
Open Source Security
533 episodes — Page 10 of 11

Ep 83Episode 83 - XKCD + CVE = XKCVE
Josh and Kurt talk about the XKCD CVE comic and a flight simulator stealing credentials.

Ep 82Episode 82 - RSA, TLS, Chrome HTTP, and PCI
Josh and Kurt talk about problems of textbook RSA implementations, the upcoming TLS changes in TLS, and the insecurity of http in Chrome.

Ep 81Episode 81 - Autosploit, bug bounties, and the future of security
Josh and Kurt talk about AutoSploit, bug bounties and fixing flaws, market forces in security, future expectations, and how humans perceive threats.

Ep 80Episode 80 - GPS tracking and jamming
Josh and Kurt talk about GPS metadata giving away military bases and GPS jamming as part of testing.

Ep 79Episode 79 - Skyfall: please don't yell 'fire'
Josh and Kurt talk about Skyfall, fake reports, risk, logging, and how a civilized society functions.

Ep 78Episode 78 - Risk lessons from Hawaii
Josh and Kurt talk about the accidental missile warning in Hawaii. We also discuss general preparedness and risk.

Ep 77Episode 77 - npm and the supply chain
Josh and Kurt talk about the recent npm happenings. What it means for the supply chain, and we end with some thoughts on how maybe none of this matters.

Ep 76Episode 76 - Meltdown aftermath
Josh and Kurt talk about the aftermath of Meltdown. The details of the flaw are probably less interesting than what happens now.

Ep 75Episode 75 - Security Planner review
Josh and Kurt talk about the Security Planner website. It's pretty good all things considered.

Ep 74Episode 74 - Facial recognition and physical security
Josh and Kurt talk about facial recognition, physical security, banking, and Amazon Alexa.

Ep 73Episode 73 - Security from Santa
Josh and Kurt talk about basic security metrics and security from Santa. Is Santa GDPR compliant?

Ep 72Episode 72 - Bitcoin: It's over 9000
Josh and Kurt talk about Bitcoin, blockchain, and other cryptocurrencies.

Ep 71Episode 71 - GitHub's Security Scanner
Josh and Kurt talk about GitHub's security scanner and Linus' security email. We clarify the esoteric difference between security bugs and non security bugs.

Ep 70Episode 70 - The security of Intel ME
Josh and Kurt talk about Intel ME, Equifax salary history, and IoT.

Ep 69Episode 69 - Actionable security advice
Josh and Kurt talk about Amazon Key and actionable advice.

Ep 68Episode 68 - Ruining the Internet
Josh and Kurt talk about Facebook listening to your microphone, Google Chrome certificate pinning, CAs, 152 ways to stay safe, and Kubernetes.

Ep 67Episode 67 - Cyber won
Josh and Kurt talk about hacking back, passwords, honeypots, and conspiracies.

Ep 66Episode 66 - Objects in mirror are less terrible than they appear
Josh and Kurt talk about Equifax again, Kaspersky, TLS CAs, coming change, social security numbers, and Minecraft.

Episode 65 - Will aliens overthrow us before AI?
Josh and Kurt talk about Apple, Equifax, passwords, AI, and aliens.

Episode 64 - Networks and Dnsmasq and IoT oh my
Josh and Kurt talk about networks, Dnsmasq, IoT, and our coming security dystopian future.

Ep 63Episode 63 - Shoot, Shovel, and Bury
Josh and Kurt talk about the Equifax breach (again) and what it will mean for all of us. Blueborne comes up, as well as #TrevorForget.

Ep 62Episode 62 - All about the Equifax hack
Josh and Kurt talk about the Equifax breach and what it will mean for all of us.
Ep 61Episode 61 - Market driven security
Josh and Kurt talk about our lack of progress in security, economics, and how to interact with peers.

Episode 60 - The official blockchain episode
Josh and Kurt talk about the eclipse and blockchain.

Episode 59 - The VPN Episode
Josh and Kurt talk about VPNs and the upcoming eclipse.

Ep 58Episode 58 - Backwards compatibility to the point of insanity
Josh and Kurt talk about MalwareTech, Debian killing off TLS 1.0 and 1.1, auto safety, HBO, and npm not typo squatting.

