Security, Development, Operations
What is XDR?
extended detection and response
Dec. 10, 2022, 8:50 p.m. • kenji
Security XDR (extended detection and response) is a security approach that combines multiple types of security tools and technologies to provide a more comprehensive view of an organization's ...
What is the best approach to learning a new subject
There is no one-size-fits-all approach to learning a new subject, as different people have different learning styles and preferences.
Dec. 10, 2022, 8:33 p.m. •
Some general tips for effectively learning a new subject include: Start by gaining a broad understanding of the subject by reading a general overview or introduction to the topic. This will provi...
How to combat cybercrime
To be properly handled, cybercrime is a complicated problem that requires a multifaceted strategy.
Dec. 10, 2022 • kenji
Some measures that may be implemented to combat cybercrime include: Invest in strong security measures to guard against cyber assaults and keep sensitive data from being accessed or stolen. F...
Multi-factor Authentication
What on earth Is Multi-Factor Authentication (MFA)?
Nov. 21, 2022, 4:29 p.m. •
MFA protects your applications by requiring a second source of validation before granting users access. Personal devices, such as a phone or a token, as well as geographic or network locations, a...
Container Security Best Practices
Security around the technology used to package an environment into a neat little container image. #Docker #Containers #OCI #Security
Nov. 20, 2022, 10:32 a.m. • kenji
First off, How Do Containers Work? Containers are a technique of operating system virtualization that allow you to execute a program and its dependencies in resource-isolated processes. These sepa...
Samba Patches RCE
Samba Patches Vulnerability for potential Remote Code Execution
Nov. 19, 2022, 9:02 p.m. •
Samba Patches Samba released patches this week for an integer overflow vulnerability that could lead to arbitrary code execution. What is samba? Samba is a free and open-source Server Message ...
The Open Source Security Foundation (OpenSSF) announced the acceptance of Microsoft's Secure Supply Chain Consumption Framework (S2C2F)
Nov. 19, 2022, 8:20 p.m. •
The Open Source Security Foundation (OpenSSF) announced the acceptance of Microsoft's Secure Supply Chain Consumption Framework (S2C2F), a framework for consuming open source software, on Wedn...
Vulnerabilities in Atlassian Crowd and Bitbucket products had been addressed.
Atlassian notified users this week that key vulnerabilities in its Crowd and Bitbucket products had been addressed.
Nov. 19, 2022, 8:19 p.m. •
Atlassian patched CVE-2022-43781 in the Bitbucket source code repository hosting service, a significant command injection vulnerability that affects Bitbucket Server and Data Center versions ...
CISA / NSA Software Supply Chain Guidance
Supply Chain Guidance from CISA & NSA
Nov. 19, 2022, 8:15 p.m. •
The Cybersecurity and Infrastructure Security Agency (CISA), the National Security Agency (NSA), and the Office of the Director of National Intelligence (ODNI) presented the third and final install...
Summary of The Millionaire Fastlane
What Exactly Is Fastlane?
Nov. 10, 2022 • kenji
M. J. Demarco's book The Millionaire Fastlane will show you how to amass enormous fortune. Demarco reveals how to become a billionaire at any age. And it's not the type of counsel you...
The Psychology of Selling
We all have to sell something at some point, be it our skills, or a product.
Nov. 19, 2022, 7:24 p.m. •
Brian Tracy's book The Psychology of Selling is well-respected. It teaches salespeople how to sell quicker and easier. We have a detailed overview for all salesmen. The Psychology of ...
As technology evolves, so do tools of the attackers
New ransomware attacks, do we need a global defense?
Nov. 19, 2022, 7:18 p.m. •
The Justice Department seized $2.3 million in bitcoin that Colonial Pipeline paid to the DarkSide ransomware gang to reclaim its data, and it helped bring down the REvil ransomware gang months ...
The Twelve-Factor App
TLDR; A framework for building cloud software in such a way that you are utilizing industry guided best practices to ensure cost effective secure and efficient applications/services.
Nov. 1, 2022 • kenji
Frameworks ensure a methodical approach to any task, they help drive stability in an already chaotic world. In software development, we need creativity, but we also need control. I am often reminde...
apt install security-practioner
0x00 to 0xFF
Nov. 16, 2022 • Kenji
Dedicate time for learning, researching, study and self development Our journeys into our fields all start one way or another. The most important fact about the stories that are similar is tha...
InfoSec Certifications and Pathes
If you are getting into security, touch on everything to learn the lay of the land.
Nov. 16, 2022, 9:58 a.m. •
Certification Path Map We all have to start somewhere. Sometimes which road to take is not so clear, and we may not be certain of our personal goals or desires.. but a map and knowing what is out ...