<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>Security Justice &#187; Podcast Episodes</title>
	<atom:link href="http://securityjustice.com/archives/category/podcast-episodes/feed" rel="self" type="application/rss+xml" />
	<link>http://securityjustice.com</link>
	<description>A security podcast from Cleveland, Ohio. We talk about security regarding technology and computers but also provide information and news about physical security. Keeping things simple with a good balance between technical, non-technical, and having fun while talking about security is what we are all about! Recorded live in a local pub with audience participation.</description>
	<lastBuildDate>Tue, 07 Sep 2010 01:19:23 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<!-- podcast_generator="podPress/8.8" - maintenance_release="8.8.5.3" -->
	<copyright>Copyright &#xA9; 2010 Security Justice </copyright>
	<managingEditor>feedback@securityjustice.com (Security Justice)</managingEditor>
	<webMaster>feedback@securityjustice.com (Security Justice)</webMaster>
	<category>Security Podcasts</category>
	<ttl>1440</ttl>
	<image>
		<url>http://securityjustice.com/wp-content/plugins/podpress/images/sj_logo_144x144.jpg</url>
		<title>Security Justice &#187; Podcast Episodes</title>
		<link>http://securityjustice.com</link>
		<width>144</width>
		<height>144</height>
	</image>
	<itunes:subtitle>Security Justice Podcast</itunes:subtitle>
	<itunes:summary>A podcast about security recorded live at an Irish Pub in Cleveland, Ohio!</itunes:summary>
	<itunes:keywords>security,pentest,hacking</itunes:keywords>
	<itunes:category text="Technology" />
	<itunes:category text="Technology">
		<itunes:category text="Tech News" />
	</itunes:category>
	<itunes:author>Security Justice</itunes:author>
	<itunes:owner>
		<itunes:name>Security Justice</itunes:name>
		<itunes:email>feedback@securityjustice.com</itunes:email>
	</itunes:owner>
	<itunes:block>no</itunes:block>
	<itunes:explicit>yes</itunes:explicit>
	<itunes:image href="http://securityjustice.com/wp-content/plugins/podpress/images/sj_logo_300x300.jpg" />
		<item>
		<title>Security Justice Episode 28 &#8211; Interview with Jack Daniel</title>
		<link>http://securityjustice.com/archives/132</link>
		<comments>http://securityjustice.com/archives/132#comments</comments>
		<pubDate>Mon, 06 Sep 2010 19:57:35 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=132</guid>
		<description><![CDATA[This is the 28th episode of the Security Justice podcast recorded August 18th 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guests Jack Daniel, dotzero, and Alex from SecureState. Music as always provided by dualCORE. Thanks to everyone listening to the live stream [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-133" title="jack" src="http://securityjustice.com/wp-content/uploads/2010/09/jack.jpg" alt="" width="104" height="200" />This is the 28th episode of the Security Justice podcast  recorded August 18th 2010 live at <a href="http://www.damons.com/location2.cfm?location=transaction%3DlocMap%26country%3Dus%26template%3Dmap%26address%3D4181+Rockside+Rd.%26city%3DIndependence%26stateProvince%3DOHIO%26postalCode%3D44131%26x%3D67%26y%3D20">Damon’s     Grill in Independence, OH</a>.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a>, <a href="http://twitter.com/matthewneely">Matt</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="http://twitter.com/jack_daniel">Jack Daniel,</a> <a href="http://www.flickr.com/photos/11182155@N06/">dotzero</a>, and Alex from SecureState. Music as always  provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>.  Thanks to    everyone listening to the live stream and for participating  in the chat    via IRC.   Here are the show notes:</p>
<ul>
<li>We interview the InfoSec curmudgeon: Jack Daniel.  Jack talks about a certain security certification organization, BSides, Vegas updates, PCI, getting free drinks because you look like ZZ Top and much more! Also, there are some interesting updates from Defcon provided by dotzero.  Be sure to check out <a href="http://blog.uncommonsensesecurity.com/">Jack&#8217;s blog</a>!</li>
<li>Don&#8217;t forget about <a href="http://ohiolinux.org/">Ohio Linux Fest</a> September 10-12th and the <a href="http://www.clevelandhacks.com/">Hurricane Labs Hack Challenge</a> September 22nd.</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or     comment below.</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/132/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/132/0/Security_Justice_Episode28.mp3" length="87742388" type="audio/mpeg" />
		<itunes:duration>1:31:17</itunes:duration>
		<itunes:subtitle>This is the 28th episode of the Security Justice podcast  recorded August 18th 2010 live at Damon’s     Grill in Independence, ...</itunes:subtitle>
		<itunes:summary>This is the 28th episode of the Security Justice podcast  recorded August 18th 2010 live at Damon’s     Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guests Jack Daniel, dotzero, and Alex from SecureState. Music as always  provided by dualCORE.  Thanks to    everyone listening to the live stream and for participating  in the chat    via IRC.   Here are the show notes:

	We interview the InfoSec curmudgeon: Jack Daniel.  Jack talks about a certain security certification organization, BSides, Vegas updates, PCI, getting free drinks because you look like ZZ Top and much more! Also, there are some interesting updates from Defcon provided by dotzero.  Be sure to check out Jack's blog!
	Don't forget about Ohio Linux Fest September 10-12th and the Hurricane Labs Hack Challenge September 22nd.

Please send show feedback to feedback [aT] securityjustice.com or     comment below.</itunes:summary>
		<itunes:keywords>security,pentest,hacking</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 27 – Social Engineering with Brian Brushwood from Scam School</title>
		<link>http://securityjustice.com/archives/128</link>
		<comments>http://securityjustice.com/archives/128#comments</comments>
		<pubDate>Tue, 03 Aug 2010 01:01:37 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[brianbrushwood]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[dave_rel1k]]></category>
		<category><![CDATA[Defcon]]></category>
		<category><![CDATA[revision3]]></category>
		<category><![CDATA[scamschool]]></category>
		<category><![CDATA[socialengineering]]></category>
		<category><![CDATA[tom]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=128</guid>
		<description><![CDATA[This is the 27th episode of the Security Justice podcast recorded July 21st 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, and Chris with special guests Brian Brushwood from Scam School and Dave Kennedy. Music as always provided by dualCORE. Thanks to everyone listening to the live stream [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-129" title="brianbrushwood" src="http://securityjustice.com/wp-content/uploads/2010/08/brianbrushwood.jpg" alt="" width="200" height="200" />This is the 27th episode of the Security Justice podcast  recorded July 21st 2010 live at <a href="http://www.damons.com/location2.cfm?location=transaction%3DlocMap%26country%3Dus%26template%3Dmap%26address%3D4181+Rockside+Rd.%26city%3DIndependence%26stateProvince%3DOHIO%26postalCode%3D44131%26x%3D67%26y%3D20">Damon’s     Grill in Independence, OH</a>.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a>, and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="http://twitter.com/shwood">Brian Brushwood</a> from <a href="http://revision3.com/scamschool">Scam School</a> and <a href="http://twitter.com/dave_rel1k">Dave Kennedy.</a> Music as always  provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>.  Thanks to    everyone listening to the live stream and for participating  in the chat    via IRC.   Here are the show notes:</p>
<ul>
<li>We interview <a href="http://revision3.com/host/brian-brushwood">Brian Brushwood</a> the host of <a href="http://revision3.com/scamschool">&#8220;Scam School&#8221;</a> on Revision3.  From the Revision3 website: Brian is the author of The Professional&#8217;s Guide to Fire Eating; Pack the  House; and Cheats,Cons, Swindles, and Tricks. He has appeared on dozens  of television and radio broadcasts, including &#8220;The Tonight Show,&#8221; and  programs on ABC, NBC, FOX, the BBC, E! and more.  He eats FIRE, knows a thing or two about magic and gives us some great advice on social engineering and techniques on how to pick up girls in a bar. <img src='http://securityjustice.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or     comment below.</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/128/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/128/0/Security_Justice_Episode27.mp3" length="69536197" type="audio/mpeg" />
		<itunes:duration>01:12:19</itunes:duration>
		<itunes:subtitle>This is the 27th episode of the Security Justice podcast  recorded July 21st 2010 live at Damon’s     Grill in Independence, ...</itunes:subtitle>
		<itunes:summary>This is the 27th episode of the Security Justice podcast  recorded July 21st 2010 live at Damon’s     Grill in Independence, OH.  This episode was hosted by Tom, Dave, and Chris with special guests Brian Brushwood from Scam School and Dave Kennedy. Music as always  provided by dualCORE.  Thanks to    everyone listening to the live stream and for participating  in the chat    via IRC.   Here are the show notes:

	We interview Brian Brushwood the host of "Scam School" on Revision3.  From the Revision3 website: Brian is the author of The Professional's Guide to Fire Eating; Pack the  House; and Cheats,Cons, Swindles, and Tricks. He has appeared on dozens  of television and radio broadcasts, including "The Tonight Show," and  programs on ABC, NBC, FOX, the BBC, E! and more.  He eats FIRE, knows a thing or two about magic and gives us some great advice on social engineering and techniques on how to pick up girls in a bar. :-)

Please send show feedback to feedback [aT] securityjustice.com or     comment below.</itunes:summary>
		<itunes:keywords>security,pentest,hacking</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 26 – Interview with Joshua Abraham (@jabra), Dave Kennedy (@dave_re1ik) SET v0.6 and Arnold Palmer</title>
		<link>http://securityjustice.com/archives/121</link>
		<comments>http://securityjustice.com/archives/121#comments</comments>
		<pubDate>Fri, 02 Jul 2010 13:24:54 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[arnoldpalmer]]></category>
		<category><![CDATA[blackhat]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[Defcon]]></category>
		<category><![CDATA[fierce]]></category>
		<category><![CDATA[jabra]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[rapid7]]></category>
		<category><![CDATA[SANS]]></category>
		<category><![CDATA[tom]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=121</guid>
		<description><![CDATA[This is the 26th episode of the Security Justice podcast recorded May 19th, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guests Joshua “Jabra” Abraham from Rapid7, Dave Kennedy and Ghostnomad.  Music as always provided by dualCORE. Thanks to everyone listening to the [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-122" title="fiercesmall" src="http://securityjustice.com/wp-content/uploads/2010/07/fiercesmall.jpg" alt="" width="200" height="150" />This is the 26th episode of the Security Justice podcast  recorded May  19th, 2010 live at <a href="http://www.damons.com/location2.cfm?location=transaction%3DlocMap%26country%3Dus%26template%3Dmap%26address%3D4181+Rockside+Rd.%26city%3DIndependence%26stateProvince%3DOHIO%26postalCode%3D44131%26x%3D67%26y%3D20">Damon’s     Grill in Independence, OH</a>.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a>, <a href="http://twitter.com/matthewneely">Matt</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="http://twitter.com/jabra">Joshua “Jabra” Abraham</a> from Rapid7, <a href="http://twitter.com/dave_rel1k">Dave Kennedy</a> and <a href="http://twitter.com/ghostnomad">Ghostnomad</a>.   Music as always  provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>.  Thanks to    everyone listening to the live stream and for participating  in the chat    via IRC.   Here are the show notes:</p>
<ul>
<li>Interview with <a href="http://twitter.com/jabra">Joshua  “Jabra” Abraham</a>.  Jabra contributes to the BackTrack LiveCD, BeEF, Nikto, Fierce, and  PBNJ.  You probably have seen his talks at BlackHat, DefCon,  ShmooCon, Infosec World, CSI, OWASP Conferences, LinuxWorld, Comdex and  BLUG.  He also codes in Perl! Yeah baby!</li>
<li><a href="http://spl0it.wordpress.com">Check out Jabra&#8217;s blog</a>.  Great resource for scripts and pentest tools.</li>
<li>Jabra gave a really good talk at the SANS Pentest Summit <a href="http://spl0it.org/files/talks/sans_pentest_summit10/Goal_Oriented_Pentesting.pdf">&#8220;Goal Oriented Pentesting&#8221;</a>.  Information on the <a href="http://trac.assembla.com/fierce">upcoming release of Fierce 2</a>.</li>
<li><a href="http://www.slideshare.net/jabra/unmasking-you">&#8220;Unmasking  You&#8221;</a> talk with Rsnake and Jabra from Defcon 17</li>
<li>Be sure to check out everything <a href="http://www.blackhat.com/html/bh-us-10/bh-us-10-briefings.html#Kennedy">Dave Kennedy is up to at BlackHat</a> and Defcon this year.  Dave gives an update on the Social Engineering contest at Defcon as well.  Let&#8217;s pray for no heart attacks this year Dave!</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or     comment below.</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/121/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/121/0/Security_Justice_Episode26.mp3" length="57270148" type="audio/mpeg" />
		<itunes:duration>59:35</itunes:duration>
		<itunes:subtitle>This is the 26th episode of the Security Justice podcast  recorded May  19th, 2010 live at Damon’s     Grill in ...</itunes:subtitle>
		<itunes:summary>This is the 26th episode of the Security Justice podcast  recorded May  19th, 2010 live at Damon’s     Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guests Joshua “Jabra” Abraham from Rapid7, Dave Kennedy and Ghostnomad.   Music as always  provided by dualCORE.  Thanks to    everyone listening to the live stream and for participating  in the chat    via IRC.   Here are the show notes:

	Interview with Joshua  “Jabra” Abraham.  Jabra contributes to the BackTrack LiveCD, BeEF, Nikto, Fierce, and  PBNJ.  You probably have seen his talks at BlackHat, DefCon,  ShmooCon, Infosec World, CSI, OWASP Conferences, LinuxWorld, Comdex and  BLUG.  He also codes in Perl! Yeah baby!
	Check out Jabra's blog.  Great resource for scripts and pentest tools.
	Jabra gave a really good talk at the SANS Pentest Summit "Goal Oriented Pentesting".  Information on the upcoming release of Fierce 2.
	"Unmasking  You" talk with Rsnake and Jabra from Defcon 17
	Be sure to check out everything Dave Kennedy is up to at BlackHat and Defcon this year.  Dave gives an update on the Social Engineering contest at Defcon as well.  Let's pray for no heart attacks this year Dave!

Please send show feedback to feedback [aT] securityjustice.com or     comment below.</itunes:summary>
		<itunes:keywords>security,pentest,hacking</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 25 – Interview with Rafal Los, THOTCON, AppSec Security Fail, Cyber what?</title>
		<link>http://securityjustice.com/archives/118</link>
		<comments>http://securityjustice.com/archives/118#comments</comments>
		<pubDate>Thu, 10 Jun 2010 03:06:16 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[appsec]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[ghostnomad]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[qa]]></category>
		<category><![CDATA[rafallos]]></category>
		<category><![CDATA[thotcon]]></category>
		<category><![CDATA[tom]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=118</guid>
		<description><![CDATA[This is the 25th episode of the Security Justice podcast recorded May 19th, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guest Rafal Los (speaker, blogger, appsec ninja).  Music as always provided by dualCORE. Thanks to everyone listening to the live stream and [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-119" title="Headshot_Blog" src="http://securityjustice.com/wp-content/uploads/2010/06/Headshot_Blog.jpg" alt="" width="130" height="188" />This is the 25th episode of the Security Justice podcast  recorded May 19th, 2010 live at <a href="http://www.damons.com/location2.cfm?location=transaction%3DlocMap%26country%3Dus%26template%3Dmap%26address%3D4181+Rockside+Rd.%26city%3DIndependence%26stateProvince%3DOHIO%26postalCode%3D44131%26x%3D67%26y%3D20">Damon’s    Grill in Independence, OH</a>.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a>, <a href="http://twitter.com/matthewneely">Matt</a> and <a href="http://chrisclymer.com/">Chris</a> with special guest <a href="http://twitter.com/rafallos">Rafal Los</a> (speaker, blogger, appsec ninja).   Music as always  provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>.  Thanks to   everyone listening to the live stream and for participating  in the chat   via IRC.   Here are the show notes:</p>
<ul>
<li>We have our very first out of town guest!  Rafal Los from HP joins us for some *very* lively conversation.  You should really <a href="http://preachsecurity.blogspot.com/">read</a> his <a href="http://www.communities.hp.com/securitysoftware/blogs/rafal/default.aspx">blogs</a>.</li>
<li>Rafal gives an update on <a href="http://www.thotcon.org/">THOTCON</a>.  Yes, we want to podcast LIVE from THOTCON next year! It&#8217;s in Chicago.  We like Chicago.</li>
<li>Rafal also did <a href="http://www.communities.hp.com/securitysoftware/blogs/rafal/archive/2010/04/01/best-april-fools-joke-ever.aspx">30  disasters in 30 days (this is the first one)</a>. Awesome read!</li>
<li>Check out Rafal&#8217;s talk from Source Boston: <a href="http://www.youtube.com/watch?v=-TpwLguZbqE">Into the Rabbit Hole: Execution Flow-Based Web Application Testing</a>. We have some great discussion about this on why we are failing at web app testing.  Can QA do security?  Should developers be licensed like other industries?</li>
<li>We end with a discussion on security certifications, degrees, red team vs. blue team and the word &#8220;Cyber&#8221;&#8230;.oh my.</li>
<li>Stay tuned after the podcast for some exclusive LIVE dualCORE and an interesting collection of bumpers.  Enjoy!</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or    comment below.</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/118/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/118/0/Security_Justice_Episode25.mp3" length="81876863" type="audio/mpeg" />
		<itunes:duration>85:15</itunes:duration>
		<itunes:subtitle>This is the 25th episode of the Security Justice podcast  recorded May 19th, 2010 live at Damon’s    Grill in Independence, OH.  ...</itunes:subtitle>
		<itunes:summary>This is the 25th episode of the Security Justice podcast  recorded May 19th, 2010 live at Damon’s    Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guest Rafal Los (speaker, blogger, appsec ninja).   Music as always  provided by dualCORE.  Thanks to   everyone listening to the live stream and for participating  in the chat   via IRC.   Here are the show notes:

	We have our very first out of town guest!  Rafal Los from HP joins us for some *very* lively conversation.  You should really read his blogs.
	Rafal gives an update on THOTCON.  Yes, we want to podcast LIVE from THOTCON next year! It's in Chicago.  We like Chicago.
	Rafal also did 30  disasters in 30 days (this is the first one). Awesome read!
	Check out Rafal's talk from Source Boston: Into the Rabbit Hole: Execution Flow-Based Web Application Testing. We have some great discussion about this on why we are failing at web app testing.  Can QA do security?  Should developers be licensed like other industries?
	We end with a discussion on security certifications, degrees, red team vs. blue team and the word "Cyber"....oh my.
	Stay tuned after the podcast for some exclusive LIVE dualCORE and an interesting collection of bumpers.  Enjoy!

Please send show feedback to feedback [aT] securityjustice.com or    comment below.</itunes:summary>
		<itunes:keywords>security,pentest,hacking</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 24 &#8211; Interview with Steve Ocepek from SpiderLabs, Post Notacon Updates</title>
		<link>http://securityjustice.com/archives/116</link>
		<comments>http://securityjustice.com/archives/116#comments</comments>
		<pubDate>Thu, 06 May 2010 02:01:16 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[0ph3lia]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[notacon]]></category>
		<category><![CDATA[oracle]]></category>
		<category><![CDATA[spiderlabs]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[trustwave]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[zombies]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=116</guid>
		<description><![CDATA[This is the 24th episode (two years!) of the Security Justice podcast recorded April 21st, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, and Chris with special guest Steve Ocepek from SpiderLabs.  Music as always provided by dualCORE. Thanks to everyone listening to the live stream and for [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-medium wp-image-117" title="SecurityJustice_Zombies" src="http://securityjustice.com/wp-content/uploads/2010/05/SecurityJustice_Zombies-300x225.jpg" alt="" width="300" height="225" />This is the 24th episode (two years!) of the Security Justice podcast recorded April 21st, 2010 live at <a href="http://www.damons.com/location2.cfm?location=transaction%3DlocMap%26country%3Dus%26template%3Dmap%26address%3D4181+Rockside+Rd.%26city%3DIndependence%26stateProvince%3DOHIO%26postalCode%3D44131%26x%3D67%26y%3D20">Damon’s   Grill in Independence, OH</a>.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a>, and <a href="http://chrisclymer.com/">Chris</a> with special guest Steve Ocepek from <a href="https://www.trustwave.com/spiderLabs.php">SpiderLabs</a>.  Music as always  provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>.  Thanks to  everyone listening to the live stream and for participating  in the chat  via IRC.   Here are the show notes:</p>
<ul>
<li>We interview Steve Ocepek from <a href="https://www.trustwave.com/spiderLabs.php">SpiderLabs</a> about his recent talk at BlackHat EU and NEOISF &#8220;<a href="https://media.blackhat.com/bh-eu-10/presentations/Henrique_Ocepek/BlackHat-EU-2010-Henrique-Ocepek-Oracle-Interrupted-slides.pdf"><strong>Oracle, Interrupted: Stealing Sessions and Credentials</strong></a>&#8220;.  Steve talks about his job as head of security research for SpiderLabs, penetration testing Oracle, Layer 2 attacks and much more!</li>
<li>Chris and Tom provide our Notacon 7 updates.  <a href="http://notacon.org">Notacon</a> was awesome as usual!  We hope to release the audio from our session from Notacon Radio&#8230;it was EPIC! If anything you should listen to it just for our interview of <a href="http://twitter.com/0ph3lia">0ph3lia</a>. RAGE!</li>
<li>Check out our <a href="http://www.flickr.com/photos/securityjustice/sets/72157623768694005/">pictures from &#8220;Surviving the Zombie Apocalypse&#8221;</a>.  We posted <a href="http://www.youtube.com/watch?v=QZu4wykERS0">some video</a> (you must see the Zombie Q&amp;A from the video), and <a href="http://www.youtube.com/watch?v=MjXwRLMFeqE">outtakes</a> from the presentation.  Full video can be <a href="http://wiki.notacon.org/NotaconMedia?action=AttachFile&amp;do=view&amp;target=nac2010-video.torrent">downloaded via Torrent</a> (with the other Notacon 7 videos).</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or   comment below.</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/116/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/116/0/Security_Justice_Episode24.mp3" length="67188565" type="audio/mpeg" />
		<itunes:duration>69:56</itunes:duration>
		<itunes:subtitle>This is the 24th episode (two years!) of the Security Justice podcast recorded April 21st, 2010 live at Damon’s   Grill in Independence, OH.  ...</itunes:subtitle>
		<itunes:summary>This is the 24th episode (two years!) of the Security Justice podcast recorded April 21st, 2010 live at Damon’s   Grill in Independence, OH.  This episode was hosted by Tom, Dave, and Chris with special guest Steve Ocepek from SpiderLabs.  Music as always  provided by dualCORE.  Thanks to  everyone listening to the live stream and for participating  in the chat  via IRC.   Here are the show notes:

	We interview Steve Ocepek from SpiderLabs about his recent talk at BlackHat EU and NEOISF "Oracle, Interrupted: Stealing Sessions and Credentials".  Steve talks about his job as head of security research for SpiderLabs, penetration testing Oracle, Layer 2 attacks and much more!
	Chris and Tom provide our Notacon 7 updates.  Notacon was awesome as usual!  We hope to release the audio from our session from Notacon Radio...it was EPIC! If anything you should listen to it just for our interview of 0ph3lia. RAGE!
	Check out our pictures from "Surviving the Zombie Apocalypse".  We posted some video (you must see the Zombie Q&#38;A from the video), and outtakes from the presentation.  Full video can be downloaded via Torrent (with the other Notacon 7 videos).

