<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2enclosuresfull.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Network Security Podcast</title>
	
	<link>http://netsecpodcast.com</link>
	<description>The Network Security Podcast</description>
	<lastBuildDate>Tue, 10 Nov 2009 23:09:02 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.5</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<media:keywords>Network,Security,Computer,PCI,Hacking,privacy</media:keywords><media:category scheme="http://www.itunes.com/dtds/podcast-1.0.dtd">Technology/Tech News</media:category><itunes:owner><itunes:email>martin@mckeay.net</itunes:email><itunes:name>Martin McKeay</itunes:name></itunes:owner><itunes:author>Martin McKeay</itunes:author><itunes:explicit>no</itunes:explicit><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords><itunes:subtitle>I spend half-an-hour (or so) each week talking about the computer security issues that are relevant today, such as consumer privacy and the Payment Card Industry (PCI) Data Security Standards. I'm a Certified Information Security Professional (CISSP) who'</itunes:subtitle><itunes:summary>I spend half-an-hour (or so) each week talking about the computer security issues that are relevant today, such as consumer privacy and the Payment Card Industry (PCI) Data Security Standards. I'm a Certified Information Security Professional (CISSP) who's been in security for five years and IT for over ten years. I bring my own unique views and opinions to bear on today's security issues.</itunes:summary><itunes:category text="Technology"><itunes:category text="Tech News" /></itunes:category><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/NetworkSecurityPodcast" type="application/rss+xml" /><feedburner:browserFriendly>This is an XML content feed. It is intended to be viewed in a newsreader or syndicated to another site, subject to copyright and fair use.</feedburner:browserFriendly><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
		<title>Network Security Podcast, Episode 173</title>
		<link>http://netsecpodcast.com/?p=360</link>
		<comments>http://netsecpodcast.com/?p=360#comments</comments>
		<pubDate>Mon, 09 Nov 2009 05:37:08 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Podcast]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=360</guid>
		<description><![CDATA[It&#8217;s one of those glorious days we all look forward too; all of the regular hosts of the podcast are on the road and in most cases thousands of miles from home.&#160; Luckily we planned ahead and this week Martin is joined by Adrian Lane of Securosis instead of the usual cast of characters.&#160; We [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s one of those glorious days we all look forward too; all of the regular hosts of the podcast are on the road and in most cases thousands of miles from home.&nbsp; Luckily we planned ahead and this week Martin is joined by Adrian Lane of Securosis instead of the usual cast of characters.&nbsp; We recorded a couple of days early so that we&#8217;d have a podcast out, even though we probably missed one or two breaking stories.&nbsp; Not that we&#8217;d know, since we&#8217;re all on the road and have limited access to our news feeds and Twitter.<br /><a href="http://media.libsyn.com/media/mckeay/nsp-111009-ep173.mp3"><br />Network Security Podcast, Episode 173, November 10, 2009<br />Time:&nbsp; 31:45</a>
<ul>
<li><a href="http://news.cnet.com/8301-30684_3-10390941-265.html?part=rss&amp;subj=news&amp;tag=2547-1_3-0-20">Google Dashboard lifts curtain on stored data</a> &#8211; Yawn.&nbsp; Give us something useful</li>
<li><a href="http://www.csoonline.com/article/506635/Analyst_PCI_Security_a_Devil_Like_No_Child_Left_Behind_">Analyst:&nbsp; PCI Security a Devil, &#8216;Like No Child Left Behind</a>&#8216; &#8211; I want to talk to Josh Corman</li>
<li><a href="http://news.electricalchemy.net/2009/10/cracking-passwords-in-cloud.html">Cracking Passwords in the Cloud:&nbsp; Breaking PGP on EC2 with EDPR</a> &#8211; Or How much is the password in the window?</li>
<li><a href="http://skeptikal.org/2009/11/cross-subdomain-cookie-attacks.html">Cross-domain Cookie attacks</a> &#8211; It&#8217;s all about trust.&nbsp; And why you shouldn&#8217;t.</li>
<li><a href="http://torrentfreak.com/cofee-forensic-tool-leaks-to-what-cd-admins-ban-it-091108/">COFEE Forensic tool leaked to What.cd, admins ban it</a> &#8211; It&#8217;s an interesting toy, but <a href="http://www.mckeay.net/2009/11/08/ethics-of-spilled-cofee/">the open source community can do better</a>.</li>
<li><a href="http://www.pcworld.com/businesscenter/article/181697/first_iphone_worm_spreads_rick_astley_wallpaper.html">First iPhone worm spreads Rick Astley wallpaper</a> &#8211; Rickrolled by a worm</li>
<li>Tonight&#8217;s music: <a href="http://music.podshow.com/music/listeners/artistdetails.php?BandHash=e89df29be200fb0b152b90f251d2c3d8">Sick and Tired by the Fn A Holes</a></li>
</ul>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=6f888d2f-6636-8148-bcc4-7fcf3137393a" /></div>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=360</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.libsyn.com/media/mckeay/nsp-111009-ep173.mp3" length="30494634" type="audio/mpeg" />
