CISO at @sardineai. Treasurer of @OWASP Board of Directors. (he/him) qatta' mIghtaHghach.

Phoenix, AZ
Joined July 2009
Filter
Exclude
Time range
-
Near
Remember D&D? Play-test the unreleased 5th Edition for free (they provide the PDFs, you provide the D20): wizards.com/dnd/DnDNext.aspx
Interesting DoS by getting Google Analytics to store an ASCII control char in a cookie, some servers reject request: bugzilla.mozilla.org/show_bu…
Replying to @owasp
@owasp Link leads to a page that says I'm "unauthorized"
1
IETF looking at "a session continuation mechanism to replace or augment cookies that has better security semantics" datatracker.ietf.org/doc/dra…
Replying to @jeremiahg
@jeremiahg Hadoop, but they read the Google whitepaper, not the patent.
Twitter Security Team talking about their security robots at the next Bay Area @OWASP meeting: lists.owasp.org/pipermail/ow…
6
2
Not sure what's more annoying, GEMA blocking a large swath of YouTube content, or that I'm NOT IN GERMANY so GEMA has no jurisdiction.
Replying to @jeremiahg
@jeremiahg A bit too far for a quick meetup, another time!
@jeremiahg If you're in the Luxembourg area, come say hi.
1
Community college in California needs infosec volunteers to help build class for Mobile & Web Application Security lists.owasp.org/pipermail/ow…
Comparison of all @OWASP Top Ten releases, 2003 to 2013: github.com/cmlh/OWASP-Top-Te…
Replying to @w3be
@w3be Would love to see change toward cooperation and compassion, but there are entreched elements that can't be easily displaced.
Replying to @tferriss
@tferriss Netflix and Hulu block me in Europe. Choose a global platform instead.
1
1
Replying to @w3be
@w3be Finland uses grading, but doesn't use high-stakes exams. Their focus is on equal educational opportunities, not outcomes.
Replying to @w3be
@w3be Public schools are based on competition, it would take a profound shift to move away from grades and testing.
1
'Bully' is absolutely heartbreaking to watch; children being bullied by other children and again by the adults who don't make it stop.
Replying to @manicode
@manicode @m1a1vet @jeremiahg @mattjay Seeing your photo made me remember that I lost that little hat.
Replying to @jeremiahg
@jeremiahg @m1a1vet @mattjay I have one on my desk thanks to @manicode but have never tried wearing it.
2
StubHub is hiring a manager of Trust and Safety Operations in Luxembourg: rfer.us/EBRhlSbAN
1
1
What looks like a CAPTCHA but isn't? When devs implement the look and feel without understanding the required underlying controls.