Podcast Detail

POODLE bites again; Kaspersky Security causes Insecure SSL; HP Reveals IE 0-day; Interesting Faceboo

If you are not able to play the podcast using the player below: Use this direct link to the audio file: https://traffic.libsyn.com/securitypodcast/4267.mp3

Podcast Logo
ISC StormCast for Tuesday, December 9th 2014
00:00

My Next Class

Application Security: Securing Web Apps, APIs, and MicroservicesDallasDec 1st - Dec 6th 2025
Network Monitoring and Threat Detection In-DepthOnline | Central European TimeDec 15th - Dec 20th 2025

… more classes

POODLE bites again; Kaspersky Security causes Insecure SSL; HP Reveals IE 0-day; Interesting Facebook File Upload Vuln.

POODLE Attack may affect some TLS implementations, not just SSLv3
https://www.imperialviolet.org/2014/12/08/poodleagain.html

Kaspersky Internet Security Software Uses SSLv3 (Article in German)
http://www.heise.de/newsticker/meldung/Kaspersky-Schutzsoftware-senkt-Sicherheit-von-SSL-Verbindungen-2482344.html

HP Reveals IE 0-Day Vulnerability ahead of Patch Tuesday
http://zerodayinitiative.com/advisories/ZDI-14-403/

Facebook File Upload Vulnerability
http://josipfranjkovic.blogspot.com/2014/12/reading-local-files-from-facebooks.html
Application Security: Securing Web Apps, APIs, and MicroservicesDallasDec 1st - Dec 6th 2025
Network Monitoring and Threat Detection In-DepthOnline | Central European TimeDec 15th - Dec 20th 2025
Application Security: Securing Web Apps, APIs, and MicroservicesOrlandoMar 29th - Apr 3rd 2026
Network Monitoring and Threat Detection In-DepthAmsterdamApr 20th - Apr 25th 2026
Application Security: Securing Web Apps, APIs, and MicroservicesSan DiegoMay 11th - May 16th 2026
Network Monitoring and Threat Detection In-DepthOnline | Arabian Standard TimeJun 20th - Jun 25th 2026
Network Monitoring and Threat Detection In-DepthRiyadhJun 20th - Jun 25th 2026
no transcript found