Risky Business #320 -- Hacking cars with Charlie Miller

Charlie makes a good argument for driving a classic...
02 May 2014 » Risky Business

On this week's show we're chatting with security researcher Charlie Miller about the work he's been doing with Chris Valasek on hacking cars. It's fun stuff, but yeah, it might make you want to go back to driving an older car.

This week's show is sponsored by BugCrowd. We've got a great interview with BugCrowd founder and CEO Casey Ellis about a really, really interesting little case study he went through involving a random bug-hunter who'd tried blackmailing a BugCrowd client. The solution they came up with was ingenious and spectacularly lulzy.

Show notes

Microsoft fixes big IE bug -- even on Windows XP - CNET
http://www.cnet.com/news/microsoft-fixes-big-ie-bug-on-windows-xp-even/

Microsoft tells IE users how to defend against zero-day bug - CNET
http://www.cnet.com/news/microsoft-tells-ie-users-how-to-defend-against-...

Flash Zero Day Used to Target Victims in Syria | Threatpost | The first stop for security news
http://threatpost.com/flash-zero-day-used-to-target-victims-in-syria/105726

Mozilla Redesigns Firefox, Fixes Security Vulnerabilities | Threatpost | The first stop for security news
http://threatpost.com/mozilla-redesigns-firefox-browser-fixes-security-v...

Mozilla Offers Bug Bounty for Heartbleed-like Crypto Bugs | Threatpost | The first stop for security news
http://threatpost.com/mozilla-offers-bug-bounty-for-new-certificate-veri...

After Heartbleed, NSA reveals some flaws are kept secret - CNET
http://www.cnet.com/news/after-heartbleed-nsa-reveals-some-flaws-are-kep...

Obama Policy on Zero Days Craps Out - Forbes
http://www.forbes.com/sites/jennifergranick/2014/04/29/obama-policy-on-z...

Target Accelerates Chip-and-Pin Roll Out, Hires New CIO | Threatpost | The first stop for security news
http://threatpost.com/target-accelerates-chip-and-pin-roll-out-hires-new...

Anonymous activist pleads guilty to threatening FBI agent - CNET
http://www.cnet.com/news/anonymous-activist-pleads-guilty-to-threatening...

Inside the 'DarkMarket' Prototype, a Silk Road the FBI Can Never Seize | Threat Level | WIRED
http://www.wired.com/2014/04/darkmarket/

It's Insanely Easy to Hack Hospital Equipment | Threat Level | WIRED
http://www.wired.com/2014/04/hospital-equipment-vulnerable/

Hackers Can Mess With Traffic Lights to Jam Roads and Reroute Cars | Threat Level | WIRED
http://www.wired.com/2014/04/traffic-lights-hacking/

Exploiting Facebook Notes to Launch DDoS | Threatpost | The first stop for security news
http://threatpost.com/exploiting-facebook-notes-to-launch-ddos/105701

UltraDNS Dealing with DDoS Attack | Threatpost | The first stop for security news
http://threatpost.com/ultradns-dealing-with-ddos-attack/105806

Vishing Attacks Targeting Dozens of Banks, Users' Card Data | Threatpost | The first stop for security news
http://threatpost.com/vishing-attacks-targeting-dozens-of-banks/105774

AOL Breached, Investigating Spam from Spoofed Accounts | Threatpost | The first stop for security news
http://threatpost.com/aol-investigating-breach-urges-users-to-change-pas...

Apache Struts Zero Day Vulnerability Patch to be Re-Issued | Threatpost | The first stop for security news
http://threatpost.com/apache-warns-of-faulty-zero-day-patch-for-struts/1...

Vulnerability in Viber Allows Snooping of Images, Videos | Threatpost | The first stop for security news
http://threatpost.com/vulnerability-in-viber-allows-intercept-of-images-...

60 Minutes shocked to find 8-inch floppies drive nuclear deterrent | Ars Technica
http://arstechnica.com/information-technology/2014/04/60-minutes-shocked...

RIP | Every Day Carry
http://everydaycarry.bandcamp.com/releases