The Center for Education and Research in Information Assurance and Security (CERIAS)

The Center for Education and Research in
Information Assurance and Security (CERIAS)

Page Content

Serious About Security Podcast

The Serious about Security Podcast was brought to you by the Greater Lafayette Security Professionals (GLSP) group, Secure Purdue, and the Center for Education and Research in Information Assurance and Security (CERIAS) at Purdue University.

The views and opinions expressed in this podcast are those of the participants and do not reflect the views and opinions of Purdue University and The Center for Education and Research in Information Assurance and Security (CERIAS).

Subscribe: XML Feed Apple iTunes Podcast Page

Episodes

Episode 43: The NSA and FBI spy on everyone, maybe

Reports from The Guardian and the Washington Post indicate the NSA and the FBI are getting phone records and direct access to big Internet company data. We’re not sure though—it’s classified.

( More... )

Episode 42: Malicious chargers for iOS devices and Google wants quicker response on active exploits

Researchers have found a vulnerability in iOS devices that could allow malicious chargers to install malware. Google announces that critical vulnerabilities that are actively being exploited should be publicly disclosed (and hopefully fixed) within seven days.

( More... )

Episode 41: Twitter rolls out Two-Factor Authentication and Weapons Designs go to the Chinese

Twitter rolls out two-factor authentication security for accounts, but there are some issues. Attacks on defense contractors have resulted in the Chinese government getting access to U.S. weapons systems.

( More... )

Episode 40: Bloomberg News spied on Bloomberg Terminal subscribers and Google Glass privacy concerns

Reporters at Bloomberg News used Bloomberg Terminal subscriber information to find news stories. The U.S. Congress sent a letter to Google asking questions about privacy protections around Google Glass.

( More... )

Episode 39: A Massive ATM Hest and Tasty Honeywords

$45 million stolen in a massive ATM heist occurring simultaneously in 26 countries. Ron Rivest and Ari Juels describe a way to detect password cracking with Honeywords.

( More... )

Episode 38: Do you trust your Facebook Friends and does more data mean more security?

Facebook replaces Trusted Friends with Trusted Contacts. Do you have trustworthy friends though? Bruce Schneier says that connecting dots is more difficult than you might think.

( More... )

Episode 37: Verizon’s 2013 Data Breach Investigations Report Curiosities

Verizon releases its Data Breach Investigations Report for 2013. We look for interesting and curious findings.

( More... )

Episode 36: Malwarebytes update bites and Twitter hack causes brief market plunge

Malwarebytes released an update which classified legitimate Windows files as malicious and servers go down. The Associated Press Twitter account gets owned and a false tweet causes the stock market to plunge briefly.

( More... )

Episode 35: Feds Have Trouble Reading iMessages and Mozilla’s Persona Reaches Beta 2

A leaked memo from the Drug Enforcement Agency claims that reading Apple iMessages is difficult. Mozilla releases the second beta of Persona, an open and distributed identity management system.

( More... )

Episode 34b: We found a security guy with one Bitcoin

We invite Doug Couch to talk more about Bitcoin.

( More... )

Episode 34: Windows XP support will end one day and Bitcoin attracts attackers

Microsoft has announced the end of support for Windows XP after more than 12 years. Bitcoin values have risen to the point where attackers are now interested in it.

( More... )

Episode 33: DNS Amplified and Apple Two-Step Oops

When our DNS goes to 11, your site goes down. Apple stumbles in two-step.

( More... )

Episode 32: Krebs Gets SWAT’d and a Reuters Editor Helps Some Hackers

Brian Krebs of the wonderful Krebs on Security blog finds out that some people really don’t like him. A former Tribune Co. employees shares his credentials and some encouragement in the wrong way.

( More... )

Episode 31: Evernote and the National Vulnerability Database Get Hacked

Evernote makes everyone change their password. The National Vulnerability Database has a vulnerability and gets hacked. Irony ensues.

( More... )

Episode 30: Google Two-Step Verification Had a Hole and PWN2OWN Results!

Google’s Two-Step Verification had a hole in the way that application-specific passwords were used. CanSecWest’s PWN2OWN contest results are in.

( More... )

Episode 29: Chinese Army Attacks the US!

Is there a secretive Chinese Army unit attacking the U.S.? We look at the Mandiant APT1 report.

( More... )

Episode 28: Gmail Efforts to Reduce Spam and Social Engineer Your Way to Superbowl Glory!

The good folks at Gmail have taken meaningful step to reduce compromised accounts and SPAM. Two college kids talk their way into the Superbowl.

( More... )

Episode 27: Bypass the iPhone lock screen and Presidential Cybersecurity

The Apple iPhone lock screen can be bypassed to access some sensitive phone information using the emergency dialer and some fancy key sequencing. The President of the United States issues an executive order to improve critical infrastructure for cybersecurity.

( More... )

Episode 26: UPnP is vulnerable and Pre-emptive Cyberwar

Episode 25, February 1, 2013

Episode 24, January 25, 2013

Episode 23, January 7, 2013

Episode 22, December 18, 2012

Episode 21, November 27, 2012

Episode 20, November 13, 2012