On this weekâs show weâll be chatting with information securityâs enfant terrible Nathaniel Wakelam about some recon tricks heâs been using in bug bounty programs. He uses some nice tricks to rapidly identify ephemeral resources that often result in some spectacular hacks, like, say, being able to download all of REDACTEDâs source code. That one was cool because it was a temporary resource that got popped â thatâs something you have to watch these days.
This weekâs show is brought to you by Cylance! Cylance makes machine learning-based AV software that by all reports works really well. Cylance CTO and co-founder Ryan Permeh is this weekâs feature guest and weâre talking about something that we touched on last week â gaming machine learning. Does Cylance worry that a determined attacker will be able to gradually input bad data into Cylanceâs learning set and game the whole system? Well, no, theyâre not worried about it, but itâs definitely something they pay attention to. Thatâs really interesting stuff and itâs coming up after this weekâs feature interview.
Adam Boileau, as always, pops in for this weekâs news.
Links to everything are in this weekâs show notes.
Oh, and do add Patrick, Jake or Adam on Twitter if thatâs your thing.