adam shostack
@adamshostack
Done with Twitter. Don't expect responses. Threat Modeling: Designing for Security. Working to reduce bad security outcomes.
Bạn có thể thích
Threat Modeling is a Jolt Finalist, the first security-centered book on the list since Schneier’s Secrets & Lies newschoolsecurity.com/2014/09/jolt-a…
Leaving my account so it can't be squatted as easily, leaving my tweets because I hate linkrot.
New bloggage, shostack.org/blog/who-are-w… The paper is Who Are “We”? Power Centers in Threat Modeling, and the abstract reads: “I examine threat modeling techniques and questions of power dynamics...
I'm old enough to remember when Americans voted for the candidate they thought would do the best job.
When I saw those release notes I assumed Synology were trying to reduce codec license fees. Whatever the reason, as you say, security patches should not come at the cost of features.
Synology created a patch to address the zero-click vulnerability that researchers at @midnightbluelab found, but @adamshostack spotted this explanation about the patch:
Dutch researchers @midnightbluelab found critical zero-click vuln in photo app enabled by default on Synology storage devices, putting millions of systems at risk of being hacked. They found Synology systems owned by police/law firms/critical infrastructure contractors all vuln…
wow. the best thing I've seen this election.
"Bohemian Trumpsody" from @marshsongs may just be the best thing I've seen all day. Not only are the lyrics spot on, but man they can saaaaaaang!
New video: Scaling Threat Modeling youtu.be/ySGVUMYcoMw?fe… via @YouTube
youtube.com
YouTube
Scaling Threat Modeling
Back in the day, I did some cool #security #UX work with @adamshostack and @moduloprime at Microsoft. Now @beyondidentity is recruiting for a security-savvy UX designer. Any of my #infosec peeps interested? linkedin.com/posts/allan-zi…
Think Like a Hacker? Or not. youtu.be/2ITXN6Yqs-w?fe… via @YouTube
youtube.com
YouTube
Think Like a Hacker? Or not.
Shostack + Associates is launching a new course, Scaling Threat Modeling, and we'd like your input shostack.org/blog/scaling-t…
I remember Russian spies getting full time in-person jobs at Microsoft so my threat model has always been attuned to some form of this issue of spies infiltrating the software supply chain. theatlantic.com/international/…
theatlantic.com
Who Was the 12th Russian Spy at Microsoft?
Alexey Karetnikov tested software at the Redmond giant
Would you know if you hired a North Korean as a remote working employee? Didn’t have that on my cybersecurity bingo card for 2024!
United States Xu hướng
- 1. The WET 92.6K posts
- 2. Good Friday 49.8K posts
- 3. FINALLY DID IT 426K posts
- 4. #FridayVibes 3,501 posts
- 5. Chainers N/A
- 6. #FridayMotivation 3,276 posts
- 7. Happy Friyay N/A
- 8. DataHaven 30.7K posts
- 9. Our Lady of Guadalupe 11K posts
- 10. RED Friday 1,562 posts
- 11. #heatedrivalry 72.8K posts
- 12. Expedition 33 256K posts
- 13. 21 Savage 23.5K posts
- 14. Smear 9,019 posts
- 15. YOONMIN 30.4K posts
- 16. GOTY 84.8K posts
- 17. Shane 91.7K posts
- 18. Pooh Shiesty 6,097 posts
- 19. Mega Man 45K posts
- 20. Tina Peters 88.1K posts
Bạn có thể thích
-
Dr. Anton Chuvakin
@anton_chuvakin -
edskoudis
@edskoudis -
Jeremiah Grossman
@jeremiahg -
Chris Wysopal
@WeldPond -
Dino A. Dai Zovi
@dinodaizovi -
Matt Johansen
@mattjay -
Ron Gula
@RonGula -
Ben Rothke
@benrothke -
Dan Guido
@dguido -
Erin Jacobs
@SecBarbie -
Andrew Hay
@andrewsmhay -
Dave
@daveshackleford -
Jennifer (JJ) Minella 🎙 #PacketProtector
@jjx -
Ed Bellis
@ebellis -
jericho
@attritionorg
Something went wrong.
Something went wrong.