • Episode 124 - Cloudflare's service workers and the economics of security

    26/11/2018 Duración: 34min

    Josh and Kurt talk about Cloudflare's new Workers service. We spend a lot of time discussing how economics drives technology, not security. It's quite likely this new service is less secure than existing alternatives, but it will be cheaper and faster which will matter more than security.

  • Episode 123 - Talking about Kubernetes and container security with Liz Rice

    19/11/2018 Duración: 27min

    Josh and Kurt talk to Liz Rice about Kubernetes and container security. How did we get where we are today, what's new and exciting today, and where do we think things are going.

  • Episode 122 - What will Apple's T2 chip mean for the rest of us?

    12/11/2018 Duración: 33min

    Josh and Kurt talk about Apple's new T2 security chip. It's not open source but we expect it to change the security landscape in the coming years.

página 20 de 27