FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayYour RSS feeds

April 16, 2019 - Hack Naked News #214

By paul@securityweekly.com

This week, the Apache Tomcat Patches Important Remote Code Execution Flaw, New variants of Mirai botnet detected, targeting more IoT devices, Hackers used credentials of a Microsoft Support worker to access users' webmail, TicTocTrack Smartwatch Flaws Can Be Abused to Track Kids, Ecuador suffered 40 Million Cyber attacks after the Julian Assange arrest, Security weakness in popular VPN clients, and Open Source Tool From FireEye Automates Analysis of Flash Files! In the expert commentary, Jason Wood talks about The Impact of Cyber Warfare! All that and more, on this episode of Hack Naked News!

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode214

  • April 16th 2019 at 20:07

Where Did The Bad Man Touch Your Data? - Paul's Security Weekly #600

By paul@securityweekly.com

Gabriel Gumbs is the VP of Product Management at Spirion where his focus is on the strategy and technology propelling Spirionโ€™s rapidly-growing security platform. Merissa Villalobos is the North America Talent Acquisition Leader for NCC Group, a global security consulting firm and has been recruiting in security for 10 years. She got her start in Virginia, at a Federal Government contractor, filling roles for the intelligence community and various Government Agencies. Jessica Gulick leads Katzcy Consulting, a growth hacker company that helps tech firms grow through strategy, market research, and digital marketing. With 20+ years in cybersecurity, she is a seasoned cybersecurity manager, marketer, consultant, and expert with a substantial network of technical and executive peers. In the news, Bitcoin mining ban considered by China's economic planner, Yahoo strikes $117.5 million data breach settlement, Serious flaws leave WPA3 vulnerable to hacks that steal Wi-Fi passwords, WikiLeaks Founder Julian Assange arrested and charged in US with computer hacking conspiracy, and How HTML5 Ping Is Used in DDoS Attacks.

Full Show Notes: https://wiki.securityweekly.com/Episode600

Follow us on Twitter: https://www.twitter.com/securityweekly

Follow us on Twitter: https://www.twitter.com/securityweekly

  • April 16th 2019 at 15:14

How To Think Like An Investor - Business Security Weekly #124

By paul@securityweekly.com

Will is a Partner and a Founding Investor at ForgePoint Capital. He has been an avid technology enthusiast for decades: building his first computer in elementary school and starting online businesses while completing his bachelorโ€™s degree from the University of California, Berkeley. This week we have our quarterly segment to review the money of security, including public companies, IPOs, funding rounds and acquisitions from the previous quarter. We also update the Security Weekly 25 index. Let's understand how the security market is doing.

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode124

  • April 16th 2019 at 15:07

Containers and Kubernetes - ASW#57

By paul@securityweekly.com

This last week was pretty busy with announcements and presentations from the Google Next Conference. In 2018 they previewed some security tools and this year many of them are now GA along with a lot of other developer-focused services. In the news, 3D fingerprints and unlocking Android, Ticking off another command injection, Alexa, audio, and annotations, STS no longer just for HTTP, and Hardenize goes beyond TLS.

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode57 Follow us on Twitter: https://www.twitter.com/securityweekly

  • April 16th 2019 at 15:00

Coalfire ASV Scanning - Enterprise Security Weekly #132

By paul@securityweekly.com

Mike Weber is the Vice President of Coalfire and Rebecca Larson is the Director, Vulnerability Assessment Operations of Coalfire. Coalfire ASV Scanning: - ASV program (love, praise, struggle) - Development and growth of scanning, 1-5 person team, partnership, marketing position - Published opinion piece, getting knowledge, supporting the industry - Scan platform - RISE - movement in the company, coalfire programs, development at Coalfire - Limitations of scanning, pen testing? To learn more about Coalfire, visit:ย https://securityweekly.com/coalfire Full Show Notes:ย https://wiki.securityweekly.com/ES_Ep... Visitย http://securityweekly.com/eswย for all the latest episodes!

  • April 12th 2019 at 02:08

Underlying Capabilities - Application Security Weekly #56

By paul@securityweekly.com

This week, we welcome Loris Degioanni from Sysdig to discuss their open source container native runtime security project called Falco! In the News segment, The Matrix turns 20, Containers are Weakest Security Leak Again, The Evolution of Application Security in the Serverless World, and more!

To learn more about Sysdig, visit: https://securityweekly.com/sysdig

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode56

Visit https://www.securityweekly.com/asw for all the latest episodes!

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

ย 

  • April 10th 2019 at 09:00

Hack Naked News #213 - April 9, 2019

By paul@securityweekly.com

In-Depth Analysis of JS Sniffers Uncovers New Families of Credit Card-Skimming Code, Nvidia Fixes 8 High-Severity Flaws Allowing DoS, Code Execution, Computer virus alters cancer scan images, A Serious Apache server bug gives root to baddies in shared host environments, Cybercrime Groups Are Still Rampant on Facebook, 90% of OT organizations are cyberattack victims, Tenable Discloses Verizon Fios Router Vulnerabilities, and Samsung Galaxy S10 Fingerprint Sensor Duped With 3D Print!

Neil Butchart the SVP at Ekran, comes on the show to talk about "Is the industry broken?"

