Schedule

Schedule

Tuesday, September 30

1412096400 Tech News Today
1412100000 MacBreak Weekly
1412107200 Security Now
1412114400 Before You Buy
1412118000 Tech News 2Night
1412121600 All About Android
1412130600 Padre's Corner

Wednesday, October 1

1412177400 FLOSS Weekly
1412182800 Tech News Today
1412186400 Windows Weekly
1412193600 This Week in Google
1412204400 Tech News 2Night
1412211600 Ham Nation

Thursday, October 2

1412269200 Tech News Today
1412272800 Know How...
1412276400 Marketing Mavericks
1412281800 Coding 101
1412285400 Home Theater Geeks
1412290800 Tech News 2Night
1412292600 The Giz Wiz

Friday, October 3

1412355600 Tech News Today
1412359200 This Week in Law
1412366400 Android App Arena
1412377200 Tech News 2Night

Saturday, October 4

1412445600 The Tech Guy

Sunday, October 5

1412532000 The Tech Guy
1412546400 This Week in Tech

Monday, October 6

1412614800 Tech News Today
1412618400 Triangulation
1412623800 iPad Today
1412636400 Tech News 2Night

Tuesday, October 7

1412701200 Tech News Today
1412704800 MacBreak Weekly
1412712000 Security Now
1412719200 Before You Buy
1412722800 Tech News 2Night
1412726400 All About Android
1412735400 Padre's Corner

Wednesday, October 8

1412782200 FLOSS Weekly
1412787600 Tech News Today
1412791200 Windows Weekly
1412798400 This Week in Google
1412809200 Tech News 2Night
1412816400 Ham Nation

Thursday, October 9

1412874000 Tech News Today
1412877600 Know How...
1412881200 Marketing Mavericks
1412886600 Coding 101
1412890200 Home Theater Geeks
1412895600 Tech News 2Night
1412897400 The Giz Wiz

Most Recent Episodes

This Week in Enterprise Tech
Episode #109: The IxCharriot September 29th, 2014

Troubleshooting your network with IxChariot

iPad Today

MyScript, Fleksy, hidden iOS albums

Tech News 2Night

The app powering the Hong Kong protests.

Triangulation

How to use Facebook better.

Tech News Today

China's iPhone 6 black market falls apart.

The Tech Guy
The Tech Guy 1122 September 28th, 2014

Why Apple's BendGate is bogus, iPhoto alternatives, how to screencast, and you calls.

This Week in Tech
Episode #477: Ello Moto September 28th, 2014

Shellshock, Ello, bitter Twitter, Bendghazi, and more.

The Tech Guy
The Tech Guy 1121 September 27th, 2014

How can I synchronize my documents across devices?

Tech News 2Night
Episode #181: The Rise of Ello September 26th, 2014

Apple to Patch Shellshock Bug

Android App Arena
Episode #14: Kart Racing Games September 26th, 2014

Hands-on reviews of Beach Buggy Racing, SEGA All-Stars Racing, Angry Birds Go!, and Goat Simulator.

Coding 101 13

Sanitize')DROP TABLE Python;

April 17 2014

Hosts: Fr. Robert Ballecer, SJ and Shannon Morse

Guest: Dale Chase

Welcome to Coding 101 - It's the TWiT show that gives YOU the knowledge to live in the wonderful world of the programmer. This week we are introducing our newest module, Python with Code Warrior Dale Chase!

To see all the code used in today's episode, go to Our Github Repository for Module 2

Loops (Recap)

* As we may recall, loops are an easy way to reuse code.
* It allows us to "loop" a section of code so that it doesn't have to be writen over and over.

While Loops
"While loops in Python work very much like they do in C#

They use some sort of counter and some sort of relational true/false statement. The while loop will continue to run as long as the statement is true. The true/false statement is pre-test, meaning that it will evaluate the statement BEFORE the loop code is executed."

Code Sample:

counter = 0

while counter < 5:

counter = counter +1
print counter

Output:
1
2
3
4
5"

Sanitizing your Input!

The Heartbleed Bug

What is the Hearbeat?
* The problem lies in the "Hearbeart"
- It's a way to keep a SECURE TLS session alive /// to keep it from "timing out"
- The Heartbeat is a payload of arbitrary data which is sent from one end of the connection to the other, and back again.
- If the heartbeat makes the round trip intact, then both sides of the connection know that the connection is still active and still secure.

Here is the OpenSSL Code

(The Bug starts on Line 3972)
/* Read type and payload length first */

hbtype = *p++;

n2s(p, payload);

pl = p;

hbtype is the TYPE of data

P++ increments the pointer

p is the pointer for the payload

payload is the length of the payload"

The problem is that the SENDER gets to set the "payload" length and the code never checks to see if the sent length matches the recieved length of the payload.

The Crux of the Matter:
* The Hearbleed bug stems from code that does not check to make sure it's recieving into memory what it expected.
* In other words... IT DIDN'T SANITIZE IT'S INPUT!

Get in Touch With Us!

* Subscribe and get Coding 101 automatically at TWiT.tv!
* Follow PadreSJ and Snubs on Twitter.
* Watch the show live and join the chatroom every Thursday at 1:30pm PST.
* Email us at Padre@twit.tv and Shannon@twit.tv.
* Join our Google+ Community!

Download or subscribe to this show at twit.tv/code. Also, check out our transcripts.

Bandwidth for Coding 101 is provided by Cachefly.

Running time: 41:46

Sponsors: