Handler on Duty: Didier Stevens
Threat Level: green
Podcast Detail
Typo Squatting with a Twist; Safari still falls for POODLE; Serbian Natl. ID Database breached; Snor
If you are not able to play the podcast using the player below: Use this direct link to the audio file: https://chrt.fm/track/2748D7/https://traffic.libsyn.com/securitypodcast/4277.mp3
My Next Class
Application Security: Securing Web Apps, APIs, and Microservices | Washington | Dec 13th - Dec 18th 2024 |
Application Security: Securing Web Apps, APIs, and Microservices | Online | US Eastern | Jan 27th - Feb 1st 2025 |
Interested in Internet Storm Center stickers? Check here if there are still some available for today.
Typo Squatting with a Twist; Safari still falls for POODLE; Serbian Natl. ID Database breached; Snort 3.0 - where is the pig heading?
Interesting Phishing Attempts to Lure Users by asking them to call ISP
https://isc.sans.edu/forums/diary/Customized+Support+Scam+Supported+by+Typo+Squatting/19065
Safari 8.0.2 still supports SSLv3 with block ciphers
https://isc.sans.edu/forums/diary/Safari+8+0+2+Still+Supporting+SSLv3+with+Block+Ciphers/19067
Entire National ID Database of Serbia Stolen
http://securityaffairs.co/wordpress/31068/cyber-crime/serbia-hackers-stolen-national-database.html
Snort 3.0 Update
http://blog.snort.org/2014/12/introducing-snort-30.html
Government Backdoor can not be secured
http://www.latimes.com/opinion/op-ed/la-oe-1215-wyden-backdoor-for-cell-phones-20141215-story.html
10,000+ Wordpress Sites infected with SoakSoak
http://threatpost.com/google-blacklists-wordpress-sites-peddling-soaksoak-malware/109884
Interesting Phishing Attempts to Lure Users by asking them to call ISP
https://isc.sans.edu/forums/diary/Customized+Support+Scam+Supported+by+Typo+Squatting/19065
Safari 8.0.2 still supports SSLv3 with block ciphers
https://isc.sans.edu/forums/diary/Safari+8+0+2+Still+Supporting+SSLv3+with+Block+Ciphers/19067
Entire National ID Database of Serbia Stolen
http://securityaffairs.co/wordpress/31068/cyber-crime/serbia-hackers-stolen-national-database.html
Snort 3.0 Update
http://blog.snort.org/2014/12/introducing-snort-30.html
Government Backdoor can not be secured
http://www.latimes.com/opinion/op-ed/la-oe-1215-wyden-backdoor-for-cell-phones-20141215-story.html
10,000+ Wordpress Sites infected with SoakSoak
http://threatpost.com/google-blacklists-wordpress-sites-peddling-soaksoak-malware/109884
Discussion
New Discussions closed for all Podcasts older than two(2) weeks
Please send your comments to our Contact Form
Application Security: Securing Web Apps, APIs, and Microservices | Washington | Dec 13th - Dec 18th 2024 |
Application Security: Securing Web Apps, APIs, and Microservices | Online | US Eastern | Jan 27th - Feb 1st 2025 |
Network Monitoring and Threat Detection In-Depth | Baltimore | Mar 3rd - Mar 8th 2025 |
Application Security: Securing Web Apps, APIs, and Microservices | Orlando | Apr 13th - Apr 18th 2025 |