CISO at @sardineai. Treasurer of @OWASP Board of Directors. (he/him) qatta' mIghtaHghach.

Phoenix, AZ
Joined July 2009
Filter
Exclude
Time range
-
Near
Want to know more about PayPal's Bug Bounty program? Here's your chance: appsecusa2017.sched.com/mobi…
1
2
1
The best $15 you'll donate today - get books on crypto, web hacking, social eng, threat modeling, malware, and more! humblebundle.com/books/cyber…
1
Replying to @ndm @jeremiahg
They are controls that are part of a secure product lifecycle. I agree they're optional for a small org with limited exposure.
Replying to @sfbayisoc
What ever happened to the fiber already paid for 10+ years ago? techdirt.com/articles/200601…
1
I'll be there with a sizable crew from @PayPalInfoSec
1
2
This is why people use ad blockers; rogue ads redirect to this crap.
Replying to @dougturner @comcast
Time to use Opera Turbo? That helps solve both issues (bandwidth and MitM), although you're trading one MitM for another.
Replying to @k8em0 @WeldPond
Bug Bounty is one component of a strong AppSec program, not in lieu of it.
1
Replying to @mkonda
I title this piece "Diabetes"
1
1
I'm attending @appsecusa and the Dev Summit that precedes it, along with attending and sponsoring the @OWASPWIA luncheon. See you there!
1
1
Replying to @WeldPond @RSnake
They need that $35, they only brought in 8 million in (non-)profit last year.
This thread where scientists battle it out for a journalist's attention.
Looking for great stories at #ABS_2017 Don't be shy (be bold) & come talk to me about your research.
1
Somewhere, Andy Kaufman is loving this.
@united When did flying first class no longer get you into the United lounge? My daughter was turned away with her first class ticket.
Pro tip: never give @Skype a birthday younger than 18 unless you want to spend 20 minutes and 50 cents giving them large amount of PII.
Love going to the @Apple store and seeing 15 employees standing idly while I wait 40 minutes to be helped. Idea: train everyone to be a tech
Replying to @WeldPond
Spent 4 years in Luxembourg - they're investing heavily in internet infra to replace their shrinking banking economy (no more bank secrecy).
1
Best to start detecting and alerting users, otherwise they'll think your SSO is broken. #IE6lessons