<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:rawvoice="http://www.rawvoice.com/rawvoiceRssModule/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Privacy Now is brought to you by eCrypt Technologies</title>
	
	<link>http://privacynow.tv</link>
	<description>Your source for privacy and cyber security news and tips</description>
	<lastBuildDate>Thu, 25 Aug 2011 19:28:37 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<!-- podcast_generator="Blubrry PowerPress/2.0.2" -->
	<itunes:summary>Your source for privacy and cyber security news and tips</itunes:summary>
	<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
	<itunes:explicit>no</itunes:explicit>
	<itunes:image href="http://privacynow.tv/wp-content/plugins/powerpress/itunes_default.jpg" />
	<copyright>eCrypt Technologies, Inc.</copyright>
	<itunes:subtitle>Your source for privacy and cyber security news and tips</itunes:subtitle>
	<image>
		<title>Privacy Now is brought to you by eCrypt Technologies</title>
		<url>http://privacynow.tv/wp-content/plugins/powerpress/rss_default.jpg</url>
		<link>http://privacynow.tv</link>
	</image>
		<rawvoice:location>Vancouver, BC</rawvoice:location>
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/pvntv" /><feedburner:info uri="pvntv" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><item>
		<title>PrivacyNowRadio Episode 11: Time for a road trip</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/gbviJk0vkDQ/</link>
		<comments>http://privacynow.tv/2011/05/privacynowradio-episode-11-time-for-a-road-trip/#comments</comments>
		<pubDate>Fri, 27 May 2011 16:51:53 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[Brad Haines]]></category>
		<category><![CDATA[ecrypt]]></category>
		<category><![CDATA[RenderMan]]></category>
		<category><![CDATA[travel safety]]></category>
		<category><![CDATA[Tris Hussey]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=684</guid>
		<description><![CDATA[This week we&#8217;re talking about Internet (and computer) security when you travel. Render is in Poland so he phoned in a segment called &#8220;Render&#8217;s Rant&#8221;, which actually inspired the rest of the show. Enjoy!]]></description>
			<content:encoded><![CDATA[<p>This week we&#8217;re talking about Internet (and computer) security when you travel. Render is in Poland so he phoned in a segment called &#8220;Render&#8217;s Rant&#8221;, which actually inspired the rest of the show. Enjoy!</p>

<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F05%2Fprivacynowradio-episode-11-time-for-a-road-trip%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/gbviJk0vkDQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/05/privacynowradio-episode-11-time-for-a-road-trip/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep11.mp3" length="5877468" type="audio/mpeg" />
			<itunes:keywords>Brad Haines,ecrypt,PrivacyNowRadio,RenderMan,travel safety,Tris Hussey</itunes:keywords>
		<itunes:subtitle>This week we're talking about Internet (and computer) security when you travel. Render is in Poland so he phoned in a segment called "Render's Rant", which actually inspired the rest of the show. Enjoy!</itunes:subtitle>
		<itunes:summary>This week we're talking about Internet (and computer) security when you travel. Render is in Poland so he phoned in a segment called "Render's Rant", which actually inspired the rest of the show. Enjoy!</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>12:14</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/05/privacynowradio-episode-11-time-for-a-road-trip/</feedburner:origLink></item>
		<item>
		<title>PrivacyNowRadio Episode 10: Dude, where’s my laptop?</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/K9uVmOn6bzQ/</link>
		<comments>http://privacynow.tv/2011/05/privacynowradio-episode-10-dude-wheres-my-laptop/#comments</comments>
		<pubDate>Fri, 20 May 2011 20:56:17 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[eCry]]></category>
		<category><![CDATA[ecrypt]]></category>
		<category><![CDATA[eCrypt Technologies]]></category>
		<category><![CDATA[full-disk encryption]]></category>
		<category><![CDATA[laptop security]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=676</guid>
		<description><![CDATA[It&#8217;s one of those dreaded things in our tech-centric lives—losing your laptop, smartphone or tablet. Whether you leave it behind accidentally or someone relieves you of it without your consent, the end result is the same—it sucks and you now have to worry about what is on that device. As (bad) luck would have it, our friend... <a href="http://privacynow.tv/2011/05/privacynowradio-episode-10-dude-wheres-my-laptop/"> [Continue Reading]</a>]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s one of those dreaded things in our tech-centric lives—losing your laptop, smartphone or tablet. Whether you leave it behind accidentally or someone relieves you of it without your consent, the end result is the same—it sucks and you now have to worry about what is on that device. As (bad) luck would have it, our friend Render&#8217;s laptop sprouted legs and walked away on him this past week so we made that the topic of this week&#8217;s show: Losing your laptop.</p>
<p>Render is okay, although with a lighter wallet, because he had backups and used full-disk encryption. He doesn&#8217;t have to worry about the thief being able to get anything usable off the laptop.</p>
<p>Full-disk encryption might not be for everyone, but it <em>is</em> something people who travel around with their laptops <em>should</em> consider. Lots of tools out there to do it (Windows, OS X, and Linux all have built-in tools as well) and there are factors to consider beyond security so &#8230; let&#8217;s listen:</p>

<p>My tip of the week is setting up &#8220;Find My iPhone&#8221; in iOS devices. All it takes is activating MobileMe with your current iTunes account and downloading the app. This works for iPads (1 and 2) and iPhone 4 series running iOS 4—sorry iPhone 3 3GS folks I think you&#8217;re left out on this one. Here are the screens on your iPhone that you&#8217;ll need to go through to turn on MobileMe and then download the app from the App Store (it&#8217;s all free).</p>
<p><a href="http://privacynow.tv/wp-content/uploads/2011/05/Photo-May-20-10-32-07-AM.png"><img class="alignnone size-large wp-image-677" title="Photo May 20, 10 32 07 AM" src="http://privacynow.tv/wp-content/uploads/2011/05/Photo-May-20-10-32-07-AM-1024x510.png" alt="" width="614" height="306" /></a></p>
<p>Hat tip to <a href="http://todmaffin.com/">Tod Maffin</a> this week because I picked up some great new tips for making this podcast better.</p>
<p>Music is by <a href="http://www.penmachine.com/podcast/2006/10/mighty-mullane-full-version.html">Derek K. Miller</a> and, yes, he really did write it for me.</p>
<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F05%2Fprivacynowradio-episode-10-dude-wheres-my-laptop%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/K9uVmOn6bzQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/05/privacynowradio-episode-10-dude-wheres-my-laptop/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep10.mp3" length="10573449" type="audio/mpeg" />
			<itunes:keywords>eCry,ecrypt,eCrypt Technologies,full-disk encryption,laptop security,PrivacyNowRadio</itunes:keywords>
		<itunes:subtitle>It's one of those dreaded things in our tech-centric lives—losing your laptop, smartphone or tablet. Whether you leave it behind accidentally or someone relieves you of it without your consent, the end result is the same—it sucks and you now have to wo...</itunes:subtitle>
		<itunes:summary>It's one of those dreaded things in our tech-centric lives—losing your laptop, smartphone or tablet. Whether you leave it behind accidentally or someone relieves you of it without your consent, the end result is the same—it sucks and you now have to worry about what is on that device. As (bad) luck would have it, our friend Render's laptop sprouted legs and walked away on him this past week so we made that the topic of this week's show: Losing your laptop.

Render is okay, although with a lighter wallet, because he had backups and used full-disk encryption. He doesn't have to worry about the thief being able to get anything usable off the laptop.

Full-disk encryption might not be for everyone, but it is something people who travel around with their laptops should consider. Lots of tools out there to do it (Windows, OS X, and Linux all have built-in tools as well) and there are factors to consider beyond security so ... let's listen:



My tip of the week is setting up "Find My iPhone" in iOS devices. All it takes is activating MobileMe with your current iTunes account and downloading the app. This works for iPads (1 and 2) and iPhone 4 series running iOS 4—sorry iPhone 3 3GS folks I think you're left out on this one. Here are the screens on your iPhone that you'll need to go through to turn on MobileMe and then download the app from the App Store (it's all free).



Hat tip to Tod Maffin this week because I picked up some great new tips for making this podcast better.

Music is by Derek K. Miller and, yes, he really did write it for me.</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>22:01</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/05/privacynowradio-episode-10-dude-wheres-my-laptop/</feedburner:origLink></item>
		<item>
		<title>PrivacyNowRadio Episode 9: LastPass passes the test</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/vlXFho3uZwU/</link>
		<comments>http://privacynow.tv/2011/05/privacynowradio-episode-9-lastpass-passes-the-test/#comments</comments>
		<pubDate>Fri, 06 May 2011 12:00:55 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[derek k miller]]></category>
		<category><![CDATA[eCry]]></category>
		<category><![CDATA[eCrypt Technologies]]></category>
		<category><![CDATA[eCrypt.me]]></category>
		<category><![CDATA[LastPass]]></category>
		<category><![CDATA[penmachine]]></category>
		<category><![CDATA[RenderMan]]></category>
		<category><![CDATA[security podcast]]></category>
		<category><![CDATA[Tris Hussey]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=671</guid>
		<description><![CDATA[This episode is dedicated to the memory of my friend Derek K. Miller who passed away this week at the age of 41. His last post is something everyone should read and this podcast starts and ends with his music. While Sony is still big news, and getting bigger with class-action lawsuits being filed this... <a href="http://privacynow.tv/2011/05/privacynowradio-episode-9-lastpass-passes-the-test/"> [Continue Reading]</a>]]></description>
			<content:encoded><![CDATA[<p>This episode is dedicated to the memory of my friend Derek K. Miller who passed away this week at the age of 41. <a href="http://penmachine-bu.appspot.com/2011/05/the-last-post">His last post</a> is something everyone should read and this podcast starts and ends with his music.</p>

