Risky Business #166 -- Bad guys find more ways to mess with Authenticode

On this week's show we're chatting with F-Secure's Jarno Niemela about some of the issues with Authenticode. He'll tell us about one fascinating case where a piece of malware actually carried a valid signature from a real company... stolen keys, right? As it turned out, that company didn't make software and had no idea what an Authenticode cert actually was. Jarno got to the bottom of that little mystery and tells us all about it after the news with Adam Boileau.
In this week's sponsor interview we're chatting with Tenable Network Security's CSO Marcus Ranum about a new project being run by DARPA, the US Defence Advanced Research Projects Agency.
The project is called CINDER and it's all about detecting rogue insider behaviour. It has potential to be a VERY interesting project, and Marcus shares his thoughts on it.
Here's a link to Jarno's CARO conference slides [pdf].
User login
Recent podcasts
-
Symantec and McAfee kick off the year of the Dragon with some decent lulzā¦
-
Russians owned our pumps. Persians pwned our drones.
-
How to turn your Kindle into a free, global SSH and IRC modem...
-
Does the hype match the reality?
-
Rootkitting OS X, fun with EFI bootloaders and more...


Recent comments
1 day 6 hours ago
2 days 6 hours ago
1 week 5 days ago
1 week 6 days ago
1 week 6 days ago
3 weeks 3 days ago
3 weeks 4 days ago
5 weeks 2 days ago
5 weeks 3 days ago
5 weeks 3 days ago