Logyi várja a Mikulást (@lojikil) 's Twitter Profile
Logyi várja a Mikulást

@lojikil

Brains in the "trying to be a good dad despite having a bad dad" gang. ☦️|Philosopher|Offensive Security|PLT

ID: 369714291

linkhttps://lojikil.github.io calendar_today07-09-2011 20:32:47

2,2K Tweet

2,2K Followers

952 Following

Jim Miller (@themijcipher) 's Twitter Profile Photo

Check out our latest blog post! My teammates and I have discovered several, severe vulnerabilities stemming from insecure implementations of the Fiat-Shamir transformation

GitHub Security (@githubsecurity) 's Twitter Profile Photo

GitHub has uncovered evidence that an attacker abused stolen OAuth user tokens issued to two third-party OAuth integrators, Heroku and Travis-CI. Read more about the impact to GitHub, npm, and our users. github.blog/2022-04-15-sec…

Logyi várja a Mikulást (@lojikil) 's Twitter Profile Photo

Listen, Google, I get it, I’m bad about opening a new calendar tab each time rather than finding the open one, but please only play the sound once, not 32 or more times, ok?

Logyi várja a Mikulást (@lojikil) 's Twitter Profile Photo

Does anyone know of the *opposite* of a boot2root? Like a local or online blue team CTF where you are given an image/log/whatever and have to find and remediate the problem?

Logyi várja a Mikulást (@lojikil) 's Twitter Profile Photo

Me: [disables all location information in twitter and phone preferences] Twitter: hey would you like to know what people in your town are tweeting about? Me: literally no.

Logyi várja a Mikulást (@lojikil) 's Twitter Profile Photo

Thinking about this further, part of the issue is that CVEs are taken as a quality statement, rather than a point in time, point in environment issue. - Zero CVEs doesn’t mean your system has no flaws - Finding CVEs means your bug tracking issue is public, not how smart you are

Logyi várja a Mikulást (@lojikil) 's Twitter Profile Photo

It’s interesting that Multics solved certain classes of supply chain attacks (“Trojan horse” in the link below) in the 70s and we now act like this is truly a hard problem that is hard to solve… multicians.org/multics-data-s…

Absolute AppSec (@absoluteappsec) 's Twitter Profile Photo

Absolute AppSec presents a special episode at 12 Noon Eastern/ 10 AM Mountain time! Join SeThLaW (l4wke) and guest host Logyi várja a Mikulást with special guest Paddy Kerley. Key topics: #Informationwarfare vis-a-vis the real world case of Ukraine, #infosecurity, etc, youtu.be/YKFnKwR-FoM

Rory McCune (@raesene) 's Twitter Profile Photo

Next part of my PCI Kubernetes series up now, looking at the authorization section raesene.github.io/blog/2022/10/0… - This one's not as long as the last part (thankfully) but some nuances in there to be aware of.

Seb (@glaasgd) 's Twitter Profile Photo

attending #RoguelikeCelebration right now and the talks are super good! it barely started, strongly recommend you check it out