Advertisement · 728 × 90

Posts by Dieter Sarrazyn

Preview
GitHub - dietersar/CheckNessusAuthScan Contribute to dietersar/CheckNessusAuthScan development by creating an account on GitHub.

updated CheckNessusAuth — a tool that helps you verify whether Nessus authenticated scans are likely to succeed or not before you start scanning.

GitHub: github.com/dietersar/Ch...
Website: secudea.be/tools/nessus...

#Nessus #CyberSecurity #VulnerabilityManagement #AuthenticatedScans

12 minutes ago 0 0 0 0
Django Audit Reporter | Secudea Independent industrial cybersecurity services, training, and practical guidance for operational environments.

Released Django Audit Reporter to make Django dependency reviews easier.

It audits one or more Django projects and generates a consolidated report with optional email delivery.

Read further on secudea.be/tools/django...
Get in from: github.com/dietersar/dj...

#Django #Python #AppSec

1 day ago 1 0 0 0
Becoming an OT Security Specialist today | Secudea Independent industrial cybersecurity services, training, and practical guidance for operational environments.

What does it take to become an OT security specialist today?

secudea.be/news/becomin...

#OTSecurity #ICSsecurity #IEC62443 #NIS2

2 weeks ago 0 1 0 0
Why vendors should validate themselves before the customer does | Secudea Independent industrial cybersecurity services, training, and practical guidance for operational environments.

Why vendors should validate themselves before the customer does - Many vendors already apply good cybersecurity practices, but often in an ad hoc manner. By using vendor validation services internally ...

Read more on secudea.be/news/why-ven...

2 weeks ago 0 0 0 0
Preview
New SANS/GIAC study finds cybersecurity skills gap, not talent shortage, at core of workforce crisis Upcoming SANS/GIAC study finds cybersecurity skills gap, not talent shortage, at the core of workforce crisis.

New SANS/GIAC study finds cybersecurity skills gap, not talent shortage, at core of workforce crisis

1 year ago 0 1 0 0
Video

Smash the Stack with Swiss precision 🇨🇭💻

Join Corelan’s Stack Exploit Dev course in Zürich, Oct 7-10, 2025. 🚀

www.eventcreate.com/e/sigs-corel...

💛 Pls share 💛

1 year ago 1 1 0 0
Video

What our students say on the #Corelan Stack course:

🗣️ “Peter will refute about every single thing you might have learned so far related to the topic in other courses… and then teach you it the right way from the ground up.”

See for yourself: 👉🏼 bit.ly/corelan-trai...

1 year ago 0 1 0 0
Preview
IEC62443, NIS2 and security testing - a happy marriage? - Secudea bv When the NIS2 EU Directive came into effect, I wondered what the implications would be for security testing in industrial environments. After all, a large part of the NIS2 directive focuses on supply ...

Have a look at my newest post to learn more whether IEC62443, NIS2 and security testing are or can be a happy marriage.
secudea.be/2025/02/15/i...

1 year ago 0 1 0 0

yep, true fact...
we used to have snow every year (some decades ago), now we (some of us) are happy when it finally snows, to realize it's gone after a few hours...
The other half doesn't know how to drive a vehicle anymore at that time...

1 year ago 1 0 1 0

I would not match them, but more like extending the test cases with what is found in the requirements.
But tbh, a good fat/sat approach should already cover all your own security requirements.

1 year ago 1 0 0 0
Advertisement

True, security requirements should idd be set during design phase and verified. First on paper allowing you to catch low hanging fruit and tailor any testing protocol, second by performing technical tests.

1 year ago 1 0 0 0
Practical side of FAT/SAT testing - Secudea bv While listening to one of the talks at the ISC-CPH conference back in 2022, I realized that nobody is talking about the practical side of performing cyber security tests in a FAT/SAT testing approach....

Some throughs on the practical side of FAT/SAT security testing within #industrial environments - secudea.be/2024/12/30/p...
#ICS #OT #FATSAT

1 year ago 0 0 1 0
ISC-CPH November 2024 - Secudea bv This year it was the 3rd time visiting the ISC-CPH conference for me, one of the better ICS focused security conferences within Europe. This year again as attendee compared to last year being a presen...

(long overdue) wrap-up of the #ISCCPH conference in Copenhagen last November - secudea.be/2024/12/30/i...
#ICS #OT #industrial

1 year ago 1 3 0 0

*sigh* this has been a good security practice for several decades already (when I was still installing firewalls), so I find it a bit strange that this suddenly becomes a hot topic... are people forgetting the good stuff, what works, the basics?? Is everybody falling for buzz words instead?

1 year ago 0 0 1 0

Welcome to BlueSky, Andy. @defend-the-future.bsky.social
Miss you buddy, call me sometime.

He's #100 on my ICS/OT Starter Pack
go.bsky.app/SQygf7K

Who else do I need to add?

1 year ago 9 2 0 2

well... I sure hope other tools would also be possible to be used within segmented networks without needing direct access to the internet to fetch updates...

1 year ago 1 0 0 0
Preview
Microsoft ends development of Windows Server Update Services (WSUS) Microsoft has officially announced that Windows Server Update Services (WSUS) is now deprecated, but plans to maintain current functionality and continue publishing updates through the channel.

What are other OT/ICS security folk thinking about WSUS being deprecated?

I'd expected to see more reaction and alternatives being promoted.

#infosec #ics #ot

www.bleepingcomputer.com/news/microso...

1 year ago 2 1 4 0

nice :-) let me know when this plan is formalizing :-)

1 year ago 0 0 1 0

Or to BruCon

1 year ago 1 1 1 0
Post image

I created the ICS/OT Security starter pack. Please give it a follow and let me know if I'm missing anyone.

go.bsky.app/SQygf7K

1 year ago 88 37 15 6
Advertisement

hi Stephen, missing you in CPH ;-)

1 year ago 1 0 2 0