Ep 57Episode 57 - We may never see amazing security research ever again
Josh and Kurt talk about Black Hat and Defcon, safes, banks, voting machines, SMBv1 DoS attack, Flash, liability, and password masking.

Episode 56 - Devil's Advocate and other fuzzy topics
Josh and Kurt talk about forest fires, fuzzing, old time Internet, and Net Neutrality. Listen to Kurt play the Devil's Advocate and manage to change Josh's mind about net neutrality.

Episode 55 - Good Docs Ruin My Story
Josh and Kurt talk about Let's Encrypt, certificates, Kaspersky, A/V, code signing, Not Petya, self driving cars, and failures that become security problems.

Episode 54 - Turning Into An Old Person
Josh and Kurt talk about Canada Day, Not Petya, Interac goes down, Minecraft, airport security and books, then GDPR.

Episode 53 - A Plane Isn't Like A Car
Josh and Kurt talk about security through obscurity, airplanes, the FAA, the Windows source code leak, and chicken sandwiches.

Episode 52 - You Could Have Done It Right, But You Didn't
Josh and Kurt talk about the new StackClash flaw, Grenfell Tower, risk management, and backwards compatibility.

Episode 51 - All About CVE
Josh and Kurt talk to Dan Adinolfi about CVE. Most anything you ever wanted to know about CVE is discussed.

Episode 50 - This Is A Security Podcast After All
Josh and Kurt discuss Futurama, tornadoes, sudo, encryption, hacking back, and something called an ombudsman. Also episode 50!

Episode 49 - Testing Software Is Impossible
Josh and Kurt discuss Samba, FTP sites, MSDOS, regulation, and the airplane laptop travel ban.

Episode 48 - Machine Learning: Not Actually Magic
Josh and Kurt have a guest! Mike Paquette from Elastic discusses the fundamentals and basics of Machine Learning. We also discuss how ML could have helped with WannaCry.

Episode 47 - WannaCry: Everything Is Basically Broken
Josh and Kurt discuss the WannaCry worm.

Episode 46 - Turns Out I'm Not A Bad Guy
Josh and Kurt discuss the recent Google phish attack.

Episode 45 - Trust Is More Important Now Than The Truth
Josh and Kurt discuss not-counterfeit MTG cards, antivirus, squirrelmail, unroll.me, grsecurity, baby monitors, and trust.

Episode 44 - Bug Bounties Vs Pen Testing
Josh and Kurt discuss Lego, bug bounties, pen testing, thought leadership, cars, lemons, entropy, and CVE.

Episode 43 - We Are Totally Immature
Josh and Kurt discuss Shadow Brokers, pronouncing GIF, Atlanta's road problems, browser phishing, warning sirens, IoT, and fake Magic the Gathering cards.

Episode 42 - Hitchhiker's Guide To Security
Josh and Kurt discuss the security themes and events in the context of the HHGG movie.

Episode 41 - All Your Money Are Belong To Us
Josh and Kurt discuss airplane laptop bans, ATM hacking, pointing at things, and Certificate Authorities.

Episode 40 - Let's Fork Bitcoin, Again
Josh and Kurt discuss Verizon spyware, FCC privacy, Smart TVs, Tor's rewrite, Google's new operating system, bitcoin, and NanoCore.

Episode 39 - Flash On Your Dishwasher
Josh and Kurt discuss certificates, OpenSSL, dishwashers, Flash, and laptop travel bans.

Episode 38 - We Ruin Everything
Josh and Kurt discuss disclosing your password, pwn2own, wikileaks, Back Orifice, HTTPS inspection, and antivirus.

Episode 37 - Your Bathtub Is More Dangerous Than A Shark
Josh and Kurt discuss how the Vault 7 leaks shows we live in the Neuromancer world, and this is likely the new normal.

Episode 36 - A Good Enough Podcast
Josh and Kurt discuss an IoT bear, Alexa and Siri, Google's E2Email and S/MIME.

Episode 35 - Crazy Cosmic Accident
Josh and Kurt discuss SHA-1 and cloudbleed. Bug bounties come up, and we compare security to the Higgs boson. We also discuss IPv6 at the end.

Episode 34 - Bathing In Ebola Virus
Josh and Kurt discuss RSA, the cryptographer's panel and of course, AI.