Handler on Duty: Didier Stevens
Threat Level: green
Podcast Detail
If you are not able to play the podcast using the player below: Use this direct link to the audio file: https://chrt.fm/track/2748D7/https://traffic.libsyn.com/securitypodcast/4007.mp3
My Next Class
Application Security: Securing Web Apps, APIs, and Microservices | Washington | Dec 13th - Dec 18th 2024 |
Application Security: Securing Web Apps, APIs, and Microservices | Online | US Eastern | Jan 27th - Feb 1st 2025 |
Interested in Internet Storm Center stickers? Check here if there are still some available for today.
If #OpenSSL doesn't get you, #GNUTLS will. Buffalo sending driver+malware and Huawei redoes old bugs.
--------
GNUTLS Vulnerability
http://radare.today/technical-analysis-of-the-gnutls-hello-vulnerability/
Buffalo Distributing Malware as Part of Driver Downloads in Japan
http://www.symantec.com/connect/blogs/bankeiya-malware-targets-users-japan-or-without-vulnerabilities
Google Releasing PGP End-to-End plugin for encrypted webmail
https://code.google.com/p/end-to-end/
Truecrypt Update
http://truecrypt.ch
Huawei Router Vulnerabilities (german only)
http://www.fhstp.ac.at/ueberuns/newsevents/news/kritische-sicherheitslucken-bei-router-modellen
Boston DEV522 July 28 - Aug 2nd
http://www.sans.org/event/boston-2014/course/defending-web-applications-security-essentials
--------
GNUTLS Vulnerability
http://radare.today/technical-analysis-of-the-gnutls-hello-vulnerability/
Buffalo Distributing Malware as Part of Driver Downloads in Japan
http://www.symantec.com/connect/blogs/bankeiya-malware-targets-users-japan-or-without-vulnerabilities
Google Releasing PGP End-to-End plugin for encrypted webmail
https://code.google.com/p/end-to-end/
Truecrypt Update
http://truecrypt.ch
Huawei Router Vulnerabilities (german only)
http://www.fhstp.ac.at/ueberuns/newsevents/news/kritische-sicherheitslucken-bei-router-modellen
Boston DEV522 July 28 - Aug 2nd
http://www.sans.org/event/boston-2014/course/defending-web-applications-security-essentials
Discussion
New Discussions closed for all Podcasts older than two(2) weeks
Please send your comments to our Contact Form
Application Security: Securing Web Apps, APIs, and Microservices | Washington | Dec 13th - Dec 18th 2024 |
Application Security: Securing Web Apps, APIs, and Microservices | Online | US Eastern | Jan 27th - Feb 1st 2025 |
Network Monitoring and Threat Detection In-Depth | Baltimore | Mar 3rd - Mar 8th 2025 |
Application Security: Securing Web Apps, APIs, and Microservices | Orlando | Apr 13th - Apr 18th 2025 |