Skip to content
← home

tag

#security

103 posts

The technical heart: vulnerability research, disclosure, threat analysis, the craft of finding and fixing

Security

The Nth Country Experiment and Coincident Vulnerability Discovery

Nth Country Experiment - Nuclear MuseumCould any country with the right knowledge and technology build a nuclear bomb? From May 1964 to April 1967, the

31 Aug 2020 · 1 min read
Security

Forbes: Accelerating secure software development

7. Expect and plan for mistakes. Expect mistakes, and plan to capture and mitigate them quickly. After all, to err is human. Establishing a

09 Aug 2020 · 1 min read
Security

DEF CON Black Hat 2020: Top 10 Tips

While it feels illegal to hang out with your friends right now, the pandemic is no match for the dedicated folks who unite for

06 Aug 2020 · 3 min read
Security

WTF is happening on tcp:0? 2020 edition — Update 1

tl;dr: 0.06% of the publicly-addressable IPv4 space is listening to and responding on TCP Port 0. Why? idk…

03 Aug 2020 · 1 min read
Security

WTF is going on with TCP:0?

tl;dr: 0.06% of the publicly-addressable IPv4 space is listening to and responding on TCP Port 0. Why? idk... Note: Never interact

30 Jul 2020 · 3 min read
Security

A few good cybersecurity companies

I spend a lot of time looking at cybersecurity solutions and companies, partly on request, and partly because it always fascinates me to see people are attempting to solve big problems.

17 Jul 2020 · 4 min read
Security

Priority One: Insights into Submission and Payment Trends

2020: Chaos is a Ladder As 2020 comes to a close, I’ve started to see summaries of the year pop up, covering lessons

16 May 2020 · 3 min read
Security

To err is human — Kerckhoffs' Principle in Software Transparency

Shannon and Kerckhoff were pioneers of disclosure thinking — They understood the concept of “build it like it’s broken”. This was especially true in WWII cryptography, but it’s becoming increasingly clear in its relevance to the 'peacetime' software that we use today.

08 Apr 2020 · 2 min read
Security

Hacking styles

Broadly, there are two things that come into play when it comes to the style a person applies to hacking: The level of experience, and the overall wiring of the hacker.

29 Mar 2020 · 1 min read
Security

A message to folks providing "free testing" at the moment

TLDR: If you’re performing any active, unsanctioned testing on healthcare systems: Please stop it. Don’t make their job any harder than it is right now.

28 Mar 2020 · 1 min read
Security

COVID-19/Coronavirus — What are the bad guys up to?

As expected, the covid19 pandemic has out brought some of the Internet’s worst. I’ve been working with several groups to information share and fight back on this stuff, including the COVID-19 CTI Group.

28 Mar 2020 · 2 min read
Security

Changes

You know that awkward thing at the moment when you see someone and go to shake their hand or hug them, then pull away…

23 Mar 2020 · 1 min read