Sound Security Podcast

Episode 16 - Backdoor Bounty Ethics


Listen Later

Discussed Articles
1) Juniper Finds An Unauthorized Backdoor
Juniper, a purveyor of all networking things, discovered a backdoor placed in their ScreenOS operation system by an unauthorized persons. What does this mean for the integrity of their products and how can we find backdoors in our own software?
* http://blog.cryptographyengineering.com/2015/12/on-juniper-backdoor.html
* https://www.imperialviolet.org/2015/12/19/juniper.html
* http://www.wired.com/2015/12/juniper-networks-hidden-backdoors-show-the-risk-of-government-backdoors/
2) Bug Bounty Ethics
An independent reacher reports bugs to Facebook and minor drama occurs. The researcher alleges Facebook is being unfair to him, while Facebook alleges the researcher crossed the line.
* http://exfiltrated.com/research-Instagram-RCE.php
* https://www.facebook.com/notes/alex-stamos/bug-bounty-ethics/10153799951452929
3) 2016 Predictions
2015 is over and 2016 is here, so it's about time that the Sound Security crew come up with some very accurate and in no way whatsoever wrong predictions for the glorious year that is 2016.
...more
View all episodesView all episodes
Download on the App Store

Sound Security PodcastBy Sound Security