CISO at @sardineai. Treasurer of @OWASP Board of Directors. (he/him) qatta' mIghtaHghach.

Phoenix, AZ
Joined July 2009
Filter
Exclude
Time range
-
Near
"Bling My Bra" breast cancer fundraiser: http://blingmybra.com/bling-those-bras/
1
If ordering a disabled person placard for California, go in person to DMV. Ordering by mail took 2 months.
Why is it every time Apple pushes a new version of iTunes, it involves downloading/installing 85 megs? Two words: incremental patching
Looking forward to the PayPal X Innovate Conference https://www.paypal-xinnovate.com/ #paypal #xinnovate
Wow AT&T, $11 for one song? Thanks for teaching my 7th grader a lesson in telecom pricing.
Historic wiring in my house http://yfrog.com/f1b1urj #sleepwithoneeyeopen
Unsub'd from a few lists, that should reduce my incoming mail by 60 - 80 messages a day
Replying to @steve_piercy
@steve_piercy the issue is if the login form is http, a network attacker can substitute her own flash object and have it submit to her
Another swag bag tune from #owasp #appsecusa http://youtube.com/watch?v=bDbpzjbXUZI. Good times
We listened to this at #owasp #appsecusa while assembling the swag bag http://youtube.com/watch?v=YdXQJS3Yv0Y
Replying to @steve_piercy
@steve_piercy maybe, but having the login form over http is just as bad
Replying to @miscsecurity
@miscsecurity maybe SSL is only provided after you accept their TOS which states they provide it
Brighttalk.com - your idea of encryption differs wildly from my own http://yfrog.com/n5f84oj #ssl #fail
Mozilla is updating their CA Certificate Policy, if interested get in on the discussion: http://is.gd/fnxbU
This Saturday is the National Park Service's "Fee Free" Day http://www.nps.gov/findapark/feefreeparks.htm
Western Union SSL mixed content error on login page http://yfrog.com/afn0rrj #ssl #fail
Replying to @ecomprotech
@iteratews Are you using Magento for commerce apps?
101 in San Mateo is down to a single lane in both directions due to accident. Massive traffic.
WHID Top Ten Vulns and report http://projects.webappsec.org/Web-Hacking-Incident-Database-2010-Semi-Annual-Report
That's an understatement -> "Public transportation in southern California is impractical." http://is.gd/eYsU5