Podcast Episodes
Back to Search
Frozen kernel security
Episode 430
Josh and Kurt talk about a blog post about frozen kernels being more secure. We cover some of the history and how a frozen kernel works and discuss w…
1 year, 9 months ago
The autonomy of open source developers
Episode 429
Josh and Kurt talk about open source and autonomy. This is even related to some recent return to office news. The conversation weaves between a few t…
1 year, 9 months ago
GitHub artifact attestation
Episode 428
Josh and Kurt talk about a new to sign artifacts on GitHub. It's in beta, it's not going to be easy to use, it will have bugs. But that's all OK. Thi…
1 year, 10 months ago
Will run0 replace sudo?
Episode 427
Josh and Kurt talk about a sudo replacement going into systemd called run0. It sounds like it'll get a lot right, but systemd is a pretty big attack …
1 year, 10 months ago
Automatically exploiting CVEs with AI
Episode 426
Josh and Kurt talk about a paper describing using a LLM to automatically create exploits for CVEs. The idea is probably already happening in many spa…
1 year, 10 months ago
Video game cheaters, also pretendo
Episode 425
Josh and Kurt talk about a database of game cheaters. Cheating in games has many similarities to security problems. Anti cheat rootkits are also terr…
1 year, 10 months ago
The Notepad++ Parasite Website
Episode 424
Josh and Kurt talk about a Notepad++ fake website. It's possibly not illegal, but it's certainly ethically wrong. We also end up discussing why it se…
1 year, 11 months ago
FCC cybersecurity label for consumer devices
Episode 423
Josh and Kurt talk about a new FCC program to provide a cybersecurity certification mark. Similar to other consumer safety marks such as UL or CE. We…
1 year, 11 months ago
XZ Bonus Spectacular Episode
Josh and Kurt talk about the recent events around XZ. It's only been a few days, and it's amazing what we already know. We explain a lot of the basic…
1 year, 11 months ago
Do you have a security.txt file?
Episode 422
Josh and Kurt talk about the security.txt file. It's not new, but it's not something we've discussed before. It's a great idea, an easy format, and w…
1 year, 11 months ago