
adam shostack
@adamshostack
Done with Twitter. Don't expect responses. Threat Modeling: Designing for Security. Working to reduce bad security outcomes.
قد يعجبك
Threat Modeling is a Jolt Finalist, the first security-centered book on the list since Schneier’s Secrets & Lies newschoolsecurity.com/2014/09/jolt-a…
Who are you going to believe, me or your own eyes?
Leaving my account so it can't be squatted as easily, leaving my tweets because I hate linkrot.
New bloggage, shostack.org/blog/who-are-w… The paper is Who Are “We”? Power Centers in Threat Modeling, and the abstract reads: “I examine threat modeling techniques and questions of power dynamics...

new blog shostack.org/blog/election-…
shostack.org
Shostack + Friends Blog > Election Prediction
Adam's election prediction and request.
I'm old enough to remember when Americans voted for the candidate they thought would do the best job.
When I saw those release notes I assumed Synology were trying to reduce codec license fees. Whatever the reason, as you say, security patches should not come at the cost of features.
Synology created a patch to address the zero-click vulnerability that researchers at @midnightbluelab found, but @adamshostack spotted this explanation about the patch:

Dutch researchers @midnightbluelab found critical zero-click vuln in photo app enabled by default on Synology storage devices, putting millions of systems at risk of being hacked. They found Synology systems owned by police/law firms/critical infrastructure contractors all vuln…
wow. the best thing I've seen this election.
"Bohemian Trumpsody" from @marshsongs may just be the best thing I've seen all day. Not only are the lyrics spot on, but man they can saaaaaaang!
New video: Scaling Threat Modeling youtu.be/ySGVUMYcoMw?fe… via @YouTube
youtube.com
YouTube
Scaling Threat Modeling
Back in the day, I did some cool #security #UX work with @adamshostack and @moduloprime at Microsoft. Now @beyondidentity is recruiting for a security-savvy UX designer. Any of my #infosec peeps interested? linkedin.com/posts/allan-zi…
Think Like a Hacker? Or not. youtu.be/2ITXN6Yqs-w?fe… via @YouTube
youtube.com
YouTube
Think Like a Hacker? Or not.
Shostack + Associates is launching a new course, Scaling Threat Modeling, and we'd like your input shostack.org/blog/scaling-t…

I remember Russian spies getting full time in-person jobs at Microsoft so my threat model has always been attuned to some form of this issue of spies infiltrating the software supply chain. theatlantic.com/international/…
theatlantic.com
Who Was the 12th Russian Spy at Microsoft?
Alexey Karetnikov tested software at the Redmond giant
Would you know if you hired a North Korean as a remote working employee? Didn’t have that on my cybersecurity bingo card for 2024!

United States الاتجاهات
- 1. Lakers 73.8K posts
- 2. Luka 56.4K posts
- 3. Marcus Smart 7,110 posts
- 4. Shai 31.7K posts
- 5. Rockets 57.1K posts
- 6. #DWTS 45.6K posts
- 7. Sengun 23.5K posts
- 8. Ayton 10.9K posts
- 9. Double OT 5,880 posts
- 10. Draymond 7,026 posts
- 11. Warriors 81.3K posts
- 12. Reed Sheppard 6,011 posts
- 13. Curry 31.6K posts
- 14. Reaves 7,285 posts
- 15. Kevin Durant 23.6K posts
- 16. #LakeShow 5,985 posts
- 17. Chris Webber 1,694 posts
- 18. Kuminga 7,234 posts
- 19. Jimmy Butler 5,108 posts
- 20. Chet 17.6K posts
قد يعجبك
-
Dr. Anton Chuvakin
@anton_chuvakin -
edskoudis
@edskoudis -
Jeremiah Grossman
@jeremiahg -
Wicked Pond
@WeldPond -
Dino A. Dai Zovi
@dinodaizovi -
Matt Johansen
@mattjay -
Ron Gula
@RonGula -
Ben Rothke
@benrothke -
Dan Guido
@dguido -
Space Rogue
@spacerog -
Chris Eng
@chriseng -
Erin Jacobs
@SecBarbie -
Andrew Hay
@andrewsmhay -
Dave
@daveshackleford -
Jennifer (JJ) Minella 🎙 #PacketProtector
@jjx
Something went wrong.
Something went wrong.