Sound Security Podcast

Episode 02 - Email Server Administrators Gone Wild


Listen Later

Discussed Articles
1) Hillary Clinton Used Personal Email Account at State Dept
Hillary Clinton then defends use of private e-mail. Also, how you can prevent users from autoforwarding emails externally in Exchange
* http://www.nytimes.com/2015/03/03/us/politics/hillary-clintons-use-of-private-email-at-state-department-raises-flags.html
* http://www.usatoday.com/story/news/politics/elections/2015/03/10/hillary-clinton-emails-state-department/24668715/
* http://blogs.technet.com/b/lystavlen/archive/2012/04/10/how-to-prevent-internal-users-from-autoforwaring-mails-to-external-recipients.aspx
2) FREAK SSL Downgrade Attack
* http://blog.cryptographyengineering.com/2015/03/attack-of-week-freak-or-factoring-nsa.html
3) HBO NOW did not properly setup DNSSEC
See also: Arguments Against DNSSEC
* http://www.internetsociety.org/deploy360/blog/2015/03/hbo-now-dnssec-misconfiguration-makes-site-unavailable-from-comcast-networks-fixed-now/
* http://sockpuppet.org/blog/2015/01/15/against-dnssec/
Breach of the Week
Google WHOIS Disclosure
Also discussed, the finger protocol
* http://blogs.cisco.com/security/talos/whoisdisclosure
* https://en.wikipedia.org/wiki/Finger_protocol
...more
View all episodesView all episodes
Download on the App Store

Sound Security PodcastBy Sound Security