A DFIR friend told me that one of his customers, which spent a full week finding & remediating log4j vulnerabilities got ransomed through an unpatched Confluence vulnerability that was published in August
#Log4j#Log4Shell
My Team is hiring! These are entry level and remote! Feel free to reach out if you have questions:
https://t.co/hPevvlanTZ
https://t.co/fPqWMblNw9 #CyberSec#hiring
A few days ago, the publicity around a malicious binary apparently signed by Microsoft drew a lot of responses that highlight a "perfection" problem in #infosec.
A ��but it's not really a subtweet so I've blanked out the names on this example. It is just one of many.
So, it turns out that because somebody coined the acronym "DevSecOps", now there are clowns who assume that "DevSecOps" includes security operations (like SOC, etc), because the silly word DevSecOps includes SecOps. WTH and perhaps even WTAF...