Security Now (Audio)

SN 946: CitrixBleed - iMessage Contact Key Verification, HackerOne bug bounty news, CISA's Logging Made Easy


Listen Later

  • What caused last week's connection interruption? Router was rebooting intermittently, but why?
  • David Redekop of AdamNetworks explained their enterprise network security solution aims to only allow known safe connections, blocking everything else.
  • iMessage gets Contact Key Verification to confirm new devices added to an account belong to the contact.
  • Public Interest Research Group asks Microsoft to extend Windows 10 support beyond 2025.
  • HackerOne breach bounties surpass $300M total payout.
  • CISA releases free Logging Made Easy toolkit to enhance Windows logging capabilities.
  • SpinRite 6.1 pre-release 2 published, likely final pre-release with some testing remaining before full launch.
  • Moving the Internet fully to IPv6 likely won't happen until IPv4 addresses are fully consumed.
  • Open source projects struggle with costly code signing certificates.
  • Deep dive into CitrixBleed vulnerability allowing authentication bypass.
  • Show Notes - https://www.grc.com/sn/SN-946-Notes.pdf

    Hosts: Steve Gibson and Leo Laporte

    Download or subscribe to this show at https://twit.tv/shows/security-now.

    Get episodes ad-free with Club TWiT at https://twit.tv/clubtwit

    You can submit a question to Security Now at the GRC Feedback Page.

    For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

    Sponsors:

    • cs.co/twit
    • bitwarden.com/twit
    • vanta.com/SECURITYNOW
    • ...more
      View all episodesView all episodes
      Download on the App Store

      Security Now (Audio)By TWiT

      • 5
      • 5
      • 5
      • 5
      • 5

      5

      3 ratings


      More shows like Security Now (Audio)

      View all
      Global News Podcast by BBC World Service

      Global News Podcast

      7,681 Listeners

      No Agenda Show by Adam Curry & John C. Dvorak

      No Agenda Show

      5,954 Listeners

      Macworld Podcast by Foundry

      Macworld Podcast

      310 Listeners

      This Week in Tech (Audio) by TWiT

      This Week in Tech (Audio)

      3,057 Listeners

      Security Now (Audio) by TWiT

      Security Now (Audio)

      2,001 Listeners

      MacBreak Weekly (Audio) by TWiT

      MacBreak Weekly (Audio)

      2,015 Listeners

      Intelligent Machines (Audio) by TWiT

      Intelligent Machines (Audio)

      777 Listeners

      Accidental Tech Podcast by Marco Arment, Casey Liss, John Siracusa

      Accidental Tech Podcast

      2,126 Listeners

      LINUX Unplugged by Jupiter Broadcasting

      LINUX Unplugged

      266 Listeners

      The Amp Hour Electronics Podcast by The Amp Hour (Chris Gammell and David L Jones)

      The Amp Hour Electronics Podcast

      232 Listeners

      Smashing Security by Graham Cluley

      Smashing Security

      322 Listeners

      Darknet Diaries by Jack Rhysider

      Darknet Diaries

      7,999 Listeners

      Tech Brew Ride Home by Morning Brew

      Tech Brew Ride Home

      968 Listeners

      This Week in Space (Audio) by TWiT

      This Week in Space (Audio)

      156 Listeners

      Risky Bulletin by risky.biz

      Risky Bulletin

      44 Listeners