

DtSR Episode 137 - NewsCast for April 6th, 2015
Apr 6, 2015
46:19
Send the hosts a message - try it now!
In this episode...
- TrueCrypt security audit results are good news, right?
- Why are some of the most depended-upon
- http://arstechnica.com/security/2015/04/truecrypt-security-audit-is-good-news-so-why-all-the-glum-faces/
- At Aetna, CyberSecurity is a matter of business risk
- Jim Routh talks about how he runs a security program
- Security is a matter of business risk, if not you're doing it wrong
- http://blogs.wsj.com/cio/2015/03/30/cybersecurity-at-aetna-is-a-matter-of-business-risk/
- Why aren't you vulnerability scanning more often?
- Wrong question.
- Simple answer -- because scanning doesn't matter if you can't fix the issues you find
- Example of how security misses the point
- http://www.csoonline.com/article/2901472/vulnerabilities/why-aren-t-you-vulnerability-scanning-more-often.html
- SecurityScorecard - a new startup that is exposing 3rd party risks to you -- or is it?
- Interesting business model
- How legitimate is this, and what are the risks?
- http://www.businessinsider.com/securityscorecard-raises-125-million-led-by-sequoia-2015-3
- Does removing Windows administrator permission really mitigate 97% of vulnerabilities?!
- Is this real? If so -- why isn't everyone doing it?
- Local administrator privileges are starting to fade, but why so slowly?
- http://blog.norsecorp.com/2015/04/02/removing-admin-privileges-mitigates-97-of-critical-microsoft-vulnerabilities/
>>> Please consider clicking the link above to support the show!
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq
LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/
X/Twitter: https://twitter.com/dtsr_podcast