social media security, facebook, koobface, twitter, csrf, xsrf, session riding, cross site request forgery, risks, threats, internet, social networking, podcast, audio, scott wright, kevin johnson, tom eston
You are not logged in. Access is limited. Login or see membership information. • Streetwise Security Zone Community

To see the list of all blogs, including Scott Wright's Security Views Blog and the Streetwise Security Zone Podcast click HERE. You also can subscribe via an RSS reader, or check the "Watch This" box in the left column to receive news by email of new articles.


Watch this Blog Notify me by e-mail any time a new post is made to this blog.

Scott Wright's editorials on a variety of security issues for non-technical business managers and home computer users. Please feel free to comment and help spread the word that managers need to think about their information security risks.

The Virus Time Machine (e-Book)
Product ID: 00000007

... What You Need to Know (and Wish You Knew Before) About Removing Virus and Malware Infections Before you start down the path of trying to fix a virus infection on your computer, you should really understand what's invol ... More »

Non-Member Price: $4.99

October 2009 Posts

Archives

  Scott Wright's Security Views
Blog Entry

Facebook Phishing, CSRF and more - Social Media Security Podcast Episode 3 is now available

Sunday, October 25th 2009 @ 6:27 AM (not yet rated)    post viewed 1712 times

The third episode of our new podcast, hosted by Scott Wright, Tom Eston and Kevin Johnson is now available on iTunes, as well as at the Social Media Security website (which contains show notes and screen shots). This is becoming a really popular podcast. We try to keep it fun and provide technical, as well as non-technical content about risks when using Social Media like: Facebook, Twitter, Linked In and other Web 2.0 tools.

In this episode, Tom, Kevin and I discuss:

  • Phishing attacks that impersonate invitations from Facebook and Twitter
  • Koobface worm that also phishes within networks like Facebook and MySpace, trying to get you to install software on your computer, while you're thinking it's just a legitimate "Flash Player Upgrade" warning as you try to view a video
  • Cross-Site Request Forgery (CSRF) or Session Riding attacks that try to make use of web sessions you may be logged into - like banking or other sensitive accounts. Very tricky, but simple to stop if you know how.

We're hoping this will soon be the pre-eminant podcast on security issues related to Social Media. The who social media culture on the web is not just a passing fad. So it makes sense to prepare yourself and your team for dealing with the risks.

We could really use some votes and reviews on iTunes to improve the show's ranking. So please have a listen, and check out the rest of the content on the Social Media Security (socialmediasecurity.com) site if you'd like more technical details.

In the meantime, I'm going to try to ramp up the old Streetwise Security Zone Podcast to capture the non-technical issues from the SMSec podcast for you folks who may be a little squeamish at hearing the odd four-letter acronym...

I hope you enjoy listening and browsing the show notes of the Social Media Security Podcast.

Share

My live security awareness webinars are a quick and affordable way to provide your entire staff with professional quality security awareness training and education - whether it's general training or for specific teams or industries. I offer group rates and can tailor content to your specific needs. Please call or email me at the coordinates below, or CLICK HERE to see my training webinar catalog.

Scott Wright

The Streetwise Security Coach

Join the Streetwise Security Zone at:
http://www.streetwise-security-zone.com/join.html

Phone: 1-613-693-0997
Email: scott@streetwise-security-zone.com
Twitter ID: http://www.twitter.com/streetsec

To receive weekly security tips and other notices about helpful content available on this site, please make sure you are on my list by clicking HERE, and entering your name and email address.

 

Site Meter

add a comment  rate this post: very bad poor average good fantastic!
Comments

Copyright 2012. Security Perspectives Inc. All Rights Reserved.