lade...
random avatar

huxley - Network

Posts Subscribe

Representational parity is a continuing struggle in #cybersecurity. Recently, Tennisha Martin, Miki Demeter, and Katelyn Falk shared some...

https://infosec.exchange/@huxley...

Representational parity is a continuing struggle in . Recently, Tennisha Martin, Miki Demeter, and Katelyn Falk shared some helpful strategies and tactics that have helped initiatives.

ICMYI. Watch the replay youtube.com/watch?v=U1yN1hyqCWI or read the writeup dianainitiative.org/we-are-in-.

Much thank to The Diana Initiative and @blackgirlshack for supporting the webcast.

5.4.2024 15:22Representational parity is a continuing struggle in #cybersecurity. Recently, Tennisha Martin, Miki Demeter, and Katelyn Falk shared some...
https://infosec.exchange/@huxley...

The We Are In This Together! webcast features industry leaders sharing strategies and tactics that have been successful in improving DEI...

https://infosec.exchange/@huxley...

The We Are In This Together! webcast features industry leaders sharing strategies and tactics that have been successful in improving DEI parity. I'm looking forward to hearing their insights! Please make sure to attend it on March 20.

tdi.mobi/we-are-together

14.3.2024 17:18The We Are In This Together! webcast features industry leaders sharing strategies and tactics that have been successful in improving DEI...
https://infosec.exchange/@huxley...

😱how did I not know this until today?! 🙀💨

https://infosec.exchange/@huxley...

😱how did I not know this until today?! 🙀💨

26.2.2024 12:29😱how did I not know this until today?! 🙀💨
https://infosec.exchange/@huxley...

I wonder if when Salt-N-Pepa wrote Push It, they realized how often that song would be used for potty training.

https://infosec.exchange/@huxley...

I wonder if when Salt-N-Pepa wrote Push It, they realized how often that song would be used for potty training.

20.2.2024 13:47I wonder if when Salt-N-Pepa wrote Push It, they realized how often that song would be used for potty training.
https://infosec.exchange/@huxley...

@BSidesNYC 0x03 Recap: In this session, Anita D'Amico, discusses strategies for securing your software supply chain, how it's very...

https://infosec.exchange/@huxley...

@BSidesNYC 0x03 Recap: In this session, Anita D'Amico, discusses strategies for securing your software supply chain, how it's very different from , and her predictions on future trends.

youtu.be/pSSyDmux_f0?si=SD1ykR

1.2.2024 14:59@BSidesNYC 0x03 Recap: In this session, Anita D'Amico, discusses strategies for securing your software supply chain, how it's very...
https://infosec.exchange/@huxley...

Zach Wasserman from @Fleet and I had a fantastic conversation on his podcast where I gave him a sneak peek at what's coming for...

https://infosec.exchange/@huxley...

Zach Wasserman from @Fleet and I had a fantastic conversation on his podcast where I gave him a sneak peek at what's coming for @BSidesNYC 0x04. We also had a great conversation about advanced methods to enumerate vulnerabilities beyond rudimentary vuln scanning.

Please connect with me if you have any questions.

fleetdm.com/podcasts/expeditio

31.1.2024 14:57Zach Wasserman from @Fleet and I had a fantastic conversation on his podcast where I gave him a sneak peek at what's coming for...
https://infosec.exchange/@huxley...

Check out this @BSidesNYC 0x03 interview by Preeti Ravindra with Veena Susan Peediyakkal where she talks about how threat intelligence...

https://infosec.exchange/@huxley...

Check out this @BSidesNYC 0x03 interview by Preeti Ravindra with Veena Susan Peediyakkal where she talks about how threat intelligence supports the rest of the security organization and what it was like running a workshop at the conference.

youtu.be/Ko-arpF-j-I

30.1.2024 14:57Check out this @BSidesNYC 0x03 interview by Preeti Ravindra with Veena Susan Peediyakkal where she talks about how threat intelligence...
https://infosec.exchange/@huxley...

@BSidesNYC 0x03 Recap: DLL hijacking is old news.... but is it? In this session, Wietze Beukema takes us through how process-level...

https://infosec.exchange/@huxley...

@BSidesNYC 0x03 Recap: DLL hijacking is old news.... but is it? In this session, Wietze Beukema takes us through how process-level environment variable abuse is a viable vector for taking over legitimate applications.

youtu.be/pWyVOn0k1Tc?si=63wXRN

25.1.2024 14:16@BSidesNYC 0x03 Recap: DLL hijacking is old news.... but is it? In this session, Wietze Beukema takes us through how process-level...
https://infosec.exchange/@huxley...

A rare gem -- a full account of a supply chain attack!Normally, we never know the full details of supply chain attacks. Defenders piece...

https://infosec.exchange/@huxley...

A rare gem -- a full account of a supply chain attack!

Normally, we never know the full details of supply chain attacks. Defenders piece together clues, but typically there are gaps in the attack chain or timeline since the attack spans over a long period and potentially across multiple entities. In this article, John Stawinski and Adnan Khan documented in great detail how they executed a supply chain attack through and .

Three key takeaways for me:

1️⃣ Complexity is the number one reason that these attack vectors exist.

2️⃣ Complexity is creates the environment that allows the adversary to remain undetected. In this particular attack, they were able to suppress notifications and evade security controls.

3️⃣ Even after several notable supply chain attacks (e.g., and TeamCity), unsecured development secrets continue to be a boon for offsec, especially in supply chain attacks.

It's a fascinating read. They hope to talk more about this at "a certain security conference in LV, NV." I hope their talk gets accepted.

johnstawinski.com/2024/01/11/p

24.1.2024 15:13A rare gem -- a full account of a supply chain attack!Normally, we never know the full details of supply chain attacks. Defenders piece...
https://infosec.exchange/@huxley...

@BSidesNYC 0x03 Recap: In this session Marcus Hallberg shows us how to use snapshots of volatile memory in Google Kubernetes Engine kernels...

https://infosec.exchange/@huxley...

@BSidesNYC 0x03 Recap: In this session Marcus Hallberg shows us how to use snapshots of volatile memory in Google Kubernetes Engine kernels to troubleshoot current node activities or support a security investigation.

youtu.be/r0JGLcRLW9E?si=-KNU7L

23.1.2024 14:43@BSidesNYC 0x03 Recap: In this session Marcus Hallberg shows us how to use snapshots of volatile memory in Google Kubernetes Engine kernels...
https://infosec.exchange/@huxley...

Check out this @BSidesNYC 0x03 interview by Preeti Ravindra with Lance James where he talks about the need to return to the hacker mentality...

https://infosec.exchange/@huxley...

Check out this @BSidesNYC 0x03 interview by Preeti Ravindra with Lance James where he talks about the need to return to the hacker mentality to fuel disruption and what it meant for him to keynote the conference. youtube.com/watch?v=QJJyR-qdgvE

18.1.2024 15:38Check out this @BSidesNYC 0x03 interview by Preeti Ravindra with Lance James where he talks about the need to return to the hacker mentality...
https://infosec.exchange/@huxley...

@BSidesNYC 0x03 Recap: In this session, Jessie Jamieson, PhD, provides an overview of #sbom and the need for validation, verification, and...

https://infosec.exchange/@huxley...

@BSidesNYC 0x03 Recap: In this session, Jessie Jamieson, PhD, provides an overview of and the need for validation, verification, and effective prescriptive data science and operations to effectively secure your software supply chain. youtube.com/watch?v=yogmzTXsphk

16.1.2024 15:13@BSidesNYC 0x03 Recap: In this session, Jessie Jamieson, PhD, provides an overview of #sbom and the need for validation, verification, and...
https://infosec.exchange/@huxley...

Check out this @BSidesNYC 0x03 interview by Preeti Ravindra with Munish Walther-Puri where he talks about the ethos of generosity and other...

https://infosec.exchange/@huxley...

Check out this @BSidesNYC 0x03 interview by Preeti Ravindra with Munish Walther-Puri where he talks about the ethos of generosity and other thoughts on community in the cybersecurity industry.

youtube.com/watch?v=QdoP6QAj-34

11.1.2024 14:26Check out this @BSidesNYC 0x03 interview by Preeti Ravindra with Munish Walther-Puri where he talks about the ethos of generosity and other...
https://infosec.exchange/@huxley...

@BSidesNYC 2023 Recap: In this session, Aditya Patel takes us through the good, bad, and uncanny of...

https://infosec.exchange/@huxley...

@BSidesNYC 2023 Recap: In this session, Aditya Patel takes us through the good, bad, and uncanny of .

youtube.com/watch?v=x0coh7acrC0

9.1.2024 14:30@BSidesNYC 2023 Recap: In this session, Aditya Patel takes us through the good, bad, and uncanny of...
https://infosec.exchange/@huxley...

The first day of #BSidesCalgary 2023 was amazing! It was a pleasure to speak alongside Jason Maynard, Michael Spaling, and others. Many...

https://infosec.exchange/@huxley...

The first day of 2023 was amazing! It was a pleasure to speak alongside Jason Maynard, Michael Spaling, and others. Many kudos to James Cairns and the team for a well-run con. And there's still another day! If you missed today, get down to Bow Valley College tomorrow.

17.11.2023 00:19The first day of #BSidesCalgary 2023 was amazing! It was a pleasure to speak alongside Jason Maynard, Michael Spaling, and others. Many...
https://infosec.exchange/@huxley...

@bsideskc was a fantastic conference. Fun contests, engaged attendees, insight keynotes (@TimMedin) and a fascinating badge. (Badge Pirates...

https://infosec.exchange/@huxley...

@bsideskc was a fantastic conference. Fun contests, engaged attendees, insight keynotes (@TimMedin) and a fascinating badge. (Badge Pirates did it again!) Thank you, Eric Helm and all the volunteers, for having me and letting me speak on securing critical infrastructure and key resources.

10.10.2023 01:23@bsideskc was a fantastic conference. Fun contests, engaged attendees, insight keynotes (@TimMedin) and a fascinating badge. (Badge Pirates...
https://infosec.exchange/@huxley...

I'm really looking forward to @bsideskc on Saturday. Please flag me down to catch up or say hi, if you're there.

https://infosec.exchange/@huxley...

I'm really looking forward to @bsideskc on Saturday. Please flag me down to catch up or say hi, if you're there.

5.10.2023 16:46I'm really looking forward to @bsideskc on Saturday. Please flag me down to catch up or say hi, if you're there.
https://infosec.exchange/@huxley...

I'm embarrassed to say that until recently, I thought @GrrCON was a security conference with a pirate/tiger/bulldog theme. 🤦‍♂️...

https://infosec.exchange/@huxley...

I'm embarrassed to say that until recently, I thought @GrrCON was a security conference with a pirate/tiger/bulldog theme. 🤦‍♂️ I know better now.

My talk is on Friday at 3pm. If you'll be there, please flag me down to say hi! Love to meet in person.

27.9.2023 14:14I'm embarrassed to say that until recently, I thought @GrrCON was a security conference with a pirate/tiger/bulldog theme. 🤦‍♂️...
https://infosec.exchange/@huxley...

At @defcon 31, I entered the Recon Acharya challenge by @reconvillage I had the dubious distinction of almost winning but also...

https://infosec.exchange/@huxley...

At @defcon 31, I entered the Recon Acharya challenge by @reconvillage I had the dubious distinction of almost winning but also spectacularly losing.

Here is my write-up: riskreboot.substack.com/p/snat

Would a video walk-through interest anyone? If I get 200 (boost|favourite)s, I'll make a recording.

20.9.2023 13:31At @defcon 31, I entered the Recon Acharya challenge by @reconvillage I had the dubious distinction of almost winning but also...
https://infosec.exchange/@huxley...

Thank you so much to @frankmcg, @alyssam_infosec, and the rest of the @BlueTeamCon team for hosting a great conference and accepting my...

https://infosec.exchange/@huxley...

Thank you so much to @frankmcg, @alyssam_infosec, and the rest of the @BlueTeamCon team for hosting a great conference and accepting my talk. Kudos also goes to @hacks4pancakes for a fantastic keynote and an excellent careers village. Thank you all!

29.8.2023 03:14Thank you so much to @frankmcg, @alyssam_infosec, and the rest of the @BlueTeamCon team for hosting a great conference and accepting my...
https://infosec.exchange/@huxley...
Subscribe
To add news/posts to your profile here, you must add a link to a RSS-Feed to your webfinger. One example how you can do this is to join Fediverse City.
         
Webfan Website Badge
Nutzungsbedingungen   Datenschutzerklärung  Impressum
Webfan | @Web pages | Fediverse Members