Please send show feedback to feedback [aT] securityjustice.com or   comment below.</itunes:summary>
		<itunes:keywords>security,pentest,hacking</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 23 – Infosec vs. IT Audit, Froggy and Tyger, Myrcurial and Notacon</title>
		<link>http://securityjustice.com/archives/113</link>
		<comments>http://securityjustice.com/archives/113#comments</comments>
		<pubDate>Wed, 24 Mar 2010 02:50:14 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[froggy]]></category>
		<category><![CDATA[itaudit]]></category>
		<category><![CDATA[myrcurial]]></category>
		<category><![CDATA[notacon]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[tyger]]></category>
		<category><![CDATA[zombies]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=113</guid>
		<description><![CDATA[This is the 23rd episode of the Security Justice podcast recorded March 17, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, and Chris with special guests Ghostnomad (the &#8220;auditor&#8221;) as well as Froggy and Tyger from Notacon AND Myrcurial.  Music as always provided by dualCORE. Thanks to everyone [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-114" title="audit" src="http://securityjustice.com/wp-content/uploads/2010/03/audit.jpg" alt="" width="210" height="185" />This is the 23rd episode of the Security Justice podcast recorded March 17, 2010 live at <a href="http://www.damons.com/location2.cfm?location=transaction%3DlocMap%26country%3Dus%26template%3Dmap%26address%3D4181+Rockside+Rd.%26city%3DIndependence%26stateProvince%3DOHIO%26postalCode%3D44131%26x%3D67%26y%3D20">Damon’s  Grill in Independence, OH</a>.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a>, and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="http://twitter.com/ghostnomad">Ghostnomad</a> (the &#8220;auditor&#8221;) as well as <a href="http://twitter.com/froggynotacon">Froggy</a> and <a href="http://twitter.com/tygernotacon">Tyger</a> from Notacon AND <a href="http://twitter.com/myrcurial">Myrcurial</a>.  Music as always provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>. Thanks to  everyone listening to the live stream and for participating in the chat  via IRC (that includes you <a href="http://www.exoticliability.com/">Chris Nickerson</a>..*gasp*).  Here are the show notes:</p>
<ul>
<li>Froggy and Tyger talk about <a href="http://notacon.org">Notacon 7</a>.  Security Justice will be there&#8230;hopefully on Notacon radio.  Come see our talk <a href="http://notacon.org/speakers.html#ZombieApocalypse">&#8220;Surviving the Zombie Apocalypse&#8221;</a> with our friends <a href="http://filer.case.edu/org/commedia/">The Confused Greenies</a>.  <a href="http://www.youtube.com/watch?v=Rt_EkpFwQFQ">See our exclusive preview here!</a> Also, come see <a href="http://www.notacon.org/speakers.html#Kirsch">Ghostnomad&#8217;s talk</a> and <a href="http://www.notacon.org/speakers.html#JamesArlen">all</a> <a href="http://www.notacon.org/speakers.html#SocialEngineering">three</a> <a href="http://www.notacon.org/speakers.html#FuturePanel">talks</a> with Myrcurial.</li>
<li>You should really come to Notacon&#8230;April 15-18th in Cleveland Ohio! Other talks worth checking out (besides all of them) include&#8230;<a href="http://www.notacon.org/speakers.html#inteighty">Int Eighty</a>, <a href="http://www.notacon.org/speakers.html#DavidKennedy">dave_rel1k</a>, <a href="http://www.notacon.org/speakers.html#Rad">Tiffany Rad</a>, <a href="http://www.notacon.org/speakers.html#rogueclown">Rogueclown</a>, <a href="http://www.notacon.org/speakers.html#SocialEngineering">Kaospunk</a>, <a href="http://www.notacon.org/speakers.html#AdrianCrenshaw">Irongeek</a> and <a href="http://www.notacon.org/speakers.html#MickDouglas">Mick Douglas</a> from <a href="http://pauldotcom.com">Pauldotcom Security Weekly</a>.</li>
<li>Interview with <a href="http://twitter.com/ghostnomad">Ghostnomad</a> who is a real, live, breathing IT Auditor (don&#8217;t worry&#8230;he&#8217;s actually pretty cool <img src='http://securityjustice.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' />  ).  We go one-on-one to find out what IT auditors do and how they are really not out to destroy us&#8230;or eat our children.  Myrcurial also joins the conversation&#8230;with NO Skype fail! Srsly..way to go Dave!</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or  comment below.</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/113/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/113/0/Security_Justice_Episode23.mp3" length="75271202" type="audio/mpeg" />
		<itunes:duration>78:21</itunes:duration>
		<itunes:subtitle>This is the 23rd episode of the Security Justice podcast recorded March 17, 2010 live at Damon’s  Grill in Independence, OH.  This episode was ...</itunes:subtitle>
		<itunes:summary>This is the 23rd episode of the Security Justice podcast recorded March 17, 2010 live at Damon’s  Grill in Independence, OH.  This episode was hosted by Tom, Dave, and Chris with special guests Ghostnomad (the "auditor") as well as Froggy and Tyger from Notacon AND Myrcurial.  Music as always provided by dualCORE. Thanks to  everyone listening to the live stream and for participating in the chat  via IRC (that includes you Chris Nickerson..*gasp*).  Here are the show notes:

	Froggy and Tyger talk about Notacon 7.  Security Justice will be there...hopefully on Notacon radio.  Come see our talk "Surviving the Zombie Apocalypse" with our friends The Confused Greenies.  See our exclusive preview here! Also, come see Ghostnomad's talk and all three talks with Myrcurial.
	You should really come to Notacon...April 15-18th in Cleveland Ohio! Other talks worth checking out (besides all of them) include...Int Eighty, dave_rel1k, Tiffany Rad, Rogueclown, Kaospunk, Irongeek and Mick Douglas from Pauldotcom Security Weekly.
	Interview with Ghostnomad who is a real, live, breathing IT Auditor (don't worry...he's actually pretty cool :-) ).  We go one-on-one to find out what IT auditors do and how they are really not out to destroy us...or eat our children.  Myrcurial also joins the conversation...with NO Skype fail! Srsly..way to go Dave!

Please send show feedback to feedback [aT] securityjustice.com or  comment below.</itunes:summary>
		<itunes:keywords>security,pentest,hacking,notacon,audit,it</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 22 &#8211; Physical Security, Interview with a Locksmith</title>
		<link>http://securityjustice.com/archives/110</link>
		<comments>http://securityjustice.com/archives/110#comments</comments>
		<pubDate>Thu, 25 Feb 2010 00:38:17 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[locks]]></category>
		<category><![CDATA[locksmith]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[physicalsecurity]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[tom]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=110</guid>
		<description><![CDATA[This is the 22nd episode of the Security Justice podcast recorded February 17, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guest John Doe the Locksmith.  Music as always provided by dualCORE. Thanks to everyone listening to the live stream and for participating [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-111" title="career-fail" src="http://securityjustice.com/wp-content/uploads/2010/02/career-fail.jpg" alt="" width="255" height="169" />This is the 22nd episode of the Security Justice podcast recorded February 17, 2010 live at <a href="http://www.damons.com/location2.cfm?location=transaction%3DlocMap%26country%3Dus%26template%3Dmap%26address%3D4181+Rockside+Rd.%26city%3DIndependence%26stateProvince%3DOHIO%26postalCode%3D44131%26x%3D67%26y%3D20">Damon’s Grill in Independence, OH</a>.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a>, <a href="http://twitter.com/matthewneely">Matt</a> and <a href="http://chrisclymer.com/">Chris</a> with special guest John Doe the Locksmith.  Music as always provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>. Thanks to everyone listening to the live stream and for participating in the chat via IRC.  Here are the show notes:</p>
<ul>
<li>A few Shmoocon updates! There was snow! Dave&#8217;s pictures posted soon&#8230;</li>
<li>Interview with &#8220;John Doe&#8221; the Locksmith.  John Doe talks about some of the biggest physical security fails he has seen as well as some great stories of alarm bypass.  He also talks about what are good consumer grade locks, what are his favorite lock picks, the rise of fake locksmiths and more.</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/110/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/110/0/Security_Justice_Episode22.mp3" length="47879661" type="audio/mpeg" />
		<itunes:duration>49:39</itunes:duration>
		<itunes:subtitle>This is the 22nd episode of the Security Justice podcast recorded February 17, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted ...</itunes:subtitle>
		<itunes:summary>This is the 22nd episode of the Security Justice podcast recorded February 17, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guest John Doe the Locksmith.  Music as always provided by dualCORE. Thanks to everyone listening to the live stream and for participating in the chat via IRC.  Here are the show notes:

	A few Shmoocon updates! There was snow! Dave's pictures posted soon...
	Interview with "John Doe" the Locksmith.  John Doe talks about some of the biggest physical security fails he has seen as well as some great stories of alarm bypass.  He also talks about what are good consumer grade locks, what are his favorite lock picks, the rise of fake locksmiths and more.

Please send show feedback to feedback [aT] securityjustice.com or comment below.</itunes:summary>
		<itunes:keywords>security,pentest,hacking</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 21 &#8211; Woot.com, Hack Challenge, @dave_rel1k and SET</title>
		<link>http://securityjustice.com/archives/106</link>
		<comments>http://securityjustice.com/archives/106#comments</comments>
		<pubDate>Wed, 27 Jan 2010 03:28:48 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[digininja]]></category>
		<category><![CDATA[hurricanelabs]]></category>
		<category><![CDATA[myrcurial]]></category>
		<category><![CDATA[pfsense]]></category>
		<category><![CDATA[SET]]></category>
		<category><![CDATA[shmooballs]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[shmoogroup]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[woot]]></category>
		<category><![CDATA[zombies]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=106</guid>
		<description><![CDATA[This is the 21st episode of the Security Justice podcast recorded January 20, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guests Dave Kennedy creator of the Social Engineer Toolkit (SET) and Shawn Miller from Woot.com.  Music as always provided by dualCORE. Thanks [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-107" title="woot_logo" src="http://securityjustice.com/wp-content/uploads/2010/01/woot_logo.png" alt="" width="200" height="150" />This is the 21st episode of the Security Justice podcast recorded January 20, 2010 live at <a href="http://www.damons.com/location2.cfm?location=transaction%3DlocMap%26country%3Dus%26template%3Dmap%26address%3D4181+Rockside+Rd.%26city%3DIndependence%26stateProvince%3DOHIO%26postalCode%3D44131%26x%3D67%26y%3D20">Damon’s Grill in Independence, OH</a>.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a>, <a href="http://twitter.com/matthewneely">Matt</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="http://twitter.com/dave_rel1k">Dave Kennedy</a> creator of the <a href="http://www.social-engineer.org/framework/Computer_Based_Social_Engineering_Tools:_Social_Engineer_Toolkit_%28SET%29">Social Engineer Toolkit (SET)</a> and Shawn Miller from <a href="http://woot.com/">Woot.com</a>.  Music as always provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>. Thanks to everyone listening to the live stream and for participating in the chat via IRC.  Here are the show notes:</p>
<ul>
<li><strong>Chris announces this months open source project worth supporting! </strong> Chris recommends donating to <a href="http://www.pfsense.com/">pfSense</a>, which is a free, open source customized distribution of <a href="http://www.freebsd.org/">FreeBSD</a> tailored for use as a firewall and router.  Each month Chris is going to highlight an awesome open source project worth giving some cash to.</li>
<li><a href="http://www.hurricanelabs.com/">Hurricane Labs</a> in Cleveland, Ohio is having another awesome <a href="http://www.hurricanelabs.com/hack_challenge_2010">Hack Challenge</a> taking place on February 3, 2010.  Special guest <a href="http://twitter.com/psifertex">Jordan Wiens</a> (DEFCON CTF champion) will be in attendance (he will not be participating in the challenge so don&#8217;t worry about getting pwnd).  Hurricane Labs talks about what&#8217;s different from last year and how a CTF (Capture The Flag) works.</li>
<li>Shawn Miller from <a href="http://woot.com/">Woot.com</a> talks about bags of crap and how Woot.com is sponsoring the <a href="http://www.shmoocon.org/shmooballs.html">Shmooball Cannon Contest</a> this year at Shmoocon!  He also talks about the history of Woot.com and how they do Woot off&#8217;s and more.</li>
<li><a href="http://twitter.com/dave_rel1k">Dave Kennedy</a> gives us an overview of his <a href="http://www.social-engineer.org/framework/Computer_Based_Social_Engineering_Tools:_Social_Engineer_Toolkit_%28SET%29">Social Engineer Toolkit (SET)</a> as well as a sneak peak of some new things being <a href="http://www.novainfosecportal.com/2010/01/06/shmoocon-2010-firetalks/">released for SET during his firetalk </a>at <a href="http://www.shmoocon.org/">Shmoocon</a>. Also, listen to Dave *butcher* <a href="http://twitter.com/myrcurial">@myrcurial</a>.  Remember Dave&#8230;my-cur-i-al. <img src='http://securityjustice.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </li>
<li>Tom is bringing the <a href="http://www.shmoocon.org/presentations-all.html#zombies">social zombie apocalypse to Shmoocon</a> with Kevin Johnson and Robin Wood Saturday, February 6th at 11am.</li>
<li>Be sure to check out the <a href="http://www.podcastersmeetup.com/">Podcaster Meetup</a> and the <a href="http://www.novainfosecportal.com/2010/01/06/shmoocon-2010-firetalks/">Firetalks</a> at Shmoocon.  Security Justice will be there.  More details will be posted soon!</li>
<li><strong>Remember kids:</strong> If your going to Shmoocon&#8230;do not eat at Trattoria across the street from the Wardman Park!! <a href="http://www.youtube.com/watch?v=6FsuvbGJ6f4">See this video for more information</a>.</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks to Dave and Shawn for being guests on the show!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/106/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/106/0/Security_Justice_Episode21.mp3" length="68110260" type="audio/mpeg" />
		<itunes:duration>70:53</itunes:duration>
		<itunes:subtitle>This is the 21st episode of the Security Justice podcast recorded January 20, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted ...</itunes:subtitle>
		<itunes:summary>This is the 21st episode of the Security Justice podcast recorded January 20, 2010 live at Damon’s Grill in Independence, OH.  This episode was hosted by Tom, Dave, Matt and Chris with special guests Dave Kennedy creator of the Social Engineer Toolkit (SET) and Shawn Miller from Woot.com.  Music as always provided by dualCORE. Thanks to everyone listening to the live stream and for participating in the chat via IRC.  Here are the show notes:

	Chris announces this months open source project worth supporting!  Chris recommends donating to pfSense, which is a free, open source customized distribution of FreeBSD tailored for use as a firewall and router.  Each month Chris is going to highlight an awesome open source project worth giving some cash to.
	Hurricane Labs in Cleveland, Ohio is having another awesome Hack Challenge taking place on February 3, 2010.  Special guest Jordan Wiens (DEFCON CTF champion) will be in attendance (he will not be participating in the challenge so don't worry about getting pwnd).  Hurricane Labs talks about what's different from last year and how a CTF (Capture The Flag) works.
	Shawn Miller from Woot.com talks about bags of crap and how Woot.com is sponsoring the Shmooball Cannon Contest this year at Shmoocon!  He also talks about the history of Woot.com and how they do Woot off's and more.
	Dave Kennedy gives us an overview of his Social Engineer Toolkit (SET) as well as a sneak peak of some new things being released for SET during his firetalk at Shmoocon. Also, listen to Dave *butcher* @myrcurial.  Remember Dave...my-cur-i-al. :-)
	Tom is bringing the social zombie apocalypse to Shmoocon with Kevin Johnson and Robin Wood Saturday, February 6th at 11am.
	Be sure to check out the Podcaster Meetup and the Firetalks at Shmoocon.  Security Justice will be there.  More details will be posted soon!
	Remember kids: If your going to Shmoocon...do not eat at Trattoria across the street from the Wardman Park!! See this video for more information.

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks to Dave and Shawn for being guests on the show!</itunes:summary>
		<itunes:keywords>security,pentest,hacking</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 20 &#8211; Shmoocon 2010 Interview with Bruce Potter (@gdead)</title>
		<link>http://securityjustice.com/archives/104</link>
		<comments>http://securityjustice.com/archives/104#comments</comments>
		<pubDate>Wed, 23 Dec 2009 03:08:24 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[brucepotter]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[shmooballs]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[shmoogroup]]></category>
		<category><![CDATA[tom]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=104</guid>
		<description><![CDATA[This is the 20th episode of the Security Justice podcast recorded December 16, 2009 live at Damon&#8217;s Grill in Independence, OH.  This episode was hosted by Tom, Dave and Chris with very special guest Bruce Potter founder of the Shmoo Group.  * Photo of Bruce and Heidi from album.textfiles.com. Bruce talks to us about Shmoocon [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-105" title="bruce_heidi" src="http://securityjustice.com/wp-content/uploads/2009/12/bruce_heidi.jpg" alt="" width="242" height="159" />This is the 20th episode of the Security Justice podcast recorded December 16, 2009 live at <a href="http://www.damons.com/location2.cfm?location=transaction%3DlocMap%26country%3Dus%26template%3Dmap%26address%3D4181+Rockside+Rd.%26city%3DIndependence%26stateProvince%3DOHIO%26postalCode%3D44131%26x%3D67%26y%3D20">Damon&#8217;s Grill in Independence, OH</a>.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with very special guest <a href="http://twitter.com/gdead">Bruce Potter</a> founder of the <a href="http://www.shmoo.com/~gdead/Site/Home.html">Shmoo Group</a>.  * Photo of Bruce and Heidi from <a href="http://album.textfiles.com/index.cgi?d=2007.03.SHMOOCON&amp;id=IMG_3744.JPG">album.textfiles.com</a>.</p>
<p>Bruce talks to us about <a href="http://www.shmoocon.org/">Shmoocon 2010</a>, the ticketing process, talks, events and everything else related to Shmoocon 2010.  Just a reminder that the last round of Shmoocon tickets go on sale January 1st at noon EST!  This is your last chance to get a ticket to Shmoocon.  If you don&#8217;t get one, Bruce says you can blame our very own Chris Clymer.  <img src='http://securityjustice.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' />  Thanks again to Bruce for being our guest on the show and for everyone participating in the live chat via IRC and on the live stream (very special thanks to aricon from <a href="http://pauldotcom.com">PaulDotCom</a> for letting use their Icecast server for the stream).</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/104/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/104/0/Security_Justice_Episode20_BrucePotter.mp3" length="68614719" type="audio/mpeg" />
		<itunes:duration>71:26</itunes:duration>
		<itunes:subtitle>This is the 20th episode of the Security Justice podcast recorded December 16, 2009 live at Damon's Grill in Independence, OH.  This episode was hosted ...</itunes:subtitle>
		<itunes:summary>This is the 20th episode of the Security Justice podcast recorded December 16, 2009 live at Damon's Grill in Independence, OH.  This episode was hosted by Tom, Dave and Chris with very special guest Bruce Potter founder of the Shmoo Group.  * Photo of Bruce and Heidi from album.textfiles.com.

