Podcast
SSCC 97 - Black Hat and DEF CON review, broken crypto, Frak, smart meters and hacking transit
Peter Szabo from SophosLabs joins Chet to chat about 4 more talks from this year's Black Hat and DEF CON conferences. Topics include MS-CHAPv2, Frak, smart meters and hacking public transit.
Sophos Techknow - All about Java
Java brings with it some significant risks, yet for many people, it's "just there on my computer."
In this episode, Duck and Chet tell you All about Java, and help you to make an informed decision in balancing its risks and rewards at work and at home.
SSCC 96 - NFC hacking, audio steganography, IPv6 security and automated malware analysis
Peter Szabo, a senior threat researcher with SophosLabs, joins Chet this week to to share what they learned at this year's Black Hat and DEF CON conferences. They discuss NFC, a file disinfection framework, steganography and the dangers of IPv6 and DNSSEC.
Sophos Techknow - Understanding SSL
To many of us, SSL isn't much more than "the padlock in the browser." But how does it work? Who verifies SSL certificates? How do we know we can trust them? What happens if we realise we can't?
Duck and Chet discuss all this, and more, in this episode of the Techknow podcast.
SSCC 95 - Oracle patches, lost USB sticks, App Store shenanigans and WiFi heists
Chet and Duck take on the week's news once again in their inimitable and informative style.
You'll be glad to hear that there are several "good news" stories this week - data that didn't leak, malware that didn't infect, and cybercriminals who didn't get away with it!
Sophos Techknow - Patching: should you lead, follow, or get out of the way?
Do you really need seven committee meetings and a 90-day waiting period before you update your computers with the latest patches?
Duck and Chet take on the challenges of security patches in this episode of the Techknow podcast.
SSCC 94 - internet meltdown, Microsoft's XML exploit patch, malware in the App Store, "a virus ate my homework" and password thefts galore
Paul Ducklin joins Chet once again to discuss the latest security news. This week's topics include DNS Changer, Patch Tuesday, Find and Call, San Diego's fireworks fiasco and password breaches
SSCC 93 - Flame, LinkedIn, FISA, Patch Tuesday, border snooping and the BlueHat prize
Michael Argast joins Chet once again to discuss Flame, LinkedIn, warrantless wiretapping, Patch Tuesday, border patrol spying and Microsoft's BlueHat prize.
SSCC 92 - Flame, Do Not Track, TACK, Conficker and Android security
Michael Argast from Telus joined Chet once again to discuss the week's news. Topics covered include Flame malware, Do Not Track, TACK, Conficker and Sophos Mobile Security for Android.
SSCC 91 - Utah explains data breach, Facebook hacker jailed, FlashBack removal for Leopard, Pentagon expands data sharing
This week's Chet Chat returns to our usual news format this week with guest Gary Korhonen (@hundredaire). Gary and Chet discuss the Utah data breach, Facebook hacker's prison term, OS X Leopard's FlashBack removal tool, Pentagon data sharing and Operation Phish Phry sentencing.
SSCC 90 - A walk around Interop 2012 with John Shier
This week's Chet Chat comes to you live from the show floor at Interop 2012. John Shier and Chet Wisniewski have some fun and share highlights from the expo hall.
SSCC 89 - InfoSec Europe trends, tat and tales
Chester Wisniewski and Chris Pace walk around the exhibition hall at this year's InfoSec Europe and share their insights on trends and some fantastic giveaways some vendors thought might grab your attention.
SSCC 88 - iTunes security, Mac malware and Google's FCC fine
Chester Wisniewski and Paul Ducklin chat about the security issues surrounding Apple's new iTunes security, knowledge-based authentication, Mac malware and Google's fine from the FCC.
SSCC 87 - Mac botnet, Global Payments, Flash Player updater, AES-NI and cloud encryption
David Schwartzberg is this week's guest on the Chet Chat to talk about the data breach at Global Payments, a new Mac botnet and Flash Player updating. David also explained the new AES-NI encryption acceleration in Intel chips and a new way to safely store files in the cloud.
SSCC 86 - online elections, "total internet disconnection", Facebook/privacy and PII for just 3c
In this week's episode, Paul Ducklin joins Chet to discuss online elections, "total internet disconnection", Facebook's new take on privacy, and PII at just 3c a hit.
As usual, Chet and Duck express strong opinions, with Duck even calling on those who are concerned about the erosion of online privacy "not to go quietly"...
SSCC 85 - FAA, Carberp arrests, RDP vulnerability and first HITECH fine
In this week's episode John Shier joins Chet to discuss the review of electronic device usage on airplanes by the FAA, the arrests of the Carberp malware authors, the worm danger from the MS12-020 RDP vulberability and whether the time has come for encrypting more than just laptops and USB drives.
Sophos Techknow - Busting Password Myths
Unlike the Chet Chat, where we cover a range of recent news items without much depth, in the Techknow programme we pick one topic and consider it in more detail.
So if you're one of the regular Chet Chat listeners who's been asking for this sort of podcast: here you are!
SSCC 84.66 - RSA conclusion, award winners, HB Gary and big data
Chet and Duck say goodbye to San Francisco, thank their fellow bloggers for Naked Security winning the Best Corporate Security Blog, discuss their favorite stand and talk a bit about how "big data" plays with security.
SSCC 84.33 - RSA first impressions
RSA special Chet Chat sharing Chester's and Duck's first impressions of the first day of the RSA 2012 conference in San Francisco.







