“There's no need for any of these systems to be exposed publicly, even if you have customers that need to access it remotely,” Smith says. “There's a trade off between security and how easy you want to make it for your customers and vendors, but we should have learned this lesson by now.”
Successful SQL injection against exposed internal/customer-only web apps should really not be an issue in 2023 when billions (trillions?) of dollars are spent on security measures. :(
Like, we don’t need air-gapped devices, but can we at least use IP allowlists even if they aren’t perfect and you don’t want to bother using Cloudflare Warp or some other secure tunnel software?
@whoweekly can you please rank the “celebrities” on https://t.co/xCeRmwr7EB from who to them???
Somehow Oscar-winner @HilarySwank is lower than someone from “The Challenge” and a backup Greenbay Packers QB.
Former US Air Force Intelligence Officer Travis Hawley @talk2trav spoke with Jared Smith @jaredthecoder, our Distinguished Engineer of R&D Strategy, who breaks down the complex world of threat actors. To truly stay ahead, companies need omnipresence across all online domains.
@software_daily Many of them are on the website itself. For example - https://t.co/eSqfVDZRVi
I will miss him. The brief time we interacted for the episode I was on and the years prior of listening to the show inspired a lot of my early interest/passion for CS.
BBC, British Airways, Novia Scotia govt among first big-name data-theft victims in global supply-chain hack - with more to come “as regulatory reporting requirements come into play.” #MOVEit file-transfer software exploited by Russian extortion gang. https://t.co/X7q96LIIrJ
"One way to prevent this from happening would be for companies to not make these systems publicly accessible on the internet 🌐 even for remote access. 💻” - #SecurityScorecard's @jaredthecoder on the exploited vulnerability in #MOVEit#software. https://t.co/kJzsnJ4nNQ #secops
Voting through 4/18 @ https://t.co/7OeOZqbr9C. Not only can you win a free trip to Hawaii by @ignitionapp and @bankwithrelay if you vote, but you also get a free @Starbucks gift card on us on signup for a free trial of @feloniousslinky’s favorite app https://t.co/2jMZbaGc9f. 🥰🙏
Looks like @JStaatsCPA let the cat out of the bag on my backstory. Doesn’t mean you still can’t vote for the team that turned my life around @uncatexpense at https://t.co/S1MMm9HUv7. 🙏😻🫶
Uncat is in the finals of the Accounting Bracket Challenge! We're stoked to be lined up with @JStaatsCPA, the premier thought leader in accounting tech. If you have a minute to cast a vote, you'll be entered for a chance to win a trip for 2 to Hawaii. https://t.co/XaMVAYloj8
Other successful people have encountered the same brick wall you’re running into. The question is: are you going to find a way around, through, above, under, catapult, helicopter, TNT.. whatever it takes to move past the wall?🧵 👇 about how this attitude made me the first person to be hired at Oak Ridge National Laboratory without a college degree.
A malware "vaccine" generator developed at ORNL and used by the U.S. Naval Information Warfare Systems Command has been licensed for https://t.co/vy8KxiZ4hO platform.
https://t.co/7GOpBZG7DU
To all the (Un)cat supporters and soon-to-be supporters out there, we love you! But it’s not over yet! Next stop: ✨Elite 8 ✨. Voting is on! Enter for a chance to win a trip to Hawaii at https://t.co/FsY3Uo1Flb!