<p>While Sony is still big news, and getting bigger with class-action lawsuits being filed this week, there <em>are</em> other things making news in this realm.</p>
<p>A British consumer website <a href="http://www.infosecurity-magazine.com/view/17790/which-slams-hushmail-into-last-position-in-the-webmail-stakes/?utm_source=twitterfeed&amp;utm_medium=twitter">rated Hushmail the worst webmail service around</a>. I can&#8217;t hardly argue with that, of course.</p>
<p>The Pentagon is taking steps to reduce the chances of another Wikileaks-type incident from happening again—<a href="http://www.washingtonpost.com/lifestyle/style/pentagon_takes_steps_to_prevent_internal_security_breaches_after_wikileaks_disclosure/2011/05/02/AFIptkrF_story.html?nav=emailpage">Pentagon takes steps to prevent internal security breaches after WikiLeaks disclosure &#8211; The Washington Post</a>—good luck with that.</p>
<p>Nikon&#8217;s image verification system was cracked—<a href="http://homelandsecuritynewswire.com/hackers-crack-nikons-image-verification-system">Hackers crack Nikon&#8217;s image verification system | Homeland Security News Wire</a>—which has potentially far-reaching impacts on law and privacy.</p>
<p>Mozilla is standing up to Homeland Security by refusing to take down a Firefox extension that allows people to automatically be redirected to the new URLs of rogue sites taken over by authorities:</p>
<p>&nbsp;</p>
<ul>
<li><a href="http://www.readwriteweb.com/archives/mozilla_takes_a_stand_against_department_of_homela.php?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+readwriteweb+%28ReadWriteWeb%29">Mozilla Takes a Stand Against Department of Homeland Security</a></li>
<li><a href="http://www.boingboing.net/2011/05/05/mozilla-tells-dhs-we.html?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+boingboing%2FiBag+%28Boing+Boing%29">Mozilla tells DHS: we won&#8217;t help you censor the Internet &#8211; Boing Boing</a></li>
<li><a href="http://boingboing.net/2011/04/15/mafiaa-fire-a-firefo.html">MAFIAA Fire: a Firefox add-on to reverse US government domain censorship &#8211; Boing Boing</a></li>
</ul>
<p>Mozilla&#8217;s position might not be a popular stance, but it is certainly the right one.</p>
<p>Note to Hungry&#8217;s spies, people are spying on you—<a href="http://nakedsecurity.sophos.com/2008/09/16/spy-vs-spy-spyware-found-at-hungarian-secret-service/">Spy vs spy: Spyware found at Hungarian secret service | Naked Security</a>—this item has all the twists and turns of a made-for-TV movie.</p>
<p>Finally, the <em>possible</em> breach and at LastPass and the fallout from it. By all accounts, though inconvenient to users for a short time, LastPass did a lot right. Render and I talk about this in depth in today&#8217;s episode. Here are just some of the post about it:</p>
<p>&nbsp;</p>
<ul>
<li><a href="http://blog.lastpass.com/2011/05/lastpass-security-notification.html">LastPass : The last password you&#8217;ll have to remember: LastPass Security Notification</a></li>
<li><a href="http://www.zdnet.com/blog/government/lastpass-melts-down-and-leaves-many-users-hopefully-temporarily-stranded-without-their-passwords/10351">LastPass melts down and leaves many users (hopefully, temporarily) stranded without their passwords | ZDNet</a></li>
<li><a href="http://krebsonsecurity.com/2011/05/lastpass-forces-users-to-pick-another-password/?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+KrebsOnSecurity+%28Krebs+on+Security%29">LastPass Forces Users to Pick Another Password — Krebs on Security</a></li>
<li><a href="http://techcrunch.com/2011/05/05/password-manager-last-pass-possibly-hacked/?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+Techcrunch+%28TechCrunch%29">Password Manager Last Pass Possibly Hacked</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/05/05/lastpass-tells-users-to-change-master-password-after-network-traffic-oddity/?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+nakedsecurity+%28Naked+Security+-+Sophos%29">LastPass forces users to change master password after network traffic oddity | Naked Security</a></li>
<li><a href="http://download.cnet.com/8301-2007_4-20060191-12.html?part=rss&amp;tag=feed&amp;subj=News-Security">Why LastPass data breach isn&#8217;t the last straw | The Download Blog &#8211; Download.com</a></li>
</ul>
<p>In the show Render talks about the book <a href="http://www.amazon.ca/Perfect-Password-Selection-Protection-Authentication/dp/1597490415/ref=sr_1_1?ie=UTF8&amp;qid=1304646359&amp;sr=8-1">Perfect Passwords</a>, it&#8217;s on Amazon, but looks like it might be in short supply, so grab a copy quickly if you want one.</p>
<p>Music is by <a href="http://www.penmachine.com/podcast/2006/10/mighty-mullane-full-version.html">Derek K. Miller</a> and, yes, he really did write it for me.</p>
<p><br class="final-break" /></p>
<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F05%2Fprivacynowradio-episode-9-lastpass-passes-the-test%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/vlXFho3uZwU" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/05/privacynowradio-episode-9-lastpass-passes-the-test/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep9.mp3" length="13283914" type="audio/mpeg" />
			<itunes:keywords>derek k miller,eCry,eCrypt Technologies,eCrypt.me,LastPass,penmachine,RenderMan,security podcast,Tris Hussey</itunes:keywords>
		<itunes:subtitle>This episode is dedicated to the memory of my friend Derek K. Miller who passed away this week at the age of 41. His last post is something everyone should read and this podcast starts and ends with his music. - While Sony is still big news,</itunes:subtitle>
		<itunes:summary>This episode is dedicated to the memory of my friend Derek K. Miller who passed away this week at the age of 41. His last post is something everyone should read and this podcast starts and ends with his music.



While Sony is still big news, and getting bigger with class-action lawsuits being filed this week, there are other things making news in this realm.

A British consumer website rated Hushmail the worst webmail service around. I can't hardly argue with that, of course.

The Pentagon is taking steps to reduce the chances of another Wikileaks-type incident from happening again—Pentagon takes steps to prevent internal security breaches after WikiLeaks disclosure - The Washington Post—good luck with that.

Nikon's image verification system was cracked—Hackers crack Nikon's image verification system | Homeland Security News Wire—which has potentially far-reaching impacts on law and privacy.

Mozilla is standing up to Homeland Security by refusing to take down a Firefox extension that allows people to automatically be redirected to the new URLs of rogue sites taken over by authorities:

 

	Mozilla Takes a Stand Against Department of Homeland Security
	Mozilla tells DHS: we won't help you censor the Internet - Boing Boing
	MAFIAA Fire: a Firefox add-on to reverse US government domain censorship - Boing Boing

Mozilla's position might not be a popular stance, but it is certainly the right one.

Note to Hungry's spies, people are spying on you—Spy vs spy: Spyware found at Hungarian secret service | Naked Security—this item has all the twists and turns of a made-for-TV movie.

Finally, the possible breach and at LastPass and the fallout from it. By all accounts, though inconvenient to users for a short time, LastPass did a lot right. Render and I talk about this in depth in today's episode. Here are just some of the post about it:

 

	LastPass : The last password you'll have to remember: LastPass Security Notification
	LastPass melts down and leaves many users (hopefully, temporarily) stranded without their passwords | ZDNet
	LastPass Forces Users to Pick Another Password — Krebs on Security
	Password Manager Last Pass Possibly Hacked
	LastPass forces users to change master password after network traffic oddity | Naked Security
	Why LastPass data breach isn't the last straw | The Download Blog - Download.com

In the show Render talks about the book Perfect Passwords, it's on Amazon, but looks like it might be in short supply, so grab a copy quickly if you want one.

Music is by Derek K. Miller and, yes, he really did write it for me.</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>27:40</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/05/privacynowradio-episode-9-lastpass-passes-the-test/</feedburner:origLink></item>
		<item>
		<title>PrivacyNowRadio Episode 8: You got gamed</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/wGTjTrJ2n9E/</link>
		<comments>http://privacynow.tv/2011/04/privacynowradio-episode-8-you-got-gamed/#comments</comments>
		<pubDate>Sat, 30 Apr 2011 06:02:55 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[Brad Haines]]></category>
		<category><![CDATA[ecrypt]]></category>
		<category><![CDATA[eCrypt.me]]></category>
		<category><![CDATA[identity theft]]></category>
		<category><![CDATA[online identity]]></category>
		<category><![CDATA[online privacy]]></category>
		<category><![CDATA[online security]]></category>
		<category><![CDATA[PSN hack]]></category>
		<category><![CDATA[RenderMan]]></category>
		<category><![CDATA[Tris Hussey]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=667</guid>
		<description><![CDATA[The big news over the past week and a bit has been the hack, and later revealed to be massive breach of data, at Sony&#8217;s PlayStationNetwork. You can keep up with all the articles I find about the PSN hack, and lots of other news, in my public Evernote notebook. In the meantime, we have... <a href="http://privacynow.tv/2011/04/privacynowradio-episode-8-you-got-gamed/"> [Continue Reading]</a>]]></description>
			<content:encoded><![CDATA[<p>The big news over the past week and a bit has been the hack, and later revealed to be massive breach of data, at Sony&#8217;s PlayStationNetwork. You can keep up with all the articles I find about the PSN hack, and lots of other news, in my public <a href="https://www.evernote.com/pub/trishussey/pnr">Evernote notebook</a>. In the meantime, we have a (somewhat belated) show for this week all about &#8230;</p>
<p>Yes, the PSN hack. Why? Because the effects are going to be huge in the long term. Maybe having the third kind of data breach in a short while will start a <em>serious</em> discussion about how we transmit, share, and store identity information online.</p>
<p>This is also a special show because Renderman joins me again &#8230; and will be joining me more often &#8230; more about that in the show. Without more introduction:</p>

