runZero Hour recap: Beyond the veil with end-of-life OSes

|
Updated

Hey y’all! I wanted to tickle your feeds to let you know that we’ve got another runZero Hour episode done and dusted and ready for your viewing pleasure: Beyond the veil with end-of-life OSes, featuring our new friend, Captain N3m0 of endoflife.date. Nemo is a smart and friendly legend of open source, and he really, really cares about obsolescence as it crops up in tech stacks.

In this episode, we talk about everything from current programming languages to mysterious firmware to, of course, the natural process of degrading and retiring operating systems.

In the middle bit, I go over the findings from our most recent research report, Undead by Design with the aid of a whole bunch of screenshots from all kinds of zombie movies (and one fantasy movie that happens to have zombies in it).

This is a short version of the talk that I gave live at the Texas Zero-Day Massacre here in Austin, so if you couldn’t make that weird and spooky event, well, at least you can enjoy my ramblings online.

Finally, we also talked about three Rapid Responses that were especially notable since our last episode: a Cisco bug, a Redis bug (which is also secretly a Valkey bug), and a Fortra bug. All of our Rapid Responses tend to be bad news (sorry!), but these were badder news than most.

Watch the episode #

You can catch the full episode on demand below. Be sure to subscribe here to catch the calendar invites and hang out with us on the Zoom chat for the next episode! We have a pretty fun group of folks collecting in the peanut gallery these days, and we’d love to have you join us live for November’s webcast!

Written by todb

Tod Beardsley is VP of Security Research at runZero, where he "kicks assets and fakes frames." Prior to 2025, he was the Section Chief for the Vulnerability Response section for CSD/VM/VRC at CISA, the Cybersecurity and Infrastructure Security Agency, part of the US government, and a seasonal Travis County Election Judge in Texas. He's also a founder and CNA point of contact for AHA!.

Tod spends much of his time involved in vulnerability research and coordinated vulnerability disclosure (CVD). He has over 30 years of hands-on security experience, stretching from in-band telephony switching to modern ICS/OT implementations. He has held IT ops, security, software engineering, and management positions in large organizations such as the US Government, Rapid7, 3Com, Dell, and Westinghouse, as both an offensive and defensive practitioner. Tod is a CVE Board member, has authored several research papers, and is an internationally-tolerated horror fiction expert.

More about todb
Subscribe Now

Get the latest news and expert insights delivered in your inbox.

Welcome to the club! Your subscription to our newsletter is successful.

See Results in Minutes

See & secure your total attack surface. Even the unknowns & unmanageable.