Schedule

Schedule

Friday, August 29

1409331600 Tech News Today
1409335200 This Week in Law
1409342400 Android App Arena
1409353200 Tech News 2Night

Saturday, August 30

1409421600 The Tech Guy

Sunday, August 31

1409508000 The Tech Guy
1409522400 This Week in Tech

Monday, September 1

1409590800 Tech News Today
1409594400 Triangulation
1409599800 iPad Today
1409612400 Tech News 2Night
1409614200 Marketing Mavericks

Tuesday, September 2

1409677200 Tech News Today
1409680800 MacBreak Weekly
1409688000 Security Now
1409695200 Before You Buy
1409698800 Tech News 2Night
1409702400 All About Android
1409711400 Padre's Corner

Wednesday, September 3

1409758200 FLOSS Weekly
1409763600 Tech News Today
1409767200 Windows Weekly
1409774400 This Week in Google
1409785200 Tech News 2Night
1409787000 redditUP
1409792400 Ham Nation

Thursday, September 4

1409850000 Tech News Today
1409853600 Know How...
1409857200 The Social Hour
1409862600 Coding 101
1409866200 Home Theater Geeks
1409871600 Tech News 2Night
1409873400 The Giz Wiz
1409882400 OMGcraft

Friday, September 5

1409936400 Tech News Today
1409940000 This Week in Law
1409947200 Android App Arena
1409958000 Tech News 2Night

Saturday, September 6

1410026400 The Tech Guy

Sunday, September 7

1410112800 The Tech Guy
1410127200 This Week in Tech

Most Recent Episodes

This Week in Computer Hardware

Haswell-E leak and 8TB hard drives.

Home Theater Geeks

Blind Audio Testing

Tech News 2Night

Apple announces Sept. 9th event.

Know How...

Lunchbox with braiiiiiiins!

The Giz Wiz

GoGo Pillow, PackIt, Keurig Mini.

Coding 101

This week we're going abstract.

The Social Hour

Twitter opens Analytics to all, Pinterest's News feed, Airline Knee Defender.

OMGcraft

Edgecraft Minecraft map.

FLOSS Weekly
Episode #306: RStudio August 28th, 2014

RStudio IDE is a powerful and productive user interface for R

Tech News Today

JP Morgan Chase and other US-based banks were targeted by sophisticated hackers.

Coding 101 13

Sanitize')DROP TABLE Python;

April 17 2014

Hosts: Fr. Robert Ballecer, SJ and Shannon Morse

Guest: Dale Chase

Welcome to Coding 101 - It's the TWiT show that gives YOU the knowledge to live in the wonderful world of the programmer. This week we are introducing our newest module, Python with Code Warrior Dale Chase!

To see all the code used in today's episode, go to Our Github Repository for Module 2

Loops (Recap)

* As we may recall, loops are an easy way to reuse code.
* It allows us to "loop" a section of code so that it doesn't have to be writen over and over.

While Loops
"While loops in Python work very much like they do in C#

They use some sort of counter and some sort of relational true/false statement. The while loop will continue to run as long as the statement is true. The true/false statement is pre-test, meaning that it will evaluate the statement BEFORE the loop code is executed."

Code Sample:

counter = 0

while counter < 5:

counter = counter +1
print counter

Output:
1
2
3
4
5"

Sanitizing your Input!

The Heartbleed Bug

What is the Hearbeat?
* The problem lies in the "Hearbeart"
- It's a way to keep a SECURE TLS session alive /// to keep it from "timing out"
- The Heartbeat is a payload of arbitrary data which is sent from one end of the connection to the other, and back again.
- If the heartbeat makes the round trip intact, then both sides of the connection know that the connection is still active and still secure.

Here is the OpenSSL Code

(The Bug starts on Line 3972)
/* Read type and payload length first */

hbtype = *p++;

n2s(p, payload);

pl = p;

hbtype is the TYPE of data

P++ increments the pointer

p is the pointer for the payload

payload is the length of the payload"

The problem is that the SENDER gets to set the "payload" length and the code never checks to see if the sent length matches the recieved length of the payload.

The Crux of the Matter:
* The Hearbleed bug stems from code that does not check to make sure it's recieving into memory what it expected.
* In other words... IT DIDN'T SANITIZE IT'S INPUT!

Get in Touch With Us!

* Subscribe and get Coding 101 automatically at TWiT.tv!
* Follow PadreSJ and Snubs on Twitter.
* Watch the show live and join the chatroom every Thursday at 1:30pm PST.
* Email us at Padre@twit.tv and Shannon@twit.tv.
* Join our Google+ Community!

Download or subscribe to this show at twit.tv/code. Also, check out our transcripts.

Bandwidth for Coding 101 is provided by Cachefly.

Running time: 41:46

Sponsors: