davidkell's profile picture. Information Security Professional. Opinions are mine. Facts are facts.

David Kell

@davidkell

Information Security Professional. Opinions are mine. Facts are facts.

David Kell reposted

Listening to startups at AGC Partners event. I’m afraid half of our industry is converging to “we take your logs and ML them to do a Thing. Plus SOAR.”


Always worth the time to read. Great insights as always.

This post is unavailable.

David E. Sanger's book "The Perfect Weapon: War, Sabotage, and Fear in the Cyber Age" provides an interesting read on how information systems are used against us. Mandiant provided how APT1 was attributed. #infosec fireeye.com/blog/executive…


The Force is strong with this coffee. Do not give in to hate, do not give in to the Dark Side.

davidkell's tweet image. The Force is strong with this coffee. Do not give in to hate, do not give in to the Dark Side.

Worth a read, not just for #Meltdown and #Spectre, applies to #infosec in general.

If management has asked what your org should do to tackle #Meltdown and #Spectre, you're not alone. We've got you covered with this six step, business focused, action plan (yes, it's more comprehensive than "patch now"). renditioninfosec.com/2018/01/meltdo…



For #MeltdownAttack and #SpectreAttack try to understand how the vulnerabilities are exploited and address based on known risks and threats. Easy to say, hard to do but worth the time for data driven decision making. #infosec


Not sure if CERT advice to replace CPUs is helpful at this point or even practical for #MeltdownAttack and #SpectreAttack However, coordinated vulnerability disclosure is not easy. #infosec kb.cert.org/vuls/id/584653


I'm assuming t-shirts with the vulnerability logos will be available soon for the #MeltdownAttack and #SpectreAttack CPU vulnerabilities. #infosec spectreattack.com


Great having @JerinSaji0 on the team!

“My team constantly challenged me with new projects” – Jerin #IGNITEhighlight Apply and read Jerin’s post here ow.ly/upXk30grJdQ

FireEyeU's tweet image. “My team constantly challenged me with new projects” – Jerin #IGNITEhighlight Apply and read Jerin’s post here ow.ly/upXk30grJdQ


David Kell reposted

No government helped WannaCry victims. It was independent security researchers who found & used the kill switch, and built a decryption tool


David Kell reposted

[Blog] Keep up to date with #WannaCry and see how @FireEye are dealing with it 🚒 bddy.me/2qBtNSA


Legecy systems may inhibit investment in security hygiene such as network segmentation and cred management #infosec cio.com/article/318184…


Interesting results from IP camera security testing. An enterprise should inhouse test before implementing #infosec av-test.org/en/news/news-s…


Layers of security with a focus on detection and response can help when a single control fails. #infosec news.softpedia.com/news/researche…


Network trust boundaries may be hard to implement but it's worth the effort. #infosec arstechnica.com/security/2016/…


So is this general commentary on the usefulness of some #infosec certifications? ow.ly/ZXvIt


Loading...

Something went wrong.


Something went wrong.