Security Now (Video) cover logo

SN 960: Unforeseen Consequences - CISA's "Secure by Design" Initiative, Fastly's BoringSSL

2h 4m · Security Now (Video) · 07 Feb 02:11

  • CISA's "Secure by Design" Initiative
  • The GNU C Library Flaw
  • Fastly CDN switches from OpenSSL to BoringSSL
  • Roskomnadzor asserts itself
  • Google updates Android's Password Manager
  • Firefox gets post-quantum crypto
  • Get your TOTP tokens from LastPass
  • Inflated iOS app data
  • LearnDMARC
  • Sync mobile app bug
  • SpinRite and Windows Defender
  • Crypto signing camera
  • Analog hole in digital camera authentication
  • iOS and Google's Topics
  • The gathering of the Stephvens
  • Programmable Logic Controllers
  • SpinRite update
  • Malware-infected Toothbrush
  • The Unforeseen Consequences of Google's 3rd-party Cookie Cutoff

Show Notes - https://www.grc.com/sn/SN-960-Notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to this show at https://twit.tv/shows/security-now.

Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Sponsors:

  • Melissa.com/twit
  • joindeleteme.com/twit promo code TWIT
  • GO.ACILEARNING.COM/TWIT
  • vanta.com/SECURITYNOW

The episode SN 960: Unforeseen Consequences - CISA's "Secure by Design" Initiative, Fastly's BoringSSL from the podcast Security Now (Video) has a duration of 2:04:13. It was first published 07 Feb 02:11. The cover art and the content belong to their respective owners.

More episodes from Security Now (Video)

SN 976: The 50 Gigabyte Privacy Bomb - Google AI Workarounds, Microsoft Recall

  • The bigger problem with AI Overview
  • https://udm14.com/ -and- https://tenbluelinks.org/
  • The horses have left the barn
  • VPNs and Firewalls
  • Email @ GRC
  • Extension to fix Google search
  • Passwords and SPAM
  • Fixing motherboard components
  • Vertical tabs in Firefox
  • FritzBox routers
  • Too many PINs
  • More Google search fixes
  • Testing Windows XP
  • The 50 Gigabyte Privacy Bomb

Show Notes - https://www.grc.com/sn/SN-976-Notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to this show at https://twit.tv/shows/security-now.

Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Sponsors:

  • kolide.com/securitynow
  • joindeleteme.com/twit promo code TWIT
  • bitwarden.com/twit
  • 1bigthink.com

SN 975: 312 Scientists & Researchers Respond - 3 Chrome Zero-Days, Free Laundry

  • When you're the biggest target...
  • Searching for Search
  • How long will a Windows XP machine survive unprotected on the Internet?
  • Free Laundry
  • VPNs and Firewalls
  • Netgate SG1100
  • Ad Industry vs. Google Privacy Sandbox
  • Bitwarden and passkeys
  • Token2 passkey dongle
  • 312 Scientists & Researchers Respond

Show Notes - https://www.grc.com/sn/SN-975-Notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to this show at https://twit.tv/shows/security-now.

Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Sponsors:

  • canary.tools/twit - use code: TWIT
  • 1bigthink.com
  • business.eset.com/twit
  • mylio.com/TWIT25

SN 974: Microsoft's Head in the Clouds - 4-Digit Pins, Long Range Navigation, Microsoft

  • Picture of the Week.
  • Most to least common 4-digit pins.
  • Enhanced LORAN.
  • Passkeys.
  • Microsoft's Head in the Clouds.

Show Notes - https://www.grc.com/sn/SN-974-Notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to this show at https://twit.tv/shows/security-now.

Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Sponsors:

  • 1bigthink.com
  • zscaler.com/zerotrustAI
  • kolide.com/securitynow
  • joindeleteme.com/twit promo code TWIT

SN 973: Not So Fast - GPS Vulnerabilites, VPN Flaw

  • The vulnerability of GPS
  • Is the sky falling on all VPN systems?
  • Multi-user Passkeys, YubiKeys?
  • The iCloud Keychain
  • The UK and Google's Topics

Show Notes - https://www.grc.com/sn/SN-973-Notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to this show at https://twit.tv/shows/security-now.

Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Sponsors:

  • Melissa.com/twit
  • kolide.com/securitynow
  • lookout.com
  • bitwarden.com/twit

SN 972: Passkeys: A Shattered Dream? - IoT Default Passwords, Passkeys

  • GCHQ: No more default passwords for consumer IoT devices!
  • What happened with Chrome and 3rd-party cookies?
  • Race conditions and multi-threading
  • GM "accidentally" enrolled millions into "OnStar Smart Driver +" program
  • Steve recommends Ryk Brown's "Frontiers Saga"
  • SpinRite update
  • Passkeys: A Shattered Dream?

Show Notes - https://www.grc.com/sn/SN-972-Notes.pdf

Hosts: Steve Gibson and Leo Laporte

Download or subscribe to this show at https://twit.tv/shows/security-now.

Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Sponsors:

  • business.eset.com/twit
  • vanta.com/SECURITYNOW
  • 1bigthink.com
  • lookout.com
Every Podcast » Security Now (Video) » SN 960: Unforeseen Consequences - CISA's "Secure by Design" Initiative, Fastly's BoringSSL