CISO at @sardineai. Treasurer of @OWASP Board of Directors. (he/him) qatta' mIghtaHghach.

Phoenix, AZ
Joined July 2009
Filter
Exclude
Time range
-
Near
Replying to @randomdross
Well, I saw you speak about something, but it was years ago and lost to the recesses of my brain. Guess I mixed that memory up with this paper. microsoft.com/en-us/research…
1
Replying to @sheeraf
I recall reading about a photographer that traveled to Cuba to photograph Ernest Hemingway and found him shirtless and drunk. Hemingway insisted he be called “Papa” and the photographer replied, “Can Papa put on his shirt?”
2
Donate it to the Mozilla Museum?
@randomdross Didn’t you present on site isolation at some point in the past? I have a memory of attending your talk...
Blink: Intent to Prototype: Origin isolation groups.google.com/a/chromium…
1
I am going tomorrow night to this in San Francisco. If you’re also going, let me know, it will be excellent!
This tweet is unavailable
Replying to @asteingruebl
Check out @LeaKissner’s excellent analysis of the CCPA regulations from a privacy engineering perspective.
#CCPA (the California Consumer Privacy Act) is coming into effect in 2020 and it's confusing. I read through the draft regs with the eye of a privacy engineer who's seen how regulations work and fail. Commentary and suggested fixes: buildwithrespect.com/2019/11…
1
Empowering the customer to make their own risk decisions.
1
1
Replying to @epenzeymoog
Or next big tech startup, they’re hard to tell apart.
1
Replying to @epenzeymoog
2020 twist: it’s internet-connected with embedded AI, camera, microphone, and speaker, and occasionally SnapChats you when you’re not home.
1
Replying to @epenzeymoog
More so if it shows up on your doorstep in a bassinet and a note that reads, “Needs loving home.”
1
Replying to @realhamed
You’re not the only one with that take.
This tweet is unavailable
1
Replying to @coleencoolidge
Of all the things they *could* do, I’d settle for this. 😂
1
Replying to @randomdross
The ad was following me around until I told Google Ads to hide it. Turns out it’s manikin training items.
I met @TinkerSec in person at @Layer8Conf and I still don’t know what gender @TinkerSec is. Some things are unknowable.
This tweet is unavailable
4
68
I’ve rounded a corner on super creepy advertising.
2
Handy Firefox/Chrome extension that shows the CSP policy and offers suggestions for locking it down. github.com/craigfrancis/dev-…
1
4
1970s keylogger "The TV signals would swamp the illicit transmissions and mask them from detection by embassy security scans, but the clever design of the mystery antenna and associated electronic filtering let the Soviets extract the keystroke signals." spectrum.ieee.org/tech-histo…
2
1
“This work shows once and for all that SHA1 should not be used in any security protocol where some kind of collision resistance is to be expected from the hash function” arstechnica.com/information-…
Replying to @randomdross
You never know when a nation state will unleash a Stuxnet-type attack that will cause an imbalance of flavor and fizz, and by proxy, throw off the mojo of tech workers everywhere.
1
"The Grim Impact of Judicial Secrecy on Public Health and Safety" This talk at Stanford will be eye opening, I wish I lived closer! docs.google.com/forms/d/e/1F…