Subscribe:

Blog:
Videos:
Podcast:


PaulDotCom Español


Hack Naked TV


Hack Naked At Night


Stogie Geeks


Training:


Offensive Countermeasures: Defensive Techniques That Actually Work:


SANSFIRE 2012 (July 7-8)


Blackhat 2012 (July 21-22 & 23-24)


Sponsored By:


www.coresecurity.com


www.tenablesecurity.com



Follow Us On:


twitter.com/pauldotcom

PaulDotCom YouTube Channel


Visit PaulDotCom Insider


May 10, 2012

Episode 287 with Dr. Anton Chuvakin & Daniel Martin at 6PM tonight

Episode 287 of PaulDotCom Security Weekly will feature an interview with Dr. Anton Chuvakin to talk log management, SIEM and PCI DSS compliance and a Guest Technical Segment from Dradis Framework creator Daniel Martin. Come participate in our IRC channel or sit back and enjoy it live via our Ustream channel:

NOTE: The video will play the most recent show up until we are live!

For interactive live video, audio, and chat during each episode you can visit PaulDotCom Live!, just hang out in our IRC channel, or if you prefer, visit the Episode 287 show notes page.

Don't forget to follow us on Twitter: Paul Asadoorian, Larry Pesce, Jack Daniel, Carlos Perez, John Strand and Mike Perez.

May 9, 2012

Hack Naked TV Episode 34

In this episode we have a special guest. Larry Pesce from Hack Naked at Night drops by to talk about hardware patching, leaks and adult diapers.

Links for this episode:

  • Mac security kind of sucks
  • More on the RDP Leak
  • RuggedCom to fix backdoor.. Soonish
  • Offensive Countermeasures at BlackHat


    Links to cool stuff our awesome sponsors are providing:

    black-cp.jpeg

    CloudPassage offers a free Basic version of Halo that includes extensive cloud security features, such as host-based firewalls, vulnerability management, security event alerting, server account management and intrusion detection. Halo works with any cloud provider and makes server security portable across environments. The convenient Halo portal allows you to manage all your security from one screen, whether it's in public, private or hybrid clouds – even traditional data centers.

    Check it out here

    LogLogiclogo.png

    Manage your Big Data with the most scalable log & security intelligence platform for the Enterprise & Cloud.Don’t take our word. Try it for yourself! For a limited time, download here

    Video Feeds:
  • May 8, 2012

    PaulDotCom Espanol Episode 12 - Efrain Torres

    Hola to all of our Spanish-speaking PaulDotCom listeners! (The rest of this message will be in Espanol)

    Episodio doce esta disponible!

    En este episodio entrevistamos a Efrain Torres especialista de seguridad Colombiano trabajando en US y miembro del equipo de Metasploit. Efrain nos habla de el ultimo plugin que escribio para Metasploit y los modulos que forman parte de lo que se conoce como WMAP dentro de Metasploit para la uditoria de applicaciones web. Tambien conversamos y debatimos sobre los retos que enfrentan muchas companias grandes en la reducccion de riesgo y vulnerabilidades.

    Usted puede encontrar las notas de todos los episodios PaulDotCom en español en PaulDotCom Espanol página principal

    Audio Feeds:

    May 7, 2012

    PaulDotCom Security Weekly Episode 286 - Penetration Testing, Exploits, Poop for Wifi

    Audio Feeds:

    Video Feeds:

    Alex Horan & Mife Yaffe Discussion:

    Drunken Security News #286:

    Episode 286 Show Notes

    Episode 286 Part 1 (mp3)

    Episode 286 Part 2 (mp3)

    Tune in to PaulDotCom Security Weekly TV, Hack Naked TV, and Hack Naked At Night episodes on our YouTube Channel or our Bliptv channel.

    Hack Naked At Night - Episode 5 - Badges, Barcodes & Arduino

    May 3, 2012

    Episode 286 with Core Security Technologies Tonight 6PM EDT

    Episode 286 of PaulDotCom Security Weekly will feature an interview with Core Security Technologies Alex Horan and Mike Yaffe. We will have a lively discussion of exploits, vulnerabilities, penetration testing, and more! At the request of our guests we will be in "Studio B" where smoking cigars is not just encouraged, but required. Come participate in our IRC channel or sit back and enjoy it live via our Ustream channel:

    NOTE: The video will play the most recent show up until we are live!

