Data Security Podcast Episode 15 – Aug 25 2008

The Data Security Podcast is the place for 30 minutes of news every week on data security, privacy, and the law.
This weeks program: Drive-by Flash Clipboard Attack – nobody is immune; The law in virtual worlds; plus the latest security news.
–> Stream, subscribe or download Episode 15 – Listen or subscribe to the feed to [...]

Apple’s MobileMe Fails Security 101?

There are reports that Apple is using poor security in Apple’s not-ready-for-primetime MobileMe email and file storage service. MobileMe was billed by Apple as a Microsoft Exchange server email account “for the rest of us.” One of the best features of an Exchange server is it’s use of Secure Socket Layer (SSL) 128-bit encryption. [...]

Data Security Podcast Episode 14 – Aug 19 2008

The Data Security Podcast is the place for 30 minutes of news every week on data security, privacy, and the law.
This weeks program: Institute for Justice fights to keep PI lobby from regulating information security; The CherryPal PC, a PC designed by an infosec pro; plus the latest security news .
–> Stream, subscribe or download [...]

Data Security Podcast Episode 13 – Aug 11 2008

The Data Security Podcast is the place for 30 minutes of news every week on data security, privacy, and the law.
In this week’s episode: Defcon16 security/hacker conference reports, inluding the “MIT Subway Hack,” electronic billboard security holes, KeyMail physcial lock exploits, using iPhones for pen testing; Business logic flaw in web sites and web applications [...]

Phil Zimmerman, Dan Kaminsky, and Brenno de Winter on the DefCon “Subway Hack” Talk

The hacker conference Defcon is proving to be the source of breaking news this year. A lot of the technology news coverage to come out of the show concerns the three MIT students that were to present a talk on the vulnerabilities in the transit pay cards used in the Boston area by [...]

Data Security Podcast Episode 12 – Aug 04 2008

The Data Security Podcast is the place for 30 minutes of news every week on data security, privacy, and the law.
In this week’s episode: Interview with Paul Royal of Dambala, a new, open source approach to malware detection; Poor USB security might be the cause of a Countrywide Bank data breach; Court battle: GPS [...]

Airline Traveler Data Breach

Verified Identity Pass has signed up more than 200,000 travelers to a program that allows airline travelers to speed through security and skip many of the security checks. The catch? The traveler has to submit to a background check, provide biometric data, and provide ID in person to complete the sign up process. And, the [...]

New Challenge: e-Discovery Compliance with Foreign Languages

eDiscovery is a regulation mandated by the courts, and impacts all organization, of all sizes, public and private. The Federal Rules of Civil Procedures (FRCP) come into force when an organization is under litigation, or has reason to believe it soon will be.
There is now a new twist to FRCP: How to deal with information [...]