Silver Bullet
Show 032 – An Interview with Jeremiah Grossman

The 32nd episode of The Silver Bullet Security Podcast features founder and Chief Technology Officer of WhiteHat Security, Jeremiah Grossman. Gary and Jeremiah discuss clickjacking, cross-site request forgery, why 50% of web problems can’t be discovered reliably automatically, and which conferences Jeremiah most enjoyed on his 2008 world tour.
- Transcript of this episode [PDF]
- Jeremiah Grossman
- Clickjacking
- Adobe 0-day Browser Exploit
- Cross-Site Request Forgeries: Exploitation and Prevention [PDF]
- Web Spoofing: An Internet Con Game by Edward W. Felten, Dirk Balfanz, Drew Dean, and Dan S. Wallach.
- Web application scan-o-meter
- The “Wall of Fame”
-
http://www.cigital.com/justiceleague/2008/11/14/web-application-security-versus-software-security/ Justice League » Blog Archive » Web application security versus software security
-
http://www.cigital.com/~gem gem
-
http://www.mikeandrews.com/2008/11/24/automated-security-testing-and-its-limitations/ Automated security testing and its limitations | Mike Andrews
-
http://www.sensepost.com/blog/ mh
