Vulnerabilities

Vulnerability Researcher

Episode 201: Bug Hunting with Sick Codes

The work of vulnerability research has changed a lot in the last two decades. In this episode, Security Ledger Podcast host Paul Roberts chats with the independent researcher known as “Sick Codes” about the growing risk of open source supply chain hacks, his method for bug hunting and what projects are in the pipeline for 2021.

Black Samurai Polygon Form with Large Red Sphere Circle 3d illustration 3d render

Episode 200: Sakura Samurai Wants To Make Hacking Groups Cool Again. And: Automating Our Way Out of PKI Chaos

In this episode of the podcast (#200), sponsored by Digicert: John Jackson, founder of the group Sakura Samurai talks to us about his quest to make hacking groups cool again. Also: we talk with Avesta Hojjati of the firm Digicert about the challenge of managing a growing population of digital certificates and how automation may be an answer.

2021 Image

Episode 198: Must Hear Interviews from 2020

Trying times have a way of peeling back the curtains and seeing our world with new eyes. We

China_Cyber_Threat_Concept

Update: DHS Looking Into Cyber Risk from TCL Smart TVs

The acting head of the U.S. Department of Homeland Security said the agency was assessing the cyber risk of smart TVs sold by the Chinese electronics giant TCL, following reports that the devices may give the company “back door” access to deployed sets.

IP Phone Home

Exploitable Flaw in NPM Private IP App Lurks Everywhere, Anywhere

A serious security flaw in a commonly used npm security module, private-ip, may affect hundreds of thousands of private and public applications.