<p>In the show Render and I talk about Bruce Schneier&#8217;s TEDxPSU talk about security. Really, you should watch it. Which is why I embedded it below for you:</p>
<p><object width="446" height="326"><param name="movie" value="http://video.ted.com/assets/player/swf/EmbedPlayer.swf"></param><param name="allowFullScreen" value="true" /><param name="allowScriptAccess" value="always"/><param name="wmode" value="transparent"></param><param name="bgColor" value="#ffffff"></param><param name="flashvars" value="vu=http://video.ted.com/talk/stream/2010X/Blank/BruceSchneier_2010X-320k.mp4&#038;su=http://images.ted.com/images/ted/tedindex/embed-posters/BruceSchneier-2010X.embed_thumbnail.jpg&#038;vw=432&#038;vh=240&#038;ap=0&#038;ti=1132&#038;lang=&#038;introDuration=15330&#038;adDuration=4000&#038;postAdDuration=830&#038;adKeys=talk=bruce_schneier;year=2010;theme=unconventional_explanations;theme=bold_predictions_stern_warnings;theme=a_taste_of_tedx;theme=new_on_ted_com;event=New+on+TED.com;tag=Culture;tag=Global+Issues;tag=Technology;tag=security;&#038;preAdTag=tconf.ted/embed;tile=1;sz=512x288;" /><embed src="http://video.ted.com/assets/player/swf/EmbedPlayer.swf" pluginspace="http://www.macromedia.com/go/getflashplayer" type="application/x-shockwave-flash" wmode="transparent" bgColor="#ffffff" width="446" height="326" allowFullScreen="true" allowScriptAccess="always" flashvars="vu=http://video.ted.com/talk/stream/2010X/Blank/BruceSchneier_2010X-320k.mp4&#038;su=http://images.ted.com/images/ted/tedindex/embed-posters/BruceSchneier-2010X.embed_thumbnail.jpg&#038;vw=432&#038;vh=240&#038;ap=0&#038;ti=1132&#038;lang=&#038;introDuration=15330&#038;adDuration=4000&#038;postAdDuration=830&#038;adKeys=talk=bruce_schneier;year=2010;theme=unconventional_explanations;theme=bold_predictions_stern_warnings;theme=a_taste_of_tedx;theme=new_on_ted_com;event=New+on+TED.com;tag=Culture;tag=Global+Issues;tag=Technology;tag=security;"></embed></object></p>
<p>Music is by <a href="http://www.penmachine.com/podcast/2006/10/mighty-mullane-full-version.html" target="_blank">Derek K. Miller</a> and, yes, he really did write it for me.</p>
<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F04%2Fprivacynowradio-episode-8-you-got-gamed%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/wGTjTrJ2n9E" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/04/privacynowradio-episode-8-you-got-gamed/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep8.mp3" length="12713609" type="audio/mpeg" />
			<itunes:keywords>Brad Haines,ecrypt,eCrypt.me,identity theft,online identity,online privacy,online security,PrivacyNowRadio,PSN hack,RenderMan,Tris Hussey</itunes:keywords>
		<itunes:subtitle>The big news over the past week and a bit has been the hack, and later revealed to be massive breach of data, at Sony's PlayStationNetwork. You can keep up with all the articles I find about the PSN hack, and lots of other news,</itunes:subtitle>
		<itunes:summary>The big news over the past week and a bit has been the hack, and later revealed to be massive breach of data, at Sony's PlayStationNetwork. You can keep up with all the articles I find about the PSN hack, and lots of other news, in my public Evernote notebook. In the meantime, we have a (somewhat belated) show for this week all about ...

Yes, the PSN hack. Why? Because the effects are going to be huge in the long term. Maybe having the third kind of data breach in a short while will start a serious discussion about how we transmit, share, and store identity information online.

This is also a special show because Renderman joins me again ... and will be joining me more often ... more about that in the show. Without more introduction:



In the show Render and I talk about Bruce Schneier's TEDxPSU talk about security. Really, you should watch it. Which is why I embedded it below for you:

 

Music is by Derek K. Miller and, yes, he really did write it for me.</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>26:29</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/04/privacynowradio-episode-8-you-got-gamed/</feedburner:origLink></item>
		<item>
		<title>PrivacyNowRadio Episode 7: Your iPhone spies on you and Dropbox can tattle</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/azQMtHmTOTQ/</link>
		<comments>http://privacynow.tv/2011/04/privacynowradio-episode-7-your-iphone-spies-on-you-and-dropbox-can-tattle/#comments</comments>
		<pubDate>Fri, 22 Apr 2011 12:00:21 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[cloud storage]]></category>
		<category><![CDATA[dropbox]]></category>
		<category><![CDATA[ecrypt]]></category>
		<category><![CDATA[eCrypt.me]]></category>
		<category><![CDATA[eCrypt.me file vault]]></category>
		<category><![CDATA[file encryption]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[iPhone tracking]]></category>
		<category><![CDATA[privacy news]]></category>
		<category><![CDATA[RenderMan]]></category>
		<category><![CDATA[secure storage]]></category>
		<category><![CDATA[security news]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=658</guid>
		<description><![CDATA[Yessir this is a two episode week here at PrivacyNowRadio. On Tuesday we posted an interview with Hon. Jay M. Cohen about cybercrime and cyberterrorism, but that episode didn&#8217;t have any news in it. Just that just wouldn&#8217;t do, we have a special second episode this week. The biggest news this week have been the... <a href="http://privacynow.tv/2011/04/privacynowradio-episode-7-your-iphone-spies-on-you-and-dropbox-can-tattle/"> [Continue Reading]</a>]]></description>
			<content:encoded><![CDATA[<p>Yessir this is a two episode week here at PrivacyNowRadio. On Tuesday we posted an interview with <a href="http://privacynow.tv/2011/04/privacynowradio-episode-6-cyberterrorism-will-happen/">Hon. Jay M. Cohen about cybercrime and cyberterrorism</a>, but that episode didn&#8217;t have any <em>news</em> in it. Just that just wouldn&#8217;t do, we have a special <em>second</em> episode this week.</p>

<p>The biggest news this week have been the revelations that Dropbox <em>could</em> decrypt your files that you stored with them <em>and</em> that, if presented with legal orders, decrypt the files and hand them over to the government. This is caused a lot of people to change how they use Dropbox (myself included). One great solution is the FileVault within <a href="https://www.ecrypt.me/">eCrypt.me</a>—and that happens to be my tip of the week!</p>
<p>The other big news of the week is that since iOS 4 came out iPhones and iPad 3G models have been tracking and recording where you&#8217;ve been with the device. Worse the information is stored in plain text on your machine. As you&#8217;ll hear in the interview segment, governments around the world want answers from Apple about this. For all our sakes, I hope we get one soon. Speaking of interviews, this week I chat again with <a href="http://renderlab.net/">Brad &#8220;Renderman&#8221; Haines</a> about both Dropbox and the iPhone tracking issue.</p>
<p>For the news of the week, I&#8217;ve decided that I want to share <em>more</em> news with you than just what I talk about in the show, so I&#8217;ve created a special public notebook in <a href="http://evernote.com/">Evernote</a> where I&#8217;ll store all the articles I think are interesting as I&#8217;m reading the news. You can read my<a href="https://www.evernote.com/pub/trishussey/pnr"> PrivacyNowRadio notebook on Evernote&#8217;s website</a> and even subscribe to it if you&#8217;re an Evernote user.</p>
<p>Enjoy the episode and if you&#8217;d like to know more about the eCrypt.me FileVault, here&#8217;s a handy screencast to show you all about it:</p>
<p><iframe title="YouTube video player" width="480" height="390" src="http://www.youtube.com/embed/wQSKUNAiE38" frameborder="0" allowfullscreen></iframe></p>
<p>Music is by <a href="http://www.penmachine.com/podcast/2006/10/mighty-mullane-full-version.html" target="_blank">Derek K. Miller</a> and, yes, he really did write it for me.</p>
<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F04%2Fprivacynowradio-episode-7-your-iphone-spies-on-you-and-dropbox-can-tattle%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/azQMtHmTOTQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/04/privacynowradio-episode-7-your-iphone-spies-on-you-and-dropbox-can-tattle/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep7.mp3" length="11892946" type="audio/mpeg" />
			<itunes:keywords>cloud storage,dropbox,ecrypt,eCrypt.me,eCrypt.me file vault,file encryption,hacking,iPhone tracking,privacy news,PrivacyNowRadio,RenderMan,secure storage</itunes:keywords>
		<itunes:subtitle>Yessir this is a two episode week here at PrivacyNowRadio. On Tuesday we posted an interview with Hon. Jay M. Cohen about cybercrime and cyberterrorism, but that episode didn't have any news in it. Just that just wouldn't do,</itunes:subtitle>
		<itunes:summary>Yessir this is a two episode week here at PrivacyNowRadio. On Tuesday we posted an interview with Hon. Jay M. Cohen about cybercrime and cyberterrorism, but that episode didn't have any news in it. Just that just wouldn't do, we have a special second episode this week.



The biggest news this week have been the revelations that Dropbox could decrypt your files that you stored with them and that, if presented with legal orders, decrypt the files and hand them over to the government. This is caused a lot of people to change how they use Dropbox (myself included). One great solution is the FileVault within eCrypt.me—and that happens to be my tip of the week!

The other big news of the week is that since iOS 4 came out iPhones and iPad 3G models have been tracking and recording where you've been with the device. Worse the information is stored in plain text on your machine. As you'll hear in the interview segment, governments around the world want answers from Apple about this. For all our sakes, I hope we get one soon. Speaking of interviews, this week I chat again with Brad "Renderman" Haines about both Dropbox and the iPhone tracking issue.

For the news of the week, I've decided that I want to share more news with you than just what I talk about in the show, so I've created a special public notebook in Evernote where I'll store all the articles I think are interesting as I'm reading the news. You can read my PrivacyNowRadio notebook on Evernote's website and even subscribe to it if you're an Evernote user.

Enjoy the episode and if you'd like to know more about the eCrypt.me FileVault, here's a handy screencast to show you all about it:



Music is by Derek K. Miller and, yes, he really did write it for me.</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>24:46</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/04/privacynowradio-episode-7-your-iphone-spies-on-you-and-dropbox-can-tattle/</feedburner:origLink></item>
		<item>
		<title>PrivacyNowRadio Episode 6: Cyberterrorism Will Happen</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/ToUGpnwFIDo/</link>
		<comments>http://privacynow.tv/2011/04/privacynowradio-episode-6-cyberterrorism-will-happen/#comments</comments>
		<pubDate>Tue, 19 Apr 2011 09:30:25 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[Cybercrime]]></category>
		<category><![CDATA[cyberterrorism]]></category>
		<category><![CDATA[ecrypt]]></category>
		<category><![CDATA[eCrypt Technologies]]></category>
		<category><![CDATA[Jay M. Cohen]]></category>
		<category><![CDATA[privacy podcast]]></category>
		<category><![CDATA[security podcast]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=649</guid>
		<description><![CDATA[Welcome to a special PrivacyNowRadio show. I had a chance to interview Hon. Jay M. Cohen Rear Admiral, USN (ret) (also a member of the eCrypt Technologies Board) about cybercrime and cyberterrorism. Adm. Cohen is a very uniquely qualified person to talk about these topics as he served as the Navy&#8217;s CTO, Chief of Naval Research and... <a href="http://privacynow.tv/2011/04/privacynowradio-episode-6-cyberterrorism-will-happen/"> [Continue Reading]</a>]]></description>
			<content:encoded><![CDATA[<p>Welcome to a special PrivacyNowRadio show. I had a chance to interview Hon. Jay M. Cohen Rear Admiral, USN (ret) (also a member of the eCrypt Technologies Board) about cybercrime and cyberterrorism. Adm. Cohen is a very uniquely qualified person to talk about these topics as he served as the Navy&#8217;s CTO, Chief of Naval Research and after his distinguished Navy career, Under Secretary for Science and Technology at the Dept. of Homeland Security (there are <a href="http://investors.ecryptinc.com/board-of-directors/">more bits of impressive info in his bio</a>).</p>
<p>Essentially Adm. Cohen has been at the front lines of keeping the digital huns at bay for a very long time. Because this is such an important topic and special interview, today&#8217;s show will be comprised solely of the interview. I&#8217;ll cover the news of the week in a show I&#8217;ll record later this week.</p>
<p>Until then&#8230;</p>
<p>Adm. Cohen:</p>

<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F04%2Fprivacynowradio-episode-6-cyberterrorism-will-happen%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/ToUGpnwFIDo" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/04/privacynowradio-episode-6-cyberterrorism-will-happen/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep6.mp3" length="13937811" type="audio/mpeg" />
			<itunes:keywords>Cybercrime,cyberterrorism,ecrypt,eCrypt Technologies,Jay M. Cohen,privacy podcast,PrivacyNowRadio,security podcast</itunes:keywords>
		<itunes:subtitle>Welcome to a special PrivacyNowRadio show. I had a chance to interview Hon. Jay M. Cohen Rear Admiral, USN (ret) (also a member of the eCrypt Technologies Board) about cybercrime and cyberterrorism. Adm. Cohen is a very uniquely qualified person to tal...</itunes:subtitle>
		<itunes:summary>Welcome to a special PrivacyNowRadio show. I had a chance to interview Hon. Jay M. Cohen Rear Admiral, USN (ret) (also a member of the eCrypt Technologies Board) about cybercrime and cyberterrorism. Adm. Cohen is a very uniquely qualified person to talk about these topics as he served as the Navy's CTO, Chief of Naval Research and after his distinguished Navy career, Under Secretary for Science and Technology at the Dept. of Homeland Security (there are more bits of impressive info in his bio).

Essentially Adm. Cohen has been at the front lines of keeping the digital huns at bay for a very long time. Because this is such an important topic and special interview, today's show will be comprised solely of the interview. I'll cover the news of the week in a show I'll record later this week.

Until then...

Adm. Cohen:</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>29:02</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/04/privacynowradio-episode-6-cyberterrorism-will-happen/</feedburner:origLink></item>
		<item>
		<title>PrivacyNowRadio Episode 5: Interview with the Hacker, he doesn’t bite</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/LnP5nGDBk2A/</link>
		<comments>http://privacynow.tv/2011/04/privacynowradio-episode-5-interview-with-the-hacker-he-doesnt-bite/#comments</comments>
		<pubDate>Fri, 15 Apr 2011 12:00:53 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[adobe flash]]></category>
		<category><![CDATA[Automattic]]></category>
		<category><![CDATA[coreflood botnet]]></category>
		<category><![CDATA[hacker interview]]></category>
		<category><![CDATA[hackers in media]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[iOS updates]]></category>
		<category><![CDATA[online privacy]]></category>
		<category><![CDATA[OS X udpates]]></category>
		<category><![CDATA[privacy news]]></category>
		<category><![CDATA[privacy podcast]]></category>
		<category><![CDATA[RenderMan]]></category>
		<category><![CDATA[security news]]></category>
		<category><![CDATA[security podcast]]></category>
		<category><![CDATA[Survielance]]></category>
		<category><![CDATA[Twitter]]></category>
		<category><![CDATA[Wikileaks]]></category>
		<category><![CDATA[Windows updates]]></category>
		<category><![CDATA[WordPress.com hack]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=552</guid>
		<description><![CDATA[This week on PrivacyNowRadio I talk about the U.S. Government not only wanting to spend more wisely on the Internet, but also how the DOJ wants Twitter to cough up IP addresses and how police are tapping into our email and IM more often than we thought. I also cover a few recent security breaches,... <a href="http://privacynow.tv/2011/04/privacynowradio-episode-5-interview-with-the-hacker-he-doesnt-bite/"> [Continue Reading]</a>]]></description>
			<content:encoded><![CDATA[<p>This week on PrivacyNowRadio I talk about the U.S. Government not only wanting to spend more wisely on the Internet, but also how the DOJ wants Twitter to cough up IP addresses and how police are tapping into our email and IM more often than we thought. I also cover a few recent security breaches, notably at WordPress.com (change your passwords people). Finally as a reminder to folks keep your machines updated. Windows, OS X and iOS all had updates this week and Chrome was updated to patch a flaw in Adobe Flash.</p>
<p>My interview this week is with <a href="http://www.renderlab.net/" target="_blank">Brad &#8220;RenderMan&#8221; Haines</a>, who is a hacker and we talk about how hackers are portrayed the media.</p>
<p>Finally my tip of the week is to make sure you&#8217;re using WPA2 to secure access to your wifi at home or work, disable remote pings, and make sure that remote (WAN) configuration is disabled on your router. Remember, a WPA2 password isn&#8217;t considered secure unless it&#8217;s at least 20 characters long!</p>
<p>And now the show Interview with the Hacker, he doesn&#8217;t bite.</p>
<p>Below are links to some of the news that I talk about in the podcast:</p>

<p>U.S. Government takes down CoreFlood:</p>
<ul>
<li><a href="http://krebsonsecurity.com/2011/04/u-s-government-takes-down-coreflood-botnet/" target="_blank">U.S. Government Takes Down Coreflood Botnet — Krebs on Security</a></li>
<li><a href="http://news.cnet.com/8301-27080_3-20053708-245.html?part=rss&amp;tag=feed&amp;subj=News-Security" target="_blank">U.S. shutters botnet, can disable malware remotely | InSecurity Complex &#8211; CNET News</a></li>
</ul>
<p>DOJ still after Twitter for Wikileaks associates:<br />
<a href="http://www.wired.com/threatlevel/2011/04/wikileaks-twitter-again-2/" target="_blank"></a></p>
<ul>
<li><a href="http://www.wired.com/threatlevel/2011/04/wikileaks-twitter-again-2/" target="_blank">WikiLeaks Associates Hit Back Over U.S. Twitter Records Demand | Threat Level | Wired.com</a></li>
<li><a href="http://news.cnet.com/8301-31921_3-20052249-281.html?part=rss&amp;subj=news&amp;tag=2547-1_3-0-20" target="_blank">DOJ defends WikiLeaks probe of Twitter accounts | Privacy Inc. &#8211; CNET News</a></li>
</ul>
<p>WordPress.com Hacked:</p>
<ul>
<li><a href="http://techcrunch.com/2011/04/13/hacker-gains-access-to-wordpress-com-servers/" target="_blank">Hacker Gains Access To WordPress.com Servers, Site Source Code Exposed</a></li>
<li><a href="http://mashable.com/2011/04/13/wordpress-security-breach/" target="_blank">WordPress.com Servers Hit in Security Breach</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/04/13/wordpress-com-suffers-hacker-attack-how-to-change-your-password/" target="_blank">WordPress.com suffers hacker attack – how to change your password | Naked Security</a></li>
<li><a href="http://en.blog.wordpress.com/2011/04/13/security/" target="_blank">Security Incident — Blog — WordPress.com</a></li>
</ul>
<p>New zero-day vulnerability in Adobe Flash found (Chrome is already patched):</p>
<ul>
<li><a href="http://news.cnet.com/8301-27080_3-20052894-245.html?part=rss&amp;tag=feed&amp;subj=InSecurityComplex" target="_blank">Adobe: Zero-day attacks targeting Flash Player hole | InSecurity Complex &#8211; CNET News</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/04/12/new-adobe-flash-zero-day-in-the-wild-infects-through-ms-word-documents/" target="_blank">New Adobe Flash zero day in the wild – infects through MS Word documents | Naked Security</a></li>
<li><a href="http://krebsonsecurity.com/2011/04/new-adobe-flash-zero-day-being-exploited/" target="_blank">New Adobe Flash Zero Day Being Exploited? — Krebs on Security</a></li>
</ul>
<p>Other interesting news:</p>
<ul>
<li><a href="http://www.tuaw.com/2011/04/14/do-not-track-feature-coming-to-safari/" target="_blank">Do-not-track feature coming to Safari</a></li>
<li><a href="https://www.pcworld.com/article/225202/Toshibas_New_Self_Erasing_Hard_Drives_The_Ultimate_in_Data_Security.html#tk.rss_news" target="_blank">Toshiba&#8217;s New Self-Erasing Hard Drives: The Ultimate in Data Security &#8211; PCWorld</a></li>
<li><a href="http://homelandsecuritynewswire.com/senator-seeks-end-wasteful-government-cybersecurity-spending" target="_blank">Senator seeks to end wasteful government cybersecurity spending | Homeland Security News Wire</a></li>
<li><a href="https://www.macworld.com/article/159174/2011/04/internet_privacy.html#lsrc.rss_main" target="_blank">Researcher: Police increasingly peeping at e-mail, instant messages | E-Mail &amp; Internet | Macworld</a></li>
<li><a href="http://news.cnet.com/8301-1009_3-20053125-83.html?part=rss&amp;subj=news&amp;tag=2547-1_3-0-20" target="_blank">Security firm Barracuda hit by cyberattack | Security &#8211; CNET News</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/04/12/state-of-texas-leaks-data-on-3-5-million-people/" target="_blank">State of Texas exposes data on 3.5 million people | Naked Security</a></li>
<li><a href="http://www.techvibes.com/blog/michael-geist-on-the-conservatives-incredibly-problematic-for-the-internet-privacy-and-online-freedoms-2011-04-11" target="_blank">Michael Geist on the Conservatives: &#8216;incredibly problematic for the Internet, privacy, and online freedoms&#8217; &#8211; Techvibes.com</a></li>
</ul>
<p>If you have suggestions for future shows, let me know at tris [at] ecryptinc.com and don&#8217;t forget you can find <a href="http://itunes.apple.com/ca/podcast/privacynowradio/id429336345" target="_blank">PNR on iTunes</a>.</p>
<p>Until next week, stay safe.</p>
<p>Music is by <a href="http://www.penmachine.com/podcast/2006/10/mighty-mullane-full-version.html" target="_blank">Derek K. Miller</a> and, yes, he really did write it for me.<br class="final-break" /></p>
<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F04%2Fprivacynowradio-episode-5-interview-with-the-hacker-he-doesnt-bite%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/LnP5nGDBk2A" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/04/privacynowradio-episode-5-interview-with-the-hacker-he-doesnt-bite/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep5.mp3" length="18205802" type="audio/mpeg" />
			<itunes:keywords>adobe flash,Automattic,coreflood botnet,hacker interview,hackers in media,hacking,iOS updates,online privacy,OS X udpates,privacy news,privacy podcast,RenderMan</itunes:keywords>
		<itunes:subtitle>This week on PrivacyNowRadio I talk about the U.S. Government not only wanting to spend more wisely on the Internet, but also how the DOJ wants Twitter to cough up IP addresses and how police are tapping into our email and IM more often than we thought.</itunes:subtitle>
		<itunes:summary>This week on PrivacyNowRadio I talk about the U.S. Government not only wanting to spend more wisely on the Internet, but also how the DOJ wants Twitter to cough up IP addresses and how police are tapping into our email and IM more often than we thought. I also cover a few recent security breaches, notably at WordPress.com (change your passwords people). Finally as a reminder to folks keep your machines updated. Windows, OS X and iOS all had updates this week and Chrome was updated to patch a flaw in Adobe Flash.

My interview this week is with Brad "RenderMan" Haines, who is a hacker and we talk about how hackers are portrayed the media.

Finally my tip of the week is to make sure you're using WPA2 to secure access to your wifi at home or work, disable remote pings, and make sure that remote (WAN) configuration is disabled on your router. Remember, a WPA2 password isn't considered secure unless it's at least 20 characters long!

And now the show Interview with the Hacker, he doesn't bite.

Below are links to some of the news that I talk about in the podcast:



U.S. Government takes down CoreFlood:


	U.S. Government Takes Down Coreflood Botnet — Krebs on Security
	U.S. shutters botnet, can disable malware remotely | InSecurity Complex - CNET News

DOJ still after Twitter for Wikileaks associates:


	WikiLeaks Associates Hit Back Over U.S. Twitter Records Demand | Threat Level | Wired.com
	DOJ defends WikiLeaks probe of Twitter accounts | Privacy Inc. - CNET News

WordPress.com Hacked:

	Hacker Gains Access To WordPress.com Servers, Site Source Code Exposed
	WordPress.com Servers Hit in Security Breach
	WordPress.com suffers hacker attack – how to change your password | Naked Security
	Security Incident — Blog — WordPress.com

New zero-day vulnerability in Adobe Flash found (Chrome is already patched):

	Adobe: Zero-day attacks targeting Flash Player hole | InSecurity Complex - CNET News
	New Adobe Flash zero day in the wild – infects through MS Word documents | Naked Security
	New Adobe Flash Zero Day Being Exploited? — Krebs on Security


Other interesting news:

	Do-not-track feature coming to Safari
	Toshiba's New Self-Erasing Hard Drives: The Ultimate in Data Security - PCWorld
	Senator seeks to end wasteful government cybersecurity spending | Homeland Security News Wire
	Researcher: Police increasingly peeping at e-mail, instant messages | E-Mail &amp; Internet | Macworld
	Security firm Barracuda hit by cyberattack | Security - CNET News
	State of Texas exposes data on 3.5 million people | Naked Security
	Michael Geist on the Conservatives: 'incredibly problematic for the Internet, privacy, and online freedoms' - Techvibes.com

If you have suggestions for future shows, let me know at tris [at] ecryptinc.com and don't forget you can find PNR on iTunes.

Until next week, stay safe.

Music is by Derek K. Miller and, yes, he really did write it for me.</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>37:55</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/04/privacynowradio-episode-5-interview-with-the-hacker-he-doesnt-bite/</feedburner:origLink></item>
		<item>
		<title>PrivacyNowRadio Episode 4: Who is that email really from?</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/AmHzx2Zb4vY/</link>
		<comments>http://privacynow.tv/2011/04/privacynowradio-episode-4-who-is-that-email-really-from/#comments</comments>
		<pubDate>Fri, 08 Apr 2011 12:00:57 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[email scam]]></category>
		<category><![CDATA[email security]]></category>
		<category><![CDATA[Epsilon hack]]></category>
		<category><![CDATA[Facebook privacy]]></category>
		<category><![CDATA[Facebook scams]]></category>
		<category><![CDATA[Linux boot usb]]></category>
		<category><![CDATA[security news]]></category>
		<category><![CDATA[security podcast]]></category>
		<category><![CDATA[SSL certificates]]></category>
		<category><![CDATA[Stuxnet]]></category>
		<category><![CDATA[WordPress update]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=547</guid>
		<description><![CDATA[Another week, another story about a company getting hacked, or information stolen, or pretty much anything that didn&#8217;t go as planned. No interview this week, don&#8217;t fret I have a couple of great ones lined up for the next couple weeks. On with the (shorter) show: The big news of the week (and I wrote... <a href="http://privacynow.tv/2011/04/privacynowradio-episode-4-who-is-that-email-really-from/"> [Continue Reading]</a>]]></description>
			<content:encoded><![CDATA[<p>Another week, another story about a company getting hacked, or information stolen, or pretty much anything that didn&#8217;t go as planned. No interview this week, don&#8217;t fret I have a couple of great ones lined up for the next couple weeks. On with the (shorter) show:</p>

<p>The big news of the week (and <a href="http://yourprivacyisourbusiness.com/2011/04/what-the-epsilson-hack-really-means-email-addresses-are-worth-money/">I wrote about it earlier on the eCrypt blog</a>) was the hack at email marketing company Epsilon. While people weren&#8217;t <em>directly</em> put at risk from the loss of <em>thousands</em> of email addresses to hackers, what is more likely is that we&#8217;re more vulnerable to targeted spam and phishing attacks. For more info on this attack see my post above and these other articles:</p>
<ul>
<li><a href="http://yourprivacyisourbusiness.com/2011/04/what-the-epsilson-hack-really-means-email-addresses-are-worth-money/" target="_blank">What the Epsilson hack really means–email addresses are worth money | eCrypt Technologies Blog</a></li>
<li><a href="http://erratasec.blogspot.com/2011/04/how-to-protect-yourself-from-future.html" target="_blank">Errata Security: How to protect yourself from future &#8220;Epsilon&#8221; breach</a></li>
<li><a href="https://www.macworld.com/article/159001/2011/04/epsilon_defensive_measures.html#lsrc.rss_main" target="_blank">Compromised email? Avoid the scams | E-Mail &amp; Internet | Mac 911 | Macworld</a></li>
<li><a href="http://communities.canada.com/vancouversun/blogs/techsense/archive/2011/04/04/epsilon-security-breach-affects-canadian-consumers.aspx" target="_blank">Epsilon Internet security breach affects Canadian consumers &#8211; Digital Life</a></li>
<li><a href="http://krebsonsecurity.com/2011/04/epsilon-breach-raises-specter-of-spear-phishing/" target="_blank">Epsilon Breach Raises Specter of Spear Phishing — Krebs on Security</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/04/04/epsilon-email-address-megaleak-hands-customers-customers-to-spammers/" target="_blank">Epsilon email address megaleak hands customers’ customers to spammers | Naked Security</a></li>
</ul>
<p>The EFF is keeping up the pressure and discussion about flaws in how secure certificates are issued with their research on &#8220;unqualified domain&#8221; certificates. A wee technical, but really important to understand:</p>
<ul>
<li><a href="https://www.eff.org/deeplinks/2011/04/unqualified-names-ssl-observatory" target="_blank">Unqualified Names in the SSL Observatory | Electronic Frontier Foundation</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/04/06/eff-uncovers-further-evidence-of-ssl-ca-bad-behavior/" target="_blank">EFF uncovers further evidence of SSL CA bad behavior | Naked Security</a></li>
</ul>
<p>On the hacking front, it looks like smartphones are the new hot target. Hackers got their hands on the code for the Stuxnet worm and have released it to the world (like folks probably didn&#8217;t have it already. And 2011 has started off with a surge of malware. Oh goody.</p>
<ul>
<li><a href="http://www.homelandsecuritynewswire.com/hackers-release-stuxnets-decompiled-code-online" target="_blank">Hackers release Stuxnet&#8217;s decompiled code online | Homeland Security News Wire</a></li>
<li><a href="http://www.homelandsecuritynewswire.com/stuxnet-heralds-age-cyber-weapons-virtual-arms-race" target="_blank">Stuxnet heralds age of cyber weapons, virtual arms race | Homeland Security News Wire</a></li>
<li><a href="http://www.homelandsecuritynewswire.com/cell-phones-are-hackers-target-choice" target="_blank">Cell phones are hackers&#8217; target of choice | Homeland Security News Wire</a></li>
<li><a href="http://news.cnet.com/8301-1009_3-20050827-83.html?part=rss&amp;tag=feed&amp;subj=News-Security" target="_blank">Surge in malware marks start of year | Security &#8211; CNET News</a></li>
</ul>
<p>On the side of the good guys, Google is extending download protection to Chrome users like users of IE9 have. An excellent article on CNET reminds us to be watchful of scams and how to avoid them. And WordPress was updated to version 3.1.1 with stability improvements, but also some crucial security fixes:</p>
<ul>
<li><a href="http://nakedsecurity.sophos.com/2011/04/06/google-extends-safe-browsing-to-chrome-downloads/" target="_blank">Google extends Safe Browsing to Chrome downloads | Naked Security</a></li>
<li><a href="http://news.cnet.com/8301-1023_3-20051327-93.html?part=rss&amp;tag=feed&amp;subj=News-Security" target="_blank">How I nearly got scammed on Facebook | Digital Media &#8211; CNET News</a></li>
<li><a href="https://wordpress.org/news/2011/04/wordpress-3-1-1/" target="_blank">WordPress › WordPress 3.1.1</a></li>
</ul>
<p>Finally the Conservative Party of Canada is catching some (well deserved) heat for allegedly not allowing someone into a rally because the person has a picture with the Liberal leader on her Facebook page. And there is a new Hacker sitcom on the air. I haven&#8217;t seen it yet, but believe me I will. Just as soon as I finish watching <a href="http://www.imdb.com/title/tt0303461/" target="_blank">Firefly</a>.</p>
<ul>
<li><a href="http://communities.canada.com/vancouversun/blogs/techsense/archive/2011/04/05/conservative-party-takes-social-media-monitoring-to-extreme.aspx" target="_blank">Conservative Party kicks out student over Facebook photo: Social Media Fail &#8211; Digital Life</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/04/06/warning-tv-show-breaking-in-debuts-tonight/" target="_blank">Is Hacker TV sitcom a true reflection of computer security industry? | Naked Security</a></li>
</ul>
<p>There is no interview this week, but my tip of the week is to make an emergency boot drive to bail yourself out in a jam. I suggest using <a href="http://www.ubuntu.com/" target="_blank">Ubuntu</a> or <a href="http://www.jolicloud.com/" target="_blank">Jolicloud</a> and <a href="http://ca.lifehacker.com/5381466/use-a-linux-live-cdusb-for-online-banking" target="_blank">Lifehacker has great instructions on how</a> (and more whys) to do it. <a href="https://www.pcworld.com/businesscenter/article/219481/why_you_need_to_have_a_linux_livecd.html" target="_blank">PCWorld</a> even has more tips on how and why as well.</p>
<p>Don&#8217;t forget, you can subscribe to <a href="http://itunes.apple.com/ca/podcast/privacynowradio/id429336345" target="_blank">PNR through iTunes</a>!</p>
<p>Music is by <a href="http://www.penmachine.com/podcast/2006/10/mighty-mullane-full-version.html" target="_blank">Derek K. Miller</a> and, yes, he really did write it for me.</p>
<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F04%2Fprivacynowradio-episode-4-who-is-that-email-really-from%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/AmHzx2Zb4vY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/04/privacynowradio-episode-4-who-is-that-email-really-from/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep4.mp3" length="10894441" type="audio/mpeg" />
			<itunes:keywords>email scam,email security,Epsilon hack,Facebook privacy,Facebook scams,Linux boot usb,security news,security podcast,SSL certificates,Stuxnet,WordPress update</itunes:keywords>
		<itunes:subtitle>Another week, another story about a company getting hacked, or information stolen, or pretty much anything that didn't go as planned. No interview this week, don't fret I have a couple of great ones lined up for the next couple weeks.</itunes:subtitle>
		<itunes:summary>Another week, another story about a company getting hacked, or information stolen, or pretty much anything that didn't go as planned. No interview this week, don't fret I have a couple of great ones lined up for the next couple weeks. On with the (shorter) show:



The big news of the week (and I wrote about it earlier on the eCrypt blog) was the hack at email marketing company Epsilon. While people weren't directly put at risk from the loss of thousands of email addresses to hackers, what is more likely is that we're more vulnerable to targeted spam and phishing attacks. For more info on this attack see my post above and these other articles:

	What the Epsilson hack really means–email addresses are worth money | eCrypt Technologies Blog
	Errata Security: How to protect yourself from future "Epsilon" breach
	Compromised email? Avoid the scams | E-Mail &amp; Internet | Mac 911 | Macworld
	Epsilon Internet security breach affects Canadian consumers - Digital Life
	Epsilon Breach Raises Specter of Spear Phishing — Krebs on Security
	Epsilon email address megaleak hands customers’ customers to spammers | Naked Security

The EFF is keeping up the pressure and discussion about flaws in how secure certificates are issued with their research on "unqualified domain" certificates. A wee technical, but really important to understand:

	Unqualified Names in the SSL Observatory | Electronic Frontier Foundation
	EFF uncovers further evidence of SSL CA bad behavior | Naked Security

On the hacking front, it looks like smartphones are the new hot target. Hackers got their hands on the code for the Stuxnet worm and have released it to the world (like folks probably didn't have it already. And 2011 has started off with a surge of malware. Oh goody.

	Hackers release Stuxnet's decompiled code online | Homeland Security News Wire
	Stuxnet heralds age of cyber weapons, virtual arms race | Homeland Security News Wire
	Cell phones are hackers' target of choice | Homeland Security News Wire
	Surge in malware marks start of year | Security - CNET News

On the side of the good guys, Google is extending download protection to Chrome users like users of IE9 have. An excellent article on CNET reminds us to be watchful of scams and how to avoid them. And WordPress was updated to version 3.1.1 with stability improvements, but also some crucial security fixes:

	Google extends Safe Browsing to Chrome downloads | Naked Security
	How I nearly got scammed on Facebook | Digital Media - CNET News
	WordPress › WordPress 3.1.1

Finally the Conservative Party of Canada is catching some (well deserved) heat for allegedly not allowing someone into a rally because the person has a picture with the Liberal leader on her Facebook page. And there is a new Hacker sitcom on the air. I haven't seen it yet, but believe me I will. Just as soon as I finish watching Firefly.

	Conservative Party kicks out student over Facebook photo: Social Media Fail - Digital Life
	Is Hacker TV sitcom a true reflection of computer security industry? | Naked Security

There is no interview this week, but my tip of the week is to make an emergency boot drive to bail yourself out in a jam. I suggest using Ubuntu or Jolicloud and Lifehacker has great instructions on how (and more whys) to do it. PCWorld even has more tips on how and why as well.

Don't forget, you can subscribe to PNR through iTunes!

Music is by Derek K. Miller and, yes, he really did write it for me.</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>22:41</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/04/privacynowradio-episode-4-who-is-that-email-really-from/</feedburner:origLink></item>
		<item>
		<title>PrivacyNowRadio Episode 3: Just what’s on your laptop?</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/vqRueTFoYOE/</link>
		<comments>http://privacynow.tv/2011/04/privacynowradio-episode-3-just-whats-on-your-laptop/#comments</comments>
		<pubDate>Fri, 01 Apr 2011 19:26:55 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[Comodo hack]]></category>
		<category><![CDATA[ecrypt]]></category>
		<category><![CDATA[privacy news]]></category>
		<category><![CDATA[Samsung keylogger false positive]]></category>
		<category><![CDATA[security news]]></category>
		<category><![CDATA[security podcast]]></category>
		<category><![CDATA[SSL]]></category>
		<category><![CDATA[Theresa Lalonde]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=540</guid>
		<description><![CDATA[Another interesting week in the privacy and security world. Samsung dodged a bullet with first it did, then it didn&#8217;t, install keyloggers on laptops, the FBI needs your help cracking a code, I chat with Theresa Lalonde of the CBC about consumers and their gear, and my tip of the week is to force HTTPS... <a href="http://privacynow.tv/2011/04/privacynowradio-episode-3-just-whats-on-your-laptop/"> [Continue Reading]</a>]]></description>
			<content:encoded><![CDATA[<p>Another interesting week in the privacy and security world. Samsung dodged a bullet with first it did, then it didn&#8217;t, install keyloggers on laptops, the FBI needs your help cracking a code, I chat with <a href="http://www.cbc.ca/bc/news/yourstory/index.html" target="_blank">Theresa Lalonde of the CBC</a> about consumers and their gear, and my tip of the week is to force HTTPS connections whenever possible.</p>

