Liquidmatrix Security Digest Podcast

Liquidmatrix Security Digest Podcast - Episode C


Listen Later

Episode C -- Brain Dump Semi-slow news week this week so we used the bulk of our time to talk about a topic most of us struggle with (even some of us on the show) productivity! A few stories and our opinions as usual and also a letter from a listener regarding our own Dave running for the ISC2 board. Again, if you have anything comments, questions, suggestions, hatred, bickering, cyberdouchery, please sent it to [email protected] for us to check out. DISCLAIMER: It's not that explicit, but you may want to use headphones if you're at work. ADDITIONAL DISCLAIMER: In case it is unclear, this is the story of 4 opinionated infosec pros who have sufficient opinions of their own they don't need to speak for anyone except themselves. Ok? Good. In this episode:

  • News
    1. Stripe CTF
    2. DropBox implementing 2-factor Auth!
    3. More U.S. military hacking in Afghanistan
    4. Yet another Java 0-day being exploited in the wild
      Exploit Code!
    5. ISC-CERT issues warning on RuggedCom/Siemens gear
      ICS-Alert PDF
    6. Gauss researchers trip over Kaspersky operated sinkhole
    7. NIST releases a standard on secure BIOS
    8. Aramco threatened with more breaches
    9. Breaches
      1. University of South Carolina (34,000) of a total 81,000 since 2006) - ThreatPost Article
      2. Commentary
        1. Errata
          • Not much in Errata this week
          • Foot In The Door
            • Infosec Productivity
            • James posted about triple monitor setup and got a bunch of questions about how his work environment is set up.

              And productivity porn is always cool (don’t deny it, you’re all fetishistically interested in getting your to-do lists underway)

              - we’re getting around to the beginning of the school year here in Canada (we know that most americans have already started)
              - so it’s time for the annual trip to Staples for school/office supplies
              - How do you keep your stuff in order as you work through the life that many of us share:
              + multiple concurrent lives
              + “work” work
              + “volunteering” work
              + family / friends
              + professional development
              +
              - Do you trust your digital minions?
              - Do you commingle in a BYOD way?
              - What about people that you have relationships with (spouse uses paper?)
              - Covey? David Allen (GTD)?
              - “Time Management for System Administrators” (Thomas A. Limoncelli)
              - Getting Things Done

            • Hardcore
              • Stuff We Each Use To Get By:
              • James:
              • Devices: MBA11 / iPad2 / iPhone4s
              • Scanner to go paperless
              • Sync: iCloud
              • SpiderOak Here's my referral link
              • Dropbox Here's my referral link
              • Box.com
              • Rsync w/ local duplicates
              • Local Software:
              • Mail
              • Calendar
              • Reminders
              • OmniFocus (OSX / iPad)
              • Evernote
              • Web Stuff:
              • Google for years - getting away from them now
              • Remember The Milk - moved all of that into OmniFocus
              • If This Then That
              • Trello (because the Securosis boys require it and it comes from Joel)
              • When I’m working at client sites, I generally have to use the things that they use.
              • Dave ditto, James.
              • Ben
              • schedule, schedule, schedule - religiosity with my Outlook calendar
              • task lists
              • shared knowledge - team wiki
              • team meetings & delegation
              • risk tracking tools - e.g. RSAM/
              • clear boundaries - turn your phone off - giant whiteboard
              • Matt
              • To-Do List App
              • Pen & Paper!!!
              • Keep yourself away from your screen Anti-RSI
              • Save a few seconds a day if you are a multi-monitor user Stay App
              • Mailbag
                1. Hi Dave

                  What’s the deal with running for the ISC2 board?


                  JJ
                2. In Closing
                  1. Matt’s movie review...
                  2. There shall be LSD folk at TASK in Toronto next week.
                  3. University of Reddit - Open Security Training classes on malware analysis
                  4. Sector CFP selections Monday night.
                  5. Vote Dave! http://www.liquidmatrix.org/blog/vote-for-dave/
                  6. The Seacrest says “1st star to the left and straight ahead, Mr Armstrong”
                  7. Creative Commons license: BY-NC-SA

                    ...more
                    View all episodesView all episodes
                    Download on the App Store

                    Liquidmatrix Security Digest PodcastBy Liquidmatrix Security Digest

                    • 4.8
                    • 4.8
                    • 4.8
                    • 4.8
                    • 4.8

                    4.8

                    13 ratings