		<media:content url="http://media.libsyn.com/media/mckeay/nsp-111009-ep173.mp3" fileSize="30494634" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle>It&amp;#8217;s one of those glorious days we all look forward too; all of the regular hosts of the podcast are on the road and in most cases thousands of miles from home.&amp;#160; Luckily we planned ahead and this week Martin is joined by Adrian Lane of Securosi</itunes:subtitle><itunes:author>Martin McKeay</itunes:author><itunes:summary>It&amp;#8217;s one of those glorious days we all look forward too; all of the regular hosts of the podcast are on the road and in most cases thousands of miles from home.&amp;#160; Luckily we planned ahead and this week Martin is joined by Adrian Lane of Securosis instead of the usual cast of characters.&amp;#160; We [...]</itunes:summary><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords></item>
		<item>
		<title>The Network Security Podcast, Episode 172</title>
		<link>http://netsecpodcast.com/?p=355</link>
		<comments>http://netsecpodcast.com/?p=355#comments</comments>
		<pubDate>Wed, 04 Nov 2009 00:55:44 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Podcast]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=355</guid>
		<description><![CDATA[&#8220;The Episode that almost Wasn&#8217;t&#8221;&#160; It&#8217;s been a day.&#160; Shortly before we were scheduled to start, there was a pop and the power went out at Martin&#8217;s house.&#160; Rich has issues of his own to deal with.&#160; And Zach is &#8230; somewhere.&#160; It was only because the local electric company responded quickly for the first [...]]]></description>
			<content:encoded><![CDATA[<p>&#8220;The Episode that almost Wasn&#8217;t&#8221;&nbsp; It&#8217;s been a day.&nbsp; Shortly before we were scheduled to start, there was a pop and the power went out at Martin&#8217;s house.&nbsp; Rich has issues of his own to deal with.&nbsp; And Zach is &#8230; somewhere.&nbsp; It was only because the local electric company responded quickly for the first time I can remember were we able to squeeze in a podcast recording between emergencies.&nbsp; And now that we&#8217;ve recorded and posted, it&#8217;s time to put our noses back to the grindstone and work for a couple more hours.</p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-110309-ep172.mp3">Network Security Podcast, Episode 172<br />Time:&nbsp; 33:26</a></p>
<p><strong>Show Notes:</strong>
<ul>	
<li><a href="http://searchsecurity.techtarget.com/news/article/0,289142,sid14_gci1372390,00.html">Heartland CIO criticizes tokenization</a>. Gee considering they have a competing approach this is shocking!</li>
<p>	
<li><a href="http://www.washingtonpost.com/wp-dyn/content/article/2009/10/30/AR2009103003749.html">Congress calls for review of internal cybersecurity after major leak over P2P</a>. Yet another shocking surprise!</li>
<p>	
<li><a href="http://www.bankinfosecurity.com/articles.php?art_id=1895&amp;rf=103109eb">Mellon Bank employee commits identity fraud over 7 years.</a></li>
<p>	
<li><a href="http://www.fdic.gov/consumers/consumer/alerts/index.html">New phishing attack pretends to be from FDIC.</a></li>
<p>	
<li><a href="http://fudsec.com/a-treatise-on-fud">Robert &#8220;RSnake&#8221; Hansen releases his &#8220;Detecting Malice&#8221; EBook</a>. It&#8217;s very well done.</li>
<p>	
<li><a href="http://newschoolsecurity.com/2009/10/just-say-no-to-fud/">Just Say No to FUD</a>. <a href="http://fudsec.com/a-treatise-on-fud">Response to Anton&#8217;s article</a>.</li>
<p>	
<li>Tonight&#8217;s music:<a href="http://www.musicalley.com/music/listeners/artistdetails.php?BandHash=e56578a3684fd27c33e018903a42a865"></a></li>
<p></ul>
<p>
<div><img src="http://img.zemanta.com/pixy.gif?x-id=aad84c4a-33e7-87cc-a150-d27a80c718b0" alt="" /></div>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=f81956e4-587c-8312-9049-b2a8a210e640" /></div>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=355</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.libsyn.com/media/mckeay/nsp-110309-ep172.mp3" length="32100433" type="audio/mpeg" />
		<media:content url="http://media.libsyn.com/media/mckeay/nsp-110309-ep172.mp3" fileSize="32100433" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle>&amp;#8220;The Episode that almost Wasn&amp;#8217;t&amp;#8221;&amp;#160; It&amp;#8217;s been a day.&amp;#160; Shortly before we were scheduled to start, there was a pop and the power went out at Martin&amp;#8217;s house.&amp;#160; Rich has issues of his own to deal with.&amp;#160; And Zach </itunes:subtitle><itunes:author>Martin McKeay</itunes:author><itunes:summary>&amp;#8220;The Episode that almost Wasn&amp;#8217;t&amp;#8221;&amp;#160; It&amp;#8217;s been a day.&amp;#160; Shortly before we were scheduled to start, there was a pop and the power went out at Martin&amp;#8217;s house.&amp;#160; Rich has issues of his own to deal with.&amp;#160; And Zach is &amp;#8230; somewhere.&amp;#160; It was only because the local electric company responded quickly for the first [...]</itunes:summary><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords></item>
		<item>
		<title>The Network Security Podcast, Episode 171</title>
		<link>http://netsecpodcast.com/?p=353</link>
		<comments>http://netsecpodcast.com/?p=353#comments</comments>
		<pubDate>Tue, 27 Oct 2009 15:32:13 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=353</guid>
		<description><![CDATA[Before we proceed with the show notes, may we please have a moment of silence for the passing of Geocities, the last refuge of the blink tag.