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode213

  • April 9th 2019 at 20:14

Prescribing Solutions - Business Security Weekly #123

By paul@securityweekly.com

This week, we welcome Michael Murray, Chief Security Officer at Lookout! Michael joins us today to talk about Post-perimeter Security! In the Leadership and Communications segment, 94% of CIOs, CISOs have to make protection compromises, Accelerating Business Through Customer Centricity, 5 states dominating tech employment, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode123

Visit https://www.securityweekly.com/bsw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • April 9th 2019 at 09:00

The Dust Settles - Paul's Security Weekly #599

By paul@securityweekly.com

This week, we welcome back Mary Beth Borgwing, President and Founder of of the Cyber Social Club, to talk about Uniting Women in Cyber! In the Technical Segment, we welcome back our friend Chris Brenton, Chief Operating Officer at Active Countermeasures, to discuss why threat hunting is the missing link between our protection tools and our response tools, and will take a deep dive into the AI Hunter! In the Security News, Attackers exploiting IMAP to bypass MFA on O365 and G-Suite accounts, Vietnam's OceanLotus Group Ramps up hacking car companies, UC Browser violates Google Play Store Rules, & how Russia is spoofing GPS Signals on a massive scale!

ย 

To learn more about Active Countermeasures and to get the slides for the Technical Segment today, visit: https://securityweekly.com/acm

Full Show Notes: https://wiki.securityweekly.com/Episode599

Visit https://www.securityweekly.com/psw for all the latest episodes!

ย 

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • April 5th 2019 at 21:00

Bang for the Buck - Enterprise Security Weekly #131

By paul@securityweekly.com

This week, we welcome Dr. Branden R. Williams! Branden has more than twenty years of experience in business, technology, and information security as a consultant, leader, and an executive. His specialty is navigating complex landscapesโ€”be it compliance, security, technology, or businessโ€”and finding innovative solutions that propel companies forward while reducing risk. In the second segment, Paul and Matt sit down with Wade Lance and Nir Greenberg of Illusive Networks at the RSA Conference 2019!

ย 

Full Show Notes: https://wiki.securityweekly.com/ES_Episode131

Visit https://www.securityweekly.com/esw for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 29th 2019 at 19:00

Until Next Time - Application Security Weekly #55

By paul@securityweekly.com

This week, we welcome Mike Shema, Product Security Lead of Square! Mike joins us on the show to talk about where the wins and challenges are in AppSec! In the Application Security News, XSS Vulnerability in Abandoned Cart Plugin Leads to WordPress Site Takeover, The RedMonk Programming Language Rankings: January 2019, I Deleted Facebook Last Year; Here's What Changed (and What Didn't), CommitStrip: Over-excited, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode55

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 28th 2019 at 21:00

Hack Naked News #212 - March 26, 2019

By paul@securityweekly.com

This week, Asus pushes patch after hackers used updates to send malware, Microsoft announces Windows Defender ATP Antivirus for Mac, researchers find 36 new security flaws in LTE protocol, new settings let hackers easily pentest Facebook and Instagram Mobile Apps, and how researchers can get a free Tesla for spotting infotainment system bug! Sven Morgenroth from Netsparker joins us for expert commentary to discuss how Facebook stored hundreds of Millions of user passwords in plain text!

ย 

To learn more about Netsparker, visit: https://securityweekly.com/netsparker

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode212

ย 

Subscribe to our YouTube channel: https://www.youtube.com/securityweekly

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 28th 2019 at 19:46

The Magic Question - Business Security Weekly #122

By paul@securityweekly.com

This week, we welcome Ian McShane, Vice President of Product Marketing at Endgame, to discuss Security ROI! In the Leadership and Communications segment, Even CEOs Should Clean Their Own Bathrooms Sometimes, Building an Effective Cybersecurity Program, How to Get Booked as a Podcast Guest, and more!

ย 

To learn more about Endgame, visit:ย https://securityweekly.com/endgame

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode122

Visit https://www.securityweekly.com/bsย for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 26th 2019 at 20:00

I Need Another Pour - Paul's Security Weekly #598

By paul@securityweekly.com

This week, we welcome Marcus Carey, CEO and Founder of ThreatCare, to talk about Tribe of Hackers, a collection of industry, career, and personal insights from 70 cybersecurity professionals! In the Security News, WordPress plugin removed after zero day discovered, why you should change your facebook password NOW, threat hunting tips to improve security operations, hacked tornado sirens taken offline ahead of a major storm, and how a white hat hacker found a new bug class in Windows! In the final segment, we run a Technical Demo with our sponsor DomainTools, all about Domain Investigation w/ DomainTools Iris! All that and more, on this episode of Paul's Security Weekly!

Full Show Notes:ย https://wiki.securityweekly.com/Episode598

To learn more about DomainTools and Iris, visit: https://securityweekly.com/domaintools

Visit https://www.securityweekly.com/psw for all the latest episodes! Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly

  • March 25th 2019 at 09:00

Incredibly Noisy - Enterprise Security Weekly #130

By paul@securityweekly.com

This week, in the Enterprise Security News, I am joined by John Strand to discuss how Stackpath released new edge computing VMs, ExtraHop hires former Tenable and HPE leaders to support growth in cyber, Security professionals want to return fire to Venafi, Dragos acquires NexDefense, and 42Crunch unveils a new platform to discover API vulnerabilities and protect them from attacks! In the second segment, we air some pre recorded from RSA Conference 2019 with Endgame, Virsec, and Scythe!