<p>News mentioned in the podcast:</p>
<ul>
<li><strong>Android App security</strong>
<ul>
<li><a href="http://www.loopinsight.com/2011/03/30/apples-protected-app-store-doesnt-look-so-bad-now/" target="_blank">Apple’s protected App Store doesn’t look so bad now</a></li>
<li><a href="http://www.loopinsight.com/2011/03/29/amazon-appstore-disables-android-security/" target="_blank">Amazon Appstore disables Android security</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/04/01/android-malware-against-software-piracy/?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+nakedsecurity+%28Naked+Security+-+Sophos%29" target="_blank">Android malware against software piracy | Naked Security</a></li>
</ul>
</li>
<li><strong><a href="http://yourprivacyisourbusiness.com/2011/03/buy-a-samsung-laptop-get-a-keylogger-installed-for-free/" target="_blank">Buy a Samsung laptop, get a keylogger installed for free! | eCrypt Technologies Blog</a></strong>
<ul>
<li><a href="http://news.cnet.com/8301-27080_3-20049004-245.html?part=rss&amp;tag=feed&amp;subj=InSecurityComplex" target="_blank">Fake Android app steals data, takes shot at pirates | InSecurity Complex &#8211; CNET News</a></li>
<li><a href="http://www.engadget.com/2011/03/31/samsung-reportedly-installing-keylogger-software-on-r525-privac/" target="_blank">Samsung reportedly installing keylogger software on laptops (update: it&#8217;s a false-positive) &#8212; Engadget</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/03/30/samsung-intentionally-shipping-laptops-with-keyloggerspy-software/" target="_blank">Is Samsung intentionally shipping laptops with keylogger/spy software? | Naked Security</a></li>
<li><a href="https://www.readwriteweb.com/archives/samsung_laptops_have_secret_keyloggers.php" target="_blank">Samsung Laptops &#8211; Now With Secret Keyloggers? (UPDATED)</a></li>
<li><a href="https://www.infoworld.com/t/anti-virus/lessons-the-samsung-rootkit-never-existed-409" target="_blank">Lessons from the Samsung rootkit that never existed | Anti virus &#8211; InfoWorld</a></li>
</ul>
</li>
<li><strong>More Comodo Fallout</strong>
<ul>
<li><a href="http://www.bbc.co.uk/news/technology-12901041" target="_blank">BBC News &#8211; Are secure websites still safe?</a></li>
<li><a href="http://news.cnet.com/8301-31921_3-20048525-281.html?part=rss&amp;tag=feed&amp;subj=InSecurityComplex" target="_blank">FBI probes Comodo Web security breach | Privacy Inc. &#8211; CNET News</a></li>
<li><a href="http://news.cnet.com/8301-27080_3-20048831-245.html?part=rss&amp;tag=feed&amp;subj=InSecurityComplex" target="_blank">Comodo: Web attack broader than initially thought | InSecurity Complex &#8211; CNET News</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/03/27/comodo-hacker-outs-himself-claims-no-relation-to-iranian-cyber-army/" target="_blank">Comodo hacker outs himself, claims “no relation to Iranian Cyber Army” | Naked Security</a></li>
</ul>
</li>
<li><strong><a href="https://www.schneier.com/blog/archives/2011/03/fbi_asks_for_cr.html" target="_blank">Schneier on Security: FBI Asks for Cryptanalysis Help</a></strong>
<ul>
<li><a href="http://news.yahoo.com/s/yblog_thelookout/20110329/ts_yblog_thelookout/fbi-asks-public-for-help-breaking-encrypted-notes-tied-to-1999-murder" target="_blank">FBI asks public for help breaking encrypted notes tied to 1999 murder &#8211; Yahoo! News</a></li>
<li><a href="https://www.fbi.gov/news/stories/2011/march/cryptanalysis_032911/cryptanalysis_032911" target="_blank">FBI — Help Solve an Open Murder Case, Part 2</a></li>
<li><a href="https://www.networkworld.com/community/blog/fbi-wants-public-help-solving-encrypted-notes" target="_blank">Layer 8: FBI wants public help solving encrypted notes from murder mystery</a></li>
</ul>
</li>
<li><a href="http://arstechnica.com/security/news/2011/03/massive-sql-injection-attack-making-the-rounds694k-urls-so-far.ars" target="_blank">Massive SQL injection attack making the rounds—694K URLs so far</a></li>
<li><a href="http://www.techvibes.com/blog/dick-hardts-sxipper-to-go-out-with-a-whimper-in-mid-april-2011-03-31" target="_blank">Dick Hardt&#8217;s Sxipper to go out with a whimper in mid-April &#8211; Techvibes.com</a></li>
<li><a href="https://www.eff.org/deeplinks/2011/03/documents-obtained-eff-reveal-fbi-patriot-act" target="_blank">Documents Obtained by EFF Reveal FBI Patriot Act Abuses | Electronic Frontier Foundation</a></li>
<li><a href="https://www.pcworld.com/article/223927/What_a_cyberwar_with_China_might_look_like.html#tk.rss_news" target="_blank">What a Cyberwar With China Might Look Like &#8211; PCWorld</a></li>
<li><a href="http://www.wired.com/threatlevel/2011/03/amicus-wikileaks-twitter-case/" target="_blank">Top Computer Scientists Back WikiLeaks Associates in Twitter Case | Threat Level | Wired.com</a></li>
<li><a href="http://arstechnica.com/tech-policy/news/2011/03/wait-until-june-for-a-fix-throttled-wow-player-wants-isp-fined.ars" target="_blank">Wait until June for a fix? Throttled WoW player wants ISP fined</a></li>
<li><a href="http://news.cnet.com/8301-1009_3-20048996-83.html?part=rss&amp;subj=news&amp;tag=2547-1_3-0-20" target="_blank">Report: NSA joins Nasdaq hack probe | Security &#8211; CNET News</a></li>
<li><a href="https://www.pcworld.com/article/223792/u_s_govt_to_thank_for_panic_button_app_to_wipe_phones.html#tk.rss_news" target="_blank">U.S. Gov&#8217;t to Thank for Phone-Wiping Panic Button &#8211; PCWorld</a></li>
<li><a href="http://onethingwell.org/post/4211183358/singing-passwords" target="_blank">One Thing Well | Singing Passwords</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/03/30/facebook-adds-speed-bump-to-slow-down-likejackers/" target="_blank">Facebook adds speed bump to slow down likejackers | Naked Security</a></li>
<li><a href="http://blog.intego.com/2011/03/30/intego-discovers-new-improved-blackhole-rat-variant/" target="_blank">The Mac Security Blog » Intego Discovers New, Improved BlackHole RAT Variant</a></li>
<li><a href="http://www.wired.com/threatlevel/2011/03/australian-pm-hacked/" target="_blank">Australian Prime Minister Hacked | Threat Level | Wired.com</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/03/29/eu-parliament-computer-network-under-attack/" target="_blank">This week, the EU parliament computer network is under attack | Naked Security</a></li>
</ul>
<p><a href="http://coilhouse.net/" target="_blank">Coilhouse Magazine</a> looks like it will be a <em>very</em> interesting weekend read for me. Read more about it on <a href="http://io9.com/#!5787897/crime-cryptohistory-cthulhu-culture--cyberpunk-inside-coilhouse-magazine" target="_blank">io9</a>.</p>
<p>For my tip of the week to force SSL when you browser (aka using HTTPS instead of plain old HTTP). <a href="https://chrome.google.com/webstore/detail/flcpelgcagfhfoegekianiofphddckof" target="_blank">KB SSL Enforcer</a> is the extension I like for Chrome. <a href="https://www.eff.org/https-everywhere" target="_blank">HTTPS Everywhere</a> from the EFF is great for Firefox. I can&#8217;t find my usual suggestions for IE and Safari, so recommendations are welcome in the comments.</p>
<p>Thanks again to Theresa Lalonde for chatting with me this morning.</p>
<p>Music is by <a href="http://www.penmachine.com/podcast/2006/10/mighty-mullane-full-version.html" target="_blank">Derek K. Miller</a> and, yes, he really did write it for me.</p>
<p>If you have questions, comments, topics for future episodes, or would like to be a guest on Privacy Now Radio, leave a comment or drop me a line at tris [at] ecryptinc.com.</p>
<p>Subscribe to PrivacyNowRadio on <a href="http://itunes.apple.com/ca/podcast/privacynowradio/id429336345" target="_blank">iTunes</a>.</p>
<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F04%2Fprivacynowradio-episode-3-just-whats-on-your-laptop%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/vqRueTFoYOE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/04/privacynowradio-episode-3-just-whats-on-your-laptop/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep3.mp3" length="16802922" type="audio/mpeg" />
			<itunes:keywords>Comodo hack,ecrypt,privacy news,PrivacyNowRadio,Samsung keylogger false positive,security news,security podcast,SSL,Theresa Lalonde</itunes:keywords>
		<itunes:subtitle>Another interesting week in the privacy and security world. Samsung dodged a bullet with first it did, then it didn't, install keyloggers on laptops, the FBI needs your help cracking a code, I chat with Theresa Lalonde of the CBC about consumers and th...</itunes:subtitle>
		<itunes:summary>Another interesting week in the privacy and security world. Samsung dodged a bullet with first it did, then it didn't, install keyloggers on laptops, the FBI needs your help cracking a code, I chat with Theresa Lalonde of the CBC about consumers and their gear, and my tip of the week is to force HTTPS connections whenever possible.



News mentioned in the podcast:

	Android App security

	Apple’s protected App Store doesn’t look so bad now
	Amazon Appstore disables Android security
	Android malware against software piracy | Naked Security


	Buy a Samsung laptop, get a keylogger installed for free! | eCrypt Technologies Blog

	Fake Android app steals data, takes shot at pirates | InSecurity Complex - CNET News
	Samsung reportedly installing keylogger software on laptops (update: it's a false-positive) -- Engadget
	Is Samsung intentionally shipping laptops with keylogger/spy software? | Naked Security
	Samsung Laptops - Now With Secret Keyloggers? (UPDATED)
	Lessons from the Samsung rootkit that never existed | Anti virus - InfoWorld


	More Comodo Fallout

	BBC News - Are secure websites still safe?
	FBI probes Comodo Web security breach | Privacy Inc. - CNET News
	Comodo: Web attack broader than initially thought | InSecurity Complex - CNET News
	Comodo hacker outs himself, claims “no relation to Iranian Cyber Army” | Naked Security


	Schneier on Security: FBI Asks for Cryptanalysis Help

	FBI asks public for help breaking encrypted notes tied to 1999 murder - Yahoo! News
	FBI — Help Solve an Open Murder Case, Part 2
	Layer 8: FBI wants public help solving encrypted notes from murder mystery


	Massive SQL injection attack making the rounds—694K URLs so far
	Dick Hardt's Sxipper to go out with a whimper in mid-April - Techvibes.com
	Documents Obtained by EFF Reveal FBI Patriot Act Abuses | Electronic Frontier Foundation
	What a Cyberwar With China Might Look Like - PCWorld
	Top Computer Scientists Back WikiLeaks Associates in Twitter Case | Threat Level | Wired.com
	Wait until June for a fix? Throttled WoW player wants ISP fined
	Report: NSA joins Nasdaq hack probe | Security - CNET News
	U.S. Gov't to Thank for Phone-Wiping Panic Button - PCWorld
	One Thing Well | Singing Passwords
	Facebook adds speed bump to slow down likejackers | Naked Security
	The Mac Security Blog » Intego Discovers New, Improved BlackHole RAT Variant
	Australian Prime Minister Hacked | Threat Level | Wired.com
	This week, the EU parliament computer network is under attack | Naked Security

Coilhouse Magazine looks like it will be a very interesting weekend read for me. Read more about it on io9.

For my tip of the week to force SSL when you browser (aka using HTTPS instead of plain old HTTP). KB SSL Enforcer is the extension I like for Chrome. HTTPS Everywhere from the EFF is great for Firefox. I can't find my usual suggestions for IE and Safari, so recommendations are welcome in the comments.

Thanks again to Theresa Lalonde for chatting with me this morning.

Music is by Derek K. Miller and, yes, he really did write it for me.

If you have questions, comments, topics for future episodes, or would like to be a guest on Privacy Now Radio, leave a comment or drop me a line at tris [at] ecryptinc.com.

