Podcast Detail

ISC StormCast for Friday, August 22nd 2014

If you are not able to play the podcast using the player below: Use this direct link to the audio file: https://traffic.libsyn.com/securitypodcast/4117.mp3

Podcast Logo
ISC StormCast for Friday, August 22nd 2014
00:00

My Next Class

Application Security: Securing Web Apps, APIs, and MicroservicesDallasDec 1st - Dec 6th 2025
Network Monitoring and Threat Detection In-DepthOnline | Central European TimeDec 15th - Dec 20th 2025

… more classes

#OpenIOC support for ISC API; Side Channels steal keys and screen content; More bad SSL news for Android apps; Fake Anti Virus as dead as real Anti Virus

ISC update: OpenIOC output for our API
https://isc.sans.edu/api

Side Channel Attacks via Shared Memory on Android
http://www.cs.ucr.edu/~zhiyunq/pub/sec14_android_activity_inference.pdf

Reading Encryption Keys from Surface Electric Potential Measurement
http://www.cs.tau.ac.il/~tromer/handsoff/

Mobile Applications use bad SSL Implementations
http://www.fireeye.com/blog/technical/2014/08/ssl-vulnerabilities-who-listens-when-android-applications-talk.html

Current State of Fake Anti Virus
http://blogs.technet.com/b/mmpc/archive/2014/08/19/the-fall-of-rogue-antivirus-software-brings-new-methods-to-light.aspx
Application Security: Securing Web Apps, APIs, and MicroservicesDallasDec 1st - Dec 6th 2025
Network Monitoring and Threat Detection In-DepthOnline | Central European TimeDec 15th - Dec 20th 2025
Application Security: Securing Web Apps, APIs, and MicroservicesOrlandoMar 29th - Apr 3rd 2026
Network Monitoring and Threat Detection In-DepthAmsterdamApr 20th - Apr 25th 2026
Application Security: Securing Web Apps, APIs, and MicroservicesSan DiegoMay 11th - May 16th 2026
Network Monitoring and Threat Detection In-DepthOnline | Arabian Standard TimeJun 20th - Jun 25th 2026
Network Monitoring and Threat Detection In-DepthRiyadhJun 20th - Jun 25th 2026
no transcript found