ย 

Full Show Notes: https://wiki.securityweekly.com/ES_Episode130

Visit https://www.securityweekly.com/esw for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

ย 

  • March 21st 2019 at 17:00

A Bittersweet Ending - Application Security Weekly #54

By paul@securityweekly.com

This week, we welcome Jamie Duncan, a recovering history major who has been at Red Hat for just over 7 years! Beginning with his role as a TAM, his focus has increasingly centered on the operations-oriented features of OpenShift, including the May 2018 publication of OpenShift In Action by Manning Publishing. Jamie has had this discussion with customers, OpenShift advocates, and technology fans on multiple continents to date. In the Application Security News, Owner of MAGA-Friendly Yelp Knockoff Threatens to Call FBI After Researcher Exposes Security Holes, Chinese Data Breach Exposes 'Breed Ready' Status Of Almost 2 Million Women, Dozens of companies leaked sensitive data thanks to misconfigured Box accounts, DARPA Is Building a $10 Million, Open Source, Secure Voting System, and much more!

ย 

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode54

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 20th 2019 at 22:00

Super Geniuses - Business Security Weekly #121

By paul@securityweekly.com

This week, we welcome Nick Galbreath, Co-founder and Chief Technology Officer at Signal Sciences, to discuss the Intersection of Development and Security! In the Leadership and Communications segment, How Boeing Should Have Responded to the 737 Max Safety Crisis, Digital Transformation is Not About Technology, Gartner's Top 10 Security Projects for 2019, and more!

ย 

To learn more about Signal Sciences, visit: https://securityweekly.com/signalsciences

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode121

Visit https://www.securityweekly.com/bsw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 19th 2019 at 22:00

Hack Naked News #211 - March 19, 2019

By paul@securityweekly.com

This week, Zero-Days in Counter Strike client could be used to build a major botnet, huge aluminum plants hit by 'severe' ransomware attack, Myspace loses 50 million songs in server migration, wifi signals can reveal your password, and PuTTY in your hands: an SSH client gets patched after RSA key exchange memory vulnerability was spotted! Ralf Hund from VMRay joins us for expert commentary to discuss the Evolution of GandCrab!

ย 

To learn more about VMRay, visit: https://securityweekly.com/vmray

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode211

Visit https://www.securityweekly.com/hnn for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 19th 2019 at 21:55

You're Killing Me Smalls - Paul's Security Weekly #597

By paul@securityweekly.com

This week, we welcome Peter Smith, Founder and CEO of Edgewise to talk about the evolution of Zero Trust! In the Security News, New WordPress flaw lets unauthenticated remote attackers hack sites, Tesla allegedly spied on and ran a smear campaign on a whistleblower, Facebook and Instagram suffer most severe outage ever, a man drives 3,300 miles to talk to YouTube about a deleted video, and what do sexy selfies, search warrants, and tax files have in common? In the final segment, we air a pre recorded interview with Carsten Willems, Co-Founder and CEO at VMRay, discussing malware sandboxing!

ย 

To learn more about Edgewise, visit: https://securityweekly.com/edgewise/ To learn more about VMRay, visit: https://securityweekly.com/vmray

ย 

Full Show Notes: https://wiki.securityweekly.com/Episode597 Visit https://www.securityweekly.com/psw for all the latest episodes!

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter! Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly

  • March 18th 2019 at 21:18

The Evil Empire - Enterprise Security Weekly #129

By paul@securityweekly.com

This week, we interview Gururaj Pandurangi, Founder and CEO at Cloudneeti, to discuss Continuous Cloud Assurance! Gururaj Pandurangi is a founder and CEO of Cloudneeti, a software-as-a-service company focused on continuous cloud security, data privacy and compliance assurance. Gururaj has 20 years of professional experience, a good portion of it as an early adopter of cloud technologies and building global scale cloud products like Windows Live, Bing platform, Consumer Identity and Federations. Paul Asadoorian and Matt Alderman recorded interviews with the following vendors at RSA Conference 2019: - Venafi - XM Cyber - Onapsis Paul Asadoorian and Matt Alderman recap RSA Conference 2019, including their briefings with: - 42Crunch - Baffle - CyberInt - Eclypsium - Ericom Software - Lacework - Radware - RiskRecon and More!

ย 

To learn more about Cloudneeti, visit: https://securityweekly.com/cloudneeti

Full Show Notes: https://wiki.securityweekly.com/ES_Episode129

ย 

Visit https://www.securityweekly.com/esw for all the latest episodes!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 16th 2019 at 09:00

Spot On - Application Security Weekly #53

By paul@securityweekly.com

This week, Keith and Paul discuss the structure and experiences of 2019's RSA Conference! In the Application Security News, WordPress accounted for 90 percent of all hacked CMS sites in 2018, Japanese police charge 13-year-old for sharing 'unclosable popup' prank online, Facebook exploit โ€“ Confirm website visitor identities, NSA's top policy advisor: It's time to start putting teeth in cyber deterrence, study shows programmers will take the easy way out and not implement proper password security, and the CommitStrip for the week on Why check for incognito mode?

ย 

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode53

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 15th 2019 at 21:00

Hack Naked News #210 - March 12, 2019

By paul@securityweekly.com

This week, a Severe RCE vulnerability affected popular StackStorm Automation software, Crowdfense is willing to pay $3 Million for iOS and Android Zero-Days, Equifax neglected cyber security prior to breach, Google launches new Cloud Security services, and an unprotected MongoDB instance exposes 800 million emails! Jason Wood from Paladin Security joins us for expert commentary on how a researcher claims an Iranian APT is behind a 6TB Data Heist at Citrix!

ย 

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode210

Visit https://www.securityweekly.com/hnn for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 12th 2019 at 22:00

Pick Your Brain - Business Security Weekly #120

By paul@securityweekly.com

This week, we welcome Ben Carr, Chief Information Security Officer at Aristocrat! Prior to Aristocrat, we was VP of Strategy for Cyberbit and North America's Technical Director for Tenable! In the Leadership and Communications segment, how to make sure your board sets a good example for your company, cybersecurity is putting customer trust at the center of competition, 6 reasons your home office is better than your company office, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode120

Visit https://www.securityweekly.com/bsw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 12th 2019 at 21:00

We All Was In High School - Paul's Security Weekly #596

By paul@securityweekly.com

This week, we welcome Allan Liska, Senior Solutions Architect at our sponsor Recorded Future, to talk about Catching Up To The Hype w/ Threat Intelligence! In the second interview, we welcome David Marble, President and CEO at OSHEAN Incorporated, to talk about what to expect at at this years Rhode Island Cybersecurity Exchange Day! In the Security News, YouTube controversy on ALL fronts, Cisco SOHO wireless VPN firewalls and routers open to attack, Ring doorbell flaw opens door to spying, bot plagues, free hacking toolkits, and everything you need to know about the Huawei controversy!

ย 

Get Trending Threat Insights Delivered to Your Inbox, at: https://securityweekly.com/recordedfuture

OSHEAN is hosting RI Cybersecurity Exchange Day on March 13th at the O'Hare Academic Building at Salve Regina in Newport, RI! Register Now at https://OSHEAN.org/events.

ย 

Full Show Notes: https://wiki.securityweekly.com/Episode596

Visit https://www.securityweekly.com/psw for all the latest episodes!

ย 

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • March 2nd 2019 at 19:00

Getting In & Getting Out - Enterprise Security Weekly #128

By paul@securityweekly.com

This week, Paul is joined by Matt Alderman to discuss some Funding and M&A, such as Elevate Security announces an $8 million series A to alter employee security behavior, Armorblox raises 16.5 million in series A, Bandura Cyber raises 10 million in venture funding, and much more! In the Enterprise Security News, Capsule8 expands threat detection platform for PCI DSS, BitSight unveils peer analytics for more effective security performance management, Imperva advances autonomous application protection capabilities, and Synopsys launches Polaris Software integrity platform!

ย 

Full Show Notes: https://wiki.securityweekly.com/ES_Episode128

Visit https://www.securityweekly.com/esw for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

ย 

  • February 28th 2019 at 10:00

Lose Weight - Application Security Weekly #52

By paul@securityweekly.com

This week, many websites threatened by highly critical code-execution bug in Drupal, UK parliament calls for antitrust, data abuse probe of Facebook, CommitStrip: Get rich quick, Google says the built-in microphone it never told Nest users about was 'never supposed to be a secret', and more! In our second segment, we welcome Matt Springfield, is the Founder of 12Feet, Inc., an information security consulting firm based in the Dallas area! Matt has more than 23 years of information security experience spanning operations, architecture and consulting with a focus on large scale retail and service provider environments!

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode52

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 27th 2019 at 22:00

Hack Naked News #209 - February 26, 2019

By paul@securityweekly.com

This week, millions of utility customers passwords stored in plain text, Google ditches passwords in latest android devices, online validation services vulnerable to digital signature spoofing attacks, flaws in 4G and 5G allow snooping on calls, and TurboTax hit with credential stuffing attack and tax returns were compromised! Nicholas Sciberras from Acunetix joins us for expert commentary on how hackers created social media work after a bug report was ignored!

ย 

To GET A FREE 14-DAY TRIAL of Acunetix, visit: https://securityweekly.com/acunetix

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode209

Visit https://www.securityweekly.com/hnn for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 26th 2019 at 21:41

Tea & Crumpets - Business Security Weekly #119

By paul@securityweekly.com

This week, we interview DJ Sampath, Co-Founder and Chief Executive Officer at Armorblox! DJ comes on the show to discuss "Securing the Human Layer"! In our second interview, we welcome Bruce Sussman, the Media-Development Director at SecureWorld! Bruce will give us a preview of SecureWorld Boston 2019 and the upcoming events!

ย 

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode119

Visit https://www.securityweekly.com/bsw for all the latest episodes!

SecureWorld Boston is hosting their 15th annual conference March 27-28 @ the Hynes Convention Center. Security Weekly Listeners save $100 off a full conference pass by visiting https://secureworldexpo.com and using the code 'SecurityWeekly'.

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 26th 2019 at 10:00

It Compiled & It Ran - Paul's Security Weekly #595

By paul@securityweekly.com

This week, we welcome back Marcello Salvati, Security Analyst at our sponsor Black Hills Information Security, to give some updates on his Post Exploitation Tool SILENTTRINITY! In the second interview, we welcome Steve Brown, Keynote Speaker at SecureWorld Boston 2019 to discuss his talk about Building Your Strategic Roadmap for the Next Wave of Digital Transformation! In the Security News, password managers leaking data in memory, security analysts are only human, Splunk changes position of Russian customers, Google admits error over hidden microphone, and a nasty code-execution bug in WinRAR threatened millions of users for 14 years!

ย 

Full Show Notes: https://wiki.securityweekly.com/Episode595

To learn more about our sponsor Black Hills Information Security, visit: https://securityweekly.com/bhis

To see the SILENTTRINITY code itself on Github, visit: https://github.com/byt3bl33d3r/SILENTTRINITY

Visit https://www.securityweekly.com/psw for all the latest episodes!

