Open Source Security Podcast

By: Josh Bressers & Kurt Seifried
  • Summary

  • A security podcast geared towards those looking to better understand security topics of the day. Hosted by Kurt Seifried and Josh Bressers covering a wide range of topics including IoT, application security, operational security, cloud, devops, and security news of the day. There is a special open source twist to the discussion often giving a unique perspective on any given topic.
    This work is licensed under the Creative Commons Attribution 4.0 International License. To view a copy of this license, visit http://creativecommons.org/licenses/by/4.0/ or send a letter to Creative Commons, PO Box 1866, Mountain View, CA 94042, USA.
    Show More Show Less
activate_Holiday_promo_in_buybox_DT_T2
Episodes
  • Episode 454 - The state of open source with Brian Fix from Sonatype and Donald Fischer from Tidelift
    Nov 11 2024

    Josh and Kurt talk to Brian Fox from Sonatype and Donald Fischer from Tidelift about their recent reports as well as open source. There are really interesting connections between the two reports. The overall theme seems to be open source is huge, everywhere, and needs help. But all is no lost! There's some great ideas on what the future needs to look like.

    Show Notes
    • Donald Fischer
    • Brian Fox
    • Tidelift
    • Sonatype
    • The 2024 Tidelift state of the open source maintainer report
    • Sonatype State of the Software Supply Chain
    • Anchore 2024 Software Supply Chain Security Report
    • OpenSSF TAC issue 101
    Show More Show Less
    43 mins
  • Episode 453 - Software Liability
    Nov 4 2024

    Josh and Kurt talk about three government activities happening around security. CISA has a request for comment, and an international strategic plan around cybersecurity. These are both good ideas, and hopefully will help drive change. But we also discuss an EU proposal that brings liability rules to software which sounds like a great way to force change to happen.

    Show Notes
    • Request for Comment on Product Security Bad Practices Guidance
    • FY2025-2026 CISA International Strategic Plan
    • EU brings product liability rules in line with digital age and circular economy
    • CSA Cloud Controls Matrix
    Show More Show Less
    36 mins
  • Episode 452 - All about Meshtastic
    Oct 28 2024

    Josh and Kurt talk about the Meshtastic open source project. It's a really slick mesh radio system that runs on very cheap radio equipment. This episode isn't very security related (there are a few things), but it is very open source.

    Show Notes
    • Meshtastic
    • Heltec LoRa 32(V3) Radio
    • 465 Rutgers University Confirmed: Meshtastic and LoRa are dangerous
    • Meshtastic Routing Issues & Deployment Scenarios
    • TC2-BBS-mesh
    • The Comms Channel
    • Josh's BBS
    • Heltec T114 bug
    Show More Show Less
    39 mins

What listeners say about Open Source Security Podcast

Average customer ratings

Reviews - Please select the tabs below to change the source of reviews.