(The rest of the show is all about security stuff, and we even have all three of us on together again, but I&#8217;m just too chocked up over the [...]]]></description>
			<content:encoded><![CDATA[<p>Before we proceed with the show notes, may we please have a moment of silence for the passing of Geocities, the last refuge of the blink tag.</p>
<p>(The rest of the show is all about security stuff, and we even have all three of us on together again, but I&#8217;m just too chocked up over the death of Geocities for proper show notes. It was as if a million cheesy fan sites cried out, and were suddenly silenced.)</p>
<p>This really is Episode 171, even if I called it 170 at the beginning of the podcast &#8211; Martin</p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-102709-ep171.mp3">Network Security Podcast, Episode 171<br />Time:&nbsp; 38:54</a></p>
<p><strong>Show Notes:</strong>
<ul>	
<li><a href="http://darkreading.com/vulnerability_management/security/management/showArticle.jhtml;jsessionid=GWJMOXGYZZAT5QE1GHPSKH4ATMY32JVN?articleID=220800067">Rapid7 Acquires Metasploit</a></li>
<p>	
<li><a href="http://www.wired.com/threatlevel/2009/10/vulnerable-devices">Scan of Internet Reveals Thousands of Vulnerable Embedded Devices</a>. Linksys is at the top of the list, surprised? And I don&#8217;t even blame them. Then again, there&#8217;s<a href="http://www.wired.com/threatlevel/2009/10/routers-still-vulnerable/"> Time Warner routers&#8230; all of which are seriously vulnerable</a>.</li>
<p>	
<li><a href="http://lawiscool.com/2009/04/16/why-you-should-never-talk-to-the-police/">Why You Should Never Talk to the Police.</a></li>
<p>	
<li><a href="http://threatpost.com/en_us/blogs/obama-nominates-dhs-intelligence-chief-102609">Obama Nominates DHS Intelligence Chief</a>.</li>
<p>	
<li><a href="http://db.tidbits.com/article/10676">Rich&#8217;s off topic article on the first Microsoft Store.</a></li>
<p>	
<li>Tonight&#8217;s music: <a href="http://www.musicalley.com/music/listeners/artistdetails.php?BandHash=e56578a3684fd27c33e018903a42a865">Running from the Law by Mean Gene Kelton and the Die Hards</a></li>
</ul>
<p>
<div><img src="http://img.zemanta.com/pixy.gif?x-id=aad84c4a-33e7-87cc-a150-d27a80c718b0" alt="" /></div>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=36d8eeab-9fff-8acc-b0c8-9ac6fafa8998" /></div>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=353</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.libsyn.com/media/mckeay/nsp-102709-ep171.mp3" length="37348758" type="audio/mpeg" />
		<media:content url="http://media.libsyn.com/media/mckeay/nsp-102709-ep171.mp3" fileSize="37348758" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle>Before we proceed with the show notes, may we please have a moment of silence for the passing of Geocities, the last refuge of the blink tag. (The rest of the show is all about security stuff, and we even have all three of us on together again, but I&amp;#821</itunes:subtitle><itunes:author>Martin McKeay</itunes:author><itunes:summary>Before we proceed with the show notes, may we please have a moment of silence for the passing of Geocities, the last refuge of the blink tag. (The rest of the show is all about security stuff, and we even have all three of us on together again, but I&amp;#8217;m just too chocked up over the [...]</itunes:summary><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords></item>
		<item>
		<title>Network Security Podcast, Episode 170</title>
		<link>http://netsecpodcast.com/?p=347</link>
		<comments>http://netsecpodcast.com/?p=347#comments</comments>
		<pubDate>Wed, 21 Oct 2009 03:02:58 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Podcast]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=347</guid>
		<description><![CDATA[For the first time in a long time, Martin, Rich, and Zach are all together on the podcast. Sorry we missed last week, but we&#8217;ve all been dealing with job changes (Zach and Martin) or vacations in tropical paradises (Rich).