ย 

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 23rd 2019 at 10:00

Up In The Sky - Enterprise Security Weekly #127

By paul@securityweekly.com

This week, we interview Cody Cornell, Founder and CEO at Swimlane to discuss Security Orchestration, Automation, and Response! In the Enterprise Security News, CylancePROTECT now available on AWS Marketplace, Attivo Networks enhances deception platform with forensic collection, cyber security market will reach $365.26 billion dollars by 2026, and Elevate Security raises 8 million dollars in Series A!

ย 

Full Show Notes: https://wiki.securityweekly.com/ES_Episode127

Visit http://securityweekly.com/esw for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 22nd 2019 at 22:00

Level of Trust - Application Security Weekly #51

By paul@securityweekly.com

This week, Matt and Paul interview Gurpreet S. Sachdeva, the Assistant Vice President of Technology for Altran! Gurpreet will be discussing "Integrating Security into DevOps"! In the Application Security News, A PNG Android Vulnerability, 620 million stolen accounts for sale on the dark web, how shifting security left speeds development, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode51

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 20th 2019 at 10:00

Hack Naked News #208 - February 19, 2019

By paul@securityweekly.com

This week, Google paid out $3.4 million for vulnerabilities reported in 2018, hackers target WordPress sites via WP cost estimation plugin, Facebook paid $25,000 for CSRF exploit that leads to Account Takeover, and PoC Exploit Code for recent container escape flaw in runc published online! Jason Wood from Paladin Security joins us for expert commentary on Apple being sued over their two factor authentication!

ย 

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode208

Visit https://www.securityweekly.com/hnn for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 19th 2019 at 20:46

Perception Becomes Reality - Business Security Weekly #118

By paul@securityweekly.com

This week, we welcome Brendan Goodwin, the Regional Cyber Director for the Northeast & Mid-Atlantic at Alfred J. Gallagher Co. Brendan comes on the show to talk about "How Cyber Insurance can Augment Your Cyber Security Strategy." In the Leadership and Communications segment, Jason Albuquerque joins Matt to discuss if boards of directors responsible for cybersecurity, cybersecurity mental health warning, how to cope with a Mid-Career Crisis, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode118

Visit https://www.securityweekly.com/bsw for all the latest episodes!

Visit https://infosecworld.misti.com/ and use the registration code OS19-SECWEEK for 15% off the Main Conference or World Pass!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 19th 2019 at 10:00

Flat Earth - Paul's Security Weekly #594

By paul@securityweekly.com

This week, we welcome Harry Sverdlove, Chief Technology Officer of Edgewise for an interview, to talk about The Future of Firewalls! In the Technical Segment, we discuss some Enterprise-ish Network Security hardware and software that we've incorporated here in our Security Weekly Studio! In the Security News, why it's way too easy to sell counterfeit goods on Amazon, how to defend against the runC container vulnerability, creating a dream team for the new age of cyber security, how you can get a Windows 95 emulator for Windows 10, Linux, or MAC, DEF CON goes to Washington, and InfoSec institutes top podcasts that take your computer skills to the next level!

ย 

Full Show Notes: https://wiki.securityweekly.com/Episode594

To learn more about Edgewise, visit: https://www.edgewise.net/security-weekly

Visit https://www.securityweekly.com/psw for all the latest episodes!

ย 

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 16th 2019 at 10:00

Resilient & Robust - Enterprise Security Weekly #126

By paul@securityweekly.com

This week, Paul is joined by Matt Alderman in the absence of John Strand, to discuss The Evolution of Vulnerability Management, and where we stand today in areas such as Applications, Infrastructure, and Mobile! In the Enterprise Security News, Cisco unlocks IoT potential with Intent-Based Networking, Qualys extends cloud platform with patch management, Tenable announces general availability of Predictive Prioritization, Lacework announces security support for Azure and Multicloud environments, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/ES_Episode126

Visit https://www.securityweekly.com/esw for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

Visit http://securityweekly.com/esw for all the latest episodes!

  • February 14th 2019 at 10:00

The World Traveler - Application Security Weekly #50

By paul@securityweekly.com

This week, Paul is joined by Joff Thyer to interview Tim Eades, CEO of vArmour, to talk about basic flow of problem, solution, and value! In the Application Security News, many popular iPhone apps secretly record your screen without asking, MongoDB databases still being held for ransom, most of the Fortune 100 still use flawed software that led to the Equifax breach, and a Chrome extension with millions of users is now serving popup ads!

ย 

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode50

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 13th 2019 at 10:00

Hack Naked News #207 - February 12, 2019

By paul@securityweekly.com

This week, your Lenovo X is watching you & sharing information, a client-side DNS attack emerges from academic research, a macOS vulnerability leaks safari data, hackers hit VFEmail & wipe US servers and backups, and a check-in system flaw puts major airlines at risk! Jason Wood from Paladin Security joins us for expert commentary on how fraudsters are scamming teenage 'money mules' on Instagram and Snapchat!

ย 

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode207

Visit https://www.securityweekly.com/hnn for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 12th 2019 at 22:25

Golden Nuggets - Business Security Weekly #117

By paul@securityweekly.com

This week, we welcome Ed Moyle, General Manager and Chief Content Officer at Prelude Institute! Ed is on the Advisory Board for InfoSec World and joins us to talk about InfoSec World 2019 and its upcoming plans, where he'll be giving a talk titled "Cryptocurrency Lessons for Enterprise Blockchain"! In the Leadership and Communications segment, keep your employees and youโ€™ll keep your customers, why leadership development is superficial and how to fix it, simple techniques to overcome negative emotions when negotiating with others, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode117

Visit https://infosecworld.misti.com/ and use the registration code OS19-SECWEEK for 15% off the Main Conference or World Pass.

Visit https://www.securityweekly.com/bsw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 12th 2019 at 10:00

The Human Brain - Application Security Weekly #48

By paul@securityweekly.com

This week, Keith and Paul start the show with the Application Security News, discussing concerns about WordPressโ€™ new โ€œWhite Screen of Deathโ€, Google Chrome changes could โ€˜destroyโ€™ ad-blockers, Mozilla is adding and ad-blocker to Firefox Focus 9.0, websites can steal browser data via extensions APIs, and a Fortnite security issue would have granted hackers access to accounts! In the second segment, Keith and Paul interview Jing Xie, Product Manager at Venafi, to talk about Static Analysis, Secure Code Signing, and more!!

ย 

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode48

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 30th 2019 at 10:00

Unraveled Networks - Paul's Security Weekly #593

By paul@securityweekly.com

This week, we welcome Chris Long, Security Engineer at Palantir for our Technical Segment to talk about DetectionLab, a collection of Vagrant and Packer scripts that allow you to automate the creation of networks! In the Security News, 5G networks must be secured from hackers and bad actors, Zero-Day vulnerability highlights the responsible disclosure dilemma, a flaw in multiple airline systems exposes passenger data, security bugs in video chat tools enable remote attackers, and an original World War II German message decrypts to go on display at the National Museum of Computing! In our final segment, we air a Pre Recorded interview with InfoSec World Speaker Connie Mastovich, the Sr. Security Compliance Analyst at Reclamere to talk about the Dark Web!

ย 

Full Show Notes: https://wiki.securityweekly.com/Episode593 Visit https://infosecworld.misti.com/ and use the registration code OS19-SECWEEK for 15% off the Main Conference or World Pass. Visit https://www.securityweekly.com/psw for all the latest episodes! To learn more about DetectionLab, visit: https://detectionlab.network

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter! Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly

  • February 9th 2019 at 10:00

Type of Insanity - Enterprise Security Weekly #125

By paul@securityweekly.com

This week, Paul and John interview Randall Trzeciak, the Director of the CERT Insider Threat Center at Carnegie Mellon University's Software Engineering Institute! Randall will also be speaking at InfoSec World 2019 about "An Effective Insider Threat Program" on Saturday, March 30th @ 9:00 am! In the Enterprise Security News, RSA Conference announces finalists for Innovation Sandbox Contest 2019, DigiCert announces all-in-one digital certificate management solution, Google's new Chrome extension warns you about stolen passwords, Signal Sciences raises 35$ Million to accelerate market expansion and tech innovation, and Palo Alto is in talks to buy Information Security firm Demisto!

ย 

Full Show Notes: https://wiki.securityweekly.com/ES_Episode125

Visit https://www.securityweekly.com/esw for all the latest episodes!

Follow us on Twitter: https://www.twitter.com/securityweekly

Visitย https://infosecworld.misti.com/ย and use the registration code OS19-SECWEEK for 15% off the Main Conference or World Pass!ย 

ย 

Like us on Facebook: https://www.facebook.com/secweekly

Visit http://securityweekly.com/esw for all the latest episodes!

  • February 8th 2019 at 20:13

Hack Naked News #206 - February 5, 2019

By paul@securityweekly.com

This week, roughly 500,000 Ubiquiti devices may be affected by a flaw already exploited in the wild, Outlaw Shellbot infects Linux servers to mine for Monero, Apple's Siri shortcuts feature vulnerable to abuse, Google's new Chrome extension warns you about stolen passwords, and Google patches critical .png image bug! David Pearson from Awake Security joins us for expert commentary on recent news around Japan performing an IoT pentest on their public IPs!

ย 

To learn more about Awake Security, visit: https://securityweekly.com/awake

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode206

ย 

Visit https://www.securityweekly.com/hnn for all the latest episodes!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 6th 2019 at 23:14

The Golden Generation - Application Security Weekly #49

By paul@securityweekly.com

This week, Keith and Paul discuss the current state of privacy and software development! They discuss how Facebook pays teens to install VPN that spies on them, how Apple blocks Facebook from running its internal iOS apps, and more! In the Application Security News, Three UK customer details exposed in homepage blunder, Microsoft cloud services see global authentication outage, the age of surveillance capitalism, the rise of DevXOps, and much more!

ย 

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode49

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 6th 2019 at 22:00

Always Interesting - Business Security Weekly #116

By paul@securityweekly.com

This week, we welcome David Kennedy, Founder and CEO at TrustedSec, to discuss why it's important to be investing in the right technology and resources! In our second segment, we welcome Sandra Toms, Vice President and Curator, and Britta Glade, Director of Content and Curation from RSA Conference, to preview what's new at RSA Conference 2019!

ย 

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode116

To learn more about TrustedSec, visit: https://www.securityweekly.com/trustedsec

Go to https://rsaconference.com/securityweekly-us19 to register now using the discount code 5U9SWFD to receive $100 off a full conference pass!

ย 

Visit https://www.securityweekly.com/bsw for all the latest episodes!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 5th 2019 at 10:00

Brazilian Killer Bees - Paul's Security Weekly #592

By paul@securityweekly.com

This week, we welcome Benjamin Daniel Mussler, Senior Security Researcher at Acunetix to talk about Web App Scanning with Authentication! In our second segment, the Security Weekly hosts will discuss the Future of Security, such as major changes, evolving threats, and security culture! In the Security News, 5 tips for access control from an ethical hacker, Japan is to hunt down citizens insecure IoT devices, kid tracking watches allow attackers to monitor real time location data, and Imperva mitigated a DDoS attack that generated 500 million packets per second!

ย 

Full Show Notes: https://wiki.securityweekly.com/Episode592

Visit https://www.securityweekly.com/psw for all the latest episodes!

To learn more about Acunetix, visit: https://www.acunetix.com/securityweekly/

ย 

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 2nd 2019 at 10:00

Techniques & Capabilities - Business Security Weekly #115

By paul@securityweekly.com

This week, Matt and Paul interview Shreyans Mehta, Chief Technology Officer at Cequence Security to talk about Advanced Bot Protection! In the Leadership and Communications segment, Cybersecurity isn't just for tech people anymore, The Weird Approach to leadership, 4 things to do before a tough conversation, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode115

Visit https://www.securityweekly.com/bsw for all the latest episodes!

To find out more about Cequence Security visit: https://securityweekly.com/cequence

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • February 1st 2019 at 17:00

We're Getting Old - Enterprise Security Weekly #124

By paul@securityweekly.com

This week, I am joined by Matt Alderman and John Strand to interview Andrew Peterson, Founder and CEO of Signal Sciences, to talk about prioritizing bugs, functionality, and security fixes! In the Enterprise Security News, we will discuss how Cynets Platform approach tames cyber security issues, Salt Security launches API protection platform, Yubicos 2019 state of password and authentication security report, and we have some acquisition and funding updates from ReSec, Medigate, Cato Networks, Sophos, and DarkBytes!

ย 

Full Show Notes: https://wiki.securityweekly.com/ES_Episode124

Visit https://www.securityweekly.com/esw for all the latest episodes!

If you want to learn more about Signal Sciences, visit: https://www.signalsciences.com/psw

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 31st 2019 at 23:00

Hack Naked News #205 - January 29, 2019

By paul@securityweekly.com

This week, a tool that finds vulnerable robots on the Internet, a new exploit that threatens over 9,000 Cisco routers, apple turns of group FaceTime after an eavesdropping bug, wordpress sites under attack via Zero-Day in abandoned plugin, and OpenBMC caught with 'pantsdown' over a new security flaw! Jason Wood from Paladin Security joins us for expert commentary on Abusing Exchange: One API call away from Domain Admin!

ย 

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode205

Visit https://www.securityweekly.com/hnn for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 29th 2019 at 21:01

Grim In Your Weep Hole - Paul's Security Weekly #591

By paul@securityweekly.com

This week, we welcome Chris Morales, the Head of Security Analytics at Vectra for an interview to talk about Machine Learning! In our second segment, the Security Weekly hosts talks about some of our favorite hacker movies, influencers in the community, and what software and devices make appearances in our labs! In the Security News, cellular carriers are implementing services to identify cell scam leveraging, new Android malware uses motion sensor to avoid detection, Linux malware disables security software to mine cryptocurrency, and how a hacker threatened a family using a Nest camera to broadcast a fake missile attack alert!

ย 

Full Show Notes: https://wiki.securityweekly.com/Episode591

Visit https://www.securityweekly.com/psw for all the latest episodes!

ย 

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 26th 2019 at 10:00

Core Dump - Enterprise Security Weekly #123

By paul@securityweekly.com

This week, I am joined by Jeff Man for the Enterprise News, to talk about Ping Identity offering advanced API cyber protection, AppDynamics keeps expanding monitoring vision, eSentire announces managed endpoint defense powered by Carbon Black, and Juniper Networks signs a deal with IBMs! In the Technical Segment, we will discuss some Open-Source and Free Collaboration Security Tools for Project Planning, Ticketing Systems, Remote System Monitoring, RSS feeds, and Documentation!

ย 

Full Show Notes: https://wiki.securityweekly.com/ES_Episode123

Visit https://www.securityweekly.com/esw for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 25th 2019 at 23:00

Different Checkpoints - Application Security Weekly #47

By paul@securityweekly.com

This week on Application Security Weekly, Matt Alderman takes the reigns and is joined by Co-Host James Wickett, who is the Head of Research at Signal Sciences! They talk about the human element of application security training and testing! In the Application Security News, Oracle patches 284 vulnerabilities, a bug in Twitter Android app exposed protected tweets, four tips for better API Security in 2019, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode47

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 23rd 2019 at 22:00

Hack Naked News #204 - January 22, 2019

By paul@securityweekly.com

This week, a flaw in MySQL could allow rogue servers to steal files, a state agency exposes 3TB of data including FBI info, how cybercriminals clean their dirty money, a critical RCE flaw in Linux APT allows remote attackers to hack systems, and how to protect against a new breed of cyber attack! Jason Wood from Paladin Security joins us for expert commentary on how attackers used a LinkedIn job ad and Skype call to breach a bank's defense!

