Author Archives: Dan York

Blue Box Podcast #23: VoIP Security news, book promotion, comments and opinions

Synopsis: VoIP security news, opinions and many comments from listeners, along with a way to potentially win a copy of a new book on VoIP security.


Welcome to Blue Box: The VoIP Security Podcast show #23, a 35-minute podcast  from Dan York and Jonathan Zar with news and commentary about the world of VoIP security.  This show was also to feature the second of two interviews we have coming at you about the IETF meetings that took place in March 2006, however due to some production issues that interview will be pushed to the next show.

Download the show here (MP3, 33MB) or subscribe to the RSS feed to download the show automatically.

You may also listen to this podcast right now:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

In this show we also introduced our new promotion – anyone submitting audio comments (either by email or calling the comment line) during April will be eligible for a drawing for a free copy of "Practical VoIP Security" from Syngress Press. Many thanks to Bruce Stewart and the folks at O’Reilly & Associates (who distribute Syngress books) for providing this book.

Show Content:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

In the spirit of the programming version of Easter eggs I will ask the question: what did we do differently with regard to the audio in the recording of this episode? I did something subtle… and I’m curious to know if it is detectable.  (Hmmm… sounds like a good idea for an audio comment back to us, eh?)

Thank you for listening and please do let us know what you think of the show.

Blue Box Podcast #22: SIP Security at IETF (part 1), VoIP security news, comments and more

Synopsis: VoIP security news, opinions and comments from listeners as well as a 25-minute interview with Dan Wing and Cullen Jennings from Cisco about SIP media security coming out of recent IETF meetings.


Welcome to Blue Box: The VoIP Security Podcast show #22, a 45-minute podcast  from Dan York and Jonathan with news and commentary about the world of VoIP security.  This show also features the first of two interviews we have coming at you about the IETF meetings that took place in March 2006.  This week’s 25-minute interview is with Dan Wing and Cullen Jennings of Cisco Systems and is primarily about Dan Wing’s presentation on methods of securing the SIP media stream.

Download the show here (MP3, 43MB) or subscribe to the RSS feed to download the show automatically.

You may also listen to this podcast right now:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

Show Content:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

Thank you for listening and please do let us know what you think of the show.

Our Frappr map of listeners continues to grow…

Our Frappr map of listeners continues to grow… 80 listeners at the time I write this. If you haven’t checked it out yet, here’s a preview… note that despite my best efforts to modify the code snippet according to Frappr’s instructions, I still can’t get the mini-map here to zoom out to show the entire world – so you probably want to click the "-" sign to zoom out and see the bigger picture.


I have noticed that it initially doesn’t show all the entries – just the first 50 or so – so it looks like there is only one identified listener in South America until you zoom in a bit and find out that there are, in fact, two.  Africa, though, will remain empty because if we have listeners there in Africa, none of them have yet added themselves to the map.

If you are a listener and would like to add yourself to the map, there is a link at the top of the map to do so.  You also do have the option to upload a photo as some folks have done and/or to leave a message there for other listeners.

Note that if you are leery of providing personal information, when you add yourself you are required to enter a name and email address, but of course it can be any name – and bogus email addresses are always an option.  As far as I can see, providing an email address just gets you updates of when new people are added.  And if you still don’t want to provide any information to an unknown startup, well, hey, we totally respect that.  Given that many/most of our listeners are in the security and privacy industries, we are pleased that so many have already added themselves.  It’s fun to see where listeners are located.

Blue Box Podcast #21: VoIP security news, Sipera interview, comments and more

Synopsis: VoIP security news, opinions and comments from listeners as well as a 30-minute interview about Sipera.


Welcome to Blue Box: The VoIP Security Podcast show #21, a 57-minute podcast  from Dan York and Jonathan with news and commentary about the world of VoIP security.  This show also features a 30-minute interview with Micaela Giuhat, VP of product line management for Sipera.

Download the show here (MP3, 54MB) or subscribe to the RSS feed to download the show automatically.

You may also listen to this podcast right now:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

Show Content:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

Thank you for listening and please do let us know what you think of the show.

Blue Box Podcast Spring VON #3: Interview with Jim Gallagher of Codenomicon

Synopsis: Interview with Jim Gallagher of Codenomicon, provider of VoIP security test tools, from the floor of Spring VON 2006.


Welcome to a special edition of Blue Box: The VoIP Security Podcast from the floor of the Spring 2006 VON conference in San Jose, CA. In this 15 minute podcast, host Dan York interviews Jim Gallagher of Codenomicon about their company, their test tools and how they can help companies developing VoIP products.

Download the show here (MP3, 14MB) or subscribe to the RSS feed to download the show automatically.

