The Hype behind Heartbleed with Bart Miller




Cigital » The Silver Bullet Security Podcast with Gary McGraw show

Summary: On the 98th episode of the Silver Bullet Security Podcast, Gary chats with Bart Miller, Professor of Computer Science at the University of Wisconsin-Madison and Chief Scientist of the DHS Software Assurance Marketplace Research Facility. Gary and Bart discuss Heartbleed, fuzz testing, his work with Jeff Hollingsworth on dynamic instrumentation of binaries, and the SWAMP project. They close out their talk by deciding: SCUBA or skiing? Professor Barton P. Miller Why Do Software Assurance Tools Have Problems Finding Bugs Like Heartbleed? (James A. Kupsch and Barton P. Miller) On Detecting Heartbleed with Static Analysis McGraw on Heartbleed shock and awe: What are the real lessons? Fuzz Testing Paradyn/Dyninst papers Dyninst Software Fault Injection Charlie Miller on Silver Bullet BSIMM Software Assurance Marketplace (SWAMP) Zuse