ย 

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode204

Visit https://www.securityweekly.com/hnn for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 23rd 2019 at 20:06

Become An Expert - Business Security Weekly #114

By paul@securityweekly.com

This week, Matt and Paul interview Zane Lackey, Co-Founder and Chief Security Officer at Signal Sciences! In the Leadership and Communications segment, customer surveys are no substitute for actually talking to customers, CEOs most concerned about Cybersecurity in 2019, the open workspace, doesn't work, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode114

Visit https://www.securityweekly.com/bsw for all the latest episodes!

For more information about Signal Sciences, visit:ย https://www.signalsciences.com/psw

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 22nd 2019 at 23:00

Hellfire Dong Slinger - Paul's Security Weekly #590

By paul@securityweekly.com

This week, we welcome Dr. Eric Cole, the Founder and CEO of Secure Anchor Consulting for an interview! In the Technical segment, our very own Joff Thyer will be demonstrating some syntax with PowerShell useful for transferring data into a network while pen testing! In the Security News, two code execution flaws patched in Drupal, 773 million records exposed in massive data breach, prices for Zero-Day Exploits are rising, new attacks target recent PHP Framework Vulnerability, Microsoft launches a new Azure DevOps Bug Bounty program, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/Episode590

Visit https://www.securityweekly.com/psw for all the latest episodes!

For more information about Black Hills Information Security, visit:ย securityweekly.com/bhis

ย 

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 19th 2019 at 10:00

Too Many Logins - Enterprise Security Weekly #122

By paul@securityweekly.com

This week, Paul is joined by Matt Alderman to discuss some mergers, acquisitions, and partnerships, such as TokenEx partnering with SureCloud, Check Point acquires ForceNock, Zix agrees to acquire AppRiver for $275 million, and more! In this second segment, they discuss some security product launches and announcements from Trustwave, NopSec, ConnectGuard, Pulse Secure, Synopsys, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/ES_Episode122

Visit https://www.securityweekly.com/esw for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 17th 2019 at 18:52

The Wind Beneath My Wings - Application Security Weekly #46

By paul@securityweekly.com

This week, Keith and Paul interview Rey Bango, Security Advocate for Microsoft! Rey is focused on helping the community build secure systems & being a voice for researchers within MS! In the Application Security News, Another server security lapse at NASA exposed staff and project data, CRLF Injection Into PHPโ€™s cURL Options, System Down: A systemd-journald exploit, GitHub now gives free users unlimited private repositories, Twitter is broken, Government shutdown: TLS certificates not renewed, many websites are down, and much more!

ย 

Full Show Notes: https://wiki.securityweekly.com/ASW_Episode46

Visit https://www.securityweekly.com/asw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 16th 2019 at 19:46

Black Hat Arsenal Asia 2019 Lineup Announced

By NJ Ouchn
The Black Hat Arsenal event is back to Singapore after a successful session in London. In case you are attending the Blackhat Asia 2019, do not forget to stop by the Arsenal because we have selected...

[[ This is a content summary only. Visit my website for full links, other content, and more! ]]

Hack Naked News #203 - January 15, 2019

By paul@securityweekly.com

This week, US Government shutdown leaves dozens of .gov sites vulnerable, Firefox 69 to disable Adobe Flash, an unpatched vCard flaw could leave your PCs open to attackers, Tesla's contest Pwn2Own could win you a Model 3, and how building site cranes are easier to hack than garage door openers! Jason Wood from Paladin Security joins us for expert commentary on how the Boston Hospital Attacker was sentenced to 10 years in prison, and more on this episode of Hack Naked News!

ย 

Full Show Notes: https://wiki.securityweekly.com/HNNEpisode203

Visit https://www.securityweekly.com/hnn for all the latest episodes!

ย 

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 15th 2019 at 20:57

The Big Storm - Business Security Weekly #113

By paul@securityweekly.com

This week, Matt and Paul introduce a new quarterly segment to review the money of security, including public companies, IPOs, funding rounds, and acquisitions from the previous quarter! We've also created our own index to track public security companies called the Security Weekly 25, so let's understand how the security market is doing! In the Leadership Articles, Matt and Paul discuss how to be present, manage time, and avoid distractions, why your gut instinct is usually wrong, the 5 most efficient ways to get your work done, the creative difference between multitasking and multi-focus, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/BSWEpisode113

Visit https://www.securityweekly.com/bsw for all the latest episodes!

ย 

Visit our website: https://www.securityweekly.com

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 15th 2019 at 16:36

Pure Speculation - Paul's Security Weekly #589

By paul@securityweekly.com

This week, we welcome Bryson Bort, the Founder and CEO of SCYTHE to talk about Attack Simulation! In the Technical Segment, Kory Findley will be presenting a tool he created entitled โ€œpktreconโ€, for internal network segment reconnaissance using broadcast and service discovery protocol traffic! In the Security News, why Hyatt Is launching a public bug bounty program, Amazon Key partners with myQ, web vulnerabilities up, IoT flaws down, enterprise iPhones will soon be able to use security dongles, how El Chapo's IT manager cracked his encrypted chats and brought him down, and more!

ย 

Full Show Notes: https://wiki.securityweekly.com/Episode589

Visit https://www.securityweekly.com/psw for all the latest episodes!

For more information about SCYTHE, visit:ย https://www.scythe.io/securityweekly

ย 

Visit https://securityweekly.com/acm to sign up for a demo or buy our AI Hunter!

Follow us on Twitter: https://www.twitter.com/securityweekly

Like us on Facebook: https://www.facebook.com/secweekly

  • January 12th 2019 at 10:00
โŒ