Bruce talks to us about Shmoocon 2010, the ticketing process, talks, events and everything else related to Shmoocon 2010.  Just a reminder that the last round of Shmoocon tickets go on sale January 1st at noon EST!  This is your last chance to get a ticket to Shmoocon.  If you don't get one, Bruce says you can blame our very own Chris Clymer.  :-) Thanks again to Bruce for being our guest on the show and for everyone participating in the live chat via IRC and on the live stream (very special thanks to aricon from PaulDotCom for letting use their Icecast server for the stream).</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 19 &#8211; Epic Interview with Jason Scott (@textfiles)</title>
		<link>http://securityjustice.com/archives/102</link>
		<comments>http://securityjustice.com/archives/102#comments</comments>
		<pubDate>Sat, 28 Nov 2009 03:25:28 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[bbs]]></category>
		<category><![CDATA[blockparty]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[computerhistory]]></category>
		<category><![CDATA[goatse]]></category>
		<category><![CDATA[jasonscott]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[myspace]]></category>
		<category><![CDATA[notacon]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[sockington]]></category>
		<category><![CDATA[textfiles]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=102</guid>
		<description><![CDATA[This is the 19th episode of the Security Justice podcast recorded November 18, 2009 live at the Chris Clymer Bar &#38; Grill (his basement actually).  This episode was hosted by Tom, Matt, Dave and Chris with very special guest Jason Scott from textfiles.com (picture of Jason in this post courtesy of roy-sac). Jason is probably [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-103" title="Jason_Scott_Text_urized_by_roy_sac" src="http://securityjustice.com/wp-content/uploads/2009/11/Jason_Scott_Text_urized_by_roy_sac.png" alt="Jason_Scott_Text_urized_by_roy_sac" width="200" height="211" />This is the 19th episode of the Security Justice podcast recorded November 18, 2009 live at the Chris Clymer Bar &amp; Grill (his basement actually).  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://twitter.com/matthewneely">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with very special guest <a href="http://twitter.com/textfiles">Jason Scott</a> from <a href="http://textfiles.com/">textfiles.com</a> (picture of Jason in this post courtesy of <a href="http://roy-sac.deviantart.com/art/Jason-Scott-Text-urized-119631771">roy-sac</a>).</p>
<p>Jason is probably the most interesting person you will ever meet.  His long list of accomplishments include speaking at pretty much every hacker conference known to man, hosting the fantastic <a href="http://www.notacon.org/blockparty.html">Blockparty</a> for the last three years at <a href="http://www.notacon.org/">Notacon</a>, archiver of the Internet, proprietor of <a href="http://textfiles.com/">textfiles.com</a>, computer historian, producer of <a href="http://www.bbsdocumentary.com/">BBS: The Documentary</a>, creator of <a href="http://twitter.com/sockington">sockington</a> (the most famous cat on Twitter with well over 1 million followers) and also known as the guy who <a href="http://ascii.textfiles.com/archives/1011">goatse&#8217;d all of MySpace</a>.  We talk to Jason about pretty much everything listed above.  This is truly a EPIC episode going into the two hour mark but well worth the listen!</p>
<p>Thanks again to Jason for being our guest on the show and for everyone participating in the live chat via IRC and on the live stream (it was our largest audience yet)!  Please send show feedback to feedback [aT] securityjustice.com or comment below.</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/102/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/102/0/Security_Justice_Episode19_JasonScott.mp3" length="129200296" type="audio/mpeg" />
		<itunes:duration>134:27</itunes:duration>
		<itunes:subtitle>This is the 19th episode of the Security Justice podcast recorded November 18, 2009 live at the Chris Clymer Bar &#38; Grill (his basement actually).  ...</itunes:subtitle>
		<itunes:summary>This is the 19th episode of the Security Justice podcast recorded November 18, 2009 live at the Chris Clymer Bar &#38; Grill (his basement actually).  This episode was hosted by Tom, Matt, Dave and Chris with very special guest Jason Scott from textfiles.com (picture of Jason in this post courtesy of roy-sac).

Jason is probably the most interesting person you will ever meet.  His long list of accomplishments include speaking at pretty much every hacker conference known to man, hosting the fantastic Blockparty for the last three years at Notacon, archiver of the Internet, proprietor of textfiles.com, computer historian, producer of BBS: The Documentary, creator of sockington (the most famous cat on Twitter with well over 1 million followers) and also known as the guy who goatse'd all of MySpace.  We talk to Jason about pretty much everything listed above.  This is truly a EPIC episode going into the two hour mark but well worth the listen!

Thanks again to Jason for being our guest on the show and for everyone participating in the live chat via IRC and on the live stream (it was our largest audience yet)!  Please send show feedback to feedback [aT] securityjustice.com or comment below.</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 18 &#8211; Louisville InfoSec, Rapid7, Interview with Wesley McGrew</title>
		<link>http://securityjustice.com/archives/91</link>
		<comments>http://securityjustice.com/archives/91#comments</comments>
		<pubDate>Wed, 28 Oct 2009 02:39:34 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[infosecsummit]]></category>
		<category><![CDATA[irongeek]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[mcgrewsecurity]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[ohiolinuxfest]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[rapid7]]></category>
		<category><![CDATA[scada]]></category>
		<category><![CDATA[scriptkiddie]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[wifi]]></category>
		<category><![CDATA[zombies]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=91</guid>
		<description><![CDATA[This is the 18th episode of the Security Justice podcast recorded October 21st 2009 live at Mavis Winkle’s Irish Pub. This was the last episode recorded at Mavis Winkle&#8217;s.  Apparently, they can&#8217;t handle any more of the &#8220;justice&#8221;.  This episode was hosted by Tom, Matt, Dave and Chris with special guests Wesley McGrew from McGrewSecurity.com [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-92" title="mcgrewsec" src="http://securityjustice.com/wp-content/uploads/2009/10/mcgrewsec.jpg" alt="mcgrewsec" width="217" height="161" />This is the 18th episode of the Security Justice podcast recorded October 21st 2009 live at Mavis Winkle’s Irish Pub. This was the last episode recorded at Mavis Winkle&#8217;s.  Apparently, they can&#8217;t handle any more of the &#8220;justice&#8221;.  This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://twitter.com/matthewneely">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests Wesley McGrew from <a href="http://www.mcgrewsecurity.com/">McGrewSecurity.com</a> and <a href="http://twitter.com/dave_rel1k">Dave Kennedy</a> (ReL1K).  Music as always provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>. Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Special Announcements:<br />
</strong>We will be podcasting live at the <a href="http://informationsecuritysummit.org/">Ohio Information Security Summit</a> October 29-30.  We should be streaming some of the talks and select interviews with some of the speakers.  Be sure to <a href="http://twitter.com/securityjustice">follow our Twitter feed</a> for updates on when we will be live!  Tom, Matt, <a href="http://twitter.com/dave_rel1k">Dave Kennedy</a>, <a href="http://twitter.com/alexhutton">Alex Hutton</a>, <a href="http://taosecurity.blogspot.com/">Richard Bejtlich</a> and <a href="http://twitter.com/wikidsystems">Wikid Systems</a> (Nick Owen) will all be speaking.</p>
<p>Tom Eston and Kevin Johnson will be speaking at <a href="http://appsecdc.org">OWASP AppSec DC</a> November 10-13th.  Tom and Kevin will be presenting <strong> </strong><a href="http://www.owasp.org/index.php/Social_Zombies:_Your_Friends_Want_to_Eat_Your_Brains">“Social Zombies: Your Friends Want to Eat Your Brains”</a></p>
<p><strong>Website Plug(s) of the Month:</strong></p>
<p><a href="http://shmoocon.org/cfp.html">Shmoocon CFP</a> is open! Canadian Web Techno Conference CFP is open, <a href="http://confoo.ca/en">ConFoo!</a></p>
<p><strong><a href="http://www.social-engineer.org/framework/Podcast">The Social-Engineer.org Podcast</a></strong>.  Be sure to check out the first episode on <a href="http://www.social-engineer.org/framework/Podcast/001_-_Interrogation_and_Interview_Tactics">interrogation and interview tactics</a>.  Really good stuff.  We are hoping that these guys put out more episodes soon!</p>
<ul>
<li><a href="http://securestate.blogspot.com/2009/10/louisville-metro-infosec-capture-flag.html">The Louisville Metro InfoSec Capture the Flag</a> recap by Dave Kennedy</li>
<li>Ohio LinuxFest Recap.  <a href="http://assist.tv/wedding">Link to the geek wedding here</a>.</li>
<li>T-Shirt contest design winners!  Rodolfo and ghostnomad&#8230;your designs will be incorporated into the t-shirt design!  Congratz!</li>
<li><a href="http://www.rapid7.com/metasploit-announcement.jsp">Rapid7</a> Acquires <a href="http://blog.metasploit.com/2009/10/metasploit-rising.html">Metasploit</a>.  Dave Kennedy has the strangest analogy about this we have ever heard!</li>
<li>Poken update</li>
<li><a href="http://www.telegraph.co.uk/technology/news/6254646/Wi-Fi-signals-used-to-see-through-walls.html">Wi-Fi signals used to see through walls</a></li>
<li><a href="http://www.pirate-party.us/content/internet-basic-right">Internet as a Basic Right</a></li>
<li><strong>Interview with Wesley McGrew.</strong> We talk to Wesley about some of his notable achievements including Yousif Yalda, Script Kiddies in the Mist, Vulnerabilities in SCADA Human-Machine Interface Software, Jesse “GhostExodus” McGraw/ETA and the f0rb1dd3n book review.  Wesley has a great blog over at <a href="http://www.mcgrewsecurity.com/">mcgrewsecurity.com</a> that we highly recommend you add to your daily reading list!  You can also <a href="http://twitter.com/mcgrewsecurity">follow Wesley on Twitter</a>.</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks to Wesley for being a guest on the show!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/91/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/91/0/Security_Justice_Episode18.mp3" length="74117587" type="audio/mpeg" />
		<itunes:duration>77:08</itunes:duration>
		<itunes:subtitle>This is the 18th episode of the Security Justice podcast recorded October 21st 2009 live at Mavis Winkle’s Irish Pub. This was the last episode ...</itunes:subtitle>
		<itunes:summary>This is the 18th episode of the Security Justice podcast recorded October 21st 2009 live at Mavis Winkle’s Irish Pub. This was the last episode recorded at Mavis Winkle's.  Apparently, they can't handle any more of the "justice".  This episode was hosted by Tom, Matt, Dave and Chris with special guests Wesley McGrew from McGrewSecurity.com and Dave Kennedy (ReL1K).  Music as always provided by dualCORE. Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Special Announcements:
We will be podcasting live at the Ohio Information Security Summit October 29-30.  We should be streaming some of the talks and select interviews with some of the speakers.  Be sure to follow our Twitter feed for updates on when we will be live!  Tom, Matt, Dave Kennedy, Alex Hutton, Richard Bejtlich and Wikid Systems (Nick Owen) will all be speaking.

Tom Eston and Kevin Johnson will be speaking at OWASP AppSec DC November 10-13th.  Tom and Kevin will be presenting  “Social Zombies: Your Friends Want to Eat Your Brains”

Website Plug(s) of the Month:

Shmoocon CFP is open! Canadian Web Techno Conference CFP is open, ConFoo!

The Social-Engineer.org Podcast.  Be sure to check out the first episode on interrogation and interview tactics.  Really good stuff.  We are hoping that these guys put out more episodes soon!

	The Louisville Metro InfoSec Capture the Flag recap by Dave Kennedy
	Ohio LinuxFest Recap.  Link to the geek wedding here.
	T-Shirt contest design winners!  Rodolfo and ghostnomad...your designs will be incorporated into the t-shirt design!  Congratz!
	Rapid7 Acquires Metasploit.  Dave Kennedy has the strangest analogy about this we have ever heard!
	Poken update
	Wi-Fi signals used to see through walls
	Internet as a Basic Right
	Interview with Wesley McGrew. We talk to Wesley about some of his notable achievements including Yousif Yalda, Script Kiddies in the Mist, Vulnerabilities in SCADA Human-Machine Interface Software, Jesse “GhostExodus” McGraw/ETA and the f0rb1dd3n book review.  Wesley has a great blog over at mcgrewsecurity.com that we highly recommend you add to your daily reading list!  You can also follow Wesley on Twitter.

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks to Wesley for being a guest on the show!</itunes:summary>
		<itunes:keywords>security,pentest,hacking</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice Episode 17 &#8211; Pokens, CUDA, Physical Security Exercises, Makerbots, Hawt Chicks</title>
		<link>http://securityjustice.com/archives/81</link>
		<comments>http://securityjustice.com/archives/81#comments</comments>
		<pubDate>Fri, 25 Sep 2009 02:33:44 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[base64]]></category>
		<category><![CDATA[bots]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[dualcore]]></category>
		<category><![CDATA[hackerspaces]]></category>
		<category><![CDATA[makerbot]]></category>
		<category><![CDATA[ohiolinuxfest]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[poken]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=81</guid>
		<description><![CDATA[This is the 17th episode of the Security Justice podcast recorded September 16th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted by Tom, Matt, Dave and Chris with special guests Tony Macisco and much0mas. Music provided by dualCORE and Pokens provided by PokenZoo.com.  Did you know we have a Facebook Fan Page?  [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-82" title="NinjaPoken" src="http://securityjustice.com/wp-content/uploads/2009/09/Ninja_Poken_1.jpg" alt="NinjaPoken" width="201" height="153" />This is the 17th episode of the Security Justice podcast recorded September 16th 2009 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>. This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://twitter.com/matthewneely">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests Tony Macisco and <a href="http://twitter.com/much0mas">much0mas</a>. Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a> and Pokens provided by <a href="http://pokenzoo.com/">PokenZoo.com</a>.  Did you know we have a <a href="http://www.facebook.com/pages/Security-Justice/80149584562">Facebook Fan Page</a>?  We promise it&#8217;s non malicious! Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Special Announcements:<br />
</strong>We will be podcasting at the <strong><a href="http://www.ohiolinux.org/">Ohio Linux Fest</a></strong> with dualCORE! September 25-27th.  Dave and Chris will be streaming live on Saturday 9/26 and dualCORE will be performing live Saturday night.  Stay tuned to our website and Twitter feed for more information this weekend.</p>
<p><strong>Cleveland Locksport </strong>is forming!  If your local to the Cleveland area, hit up <a href="http://chrisclymer.com/">Chris</a> for information on the next meeting.</p>
<p>If you near the Cleveland, Ohio area check out the <strong><a href="http://informationsecuritysummit.org/">Information Security Summit October 29-30</a></strong></p>
<p><strong>MiniSoOnCon!</strong> <a href="http://minisooncon.ca/wiki/Main_Page">MiniSoOnCon</a> is a Southern Ontario Hackerspaces / Makers Mini-Conference October 2nd and 3rd, 2009 in Hamilton, Ontario.</p>
<p><strong>Website Plug(s) of the Month:</strong></p>
<p><strong>Social Engineering Framework</strong><br />
Learn all about social engineering!  Put together by an awesome crew including <a href="http://twitter.com/dave_rel1k">Dave <strong><strong></strong></strong> Kennedy</a> who is the creator of the Social Engineer Toolkit (SET).  Check it out!  Really good stuff!<a href="http://social-engineer.org/"> http://social-engineer.org/</a></p>
<p><a href="http://www.malwarebytes.org/"><strong>Malwarebytes</strong> </a>is a site dedicated to fighting malware. Malwarebytes has developed a variety of tools that can identify and remove malicious software from your computer.</p>
<p>Here are the topics covered and show notes:</p>
<ul>
<li>Interview with Tony Macisco who is a physical security expert.  He has a impressive resume working for the Department of Homeland Security. US Customs and a large financial institution.  If your looking for someone that knows physical security, Tony is your man.  <a href="http://www.linkedin.com/pub/tony-macisco-cpp-cas/1/478/45a">Connect with him on LinkedIn!</a></li>
<li>Matt talks about cracking passwords with CUDA video cards and why cracking passwords with video cards is incredibly faster then traditional methods.  CUDA FTW!</li>
<li>Want to crack passwords with a CUDA supported card?  Check out <a href="http://pyrit.wordpress.com/">Pyrit</a> which allows you to create massive databases, pre-computing part of the WPA/WPA2-PSK authentication phase in a space-time-tradeoff.  Pyrit also hooks into <a href="http://www.willhackforsushi.com/Cowpatty.html">CoWPAtty</a>.  If you want to brute force MD4/MD5 or NTLM check out <a href="http://www.cryptohaze.com/bruteforcers.php">CUDA Multiforcer</a> (noted as the worlds fastest password cracker).  If you want a setup for CUDA that works out of the box, check out <a href="http://www.remote-exploit.org/backtrack_download.html">Backtrack 4</a>&#8230;CUDA support is built in!<strong></strong></li>
<li><a href="http://mashable.com/2009/09/16/share-local-files/">Sharing files on a social network</a> might be the end of the world</li>
<li><a href="http://www.doyoupoken.com/PokenWeb/corporate/welcome.jsf">POKENS.</a> What are they? Are they secure? Will they catch on?  We have some Pokens for prizes thanks to <a href="http://pokenzoo.com/">PokenZoo.com</a>!  See Dave or Chris at Ohio Linux Fest this weekend to find out how to win one!  Congrats to Paul from <a href="http://pauldotcom.com">PaulDotCom</a> Security Weekly for winning a Poken during our live show!</li>
<li>Want to know how Pokens work and related security?  Check out this really <a href="http://blog.didierstevens.com/2009/03/26/poken-peek">awesome, detailed article</a> created by <span><a href="http://twitter.com/DidierStevens">Didier Stevens</a>.</span></li>
<li><span>Did you know we have a t-shirt design contest?  Neither did we!  Send your ideas to feedback[aT]securityjustice.com and you could win a Poken and MORE! (we just don&#8217;t know what &#8220;more&#8221; is yet)</span></li>
<li><span>What is a Makerbot?  We have a good discussion about basic hardware hacking and hackerspaces&#8230;we also wonder why we still don&#8217;t have one in Cleveland..&lt;sigh&gt;<br />
</span></li>
<li><span>Go to </span><a href="http://minisooncon.ca/wiki/Main_Page">MiniSoOnCon</a>! It&#8217;s only a 3.5 hour drive from Cleveland.</li>
<li>Ignore the <a href="http://twitter.com/account/profile_image/securityjustice?hreflang=en">&#8220;hawt chick&#8221; on the Security Justice Twitter account</a> (and the base64 encoded messages).  We are not part of a Twitter botnet! Srsly.</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/81/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/81/0/Security_Justice_Episode17.mp3" length="58505628" type="audio/mpeg" />
		<itunes:duration>1:00:24</itunes:duration>
		<itunes:subtitle>This is the 17th episode of the Security Justice podcast recorded September 16th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the 17th episode of the Security Justice podcast recorded September 16th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted by Tom, Matt, Dave and Chris with special guests Tony Macisco and much0mas. Music provided by dualCORE and Pokens provided by PokenZoo.com.  Did you know we have a Facebook Fan Page?  We promise it's non malicious! Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Special Announcements:
We will be podcasting at the Ohio Linux Fest with dualCORE! September 25-27th.  Dave and Chris will be streaming live on Saturday 9/26 and dualCORE will be performing live Saturday night.  Stay tuned to our website and Twitter feed for more information this weekend.

Cleveland Locksport is forming!  If your local to the Cleveland area, hit up Chris for information on the next meeting.

If you near the Cleveland, Ohio area check out the Information Security Summit October 29-30

MiniSoOnCon! MiniSoOnCon is a Southern Ontario Hackerspaces / Makers Mini-Conference October 2nd and 3rd, 2009 in Hamilton, Ontario.

Website Plug(s) of the Month:

Social Engineering Framework
Learn all about social engineering!  Put together by an awesome crew including Dave  Kennedy who is the creator of the Social Engineer Toolkit (SET).  Check it out!  Really good stuff! http://social-engineer.org/

Malwarebytes is a site dedicated to fighting malware. Malwarebytes has developed a variety of tools that can identify and remove malicious software from your computer.

Here are the topics covered and show notes:

	Interview with Tony Macisco who is a physical security expert.  He has a impressive resume working for the Department of Homeland Security. US Customs and a large financial institution.  If your looking for someone that knows physical security, Tony is your man.  Connect with him on LinkedIn!
	Matt talks about cracking passwords with CUDA video cards and why cracking passwords with video cards is incredibly faster then traditional methods.  CUDA FTW!
	Want to crack passwords with a CUDA supported card?  Check out Pyrit which allows you to create massive databases, pre-computing part of the WPA/WPA2-PSK authentication phase in a space-time-tradeoff.  Pyrit also hooks into CoWPAtty.  If you want to brute force MD4/MD5 or NTLM check out CUDA Multiforcer (noted as the worlds fastest password cracker).  If you want a setup for CUDA that works out of the box, check out Backtrack 4...CUDA support is built in!
	Sharing files on a social network might be the end of the world
	POKENS. What are they? Are they secure? Will they catch on?  We have some Pokens for prizes thanks to PokenZoo.com!  See Dave or Chris at Ohio Linux Fest this weekend to find out how to win one!  Congrats to Paul from PaulDotCom Security Weekly for winning a Poken during our live show!
	Want to know how Pokens work and related security?  Check out this really awesome, detailed article created by Didier Stevens.
	Did you know we have a t-shirt design contest?  Neither did we!  Send your ideas to feedback[aT]securityjustice.com and you could win a Poken and MORE! (we just don't know what "more" is yet)
	What is a Makerbot?  We have a good discussion about basic hardware hacking and hackerspaces...we also wonder why we still don't have one in Cleveland..&#60;sigh&#62;

	Go to MiniSoOnCon! It's only a 3.5 hour drive from Cleveland.
	Ignore the "hawt chick" on the Security Justice Twitter account (and the base64 encoded messages).  We are not part of a Twitter botnet! Srsly.

