Open Source Security

By Josh Bressers

Special cases are special: DNS, Websockets, and CSV

🔊 Play episode (29 min)

Direct episode link

💬 Share episode

Published May 31, 2020 7:00pm

Josh and Kurt talk about a grab bag of topics. A DNS security flaw, port scanning your machine from a web browser, and CSV files running arbitrary code. All of these things end up being the result of corner cases. Letting a corner case be part of a default setup is always a mistake. Yes always, not even that one time.

Show Notes Bind advisory Robustness Principal eBay port scanning localhost OWASP CSV injection

Return to podcast