We are advisors and engineers who use technology to solve problems by focusing on people and processes. πΉπππ π ππ ππ’π π£πππ.
SEC sued SolarWinds (SW) for poor InfoSec practices. The thrust of the lawsuit is SW misleading investors regarding SW risk controls, incl. a password policy (!). Even if they do not prevail in court, bringing action is a shot across the company boards' bow. Nice one, Gary.
SAML is far from dead: testimony by @davidjbrossard at @Identiverse '23 regarding customer/implementation challenges at @Salesforce : https://t.co/3A8snvet5U
$OKTA Q2 earnings: Workforce vs CIAM (Auth0 + "legacy" Okta) ACV split is 60/40 but growth vs '22 is about even. Taken together it's a somewhat...interesting result.
Data (CDP, Tableau, Mulesoft) growing faster than other segments. On the earnings call, mgmt chanted the mantra of AI + Data as both vision and R&D spend. Three "zones" of AI: Einstein, Gen AI, Autonomous (agents). AI applied in in Slack, Data (segmentation), Service Cloud.
@JefTek@divinetechygirl Thread on a sweater type of problem. Long tail of dependencies => cost of change management and maintenance for end-to-end workflow. Turn the question around: how will this action increase revenue or lower COGS for the business? If cost or risk avoidance, then please quantify.
@Alex_A_Simons@ArvindHarinder Does cross-tenant sync work for B2B -> B2C? Docs only mention B2B. Have a customer who's interested in this scenario, would be nice to skip PS scripting.
"Fun", real-world example of how challenging it is to walk the UX/security line when humans are involved. So what if Trusted Relationship is a known attack vector, mitigation beyond basic is costly due to asymmetric impact. Arguably, detect+term via the Law is a cheap alt route
Flexport is organizing an airlift of humanitarian relief supplies to refugee centers in Eastern Europe. You can help by donating to pay for more flights at https://t.co/VeICNUErlE. π§΅π
@jaminball The folks who wrote this could have padded the numbers in a more...readable manner by using cust_o_mers or custOmers. Don't need a natural language model to parse snake_case or camelCase.
OpenID Connect: fun with the spec wording of "audience must be an array of strings" without specifying the type of array and its interpretation by OPs/RPs. In this case the players are @azuread and @salesforce https://t.co/FSLZfMCg5k
@itickr The content feels like the oAuth scope conversation all over again re: human-readable explanation. For example, Google Account prompt says you're authenticating to 'https://t.co/LDizxtgrdR' regardless of the targeted service. The grey pop-up is like a brick in your window.
@jaghub@Apple@salesforce Control over entire experience, including chain of custody and exclusion of possible issues due to ecosystem/3rd parties. Vertical integration has always been Apple's theme.
Google Project Zero vs AWS IAM and GCP IAM with predictable results. "A strong developer might be able to reason about all security pitfalls of their own software, but it becomes very difficult once a complex external service comes into play". Most IAM services are external, yay!
If Martin Fowler has trouble with oAuth, what about all other devs? This Patreon -> Slack integration is a good litmus test for evaluating no-code/low-code platforms with effort to implement as a comparison metric. (Google says Apps Script is low-code, a debatable assertion).
new post: a friend needed a simple script, but isn't familiar with the command line. So here's my observations on using a Google Sheets script for the job.
https://t.co/wQzNa0eZMt
@manicode We've heard this and similar confuzzled terms from users many times. It makes sense to them as an outcome - usually hashing or some attack/mitigation scenario such as stolen laptop vs encrypted drive. "We encrypt our passwords" is very common.
@MichaelDell @EliasatDell Same machine is now dead due to another issue. Product is still under premium warranty with Next Business Day On-Site. Service request was opened 2 days ago. Requesting ETA from support leads to "please wait" answers. Your NPS score is trending to -100
@MichaelDell @EliasatDell We've been going back and forth with @DellCares for past 3 weeks on a simple issue with our XPS laptop. We paid a premium for Next Business Day On-Site support and have gotten negative ROI. There should be a better way, your brand is losing its appeal.