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 16 DEFCON Recovery with @dave_rel1k</title>
		<link>http://securityjustice.com/archives/73</link>
		<comments>http://securityjustice.com/archives/73#comments</comments>
		<pubDate>Wed, 02 Sep 2009 02:06:31 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[davekennedy]]></category>
		<category><![CDATA[dave_rel1k]]></category>
		<category><![CDATA[Defcon]]></category>
		<category><![CDATA[dotzero]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[securestate]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[zombies]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=73</guid>
		<description><![CDATA[This is the 16th episode of the Security Justice podcast recorded August 19th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted by Tom, Matt, Dave and Chris with special guests Dave Kennedy (ReL1K) and dotzero.  Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-74" title="playmobil" src="http://securityjustice.com/wp-content/uploads/2009/09/playmobil.jpg" alt="playmobil" width="200" height="200" />This is the 16th episode of the Security Justice podcast recorded August 19th 2009 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>. This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://twitter.com/matthewneely">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="http://twitter.com/dave_rel1k">Dave Kennedy</a> (ReL1K) and <a href="http://www.flickr.com/photos/11182155@N06/">dotzero</a>.  Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Special Announcements:<br />
</strong>We will be podcasting at the <strong><a href="http://www.ohiolinux.org/">Ohio Linux Fest</a></strong> with dualCORE! September 25-27th<br />
If you near the Cleveland, Ohio area check out the <strong><a href="http://informationsecuritysummit.org/">Information Security Summit October 29-30</a></strong></p>
<p><strong>Website Plug(s) of the Month:</strong></p>
<p><a href="http://www.irongeek.com/"><strong>Irongeek.com</strong></a><br />
The source for security videos on tools and more! (just don&#8217;t look at the robots.txt file, k?)<a href="http://socialmediasecurity.com"><strong><br />
SocialMediaSecurity.com</strong></a><br />
New website dedicated to the security and insecurity of social media.  Join the <a href="http://socialmediasecurity.com/mailman/listinfo/volunteers_socialmediasecurity.com">volunteer mailing list</a> to help out!</p>
<p>Here are the topics covered and show notes:</p>
<ul>
<li>DEFCON 17 Updates! <a href="http://www.flickr.com/photos/27895091@N08/sets/72157621979546189/">Pics are posted!</a> Also more stuff on our <a href="http://www.facebook.com/home.php?#/pages/Security-Justice/80149584562">Facebook fan page</a>.</li>
<li>BSides in Vegas was awesome</li>
<li>Cliq locks owned</li>
<li><a href="http://www.cupfighter.net/index.php/2009/08/ssl-beaten-up-at-blackhat-and-defcon/">New</a> SSL Vulns</li>
<li><a href="http://www.liquidmatrix.org/blog/10000cent-hacker-pyramid/">Hacker Pyramid</a>, <a href="http://www.flickr.com/photos/tags/hackerpyramid/">check out the pics!</a></li>
<li>Sky talks</li>
<li><a href="http://pauldotcom.com/2009/08/pauldotcom-friends-present-def.html">Podcaster Meetup</a> at DEFCON, <a href="http://www.flickr.com/photos/27895091@N08/tags/podcastersmeetup/">we were there..with lots of debauchery</a></li>
<li><a href="http://www.crn.com/security/218900435;jsessionid=QGO4LVF3R3TSDQE1GHOSKHWATMY32JVN">ATMs</a> <a href="http://www.fox5vegas.com/news/20278570/detail.html">haxed</a></li>
<li><a href="http://www.commbank.com.au/personal/apply-online/download-printed-forms/ATM_awareness_guide.pdf">Great guide with real pictures of multiple ATM skimmers</a>..some really hard to detect</li>
<li><a href="http://www.darkreading.com/blog/archives/2009/08/social_zombies.html">Zombies ate your brains! </a> Tom and Kevin&#8217;s <a href="http://vimeo.com/6307559">video is up</a>.  If you missed us at DEFCON, we are doing it again at <a href="http://appsecdc.org/speakers/kevin-johnson/">OWASP AppSec DC in November</a>.</li>
<li>Goatse Lasers</li>
<li><a href="http://news.zdnet.co.uk/security/0,1000000189,39693871,00.htm">Oracle Pwned</a></li>
<li>Good stuff about &#8220;anti-sec&#8221;</li>
<li><span style="font-size: x-small;"> </span><a href="http://asert.arbornetworks.com/2009/08/twitter-based-botnet-command-channel/">Twitter botnet?</a> <a href="http://www.spylogic.net/2009/08/old-news-twitter-can-be-used-for-botnet-command-control/">We told you so&#8230;</a><span style="font-size: x-small;"><span style="font-size: 10pt;"> </span></span></li>
<li>On the big breach(s)  (Heartland/Hannaford/etc.)</span></span></li>
<li><a href="http://www.amazon.com/Playmobil-3172-Security-Check-Point/dp/B0002CYTL2">TSA &#8220;Training&#8221;</span></a></li>
<li><a href="http://social-engineer.org/">Social Engineering Framework</a> soon to be released by Dave Kennedy..stay tuned!</li>
<li><a href="http://twitter.com/Sockington">Sockington&#8230;the most popular cat on Twitter!</a> Now you can follow Jason Scott&#8217;s cat!</li>
<li>We want t-shirts!! Send your ideas to feedback [at] securityjustice.com.</li>
</ul>
<p><strong>Open Discussion Topic:</strong><strong> </strong>The term &#8220;hacker&#8221;.  <a href="http://olliejudge.com/2009/08/18/misconceptionhacker/">What does it mean and why does the media focus on the negative aspects?</a></p>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/73/feed</wfw:commentRss>
		<slash:comments>4</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/73/0/Security_Justice_Episode16.mp3" length="65080245" type="audio/mpeg" />
		<itunes:duration>1:07:38</itunes:duration>
		<itunes:subtitle>This is the 16th episode of the Security Justice podcast recorded August 19th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the 16th episode of the Security Justice podcast recorded August 19th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted by Tom, Matt, Dave and Chris with special guests Dave Kennedy (ReL1K) and dotzero.  Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Special Announcements:
We will be podcasting at the Ohio Linux Fest with dualCORE! September 25-27th
If you near the Cleveland, Ohio area check out the Information Security Summit October 29-30

Website Plug(s) of the Month:

Irongeek.com
The source for security videos on tools and more! (just don't look at the robots.txt file, k?)
SocialMediaSecurity.com
New website dedicated to the security and insecurity of social media.  Join the volunteer mailing list to help out!

Here are the topics covered and show notes:

	DEFCON 17 Updates! Pics are posted! Also more stuff on our Facebook fan page.
	BSides in Vegas was awesome
	Cliq locks owned
	New SSL Vulns
	Hacker Pyramid, check out the pics!
	Sky talks
	Podcaster Meetup at DEFCON, we were there..with lots of debauchery
	ATMs haxed
	Great guide with real pictures of multiple ATM skimmers..some really hard to detect
	Zombies ate your brains!  Tom and Kevin's video is up.  If you missed us at DEFCON, we are doing it again at OWASP AppSec DC in November.
	Goatse Lasers
	Oracle Pwned
	Good stuff about "anti-sec"
	 Twitter botnet? We told you so... 
	On the big breach(s)  (Heartland/Hannaford/etc.)
	TSA "Training"
	Social Engineering Framework soon to be released by Dave Kennedy..stay tuned!
	Sockington...the most popular cat on Twitter! Now you can follow Jason Scott's cat!
	We want t-shirts!! Send your ideas to feedback [at] securityjustice.com.

Open Discussion Topic: The term "hacker".  What does it mean and why does the media focus on the negative aspects?

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 15 dualCORE Interview with int0x80!</title>
		<link>http://securityjustice.com/archives/69</link>
		<comments>http://securityjustice.com/archives/69#comments</comments>
		<pubDate>Sun, 26 Jul 2009 01:31:56 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[Defcon]]></category>
		<category><![CDATA[dualcore]]></category>
		<category><![CDATA[int0x80]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[phonelosers]]></category>
		<category><![CDATA[rbcp]]></category>
		<category><![CDATA[tom]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=69</guid>
		<description><![CDATA[This is the 15th episode of the Security Justice podcast recorded July 15th 2009 live from HurricaneLabs in Cleveland Ohio. This episode was hosted by Tom, Matt, Dave and Chris with special guests int0x80 from dualCORE and his hacker girlfriend. Opening intro by RBCP from Phone Losers of America&#8230;please don&#8217;t hate us PaulDotCom crew!  We [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-70" title="int0x80" src="http://securityjustice.com/wp-content/uploads/2009/07/int0x80.jpg" alt="int0x80" width="159" height="199" />This is the 15th episode of the Security Justice podcast recorded July 15th 2009 live from <a href="http://www.hurricanelabs.com/">HurricaneLabs</a> in Cleveland Ohio. This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://matthewneely.blogspot.com/">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests int0x80 from dualCORE and his hacker girlfriend.</p>
<p><strong>Opening intro by RBCP from <a href="http://www.phonelosers.org/">Phone Losers of America</a>&#8230;please don&#8217;t hate us PaulDotCom crew!  We really do love you guys!</strong> <img src='http://securityjustice.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Podcaster Meetup details @DEFCON 17:</strong> Tom, Chris and Matt from Security Justice will be at the <a href="http://www.podcastersmeetup.com/">Podcasters Meetup</a> once again live from DEFCON!  It&#8217;s going to take place Saturday night @8pm in Skyboxes 207 and 208.  Even if you won’t be at DEFCON you can listen and watch the podcast live via ustream!  The Podcasters Meetup is sponsored by SquareSpace (use coupon code “defcon” for 10% off the lifetime of your account) and Astaro.  We will post more details as we get them but check out the <a href="http://www.podcastersmeetup.com/">Podcasters Meetup</a> website for the latest details.</p>
<p><strong>Website Plug of the Month:</strong></p>
<p><a href="http://dualcoremusic.com/nerdcore/"><strong>dualCORE Music</strong></a> &#8211; Get the latest album from dualCORE &#8220;Next Level&#8221; for only $10! Check out the awesome <a href="http://www.youtube.com/watch?v=-ijqCyZD9z8">video preview here</a>.</p>
<p>Here are the topics covered and show notes:</p>
<ul>
<li>Lots of epic FAIL with getting the stream up this time&#8230;</li>
<li><a href="http://blog.hurricanelabs.com/2009/07/hurricane-labs-hack-challenge-recap.html">HurricaneLabs Hack Challenge Recap</a>.  Special thanks to the guys at HurricaneLabs for hooking us up with space to record&#8230;and the special configs to allow us to Skype! <img src='http://securityjustice.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </li>
<li>Tom speaking at DEFCON 17 with Kevin Johnson <a href="http://www.spylogic.net/2009/07/social-zombies-invade-las-vegas/">&#8220;Social Zombies: Your Friends Want to Eat Your Brains&#8221;</a> 4pm Sunday</li>
<li>You must go to <a href="https://forum.defcon.org/forumdisplay.php?f=472">Hacker Pyramid!  Win 10,000 cents!</a></li>
<li>Other talks to see at DEFCON: RogueClown, <a href="https://www.defcon.org/html/defcon-17/dc-17-speakers.html#RogueClown">&#8220;Hackerspaces: The Legal Bases&#8221;</a>&#8230;James Arlen and Tiffany Radd, <a href="https://www.defcon.org/html/defcon-17/dc-17-speakers.html#Myrcurial2">&#8220;Your Mind: Legal Status, Rights and Securing Yourself&#8221;</a></li>
<li>Intuit support FAIL Twitter story&#8230;Twitter can rock for customer support.</li>
<li>dualCORE interview with int0x80 and his hacker girlfriend&#8230;oh, and we like turtles!</li>
<li>Check out the new Cincinnati hackerspace, <a href="http://www.hive13.org/">Hive13</a>.</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/69/feed</wfw:commentRss>
		<slash:comments>3</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/69/0/SecurityJustice_Episode15.mp3" length="50365300" type="audio/mpeg" />
		<itunes:duration>52:12</itunes:duration>
		<itunes:subtitle>This is the 15th episode of the Security Justice podcast recorded July 15th 2009 live from HurricaneLabs in Cleveland Ohio. This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the 15th episode of the Security Justice podcast recorded July 15th 2009 live from HurricaneLabs in Cleveland Ohio. This episode was hosted by Tom, Matt, Dave and Chris with special guests int0x80 from dualCORE and his hacker girlfriend.

Opening intro by RBCP from Phone Losers of America...please don't hate us PaulDotCom crew!  We really do love you guys! :) Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Podcaster Meetup details @DEFCON 17: Tom, Chris and Matt from Security Justice will be at the Podcasters Meetup once again live from DEFCON!  It's going to take place Saturday night @8pm in Skyboxes 207 and 208.  Even if you won’t be at DEFCON you can listen and watch the podcast live via ustream!  The Podcasters Meetup is sponsored by SquareSpace (use coupon code “defcon” for 10% off the lifetime of your account) and Astaro.  We will post more details as we get them but check out the Podcasters Meetup website for the latest details.

Website Plug of the Month:

dualCORE Music - Get the latest album from dualCORE "Next Level" for only $10! Check out the awesome video preview here.

Here are the topics covered and show notes:

	Lots of epic FAIL with getting the stream up this time...
	HurricaneLabs Hack Challenge Recap.  Special thanks to the guys at HurricaneLabs for hooking us up with space to record...and the special configs to allow us to Skype! :)
	Tom speaking at DEFCON 17 with Kevin Johnson "Social Zombies: Your Friends Want to Eat Your Brains" 4pm Sunday
	You must go to Hacker Pyramid!  Win 10,000 cents!
	Other talks to see at DEFCON: RogueClown, "Hackerspaces: The Legal Bases"...James Arlen and Tiffany Radd, "Your Mind: Legal Status, Rights and Securing Yourself"
	Intuit support FAIL Twitter story...Twitter can rock for customer support.
	dualCORE interview with int0x80 and his hacker girlfriend...oh, and we like turtles!
	Check out the new Cincinnati hackerspace, Hive13.

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 14</title>
		<link>http://securityjustice.com/archives/68</link>
		<comments>http://securityjustice.com/archives/68#comments</comments>
		<pubDate>Thu, 02 Jul 2009 03:47:25 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=68</guid>
		<description><![CDATA[This is the 14th episode of the Security Justice podcast recorded June 17th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted by Tom, Matt, Dave and Chris with special guests dotzero and much0mas. Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the chat via [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-66" title="sushi" src="http://securityjustice.com/wp-content/uploads/2009/07/sushi-deployed.jpg" alt="notacon" /> This is the 14th episode of the Security Justice podcast recorded June 17th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://matthewneely.blogspot.com/">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="http://www.flickr.com/photos/11182155@N06/">dotzero</a> and <a href="http://twitter.com/much0mas">much0mas</a>. Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Special Announcement:</strong> Tom and Chris from Security Justice will be at the <a href="http://www.podcastersmeetup.com/">Podcasters Meetup</a> once again live from DEFCON 17!  Even if you won&#8217;t be at DEFCON you can listen and watch the podcast live via ustream!  The Podcasters Meetup is sponsored by SquareSpace (use coupon code &#8220;defcon&#8221; for 10% off the lifetime of your account) and Astaro.  We will post more details as we get them but check out the <a href="http://www.podcastersmeetup.com/">Podcasters Meetup</a> website for the latest details.</p>
<p><strong>Website Plug of the Month:</strong></p>
<p><strong>The new and improved <a href="http://carnal0wnage.attackresearch.com/">Carnal0wnage blog</a>! </strong><a href="http://twitter.com/carnal0wnage">Chris Gates</a> and Valsmith (Attack Research) have combined forces. Check out this awesome security and penetration testing blog!</p>
<p>Here are the topics covered and show notes:</p>
<ul>
<li>The SJ Crew get&#8217;s $2.50 + a virtual beer in sponsorship! w00t!</li>
<li><a href="http://dualcoremusic.com/nerdcore/">dualCORE</a> is releasing a new album!  More details coming soon&#8230;</li>
<li>Interview with James Arlen (<a href="http://twitter.com/myrcurial">@myrcurial</a>) went awesome!  Will be released as a special edition once Dave fixes the audio.</li>
<li>Tom is speaking at DEFCON 17 with Kevin Johnson- <a href="https://www.defcon.org/html/defcon-17/dc-17-speakers.html#Eston">Social Zombies: Your Friends Want To Eat Your Brains</a></li>
<li>Matt&#8217;s super secret zombie night, DEFCON party invites and &#8220;Sushi Deployed!&#8221;</li>
<li>Northeast Ohio Information Security Forum update</li>
<li>SIEM Implementation: Real World Pitfalls to Watch Out For by Michael Buckwell</li>
<li><a href="http://www.wikidsystems.com/">WiKID</a> Commercial Open Source Two-Factor Authentication by Matt Yonchak, Hurricane Labs</li>
<li>(your monthly web2.0 security update&#8230;.ha) <a href="http://www.net-security.org/secworld.php?id=7633">Short URL service Cli.gs hacked</a> and <a href="http://blog.cli.gs/news/hack-update">2.2 million URLs affected</a></li>
<li>Yes, there are dangers to short URL services! *gasp*</li>
<li>Before getting into our open discussion..we recommend you listen to the <a href="http://audio.textfiles.com/music/everonwardibm.wav">IBM Fight Song</a>.  Yeah, srsly!</li>
</ul>
<p><strong>Security Justice Open Discussion: </strong><strong>Hacking the dinosaurs!  Breaking AS400, PBX/VM systems and more! (20:42)<br />
</strong></p>
<ul>
<li><strong>General IBM hacking tips</strong> (If you want to go after mainframes or iSeries/AS400 you will need a TN3270 client)<a href="http://www.redbooks.ibm.com/"><br />
IBM Redbooks</a> &#8211; Required resource when looking at any IBM product<strong> </strong></li>
<li><strong>Hacking iSeries/AS400</strong> (Commonly referred to as midrange systems.  AS/400 are NOT mainframes!)<br />
Good book on this called &#8220;Hacking iSeries&#8221; by Shalom Carmel and his <a href="http://www.venera.com/downloads.htm">whitepapers</a>.<a href="http://www.stankdawg.com/content/view/33/2/"><br />
Stankdawgs Hope5 AS/400 Talk</a> &#8211; AS/400:  Lifting the veil of obscurity.<br />
Be sure to check for default accounts and passwords Commonly have SMTP XPND and VRFY enabled which makes account enumeration easier.  Most have a modem attached for remote diagnostics. Sometimes can be insecure. Same thing goes for accessories such as drive arrays.</li>
<li><strong>Hacking Mainframes</strong> (often a critical system so tread lightly)<br />
Keep in mind a &#8220;Test&#8221; mainframe might just be an LPAR (Logical Partition) off the production system. So disruptions to the &#8220;test&#8221; system could impact production.</li>
<li><strong>General penetration testing tips</strong><br />
Users manually sync passwords &#8211; If you get a users password from another system try it on the target system.<br />
Clear text protocols abound. MITM attacks can be your friend. Just don&#8217;t take the companies mainframe offline, they probably need that.</li>
<li><strong>PBX/VM</strong><br />
Check for default usernames/passwords on <a href="http://www.docdroppers.org/wiki/index.php?title=Hacking_Voicemail_Boxes">voicemail</a> and <a href="http://www.docdroppers.org/wiki/index.php?title=Category:Phreaking">phone systems</a> and <span>never under estimate wardialing!<br />
PBX&#8217;s often run UNIX-based OS&#8217;s<br />
PBX&#8217;s tend to be treated as &#8220;appliances&#8221; which is a fancy way of saying &#8220;we&#8217;re not going to patch it&#8221;</span></li>
<li><strong><a href="http://iase.disa.mil/stigs/stig/tandem_stig_v2r2.pdf">TANDEM Security</a></strong></li>
<li><strong>Crusty UNIX</strong><br />
Older AIX versions use crypt() for password hashing, and only support 8 character unsalted passwords.  It will let users set longer passwords, it just only uses the first 8 chars!<br />
Telnet, rhosts, rlogin, rsh are all commonplace on older big iron UNIX<br />
Clustered UNIX boxes work by allowing password-less root login between each cluster member.  This can happen over SSH, but often happens over telnet, rsh, rlogin, etc.  Some vendors even still reccomend this!  Own one box, own them all.  Even better, spoof one of the hosts (easy for rtools) and you have root.</li>
<li><strong>HVAC Systems</strong><br />
Some connected via modem, others on the network.  Default credentials almost guaranteed bacause they are usually set up by non-security aware HVAC mechanics.  Newer web based management consoles give you full control of the HVAC system.  Use caution when pentesting HVAC systems as messing with these can cause human safety issues!</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/68/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/68/0/Security_Justice_Episode14.mp3" length="67136117" type="audio/mpeg" />
		<itunes:duration>1:09:38</itunes:duration>
		<itunes:subtitle>This is the 14th episode of the Security Justice podcast recorded June 17th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted ...</itunes:subtitle>
		<itunes:summary>This is the 14th episode of the Security Justice podcast recorded June 17th 2009 live at Mavis Winkle’s Irish Pub. This episode was hosted by Tom, Matt, Dave and Chris with special guests dotzero and much0mas. Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Special Announcement: Tom and Chris from Security Justice will be at the Podcasters Meetup once again live from DEFCON 17!  Even if you won't be at DEFCON you can listen and watch the podcast live via ustream!  The Podcasters Meetup is sponsored by SquareSpace (use coupon code "defcon" for 10% off the lifetime of your account) and Astaro.  We will post more details as we get them but check out the Podcasters Meetup website for the latest details.

Website Plug of the Month:

The new and improved Carnal0wnage blog! Chris Gates and Valsmith (Attack Research) have combined forces. Check out this awesome security and penetration testing blog!

Here are the topics covered and show notes:

	The SJ Crew get's $2.50 + a virtual beer in sponsorship! w00t!
	dualCORE is releasing a new album!  More details coming soon...
	Interview with James Arlen (@myrcurial) went awesome!  Will be released as a special edition once Dave fixes the audio.
	Tom is speaking at DEFCON 17 with Kevin Johnson- Social Zombies: Your Friends Want To Eat Your Brains
	Matt's super secret zombie night, DEFCON party invites and "Sushi Deployed!"
	Northeast Ohio Information Security Forum update
	SIEM Implementation: Real World Pitfalls to Watch Out For by Michael Buckwell
	WiKID Commercial Open Source Two-Factor Authentication by Matt Yonchak, Hurricane Labs
	(your monthly web2.0 security update....ha) Short URL service Cli.gs hacked and 2.2 million URLs affected
	Yes, there are dangers to short URL services! *gasp*
	Before getting into our open discussion..we recommend you listen to the IBM Fight Song.  Yeah, srsly!

Security Justice Open Discussion: Hacking the dinosaurs!  Breaking AS400, PBX/VM systems and more! (20:42)


	General IBM hacking tips (If you want to go after mainframes or iSeries/AS400 you will need a TN3270 client)
IBM Redbooks - Required resource when looking at any IBM product 
	Hacking iSeries/AS400 (Commonly referred to as midrange systems.  AS/400 are NOT mainframes!)
Good book on this called "Hacking iSeries" by Shalom Carmel and his whitepapers.
Stankdawgs Hope5 AS/400 Talk - AS/400:  Lifting the veil of obscurity.
Be sure to check for default accounts and passwords Commonly have SMTP XPND and VRFY enabled which makes account enumeration easier.  Most have a modem attached for remote diagnostics. Sometimes can be insecure. Same thing goes for accessories such as drive arrays.
	Hacking Mainframes (often a critical system so tread lightly)
Keep in mind a "Test" mainframe might just be an LPAR (Logical Partition) off the production system. So disruptions to the "test" system could impact production.
	General penetration testing tips
Users manually sync passwords - If you get a users password from another system try it on the target system.
Clear text protocols abound. MITM attacks can be your friend. Just don't take the companies mainframe offline, they probably need that.
	PBX/VM
Check for default usernames/passwords on voicemail and phone systems and never under estimate wardialing!
PBX's often run UNIX-based OS's
PBX's tend to be treated as "appliances" which is a fancy way of saying "we're not going to patch it"
	TANDEM Security
	Crusty UNIX
Older AIX versions use crypt() for password hashing, and only support 8 character unsalted passwords.  It will let users set longer passwords, it just only uses the first 8 chars!
Telnet, rhosts, rlogin, rsh are all commonplace on older big iron UNIX
Clustered UNIX boxes work by allowing password-less root login between each cluster member.  This can happen over SSH, but often happens over telnet, rsh, rlogin, etc.  Some</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
		<enclosure url="http://audio.textfiles.com/music/everonwardibm.wav" length="1535326" type="audio/x-wav" />
	</item>
		<item>
		<title>Security Justice &#8211; Episode 13</title>
		<link>http://securityjustice.com/archives/65</link>
		<comments>http://securityjustice.com/archives/65#comments</comments>
		<pubDate>Sat, 06 Jun 2009 02:30:04 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[apple]]></category>
		<category><![CDATA[certifications]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[cissp]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[FAIL]]></category>
		<category><![CDATA[iphone]]></category>
		<category><![CDATA[liquidmatrix]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[myrcurial]]></category>
		<category><![CDATA[notacon]]></category>
		<category><![CDATA[pdf]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[SANS]]></category>
		<category><![CDATA[secshoggoth]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[socnet]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=65</guid>
		<description><![CDATA[This is the 13th episode of the Security Justice podcast recorded May 20th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave and Chris with special guest The Security Shoggoth! Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the chat via IRC. [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-66" title="notacon" src="http://securityjustice.com/wp-content/uploads/2009/06/notacon.jpg" alt="notacon" />This is the 13th episode of the Security Justice podcast recorded May 20th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave and Chris with special guest <a href="http://secshoggoth.blogspot.com/">The Security Shoggoth</a>!  Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Website Plug of the Month:</strong> <a href="http://www.liquidmatrix.org/blog/">Liquidmatrix Security Digest</a><strong> </strong>is a fantastic security blog/news site.  Created by Dave Lewis (<a href="http://twitter.com/gattaca">@gattaca</a>) with guest posts by James Arlen (<a href="http://twitter.com/myrcurial">@myrcurial</a>, creator of the term “<em><strong>cyberdouchery</strong></em>“) , Security Intern (<a href="http://twitter.com/Securityintern">@Securityintern</a>), Matt <strong style="font-weight: normal;">Johansen (<a href="http://twitter.com/mattj">@mattj</a>)</strong> and Zach Lanier (<a href="http://twitter.com/quine">@quine</a>).</p>
<p>Here are the topics covered during the podcast and show notes:</p>
<ul>
<li>Notacon 6 recap!</li>
<li><a href="http://www.facebook.com/pages/Security-Justice/80149584562">Become our fan on Facebook</a>&#8230;it&#8217;s a real Facebook page, not designed to pwn you.  We promise!</li>
<li>Northeast Ohio Information Security Forum update</li>
<li><a href="http://spylogic.net/item/429">New School Man-in-the-Middle</a></li>
<li>Finding and detecting Malicious PDF&#8217;s. <a href="http://secshoggoth.blogspot.com/2009/05/detecting-malicious-pdfs.html">Tyler&#8217;s Snort signature.</a> <a href="http://blog.didierstevens.com/programs/pdf-tools/">Didier Steven&#8217;s fantastic PDF analysis tools.</a></li>
<li><a href="http://www.sophos.com/blogs/gc/g/2009/05/19/bad-news-childs-play-recover-deleted-twitterings/">Your deleted Tweets are not deleted</a></li>
<li><a href="http://www.infosecleaders.com/?p=83">Interview FAIL</a> &#8211; <a href="http://pastie.org/475203">You never know who is watching or listening!</a></li>
<li>Chris&#8217; adventure with his Dell Mini9</li>
<li><a href="http://www.worldnetdaily.com/?pageId=97208">Census GPS-tagging your home&#8217;s front door</a></li>
<li><strong>Security Justice Open Discussion(s): </strong>Security certifications/training, Microsoft pirated software..not helping the patching problem?  Interesting Apple Mac discussion&#8230;Apple security research, patches, iPhone presenter FAIL and more!</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/65/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/65/0/Security_Justice_Episode13.mp3" length="52061976" type="audio/mpeg" />
		<itunes:duration>54:09</itunes:duration>
		<itunes:subtitle>This is the 13th episode of the Security Justice podcast recorded May 20th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the 13th episode of the Security Justice podcast recorded May 20th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave and Chris with special guest The Security Shoggoth!  Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Website Plug of the Month: Liquidmatrix Security Digest is a fantastic security blog/news site.  Created by Dave Lewis (@gattaca) with guest posts by James Arlen (@myrcurial, creator of the term “cyberdouchery“) , Security Intern (@Securityintern), Matt Johansen (@mattj) and Zach Lanier (@quine).

Here are the topics covered during the podcast and show notes:

	Notacon 6 recap!
	Become our fan on Facebook...it's a real Facebook page, not designed to pwn you.  We promise!
	Northeast Ohio Information Security Forum update
	New School Man-in-the-Middle
	Finding and detecting Malicious PDF's. Tyler's Snort signature. Didier Steven's fantastic PDF analysis tools.
	Your deleted Tweets are not deleted
	Interview FAIL - You never know who is watching or listening!
	Chris' adventure with his Dell Mini9
	Census GPS-tagging your home's front door
	Security Justice Open Discussion(s): Security certifications/training, Microsoft pirated software..not helping the patching problem?  Interesting Apple Mac discussion...Apple security research, patches, iPhone presenter FAIL and more!

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 12</title>
		<link>http://securityjustice.com/archives/60</link>
		<comments>http://securityjustice.com/archives/60#comments</comments>
		<pubDate>Mon, 04 May 2009 02:25:59 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[blackhatseo]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[dualcore]]></category>
		<category><![CDATA[hak5]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[notacon]]></category>
		<category><![CDATA[pentesting]]></category>
		<category><![CDATA[rel1k]]></category>
		<category><![CDATA[securestate]]></category>
		<category><![CDATA[stalkdaily]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[verizon]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=60</guid>
		<description><![CDATA[This is the 12th episode of the Security Justice podcast recorded April 15th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave and Chris with special guests Dave Kennedy (ReL1K).  Music provided by dualCORE!  This was our one year anniversary episode!! Thanks to everyone listening to the live stream and [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-61" title="Zombie Ted" src="http://securityjustice.com/wp-content/uploads/2009/05/ted.jpg" alt="Zombie Ted" />This is the 12th episode of the Security Justice podcast recorded April 15th 2009 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>! This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="https://www.securestate.com/About-Us/Pages/Dave-Kennedy.aspx">Dave Kennedy</a> (ReL1K).  Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>!  This was our one year anniversary episode!! Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Website Plug of the Month:</strong> Check out a new security podcast called <a href="http://exoticliability.ning.com/">Exotic Liability</a>.  Hosts are Chris Nickerson, Ryan Jones and DJ Jackalope.  You may remember Chris and Ryan from the Tiger Team TV show.  We actually did a <a href="http://securityjustice.com/archives/25">special edition podcast</a> with Chris last year.  Good stuff&#8230;be sure to check it out!</p>
<p>Here are the topics covered during the podcast and show notes:</p>
<ul>
<li>June 22-26 ISC2 will be in Cleveland, Ohio offering a CISSP Bootcamp at Corporate College East.  <a href="http://www.nocinfragard.org/a_MAIN_Chapter_Business.php#cisspbootcamp">Registration info is here</a>.</li>
<li>Speaker Recap &#8211; NEO Infosec Forum</li>
<li>Buffer Overflows – It’s not as hard as you think by David Kennedy, SecureState</li>
<li>Want to take an awesome class on writing exploits?  Check out the <a href="http://www.offensive-security.com/ctp.php">Cracking the Perimeter course offered by Offensive Security</a>.</li>
<li>Karmetasploit and Jasager &#8211; by Matt Neely, SecureState</li>
<li><a href="http://newscenter.verizon.com/press-releases/verizon/2009/verizon-business-2009-data.html">Verizon 2009 Data Breach Report Released</a></li>
<li><a href="http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/">Twitter StalkDaily Worm Postmortem</a></li>
<li><a href="http://pandalabs.pandasecurity.com/archive/Targeted-Blackhat-SEO-Attack-against-Ford-Motor-Co_2E00_.aspx">Targeted Blackhat SEO Attack against Ford Motor Co.</a></li>
<li><strong>Security Justice Open Discussion:</strong> <strong>Pentesting&#8230;Over Hyped?</strong> (New idea we are trying&#8230;15-20 minutes of open discussion on one hot topic in the security community.  Bitching, complaining, rants and more&#8230;anything goes!) Have a suggestion for the Security Justice Open Discussion?  Comment here or send it to us via email!</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/60/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/60/0/Security_Justice_Episode12.mp3" length="64886175" type="audio/mpeg" />
		<itunes:duration>00:01:01</itunes:duration>
		<itunes:subtitle>This is the 12th episode of the Security Justice podcast recorded April 15th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the 12th episode of the Security Justice podcast recorded April 15th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave and Chris with special guests Dave Kennedy (ReL1K).  Music provided by dualCORE!  This was our one year anniversary episode!! Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Website Plug of the Month: Check out a new security podcast called Exotic Liability.  Hosts are Chris Nickerson, Ryan Jones and DJ Jackalope.  You may remember Chris and Ryan from the Tiger Team TV show.  We actually did a special edition podcast with Chris last year.  Good stuff...be sure to check it out!

Here are the topics covered during the podcast and show notes:

	June 22-26 ISC2 will be in Cleveland, Ohio offering a CISSP Bootcamp at Corporate College East.  Registration info is here.
	Speaker Recap - NEO Infosec Forum
	Buffer Overflows – It’s not as hard as you think by David Kennedy, SecureState
	Want to take an awesome class on writing exploits?  Check out the Cracking the Perimeter course offered by Offensive Security.
	Karmetasploit and Jasager - by Matt Neely, SecureState
	Verizon 2009 Data Breach Report Released
	Twitter StalkDaily Worm Postmortem
	Targeted Blackhat SEO Attack against Ford Motor Co.
	Security Justice Open Discussion: Pentesting...Over Hyped? (New idea we are trying...15-20 minutes of open discussion on one hot topic in the security community.  Bitching, complaining, rants and more...anything goes!) Have a suggestion for the Security Justice Open Discussion?  Comment here or send it to us via email!

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 11</title>
		<link>http://securityjustice.com/archives/55</link>
		<comments>http://securityjustice.com/archives/55#comments</comments>
		<pubDate>Sat, 28 Mar 2009 00:29:31 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[bluetooth]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[datalossdb]]></category>
		<category><![CDATA[diebold]]></category>
		<category><![CDATA[digininja]]></category>
		<category><![CDATA[djbdns]]></category>
		<category><![CDATA[dotzero]]></category>
		<category><![CDATA[froggy]]></category>
		<category><![CDATA[hdmoore]]></category>
		<category><![CDATA[interceptor]]></category>
		<category><![CDATA[iwobble]]></category>
		<category><![CDATA[kennedy]]></category>
		<category><![CDATA[mark]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[mormons]]></category>
		<category><![CDATA[notacon]]></category>
		<category><![CDATA[nsa]]></category>
		<category><![CDATA[relik]]></category>
		<category><![CDATA[tiger]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[torrent]]></category>
		<category><![CDATA[warvox]]></category>
		<category><![CDATA[wireless]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=55</guid>
		<description><![CDATA[This is the eleventh episode of the Security Justice podcast recorded March 18th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Matt, Dave and Chris with special guests Dave Kennedy (ReLiK), Dotzero, Froggy, Tiger, Jeremy (Notacon) and Mark W. Schumann.  Music provided by dualCORE!  Thanks to everyone listening to the [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-56" title="tom_and_dave_at_mavis" src="http://securityjustice.com/wp-content/uploads/2009/03/mavis_photo.jpg" alt="tom_and_dave_at_mavis" />This is the eleventh episode of the Security Justice podcast recorded March 18th 2009 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>! This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://matthewneely.blogspot.com/">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="https://www.securestate.com/About-Us/Pages/Dave-Kennedy.aspx">Dave Kennedy</a> (ReLiK), Dotzero, Froggy, Tiger, Jeremy (Notacon) and <a href="http://imakeyourprojectnotsuck.com">Mark W. Schumann</a>.  Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Website Plug of the Month:</strong> <a href="http://datalossdb.org/">DataLossDB</a> is a research project aimed at documenting known and reported data loss incidents world-wide. The effort is now a community one, and with the move to Open Security Foundation&#8217;s DataLossDB.org, asks for contributions of new incidents and new data for existing incidents.</p>
<p><strong>Local in the Cleveland area and looking for Web Application Security training? </strong> <a href="http://securewebapps.weebly.com/">Check out the great course by Dave Kennedy of SecureState offered at Corporate College East</a>!</p>
<p>Here are the topics covered during the podcast and show notes:</p>
<ul>
<li>Speaker Recap – NEO InfoSec Forum<br />
Coding For Security by <a href="http://criticalresults.com">Mark W. Schumann</a>, Top 10 Security Breaches of 2008 by <a href="http://spylogic.net">Tom</a></li>
<li>HD Moore Releases <a href="http://warvox.org/">WarVOX Telephonic Security Research Tool</a></li>
<li><a href="http://philosecurity.org/2009/03/09/rogue-wireless-gets-sneakier">Rogue Wireless Gets Sneakier</a></li>
<li>How to get <a href="http://blog.makezine.com/archive/2009/03/getting_free_wireless_in_airports_and_hotels.html?CMP=OTC-0D6B48984890">free wireless in airports and hotels</a> <a href="http://thomer.com/howtos/nstx.html">IP-over-DNS</a> or <a href="http://thomer.com/icmptx/">IP-over-ICMP</a></li>
<li><a href="http://www.digininja.org/interceptor/">The Interceptor</a> released by <a href="http://twitter.com/digininja">@digininja</a><br />
The Interceptor is a wireless wired network tap. Basically, a network tap is a way to listen in to network traffic as it flows past.</li>
<li><a href="http://it.slashdot.org/article.pl?sid=09/03/18/011229&amp;from=rss">Diebold malware</a></li>
<li>Breaches of the month!</li>
<li><a href="http://hackernews.jaanix.com/118903-djb-acknowledges-vulnerability-in-djbdns-pays-out-the-1000-reward">djbdns pays out</a></li>
<li>Security Metrics</li>
<li>Infragard update</li>
<li>Chris talks about the <a href="http://www.amazon.com/Mac-Hackers-Handbook-Charles-Miller/dp/0470395362">Mac Hackers Handbook</a></li>
<li>Notacon interview with Froggy!  Don&#8217;t forget about <a href="http://notacon.org/">Notacon 6</a>!  <a href="http://www.notacon.org/speakers.html#Omal">Chris</a>, <a href="http://www.notacon.org/speakers.html#Eston">Tom</a> and <a href="http://www.notacon.org/speakers.html#Neely">Matt</a> are all speaking!  Security Justice will also be doing a bunch of live stuff with Notacon radio this year.</li>
<li>Torrent Search &#8211; <a href="http://www.convivea.com/product.php?id=2">Bit Che searches 60 popular torrent sites</a></li>
<li>NSA offering &#8216;billions&#8217; for <a href="http://www.theregister.co.uk/2009/02/12/nsa_offers_billions_for_skype_pwnage/">Skype eavesdrop solution</a></li>
<li><a href="http://www.getjar.com/products/19067/BlueScanner">BlueScanner</a> &#8211; Bluetooth Scanner for Blackberry Storm</li>
<li><a href="http://www.theregister.co.uk/2009/03/18/mormons_icann/">Mormons demand ICANN plugs net smut hole?</a> what? srsly?</li>
<li><a href="http://geeks.pirillo.com/profiles/blogs/iwobble-for-the-iphone-you-are">iWobble for iPhone (possibly NSFW)</a>.  Yeah, lots of possibilities&#8230;</li>
<li>iPhone vs. Blackberry Storm. iPhone wins.</li>
<li>Destroying mobile phones with liquid..even a 1990 Motorola StarTac!</li>
<li>Dave Kennedy <a href="http://www.youtube.com/watch?v=Q1vMIsOdcbo">can drink beer&#8230;fast.  Really fast!</a></li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/55/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/55/0/Security_Justice_Episode11.mp3" length="56499943" type="audio/mpeg" />
		<itunes:duration>58:44</itunes:duration>
		<itunes:subtitle>This is the eleventh episode of the Security Justice podcast recorded March 18th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the eleventh episode of the Security Justice podcast recorded March 18th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Matt, Dave and Chris with special guests Dave Kennedy (ReLiK), Dotzero, Froggy, Tiger, Jeremy (Notacon) and Mark W. Schumann.  Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Website Plug of the Month: DataLossDB is a research project aimed at documenting known and reported data loss incidents world-wide. The effort is now a community one, and with the move to Open Security Foundation's DataLossDB.org, asks for contributions of new incidents and new data for existing incidents.

Local in the Cleveland area and looking for Web Application Security training?  Check out the great course by Dave Kennedy of SecureState offered at Corporate College East!

Here are the topics covered during the podcast and show notes:

	Speaker Recap – NEO InfoSec Forum
Coding For Security by Mark W. Schumann, Top 10 Security Breaches of 2008 by Tom
	HD Moore Releases WarVOX Telephonic Security Research Tool
	Rogue Wireless Gets Sneakier
	How to get free wireless in airports and hotels IP-over-DNS or IP-over-ICMP
	The Interceptor released by @digininja
The Interceptor is a wireless wired network tap. Basically, a network tap is a way to listen in to network traffic as it flows past.
	Diebold malware
	Breaches of the month!
	djbdns pays out
	Security Metrics
	Infragard update
	Chris talks about the Mac Hackers Handbook
	Notacon interview with Froggy!  Don't forget about Notacon 6!  Chris, Tom and Matt are all speaking!  Security Justice will also be doing a bunch of live stuff with Notacon radio this year.
	Torrent Search - Bit Che searches 60 popular torrent sites
	NSA offering 'billions' for Skype eavesdrop solution
	BlueScanner - Bluetooth Scanner for Blackberry Storm
	Mormons demand ICANN plugs net smut hole? what? srsly?
	iWobble for iPhone (possibly NSFW).  Yeah, lots of possibilities...
	iPhone vs. Blackberry Storm. iPhone wins.
	Destroying mobile phones with liquid..even a 1990 Motorola StarTac!
	Dave Kennedy can drink beer...fast.  Really fast!

