Logo

    oauth

    Explore " oauth" with insightful episodes like "Tech News of the Week: Lazarus Group exploit, 5G & Bluetooth flaws", "ISC StormCast for Monday, October 23rd, 2023", "Is privilege brokering broken? Cloud security management in 2023", "Expert Talk: Software Security • Jim Manico & John Steven" and "Challenge, IE, OAuth, Whiteboard, MicrosoftTeams" from podcasts like ""Nyedis Anarchy Series", "SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)", "Tech means Business", "GOTO - Today, Tomorrow and the Future" and "Talk Microsoft 365"" and more!

    Episodes (13)

    Tech News of the Week: Lazarus Group exploit, 5G & Bluetooth flaws

    Tech News of the Week: Lazarus Group exploit, 5G & Bluetooth flaws

    This is our first of hopefully many videos to come, giving you a roundup of what you need to know this week in tech. This includes Microsoft's final 2023 patch, a recent Lazarus Group exploit, OAuth attacks, and flaws in both 5G modems and Bluetooth.

     

    For full video of this episode, head over to our Youtube channel at http://youtube.com/@nyedisiam

     

    Be sure to subscribe to the show on all podcast platforms and follow us on all social media @Nyedisiam 

    ISC StormCast for Monday, October 23rd, 2023

    Is privilege brokering broken? Cloud security management in 2023

    Is privilege brokering broken? Cloud security management in 2023

    This podcast is produced in conjunction with BeyondTrust.

    Many of the security tools we use to protect ourselves and our organizations came into existence at a time before "the cloud" was a thing and certainly before hybrid working practices. Can we use the same tools in a different way, or do we need a new toolset? Or a whole new approach?

    These questions and more are the subjects for discussion on the Tech Means Business podcast with our guest, Morey Haber, the Chief Security Officer at BeyondTrust. We talk about zero-trust, privileges and access policies, geofencing, and cloud privilege brokering.

    Cloud Infrastructure Entitlement Management is a catchall term that covers policy-based access, identity management, privileged access, and much more – the full toolkit and approach that organizations migrating to the cloud need to protect themselves and their employees.

    Continuous validation needn't mean re-authenticating every time we switch to a different application or service, yet it's still the way many cybersecurity teams think. Listen in to discover how new security methods protect better and empower users to work more efficiently.

    The NIST Whitepaper on Zero-Trust is here: [PDF]
    https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-207.pdf

    BeyondTrust's information can be found here:
    ~https://www.beyondtrust.com/

    Morey Haber's books are available here:
    https://www.amazon.com/stores/Morey-J.-Haber/author/B078HDPHSN

    Morey himself is here:
    https://www.linkedin.com/in/mjhaber

    Your host, Joe Green, appears courtesy of LinkedIn here:
    https://www.linkedin.com/in/josephedwardgreen/

    Expert Talk: Software Security • Jim Manico & John Steven

    Expert Talk: Software Security • Jim Manico & John Steven

    This interview was recorded for GOTO Unscripted.
    gotopia.tech

    Read the full transcription of this interview here

    Jim Manico - Founder at Manicode Security & Co-Author of "Iron-Clad Java"
    John Steven - Founding Principal at Aedify Security & CTO at Concourse Labs

    DESCRIPTION
    Security is a key topic in software. Lately, it has shifted from a security team responsibility to a task every single developer has to think about. Jim Manico, Founder and Secure Coding Educator at Manicode Security, and John Steven, the Founding Principal at Aedify Security, assess the evolution of the security role in order for developers to make the right decisions.

    RECOMMENDED BOOKS
    Jim Manico & August Detlefsen • Iron-Clad Java
    Liz Rice • Container Security
    Liz Rice • Kubernetes Security
    Aaron Parecki • OAuth 2.0 Simplified
    Aaron Parecki • OAuth 2.0 Servers
    Aaron Parecki • The Little Book of OAuth 2.0 RFCs
    Erdal Ozkaya • Cybersecurity: The Beginner's Guide
    Richer & Sanso • OAuth 2 in Action
    Wilson & Hingnikar • Demystifying OAuth 2.0, OpenID Connect, and SAML 2.0

    Twitter
    LinkedIn
    Facebook

    Looking for a unique learning experience?
    Attend the next GOTO conference near you! Get your ticket at gotopia.tech

    SUBSCRIBE TO OUR YOUTUBE CHANNEL - new videos posted almost daily.

    Twitter
    Instagram
    LinkedIn
    Facebook

    Looking for a unique learning experience?
    Attend the next GOTO conference near you! Get your ticket: gotopia.tech

    SUBSCRIBE TO OUR YOUTUBE CHANNEL - new videos posted daily!

    Challenge, IE, OAuth, Whiteboard, MicrosoftTeams

    Challenge, IE, OAuth, Whiteboard, MicrosoftTeams
    Hallo liebe Zuhörer:Innen, Hallo liebe Community,

    dieses Mal haben wir sehr viele unterschiedliche Themen in unserer Episode für Euch vorbereitet.
    Zum einen berichten wir von unserer Erfahrung mit der "jedes Meeting beginnt 5 oder 10 Minuten später"-Challenge, bevor wir dann über das Support-Ende des Internet Explorer's (IE's) sprechen.
    Im Anschluss widmen wir uns der Sicherheit und sprechen über die Kooperation von Microsoft und Apple um Apple Mail sicherer zu machen und dort oAuth zu ermöglichen.
    Zum Schluss geht es noch um die Microsoft Whiteboard App und die Zusammenarbeit mit Externen in einer Besprechung, sowie um neue Apps in Microsoft Teams selbst.
      
