TopPodcast.com
Menu
  • Home
  • Top Charts
  • Top Networks
  • Top Apps
  • Top Independents
  • Top Podfluencers
  • Top Picks
    • Top Business Podcasts
    • Top True Crime Podcasts
    • Top Finance Podcasts
    • Top Comedy Podcasts
    • Top Music Podcasts
    • Top Womens Podcasts
    • Top Kids Podcasts
    • Top Sports Podcasts
    • Top News Podcasts
    • Top Tech Podcasts
    • Top Crypto Podcasts
    • Top Entrepreneurial Podcasts
    • Top Fantasy Sports Podcasts
    • Top Political Podcasts
    • Top Science Podcasts
    • Top Self Help Podcasts
    • Top Sports Betting Podcasts
    • Top Stocks Podcasts
  • Podcast News
  • About Us
  • Podcast Advertising
  • Contact
Not in our directory?
Add Show Here
Podcast Equipment
Center

toppodcastlogoOur TOPPODCAST Picks

  • Comedy
  • Crypto
  • Sports
  • News
  • Politics
  • True Crime
  • Business
  • Finance

Follow Us

toppodcastlogoStay Connected

    View Top 200 Chart
    Back to Rankings Page
    Technology

    Open Source Security

    Open Source Security is a media project to help showcase and educate on open source security. Our goal is to give the community a platform educate both developers and users on how open source security works.

    There’s a lot of good work happening that doesn’t get attention because there’s no marketing department behind it, they don’t have a developer relations team posting on LinkedIn every two hours. Let’s focus on those people and teams then learn what they do and how they do it. The goal is to hear from the people doing the work, they know what’s up, they have a lot to teach us. We just have to listen.

    Advertise

    Copyright: © This work is licensed under the Creative Commons Attribution 4.0 International License. To view a copy of this license, visit http://creativecommons.org/licenses/by/4.0/ or send a letter to Creative Commons, PO Box 1866, Mountain View, CA 94042, USA.

    • Apple Podcasts
    • Google Play
    • Spotify

    Latest Episodes:
    Episode 266 - The future of security scanning with Debricked Apr 12, 2021
    Show notes

    Josh and Kurt talk to Emil Wåreus from Debricked about the future of security scanners. Debricked is doing some incredibly cool things to avoid relying on humans for vulnerability identification and cataloging. Learn what the future of security scanning is going to look like.

    Show Notes

    • Debricked
    • Emil's Linkedin

    Episode 265 - The lies closed source can tell, open source can't Apr 05, 2021
    Show notes

    Josh and Kurt talk about the PHP backdoor and the Ubiquity whistleblower. The key takeaway is to note how an open source project cannot cover up an incident, but closed source can and will cover up damaging information.

    Show Notes
    • PHP backdoor
    • Ubiquity coverup
    • 3D printed TSA keys
    • LockPickingLaywer
    • Determining Key Shape from Sound
    • Lock camera

    Episode 264 - DevSecOps with GitLab's Mark Loveless Mar 29, 2021
    Show notes

    Josh and Kurt talk to Mark Loveless from GitLab. We touch on DevSecOps, what GitLab is doing, threat modeling, and the time Mark tested positive for TNT at the airport. It's a great conversation.

    Show Notes

    • Mark Loveless Twitter
    • GitLab
    • GitLab Handbook
    • How we approach open source security
    • PASTA threat modeling
    • GitLab security features
    • Tales from the Past - "You Tested Positive for TNT"

    Episode 263 - GitHub pulls exploits, LinuxFoundation sign all the things Mar 22, 2021
    Show notes

    Josh and Kurt talk about how terrible daylight savings is. GitHub yanking some exploit code. And the Linux Foundation new project to sign all the things.

    Show Notes
    • Researcher Publishes Code to Exploit Microsoft Exchange Vulnerabilities on Github
    • GitHub content restrictions
    • Reproducing the Microsoft Exchange Proxylogon Exploit Chain

    Episode 262 - A discussion with Loris and Pop from Sysdig Mar 15, 2021
    Show notes

    Josh and Kurt talk to Loris Degioanni and Dan from Sysdig. Sysdig are the minds behind Falco, an amazing open source runtime security engine. We talk about where their technology came from, they huge code donation to the CNCF and what securing a modern infrastructure looks like today.

    Show Notes
    • Sysdig
    • Falco
    • Loris' Twitter
    • Dan "Pop" Popandrea's Twitter
    • Sysdig contributes Falco's kernel module, eBPF probe, and libraries to the CNCF
    • pdig
    • Sysdig 2021 container security and usage report: Shifting left is not enough

    Episode 261 - DWF is back! Welcome to community powered CVE Mar 08, 2021
    Show notes

    Josh and Kurt talk about DWF. It's back and the intention is to have real community driven security identifiers!

    Show Notes

    • Committee vs Community
    • dwflist repo
    • dwf-request tooling repo
    • dwf-workflow policy repo
    • CVE plateua graph
    • iwantacve.org

    Episode 260 - Dave Jevans tells us what CipherTrace is up to Mar 01, 2021
    Show notes

    Josh and Kurt talk with Dave Jevans CEO of CipherTrace and chairman of the anti-phishing working group about the challenges of keeping track of cryptocurrency in the modern age.

    Show Notes

    • Dave's Twitter
    • CipherTrace
    • Anti Phishing Working Group

    Episode 259 - What even is open source anymore? Feb 22, 2021
    Show notes

    Josh and Kurt talk about the question "what is open source?" Why do we think it's broken today, and what sort of ideas about what should come next.

    Show Notes

    • OSI
    • Bruce Perens Post Open Source
    • Josh's community blog post
    • Corey Doctorow Uber Twitter thread

    Episode 258 - Stop using C Feb 15, 2021
    Show notes

    Josh and Kurt talk about the Google Project Zero report titled "A Year in Review of 0-days Exploited In-The-Wild in 2020". It's a cool report but we don't agree on the conclusion. The answer isn't to security harder, it's to stop using C.

    Show Notes

    • Google Project Zero Year of 0-days
    • Kurt's CUPS tweet

    Episode 257 - The sudo and libgcrypt vulnerabilities Feb 08, 2021
    Show notes

    Josh and Kurt talk about the recent sudo and libgcrypt security vulnerabilities. What's the deal with these buffer overflows and TOCTU bugs?

    Show Notes

    • Sudo buffer overflow
    • Sudo SELinux bug
    • libgcrypt buffer overflow

    Previous 1 27 28 29 30 31 55 Next

    Related Podcasts

    Reply All

    1

    Reply All Games & Hobbies
    Inside VR & AR

    2

    Inside VR & AR Gadgets
    Note to Self

    3

    Note to Self News
    BrainStuff

    4

    BrainStuff Natural Sciences
    This Week in Tech (Audio)

    5

    This Week in Tech (Audio) News
    Hands-On Tech (Audio)

    6

    Hands-On Tech (Audio) Technology
    footer-logo

    Contact Us

    Toll Free: 844-670-7747

    Links

    • Home
    • Top Charts
    • Networks
    • Apps
    • Independents Podcasts
    • Podcast Advertising
    • Podcast News
    • Contact Us
    • About Us
    • Analytics & Insights

    Stay Connected

      Privacy, Terms of Use & Our Code of Ethics Protecting Content Creators Copyrights