Podcast: Is Defense-In-Depth The Only Real Heartbleed Fix? episode artwork

EPISODE · May 30, 2014

Podcast: Is Defense-In-Depth The Only Real Heartbleed Fix?

from Patching – The Security Ledger with Paul F. Roberts

Like everyone else, we wrote extensively in the last month about the serious security vulnerability in OpenSSL dubbed “Heartbleed,” which affected many of the world’s leading web sites and services, including Facebook and Google. The large-type headlines about Heartbleed have passed. But that doesn’t mean that the danger has. As we have noted,  we are entering a phase that might be considered Heartbleed’s ‘long tail.’ Most of the well-trafficked websites that were vulnerable to Heartbleed have gotten around to fixing the vulnerability. But public-facing web servers are only the beginning of the story for OpenSSL. Chasing down the vulnerability’s long tail in third-party applications and on internal web sites and applications is a much larger task. As I’ve noted: open source components make their way into all manner of applications and bespoke products these days, often without any effort to assess the security of the borrowed code. For companies that need to protect critical IT […] The post Podcast: Is Defense-In-Depth The Only Real Heartbleed Fix? appeared first on The Security Ledger with Paul F. Roberts.

NOW PLAYING

Podcast: Is Defense-In-Depth The Only Real Heartbleed Fix?

0:00 0:00

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Frequently Asked Questions

How long is this episode of Patching – The Security Ledger with Paul F. Roberts?

Episode duration information is not available.

When was this Patching – The Security Ledger with Paul F. Roberts episode published?

This episode was published on May 30, 2014.

What is this episode about?

Like everyone else, we wrote extensively in the last month about the serious security vulnerability in OpenSSL dubbed “Heartbleed,” which affected many of the world’s leading web sites and services, including Facebook and Google. The large-type...

Can I download this Patching – The Security Ledger with Paul F. Roberts episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!