DARPA, Yelp, & FBI – Application Security Weekly #54

Owner of MAGA-Friendly Yelp Knockoff Threatens to Call FBI After Researcher Exposes Security Holes, Chinese Data Breach Exposes ‘Breed Ready’ Status Of Almost 2 Million Women, Dozens of companies leaked sensitive data thanks to misconfigured Box accounts, DARPA Is Building a $10 Million, Open Source, Secure Voting System, and much more!

News

Bugs, Breaches, and More!

1.) Owner of MAGA-Friendly Yelp Knockoff Threatens to Call FBI After Researcher Exposes Security Holes

2.) Chinese Data Breach Exposes ‘Breed Ready’ Status Of Almost 2 Million Women

3.) Dozens of companies leaked sensitive data thanks to misconfigured Box accounts

If you build it, they will come

1.) A world of hurt after GoDaddy, Apple, and Google misissue >1 million certificates

2.) DARPA Is Building a $10 Million, Open Source, Secure Voting System

3.) A huge trove of medical records and prescriptions found exposed

Food for Thought

1.) Beto O’Rourke’s secret membership in America’s oldest hacking group

2.) Googling Strangers: One Professor’s Lesson On Privacy In Public Spaces

3.) CommitStrip: CSS, CSS Everywhere

Full Show Notes

Hosts

Paul Asadorian
Paul Asadorian – CEO, Security Weekly.
Keith Hoodlet
Keith Hoodlet – Application Security Manager, Thermo Fisher Scientific.

 

 

 

 

Announcements

  • Join us April 1-3, at Disney’s Contemporary Resort for InfoSec World 2019 where you can connect and network with like-minded individuals in search of actionable information. Visit https://infosecworld.misti.com/ and use the registration code OS19-SECWEEK for 15% off the Main Conference or World Pass. If you are interested in booking an interview or briefing with Security Weekly, please go to securityweekly.com/conferencerequest to submit your request!
  • SecureWorld Boston is hosting their 15th annual conference March 27-28 @ the Hynes Convention Center. Security Weekly Listeners save $100 off a full conference pass by visiting secureworldexpo.com and using the code ‘SecurityWeekly’
  • John Strand will be teaching Active Defense and Cyber Deception at Black Hat 2019. Please register here! Register Now @ www.blackhat.com