How do you find credit card numbers that have slipped out of the Cardholder Data Environment? Joshua Marpet and Scott Lyons show you how in this week’s tech segment! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode494#Technical_Segment:_Rudolph_the_Credit_Card-Swiping_Reindeer.2C_Joshua_Marpet_and_Scott_Lyons_-_7:00PM-7:30PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on ...
Dec 25, 2016•24 min
Munin is a professional blue-team consultant from Southern California who spends his days providing technical support to defensive security operations folks, finding a way to turn paranoia into money. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode494#Interview:_Eric_.22Munin.22_Rand.2C_Brown_Hat_Security_-_6:00PM-7:00PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twi...
Dec 24, 2016•58 min
Austalia's tax office loses a petabyte (yes, a petabyte) of data, why it's time for organizations to start automating security, and could the news be any worse for Yahoo? All that and more in this week's security news! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode493#Security_News_-_7:30PM-8:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: ht...
Dec 18, 2016•39 min
Paul has been known by many as an Apple fanboy for a long time. What convinced him to ditch his Macbook for a Linux laptop? Find out in this week's tech segment! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode493#Technical_Segment:_I_Made_The_Switch_To_A_Linux_Laptop_-_7:00PM-7:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securitywee...
Dec 17, 2016•28 min
Dave is the Founder of Voodoo Security, a company that provides information security consulting services to clients, specializing in virtualization and cloud security. Dave also serves as a Senior Instructor at the SANS Institute. Paul, Jeff, and Carlos go in-depth with Dave about cloud security in this episode of Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode493#Interview:_Dave_Shackleford.2C_Voodoo_Security.2FSANS_-_6:00-7:00PM Take the Security W Subsc...
Dec 16, 2016•49 min
Old Linux and BSD code is vulnerable, your worst fears about IoT security are probably true, SSL-protected web sites, security for small businesses, and the hacking doomsday. All that and more in this week’s security news! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode492#Security_News_-_7:30PM-8:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website...
Dec 11, 2016•47 min
Ofri leads the Detection Development group at GuardiCore, which is responsible for security research, detection, and development of data analysis algorithms. Ofri educates us on the Oracle of Delphi, the PhotoMiner worm, Infection Monkey, and more here on Paul’s Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode492#Technical_Segment:_Ofri_Ziv.2C_Detection_Development_team_at_GuardiCore_-_7:00PM-7:30PM Take the Security Weekly Survey: www.securityweekly.com/su...
Dec 10, 2016•21 min
Ferruh is certainly no stranger to the show! Paul, Larry, and Joff chat with Ferruh about web applications, mobile security, and updates on his journey at Netsparker on Paul’s Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode492#Interview:_Ferruh_Mavituna.2C_Netsparker_-_6:00-7:00PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: htt...
Dec 09, 2016•43 min
A new Mirai worm knocks almost a million Germans offline, time is running out for NTP, the propaganda about Russian propaganda, and who hacked the lights in Ukraine? All that and more in this week’s security news! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode491#Security_News_-_7:30PM-8:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://...
Dec 04, 2016•1 hr 4 min
Jimmy is the chapter leader of OWASP Santa Barbara and co-organizer of the AppSec California security conference. He has spent time on both the offense and defense side of the industry. Jimmy briefs us on how to “containerize” a security operations center and the differences between Kubernetes and Docker. Find out more here on Paul’s Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode491#Technical_Segment:_Jimmy_Mesta.2C_Containerizing_your_Security_Operations...
Dec 03, 2016•33 min
Two ThreatConnect personnel join us: John currently serves as a Threat Intelligence Research Analyst, while Alex is the Senior Threat Intelligence Research Engineer. They discuss their experience in the security field and the ThreatConnect platform and research teams. Hear their story here on Paul’s Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode491#Interview:_John_Hurd_and_Alex_Valdivia.2C_ThreatConnect_-_6:00-7:00PM Take the Security Weekly Survey: Subsc...
Dec 02, 2016•37 min
Experts encourage congress to act on IoT security, wifi can imprint passwords on pins on radio signals, major Russian banks are hacked with powerful IoT devices focused Botnets, meet poison tap and much more, here on Security News! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode490#Security_News_-_7:30PM-8:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekl...
Nov 20, 2016•59 min
Alex Horan and Sebastian Bortnik will be discuss what Onapsis has updated in their company and software in the year. They discuss the trends they've seen in the past year (DHS CERT, SANS SAP report). Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode490#Technical_Segment:_Alex_Horan.2C_Onapsis_-_7:00PM-7:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Web...
Nov 19, 2016•36 min
Jen Ellis is the VP Community & Public Affairs at Rapid 7 and Harley Geiger is the Director of Public Policy at Rapid 7. Jen Ellis wors with security researchers & policy makers to improve public safety. Harley is an attorney and public affairs professional with experience in non-profit, government, and corporate settings. Check out more about these two illustrious guests, here on Paul's Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode490#Interview:...