You may also listen to this podcast right now:

This is actually the only recording I will be bringing you from the Spring VON exhibitors.  However, Victor Garza over at Infoworld’s "Zero Day Security" recorded a number of podcasts from VON that listeners to this show may also find of interest.

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

Blue Box Podcast #20 – VoIP security news and comments

Synopsis: Review of VoIP security news and comments from listeners


Welcome to Blue Box: The VoIP Security Podcast show #10, a 19-minute podcast  from Dan York with news and commentary in the world of VoIP security.  Due to scheduling issues, Dan and Jonathan were unable to connect to do the show together and given the number of news items in the queue Dan went ahead with a solo show.  Both will be back together next week.

Download the show here (MP3, 18MB) or subscribe to the RSS feed to download the show automatically.

You may also listen to this podcast right now:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

Show Content:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

Thank you for listening and please do let us know what you think of the show.

Blue Box Podcast Spring VON #2: Joint production with Mikey from Pulvermedia Podcasting Network

Synopsis: Joint interview with Mikey from the Pulvermedia Podcasting Network where I talk about the security presentations that occurred here at VON. The interview was recorded at the PPN booth on the exhibit floor of the Spring VON show in San Jose, California, on March 16, 2006.


Welcome a special edition of Blue Box: The VoIP Security Podcast from the floor of the Spring 2006 VON conference in San Jose, CA.  This was a joint interview between myself and Mikey from the Pulvermedia Podcasting Network where I first talked about Blue Box and then discussed the security presentations that were here at the show, spoke a bit about SPIT and then relayed other thoughts about the show this year.   Mikey also talked a bit about what he and his colleague Laura have been doing there at their booth talking to people about podcasting and interviewing various folks (those interviews are available here)

Download the show here (MP3, 15MB) or subscribe to the RSS feed to download the show automatically.  The interview runs about 16 minutes.

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.
Audio comments sent as attached MP3 files are definitely welcome and
will be played in future shows.  You may also call the listener comment
line at +1-206-338-6654 to leave a comment there.

You can now subscribe via e-mail

In response to a recent request, I have added the ability to subscribe to updates to this web site via e-mail through a free service called Feedblitz.  If you enter your e-mail address in the box in the "Contact Information" area on the right side of this page, you will be sent a confirmation e-mail, which, after you follow the link, will set you up to receive an e-mail message once a day with links to any new articles posted on this web site.  This provides an alternative for listeners who don’t use RSS/news readers or who would prefer an e-mail notification of new shows.

As this is the first time I’ve enabled this Feedblitz service, any comments (positive or negative) are welcome (sent to the usual podcast e-mail address would be preferable).

Blue Box Podcast Spring VON #1 – Phil Zimmermann interview about Zfone

Synopsis: Interview with Phil Zimmermann about his new Zfone project, the ZRTP protocol and other related topics. The interview was recorded at the Spring VON show in San Jose, California, on March 16, 2006.


Welcome a special edition of Blue Box: The VoIP Security Podcast from the floor of the Spring 2006 VON conference in San Francisco, CA. In this interview with Phil Zimmermann we talk about his Zfone project and how it has evolved since it was first announced in January (which we covered here).  Phil explains the origins of his ideas, how Zfone works, how ZRTP works and how people can get involved with the public Zfone beta program.  More information is available at http://www.philzimmermann.com/

Download the show here (MP3, 20MB) or subscribe to the RSS feed to download the show automatically.  The interview runs about 22 minutes.

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.
Audio comments sent as attached MP3 files are definitely welcome and
will be played in future shows.  You may also call the listener comment
line at +1-206-338-6654 to leave a comment there.

Blue Box Podcast #19 – VoIP security news, interview about VoIP over cable and much more

Synopsis: Interview with Geoff Devine from Cedar Point Communications about the security of VoIP over cable networks, VoIP security news and much more


Welcome to Blue Box: The VoIP Security Podcast show #19, a 63-minute podcast  from Dan York and Jonathan Zar around news and commentary in the world of VoIP security.  This show features a 36-minute interview with Geoff Devine from Cedar Point Communications about security of VoIP over cable networks.  As usual, the show also features news and comments from listeners.

Download the show here (MP3, 33MB) or subscribe to the RSS feed to download the show automatically.

You may also listen to this podcast right now:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

Show Content:

Comments, suggestions and feedback are welcome either as replies to this post  or via e-mail to blueboxpodcast@gmail.com.  Audio comments sent as attached MP3 files are definitely welcome and will be played in future shows.  You may also call the listener comment line at +1-206-338-6654 to leave a comment there.

Thank you for listening and please do let us know what you think of the show.