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>yes</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 10</title>
		<link>http://securityjustice.com/archives/52</link>
		<comments>http://securityjustice.com/archives/52#comments</comments>
		<pubDate>Sun, 01 Mar 2009 02:30:31 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[notacon]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[tom]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=52</guid>
		<description><![CDATA[This is the tenth episode of the Security Justice podcast recorded February 18th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Matt, Dave and Chris with special guests Chris Mills from Securabit, Dan, Steve(s) and many other locals.  Music provided by dualCORE!  Sorry for some of the Skype quality issues.  [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-54" title="notacon_girl1" src="http://securityjustice.com/wp-content/uploads/2009/02/notacon_girl1.jpg" alt="notacon_girl1" />This is the tenth episode of the Security Justice podcast recorded February 18th 2009 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>! This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://matthewneely.blogspot.com/">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests Chris Mills from <a href="http://securabit.com">Securabit</a>, Dan, Steve(s) and many other locals.  Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>!  Sorry for some of the Skype quality issues.  Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Website Plug(s) of the Month: </strong>A local Cleveland startup called <a href="http://www.iGuiders.com/">iGuiders</a> is looking for beta testers that work in Information Security!  The Information Security Guider is live and ready to be tested.  Check out the the iGuiders website and watch a quick tutorial on what this Guider is all about.  Your feedback is requested!</p>
<p>Local in the Cleveland area and looking for Web Application Security training?  <a href="http://securewebapps.weebly.com/">Check out the great course by Dave Kennedy of SecureState offered at Corporate College East</a>!</p>
<p>Here are the topics covered during the podcast and show notes:</p>
<ul>
<li><a href="http://notacon.org/">Notacon 6</a>!  <a href="http://www.notacon.org/speakers.html#Omal">Chris</a>, <a href="http://www.notacon.org/speakers.html#Eston">Tom</a> and <a href="http://www.notacon.org/speakers.html#Neely">Matt</a> are all speaking!  Security Justice will also be doing a bunch of live stuff with Notacon radio this year.</li>
<li>Shmoocon update! Matt and Tom talk about some of the great talks.  Chris knows how to &#8220;brute force&#8221; high security locks.  Tom talks about <a href="http://www.youtube.com/watch?v=6FsuvbGJ6f4">roaches</a>.  Yum!  Don&#8217;t eat at Trattoria across the street from the Wardman Park Marriott.  Seriously.</li>
<li>We posted <a href="http://www.flickr.com/photos/27895091@N08/">pictures</a> and <a href="http://www.youtube.com/SecurityJustice">videos</a> from Shmoocon.  Hey&#8230;where is the hackerspace in Cleveland?  The one that <a href="http://hacdc.org/">HacDC</a> has is really impressive.</li>
<li><strong>Reminder:</strong> Don&#8217;t use hotel kiosks or ATM&#8217;s in the hotel during a hacker conference.</li>
<li>Some updates from the NEO InfoSec Forum February meeting.</li>
<li><a href="http://hackedphpbb.blogspot.com/">phpbb hacked</a> via third party application.  Don&#8217;t forget about third-party apps installed on a web server!</li>
<li><a href="http://inguardians.com/tools/middler-alpha.tgz">The Middler</a> is released!</li>
<li><a href="http://www.januspa.com/">JanusPA Hardware Privacy Adapter </a>now available.  Check out the <a href="http://janusvm.com/">JanusVM</a>&#8230;route your traffic through Tor/Privoxy in a VM&#8230;sweet!</li>
<li>Chris gives the fastest news update&#8230;ever.</li>
<li>Backtrack 4 released.  Check out <a href="http://www.infosecramblings.com/backtrack/backtrack-4-usbpersistent-changesnessus/">this guide</a> to install it on a USB drive with persistent changes.</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/52/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/52/0/Security_Justice_Episode10.mp3" length="42718698" type="audio/mpeg" />
		<itunes:duration>44:27</itunes:duration>
		<itunes:subtitle>This is the tenth episode of the Security Justice podcast recorded February 18th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the tenth episode of the Security Justice podcast recorded February 18th 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Matt, Dave and Chris with special guests Chris Mills from Securabit, Dan, Steve(s) and many other locals.  Music provided by dualCORE!  Sorry for some of the Skype quality issues.  Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Website Plug(s) of the Month: A local Cleveland startup called iGuiders is looking for beta testers that work in Information Security!  The Information Security Guider is live and ready to be tested.  Check out the the iGuiders website and watch a quick tutorial on what this Guider is all about.  Your feedback is requested!

Local in the Cleveland area and looking for Web Application Security training?  Check out the great course by Dave Kennedy of SecureState offered at Corporate College East!

Here are the topics covered during the podcast and show notes:

	Notacon 6!  Chris, Tom and Matt are all speaking!  Security Justice will also be doing a bunch of live stuff with Notacon radio this year.
	Shmoocon update! Matt and Tom talk about some of the great talks.  Chris knows how to "brute force" high security locks.  Tom talks about roaches.  Yum!  Don't eat at Trattoria across the street from the Wardman Park Marriott.  Seriously.
	We posted pictures and videos from Shmoocon.  Hey...where is the hackerspace in Cleveland?  The one that HacDC has is really impressive.
	Reminder: Don't use hotel kiosks or ATM's in the hotel during a hacker conference.
	Some updates from the NEO InfoSec Forum February meeting.
	phpbb hacked via third party application.  Don't forget about third-party apps installed on a web server!
	The Middler is released!
	JanusPA Hardware Privacy Adapter now available.  Check out the JanusVM...route your traffic through Tor/Privoxy in a VM...sweet!
	Chris gives the fastest news update...ever.
	Backtrack 4 released.  Check out this guide to install it on a USB drive with persistent changes.

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 9</title>
		<link>http://securityjustice.com/archives/45</link>
		<comments>http://securityjustice.com/archives/45#comments</comments>
		<pubDate>Wed, 28 Jan 2009 21:53:48 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[angela]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[dect]]></category>
		<category><![CDATA[dotzero]]></category>
		<category><![CDATA[irc]]></category>
		<category><![CDATA[mark]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[mysterygirl]]></category>
		<category><![CDATA[obama]]></category>
		<category><![CDATA[oracle]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[ps3]]></category>
		<category><![CDATA[securabyte]]></category>
		<category><![CDATA[sushi]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=45</guid>
		<description><![CDATA[This is the ninth episode of the Security Justice podcast recorded January 21st 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Matt, Dave and Chris with special guests dotzero, Mark and mystery girl (we don&#8217;t know who she is either&#8230;).  Music provided by dualCORE!  Thanks to everyone listening to the [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-47" title="squirrel hacker" src="http://securityjustice.com/wp-content/uploads/2009/01/squirrel-hacker-sm.jpg" alt="No bikini on this squirrel!" />This is the ninth episode of the Security Justice podcast recorded January 21st 2009 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>! This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://matthewneely.blogspot.com/">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://chrisclymer.com/">Chris</a> with special guests <a href="http://www.flickr.com/photos/11182155@N06/">dotzero</a>, <a href="http://twitter.com/MarkWSchumann">Mark</a> and mystery girl (we don&#8217;t know who she is either&#8230;).  Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.  Here are the topics covered and show notes:</p>
<ul>
<li><strong>Website Plug of the Month: </strong>Sick of teaching your friends and family about PC security issues?  Send them to <a href="http://www.theacademyhome.com/">The Academy Home</a>!  They have great videos showing installations and configurations of security products and a lot of other great content.  We recommend the cool video on how to install and use <a href="http://keepass.info/">KeePass</a>, a fantastic open source password manager.</li>
<li>Tom, Dave and Matt will be at ShmooCon!  Dave is speaking&#8230;so let the Shmoo Ball Cannon carnage begin!  <a href="http://securityjustice.com/archives/48">Full details on Security Justice at ShmooCon are here</a>.  Join us at the <a href="http://www.podcastersmeetup.com/">Podcaster Meetup</a>!  We might be renting out Dave&#8217;s Shmoo Ball Cannon to support the <a href="http://www.eff.org/">EFF</a> at ShmooCon.  Stay tuned for the announcement!</li>
<li><a href="http://voices.washingtonpost.com/securityfix/2009/01/payment_processor_breach_may_b.html">Payment Processor Breach May Be Largest Ever</a></li>
<li><a href="http://www.latimes.com/news/nationworld/nation/la-na-inauguration-security18-2009jan18,0,1077311,full.story">Security at Obama inauguration is tight and high-tech<br />
</a></li>
<li>Throw your hard drive away, <a href="http://www.tgdaily.com/html_tmp/content-view-41094-140.html">Google&#8217;s Gdrive arriving in 2009</a>.  All your data is going to the &#8220;cloud&#8221;&#8230;</li>
<li>Twitter haz been hacked&#8230;Tom and Dave talk about it on <a href="http://securabit.com/2009/01/07/securabyte-episode-05-happiness-fail-whale-beaches-itself/">SecuraByte 5</a></li>
<li>Looking for good security podcasts focused on security awareness and business? Checkout <a href="http://www.streetwise-security-zone.com/members/streetwise">The Streetwise Security Zone</a> and <a href="http://www.securitycatalyst.com/resources/security-catalyst-podcast/">The Security Catalyst</a></li>
<li><a href="http://www.matthewneely.com/blog/2009/1/3/new-attack-against-dect-could-allow-attackers-to-monitor-enc.html">Matt tells us what DECT is</a> and the about the <a href="http://dedected.org/cgi-bin/trac.cgi">DECT presentation at CCC</a></li>
<li>Matt’s magstripe analysis blog series.  <a href="http://www.matthewneely.com/blog/2008/12/22/magstripe-analysis-part-1-introduction-to-magstripe-cards.html">Part 1</a> and <a href="http://www.matthewneely.com/blog/2008/12/29/magstripe-analysis-part-2-hico-and-loco-cards.html">Part 2</a>.</li>
<li>Chris tells us about <a href="http://chrisclymer.com/articles/hacking_windows/">penetration testing without your toolbox</a></li>
<li>New massive <a href="http://blogs.zdnet.com/security/?p=2367">Oracle patch release</a>.  Oracle <a href="http://carnal0wnage.blogspot.com/2009/01/more-oracle-pwnagei-lost-countnew.html">hacking via Carnal0wnage</a>.</li>
<li><a href="http://www.crunchgear.com/2008/12/30/md5-collision-creates-rogue-certificate-authority/">MD5 and rouge CA&#8217;s</a>.  200 Playstation 3&#8242;s were used not 200 Wii&#8217;s!</li>
<li>Mystery girl hijacks the podcast and says we are a &#8220;think tank&#8221;.  Dotzero interviews her and Tom argues the merits of the Playstation 3.  She asks some good security questions!  Sorry SecuraBit crew&#8230;shes ours. <img src='http://securityjustice.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </li>
<li><a href="http://www.youtube.com/watch?v=jncBvWtO15A">Angela our waitress</a> is a geek.  More from her next episode!</li>
<li>Check out the new videos on our <a href="http://www.youtube.com/SecurityJustice">YouTube channel</a>.</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/45/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/45/0/Security_Justice_Episode9.mp3" length="55250906" type="audio/mpeg" />
		<itunes:duration>57:31</itunes:duration>
		<itunes:subtitle>This is the ninth episode of the Security Justice podcast recorded January 21st 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the ninth episode of the Security Justice podcast recorded January 21st 2009 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Matt, Dave and Chris with special guests dotzero, Mark and mystery girl (we don't know who she is either...).  Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.  Here are the topics covered and show notes:

	Website Plug of the Month: Sick of teaching your friends and family about PC security issues?  Send them to The Academy Home!  They have great videos showing installations and configurations of security products and a lot of other great content.  We recommend the cool video on how to install and use KeePass, a fantastic open source password manager.
	Tom, Dave and Matt will be at ShmooCon!  Dave is speaking...so let the Shmoo Ball Cannon carnage begin!  Full details on Security Justice at ShmooCon are here.  Join us at the Podcaster Meetup!  We might be renting out Dave's Shmoo Ball Cannon to support the EFF at ShmooCon.  Stay tuned for the announcement!
	Payment Processor Breach May Be Largest Ever
	Security at Obama inauguration is tight and high-tech

	Throw your hard drive away, Google's Gdrive arriving in 2009.  All your data is going to the "cloud"...
	Twitter haz been hacked...Tom and Dave talk about it on SecuraByte 5
	Looking for good security podcasts focused on security awareness and business? Checkout The Streetwise Security Zone and The Security Catalyst
	Matt tells us what DECT is and the about the DECT presentation at CCC
	Matt’s magstripe analysis blog series.  Part 1 and Part 2.
	Chris tells us about penetration testing without your toolbox
	New massive Oracle patch release.  Oracle hacking via Carnal0wnage.
	MD5 and rouge CA's.  200 Playstation 3's were used not 200 Wii's!
	Mystery girl hijacks the podcast and says we are a "think tank".  Dotzero interviews her and Tom argues the merits of the Playstation 3.  She asks some good security questions!  Sorry SecuraBit crew...shes ours. ;-)
	Angela our waitress is a geek.  More from her next episode!
	Check out the new videos on our YouTube channel.

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 8</title>
		<link>http://securityjustice.com/archives/39</link>
		<comments>http://securityjustice.com/archives/39#comments</comments>
		<pubDate>Tue, 23 Dec 2008 21:36:55 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[asuseee]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[christmasale]]></category>
		<category><![CDATA[coreimpact]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[dotzero]]></category>
		<category><![CDATA[dualcore]]></category>
		<category><![CDATA[fon]]></category>
		<category><![CDATA[fyodor]]></category>
		<category><![CDATA[greatlakes]]></category>
		<category><![CDATA[greg]]></category>
		<category><![CDATA[hak5]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[notacon]]></category>
		<category><![CDATA[ophcrack]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[SANS]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[securestate]]></category>
		<category><![CDATA[shmooball]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[trivia]]></category>
		<category><![CDATA[tsa]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[vmware]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=39</guid>
		<description><![CDATA[This is the 8th episode of the Security Justice podcast recorded December 17th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave, Chris and Tyler.  Matt was out of town.  Special guest appearances by dotzero and Greg.  Music provided by dualCORE and a special music shout out to Jim Tews [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-40" title="Christmas Ale" src="http://securityjustice.com/wp-content/uploads/2008/12/christmas_ale_sm.jpg" alt="Drink up before it's gone!" />This is the 8th episode of the Security Justice podcast recorded December 17th 2008 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>! This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a>, <a href="http://chrisclymer.com/">Chris</a> and <a href="http://secshoggoth.blogspot.com/">Tyler</a>.  <a href="http://matthewneely.blogspot.com/">Matt</a> was out of town.  Special guest appearances by <a href="http://www.flickr.com/photos/11182155@N06/">dotzero</a> and <a href="http://securityblahblah.blogspot.com/">Greg</a>.  Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a> and a special music shout out to <span><a href="http://www.jimtews.com/">Jim Tews</a> &amp; Mike Polk</span> that sang <a href="http://www.youtube.com/watch?v=9IpIHYW8q9s">Ode to Great Lakes Brewing Company&#8217;s Christmas Ale!</a> (NSFW for drunken language).  Thanks to everyone listening to the live stream and for participating in the chat via IRC.</p>
<p><strong>Trivia Contest Details</strong><br />
For this episode we did a special holiday &#8220;dual&#8221; live podcast with <a href="http://securabit.com">SecuraBit</a> to win a copy of the new <a href="http://nmap.org/book/">Nmap Network Scanning book</a> and a $25 gift card to Chili’s/Macaroni Grill/Maggiano’s Restaurants.  There were two trivia questions you needed to answer.  One was given on <a href="http://securabit.com/2008/12/22/securabit-episode-17-for-xmass-santa-gave-us-an-nmap-book-to-give-away/">SecuraBit Episode 17</a> and the other on Security Justice Episode 8 (and during the live podcasts on December 17th).  Listen for the first trivia question on <a href="http://securabit.com/2008/12/22/securabit-episode-17-for-xmass-santa-gave-us-an-nmap-book-to-give-away/">SecuraBit Episode 17</a> and the second trivia question on Security Justice Episode 8.  Send your answers to feedback[aT]securabit.com.  The first listener to correctly answer <strong>both</strong> questions will win both the book and the gift card.</p>
<p>Here are the topics covered and show notes:</p>
<ul>
<li><a href="http://www.csoonline.com/article/468766/Penetration_Testing_Dead_in_">Penetration Testing Dead in 2009</a>? Many <a href="http://www.innismir.net/article/191">don&#8217;t think so</a> (including us).  There are lots of <a href="http://blog.uncommonsensesecurity.com/2008/12/fallacy-of-penetration-testing.html">different opinions</a>.</li>
<li>Dave&#8217;s Shmooball Cannon test fire!  See what happened to <a href="http://www.youtube.com/watch?v=v4msp8SFl_k&amp;feature=related">Bruce Potter at Notacon</a> this year!</li>
<li><a href="http://www.coresecurity.com/content/how-it-works-essential">Core Impact Essential</a> and new <a href="http://www.coresecurity.com/content/impact-pro-v8-extends-webapp-penetration-testing">XSS/Blind SQL Injection modules</a></li>
<li><a href="http://www.securestate.com/Pages/SA-Exploiter.aspx">Secure State SQL Injection Tool</a> released at Defcon</li>
<li>The story of the fired accountant…<a href="http://www.petri.co.il/reset_domain_admin_password_in_windows_server_2003_ad.htm">resetting the domain admin account in a Windows Server 2003 domain</a>.  Use the <a href="http://ophcrack.sourceforge.net/">ophcrack livecd</a> to get the local admin account on the domain controller first.</li>
<li>Did you check out the new <a href="http://www.vmware.com/products/converter/">VMware vCenter Converter</a>? It’s really cool! Correction..Tom actually converted several Windows boxes to VM&#8217;s..converting Linux is not supported *yet*.</li>
<li>Chris provides details of his experience with the TSA and &#8220;security theater&#8221;.  He observed with <a href="http://twitpic.com/sxbo">pictures</a>.</li>
<li>Chris and his SANS DC class.  Anyone want to be a SANS instructor?  Chris tells you how and what SANS requires.</li>
<li>Dave talks about his new Asus EEE PC.  Here is a great guide done by <a href="http://twitter.com/kriggins">@kriggins</a> to <a href="http://www.infosecramblings.com/backtrack-3-usb-persistent-nessus-ff3-nmap/">install Backtrack 3 to USB/SD with persistant changes</a>.  How to <a href="http://www.3eportal.com/index.php?option=com_content&amp;task=view&amp;id=14&amp;Itemid=9">install XP to an SD card</a>.</li>
<li>Dave got his <a href="http://wiki.hak5.org/wiki/Episode_4x01">Fon router</a>&#8230;shout out to <a href="http://www.hak5.org/">Hak5</a> for the idea!  Dave is looking for something other then a pineapple&#8230;<a href="http://hak5.org/forums/index.php?showtopic=9797">perhaps a lamp</a>?</li>
<li><a href="http://blogs.zdnet.com/security/?p=2317">New IE 0day</a>.  Out of band patch released!  <a href="http://cyberwarfaremag.wordpress.com/2008/12/11/internet-explorer-7-attack-in-the-wild/">Awesome article on how the vulnerability works and is exploited</a>.  Thanks to <a href="http://twitter.com/geekgrrl">@geekgrrl</a> for the link!</li>
<li>Greg on the impact of malware</li>
<li>Check out <a href="http://www.clevelandsaplum.com/2008/12/ode-to-christmas-ale.html">this blog post</a> if you want to know what all the hype is about Christmas Ale here in Cleveland!</li>
</ul>
<p>Stay tuned after the podcast for some special holiday tunes and outtakes.  Leave feedback by commenting below or via <a href="http://twitter.com/securityjustice">Twitter</a>.  Happy Holiday&#8217;s from Security Justice!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/39/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/39/0/Security_Justice_Episode8.mp3" length="56876676" type="audio/mpeg" />
		<itunes:duration>00:01:01</itunes:duration>
		<itunes:subtitle>This is the 8th episode of the Security Justice podcast recorded December 17th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the 8th episode of the Security Justice podcast recorded December 17th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave, Chris and Tyler.  Matt was out of town.  Special guest appearances by dotzero and Greg.  Music provided by dualCORE and a special music shout out to Jim Tews &#38; Mike Polk that sang Ode to Great Lakes Brewing Company's Christmas Ale! (NSFW for drunken language).  Thanks to everyone listening to the live stream and for participating in the chat via IRC.

Trivia Contest Details
For this episode we did a special holiday "dual" live podcast with SecuraBit to win a copy of the new Nmap Network Scanning book and a $25 gift card to Chili’s/Macaroni Grill/Maggiano’s Restaurants.  There were two trivia questions you needed to answer.  One was given on SecuraBit Episode 17 and the other on Security Justice Episode 8 (and during the live podcasts on December 17th).  Listen for the first trivia question on SecuraBit Episode 17 and the second trivia question on Security Justice Episode 8.  Send your answers to feedback[aT]securabit.com.  The first listener to correctly answer both questions will win both the book and the gift card.

Here are the topics covered and show notes:

	Penetration Testing Dead in 2009? Many don't think so (including us).  There are lots of different opinions.
	Dave's Shmooball Cannon test fire!  See what happened to Bruce Potter at Notacon this year!
	Core Impact Essential and new XSS/Blind SQL Injection modules
	Secure State SQL Injection Tool released at Defcon
	The story of the fired accountant…resetting the domain admin account in a Windows Server 2003 domain.  Use the ophcrack livecd to get the local admin account on the domain controller first.
	Did you check out the new VMware vCenter Converter? It’s really cool! Correction..Tom actually converted several Windows boxes to VM's..converting Linux is not supported *yet*.
	Chris provides details of his experience with the TSA and "security theater".  He observed with pictures.
	Chris and his SANS DC class.  Anyone want to be a SANS instructor?  Chris tells you how and what SANS requires.
	Dave talks about his new Asus EEE PC.  Here is a great guide done by @kriggins to install Backtrack 3 to USB/SD with persistant changes.  How to install XP to an SD card.
	Dave got his Fon router...shout out to Hak5 for the idea!  Dave is looking for something other then a pineapple...perhaps a lamp?
	New IE 0day.  Out of band patch released!  Awesome article on how the vulnerability works and is exploited.  Thanks to @geekgrrl for the link!
	Greg on the impact of malware
	Check out this blog post if you want to know what all the hype is about Christmas Ale here in Cleveland!

Stay tuned after the podcast for some special holiday tunes and outtakes.  Leave feedback by commenting below or via Twitter.  Happy Holiday's from Security Justice!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 7</title>
		<link>http://securityjustice.com/archives/32</link>
		<comments>http://securityjustice.com/archives/32#comments</comments>
		<pubDate>Wed, 26 Nov 2008 17:14:20 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[chris]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[extortion]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[lemonparty]]></category>
		<category><![CDATA[linkedin]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[matt]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[socnet]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[tyler]]></category>
		<category><![CDATA[wpa]]></category>
		<category><![CDATA[zerocool]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=32</guid>
		<description><![CDATA[This is the seventh episode of the Security Justice podcast recorded November 19th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Matt, Dave and a new co-host to the podcast, Chris.  Tyler took the night off.  Music provided by dualCORE!  Thanks to everyone listening to the live stream and for [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-33" title="hackers!" src="http://securityjustice.com/wp-content/uploads/2008/11/hackers04.jpg" alt="" />This is the seventh episode of the Security Justice podcast recorded November 19th 2008 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>! This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://matthewneely.blogspot.com/">Matt</a>, <a href="http://securid.wordpress.com/">Dave</a> and a new co-host to the podcast, <a href="http://chrisclymer.com/">Chris</a>.  <a href="http://secshoggoth.blogspot.com/">Tyler</a> took the night off.  Music provided by <a href="http://dualcoremusic.com/nerdcore/">dualCORE</a>!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.  Here are the topics covered and show notes:</p>
<ul>
<li>Speaker recap from the Northeast Ohio InfoSec Forum</li>
<li>PCI Fact or Fiction or Why Compliance is Not American by Bill Mathews, Lead Geek, Hurricane Labs</li>
<li>Malware Analysis Competition by Tyler Hudak &amp; Greg Feezel&#8230;<a href="http://www.malwarechallenge.info/results.html">Results released</a>!</li>
<li><a href="http://dl.aircrack-ng.org/breakingwepandwpa.pdf">New WPA cracking technique</a> and <a href="http://wifinetnews.com/archives/008502.html">WEP is even easier</a> to <a href="http://wifinetnews.com/archives/008505.html">crack</a>!</li>
<li><a href="http://www.avertlabs.com/research/blog/index.php/2008/11/14/exploit-ms08-067-bundled-in-commercial-malware-kit/">Exploit-MS08-067 Bundled in Commercial Malware Kit</a></li>
<li><a href="http://seclists.org/fulldisclosure/2008/Nov/0403.html">Metasploit 3.2 Released</a></li>
<li>Cool stuff to install on your iPhone</li>
<li><a href="http://www.physorg.com/news144519246.html">Software program duplicates physical keys&#8230;without the key</a></li>
<li><a href="http://microformats.org/wiki/social_network_anti-patterns">Social Network Anti-Patterns</a></li>
<li>Lotus Notes sux&#8230;If you use or have used Notes, <a href="http://lotusnotessucks.4t.com/index.html">check this out</a>!</li>
<li><a href="http://blog.blogsecurify.com/2008/11/analysis-of-new-facebook-phish.html">New Facebook phish</a></li>
<li>Facebook Launches <a href="http://www.allfacebook.com/2008/11/application-verfication-program/">Registration for Application Verification Program</a></li>
<li><a href="http://www.techcrunch.com/2008/10/28/linkedin-means-business-with-new-application-platform/">LinkedIn adds applications</a>&#8230;becomes more like Facebook/MySpace. Let&#8217;s not forget <a href="http://www.techcrunch.com/2007/11/02/first-opensocial-application-hacked-within-45-minutes/">OpenSocial was hacked in 45 minutes!</a></li>
<li><a href="http://www.linux-magazine.com/online/news/fix_for_security_hole_in_android_g1">Default r00t access</a> on your Android G1 phone, thanks Google!</li>
<li><a href="http://news.cnet.com/8301-10789_3-10084187-57.html">Extortion used in Express Scripts database breach</a></li>
<li><a href="http://voices.washingtonpost.com/securityfix/?hpid=news-col-blogs">Shut down of EST Domains and McColo</a></li>
<li>White House Networks accessed by <a href="http://cosmos.bcst.yahoo.com/up/player/popup/index.php?cl=10592424">Chinese Hackers</a>?</li>
<li>A <a href="http://www.mlive.com/flintjournal/index.ssf/2008/11/a_radioactive_cheese_grater_at.html">radioactive cheese grater</a> at landfill points out toxic dangers from Chinese products</li>
<li><a href="http://education.zdnet.com/?p=1631&amp;tag=btxcsim">Shut down</a> blogs.pi.edu</li>
<li><a href="http://news.cnet.com/8301-1009_3-10054569-83.html">Kevin Mitnick detained</a>, released after Colombia trip</li>
<li>Some discussion about the old <a href="http://en.wikipedia.org/wiki/Hackers_(film)">&#8220;Hackers&#8221;</a> movie.  Matt is really &#8220;<a href="http://movies.infinitecoolness.com/01/hackers10.jpg">Zero Cool</a>&#8220;, (you didn&#8217;t know?) and Angelina Jolie (Acid Burn) was <a href="http://evoen.net/images/angelina.jpg">really not that hot</a> in the movie (Tom&#8217;s opinion&#8230;).  What&#8217;s the true story behind  Emmanuel Goldstein a.k.a. Cereal Killer?</li>
<li>If you <em>really</em> want to know what &#8220;Lemon Party&#8221; means (NOT recommended)&#8230;then search for it on your own if you feel like you must.  <strong>Lemon Party is NSFW!</strong> We will not be responsible for your eyes burning!  You have been warned!</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/32/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/32/0/Security_Justice_Episode7.mp3" length="93855300" type="audio/mpeg" />
		<itunes:duration>97:38</itunes:duration>
		<itunes:subtitle>This is the seventh episode of the Security Justice podcast recorded November 19th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the seventh episode of the Security Justice podcast recorded November 19th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Matt, Dave and a new co-host to the podcast, Chris.  Tyler took the night off.  Music provided by dualCORE!  Thanks to everyone listening to the live stream and for participating in the chat via IRC.  Here are the topics covered and show notes:

	Speaker recap from the Northeast Ohio InfoSec Forum
	PCI Fact or Fiction or Why Compliance is Not American by Bill Mathews, Lead Geek, Hurricane Labs
	Malware Analysis Competition by Tyler Hudak &#38; Greg Feezel...Results released!
	New WPA cracking technique and WEP is even easier to crack!
	Exploit-MS08-067 Bundled in Commercial Malware Kit
	Metasploit 3.2 Released
	Cool stuff to install on your iPhone
	Software program duplicates physical keys...without the key
	Social Network Anti-Patterns
	Lotus Notes sux...If you use or have used Notes, check this out!
	New Facebook phish
	Facebook Launches Registration for Application Verification Program
	LinkedIn adds applications...becomes more like Facebook/MySpace. Let's not forget OpenSocial was hacked in 45 minutes!
	Default r00t access on your Android G1 phone, thanks Google!
	Extortion used in Express Scripts database breach
	Shut down of EST Domains and McColo
	White House Networks accessed by Chinese Hackers?
	A radioactive cheese grater at landfill points out toxic dangers from Chinese products
	Shut down blogs.pi.edu
	Kevin Mitnick detained, released after Colombia trip
	Some discussion about the old "Hackers" movie.  Matt is really "Zero Cool", (you didn't know?) and Angelina Jolie (Acid Burn) was really not that hot in the movie (Tom's opinion...).  What's the true story behind  Emmanuel Goldstein a.k.a. Cereal Killer?
	If you really want to know what "Lemon Party" means (NOT recommended)...then search for it on your own if you feel like you must.  Lemon Party is NSFW! We will not be responsible for your eyes burning!  You have been warned!

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 6</title>
		<link>http://securityjustice.com/archives/27</link>
		<comments>http://securityjustice.com/archives/27#comments</comments>
		<pubDate>Fri, 17 Oct 2008 04:01:28 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[atm]]></category>
		<category><![CDATA[chrisnickerson]]></category>
		<category><![CDATA[dave]]></category>
		<category><![CDATA[maltego]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[ohiolinuxfest]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[tigerteam]]></category>
		<category><![CDATA[tom]]></category>
		<category><![CDATA[tyler]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=27</guid>
		<description><![CDATA[This is the sixth episode of the Security Justice podcast recorded October 15th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave and Tyler.  In this episode we were finally able to stream live!   Thanks to everyone listening and for participating in the live chat via IRC.  Here are [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-28" title="quagmire" src="http://securityjustice.com/wp-content/uploads/2008/10/quagmire.jpg" alt="Quagmire!" />This is the sixth episode of the Security Justice podcast recorded October 15th 2008 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>! This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://secshoggoth.blogspot.com/">Tyler</a>.  In this episode we were finally able to stream live! <img src='http://securityjustice.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' />   Thanks to everyone listening and for participating in the live chat via IRC.  Here are the topics covered and show notes:</p>
<ul>
<li>Ohio Linux Fest Recap. <a href="http://www.flickr.com/photos/27895091@N08/">Pictures posted here</a>.</li>
<li>Greg Feezel from the <a href="http://www.informationsecuritysummit.org/">Ohio Information Security Summit</a></li>
<li><a href="http://malwarechallenge.info/">Malware Challenge</a> update</li>
<li>Speaker Recap – NEO InfoSec Forum</li>
<li>Information Gathering with Maltego &#8211; Tom Eston</li>
<li>Protecting website users from each other &#8211; Brian Shura</li>
<li><a href="http://michaelzimmer.org/2008/09/30/on-the-anonymity-of-the-facebook-dataset/">Facebook dataset released</a>.  How anonymous is it?</li>
<li><a href="http://mobile.slashdot.org/mobile/08/10/12/1724230.shtml">Elcomsoft Claims WPA/WPA2 Cracking “Breakthrough”</a>&#8230;<a href="http://securosis.com/2008/10/13/your-wpa-psk-wireless-network-is-at-risk-if-you-are-an-idiot/">not really</a></li>
<li>What&#8217;s on your Simcard? Check out <a href="http://www.pauldotcom.com/SimcardTechSegment.swf">Larry Pesce&#8217;s Simcard Forensics Presentation</a></li>
<li>Scammers introduce <a href="http://blogs.zdnet.com/security/?p=2000">ATM skimmers with built-in SMS notification</a></li>
<li>OWASP NY update.  <a href="http://video.google.com/videosearch?q=owasp.tv&amp;emb=0&amp;aq=f#">Videos now online!</a></li>
<li>Chris Nickerson special edition recorded&#8230;ready to launch.  Check out Chris in the latest issue of Information Security Magazine (page 56).</li>
<li>Oops, teacher <a href="http://education.zdnet.com/?p=872&amp;tag=btxcsim">mistakenly messages cop for pot buy</a></li>
<li><a href="http://www.youtube.com/watch?v=L_LR2f9fjG4">Conspiracy Goes Mainstream: CNBC&#8217;s Big Brother, Big Business</a></li>
<li><a href="http://triggur.org/robodump/">RoboDump 1.0</a></li>
<li>Encrypt your Ubuntu 8.04 installation&#8230;<a href="http://news.softpedia.com/news/Encrypted-Ubuntu-8-04-85271.shtml ">It’s easy when creating a fresh install</a> and <a href="http://learninginlinux.wordpress.com/2008/04/23/installing-ubuntu-804-with-full-disk-encryption/">with a separate “snapshot” volume</a></li>
<li>McCain burps like Quagmire? hmmm&#8230;.</li>
<li>Yes, Matt is getting married! Congrats to Matt!</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/27/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/27/0/Security_Justice_Episode6.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>00:01:01</itunes:duration>
		<itunes:subtitle>This is the sixth episode of the Security Justice podcast recorded October 15th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the sixth episode of the Security Justice podcast recorded October 15th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave and Tyler.  In this episode we were finally able to stream live! :-)  Thanks to everyone listening and for participating in the live chat via IRC.  Here are the topics covered and show notes:

	Ohio Linux Fest Recap. Pictures posted here.
	Greg Feezel from the Ohio Information Security Summit
	Malware Challenge update
	Speaker Recap – NEO InfoSec Forum
	Information Gathering with Maltego - Tom Eston
	Protecting website users from each other - Brian Shura
	Facebook dataset released.  How anonymous is it?
	Elcomsoft Claims WPA/WPA2 Cracking “Breakthrough”...not really
	What's on your Simcard? Check out Larry Pesce's Simcard Forensics Presentation
	Scammers introduce ATM skimmers with built-in SMS notification
	OWASP NY update.  Videos now online!
	Chris Nickerson special edition recorded...ready to launch.  Check out Chris in the latest issue of Information Security Magazine (page 56).
	Oops, teacher mistakenly messages cop for pot buy
	Conspiracy Goes Mainstream: CNBC's Big Brother, Big Business
	RoboDump 1.0
	Encrypt your Ubuntu 8.04 installation...It’s easy when creating a fresh install and with a separate “snapshot” volume
	McCain burps like Quagmire? hmmm....
	Yes, Matt is getting married! Congrats to Matt!

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 5</title>
		<link>http://securityjustice.com/archives/19</link>
		<comments>http://securityjustice.com/archives/19#comments</comments>
		<pubDate>Wed, 24 Sep 2008 01:35:49 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[dradis]]></category>
		<category><![CDATA[furry]]></category>
		<category><![CDATA[hak5]]></category>
		<category><![CDATA[kaminsky]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[philosecurity]]></category>
		<category><![CDATA[SANS]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=19</guid>
		<description><![CDATA[This is the fifth episode of the Security Justice podcast recorded September 17th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave and Tyler.  In this episode we tried&#8230;unsuccessfully&#8230;to stream audio live via Hak5radio.com.  Dave&#8217;s Ubuntu box wasn&#8217;t working correctly so Tom had to resort to installing a trial version [...]]]></description>
			<content:encoded><![CDATA[<p>This is the fifth episode of the Security Justice podcast recorded September 17th 2008 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>! This episode was hosted by <a href="http://spylogic.net/">Tom</a>, <a href="http://securid.wordpress.com/">Dave</a> and <a href="http://secshoggoth.blogspot.com/">Tyler</a>.  In this episode we tried&#8230;unsuccessfully&#8230;to stream audio live via Hak5radio.com.  Dave&#8217;s Ubuntu box wasn&#8217;t working correctly so Tom had to resort to installing a trial version of Nicecast on his Mac.  The trial version injected static every couple minutes into the stream&#8230;.FAIL!  Next time, we will hopefully have all that corrected!  Special thanks goes out to Mubix of <a href="http://www.room362.com/">Room362.com</a> for hooking us up with the dedicated stream on <a href="http://hak5radio.com/">Hak5radio.com</a>!  Here are the topics covered and show notes:</p>
<ul>
<li><a href="http://www.flickr.com/photos/27895091@N08/2878930201/">We have stickers!</a> W00t!  They will be distributed at OWASP NY and Ohio LinuxFest.</li>
<li>Tom and Dave will be podcasting live at the <a href="http://www.ohiolinux.org/">Ohio LinuxFest</a> on October 11th.</li>
<li>NEO InfoSec Forum Speaker Recap&#8230;</li>
<li>Showing Up Uninvited: 4 years of being the bearer of bad news by Ryan Macfarlane</li>
<li>SANS Virtualization Summit Briefing by Tom Evans</li>
<li><a href="http://spylogic.net/item/354">What&#8217;s Tom up to?</a></li>
<li><a href="http://www.0x000000.com/index.php?i=310&amp;bin=100110110">Dan Kaminsky</a> chimes in&#8230;you can now get all the <a href="http://www.0x000000.com/index.php?i=310&amp;bin=100110110">Dan you want, anytime</a>!</li>
<li>Sarah Palin’s Yahoo Email Account <a href="http://digg.com/2008_us_elections/The_Incident_Did_4Chan_Anon_Hack_Palin_s_Yahoo_Email">Hacked</a>.  <a href="http://blogs.artvoice.com/techvoice/2008/09/17/hackers-break-into-sarah-palins-inbox/">Full details here</a>.</li>
<li>Google enters the Browser Wars with <a href="http://blogs.zdnet.com/security/?p=1837">Chrome</a>.  Vulnerabilities <a href="http://blogs.zdnet.com/security/?p=1843">already</a> <a href="http://blogs.zdnet.com/security/?p=1858">found</a>.</li>
<li><a href="http://philosecurity.org/2008/09/15/united-airlines-stock-crash">United Airlines Stock Crash</a> (Sherri Davidoff/philosecurity)</li>
<li><a href="http://malwarechallenge.info/">Malware Challenge</a> officially released!  The contest begins October 1st!  Winners announced at the <a href="http://www.informationsecuritysummit.org/">Ohio Information Security Summit</a>.</li>
<li>Tyler talks about stupid botmasters</li>
<li><a href="http://www.phizun.com/images/rs031.jpg">Dumb but funny picture</a> &#8211; Opens you up for an attack</li>
<li><a href="http://www.worldnetdaily.com/?pageId=70888">Big Brother wants every single e-mail, text</a></li>
<li>Real punishment: <a href="http://rlslog.net/real-punishment-russian-viagra-spammer-murdered/">Russian Viagra spammer murdered</a></li>
<li>Killer app: <a href="http://videogames.yahoo.com/feature/killer-app-game-consoles-contain-hazardous-chemicals/1214392">Game consoles contain hazardous chemicals</a></li>
<li>Tom&#8217;s Tech Segment- <a href="http://dradis.nomejortu.com/">Dradis: Information sharing for security testers</a></li>
<li><a href="http://spylogic.net/downloads/dradis_installation_ubuntu.txt">Dradis installation notes on Ubuntu</a>.</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  The next live podcast will hopefully be broadcast over <a href="http://wiki.hak5.org/wiki/Hak.5_Radio">Hak5 radio</a>!  We will post/tweet about the next live audio stream.  We can also sometimes be found in our IRC chatroom at irc.freenode.net #securityjustice.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/19/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/19/0/Security_Justice_Episode5.mp3" length="42870688" type="audio/mpeg" />
		<itunes:duration>44:35</itunes:duration>
		<itunes:subtitle>This is the fifth episode of the Security Justice podcast recorded September 17th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by ...</itunes:subtitle>
		<itunes:summary>This is the fifth episode of the Security Justice podcast recorded September 17th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom, Dave and Tyler.  In this episode we tried...unsuccessfully...to stream audio live via Hak5radio.com.  Dave's Ubuntu box wasn't working correctly so Tom had to resort to installing a trial version of Nicecast on his Mac.  The trial version injected static every couple minutes into the stream....FAIL!  Next time, we will hopefully have all that corrected!  Special thanks goes out to Mubix of Room362.com for hooking us up with the dedicated stream on Hak5radio.com!  Here are the topics covered and show notes:

	We have stickers! W00t!  They will be distributed at OWASP NY and Ohio LinuxFest.
	Tom and Dave will be podcasting live at the Ohio LinuxFest on October 11th.
	NEO InfoSec Forum Speaker Recap...
	Showing Up Uninvited: 4 years of being the bearer of bad news by Ryan Macfarlane
	SANS Virtualization Summit Briefing by Tom Evans
	What's Tom up to?
	Dan Kaminsky chimes in...you can now get all the Dan you want, anytime!
	Sarah Palin’s Yahoo Email Account Hacked.  Full details here.
	Google enters the Browser Wars with Chrome.  Vulnerabilities already found.
	United Airlines Stock Crash (Sherri Davidoff/philosecurity)
	Malware Challenge officially released!  The contest begins October 1st!  Winners announced at the Ohio Information Security Summit.
	Tyler talks about stupid botmasters
	Dumb but funny picture - Opens you up for an attack
	Big Brother wants every single e-mail, text
	Real punishment: Russian Viagra spammer murdered
	Killer app: Game consoles contain hazardous chemicals
	Tom's Tech Segment- Dradis: Information sharing for security testers
	Dradis installation notes on Ubuntu.

Please send show feedback to feedback [aT] securityjustice.com or comment below.  The next live podcast will hopefully be broadcast over Hak5 radio!  We will post/tweet about the next live audio stream.  We can also sometimes be found in our IRC chatroom at irc.freenode.net #securityjustice.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 4</title>
		<link>http://securityjustice.com/archives/16</link>
		<comments>http://securityjustice.com/archives/16#comments</comments>
		<pubDate>Sat, 23 Aug 2008 20:08:04 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=16</guid>
		<description><![CDATA[This is the fourth episode (Slave Leia limited edition) of the Security Justice podcast recorded August 20th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom.  This is the first episode we had the entire SJ crew of Dave, Matt, Tom and Tyler.  Huge thanks to dotzero and everyone that came [...]]]></description>
			<content:encoded><![CDATA[<p>This is the fourth episode (Slave Leia limited edition) of the Security Justice podcast recorded August 20th 2008 live at <a href="http://www.maviswinkles.com/">Mavis Winkle’s Irish Pub</a>! This episode was hosted by <a href="http://spylogic.net/">Tom</a>.  This is the first episode we had the entire SJ crew of <a href="http://securid.wordpress.com/">Dave</a>, <a href="http://matthewneely.blogspot.com/">Matt</a>, <a href="http://spylogic.net">Tom</a> and <a href="http://secshoggoth.blogspot.com/">Tyler</a>.  Huge thanks to <a href="http://www.flickr.com/photos/11182155@N06/">dotzero</a> and everyone that came out to Mavis Winkle’s to enjoy the brew and for participating in the show!  Special thanks to the staff of Mavis Winkle&#8217;s who apparently like to <a href="http://www.flickr.com/photos/27895091@N08/2786197236/">Hack Naked</a>! (shout out to <a href="http://pauldotcom.com">PaulDotCom</a> for the stickers) Here are the topics covered and show notes:</p>
<ul>
<li>NEO InfoSec Forum Speaker recap&#8230;</li>
<li>Mitigating Phishing through Email Authentication: SPF, SIDF, DK, DKIM, SSP and ADSP</li>
<li>Matt solidifies our &#8220;explicit&#8221; rating and Tom talks about his childhood fantasies of <a href="http://img338.imageshack.us/img338/7512/slaveleiapillowfight198jf8.jpg">Carrie Fisher in her Slave Leia outfit</a>.</li>
<li>Hacking Without Tools Part 1: Linux/UNIX</li>
<li>Tom&#8217;s Black Hat/Defcon recap (talk recap, sexyhacking.com girls exposed, <a href="http://www.flickr.com/photos/27895091@N08/2789610005/">Hofbrahaus beat down</a>, Gringo Warrior, parties with <a href="http://www.flickr.com/photos/27895091@N08/2754790723/">Chris and Jay</a> from <a href="http://securabit.com">Securabit</a> and others, our one fan becomes Tom&#8217;s bodyguard and more&#8230;)</li>
<li><a href="http://www.flickr.com/photos/11182155@N06/">Defcon storytime with dotzero:</a> Swag whores, Bunnies for priest and priests&#8217; balls&#8230;it&#8217;s not explicit&#8230;honest!</li>
<li>High level security pro&#8217;s being targeted</li>
<li>Lock vulnerabilities released at Defcon, Hope and Blackhat</li>
<li>Matt talks about <a href="http://www.hackaday.com/2008/07/29/medeco-high-security-lock-picking/">creating a medecoder</a></li>
<li>New information gathering attack against Axis cameras</li>
<li>Tyler talks about recent CNN/MSNBC malspam</li>
<li>Dave talks about <a href="http://www.efindoutthetruth.com/Diversion_Safes.htm">&#8220;diversion safes&#8221;</a> and the TSA searching through your dirty clothes (yuck)</li>
<li><a href="http://www.efindoutthetruth.com/Diversion_Safes.htm">You want to see the lettuce safe!</a> (scroll down to the middle of the page)</li>
</ul>
<p>Stay tuned after the podcast for some classic SJ bloopers.  Please send show feedback to feedback [aT] securityjustice.com or comment below.  The next live podcast will be broadcast over <a href="http://wiki.hak5.org/wiki/Hak.5_Radio">Hak5 radio</a>!  Stay tuned for an announcement of our IRC channel as well.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/16/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/16/0/Security_Justice_Episode4.mp3" length="68915088" type="audio/mpeg" />
		<itunes:duration>00:01:01</itunes:duration>
		<itunes:subtitle>This is the fourth episode (Slave Leia limited edition) of the Security Justice podcast recorded August 20th 2008 live at Mavis Winkle’s Irish Pub! This ...</itunes:subtitle>
		<itunes:summary>This is the fourth episode (Slave Leia limited edition) of the Security Justice podcast recorded August 20th 2008 live at Mavis Winkle’s Irish Pub! This episode was hosted by Tom.  This is the first episode we had the entire SJ crew of Dave, Matt, Tom and Tyler.  Huge thanks to dotzero and everyone that came out to Mavis Winkle’s to enjoy the brew and for participating in the show!  Special thanks to the staff of Mavis Winkle's who apparently like to Hack Naked! (shout out to PaulDotCom for the stickers) Here are the topics covered and show notes:

	NEO InfoSec Forum Speaker recap...
	Mitigating Phishing through Email Authentication: SPF, SIDF, DK, DKIM, SSP and ADSP
	Matt solidifies our "explicit" rating and Tom talks about his childhood fantasies of Carrie Fisher in her Slave Leia outfit.
	Hacking Without Tools Part 1: Linux/UNIX
	Tom's Black Hat/Defcon recap (talk recap, sexyhacking.com girls exposed, Hofbrahaus beat down, Gringo Warrior, parties with Chris and Jay from Securabit and others, our one fan becomes Tom's bodyguard and more...)
	Defcon storytime with dotzero: Swag whores, Bunnies for priest and priests' balls...it's not explicit...honest!
	High level security pro's being targeted
	Lock vulnerabilities released at Defcon, Hope and Blackhat
	Matt talks about creating a medecoder
	New information gathering attack against Axis cameras
	Tyler talks about recent CNN/MSNBC malspam
	Dave talks about "diversion safes" and the TSA searching through your dirty clothes (yuck)
	You want to see the lettuce safe! (scroll down to the middle of the page)

Stay tuned after the podcast for some classic SJ bloopers.  Please send show feedback to feedback [aT] securityjustice.com or comment below.  The next live podcast will be broadcast over Hak5 radio!  Stay tuned for an announcement of our IRC channel as well.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 3</title>
		<link>http://securityjustice.com/archives/7</link>
		<comments>http://securityjustice.com/archives/7#comments</comments>
		<pubDate>Fri, 18 Jul 2008 01:03:31 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=7</guid>
		<description><![CDATA[Third episode of the Security Justice podcast recorded July 16th 2008 at Mavis Winkle&#8217;s Irish Pub! This episode was hosted by Dave and Matt.  Tom and Tyler were out of town but Tom was live via chat room (Skype = FAIL).  Huge thanks to everyone that came out to Mavis Winkle&#8217;s to enjoy the brew [...]]]></description>
			<content:encoded><![CDATA[<p>Third episode of the Security Justice podcast recorded July 16th 2008 at <a href="http://www.maviswinkles.com/">Mavis Winkle&#8217;s Irish Pub</a>! This episode was hosted by <a href="http://securid.wordpress.com">Dave</a> and <a href="http://matthewneely.blogspot.com/">Matt</a>.  <a href="http://spylogic.net">Tom</a> and <a href="http://secshoggoth.blogspot.com/">Tyler</a> were out of town but Tom was live via chat room (Skype = FAIL).  Huge thanks to everyone that came out to Mavis Winkle&#8217;s to enjoy the brew and for participating in the show!  Here are the topics covered and show notes:</p>
<ul>
<li>Speaker Recap – NEO InfoSec Forum</li>
<li>NEO InfoSec Myth Busters: Is Personal Data Stored on Hotel Keys? Using Magstripe Analysis Tools to Discover the Answer by Matt Neely, <a href="http://www.securestate.com">SecureState</a></li>
<li><a href="http://unetbootin.sourceforge.net/">Unetbootin</a>, <a href="http://www.freesbie.org/">FreeSBIE</a>, <a href="http://www.minibsd.org/">miniBSD</a></li>
<li>CF cards and photo booth hacking</li>
<li><a href=" http://netsecpodcast.com/?p=49">Massive DNS vulnerability</a></li>
<li><a href="http://www.time.com/time/health/article/0,8599,1819127,00.html?xid=feed-yahoo-healthsci">eWaste and China</a></li>
<li>New low budget independent hacker film: <a href="http://www.insecuritymovie.com/">Insecurity</a></li>
<li>“<a href="http://www.hackersarepeopletoo.com/">Hackers are people too</a>” premier at DefCon 16!</li>
<li><a href="http://fathomevents.com/details.aspx?eventid=724">WarGames 25th Anniversary</a></li>
<li>“<a href="http://sexyhacking.com/">Sexy Hacking</a>&#8221; (Thanks to <a href="http://pauldotcom.com/">PaulDotCom</a> for finding this site! WARNING: NSFW!)</li>
<li><a href="http://www.mcgrewsecurity.com/?p=143">Sexyhacking.com censorship FAIL!</a> (Blog post by McGrew Security)</li>
<li><a href="http://www.moanmyip.com/">Moan My IP</a>&#8230;also NSFW!</li>
<li><a href="http://blogs.zdnet.com/projectfailures/?p=855&amp;tag=btxcsim">Bill Gate’s enjoys the same issues as the rest of us</a></li>
<li>Audience magstripe results</li>
<li><a href="http://support.microsoft.com/kb/954960">WSUS issue</a> mentioned by Dave</li>
</ul>
<p>Please send show feedback to feedback [aT] securityjustice.com or comment below.  Stay tuned for announcements on special edition podcasts that will be recorded before our next monthly podcast.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/7/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/7/0/Security_Justice_Episode3.mp3" length="33425818" type="audio/mpeg" />
		<itunes:duration>34:48</itunes:duration>
		<itunes:subtitle>Third episode of the Security Justice podcast recorded July 16th 2008 at Mavis Winkle's Irish Pub! This episode was hosted by Dave and Matt.  Tom ...</itunes:subtitle>
		<itunes:summary>Third episode of the Security Justice podcast recorded July 16th 2008 at Mavis Winkle's Irish Pub! This episode was hosted by Dave and Matt.  Tom and Tyler were out of town but Tom was live via chat room (Skype = FAIL).  Huge thanks to everyone that came out to Mavis Winkle's to enjoy the brew and for participating in the show!  Here are the topics covered and show notes:

	Speaker Recap – NEO InfoSec Forum
	NEO InfoSec Myth Busters: Is Personal Data Stored on Hotel Keys? Using Magstripe Analysis Tools to Discover the Answer by Matt Neely, SecureState
	Unetbootin, FreeSBIE, miniBSD
	CF cards and photo booth hacking
	Massive DNS vulnerability
	eWaste and China
	New low budget independent hacker film: Insecurity
	“Hackers are people too” premier at DefCon 16!
	WarGames 25th Anniversary
	“Sexy Hacking" (Thanks to PaulDotCom for finding this site! WARNING: NSFW!)
	Sexyhacking.com censorship FAIL! (Blog post by McGrew Security)
	Moan My IP...also NSFW!
	Bill Gate’s enjoys the same issues as the rest of us
	Audience magstripe results
	WSUS issue mentioned by Dave

Please send show feedback to feedback [aT] securityjustice.com or comment below.  Stay tuned for announcements on special edition podcasts that will be recorded before our next monthly podcast.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Episode 2</title>
		<link>http://securityjustice.com/archives/4</link>
		<comments>http://securityjustice.com/archives/4#comments</comments>
		<pubDate>Fri, 20 Jun 2008 03:28:48 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=4</guid>
		<description><![CDATA[Second episode of the Security Justice podcast recorded June 18th 2008 at Mavis Winkle&#8217;s Irish Pub! This episode was hosted by Dave and Tom.  Matt and Tyler were out of town but will be here for the next episode.  Huge thanks to everyone that came out to Mavis Winkle&#8217;s to enjoy the brew and for [...]]]></description>
			<content:encoded><![CDATA[<p>Second episode of the Security Justice podcast recorded June 18th 2008 at <a href="http://www.maviswinkles.com/">Mavis Winkle&#8217;s Irish Pub</a>! This episode was hosted by <a href="http://securid.wordpress.com">Dave</a> and <a href="http://spylogic.net">Tom</a>.  <a href="http://matthewneely.blogspot.com/">Matt</a> and <a href="http://secshoggoth.blogspot.com/">Tyler</a> were out of town but will be here for the next episode.  Huge thanks to everyone that came out to Mavis Winkle&#8217;s to enjoy the brew and for participating in the show!  Here are the topics covered and show notes:</p>
<ul>
<li>Welcome and what is Security Justice drinking?</li>
<li>Web site launch</li>
<li><a href="http://www.maviswinkles.com/">Mavis Winkle&#8217;s Network Night<br />
</a></li>
<li>Dual Core latest album (correction from the podcast&#8230;album is called &#8220;<a href="http://dualcoremusic.com/nerdcore/">Super Powers</a>&#8220;)</li>
<li>Speaker recap from the Northeast Ohio Information Security Forum meeting</li>
<li>Announcement about special edition podcast with <a href="http://www.securestate.com/About-Us/Pages/Dave-Kennedy.aspx">Dave Kennedy of SecureState</a> (Fast-Track developer for Backtrack 3) coming soon!</li>
<li><a href="http://spylogic.net/item/288">Online Social Networks: 5 threats and 5 ways to use them safely</a></li>
<li>Evolved Badware, Joe Kovacic from <a href="http://www.itsoftwareproducts.com/index.htm">ITSoftware</a></li>
<li>Security Hot Topics</li>
<li><a href="http://www.verizonbusiness.com/about/news/displaynews.xml?newsid=25135&amp;mode=vzlong&amp;lang=en&amp;width=530">Verizon Data-Breach Study</a></li>
<li><a href="http://www.securityfocus.com/news/11523">Updated ransomware</a> (correction&#8230;that&#8217;s a 1,024-bit key!), <a href="http://blog.washingtonpost.com/securityfix/2008/06/malware_silently_alters_wirele_1.html">malware that takes control of your router via default passwords</a></li>
<li>Beer break!</li>
<li>Stumbling upon security issues and vulnerability disclosure</li>
<li>Dave comments on the 2003 blackout</li>
<li>Stupid human tricks seen by Dave and Tom</li>
<li>Audience participation!</li>
</ul>
<p>Please send show feeback to feedback@securityjustice.com (might not work yet) or comment below.  Stay tuned for announcements on special edition podcasts that will be recorded before our next monthly podcast.  Thanks for listening!</p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/4/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/4/0/Security_Justice_Episode2.mp3" length="41819460" type="audio/mpeg" />
		<itunes:duration>43:34</itunes:duration>
		<itunes:subtitle>Second episode of the Security Justice podcast recorded June 18th 2008 at Mavis Winkle's Irish Pub! This episode was hosted by Dave and Tom.  Matt ...</itunes:subtitle>
		<itunes:summary>Second episode of the Security Justice podcast recorded June 18th 2008 at Mavis Winkle's Irish Pub! This episode was hosted by Dave and Tom.  Matt and Tyler were out of town but will be here for the next episode.  Huge thanks to everyone that came out to Mavis Winkle's to enjoy the brew and for participating in the show!  Here are the topics covered and show notes:

	Welcome and what is Security Justice drinking?
	Web site launch
	Mavis Winkle's Network Night

	Dual Core latest album (correction from the podcast...album is called "Super Powers")
	Speaker recap from the Northeast Ohio Information Security Forum meeting
	Announcement about special edition podcast with Dave Kennedy of SecureState (Fast-Track developer for Backtrack 3) coming soon!
	Online Social Networks: 5 threats and 5 ways to use them safely
	Evolved Badware, Joe Kovacic from ITSoftware
	Security Hot Topics
	Verizon Data-Breach Study
	Updated ransomware (correction...that's a 1,024-bit key!), malware that takes control of your router via default passwords
	Beer break!
	Stumbling upon security issues and vulnerability disclosure
	Dave comments on the 2003 blackout
	Stupid human tricks seen by Dave and Tom
	Audience participation!

Please send show feeback to feedback@securityjustice.com (might not work yet) or comment below.  Stay tuned for announcements on special edition podcasts that will be recorded before our next monthly podcast.  Thanks for listening!</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Security Justice &#8211; Pilot Episode 1</title>
		<link>http://securityjustice.com/archives/3</link>
		<comments>http://securityjustice.com/archives/3#comments</comments>
		<pubDate>Wed, 18 Jun 2008 04:27:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Podcast Episodes]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[shownotes]]></category>

		<guid isPermaLink="false">http://securityjustice.com/?p=3</guid>
		<description><![CDATA[This is the first pilot episode of the Security Justice podcast recorded June 4th 2008 at Mavis Winkles Irish Pub! Here are the topics covered and show notes: Introducing the Security Justice team Dave talks about social engineering Tom talks about recent website hijacks (Comcast, Metasploit.com) Phone Losers of America &#8211; Voice Authentication Matt talks [...]]]></description>
			<content:encoded><![CDATA[<p>This is the first pilot episode of the Security Justice podcast recorded June 4th 2008 at <a href="http://www.maviswinkles.com/">Mavis Winkles Irish Pub</a>!  Here are the topics covered and show notes:</p>
<ul>
<li>Introducing the Security Justice team</li>
<li>Dave talks about social engineering</li>
<li>Tom talks about recent website hijacks (<a href="http://blog.wired.com/27bstroke6/2008/05/comcast-hijacke.html#previouspost">Comcast</a>, <a href="http://spylogic.net/item/271">Metasploit.com</a>)</li>
<li><a href="http://www.phonelosers.org/pla-radio-episode-17-voice-authentication/">Phone Losers of America &#8211; Voice Authentication</a></li>
<li>Matt talks about his voice authentication research</li>
<li>Interesting <a href="http://www.woio.com/Global/story.asp?S=8395312">local ATM theft</a> and other <a href="http://securityjustice.com/images/ATM_Machine.jpg">ATM goodies</a></li>
<li>What&#8217;s up with these <a href="http://blog.wired.com/defense/2008/05/did-chinas-hack.html">Chinese hackers</a>?  Hackers on an island?!?</li>
<li>Chinese hackers pwn Dave&#8217;s watch&#8230;</li>
<li>Picture frames used for hacking</li>
<li>Projects and research Security Justice is working on</li>
<li>Shout outs to <a href="http://pauldotcom.com/">PaulDotCom</a>, <a href="http://www.hak5.org/">Hak5</a>, <a href="http://securabit.com/">Securabit</a>, and thanks!</li>
</ul>
<p>Music for Security Justice is provided by <a href="http://dualcoremusic.com/nerdcore/">Dual Core</a>!  Check out <a href="http://dualcoremusic.com/nerdcore/">Dual Core</a> for some of the coolest nerdcore music around!</p>
<p>You can listen to the podcast right from this web site by clicking the &#8220;play&#8221; button below&#8230;or download our podcast into any podcatcher (iTunes, Podnova, Odeo, etc&#8230;) via our <a href="http://feeds.feedburner.com/SecurityJustice">FeedBurner feed</a>.</p>
<p>Next podcast will be recorded live at Mavis Winkle&#8217;s Irish Pub in Independence, Ohio right after the <a href="http://www.neoinfosecforum.org/">Northeast Ohio Information Security Forum</a> on June 18th.  Come on out for some great brew and join our live audience!</p>
<p></p>
]]></content:encoded>
			<wfw:commentRss>http://securityjustice.com/archives/3/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
			<enclosure url="http://securityjustice.com/podpress_trac/feed/3/0/Security_Justice_Episode1.mp3" length="32860020" type="audio/mpeg" />
		<itunes:duration>34:14</itunes:duration>
		<itunes:subtitle>This is the first pilot episode of the Security Justice podcast recorded June 4th 2008 at Mavis Winkles Irish Pub!  Here are the topics ...</itunes:subtitle>
		<itunes:summary>This is the first pilot episode of the Security Justice podcast recorded June 4th 2008 at Mavis Winkles Irish Pub!  Here are the topics covered and show notes:

	Introducing the Security Justice team
	Dave talks about social engineering
	Tom talks about recent website hijacks (Comcast, Metasploit.com)
	Phone Losers of America - Voice Authentication
	Matt talks about his voice authentication research
	Interesting local ATM theft and other ATM goodies
	What's up with these Chinese hackers?  Hackers on an island?!?
	Chinese hackers pwn Dave's watch...
	Picture frames used for hacking
	Projects and research Security Justice is working on
	Shout outs to PaulDotCom, Hak5, Securabit, and thanks!

Music for Security Justice is provided by Dual Core!  Check out Dual Core for some of the coolest nerdcore music around!

You can listen to the podcast right from this web site by clicking the "play" button below...or download our podcast into any podcatcher (iTunes, Podnova, Odeo, etc...) via our FeedBurner feed.

Next podcast will be recorded live at Mavis Winkle's Irish Pub in Independence, Ohio right after the Northeast Ohio Information Security Forum on June 18th.  Come on out for some great brew and join our live audience!

</itunes:summary>
		<itunes:keywords>Podcast Episodes</itunes:keywords>
		<itunes:author>Security Justice</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
	</channel>
</rss>
