Sinopsis
A security podcast hosted by Kurt Seifried and Josh Bressers covering a wide range of topics including IoT, application security, operational security, cloud, devops, and security news of the day. There is a special open source twist to the discussion often giving a unique perspective on any given topic.
Episodios
-
Episode 101 - Our unregulated future is here to stay
17/06/2018 Duración: 32minJosh and Kurt talk about Bird scooters. The implications of the scooters on the city, segways, bicycles. The topic of how these vehicles interact with pedestrians on the road and trails. It's an example of humans not wanting to follow the rules and generally making the situation annoying for everyone. It's the old security story of new technology without clear rules. The show ends with some horrifying numbers behind how bad things can get before people really care.
-
Episode 100 - You're bad at buying security, we can help!
11/06/2018 Duración: 35minJosh and Kurt talk about how to be a smart security buyer. We have guest Steve Mayzak walk us through how a the buying process works as well as giving out a ton of great advice. Even if you're experienced with how to buy security technology you should give this a listen.
-
Episode 99 - Consumer security is too broken to fix, and it doesn't matter
04/06/2018 Duración: 34minJosh and Kurt talk about a number of consumer security issues. The FBI told everyone to reboot their routers which they won't do. The .app top level domain is a cesspool of malware. Everyone has a cell phone and won't update them properly. None of this probably matters though. Unless there are real measurable tragedies caused by this tech, people tend not to really care.
-
Episode 98 - When IT decisions kill people
28/05/2018 Duración: 34minJosh and Kurt talk about the NTSB report from the fatal Uber crash and what happened with Amazon's Alexa recording then emailing a private conversation. IT decisions now have real world consequences like never before.
-
Episode 97 - Automation: Humans are slow and dumb
20/05/2018 Duración: 33minJosh and Kurt talk about the security of automation as well as automating security. The only way automation will really work long term is full automation. Humans can't be trusted enough to rely on them to do things right.
-
Episode 96 - Are legal backdoors a good idea?
11/05/2018 Duración: 32minJosh and Kurt talk about backdoors in code and products that have been put there on purpose. We talk about unlocking phones. Encryption backdoors with a focus on why they won't work.
-
Episode 95 - Twitter passwords and npm backdoors
07/05/2018 Duración: 29minJosh and Kurt talk about Twitter doing the right thing when they logged a lot of passwords and the npm malicious getcookies package and how backdoors work in code.
-
Episode 94 - DNSSEC, BGP, and reality
30/04/2018 Duración: 28minJosh and Kurt talk about the Amazon Route 53 incident and what it really means for the modern infrastructure. Complaining nobody is using DNSSEC or securing BGP aren't the right conversations to be having. Reality must be considered in any honest conversation about these topics.
-
Episode 93 - Security flaws in beep and patch, how did we get here?
15/04/2018 Duración: 36minJosh and Kurt talk about security flaws in beep and patch. How on earth were there security flaws in beep and patch?
-
Episode 92 - Chat with Rami Saas the CEO of WhiteSource
15/04/2018 Duración: 33minJosh and Kurt talk to Rami Saas, the CEO of WhiteSource about 3rd party open source security as well as open source licensing.
-
Episode 91 - Security lessons from a 7 year old
08/04/2018 Duración: 19minJosh and Kurt talk to a 7 year old about security. We cover Minecraft security, passwords, hacking, and many many other nuggets of wisdom.
-
Episode 90 - Humans and misinformation
02/04/2018 Duración: 36minJosh and Kurt talk about all the current misinformation, how humans react to it, and what it means for security.
-
Episode 89 - Short selling AMD security flaws
25/03/2018 Duración: 34minJosh and Kurt talk about the recent AMD flaws and the events surrounding the disclosure.
-
Episode 88 - Chat with Chris Rosen from IBM about Container Security
18/03/2018 Duración: 32minJosh and Kurt talk about container security with IBM's Chris Rosen.
-
Episode 87 - Chat with Let's Encrypt co-founder Josh Aas
11/03/2018 Duración: 38minJosh and Kurt talk about Let's Encrypt with co-founder Josh Aas. We discuss the past, present, and future of the project.
-
Episode 86 - What happens when 23 thousand certificates leak?
03/03/2018 Duración: 34minJosh and Kurt talk about the Trustico certificate incident and Let's Encrypt.
-
Episode 85 - NPM ate my files
23/02/2018 Duración: 32minJosh and Kurt talk about the npm 5.7.0 debacle.
-
Episode 84 - Have I been pwned?
23/02/2018 Duración: 31minJosh and Kurt talk about the new password data dump from Have I been pwned?
-
Episode 83 - XKCD + CVE = XKCVE
21/02/2018 Duración: 31minJosh and Kurt talk about the XKCD CVE comic and a flight simulator stealing credentials.
-
Episode 82 - RSA, TLS, Chrome HTTP, and PCI
13/02/2018 Duración: 29minJosh and Kurt talk about problems of textbook RSA implementations, the upcoming TLS changes in TLS, and the insecurity of http in Chrome.