thinrope's profile picture. InfoSec (whitehat) hacker, Incident Responder, GCIH, CISSP, radiation freak, alpinist, parent/husband: order is time-dependent and often in flux

Kalin KOZHUHAROV

@thinrope

InfoSec (whitehat) hacker, Incident Responder, GCIH, CISSP, radiation freak, alpinist, parent/husband: order is time-dependent and often in flux

How should one think about a trusted Certificate Authority, when a SSL cert on their site had expired more than a year ago?? startfieldtech.com :-/ No easy way to contact them, will @GoDaddyHelp know? casecurity.ssllabs.com/analyze.html?d…


blog.google/products/chrom… Tabgroups! Great new feature for all users! And even greater for Google: now Google can finally have a painless human-driven feedback to improve its site classification algorithm into more categories...


Kalin KOZHUHAROV reposted

Our team just applied to Startup World Cup @SWC2020 #Credify #StartupWorldCup


We all live in a shitty time-place and #COVID19 is not the reason; it just prompted more people to look at it, yet not enough (people) yet.


I just signed a petition to ask the ISO to release the standards for ventilators. Sign if you think it is a good cause: change.org/p/internationa…


That sounds really bad... Looking at the list at the end... just underlines how important proper backup and real isolation of data is: zdnet.com/article/six-su… In other words, being #DFIR pro or not, you are not safe from making mistakes.


Still a few more hours (depending on TZ) to get a certificate issued on February 29th :-D Just realized after renewing mine KOZHUHAROV.de


#COVID2019 & #Fukushima2011: * a threat that we have no built-in sensors for * no means for citizens to detect * detection tech controlled by governments (subsidized healthcare) We at @safecast developed means to measure radiation, accessible to citizens, independent of govs...


Ian Goddard (a trusted source) says that the experts are worried about R0 and CFR values of #covid19 : youtu.be/7SXIzVinKB0 ... and that is worrying!

thinrope's tweet card. Covid-19 is Extremely Contagious

youtube.com

YouTube

Covid-19 is Extremely Contagious


Kind of novel approach... theregister.co.uk/2020/02/11/for… Do you sign all your software with the same cert (without intermediate certs)? What happens if there is a problem (like above) with one specific version? Manage 1 cert per product+version? CRLs considered effective these days?

theregister.com

Forgotten motherboard driver turns out to be perfect for slipping Windows ransomware past antivirus...

Old Gigabyte code lets file-scrambling RobbinHood go undetected


Hmm... Did NetworkSolutions @netsolcares just have a breach? Or my (long inactive) account was sent a password reset, just in case?? I'd prefer a better explanation when I get another one (e.g. what IP address requested it, and when. And WHY?)


That is what I call a real-time inventory system! They ran out of pineapple few customers before me :-( Do you keep an inventory (of devices, services, accounts) that is always up to date? You should.

thinrope's tweet image. That is what I call a real-time inventory system! They ran out of pineapple few customers before me :-(  Do you keep an inventory (of devices, services, accounts) that is always up to date? You should.

When 2FA is not actually 2FA (or when your 2FA is not that hard to copy as with RSA SecureID software token)... Skip to p. 27 of the report. fox-it.com/en/news/whitep… Hey @foxit Can you please start adding (printed) pages to your PDFs? And interactive ToC?


Somebody at Microsoft might have been on vacation too long, LoL

thinrope's tweet image. Somebody at Microsoft might have been on vacation too long, LoL

東京での終電と言うストレスはやっぱスゴイ。それを悪用したコウイは明らかにコイではない。(周りの状況偵察によりの考え事)


See you at #avtokyo2019 or around, in Tokyo till 11/11.


Opened "a beer" today :-)

thinrope's tweet image. Opened "a beer" today :-)

今年の #avtokyo2019 にまず参加!今までいつも登録ミスしたり、遅れたり、よこ分からん問題に落ちたり、とりあえず個人スポンサーとしてチケット買っちゃいました。刺激あるプレゼンを楽しみにしてます!


Did you know that Apple included just a simple charge cable that looks like USB-C with your expensive machine? Don't try to image a Mac with it... LoL, at #FTday2019 in Karlsruhe.


リモート(海外)も参加できるようになって、ありがとう! #owaspjapan

9月18日神田にて、オワスプナイトは今晩です。足元悪い中ですが楽しみですね!神戸でもパブリックビューイング、リモートでも100名近い参加の予定です。 owasp.doorkeeper.jp/events/97685 ハッシュタグは: #owaspjapan



Loading...

Something went wrong.


Something went wrong.