    For interactive live video, audio, and chat during each episode you can visit PaulDotCom Live!, just hang out in our IRC channel, or if you prefer, visit the Episode 286 show notes page.

    Don't forget to follow us on Twitter: Paul Asadoorian, Larry Pesce, Jack Daniel, Carlos Perez, John Strand and Mike Perez.

    Hack Naked TV Episode 33

    In this episode we discuss the VMware source code leak, backdoors in control systems and Conficker refusing to go away. I guess the theme for this episode is how the things you don't expect can haunt you. None of the above new stories really fall cleanly into traditional categories of security defense. Rather, they all force us to start thinking about what happens when Malware specifically targets AV? What happens when a vendor has a backdoor in a product? See, these are questions we need to start asking about every component in our environments. If we don't, we are not really practicing security, we are simply buying products.

    Links for this episode:

  • Vmware source code leak
  • Conficker refuses to die
  • RuggedCom backdoor
  • Offensive Countermeasures at BlackHat

    Links to cool stuff our awesome sponsors are providing:

    black-cp.jpeg

    CloudPassage offers a free Basic version of Halo that includes extensive cloud security features, such as host-based firewalls, vulnerability management, security event alerting, server account management and intrusion detection. Halo works with any cloud provider and makes server security portable across environments. The convenient Halo portal allows you to manage all your security from one screen, whether it's in public, private or hybrid clouds – even traditional data centers.

    Check it out here

    LogLogiclogo.png

    Manage your Big Data with the most scalable log & security intelligence platform for the Enterprise & Cloud.Don’t take our word. Try it for yourself! For a limited time, download here

    Video Feeds:

  • May 1, 2012

    PaulDotCom Security Weekly Episode 285 - Nick Farr, Hacker Spaces, Hackers In Space

    Audio Feeds:

    Video Feeds:

    Nick Farr Interview:

    Drunken Security News #285:

    Episode 285 Show Notes

    Episode 285 (mp3)

    Episode Hosts:

  • Paul Asadoorian, Host of Security Weekly and Stogie Geeks

  • Carlos Perez, Host of PaulDotCom Espanol
  • Tune in to PaulDotCom Security Weekly TV, Hack Naked TV, and Hack Naked At Night episodes on our YouTube Channel or our Bliptv channel.

    April 24, 2012

    PaulDotCom Security Weekly Episode 284 - Martin Bos, Derbycon, Backtrack, Password Cracking

    Tune in to PaulDotCom Security Weekly TV, Hack Naked TV, and Hack Naked At Night episodes on our YouTube Channel or our Bliptv channel.

    Martin Bos Interview:

    Password Auditing with Nessus & Metasploit:

    Drunken Security News #284:

    Episode 284 Show Notes

    Episode 284 (mp3)

    Episode Hosts:

  • Paul Asadoorian, Host of Security Weekly and Stogie Geeks

  • Larry Pesce, Host of Hack Naked At Night

  • John Strand, Host of Hack Naked TV

  • Carlos Perez, Host of PaulDotCom Espanol
  • Audio Feeds:

    Video Feeds:

    April 20, 2012

    Hack Naked TV Episode 32

    In this episode we talk about more OS X Malware. More! We also discus POS trojans.


    Links for this episode:


  • Yet another Mac Trojan

  • Yet another Hotel Trojan

    Links to cool stuff our awesome sponsors are providing:

    Check out Log Logic:

    Manage your Big Data with the most scalable log & security intelligence platform for the Enterprise & Cloud.Don’t take our word. Try it for yourself! For a limited time, download here

    Check out Halo from Cloud Passage:

    CloudPassage offers a free Basic version of Halo that includes extensive cloud security features, such as host-based firewalls, vulnerability management, security event alerting, server account management and intrusion detection. Halo works with any cloud provider and makes server security portable across environments. The convenient Halo portal allows you to manage all your security from one screen, whether it's in public, private or hybrid clouds – even traditional data centers.

    Check it out here

    Video Feeds: