Risky Business

Risky Business #143 -- Cloud computing and the history of electricity

March 12, 2010 -- On this week's show we're having an extended chat with our good mate Greg Shipley.

Greg's best known as the CTO of Chicago-based information security consultancy Neohapsis, and he'll be joining us to talk about what was on the agenda at the RSA conference. Apparently it's cloud, cloud, cloud... but what does that actually mean, mean, mean? Greg will be along soon to discuss, he's always good.

Risky Business #142 -- Special guest H D Moore talks fun with NTP

March 5, 2010 -- Risky Business is hosted by the team at Virtual.Offis in Sydney but sponsored, this week, by Tenable Network Security.

This week's feature guest is H D Moore, who'll be joining us to talk about some fun stuff he's been doing with NTP. Believe it or not you can use NTP to do massive recon on the Intertubez. H D has built a database of millions of hosts by querying NTP boxens. It's cool.

Tenable Network Security CEO Ron Gula joins us in this week's sponsor interview, and Adam "Beardy McUNIXguy" Boileau drops in to discuss the week's news.

Risky Business #141 -- Why does patch management STILL suck?

February 25, 2010 -- This week's edition of Risky Business is brought to you by Kaspersky and hosted by Virtual.Offis.

This week we take a look at patch management and ask why it still sucks. Security professionals have been advising their clients to sort out their patching processes for more than ten years, but it's still at the top of many, many a post-audit report.

We chat to Securosis analyst Rich Mogull about his research on patch management.

Risky Business #140 -- Former NSA tech director, info assurance, Brian Snow

February 18, 2010 -- On this week's show we're joined by a very special guest -- Brian Snow.

Until his recent retirement, Brian was the technical director of information assurance for the United States National Security Agency. So, in other words he knows a few things about information security and in this week's show we cover a bunch of stuff with him -- everything from Google's recent trouble in China to e-voting, to cyrpto trust models and more.

That's after the news.

Risky Business #139 -- Moore bugs for moar software

February 11, 2010 -- On this week's show we'll be checking the news with Adam Boileau, as we always do, then we're going to have a chat with Brett Moore of Insomnia Security.

A bug Brett found featured in the most recent patch Tuesday release, so we thought we'd get him on the line and get the latest scuttlebut from the world of vulnerability research. Where are the new bugs popping up? What are the trends? What can we expect?

That's after the news.

Risky Business #138 -- Dan Geer on the future of computing

February 3, 2010 -- Risky Business is back for 2010!

On this week's program we chat with information security legend Dan Geer.

Dan's the Chief Information Security Officer for In-Q-Tel, which is, in essence, the technology investment arm of the CIA. He's not appearing in Risky Business is his capacity as an In-Q-Tel employee, however, he joins us as a veteran of the information security industry.

Dan helped create Kerberos during his tie with project Athena at MIT and was the chief technology officer at @Stake for a time.

Risky Business #137 -- Year in review special!

December 23, 2009 -- This week's edition of Risky Business is brought to you by Check Point Software.

It's our last episode for the year -- Risky Business will be back in February 2010.

Until then, here's our year in review special. It's a light hearted look back on 2009, the year that was.

Check Point's Steve MacDonald stops by for this week's sponsor interview.

Risky Business #136 -- 14-byte Cisco 0day exploit! ZOMG!!

December 18, 2009 -- This week's episode of Risky Business is the second last for the year!

In this week's feature interview we're chatting with Neal Wise about his "one finger punch".

Neal's done some really interesting work in hacking Cisco firmware and the exploit he's developed is literally a two word command that gives you unrestricted access to a whole bunch of Cisco kit. It's not a massive story or anything. It's just funny.

Risky Business #135 -- Climategate and hacking scientists

December 11, 2009 -- This week's show is brought to you by the fine folks at Sophos.

This week we're looking at what the mainstream media is calling "climategate".

As world leaders meet in Copenhagen to try to hammer out a coordinated response to global warming, the blogosphere and indeed the mainstream press are all in a tizz over thousands of hacked e-mails from the Climate Research Unit of the University of East Anglia.

Risky Business #134 -- Adam Boileau wraps Kiwicon

December 4, 2009 -- This week's show is a bit different -- we're giving you a double dose of our regular guest Adam Boileau.

Following Kiwicon last weekend I checked in to Chez Boileau for a few nights, so we were able to do the news in his kitchen before I buggered off back to Australia.

While I was there we also had a chat about Kiwicon and discussed some of the presentations we saw. Adam is a key organiser of Kiwicon so it made sense to discuss it with him. Topics covered include GPS security, shared hosting insecurity, Linux kernel rootkit detection, hacking scientists and much, much more.