After a brief wandering to talk about Halloween preparations, we get back on topic and catch [...]]]></description>
			<content:encoded><![CDATA[<p>For the first time in a long time, Martin, Rich, and Zach are all together on the podcast. Sorry we missed last week, but we&#8217;ve all been dealing with job changes (Zach and Martin) or vacations in tropical paradises (Rich).</p>
<p>After a brief wandering to talk about Halloween preparations, we get back on topic and catch up with some new stories, and a few from the week we missed. We talk about the evolution of security professionals, tokenization, and how the Danger/Sidekick thing had nothing to do with cloud computing.</p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-102009-ep170.mp3">Network Security Podcast, Episode 170<br />Time:&nbsp; 34:12</a></p>
<p><strong>Show Notes:</strong>
<ul>	
<li><a href="http://fudsec.com/do-the-evolution-1">Josh Corman&#8217;s FUDSec post on the evolution of security.</a></li>
<p>	
<li><a href="http://securosis.com/blog/comments/tokenization-will-become-the-dominant-payment-transaction-architecture/">Tokenization for payment transactions.</a></li>
<p>	
<li><a href="http://www.reuters.com/article/newsOne/idUSTRE59E40T20091015">Most Sidekick data recovered, but many unanswered questions.</a></li>
<p>	
<li><a href="http://news.idg.no/cw/art.cfm?id=63C0B565-1A64-67EA-E471AAA551DB3139">Mozilla blocks Microsoft plugin</a>. <a href="http://shaver.off.net/diary/2009/10/18/update-net-framework-assistant-clickonce-support-unblocked/">Then they don&#8217;t</a>.</li>
<p>	
<li><a href="http://www.boygeniusreport.com/2009/10/19/random-users-google-voice-mail-is-searchable-by-anyone/">Google Voice mails searchable if you make it public.</a> Duh.</li>
<p>	
<li>Tonight&#8217;s music: <a href="http://music.podshow.com/music/listeners/artistdetails.php?BandHash=8716094d92e8f0209c8b8b34f7c6d373">FadeOut with Sanctuary</a></li>
<p></ul>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=aad84c4a-33e7-87cc-a150-d27a80c718b0" /></div>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=347</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.libsyn.com/media/mckeay/nsp-102009-ep170.mp3" length="32849407" type="audio/mpeg" />
		<media:content url="http://media.libsyn.com/media/mckeay/nsp-102009-ep170.mp3" fileSize="32849407" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle>For the first time in a long time, Martin, Rich, and Zach are all together on the podcast. Sorry we missed last week, but we&amp;#8217;ve all been dealing with job changes (Zach and Martin) or vacations in tropical paradises (Rich). After a brief wandering to</itunes:subtitle><itunes:author>Martin McKeay</itunes:author><itunes:summary>For the first time in a long time, Martin, Rich, and Zach are all together on the podcast. Sorry we missed last week, but we&amp;#8217;ve all been dealing with job changes (Zach and Martin) or vacations in tropical paradises (Rich). After a brief wandering to talk about Halloween preparations, we get back on topic and catch [...]</itunes:summary><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords></item>
		<item>
		<title>Network Security Podcast, Episode 169</title>
		<link>http://netsecpodcast.com/?p=342</link>
		<comments>http://netsecpodcast.com/?p=342#comments</comments>
		<pubDate>Tue, 06 Oct 2009 23:28:11 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Podcast]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=342</guid>
		<description><![CDATA[Rich is spending a well earned vacation with his wife somewhere south of the border.&#160; Normally this means I&#8217;d get in touch with Zach, but this week he&#8217;s north of the border at SecTor.ca.&#160; With any luck, Zach will be able to pick up a few interviews with some of the cool kids who got [...]]]></description>
			<content:encoded><![CDATA[<p>Rich is spending a well earned vacation with his wife somewhere south of the border.&nbsp; Normally this means I&#8217;d get in touch with Zach, but this week he&#8217;s north of the border at <a href="http://sector.ca/">SecTor.ca</a>.&nbsp; With any luck, Zach will be able to pick up a few interviews with some of the cool kids who got to go play in Toronto.&nbsp; In the mean time I was left to fend for myself and called upon one of the people who got me involved in podcasting to begin with, <a href="http://www.georgestarcher.com/">George Starcher</a>.&nbsp; While George no longer has his own podcast, he&#8217;s a regular on the <a href="http://typicalmacuser.com/">Typical Mac User Podcast</a>, but is willing to put up with a Windows user like me.</p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-100609-ep169.mp3">Network Security Podcast, Episode 169, October 6, 2009<br />Time:&nbsp; 27:09</a></p>
<p><b>Show Notes</b>:
<ul>
<li><a href="http://voices.washingtonpost.com/securityfix/2009/09/hackers_breach_payroll_giant_t.html">Hackers breach payroll giant, target customers</a>&nbsp; </li>
<li><a href="http://blogs.securiteam.com/index.php/archives/1324">Microsoft Security Essentials review</a></li>
<li><a href="http://www.bankinfosecurity.com/articles.php?art_id=1834">Lawsuit:&nbsp; Heartland knew data security standard was &#8216;insufficient&#8217; <br /></a></li>
<li><a href="http://www.neowin.net/news/main/09/10/05/thousands-of-hotmail-passwords-leaked-online">Breaking:&nbsp; Thousands of Hotmail passwords leaked online</a> &#8211; And now we know that tens of thousands of other mail service accounts are similarly compromised.</li>
<li><a href="http://www.technologyreview.com/blog/arxiv/24193/">Wireless network modded to see through walls</a></li>
<li><a href="http://www.myjones.com/code/limited.php?campaign=wizards">Dungeons and Dragons Spellcasting Soda</a> &#8211; If you&#8217;ve got a spare case or two of this stuff lying around, please feel free to send it my way.&nbsp;&nbsp;</li>
<li>Tonight&#8217;s Music:&nbsp; <a href="http://www.musicalley.com/music/listeners/artistdetails.php?BandHash=31e5ec8ddcf33b65e428237f28e290c4">Black Berry Girl by Porter Block</a> </li>
</ul>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=e8465f6f-0632-8bea-a703-e753bc74a5e9" /></div>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=342</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.libsyn.com/media/mckeay/nsp-100609-ep169.mp3" length="26078045" type="audio/mpeg" />
		<media:content url="http://media.libsyn.com/media/mckeay/nsp-100609-ep169.mp3" fileSize="26078045" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle>Rich is spending a well earned vacation with his wife somewhere south of the border.&amp;#160; Normally this means I&amp;#8217;d get in touch with Zach, but this week he&amp;#8217;s north of the border at SecTor.ca.&amp;#160; With any luck, Zach will be able to pick up a</itunes:subtitle><itunes:author>Martin McKeay</itunes:author><itunes:summary>Rich is spending a well earned vacation with his wife somewhere south of the border.&amp;#160; Normally this means I&amp;#8217;d get in touch with Zach, but this week he&amp;#8217;s north of the border at SecTor.ca.&amp;#160; With any luck, Zach will be able to pick up a few interviews with some of the cool kids who got [...]</itunes:summary><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords></item>
		<item>
		<title>The Network Security Podcast, Episode 168</title>
		<link>http://netsecpodcast.com/?p=339</link>
		<comments>http://netsecpodcast.com/?p=339#comments</comments>
		<pubDate>Wed, 30 Sep 2009 00:06:21 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Podcast]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=339</guid>
		<description><![CDATA[Despite a short discussion of Rich&#8217;s paranoia in the opening of the show, we mostly play it straight and stick to the security news. We found a few interesting stories this week, and the major theme seems to be &#8220;stupidity&#8221;. On one side is a prison that let an inmate reprogram their computer system, on [...]]]></description>
			<content:encoded><![CDATA[<p>Despite a short discussion of Rich&#8217;s paranoia in the opening of the show, we mostly play it straight and stick to the security news. We found a few interesting stories this week, and the major theme seems to be &#8220;stupidity&#8221;. On one side is a prison that let an inmate reprogram their computer system, on the other a money-mule for scams that thought sending money-grams to foreign countries was a legitimate &#8220;work at home&#8221; job.</p>
<p>Sigh.</p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-092909-ep168.mp3">Network Security Podcast, Episode 168<br />
Time:  29:53</a></p>
<p><strong>Show Notes:</strong></p>
<ul>
<li><a href="http://www.theregister.co.uk/2009/09/29/inmate_hacker/">Inmate locks staff out of prison computers</a>. Multiple levels of hilarity ensue.</li>
<li><a href="http://www.computerworld.com/s/article/9138633/Microsoft_confirms_free_security_software_ships_">Microsoft releases free antivirus</a>. World doesn&#8217;t end. (Yet).</li>
<li><a href="World doesn't end. (Yet).?PHPSESSID=787c1a641eaf909598922d0aa76a8054">SMB2 exploits become public</a>. World doesn&#8217;t end. (Yet).</li>
<li><a href="this one is better: http://darkreading.com/insiderthreat/security/perimeter/showArticle.jhtml?articleID=220300142&amp;cid=RSSfee">NIST releases smart grid security guidance.</a></li>
<li><a href="http://voices.washingtonpost.com/securityfix/2009/09/money_mule_recruitment_101.html?wprss=securityfix">A money-mule&#8217;s story.</a> Fascinating level of naivete.</li>
<li>Tonight&#8217;s music:  <a href="http://www.musicalley.com/music/producers/producerLibrary/artistdetails.php?BandHash=37f16eb48f210557360b14b64dda6de4">Caught by Emma Wallace</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=339</wfw:commentRss>
		<slash:comments>2</slash:comments>
<enclosure url="http://media.libsyn.com/media/mckeay/nsp-092909-ep168.mp3" length="28700028" type="audio/mpeg" />
		<media:content url="http://media.libsyn.com/media/mckeay/nsp-092909-ep168.mp3" fileSize="28700028" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle>Despite a short discussion of Rich&amp;#8217;s paranoia in the opening of the show, we mostly play it straight and stick to the security news. We found a few interesting stories this week, and the major theme seems to be &amp;#8220;stupidity&amp;#8221;. On one side i</itunes:subtitle><itunes:author>Martin McKeay</itunes:author><itunes:summary>Despite a short discussion of Rich&amp;#8217;s paranoia in the opening of the show, we mostly play it straight and stick to the security news. We found a few interesting stories this week, and the major theme seems to be &amp;#8220;stupidity&amp;#8221;. On one side is a prison that let an inmate reprogram their computer system, on [...]</itunes:summary><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords></item>
