What is the Anatomy of an Attack event?
This podcast outlines what to expect if you attend one of our Anatomy of an Attack seminars. Chester Wisniewski and John Shier explain the content presented and what attendees should expect to take away.

This podcast outlines what to expect if you attend one of our Anatomy of an Attack seminars. Chester Wisniewski and John Shier explain the content presented and what attendees should expect to take away.
Chester talks to Paul Ducklin about HP Printers on the open internet, Java, precision versus accuracy and PWN2OWN and Pwnium 3 contests.
In this 100th episode of the Chet Chat, Duck and Chester discuss the bizarre story of John McAfee, OS X malware, Switzerland losing intelligence data, NASA laptops and Romanian carders.
Michael Argast rejoined Chet this Halloween to catch up on the week's news including new DMCA exceptions, Hurricane Sandy scams, Yahoo! ignoring do not track, Barnes and Noble credit cards skimming and Facebook's donation to spam research.
This week Paul Ducklin is in the guest seat as he and Chester discuss Patch Tuesday, weak RSA certificates, losing $250,000 worth of bitcoins, Do Not Track, Blackhole exploit kit and the Nitol botnet takedown.
Peter Szabo from SophosLabs joins Chet to chat about 4 more talks from this year's Black Hat and DEF CON conferences. Topics include MSCHAPv2, Frack, smart meters and hacking public transit.
Java brings with it some significant risks, yet for many people, it's "just there on my computer." In this episode, Duck and Chet tell you All about Java, and help you to make an informed decision in balancing its risks and rewards at work and at home.
Peter Szabo, a senior threat researcher with SophosLabs, joins Chet this week to to share what they learned at this year's Black Hat and DEF CON conferences. They discuss NFC, a file disinfection framework, steganography and the dangers of IPv6 and DNSSEC.
To many of us, SSL isn't much more than "the padlock in the browser." But how does it work? Who verifies SSL certificates? How do we know we can trust them? What happens if we realize we can't? Duck and Chet discuss all this, and more, in this episode of the Techknow podcast.
Paul Ducklin joins Chet this week to discuss the quarterly Oracle patches, the theft of a USB stick belonging to Elections Ontario, the bypass of in-app purchases from the App Store and how WiFi hackers stole $3 million.
Do you really need seven committee meetings and a 90 day waiting period before you update your computers with the latest patches? Duck and Chet take on the challenges of security patches in this episode of the TechKnow podcast.
Paul Ducklin joins Chet once again to discuss the latest security news. This week's topics include DNS Changer, Patch Tuesday, Find and Call, San Diego's fireworks fiasco and password breaches.
Michael Argast joins Chet once again to discuss Flame, LinkedIn, warrantless wiretapping, Patch Tuesday, border patrol spying and Microsoft's BlueHat prize.
Michael Argast from Telus joined Chet once again to discuss the week's news. Topics covered include Flame malware, Do Not Track, TACK, Conficker and Sophos Mobile Security for Android.
This week's Chet Chat returns to our usual news format this week with guest Gary Korhonen (@hundredaire). Gary and Chet discuss the Utah data breach, Facebook hacker's prison term, OS X Leopard's FlashBack removal tool, Pentagon data sharing and Operation Phish Phry sentencing.
This week's Chet Chat comes to you live from the show floor at Interop 2012. John Shier and Chet Wisniewski have some fun and share highlights from the expo hall.
Chester Wisniewski and Chris Pace walk around the exhibition hall at this year's InfoSec Europe and share their insights on trends and some fantastic giveaways some vendors thought might grab your attention.
Chester Wisniewski and Paul Ducklin chat about the security issues surrounding Apple's new iTunes security, knowledge-based authentication, Mac malware and Google's fine from the FCC.
David Schwartzberg is this week's guest on the Chet Chat to talk about the data breach at Global Payments, a new Mac botnet and Flash Player updating. David also explained the new AES-NI encryption acceleration in Intel chips and a new way to safely store files in the cloud.
Paul Ducklin is this week's guest on the Chet Chat. Chet and Paul discuss an attempted DDoS of an election in Canada, the knock-on effects of the DNS Changer malware, Facebook's new Data Usage Policy and the risks of outsourcing.
In this week's episode John Shier joins Chet to discuss the review of electronic device usage on airplanes by the FAA, the arrests of the Carberp malware authors, the worm danger from the MS12-020 RDP vulnerability and whether the time has come for encrypting more than just laptops and USB drives.
In this new podcast series Paul Ducklin and Chester Wisniewski take a more in-depth look at a single topic, exploring the ins and outs to help listeners understand complex topics. In this episode - Busting Password Myths, Paul and Chester take a look at the thorny issue of password rules and regulations.
Chet and Duck say goodbye to San Francisco, thank their fellow bloggers for Naked Security winning the Best Corporate Security Blog, discuss their favorite stand and talk a bit about how "big data" plays with security.
RSA special Chet Chat sharing Chester's and Duck's first impressions of the first day of the RSA 2012 conference in San Francisco.
Paul Ducklin hosts this week's Chet Chat with the tables turned... Chet is the guest. They discussed the recent Google cookie-gate incident, House Intelligence Committee advice on using laptops while travelling and the malicious emails sent to leaked Stratfor subscriber email addresses.
This week's Chet Chat finds Paul Ducklin and Chester Wisniewski discussing the vulnerabilities patched this Tuesday in Microsoft, Adobe and Oracle products, mobile phone application privacy issues and upcoming events RSA and Anatomy of an Attack in Portland, OR and Wellington, NZ.
Paul Baccas is interviewed by Chester Wisniewski on his paper A time-based analysis of Rich Text Format manipulations. Paul explains how the focus is often on zero-day exploits even though flaws like CVE 2010-3333 have been patched for over a year and are still resulting in successful compromise.
This week, Paul Ducklin joins Chet to talk about the Sophos Security Threat Report 2012, the new anti-phishing proposal known as DMARC and mobile phone numbers being leaked through HTTP headers at O2.
Chet sits down with Michael Kaiser, Executive Director at the National Cyber Security Alliance (NCSA) to discuss Data Privacy Day. Michael explains the origin of Data Privacy Day, some of the activities related to it and how people can participate in raising awareness about privacy and data security.
In this week's podcast, Vanja Svajcer joins Chet to talk about the mobile security landscape. Topics discussed include mobile malware, theft, application markets and advice on securing your smartphone.