Risky Business #105 -- RSA conference wrap plus X10 security
This week's show is brought to you by Check Point Software.
This week's show is a bit of a mixed bag. We chatted with 451 group analyst Paul Roberts live from the floor at the RSA conference in San Francisco. Then for something completely different we quizzed Adam Pointon about his adventures with X10 home automation equipment.
Check Point Australia's Steve MacDonald is this week's sponsor guest, and Adam Boileau was this week's news guest.
I wouldn't recommend OS X A/V just yet.
while it's something to come in the future, I think you're still better off using a little common-sense, and something like Little Snitch.
Little snitch, is in essence a firewall, but it's rules are very customisable, and in particular I like that you can set a temporary rule something like,
allow terminal to send ICMP traffic until the process terminates.
So that way, I can say, yes, this application I've instructed to run does infact need to do this kind of network traffic, but only this time.
The reason I don't recommend OS X A/V just yet is that while it's becoming an emerging threat, the cost of CPU cycles / money / pain in the arse that AV gives isn't worth it.
If you REALLY want to put something on, you can start with the FOSS tools like Clamx AV (clam AV for os x) or tripwire (tripwire prevents writing to system files)
For paid tools, I've used Intego in the past and found it to be pretty effective. Also the dashboard widget and management interface is easy to use, and the context menu scanning (so right click, scan this file) is handy.
But I've since removed them and defer my os x security to a bit of common sense (ie. don't type in that admin password unless you're 100% sure the program needs it. Which is why real player _Still_ bugs me for the realplayer agent.)
Hiya guys, I think it was episode 105 and someone mentioned something like BruteCon for password avoidance bootup.
This sounded like a handy tool for forensic investigations, and similar 0phcrack, does anyone have the correct name and link to the tool.
Thanks in advance.
Thanks Patrick
Post new comment
User login
Recent podcasts
-
APTs result of evil genius from marketroids, not hackers...
-
Stuxnet almost certainly created by intelligence service...
-
Want a quick $40k?
-
How to MITM the iTunes store for fun and profit...
-
WARNING: Contains potty-mouth language...
Recent comments
- outro song?
2 hours 16 min ago - Sourcefire releases free SIEM software
17 hours 21 min ago - I guess people are less
2 days 23 hours ago - To be fair I don't really
3 days 4 hours ago - Ed Curtis and Security
3 days 4 hours ago - Heh
3 days 22 hours ago - I much prefer
3 days 23 hours ago - heh
4 days 16 min ago - Yowzers
6 days 9 hours ago - Yeah I did spot that in the
6 days 23 hours ago


One of the things that was covered in this podcast was the lack of installed anti-virus on Mac OS X. One of the computers that I have is running Mac OS X and isn't running any AV.
What AV is available out there for OS X, what would people recommend and why?
Regards
Gold
Evolved Development +64 21 248-4653
http://evolved.net.nz/ gold@evolved.net.nz