Understanding the Shellshock Bash Bug
by Troy Hunt and Jim Manico
The Shellshock Bash bug is the most significant security bug to hit the Internet to date. Learn what it's all about, how attackers are exploiting it, and how to protect your environment from the risk.
What you'll learn
In late September 2014, the most significant security bug ever to hit the Internet emerged in the form of the Shellshock Bash bug. Risks of this nature are inevitably accompanied by uncertainty and speculation. This course methodically explains the background of the risk, shows how it's exploited in a vulnerable system, and most importantly, walks through how to defend against it by applying multiple defenses. This is a must-watch course for anyone worried about the impact of this serious security risk on their environment.
About the authors
Troy Hunt is a Microsoft Regional Director and MVP for Developer Security, an ASPInsider, and a full time Author for Pluralsight—a leader in online training for technology and creative professionals. Troy has been building software for browsers since the very early days of the web and possesses an exceptional ability to distill complex subjects into relatable
explanations. This has led Troy to become an industry thought leader in the security space and produce more than twenty top-rated courses ... morefor Pluralsight. Currently, Troy is heavily involved in Have I been pwned? (HIBP) a free service that aggregates data breaches and helps people establish potential impacts from malicious web activity. Troy blogs regularly about web security and is a frequent speaker at industry
conferences across the globe and throughout the media to discuss a wide range of technologies. Troy has been featured in a number of articles with publications including Forbes, TIME magazine, Mashable, PCWorld, ZDNet and Yahoo! Tech. Aside from technology and security, Troy is an avid snowboarder, windsurfer and tennis player
Jim Manico is an author and educator of developer security awareness trainings and has a 17 year history building software as a developer and architect. He is a frequent speaker on secure software practices and is a member of the JavaOne Rock Star speaker community. Jim is also a Global Board Member for the OWASP Foundation where he helps drive the strategic vision for the organization. He manages and participates in several OWASP projects, including the OWASP Cheat Sheet series and several secu... morere coding projects. Jim has recently finished working on a book with Oracle-Press on Java Web Security called "Iron-Clad Java".