276 subscribers
התחל במצב לא מקוון עם האפליקציה Player FM !
פודקאסטים ששווה להאזין
בחסות

CVE for EOL with Aaron Frost
Manage episode 476867163 series 1502626
Aaron Frost explores the overly complex world of vulnerability identifiers for end of life software. We discuss how incomplete CVE reporting creates blind spots for users while arming attackers with knowledge. The conversation uncovers the ethical tensions between resource constraints and security transparency, highlighting why the "vulnerable until proven otherwise" approach is the best path forward for end of life software.
The show notes and blog post for this episode can be found at https://opensourcesecurity.io/2025/2025-04-cve_eol_aaron_frost/
505 פרקים
Manage episode 476867163 series 1502626
Aaron Frost explores the overly complex world of vulnerability identifiers for end of life software. We discuss how incomplete CVE reporting creates blind spots for users while arming attackers with knowledge. The conversation uncovers the ethical tensions between resource constraints and security transparency, highlighting why the "vulnerable until proven otherwise" approach is the best path forward for end of life software.
The show notes and blog post for this episode can be found at https://opensourcesecurity.io/2025/2025-04-cve_eol_aaron_frost/
505 פרקים
כל הפרקים
×1 Python Security with Seth Larson 31:44
1 Linux Vendor Firmware Service with Richard Hughes 35:46
1 NPM supply chain attacks with Charlie Eriksen 34:31
1 Detecting XZ in Debian with Otto Kekäläinen 31:48
1 Eclipse Foundation SBOMs with Mikael Barbero 31:15
1 Actually finding vulnerabilities using AI with Joshua Rogers 31:35
1 Sustaining Package Repositories with Brian Fox 42:20
1 Arch Linux Security with Foxboron and Anthraxx 38:08
1 OpenSSL with Hana Andersen and Anton Arapov 28:48
1 The Python Software Foundation with Deb Nicholson 37:48
1 Using Mercator to map assets with Didier Barzin 25:48
1 Talos Linux security with Andrey Smirnov 38:04
1 Discussing the Open Source, Open Threats? paper with Behzad and Ali 34:59
1 crates.io trusted publishing with Tobias Bieniek 25:39
ברוכים הבאים אל Player FM!
Player FM סורק את האינטרנט עבור פודקאסטים באיכות גבוהה בשבילכם כדי שתהנו מהם כרגע. זה יישום הפודקאסט הטוב ביותר והוא עובד על אנדרואיד, iPhone ואינטרנט. הירשמו לסנכרון מנויים במכשירים שונים.








