POPULARITY
Palo Alto Networks fixes several DoS vulnerabilities in PAN-OS operating system Sisense breach exposes customers to potential supply chain attack Threat actors gaming GitHub Search Thanks to today's episode sponsor, Vanta The average security pro spends nearly a full workday every week just on compliance. With Vanta, you can automate compliance for in-demand frameworks like SOC 2, ISO 27001, and HIPAA. Even more, Vanta's market-leading Trust Management Platform enables you to unify security program management with a built-in risk register and reporting, and streamline security reviews with AI-powered security questionnaires. Over 7,000 fast-growing companies like Atlassian, Flo Health, and Quora use Vanta to manage risk and prove security in real time. Watch Vanta's on-demand demo at vanta.com/ciso. For the stories behind the headlines, head to CISOseries.com.
In this episode of The Cybersecurity Defenders Podcast, we discuss some cutting-edge intel coming out of LimaCharlie's community Slack channel.VulnCheck comes across a malicious GitHub repository that is claimed to be a Signal 0-day.CheckMarx are reporting that Without altering a single line of code, attackers poisoned the NPM package “bignum” by hijacking a S3 bucket.Team CYMRU has released a detailed publication on Vidar infrastructure which encompasses both the primary administrative aspects and the underlying backend. Bit Defender Mac researchers stumbled upon a small set of files with backdoor capabilities that seem to form part of a more complex malware toolkit. Researchers have found an unofficial package called 'https' that exists on NPM with over 1600 other packages that depend on it.An attack campaign that consists of the Tsunami DDoS Bot being installed on inadequately managed Linux SSH servers.Cl0p rewards of up to $10 million are being offered by the U.S. State Department's Rewards for Justice program.SentinelOne is reporting on the Terminator EDR killer - Spyboy. The Cybersecurity Defenders Podcast: a show about cybersecurity and the people that defend the internet.
Welcome to the newest episode of The Cloud Pod podcast! Justin, Ryan, Jonathan, Matthew are your hosts this week as we discuss all things cloud and AI, as well as Amazon Detective, SageMaker, AWS Documentation, and Google Workstation. Titles we almost went with (and there's a lot this week)
In this Video, we have had talks about various topics such as VS Code Extensions, GitHub Repos, GitHub Copilot, Version Control, and much more stuff.
From time to time I like to loiter on people’s GitHub Repos look through issues submitted and see if there are interesting hidden gems and bugs that would make a good lesson or learning experience and boy did I find one for you. This bug is caused in stripe-node code in AWS Lambda serverless environment where requests are failing intermittently. We discuss how AWS serverless container re-use can cause this and how stripe solved it. Resources https://github.com/stripe/stripe-node/issues/1040 Intermittent Error: write EPIPE when running stripe client in AWS Lambda · Issue #1040 · stripe/stripe-node · GitHub https://aws.amazon.com/blogs/compute/container-reuse-in-lambda/ --- Send in a voice message: https://anchor.fm/hnasr/message
During this episode we will discuss the different integration points between Azure Boards and GitHub. We will answer the questions of: Why use Azure Boards for planning and GitHub for code? What are the benefits of using them both together and what is the Azure Boards App in GitHub? What problem does it solve? What are the open source actions for and how to use them?Jump To:[01:19] – Scenarios for using Azure Boards and GitHub together[02:32] – Why should I plan work in Azure Boards vs GitHub Issues?[04:07] – Three main integration scenarios[06:33] – Intro to Azure Boards app in GitHub[07:11] – Intro to actions for Azure Boards integration for GitHub Issues and PR's[08:44] – Step through demo of GitHub App[11:12] – Demo of actions[16:27] – Call to action Learn More:Azure Boards App in the GitHub marketplaceAzure Boards App DocumentationSync GitHub Issues with Azure BoardsSync GitHub PR's with Azure BoardsGitHub ActionsAzure DevOps YouTubeCreate a Free Azure DevOps Account
Things I learned this week: https://www.securusglobal.com/community/2013/12/20/dumping-windows-credentials/ https://www.helpnetsecurity.com/2019/04/29/docker-hub-breach/ https://www.zdnet.com/article/a-hacker-is-wiping-git-repositories-and-asking-for-a-ransom/ https://attack.mitre.org/techniques/T1003/ https://github.com/giMini/PowerMemory https://en.wikipedia.org/wiki/Local_Security_Authority_Subsystem_Service https://attack.mitre.org/techniques/T1208/
In today’s podcast, we hear that Finland’s data protection authority is investigating reports that Nokia 7 Plus smartphones are sending data to a Chinese telecom server. Thousands of API tokens and cryptographic keys are exposed in public GitHub repositories. The US government warns that certain cardiac devices can be hacked from close range. A North Carolina county government is dealing with its third ransomware attack. And Magecart groups go after bedding companies. Malek Ben Salem from Accenture Labs with thoughts on securing the digital economy. Guest is Adam Isles from the Chertoff Group on supply chain risks. For links to all of today's stories check our our CyberWire daily news brief: https://thecyberwire.com/issues/issues2019/March/CyberWire_2019_03_22.html Support our show
Ring Privacy Concerns, Alphabet Sued, Free Private GitHub Repos and Responsibilities of Companies & Data and More on this weeks Bit v. Byte! If you would like to support me via Anchor Listener Support, go to anchor.fm/bit-v-byte. Thank you! News - Ring Privacy Concerns - https://www.wired.com/story/security-news-this-week-employees-may-have-snooped-on-ring-security-camera-feeds/?ref=anchor.fm/bit-v-byte - Alphabet Board Shareholder Lawsuit - https://arstechnica.com/tech-policy/2019/01/alphabet-board-sued-over-massive-payout-to-android-creator-among-others/?ref=anchor.fm/bit-v-byte - GitHub Free Private Repositories - https://blog.github.com/2019-01-07-new-year-new-github/?ref=anchor.fm/bit-v-byte - Article 13 Nearly Finished - https://juliareda.eu/2019/01/article-13-almost-finished/?ref=anchor.fm/bit-v-byte Links & Resources - CSS Tricks Staff 2018 Favorites - https://css-tricks.com/2018-staff-favorites?ref=anchor.fm/bit-v-byte - 16 Classic Color Scheme Generators - https://iconscout.com/blog/15-classic-color-scheme-generators-to-pick-the-perfect-palette/?ref=anchor.fm/bit-v-byte - Top 5 Popular Free Material Design Frameworks - https://cssmaterial.com/top-5-popular-free-material-design-frameworks-for-developers/?ref=anchor.fm/bit-v-byte --- Support this podcast: https://anchor.fm/bit-v-byte/support
Vorstellung von circumit.com - DER neuen Homepage; Bug Bounties on Free and Open Source; der neuen SIM-Karten Registrierung für Wertkartentelefone; nun auch kostenlosen, privaten Github-Repos, bald kein Passwortteilen(Accountsharing) mehr bei Netflix; Android Pie auf Xiaomi Mi A1; Infos zum 35C3, mit sehenswerten Talks; wieder Aufbau rund um HTTP/3, UDP/TCP; transfer.pw und transfer.sh zum Transport von Geheinmissen und Datein
Check out RailsClips! 02:24 - Ben Drucker Introduction Twitter GitHub Blog EAZE Eaze MD Ben Drucker: Modular Angular: Apps that Scale @ ng-vegas 2015 03:00 - What is meant by “Angular apps that scale”? 04:54 - Tools Browserify AMD RequireJS 06:25 - Ben’s Background in Scalability 09:28 - “Scalability” and “Scaling” 14:00 - Team Size 14:53 - EAZE 17:00 - The EAZE Architecture Eaze MD 21:17 - What You Should Be Doing to Scale (Tips) Documentation API Answers the Right Questions for the UI Versioning Strategy 23:45 - Managing Scale (Monitoring Load) 26:58 - Server-side: Data Storage 28:58 - Client-side Dependency Injection Naming Collision and Conventions Build Process 37:24 - Ben's GitHub Repos and Open Source Picks Robots on the Line (Joe) Saint Petersburg, Russia (Katya) The Man Who Saw America: Looking back with Robert Frank, the most influential photographer alive (Ward) Paracord (Chuck) Soto Pocket Torch (Chuck) Shyp (Ben)
Check out RailsClips! 02:24 - Ben Drucker Introduction Twitter GitHub Blog EAZE Eaze MD Ben Drucker: Modular Angular: Apps that Scale @ ng-vegas 2015 03:00 - What is meant by “Angular apps that scale”? 04:54 - Tools Browserify AMD RequireJS 06:25 - Ben’s Background in Scalability 09:28 - “Scalability” and “Scaling” 14:00 - Team Size 14:53 - EAZE 17:00 - The EAZE Architecture Eaze MD 21:17 - What You Should Be Doing to Scale (Tips) Documentation API Answers the Right Questions for the UI Versioning Strategy 23:45 - Managing Scale (Monitoring Load) 26:58 - Server-side: Data Storage 28:58 - Client-side Dependency Injection Naming Collision and Conventions Build Process 37:24 - Ben's GitHub Repos and Open Source Picks Robots on the Line (Joe) Saint Petersburg, Russia (Katya) The Man Who Saw America: Looking back with Robert Frank, the most influential photographer alive (Ward) Paracord (Chuck) Soto Pocket Torch (Chuck) Shyp (Ben)
Check out RailsClips! 02:24 - Ben Drucker Introduction Twitter GitHub Blog EAZE Eaze MD Ben Drucker: Modular Angular: Apps that Scale @ ng-vegas 2015 03:00 - What is meant by “Angular apps that scale”? 04:54 - Tools Browserify AMD RequireJS 06:25 - Ben’s Background in Scalability 09:28 - “Scalability” and “Scaling” 14:00 - Team Size 14:53 - EAZE 17:00 - The EAZE Architecture Eaze MD 21:17 - What You Should Be Doing to Scale (Tips) Documentation API Answers the Right Questions for the UI Versioning Strategy 23:45 - Managing Scale (Monitoring Load) 26:58 - Server-side: Data Storage 28:58 - Client-side Dependency Injection Naming Collision and Conventions Build Process 37:24 - Ben's GitHub Repos and Open Source Picks Robots on the Line (Joe) Saint Petersburg, Russia (Katya) The Man Who Saw America: Looking back with Robert Frank, the most influential photographer alive (Ward) Paracord (Chuck) Soto Pocket Torch (Chuck) Shyp (Ben)