		<item>
		<title>The Network Security Podcast, Episode 167</title>
		<link>http://netsecpodcast.com/?p=334</link>
		<comments>http://netsecpodcast.com/?p=334#comments</comments>
		<pubDate>Wed, 23 Sep 2009 04:27:35 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Podcast]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=334</guid>
		<description><![CDATA[Before we dig into this week&#8217;s security news, we diverge (slightly) to talk about Emergency- This Book Will Save Your Life and disaster planning. I (Rich) read the book last week and found it to be a ton of fun; it&#8217;s the story of a journalist who slowly descends into the rabbit hole of the [...]]]></description>
			<content:encoded><![CDATA[<p>Before we dig into this week&#8217;s security news, we diverge (slightly) to talk about <a href="http://amzn.com/0060898771"><em>Emergency- This Book Will Save Your Life</em></a> and disaster planning. I (Rich) read the book last week and found it to be a ton of fun; it&#8217;s the story of a journalist who slowly descends into the rabbit hole of the survivalist community. Well written, with plenty of good advice and stories. It&#8217;s not really a survival guide, more of a personal story and lessons learned.</p>
<p>I had a bit of a shock as I realized that most of my disaster plans aren&#8217;t relevant anymore as my life status has changed. I used to be single, in Colorado, and part of the response infrastructure (which means access to a ton of resources). Now I&#8217;m married, with a child and pets. I can&#8217;t really run off with a backpack and play hero if something bad hits.</p>
<p>We also delve into some IT related disaster planning, so this isn&#8217;t a complete non-sequiter.</p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-092209-ep167.mp3">Network Security Podcast, Episode 167<br />
Time:  32:13</a></p>
<p><strong>Show Notes:</strong></p>
<ul>
<li><a href="http://www.theregister.co.uk/2009/09/16/power_grid_weakness/">Chinese researchers figure out how to take down the West coast power grid by hitting a smaller provider</a>. Oh joy. At least they disclosed it.</li>
<li><a href="http://www.journal-news.net/page/content.detail/id/525232.html">Some idiot logs into Facebook while robbing a house</a>. This is now my favorite dumb-criminal move of the year. Oh wait, did I forget to mention he left himself logged in after he left?</li>
<li><a href="http://pandalabs.pandasecurity.com/archive/Your-Facebook-account-is-worth-_2400_100.aspx">Some site claims to hack any Facebook account for $100</a>. Or to pretend to hack it for $100. You get to guess which one it is.</li>
<li><a href="http://www.wired.com/threatlevel/2009/09/disloyalcomputing/">Court rules that just because you did something your employer didn&#8217;t like with authorized access to a computer, it isn&#8217;t a computer crime</a>. Well done.</li>
<li><a href="http://www.scienceblog.com/cms/controlling-language-security-25307.html">Researchers come up with an idea for a new home security markup language</a>. Good intentions, not sure it will matter.</li>
<li><a href="http://ha.ckers.org/blog/20090918/what-star-trek-predicts-about-the-future-of-information-security/">RSnake on Star Trek and security</a>. If you read one post this year, it should be this one.</li>
<li>Tonight&#8217;s music:  <a href="http://www.musicalley.com/music/listeners/artistdetails.php?BandHash=580568cbd83f193b7afcede67a1c60d4">Me and by Wife by Root Doctor</a></li>
</ul>
<p>To get $300 off Hacker Halted 2009 in Miami, Florida from September 23-25, click on the banner below, select VIP Pass under Conference Pass and and enter code “<strong>HHUSA-MM-AP999</strong>“<br />
<a href="https://www.eccouncil.org/forms2/TakeSurvey.aspx?SurveyID=n4KJ562"><img src="https://mail.google.com/mail/?ui=2&amp;ik=814acf3f86&amp;view=att&amp;th=123296fcb8d5adbd&amp;attid=0.1.2&amp;disp=emb&amp;zw" border="2" alt="" width="370" height="83" /></a></p>
<div><img src="http://img.zemanta.com/pixy.gif?x-id=a0253127-550d-84c2-bf89-2878da3956c0" alt="" /></div>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=334</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.libsyn.com/media/mckeay/nsp-092209-ep167.mp3" length="38662520" type="audio/mpeg" />
		<media:content url="http://media.libsyn.com/media/mckeay/nsp-092209-ep167.mp3" fileSize="38662520" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle>Before we dig into this week&amp;#8217;s security news, we diverge (slightly) to talk about Emergency- This Book Will Save Your Life and disaster planning. I (Rich) read the book last week and found it to be a ton of fun; it&amp;#8217;s the story of a journalist </itunes:subtitle><itunes:author>Martin McKeay</itunes:author><itunes:summary>Before we dig into this week&amp;#8217;s security news, we diverge (slightly) to talk about Emergency- This Book Will Save Your Life and disaster planning. I (Rich) read the book last week and found it to be a ton of fun; it&amp;#8217;s the story of a journalist who slowly descends into the rabbit hole of the [...]</itunes:summary><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords></item>
		<item>
		<title>Network Security Podcast, Episode 166</title>
		<link>http://netsecpodcast.com/?p=330</link>
		<comments>http://netsecpodcast.com/?p=330#comments</comments>
		<pubDate>Tue, 15 Sep 2009 22:57:51 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Podcast]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=330</guid>
		<description><![CDATA[You&#8217;d think that after taking off last week Rich and I would be back and better than ever this week.&#160; But Mr. Mogull had a speaking engagement elsewhere this week so I was joined once again by Zach Lanier of N0where.org.&#160; In fact, Zach has agreed to join us on a regular basis and will [...]]]></description>
			<content:encoded><![CDATA[<p>You&#8217;d think that after taking off last week Rich and I would be back and better than ever this week.&nbsp; But Mr. Mogull had a speaking engagement elsewhere this week so I was joined once again by <a href="http://blog.n0where.org/">Zach Lanier of N0where.org</a>.&nbsp; In fact, Zach has agreed to join us on a regular basis and will be contributing a weekly segment where he&#8217;ll be doing a deeper dive on a news story each week.&nbsp; At least that&#8217;s the plan at this time, but those are always subject to change.&nbsp; I also had a chance to interview Tim Mather about his (along with Subra Kumaraswany and Shahed Latif) upcoming book, <a href="http://oreilly.com/catalog/9780596802769/#top">Cloud Security and Privacy</a>.&nbsp; I find it interesting to hear about how much the idea of the Cloud has changed since Tim started work on the book.&nbsp; </p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-091509-ep166.mp3">Network Security Podcast, Episode 166<br />Time:&nbsp; 40:14</a></p>
<p><b>Show Notes:</b>
<ul>
<li><a href="http://www.zone-h.org/news/id/4715">FBI Jobs site gets hacked</a> &#8211; SQL Injection against an FBI site?&nbsp; I&#8217;d be embarrassed.</li>
<li><a href="http://www.darkreading.com/securityservices/security/management/showArticle.jhtml?articleID=219700098">University research exposes potential vulnerabilities in cloud computing</a> &#8211; Emphasis on the &#8216;potential&#8217;, but it&#8217;s an issue we do have to beware of.</li>
<li><a href="http://www.csoonline.com/article/501694/End_to_End_Encryption_The_PCI_Security_Holy_Grail?page=1">End-to-end encryption:&nbsp; The PCI security Holy Grail</a> &#8211; It all depends how we define &#8216;end-to-end&#8217;.</li>
<li><a href="http://www.ticalc.org/archives/news/articles/14/145/145273.html">All TI signing keys factored</a></li>
<li>Tonight&#8217;s music: <a href="http://www.musicalley.com/music/producers/producerLibrary/artistdetails.php?BandHash=c5e02a8d500adcf459a4949add77130f#">Black Rebel Motorcycle Club with Whenever You&#8217;re Ready</a></li>
</ul>
<p>To get $300 off Hacker Halted 2009 in Miami, Florida from September 23-25, click on the banner below, select VIP Pass under Conference Pass and and enter code “<b>HHUSA-MM-AP999</b>“<br /><a href="https://www.eccouncil.org/forms2/TakeSurvey.aspx?SurveyID=n4KJ562"><img src="https://mail.google.com/mail/?ui=2&amp;ik=814acf3f86&amp;view=att&amp;th=123296fcb8d5adbd&amp;attid=0.1.2&amp;disp=emb&amp;zw" border="2" height="83" width="370" /></a></p>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=a0253127-550d-84c2-bf89-2878da3956c0" /></div>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=330</wfw:commentRss>
		<slash:comments>1</slash:comments>
<enclosure url="http://media.libsyn.com/media/mckeay/nsp-091509-ep166.mp3" length="48300199" type="audio/mpeg" />
		<media:content url="http://media.libsyn.com/media/mckeay/nsp-091509-ep166.mp3" fileSize="48300199" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle>You&amp;#8217;d think that after taking off last week Rich and I would be back and better than ever this week.&amp;#160; But Mr. Mogull had a speaking engagement elsewhere this week so I was joined once again by Zach Lanier of N0where.org.&amp;#160; In fact, Zach has</itunes:subtitle><itunes:author>Martin McKeay</itunes:author><itunes:summary>You&amp;#8217;d think that after taking off last week Rich and I would be back and better than ever this week.&amp;#160; But Mr. Mogull had a speaking engagement elsewhere this week so I was joined once again by Zach Lanier of N0where.org.&amp;#160; In fact, Zach has agreed to join us on a regular basis and will [...]</itunes:summary><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords></item>
		<item>
		<title>No podcast tonight</title>
		<link>http://netsecpodcast.com/?p=328</link>
		<comments>http://netsecpodcast.com/?p=328#comments</comments>
		<pubDate>Wed, 09 Sep 2009 02:48:03 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Podcast]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=328</guid>
		<description><![CDATA[Over the last few days both Rich and I have tried taking a little bit of time away from our computers and cell phones.&#160; We both succeeded to a greater or lesser degree, though my efforts to avoid computers was hampered by a bright, shiny new Asus EEE 1005HA.&#160; We&#8217;re feeling refreshed and relaxed now, [...]]]></description>
			<content:encoded><![CDATA[<p>Over the last few days both Rich and I have tried taking a little bit of time away from our computers and cell phones.&nbsp; We both succeeded to a greater or lesser degree, though my efforts to avoid computers was hampered by a bright, shiny new Asus EEE 1005HA.&nbsp; We&#8217;re feeling refreshed and relaxed now, so there is no podcast tonight.&nbsp; Of course, the reality is that since we both spent days away from the Internet, we really didn&#8217;t have any stories that we had read thoroughly enough to really comment on.&nbsp; Not that we&#8217;ve ever let that stop us before.</p>
<p>We will be returning to our regularly scheduled podcast next week.&nbsp; Promise.</p>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=ecc0cc03-3813-80d3-8b78-3eb2cb3b2105" /></div>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=328</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Network Security Podcast, Episode 165</title>
		<link>http://netsecpodcast.com/?p=326</link>
		<comments>http://netsecpodcast.com/?p=326#comments</comments>
		<pubDate>Wed, 02 Sep 2009 01:48:50 +0000</pubDate>
		<dc:creator>martin@mckeay.net (Martin McKeay)</dc:creator>
				<category><![CDATA[Podcast]]></category>

		<guid isPermaLink="false">http://netsecpodcast.com/?p=326</guid>
		<description><![CDATA[Rich is off talking at a local OWASP meeting and I&#8217;m sitting at home tonight trying to figure out Overlord.&#160; My kids are finally adjusting to being called Minion 1 and Minion 2.&#160; Rich and I hit some of our favorite topics like PCI and Apple updates, as well as gaming DDoS attacks and rules [...]]]></description>
			<content:encoded><![CDATA[<p>Rich is off talking at a local OWASP meeting and I&#8217;m sitting at home tonight trying to figure out Overlord.&nbsp; My kids are finally adjusting to being called Minion 1 and Minion 2.&nbsp; Rich and I hit some of our favorite topics like PCI and Apple updates, as well as gaming DDoS attacks and rules about searching your laptop.&nbsp; It should be no surprise to anyone that Rich and I would both like to go back to a time where actual evidence was needed before you can take a traveler&#8217;s laptop.</p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-090109-ep165.mp3">Network Security Podcast, Episode 165, September 1, 2009<br />Time:&nbsp; 33:29</a></p>
<p><b>Show Notes:</b>
<ul>
<li><a href="http://searchsecurity.techtarget.com/news/column/0,294698,sid14_gci1366236,00.html">Security expert&#8217;s PCI analysis misguided, says PCI Council GM</a> &#8211; I&#8217;m very glad that Bob Russo is paying attention to the conversation about PCI.</li>
<li><a href="http://securosis.com/blog/some-follow-up-questions-for-bob-russo-general-manager-of-the-pci-council">Some follow-up questions for Bob Russo, GM of the PCI Council</a> &#8211; Rich&#8217;s response to Mr. Russo&#8217;s post at SearchSecurity.&nbsp; And Mr. Russo&#8217;s comments on Rich&#8217;s post.</li>
<li><a href="http://www.networkworld.com/news/2009/082809-china-game-boss-sniped-rivals.html">China game boss sniped rivals, took down Internet</a></li>
<li><a href="http://www.dhs.gov/ynews/releases/pr_1251393255852.shtm">DHS:&nbsp; Secretary Napolitano announces new directives on border searches of electronic media</a></li>
<li><a href="http://www.networkworld.com/news/2009/082809-new-travel-search-rules-just.html">&#8216;New&#8217; travel search rules just won&#8217;t fly</a></li>
<li><a href="http://www.scmagazineus.com/AV-makers-fault-Apple-on-Snow-Leopard-malware-scanner/article/147766/?DCMP=EMC-SCUS_Newswire">AV makers fault Apple on Snow Leopard malware scanner</a></li>
<li><a href="http://db.tidbits.com/article/10509">Peering inside Snow Leopard security</a> &#8211; I forget sometimes that Rich really is one of the experts on this topic.</li>
<li>Tonight&#8217;s Music:&nbsp; <a href="http://www.musicalley.com/music/producers/producerLibrary/artistdetails.php?BandHash=c5e02a8d500adcf459a4949add77130f#">Black Rebel Motorcycle Club with Weapon of Choice</a></li>
</ul>
<p>To get $300 off Hacker Halted 2009 in Miami, Florida from September 23-25, click on the banner below, select VIP Pass under Conference Pass and and enter code “<b>HHUSA-MM-AP999</b>“<br /><a href="https://www.eccouncil.org/forms2/TakeSurvey.aspx?SurveyID=n4KJ562"><img src="https://mail.google.com/mail/?ui=2&amp;ik=814acf3f86&amp;view=att&amp;th=123296fcb8d5adbd&amp;attid=0.1.2&amp;disp=emb&amp;zw" border="2" height="83" width="370" /></a></p>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=1ad3e9cd-3d3c-8f86-b89c-049827c27f97" /></div>
]]></content:encoded>
			<wfw:commentRss>http://netsecpodcast.com/?feed=rss2&amp;p=326</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.libsyn.com/media/mckeay/nsp-090109-ep165.mp3" length="40201717" type="audio/mpeg" />
		<media:content url="http://media.libsyn.com/media/mckeay/nsp-090109-ep165.mp3" fileSize="40201717" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle>Rich is off talking at a local OWASP meeting and I&amp;#8217;m sitting at home tonight trying to figure out Overlord.&amp;#160; My kids are finally adjusting to being called Minion 1 and Minion 2.&amp;#160; Rich and I hit some of our favorite topics like PCI and Appl</itunes:subtitle><itunes:author>Martin McKeay</itunes:author><itunes:summary>Rich is off talking at a local OWASP meeting and I&amp;#8217;m sitting at home tonight trying to figure out Overlord.&amp;#160; My kids are finally adjusting to being called Minion 1 and Minion 2.&amp;#160; Rich and I hit some of our favorite topics like PCI and Apple updates, as well as gaming DDoS attacks and rules [...]</itunes:summary><itunes:keywords>Network,Security,Computer,PCI,Hacking,privacy</itunes:keywords></item>
	<media:credit role="author">Martin McKeay</media:credit><media:rating>nonadult</media:rating></channel>
</rss>
