
No CVE and No Accountability - Ed Skoudis - PSW #851
14 November 2024 - 2 hours 43 minsAlright, so we dove deep into some pretty wild stuff this week. We started off talking about zip files inside zip files. This is a variation of old-school zip file tricks, and the latest method described here is still causing headaches for antivirus software. Then we geeked out about infrared signals and the Flipper Zero, which brought back memories of the TV-B-Gone. But the real kicker was our discussion on end-of-life software and the whole CVE numbering authority mess. Avanti's refusal to issue a CVE for their end-of-life product sparked a heated debate about cybersecurity accountability and conflicts of interest.
Ed Skoudis joins us to announce this year's Holiday Hack Challenge!
Seg...

Pipes, Thorium, Excel, ATM Hillbilly Cannibal Attack, Lambdas, AIs, Aaran Leyland - SWN #499
35 mins
1 August Finished

Aligning Security Objectives, Ditch the Ego, Lead for Real and Succeed - BSW #406
29 mins
30 July Finished

Popup Porn, LoveSense, Tea, Fire Ant, Scatterede Spider, AI Pricing, Josh Marpet... - SWN #498
31 mins
29 July Finished

How Product-Led Security Leads to Paved Roads - Julia Knecht - ASW #341
1 hour 4 mins
29 July Finished

tj-actions Lessons Learned, US Cyber Offense, this week's enterprise security news - Dimitri Stiliadis - ESW #417
1 hour 42 mins
28 July Finished