DtSR Episode 175 - NewsCast for January 5th 2016 episode artwork

EPISODE · Jan 5, 2016 · 52 MIN

DtSR Episode 175 - NewsCast for January 5th 2016

from Down the Security Rabbithole Podcast (DtSR)

In this episode... Juniper has a backdoor problem2 separate issues, auth bypass & VPN weaknessbackdoor discovered in Juniper deviceslots of speculation on who put it there, but it was meant to be disguised as ‘debug code’enterprise implications - same as before (what's the bigger picture?)https://isc.sans.edu/forums/diary/Infocon+Yellow+Juniper+Backdoor+CVE20157755+and+CVE20157756/20521/Iranians broke into New York dam in 2013 and “had a look around”no direct damage doneUS has largest number of ICS connected to Internetcritical infrastructure is vulnerable, being probedthis is not a ‘government problem’ - every company has some ICS on their networkhttp://www.theregister.co.uk/2015/12/21/iranian_hackers_target_new_york_dam/ Facebook announced it’s dumping Adobe Flashis this a bigger deal than it sounds likeHTML5 has its own vulnerabilities and issues though… right?*only* for videos, games still in FlashFacebook will work with Adobe (really?) to improve security of Flashhttp://www.scmagazine.com/facebook-ditches-flash-videos-to-boost-security/article/461040/ 191 Million US voter records found ‘unprotected’ by a researcherguy from Texas found the data on an unprotected database“Vickery told Databreaches.net he was able to poke around the public-internet-facing database because it is poorly configured: no authentication or password is required to query all 300-plus gigabytes stored within.” ← What the hell?legailty and ethics … again … but that aside is this REALLY an issue?same person who discovered Hello Kitty leak.. interesting.http://www.csoonline.com/article/3017171/security/database-leak-exposes-3-3-million-hello-kitty-fans.htmlHave something to say? Let's hear it.Support the show>>> Please consider clicking the link above to support the show!-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHqLinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/X/Twitter: https://twitter.com/dtsr_podcast

Episode metadata supplied by the publisher feed · Published Jan 5, 2016

Embed this episode

In this episode... Juniper has a backdoor problem 2 separate issues, auth bypass & VPN weaknessbackdoor discovered in Juniper deviceslots of speculation on who put it there, but it was meant to be disguised as ‘debug code’enterprise implications - same as before (what's the bigger picture?)https://isc.sans.edu/forums/diary/Infocon+Yellow+Juniper+Backdoor+CVE20157755+and+CVE20157756/20521/Iranians broke into New York dam in 2013 and “had a look around” no direct damage doneUS has la...

Distinct summary based on available episode metadata or transcript content.

NOW PLAYING

DtSR Episode 175 - NewsCast for January 5th 2016

0:00 52:46

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Down the Security Rabbithole Podcast (DtSR)?

This episode is 52 minutes long.

When was this Down the Security Rabbithole Podcast (DtSR) episode published?

This episode was published on January 5, 2016.

Can I download this Down the Security Rabbithole Podcast (DtSR) episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!