Nov 18, 2016•48 min
Regulation of the Internet of Things, Packet Capture Options, Hackers hijack Philips Hue lights with a drone, Facebook buys black market passwords for user account safety, and much more here on Paul's Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode489#Security_News_-_7:30PM-8:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: htt...
Nov 13, 2016•55 min
A design weakness has been exposed that can allow an attacker to easily bypass 2FA and access an organization’s email inboxes, calendars, contacts and more. See more at: Outlook Web Access Two-Factor Authentication Bypass Exists https://wp.me/p3AjUX-vG9 Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode489#Technical_Segment:_Outlook_Web_Access_Two-Factor_Authentication_Bypass_-_7:00PM-7:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube C...
Nov 12, 2016•17 min
Greg Foss is LogRhythm’s Head of Global Security Operations, where he is tasked with leading both offensive and defensive aspects of corporate security. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode489#Interview:_Greg_Foss.2C_LogRhythm_-_6:00-7:00PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @s...
Nov 11, 2016•50 min
Can the election be affected by attackers on the internet, can IoT devices suffer anymore security vulnerabilities, Microsoft announces the end of life for EMET, and much more, here on Paul's Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode488#Security_News_-_7:30PM-8:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://secur...
Nov 06, 2016•50 min
Intel SGX is a newer method of implementing trusted computing. Jack and Paul talk about SGX and discuss its pros and cons. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode488#Technical_Segment:_Considerations_for_Using_Intel_SGX_-_7:00PM-7:30PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityw...
Nov 05, 2016•25 min
Over twenty years of experience in corporate leadership and management. Developed agile products, created solutions, integrated systems and deployed technologies for both external and internal client initiatives. Yours truly, David Koplovitz here on Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode488#Interview:_David_Koplovitz.2C_ProXPN_-_6:00-7:00PM Take the Security Weekly Survey: www.securityweekly.com/survey Subscribe to YouTube Channel: https://www.you...
Nov 04, 2016•37 min
Webcams used to attack Twitter and reddit will be recalled according to a Chinese manufacturer, a Windows 10 vulnerability called Atom Bombing, dirty cow, and much more here on Paul's Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode487#Security_News_-_7:30PM-8:30PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly...
Oct 30, 2016•46 min
Why signatures don’t really work for detection and about what folks should be thinking about instead. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode487#Technical_Segment:_Why_Signatures_Suck_with_Mark_Dufresne.2C_Endgame_-_7:00PM-7:30PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly
Oct 29, 2016•24 min
Chris Roberts is considered one of the world’s foremost experts on counter threat intelligence within the Information security industry. At Acalvio, Chris helps drive Technology Innovation and Product Leadership. All that and more, so stay tuned! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode487#Interview:_Chris_Roberts.2C_Acalvio_Technologies_-_6:00-7:00PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http...
Oct 28, 2016•47 min
Donald Trump is running an insecure email server, Mirai bots more than double since source code release, Skyping and typing has some issues, IoT needs to learn from your Mitre Saw, and much more! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode486#Security_News_-_7:30PM-8:30PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly...
Oct 23, 2016•40 min
XMLRPC for the win or not? How long should you re-mediate vulnerabilities found in penetration test reports? Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode486#Listener_Feedback:_Fixing_Pen_Test_Findings_and_XMLRPC-_7:00PM-7:30PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly
Oct 22, 2016•26 min
So do you really want to be a penetration tester? We get these questions all the time, and Adrien does too! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode486#Interview:_Adrien_de_Beaupr.C3.A9_-_.22So_You_Wanna_Be_A_Pen_Tester.3F.22-_6:00-7:00PM
Oct 21, 2016•36 min
Disappearing messages added to signal app, IoT devices as proxies for Cybercrime, nuclear power plant disrupted by cyber attack, and more, here on Security Weekly! Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode485#Security_News_-_7:30PM-8:30PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly
Oct 16, 2016•36 min
Scott Lyons is the V.P. of Business Development for WarCollar. Joshua Marpet is a well known Security Researcher and speaker. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode485#Interview:_Scott_Lyons_and_Joshua_Marpet_-_6:00-7:00PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly
Oct 15, 2016•1 hr 5 min
Questions from the Security Weekly listeners are answered during this segment. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode485#Listener_Feedback:_Drinking_From_The_InfoSec_Fire_Hose_-_7:00PM-7:30PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly
Oct 14, 2016•34 min
Cody Pierce from Endgame will be giving a 15 minute segment on Pre-exploit Preventing. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/Episode484#Tech_Segment:_Pre-exploit_Preventing_-_6:00PM-6:30PM Subscribe to YouTube Channel: https://www.youtube.com/channel/UCg--XBjJ50a9tUhTKXVPiqg Security Weekly Website: http://securityweekly.com Follow us on Twitter: @securityweekly
Oct 09, 2016•23 min