Subscribe to PrivacyNowRadio on iTunes.</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>35:00</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/04/privacynowradio-episode-3-just-whats-on-your-laptop/</feedburner:origLink></item>
		<item>
		<title>Privacy Now Radio Episode 2: Certificate hacks and questions of trust</title>
		<link>http://feedproxy.google.com/~r/pvntv/~3/qvsgdufFF_s/</link>
		<comments>http://privacynow.tv/2011/03/privacy-now-radio-episode-2-certificate-hacks-and-questions-of-trust/#comments</comments>
		<pubDate>Sat, 26 Mar 2011 01:53:56 +0000</pubDate>
		<dc:creator>Tris Hussey</dc:creator>
				<category><![CDATA[PrivacyNowRadio]]></category>
		<category><![CDATA[Comodo hack]]></category>
		<category><![CDATA[ecrypt]]></category>
		<category><![CDATA[eCrypt.me]]></category>
		<category><![CDATA[privacy news]]></category>
		<category><![CDATA[security news]]></category>
		<category><![CDATA[security podcast]]></category>
		<category><![CDATA[SSL certificates]]></category>

		<guid isPermaLink="false">http://privacynow.tv/?p=499</guid>
		<description><![CDATA[It&#8217;s been an interesting week since Episode 1 aired, the biggest news—which BTW wasn&#8217;t covered by the main stream media—was the hack of a reseller of Comodo one of the people who can issue trusted secure certificates (for SSL connections). This is a big, big deal and brings into question how we can improve how... <a href="http://privacynow.tv/2011/03/privacy-now-radio-episode-2-certificate-hacks-and-questions-of-trust/"> [Continue Reading]</a>]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s been an interesting week since <a title="PrivacyNowRadio Episode 1: Who’s hacking now?" href="http://privacynow.tv/2011/03/privacynowradio-episode-1-whos-hacking-now/">Episode 1</a> aired, the biggest news—which BTW <em>wasn&#8217;t</em> covered by the main stream media—was the hack of a reseller of Comodo one of the people who can issue trusted secure certificates (for SSL connections). This is a big, big deal and brings into question how we can improve how information is secured on the Internet. I had a great chat with <a href="http://nakedsecurity.sophos.com/" target="_blank">Chet Wisniewski of Sophos</a> about this news, but that&#8217;s not all I also cover some of the privacy and security headlines of the week as well as my tip of the week.</p>
<p>Go have a listen:</p>

<p><a href="http://nakedsecurity.sophos.com/2011/03/26/apple-users-left-to-defend-themselves-against-certificate-attacks/?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+nakedsecurity+%28Naked+Security+-+Sophos%29" target="_blank">Chet posted how OS X folks (like most of the eCrypt team) can set our systems to check for revoked certificates</a>. It isn&#8217;t great, but it&#8217;s better than nothing.</p>
<p>Some of the news and links mentioned in the podcast can be found through these links:</p>
<ul>
<li><a href="http://agilewebsolutions.com/onepassword" target="_blank">1Password</a></li>
<li><a href="http://news.cnet.com/8301-27080_3-20046338-245.html?part=rss&amp;tag=feed&amp;subj=InSecurityComplex" target="_blank">Facebook detour through China: Accident or not? | InSecurity Complex &#8211; CNET News</a></li>
<li><a href="https://www.eff.org/deeplinks/2011/03/iranian-hackers-obtain-fraudulent-https" target="_blank">Iranian hackers obtain fraudulent HTTPS certificates: How close to a Web security meltdown did we get? | Electronic Frontier Foundation</a></li>
<li><a href="https://blog.torproject.org/blog/detecting-certificate-authority-compromises-and-web-browser-collusion" target="_blank">Detecting Certificate Authority compromises and web browser collusion | The Tor Blog</a></li>
<li><a href="https://www.scmagazineus.com/iran-behind-certificate-fraud-says-ssl-vendor/article/199006/" target="_blank">Iran behind certificate fraud, says SSL vendor &#8211; SC Magazine US</a></li>
<li><a href="http://news.cnet.com/8301-31921_3-20046340-281.html" target="_blank">Google, Yahoo, Skype targeted in attack linked to Iran | Privacy Inc. &#8211; CNET News</a></li>
<li><a href="http://www.theregister.co.uk/2011/03/23/gmail_microsoft_web_credential_forgeries/" target="_blank">&#8216;Iranian&#8217; attackers forge Google&#8217;s Gmail credentials • The Register</a></li>
<li><a href="http://nakedsecurity.sophos.com/2011/03/24/fraudulent-certificates-issued-by-comodo-is-it-time-to-rethink-who-we-trust/" target="_blank">Fraudulent certificates issued by Comodo, is it time to rethink who we trust? | Naked Security</a></li>
<li><a href="http://erratasec.blogspot.com/2011/03/no-evidence-comodo-compromise-was-from.html" target="_blank">Errata Security: No reason to believe Comodo attack came from Iran</a></li>
<li><a href="http://globalthoughtz.com/2011/03/facebook-twitter-fail-to-control-malicious-web-links/" target="_blank">Facebook &amp; Twitter Fail to Control Malicious Web Links | Globalthoughtz</a></li>
<li><a href="http://mashable.com/2011/03/23/twitter-malware-history/" target="_blank">Twitter&#8217;s Long History With Malware [INFOGRAPHIC]</a></li>
<li><a href="http://www.socialstudiesblog.com/2011/03/cryptography-and-freedom-in-an-age-of-constant-surveillance-and-data-collection.html" target="_blank">Social Studies Blog » SXSW: Phil Zimmerman on Cryptography and Freedom in an Age of Constant Surveillance and Data Collection</a></li>
<li><a href="https://www.computerworld.com/s/article/9215041/European_Commission_hit_by_cyberattack" target="_blank">European Commission hit by cyberattack &#8211; Computerworld</a></li>
<li><a href="http://news.cnet.com/8301-27080_3-20047005-245.html?part=rss&amp;tag=feed&amp;subj=InSecurityComplex" target="_blank">TripAdvisor: E-mail addresses stolen in data breach | InSecurity Complex &#8211; CNET News</a></li>
<li><a href="http://www.theglobeandmail.com/news/national/ontario/material-on-work-computer-private-court-rules/article1952239/" target="_blank">Material on work computer private, court rules &#8211; The Globe and Mail</a></li>
<li><a href="http://news.cnet.com/8301-1009_3-20046068-83.html?part=rss&amp;subj=news&amp;tag=2547-1_3-0-20" target="_blank">Play.com admits data breach | Security &#8211; CNET News</a></li>
<li><a href="http://www.theregister.co.uk/2011/03/22/ba_jihadist_trial_sentencing/" target="_blank">BA jihadist relied on Jesus-era encryption | The Register</a></li>
<li><a href="http://www.troyhunt.com/2011/03/only-secure-password-is-one-you-cant.html" target="_blank">Troy Hunt: The only secure password is the one you can’t remember</a></li>
</ul>
<p>Music is by <a href="http://www.penmachine.com/podcast/2006/10/mighty-mullane-full-version.html" target="_blank">Derek K. Miller</a> and, yes, he really did write it for me.</p>
<p>If you have questions, comments, topics for future episodes, or would like to be a guest on Privacy Now Radio, leave a comment or drop me a line at tris [at] ecryptinc.com.</p>
<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fprivacynow.tv%2F2011%2F03%2Fprivacy-now-radio-episode-2-certificate-hacks-and-questions-of-trust%2F&amp;layout=standard&amp;show_faces=true&amp;width=450&amp;action=like&amp;colorscheme=light&amp;height=80" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:450px; height:80px;" allowTransparency="true"></iframe><img src="http://feeds.feedburner.com/~r/pvntv/~4/qvsgdufFF_s" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://privacynow.tv/2011/03/privacy-now-radio-episode-2-certificate-hacks-and-questions-of-trust/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
<enclosure url="http://media.blubrry.com/privacynowradio/media.blubrry.com/privacynowtv/privacynow.tv/wp-content/uploads/powerpress/privacynowradioep2.mp3" length="13248388" type="audio/mpeg" />
			<itunes:keywords>Comodo hack,ecrypt,eCrypt.me,privacy news,PrivacyNowRadio,security news,security podcast,SSL certificates</itunes:keywords>
		<itunes:subtitle>It's been an interesting week since Episode 1 aired, the biggest news—which BTW wasn't covered by the main stream media—was the hack of a reseller of Comodo one of the people who can issue trusted secure certificates (for SSL connections). This is a big,</itunes:subtitle>
		<itunes:summary>It's been an interesting week since Episode 1 aired, the biggest news—which BTW wasn't covered by the main stream media—was the hack of a reseller of Comodo one of the people who can issue trusted secure certificates (for SSL connections). This is a big, big deal and brings into question how we can improve how information is secured on the Internet. I had a great chat with Chet Wisniewski of Sophos about this news, but that's not all I also cover some of the privacy and security headlines of the week as well as my tip of the week.

Go have a listen:



Chet posted how OS X folks (like most of the eCrypt team) can set our systems to check for revoked certificates. It isn't great, but it's better than nothing.

Some of the news and links mentioned in the podcast can be found through these links:

	1Password
	Facebook detour through China: Accident or not? | InSecurity Complex - CNET News
	Iranian hackers obtain fraudulent HTTPS certificates: How close to a Web security meltdown did we get? | Electronic Frontier Foundation
	Detecting Certificate Authority compromises and web browser collusion | The Tor Blog
	Iran behind certificate fraud, says SSL vendor - SC Magazine US
	Google, Yahoo, Skype targeted in attack linked to Iran | Privacy Inc. - CNET News
	'Iranian' attackers forge Google's Gmail credentials • The Register
	Fraudulent certificates issued by Comodo, is it time to rethink who we trust? | Naked Security
	Errata Security: No reason to believe Comodo attack came from Iran
	Facebook &amp; Twitter Fail to Control Malicious Web Links | Globalthoughtz
	Twitter's Long History With Malware [INFOGRAPHIC]
	Social Studies Blog » SXSW: Phil Zimmerman on Cryptography and Freedom in an Age of Constant Surveillance and Data Collection
	European Commission hit by cyberattack - Computerworld
	TripAdvisor: E-mail addresses stolen in data breach | InSecurity Complex - CNET News
	Material on work computer private, court rules - The Globe and Mail
	Play.com admits data breach | Security - CNET News
	BA jihadist relied on Jesus-era encryption | The Register
	Troy Hunt: The only secure password is the one you can’t remember

Music is by Derek K. Miller and, yes, he really did write it for me.

If you have questions, comments, topics for future episodes, or would like to be a guest on Privacy Now Radio, leave a comment or drop me a line at tris [at] ecryptinc.com.</itunes:summary>
		<itunes:author>Privacy Now is brought to you by eCrypt Technologies</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>27:36</itunes:duration>
	<feedburner:origLink>http://privacynow.tv/2011/03/privacy-now-radio-episode-2-certificate-hacks-and-questions-of-trust/</feedburner:origLink></item>
	</channel>
</rss><!-- Dynamic page generated in 83.360 seconds. --><!-- Cached page generated by WP-Super-Cache on 2012-01-01 10:11:49 --><!-- Compression = gzip -->

