Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @clintgibler
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @clintgibler
-
Prikvačeni tweet
I watched all 44
@owasp@AppSecCali 2019 talks (~32 hours of video) and wrote detailed summaries for you
Learn about #DevSecOps, scaling security, threat modeling, building a security program, & more.https://tldrsec.com/blog/appsec-cali-2019/ …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je Tweet
The largest external risk to American democracy is an attack that combines a technical assault against our widely distributed and poorly secured election infrastructure with disinformation that American partisans will happily amplify.https://www.lawfareblog.com/op-ed-future-election-security …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
tl;dr sec has over 1,000 subscribers!


Thank you for taking the time to read it, and I really appreciate all the kind words people have said
If you're not currently a subscriber & want to see what the fuss is about, you can check it out here:https://tldrsec.com/ Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je Tweet
Last week I saw
@clintgibler's talk from Appsec Cali, which was a "best of" analysis of 50+ Appsec Cali / USA talks. This week I gave my team a "best of" version of Clint's talk because I couldn't wait for them to see the recording. Super meta, right?Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
If you found this write up useful, check out tl;dr sec, a weekly-ish newsletter I send out with:
Summaries of great security talks
The latest tools and useful blog posts
My various research projects
Thanks for reading, have a great day!
https://tldrsec.com/ Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Loved the discussion of automatically determining ownership (asset inventory ftw!) and auto-prompting resource owners via a Slack bot to confirm they caused certain events. This is a great way to scale security engineer time
https://medium.com/@SkyscannerEng/kubernetes-security-monitoring-at-scale-with-sysdig-falco-a60cfdb0f67a …pic.twitter.com/WuQTu5oZn1
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
tl;dr sec 22
* @AppSecCali#DevSecOps slides from@shehackspurple@FrankSEC42,@owasp@iotscan tool by@securestep9 *@dinodaizovi &@ErrataRob on decrypting WhatsApp messages *@laramies on Kubernetes security monitoring @ scale using@falco_orghttps://tldrsec.com/blog/tldr-sec-022-appsec-cali-kubernetes-monitoring/ …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je Tweet
Woot! So
@sethlaw and I have put our heart and soul into this course and are putting on a special edition just for Black Hat USA and I cannot wait! https://www.blackhat.com/us-20/training/schedule/index.html#next-level-bug-hunting---code-edition-19072 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je Tweet
the memetic campaigns aren't by accident. it's all targeted, all the result of long-running experiments that we've missed. it's all to redesign propaganda campaigns for the digital modern age. the big point here is immersiveness; flooding the arena with the content.
#enigma2020Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je Tweet
Nice thread from Clint with many references on how to scale security. Thanks for the Netflix shoutouts!https://twitter.com/clintgibler/status/1222223674406686721 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je Tweet
This is a great talk about how to do security in a modern software engineering environment:https://twitter.com/clintgibler/status/1222223674406686721 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je Tweet
Just reviewed these awesome slides (and will have to watch the recording when it comes out).https://twitter.com/clintgibler/status/1222223674406686721 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je Tweet
This deck is absolute gold. You'll laugh, you'll cry, you'll see projects you succeeded at, projects you failed at, and you'll be inspired. Enjoy!!https://twitter.com/clintgibler/status/1222223674406686721 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Clint Gibler proslijedio/la je Tweet
I know it's early, but this is my vote for talk of the year. This is a tremendous effort by Clint, and is stellar work. So many threads to follow/learn, so much help for security teams. I wish I had this years ago - I had to learn many of these lessons through trial/error.https://twitter.com/clintgibler/status/1222223674406686721 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
If you liked this thread, check out tl;dr sec, a weekly-ish newsletter I send out with:
Summaries of great security talks
The latest tools and useful blog posts
My various research projects
Thanks for reading, have a great day!
https://tldrsec.com/ Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Security Endgame
Start taking on more ambitious, higher leveraged projects.
* Become more highly leveraged with your time (Targeting Vuln Classes)
* Invest in projects w/ high security ROI & minimal ongoing time reqs (automating least priv, invariants, quantify risk)Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Scaling Your Efforts
Based on historical vuln data + your org's risk factors, choose a project that can be completed in 1-3 months that provide some scalable wins.
(TMing, security engineering, continuous compliance, detection & Response)Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Asset Inventory
Now
* Programmatically capture relevant meta info about your cloud env & code
Future
* Get visibility into additional types of assets (employees, devices, etc.)
* Automatically alert on or block suspect changesPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Continuous Scanning
Now
* Be able to scan every: PR, code base, deployed service
* Decide on baseline of types of vulns, anti patterns, & missing security controls to scan for
Future
* Check for lack of secure wrapper libraries & controls
* Target add'l bug classesPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.