Risky Business #396 -- Chris Wysopal on scanning for backdoors
On this week's show we've got two feature interviews!
We're talking to Chris Wysopal from Veracode about using static analysis techniques to find back doors in software. With Juniper, AMX, Fortinet and Cisco all experiencing either maliciously planted or accidental backdoors, this is a hot topic. Chris joins us to talk about how you go about finding this stuff and whether or not vendors are taking this issue seriously enough.
We also check in with Martijn Grooten, editor of Virus Bulletin. We're having a quick chat to him about how the AV industry is reacting to Tavis Ormandy's latest research into the security of its products. He's been reporting bugs in all sorts of AV products lately and apparently the disclosures are having an impact.
This week's sponsor interview is a special one -- it's with Haroon Meer of Thinkst Applied Research. Thinkst has released some free tools that generate and track honey tokens. Old ideas made easy and workable... he'll be along to explain his new tech. Personally think this stuff is great.. just great... and of course he'll plug his even more awesome commercial stuff, Canary Tools.
Adam Boileau, as always, drops in for a chat about the week's news headlines.
Links to everything are in this week's show notes.
The last episode for 2016. Back on January 12, 2017!2 weeks 2 days ago
The 2016 season of Risky Business goes out on some potentially massive news...2 weeks 2 days ago
Fitbit's security director, engineer join the show...3 weeks 2 days ago
All the news that's fit to... email?3 weeks 2 days ago
What will a Trump presidency mean for teh cybarz?4 weeks 2 days ago