    Für einige der Themen haben wir die Links für mehr Details in die Beschreibung gepackt.

    Wie immer freuen wir uns über Euer Feedback und wünschen Euch viel Spaß bei unserem Talk,
    Michael und Thorsten
    -------------------------------------------------
    Apple Mail Security: Microsoft and Apple Working Together to Improve Exchange Online Security - Microsoft Tech Community
    Apple Mail Security - Admin Center News: https://admin.microsoft.com/?ref=MessageCenter/:/messages/MC393181
    Whiteboard mit Externen: Message center - Microsoft 365 admin center
    Chat mit mir selbst: Message center - Microsoft 365 admin center
    -------------------------------------------------
    Link zum Blog findet ihr hier: https://talkm365.net
    Auf Twitter unter: @TalkM365
    Twitter Michael: @plemich
    Twitter Thorsten: @thorpick
    Link zum YouTube-Kanal: https://link.talkm365.net/YouTube
    Link zum Teams UG - Meetup: https://link.talkm365.net/TeamsUGMeetup
    Link zu Thorstens YouTube-Kanal (Quick-Tipps): Thorsten Pickhan - YouTube
    -------------------------------------------------
    Reference-Links:
    Music Intro/Outro: Vacation - AShamaluevMusic.
    Music Link: https://soundcloud.com/ashamaluevmusic/vacation
    Music Background: Inspirational Corporate Ambient - AShamaluevMusic
    Music Link: https://www.patreon.com/ashamaluevmusic
    -------------------------------------------------

    Cloud identities and the transformation of cloud advocacy, with Christos Matskas

    Cloud identities and the transformation of cloud advocacy, with Christos Matskas

    Guest Bio

    Christos Matskas is a Senior Program Manager working as a Developer Advocate for the Microsoft Identity Division. His role involves helping developers write more secure and robust software, leveraging the power of Identity and Cloud.

    Before joining Microsoft, he was a successful entrepreneur collaborating with companies such as MarkIT, Lockheed Martin, and Barclays. He routinely works with the Azure Active Directory, MS Graph, and Managed Identities and he’s got 15 yrs of experience writing Software on the .NET stack.

    Christos contributes regularly to numerous OSS projects and works closely with the developer community to make the space bigger and better. He’s also a dad, husband, speaker, and passionate streamer.

    Timestamps

    • 0:45 Speakers Introduction
    • 1:37 Christos typical day
    • 3:12 The transformation of Cloud Advocacy
    • 7:08 Which accounts to follow on TikTok/Discord
    • 8:51 External and Internal communication
    • 13:21 Managed Identities
    • 19:47 Microsoft.Identity.Web Library
    • 23:47 Securing Cloud Identity in the future
    • 29:57 Managed Identity in Cosmos DB
    • 32:29 Future of Tech
    • 37:30 Diversity and inclusion
    • 40:49 Community
    • 42:05 Episode Wrap-up

    Connect with Christos on:

    Connect with Cloud Gossip on:

    Connect with Annie on:

    Connect with Karl on:

    Thanks for listening to Cloud Gossip! You can find us from our website CloudGossip.net. 

    Please leave us a review and subscribe to us at iTunes, Google, or Spotify!

    The Mobilecast (.net) #3 - Identity and Access Management

    The Mobilecast (.net) #3 - Identity and Access Management
    Brian Katz talks with Paul Madsen (@paulmadsen, Office of CTO at Ping Identity) about the challenges of identity management, accesss management, and securing mobile applications, and the associated data. They explore SSO, SAML, JSON, OAuth and other security and identity technologies that are driving mobility solutions. They also explore the challenges of application placement and how IT organizations are managing services across multiple SaaS providers.

    Myles Eftos - Web APIs, Oauth and OpenID: A developer’s guide

    Myles Eftos - Web APIs, Oauth and OpenID: A developer’s guide
    Online web applications are big business, with many people relying on the cloud for data storage and workflow. These days, an API is an essential part of any online system, but this presents authentication and authorisation issues for the humble web developer. Learn how to create Web APIs, how OpenID and Oauth works and what you need to do to implement them. Myles is a Perth-based Web developer who feels as at home building INNER JOINS as he does calculating the specificity of CSS selectors. He has worked in all the major web languages, with his weapon of choice being Ruby on Rails. He is a big advocate of semantic CSS, and unobtrusive JavaScript. He has a weakness for code double dares, many of which have resulted in crazy experiments, such as @baggygreen: a twitter cricket commentator and a version of Super Mario Bros. written entirely in HTML, CSS and JavaScript. During his 8-years in the industry, working under the moniker of MadPilot Productions, he has worked with pretty much everyone in Perth. He has also been on the committee of the Australian Web Industry Association since it’s inception, currently residing in the role of event coordinator. Licensed as Creative Commons Attribution-Share Alike 3.0 (http://creativecommons.org/licenses/by-sa/3.0/).
    Logo

    © 2024 Podcastworld. All rights reserved

    Stay up to date

    For any inquiries, please email us at hello@podcastworld.io